# /etc/strongswan.conf - strongSwan configuration file swanctl { load = pem wolfssl x509 revocation constraints pkcs1 pubkey } charon-systemd { load = nonce test-vectors kdf pem wolfssl x509 revocation constraints pkcs1 pubkey curl kernel-netlink socket-default updown vici rsa_pss = yes integrity_test = yes crypto_test { on_add = yes } }