# This file is automatically generated. Do not edit
connections {
	bypass {
		remote_addrs = 127.0.0.1
		children {
			bypasslan {
				local_ts = 10.15.0.0/30
				remote_ts = 10.15.0.0/30
				mode = pass
				start_action = trap
			}
		}
	}
	con1 {
		# P1 (ikeid 1)
		fragmentation = yes
		unique = replace
		version = 2
		proposals = aes128-sha256-modp2048
		dpd_delay = 10s
		rekey_time = 25920s
		reauth_time = 0s
		over_time = 2880s
		rand_time = 2880s
		encap = no
		mobike = no
		local_addrs = 192.168.254.34
		remote_addrs = 192.168.254.21
		local {
			id = 192.168.254.34
			auth = psk
		}
		remote {
			id = 192.168.254.21
			auth = psk
		}
		children {
			con1 {
				# P2 (reqid 1)
				policies = no
				life_time = 3600s
				rekey_time = 3240s
				rand_time = 360s
				start_action = none
				remote_ts = 10.15.0.1,0.0.0.0/0,::/0
				local_ts = 10.15.0.2,0.0.0.0/0,::/0
				reqid = 5001
				esp_proposals = aes128gcm128-modp2048,aes128-sha256-modp2048
				dpd_action = clear
			}
		}
	}
}
secrets {
	ike-0 {
		secret = <redacted>
		id-0 = %any
		id-1 = 192.168.254.21
	}
}
