# This file is automatically generated. Do not editconnections { 2de0136f-6cbc-421a-80aa-3729176f844e { proposals = aes256gcm16-sha256-modp2048,aes256gcm16-sha512-modp2048,aes256gcm16-sha512-x25519,aes256gcm16-sha512-x448,aes256gcm16-sha256-modp4096,aes256gcm16-sha256-modp6144,aes256gcm16-sha256-modp8192,aes256gcm16-sha512-modp4096,aes256gcm16-sha512-modp6144,aes256gcm16-sha512-modp8192 unique = no aggressive = no version = 2 mobike = no local_addrs = my.address.com encap = yes rekey_time = 600 dpd_delay = 30 pools = PoolA send_certreq = yes keyingtries = 0 local-fc3a7fbe-732d-4ee4-890b-f725d40125e8 { round = 0 auth = pubkey id = my.address.com certs = 654269e2e801b.crt } remote-544f43ac-e76a-4d3a-9db6-57ff389b5b0f { round = 0 auth = eap-radius id = ConnectionA eap_id = %any groups = GroupA } children { cab66875-3b0a-456c-ab01-e5af7fd9a621 { esp_proposals = aes256-sha256-modp2048,aes256gcm16-modp2048,aes256gcm16-ecp521,aes256gcm16-x25519,aes256gcm16-x448,aes128gcm16-modp2048,aes128gcm16-ecp521,aes128gcm16-x25519,aes128gcm16-x448,aes256gcm16-sha256-x25519,aes256gcm16-sha256-x448 sha256_96 = no start_action = trap|start close_action = trap dpd_action = clear mode = tunnel policies = yes local_ts = 192.168.10.0/24,192.168.100.0/24,192.168.50.0/24 remote_ts = 10.30.150.0/24 rekey_time = 600 updown = /usr/local/opnsense/scripts/ipsec/updown_event.py --connection_child cab66875-3b0a-456c-ab01-e5af7fd9a621 } } } 2591fb58-5dad-43d9-a103-9d7b7c7da312 { proposals = aes256-sha256-modp2048,aes256gcm16-sha256-modp2048,aes256gcm16-sha256-x25519,aes256gcm16-sha512-x25519,aes256gcm16-sha256-x448,aes256gcm16-sha512-x448 unique = replace aggressive = no version = 2 mobike = no local_addrs = my.address.com encap = yes rekey_time = 2400 dpd_delay = 30 pools = PoolB send_certreq = yes local-5aaf9149-b04e-4a70-90cf-de79dec755c6 { round = 0 auth = pubkey id = my.address.com certs = 654269e2e801b.crt } remote-c624fb9c-4af8-4942-97ee-2f2bcc66a161 { round = 0 auth = eap-radius id = ConnectionB eap_id = %any groups = GroupB } children { d07262da-5444-4a2d-aaf9-63867367459d { esp_proposals = aes256-sha256-modp2048,aes256gcm16-x25519,aes256gcm16-x448,aes128gcm16-x25519,aes128gcm16-x448,aes256gcm16-sha256-modp4096,aes256gcm16-sha256-x25519,aes256gcm16-sha256-x448 sha256_96 = no start_action = start close_action = none dpd_action = clear mode = tunnel policies = yes local_ts = 192.168.10.0/24,192.168.100.0/24 remote_ts = 10.30.151.0/24 rekey_time = 3500 updown = /usr/local/opnsense/scripts/ipsec/updown_event.py --connection_child d07262da-5444-4a2d-aaf9-63867367459d } } }}pools { PoolA { addrs = 10.30.150.0/24 dns = 192.168.10.1 } PoolB { addrs = 10.30.151.0/24 dns = 192.168.10.1 }}secrets {}# Include config snippetsinclude conf.d/*.conf
children { cab66875-3b0a-456c-ab01-e5af7fd9a621 { esp_proposals = aes256-sha256-modp2048,aes256gcm16-modp2048,aes256gcm16-ecp521,aes256gcm16-x25519,aes256gcm16-x448,aes128gcm16-modp2048,aes128gcm16-ecp521,aes128gcm16-x25519,aes128gcm16-x448,aes256gcm16-sha256-x25519,aes256gcm16-sha256-x448 sha256_96 = no start_action = trap|start close_action = trap dpd_action = clear mode = tunnel policies = yes local_ts = 192.168.10.0/24,192.168.100.0/24,192.168.50.0/24 rekey_time = 600 updown = /usr/local/opnsense/scripts/ipsec/updown_event.py --connection_child cab66875-3b0a-456c-ab01-e5af7fd9a621 }