# /etc/ipsec.conf - Libreswan IPsec configuration file config setup logfile=/tmp/pluto.log logtime=no logappend=no dumpdir=/tmp protostack=netkey plutodebug=all virtual_private=%v4:192.1.3.0/24 conn %default ikev2=no conn north-east also=xauth-base left=%defaultroute leftcert=north conn road-east also=xauth-base left=%defaultroute leftcert=road conn east-any also=xauth-base left=%any leftaddresspool=192.0.2.100-192.0.2.200 xauthby=alwaysok rightcert=east modecfgdns="1.2.3.4, 5.6.7.8" conn xauth-base leftid=%fromcert rightid=%fromcert rightxauthserver=yes leftxauthclient=yes rightmodecfgserver=yes leftmodecfgclient=yes right=192.1.2.23 rightsubnet=192.0.2.0/24 retransmit-interval=15000 # slow retransmits modecfgpull=yes