# /etc/ipsec.conf - Libreswan IPsec configuration file

version 2.0

config setup
	# put the logs in /tmp for the UMLs, so that we can operate
	# without syslogd, which seems to break on UMLs
	plutostderrlog=/tmp/pluto.log
	protostack=mast
	plutorestartoncrash=false
	dumpdir=/tmp
	virtual_private=%v4:192.1.3.0/24
	nat_traversal=yes
	#fragicmp=no

conn	%default
	esp=3des-md5

include /testing/pluto/mast-l2tp-04/northroadeast.conf
include	/testing/baseconfigs/all/etc/ipsec.d/ipsec.conf.common

conn packetdefault
	auto=ignore

conn us
	rightsubnet=192.0.2.0/24

conn them
	leftsubnet=192.0.3.0/24