Advertisement
Guest User

Untitled

a guest
Dec 5th, 2018
101
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.61 KB | None | 0 0
  1. root@foo:~# cat /etc/ipsec.conf
  2. config setup
  3. charondebug="ike 3, knl 3, cfg 3"
  4. uniqueids=no
  5.  
  6. conn ikev2-psk
  7. auto=add
  8. compress=no
  9. type=tunnel
  10. keyexchange=ikev2
  11. fragmentation=yes
  12. forceencaps=yes
  13. ike=aes256-sha512-modp2048s256!
  14. esp=aes256gcm16!
  15. dpdaction=clear
  16. dpddelay=300s
  17. rekey=no
  18. left=%any
  19. leftid=@server.domain.my
  20. leftcert=/etc/letsencrypt/live/server.domain.my/fullchain.pem
  21. leftsendcert=always
  22. leftsubnet=0.0.0.0/0
  23. right=%any
  24. rightid=%any
  25. rightauth=secret
  26. rightsourceip=172.18.72.0/24
  27. rightdns=1.0.0.1,1.1.1.1
  28. rightsendcert=never
  29. type=tunnel
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement