added openssl-ikev2/rw-eap-tls-only scenario

This commit is contained in:
Andreas Steffen
2010-09-07 17:14:32 +02:00
parent 52d4dc7fe2
commit 2774826995
17 changed files with 210 additions and 0 deletions
@@ -0,0 +1,25 @@
# /etc/ipsec.conf - strongSwan IPsec configuration file
config setup
plutostart=no
charondebug="tls 2"
conn %default
ikelifetime=60m
keylife=20m
rekeymargin=3m
keyingtries=1
keyexchange=ikev2
ike=aes128-sha256-ecp256!
esp=aes128-sha256!
conn home
left=PH_IP_CAROL
leftcert=carolCert.pem
leftauth=eap
leftfirewall=yes
right=PH_IP_MOON
rightid="C=CH, O=Linux strongSwan, OU=ECDSA 521 bit, CN=moon.strongswan.org"
rightsubnet=10.1.0.0/16
rightsendcert=never
auto=add