# This file is automatically generated. Do not editconfig setup uniqueids = yesconn con1 aggressive = no fragmentation = yes keyexchange = ikev2 mobike = yes reauth = yes rekey = yes forceencaps = no installpolicy = yes type = tunnel left = %any right = %any leftid = my.personal.domain ikelifetime = 1440s lifetime = 1440s rightsourceip = 192.168.2.0/24 ike = aes256-sha256-modp2048! leftauth = pubkey rightauth = eap-radius rightsendcert = never eap_identity = %any leftcert = /usr/local/etc/ipsec.d/certs/cert-1.crt leftsendcert = always leftsubnet = 0.0.0.0/0 esp = aes256-sha256-modp2048! auto = addinclude ipsec.opnsense.d/*.conf