# /etc/strongswan.conf - strongSwan configuration file swanctl { load = pem wolfssl x509 revocation constraints pkcs1 pubkey } charon-systemd { load = nonce pem wolfssl x509 revocation constraints pkcs1 pubkey curl kernel-netlink socket-default updown vici rsa_pss = yes }