Example based on following versions:

# Racoon IKE daemon configuration file.
# See 'man racoon.conf' for a description of the format and entries.
path include "/etc/racoon";
path pre_shared_key "/etc/racoon/psk.txt";
path certificate "/etc/racoon/certs";
# CP VPN-1
remote 1.2.3.4
{
exchange_mode main;
lifetime time 24 hour;
certificate_type x509 "/etc/ipsec.d/certs/freeswan-cert.pem" "/etc/ipsec.d/private/freeswan-key.pem";
ca_type x509 "/etc/ipsec.d/cacerts/checkpoint-internal-ca.pem";
peers_identifier address 1.2.3.4;
peers_certfile x509 "/etc/ipsec.d/certs/checkpoint-cert.pem";
verify_identifier on;
proposal {
encryption_algorithm 3des;
hash_algorithm md5;
dh_group 2;
authentication_method rsasig;
}
}