# /etc/ipsec.conf - strongSwan IPsec configuration file config setup conn %default ikelifetime=60m keylife=20m rekeymargin=3m keyingtries=1 conn nat-t leftcert=venusCert.pem leftid=venus@strongswan.org right=192.168.0.2 rightid=@sun.strongswan.org type=transport auto=add