hi, some cut'n'paste errors... anyway, it's just an example.
Reyk Floeter wrote:
ap# cat /etc/ipsec.conf flow esp out from 10.0.0.1 to 10.0.0.2 type bypass ike passive esp from 10.0.0.0/30 to any peer 10.0.0.2 \ dstid peer1.wlan.local flow esp out from 10.0.0.5 to 10.0.0.6 type bypass ike passive esp from 10.0.0.4/30 to any peer 10.0.0.5 \
ike passive esp from 10.0.0.4/30 to any peer 10.0.0.6
dstid peer2.wlan.local flow esp out from 10.0.0.9 to 10.0.0.10 type bypass ike passive esp from 10.0.0.8/30 to any peer 10.0.0.9 \
ike passive esp from 10.0.0.8/30 to any peer 10.0.0.10
dstid peer3.wlan.local