accesslist ="permit ip any 192.168.1.0 255.255.255.0","permit ip any 192.168.2.0 255.255.255.0","permit ip any 192.168.3.0 255.255.255.0";
192.168.1.0/24,192.168.2.0/24,192.168.3.0/24
(...)phase2remoteid { ipnet { ipaddr = <net1>; mask = <mask1>; } { ipaddr = <net2>; mask = <mask2>; } } phase2ss = "esp-all-all/ah-all/comp-all/pfs"; accesslist = "permit ip any <net1> <mask1>", "permit ip any <net2> <mask2>"; app_id = 0; }