ipsec-gtpu-poc/ipsec-gtp/server.swanctl.conf

39 lines
736 B
Plaintext

connections {
host-host {
local_addrs = 10.0.0.1
remote_addrs = 10.0.0.2
local {
auth = pubkey
certs = moonCert.pem
id = moon.strongswan.org
}
remote {
auth = psk
}
children {
host-host {
local_ts = 10.1.0.1
remote_ts = 10.1.0.2
updown = /usr/lib/ipsec/_updown iptables
# esp_proposals = aes128gcm128-x25519
esp_proposals = null-null
}
}
version = 2
send_certreq = no
# proposals = aes128-sha256-x25519
proposals = null-md5-prfmd5-null-ecp192
}
}
secrets {
ike-carol {
id = 10.0.0.2
# id = carol@strongswan.org
secret = "Ar3etTnp01qlpOgb"
}
}