# /etc/ipsec.conf - Libreswan IPsec configuration file

version 2.0

config setup
	# put the logs in /var/tmp for the UMLs, so that we can operate
	# without syslogd, which seems to break on UMLs
	plutodebug=all
	logfile=/tmp/pluto.log
	logtime=no
	logappend=no
	protostack=netkey
	dumpdir=/var/tmp

conn ikev2-westnet-eastnet-x509-cr
	also=westnet-eastnet-x509
	rightcert=east
	authby=rsasig
	rightsendcert=always
	
include /testing/baseconfigs/all/etc/ipsec.d/ipsec.conf.common