# /etc/strongswan.conf - strongSwan configuration file swanctl { load = pem pkcs1 x509 pubkey openssl random } charon-systemd { load = test-vectors pem pkcs1 random nonce openssl curl revocation xcbc vici stroke kernel-netlink socket-default updown integrity_test = yes crypto_test { required = yes on_add = yes } }