1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26
|
# /etc/ipsec.conf - Libreswan IPsec configuration file
config setup
ikev1-policy=accept
logfile=/tmp/pluto.log
logtime=no
logappend=no
dumpdir=/tmp
plutodebug=all
conn east-any
keyexchange=ikev1
left=%any
leftid=@road
leftaddresspool=192.0.2.101-192.0.2.200
xauthby=alwaysok
rightxauthserver=yes
leftxauthclient=yes
rightmodecfgserver=yes
leftmodecfgclient=yes
right=192.1.2.23
rightsubnet=0.0.0.0/0
modecfgpull=yes
modecfgdns="1.2.3.4, 5.6.7.8"
rightid=@east
authby=secret
|