# /etc/ipsec.conf - FreeS/WAN IPsec configuration file # basic configuration config setup interfaces=%defaultroute klipsdebug=none plutodebug=none plutoload=%search plutostart=%search uniqueids=yes nat_traversal=yes conn %default keyingtries=0 disablearrivalcheck=no authby=rsasig leftrsasigkey=%cert rightrsasigkey=%cert conn client.vpn.company.com left=%defaultroute leftcert=server.company.com.pem right=%any rightsubnet=vhost:%v4:192.168.4.112/27,%v4:192.168.1.1/24,%all auto=add pfs=yes