// This is an automatically generated code sample.
// To make this code sample work in your Oracle Cloud tenancy,
// please replace the values for any parameters whose current values do not fit
// your use case (such as resource IDs, strings containing ‘EXAMPLE’ or ‘unique_id’, and
// boolean, number, and enum parameters with values not fitting your use case).

package main

import (
	"context"
	"fmt"

	"github.com/oracle/oci-go-sdk/v65/common"
	"github.com/oracle/oci-go-sdk/v65/core"
	"github.com/oracle/oci-go-sdk/v65/example/helpers"
)

func ExampleCreateIPSecConnection() {
	// Create a default authentication provider that uses the DEFAULT
	// profile in the configuration file.
	// Refer to <see href="https://docs.cloud.oracle.com/en-us/iaas/Content/API/Concepts/sdkconfig.htm#SDK_and_CLI_Configuration_File>the public documentation</see> on how to prepare a configuration file.
	client, err := core.NewVirtualNetworkClientWithConfigurationProvider(common.DefaultConfigProvider())
	helpers.FatalIfError(err)

	// Create a request and dependent object(s).

	req := core.CreateIPSecConnectionRequest{CreateIpSecConnectionDetails: core.CreateIpSecConnectionDetails{CompartmentId: common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-compartmentId-Value"),
		CpeId:                  common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-cpeId-Value"),
		CpeLocalIdentifier:     common.String("EXAMPLE-cpeLocalIdentifier-Value"),
		CpeLocalIdentifierType: core.CreateIpSecConnectionDetailsCpeLocalIdentifierTypeIpAddress,
		DefinedTags:            map[string]map[string]interface{}{"EXAMPLE_KEY_m34yX": map[string]interface{}{"EXAMPLE_KEY_Z0i0r": "EXAMPLE--Value"}},
		StaticRoutes:           []string{"EXAMPLE--Value"},
		DisplayName:            common.String("EXAMPLE-displayName-Value"),
		DrgId:                  common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-drgId-Value"),
		FreeformTags:           map[string]string{"EXAMPLE_KEY_uePc4": "EXAMPLE_VALUE_bRpfLu2zBt4LqqcjBYvB"},
		TunnelConfiguration: []core.CreateIpSecConnectionTunnelDetails{core.CreateIpSecConnectionTunnelDetails{DrgRouteTableId: common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-drgRouteTableId-Value"),
			EncryptionDomainConfig: &core.CreateIpSecTunnelEncryptionDomainDetails{CpeTrafficSelector: []string{"EXAMPLE--Value"},
				OracleTrafficSelector: []string{"EXAMPLE--Value"}},
			IkeVersion:     core.CreateIpSecConnectionTunnelDetailsIkeVersionV1,
			OracleTunnelIp: common.String("EXAMPLE-oracleTunnelIp-Value"),
			PhaseOneConfig: &core.PhaseOneConfigDetails{IsCustomPhaseOneConfig: common.Bool(true),
				LifetimeInSeconds:       common.Int(277),
				AuthenticationAlgorithm: core.PhaseOneConfigDetailsAuthenticationAlgorithmSha2384,
				DiffieHelmanGroup:       core.PhaseOneConfigDetailsDiffieHelmanGroupGroup20,
				EncryptionAlgorithm:     core.PhaseOneConfigDetailsEncryptionAlgorithm256Cbc},
			BgpSessionConfig: &core.CreateIpSecTunnelBgpSessionDetails{OracleInterfaceIp: common.String("EXAMPLE-oracleInterfaceIp-Value"),
				OracleInterfaceIpv6:   common.String("EXAMPLE-oracleInterfaceIpv6-Value"),
				CustomerBgpAsn:        common.String("EXAMPLE-customerBgpAsn-Value"),
				CustomerInterfaceIp:   common.String("EXAMPLE-customerInterfaceIp-Value"),
				CustomerInterfaceIpv6: common.String("EXAMPLE-customerInterfaceIpv6-Value")},
			NatTranslationEnabled: core.CreateIpSecConnectionTunnelDetailsNatTranslationEnabledDisabled,
			OracleInitiation:      core.CreateIpSecConnectionTunnelDetailsOracleInitiationResponderOnly,
			PhaseTwoConfig: &core.PhaseTwoConfigDetails{IsCustomPhaseTwoConfig: common.Bool(true),
				IsPfsEnabled:            common.Bool(true),
				LifetimeInSeconds:       common.Int(137),
				PfsDhGroup:              core.PhaseTwoConfigDetailsPfsDhGroupGroup2,
				AuthenticationAlgorithm: core.PhaseTwoConfigDetailsAuthenticationAlgorithmSha1128,
				EncryptionAlgorithm:     core.PhaseTwoConfigDetailsEncryptionAlgorithm128Gcm},
			Routing:                   core.CreateIpSecConnectionTunnelDetailsRoutingBgp,
			SharedSecret:              common.String("EXAMPLE-sharedSecret-Value"),
			AssociatedVirtualCircuits: []string{"EXAMPLE--Value"},
			DisplayName:               common.String("EXAMPLE-displayName-Value"),
			DpdConfig: &core.DpdConfig{DpdTimeoutInSec: common.Int(719),
				DpdMode: core.DpdConfigDpdModeRespondOnly}}}},
		OpcRetryToken: common.String("EXAMPLE-opcRetryToken-Value")}

	// Send the request using the service client
	resp, err := client.CreateIPSecConnection(context.Background(), req)
	helpers.FatalIfError(err)

	// Retrieve value from the response.
	fmt.Println(resp)
}