# /etc/strongswan.conf - strongSwan configuration file swanctl { load = pem botan x509 revocation constraints pubkey } charon-systemd { load = nonce pem pkcs1 openssl ml revocation constraints pubkey curl kernel-netlink socket-default updown vici rsa_pss = yes }