# /etc/ipsec.conf - Libreswan IPsec configuration file

version 2.0

config setup
	# put the logs in /tmp for the UMLs, so that we can operate
	# without syslogd, which seems to break on UMLs
	plutostderrlog=/tmp/pluto.log
	plutodebug=all
	plutorestartoncrash=false
	dumpdir=/tmp
	protostack=klips

conn westnet-eastnet-ikev2
	also=west-east-base
	also=westnet
	also=eastnet
	ikev2=insist
	authby=secret
	ike=aes-sha1
	esp=aes128-sha1
	#auto=start

include	/testing/baseconfigs/all/etc/ipsec.d/ipsec.conf.common