connections { mutual { local_addrs = 192.168.0.1 remote_addrs = 192.168.0.2 local { auth = eap-ttls certs = moonCert.pem id = moon.strongswan.org } remote { auth = eap-ttls id = sun.strongswan.org groups = allow } children { mutual { updown = /usr/local/libexec/ipsec/_updown iptables esp_proposals = aes128gcm16-ecp256 } } version = 2 mobike = no send_certreq = no proposals = aes128-sha256-ecp256 } }