algo/roles/strongswan/templates/client_ipsec.conf.j2

24 lines
505 B
Plaintext
Raw Normal View History

conn algovpn-{{ IP_subject_alt_name }}
fragmentation=yes
rekey=no
dpdaction=clear
keyexchange=ikev2
2017-01-14 16:56:23 +00:00
compress=no
dpddelay=35s
2016-10-16 12:27:05 +00:00
ike={{ ciphers.defaults.ike }}
esp={{ ciphers.defaults.esp }}
2016-11-26 22:37:17 +00:00
2016-10-16 12:27:05 +00:00
right={{ IP_subject_alt_name }}
rightid={{ IP_subject_alt_name }}
rightsubnet={{ rightsubnet | default('0.0.0.0/0') }}
2016-10-16 12:27:05 +00:00
rightauth=pubkey
leftsourceip=%config
leftauth=pubkey
2017-04-15 12:57:07 +00:00
leftcert={{ item }}.crt
2016-10-16 12:27:05 +00:00
leftfirewall=yes
left=%defaultroute
auto=add