10a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wangpath certificate "/etc/openssl/certs";
20a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang
30a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wanglisten {
40a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	adminsock disabled;
50a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang}
60a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang
70a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wangremote anonymous {
80a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	exchange_mode aggressive;
90a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	certificate_type x509 "server.crt" "server.key";
100a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	my_identifier asn1dn;
110a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	proposal_check strict;
120a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	generate_policy on;
130a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	nat_traversal on;
140a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	dpd_delay 20;
150a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	ike_frag on;
160a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	proposal {
170a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang		encryption_algorithm aes;
180a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang		hash_algorithm sha1;
190a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang		authentication_method hybrid_rsa_server;
200a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang		dh_group 2;
210a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	}
220a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang}
230a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang
240a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wangmode_cfg {
250a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	network4 10.99.99.0;
260a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	pool_size 255;
270a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	netmask4 255.255.255.0;  
280a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	auth_source system;
290a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	dns4 10.0.12.1;
300a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	wins4 10.0.12.1;
310a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	banner "/etc/racoon/motd";
320a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	pfs_group 2;
330a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang}	       
340a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang		
350a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wangsainfo anonymous {
360a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	pfs_group 2;
370a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	lifetime time 1 hour;
380a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	encryption_algorithm aes;
390a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	authentication_algorithm hmac_sha1;
400a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang	compression_algorithm deflate;
410a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang}   
420a1907d434839af6a9cb6329bbde60b237bf53dcChung-yih Wang
43