connections { host-host { local_addrs = 10.0.0.1 remote_addrs = 10.0.0.2 local { auth = pubkey certs = moonCert.pem id = moon.strongswan.org } remote { auth = psk } children { host-host { local_ts = 10.1.0.1 remote_ts = 10.1.0.2 updown = /usr/lib/ipsec/_updown iptables # esp_proposals = aes128gcm128-x25519 esp_proposals = null-null } } version = 2 send_certreq = no # proposals = aes128-sha256-x25519 proposals = null-md5-prfmd5-null-ecp192 } } secrets { ike-carol { id = 10.0.0.2 # id = carol@strongswan.org secret = "Ar3etTnp01qlpOgb" } }