Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- config setup
- charondebug="ike 2, knl 2, cfg 2, dmn 2"
- conn %default
- ikelifetime=28800s
- keylife=3600s
- rekeymargin=3m
- keyingtries=%forever
- keyexchange=ikev1
- authby=secret
- conn ciscoios
- aggressive=no
- type=tunnel
- auto=start
- left=10.49.43.10 #strongswan outside address
- leftsubnet=10.49.43.0/24
- leftid=54.233.194.186 #IKEID sent by strongswan
- leftfirewall=yes
- right=201.55.56.30 #IOS outside address
- rightsubnet=10.61.21.0/24
- rightsourceip=10.61.21.17 #network behind IOS
- rightid=201.55.56.30 #IKEID sent by IOS
- ike=aes-sha1-modp1024
- esp=aes128-sha1-modp1024 #P2
- modeconfig=pull
- dpdaction = none
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement