1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
|
# /etc/ipsec.conf - Libreswan IPsec configuration file
config setup
ikev1-policy=accept
logfile=/tmp/pluto.log
logtime=no
logappend=no
plutodebug=all
seccomp=enabled
conn nss-cert
keyexchange=ikev1
# Left security gateway, subnet behind it, next hop toward right.
left=192.1.2.45
leftcert=west
leftsubnet=192.0.1.254/32
leftid=%fromcert
leftnexthop=192.1.2.23
leftsourceip=192.0.1.254
# Right security gateway, subnet behind it, next hop toward left.
right=192.1.2.23
rightid=%fromcert
rightnexthop=192.1.2.45
rightsubnet=192.0.2.254/32
rightsourceip=192.0.2.254
# test specific options
rightcert=east
leftsendcert=never
rightsendcert=never
|