# /etc/strongswan.conf - strongSwan configuration file charon { load = random nonce pem pkcs1 x509 revocation openssl curl vici kernel-netlink socket-default updown multiple_authentication = no x509 { enforce_critical = no } }