Skip to content
Snippets Groups Projects
Commit fdc5fb61 authored by Jan Bělina's avatar Jan Bělina
Browse files

Add strongSwan configuration example

parent 83601504
No related branches found
Tags warden-client-2.1
No related merge requests found
# /etc/swanctl/conf.d/eduroam_cz_flr.conf
# Defaults
#+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
defaults {
local_addrs = 78.77.76.75
#local_addrs = 2001:78:77:76::75
local {
auth = pubkey
# Cert in '/etc/swanctl/x509/', key in '/etc/swanctl/private/'
certs = radius.instituce.cz.crt
}
remote {
id = DC=net, DC=geant, DC=eduroam, C=CZ, O=NRO of Czech Republic, CN=flr.eduroam.cz
auth = pubkey
# CA cert in '/etc/swanctl/x509ca/'
cacerts = eduPKI_CA_G_01.pem
revocation = strict
}
children {
host-host {
rekey_time = 4h
esp_proposals = aes256-sha256
mode = transport
start_action = trap
}
}
dpd_delay = 60s
send_cert = always
version = 1
mobike = no
reauth_time = 24h
proposals = aes256-sha256-ecp384
}
#^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
# Servers
#+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
connections {
flr1_eduroam_cz : defaults {
remote_addrs = 78.128.248.10
#remote_addrs = 2001:718:ff05:aca::1:10
}
flr2_eduroam_cz : defaults {
remote_addrs = 78.128.248.11
#remote_addrs = 2001:718:ff05:aca::1:11
}
flr3_eduroam_cz : defaults {
remote_addrs = 78.128.248.12
#remote_addrs = 2001:718:ff05:aca::1:12
}
}
#^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment