constellation/dev-docs/howto/vpn/helm/templates/strongswan-secret.tpl

27 lines
520 B
Smarty
Raw Normal View History

{{- define "strongswan.swanctl-conf" }}
connections {
net-net {
remote_addrs = {{ .Values.ipsec.peer }}
local {
auth = psk
}
remote {
auth = psk
}
children {
net-net {
local_ts = {{ .Values.podCIDR }},{{ .Values.serviceCIDR }}
remote_ts = {{ join "," .Values.peerCIDRs }}
start_action = trap
}
}
}
}
secrets {
ike {
secret = {{ quote .Values.ipsec.psk }}
}
}
{{- end }}