############################################# Strongswan ---- /etc/ipsec.conf ############################################# conn %default keyexchange=ikev1 authby=secret type=tunnel ike=aes128-sha2_256-modp2048! dpdaction=clear dpddelay=1 dpdtimeout=4 mobike=no leftsourceip=%config4# leftupdown = /etc/dpd/dpd_script.sh# leftsourceip=%config4# # # leftsourceip=%config4# leftsourceip=%config4# leftauth=psk rightauth=psk leftsourceip=%config4# conn crypto-map-tunnel1_58010001 keyexchange=ikev2 left=20.20.20.200 # leftsubnet=0.0.0.0/0 # right=20.20.20.20 # rightsubnet=0.0.0.0/0 # esp=aes128-sha2_256-modp2048! # lifetime=8000s # lifebytes=313032704 # ikelifetime =86400000 # aggressive =no # auto=route # ## ## mark=1# leftupdown = /etc/dpd/dpd_script.sh# leftsourceip=%config4# ############################################# Strongswan ---- /etc/ipsec.secrets ############################################# 20.20.20.200 20.20.20.20 : PSK 'demo123' # 20.20.20.20 20.20.20.200 : PSK 'demo123' #