1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
|
# /etc/ipsec.conf - Libreswan IPsec configuration file
version 2.0
config setup
# put the logs in /tmp for the UMLs, so that we can operate
# without syslogd, which seems to break on UMLs
logfile=/tmp/pluto.log
logtime=no
logappend=no
plutodebug=all
dumpdir=/tmp
virtual-private=%v4:10.0.0.0/8,%v4:192.168.0.0/16,%v4:172.16.0.0/12,%v4:!192.0.1.0/24,%v6:!2001:db8:0:1::/64
conn westnet-eastnet-ikev1
left=192.1.2.45
leftid="%fromcert"
leftnexthop=192.1.2.23
leftcert=west
rightid="%fromcert"
rightnexthop=192.1.2.45
right=192.1.2.23
|