set interfaces ethernet eth1 address '192.0.2.2/30' set vpn ipsec esp-group ESP-GRP compression 'disable' set vpn ipsec esp-group ESP-GRP lifetime '1800' set vpn ipsec esp-group ESP-GRP mode 'tunnel' set vpn ipsec esp-group ESP-GRP pfs 'enable' set vpn ipsec esp-group ESP-GRP proposal 1 encryption 'aes256' set vpn ipsec esp-group ESP-GRP proposal 1 hash 'sha1' set vpn ipsec ike-group IKE-GRP ikev2-reauth 'no' set vpn ipsec ike-group IKE-GRP key-exchange 'ikev1' set vpn ipsec ike-group IKE-GRP lifetime '3600' set vpn ipsec ike-group IKE-GRP proposal 1 encryption 'aes256' set vpn ipsec ike-group IKE-GRP proposal 1 hash 'sha1' set vpn ipsec ipsec-interfaces interface 'eth1' set vpn ipsec site-to-site peer 192.0.2.1 authentication mode 'pre-shared-secret' set vpn ipsec site-to-site peer 192.0.2.1 authentication pre-shared-secret 'SeCrEt' set vpn ipsec site-to-site peer 192.0.2.1 connection-type 'respond' set vpn ipsec site-to-site peer 192.0.2.1 ike-group 'IKE-GRP' set vpn ipsec site-to-site peer 192.0.2.1 local-address '192.0.2.2' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 0 allow-nat-networks 'disable' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 0 allow-public-networks 'disable' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 0 esp-group 'ESP-GRP' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 0 local prefix '10.2.1.0/24' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 0 remote prefix '10.1.1.0/24' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 1 allow-nat-networks 'disable' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 1 allow-public-networks 'disable' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 1 esp-group 'ESP-GRP' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 1 local prefix '10.2.2.0/24' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 1 remote prefix '10.1.2.0/24' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 2 allow-nat-networks 'disable' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 2 allow-public-networks 'disable' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 2 esp-group 'ESP-GRP' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 2 local prefix '10.2.3.0/24' set vpn ipsec site-to-site peer 192.0.2.1 tunnel 2 remote prefix '10.1.3.0/24'