An IPsec AH transport-mode connection using HMAC_SHA256 between the hosts moon and sun is successfully set up using IKEv1. leftfirewall=yes automatically inserts iptables-based firewall rules that let pass the decrypted IP packets. In order to test the host-to-host connection moon pings sun.