Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- localhost:~# cat /etc/strongswan.d/charon.conf
- # Options for the charon IKE daemon.
- charon {
- install_routes = no
- install_virtual_ip_on = ipsec0
- }
- ---
- localhost:~# cat /etc/swanctl/swanctl.conf
- connections {
- flex {
- dpd_delay = 300
- local {
- id = alpine65@sclab.space
- auth = psk
- }
- remote {
- id = hub.sclab.space
- auth = psk
- }
- children {
- flex {
- local_ts = 0.0.0.0/0
- remote_ts = 0.0.0.0/0
- esp_proposals = aes128-sha1
- # use mark for vti interfaces ...
- mark_in = 100
- mark_out = 100
- dpd_action = restart
- }
- }
- remote_addrs = 172.16.63.63
- version = 2
- proposals = aes256-sha512-modp2048
- vips = 0.0.0.0
- }
- }
- secrets {
- ike_flex {
- secret = csr-flex
- id_1 = alpine65@sclab.space
- id_2 = hub.sclab.space
- }
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement