# /etc/strongswan.conf - strongSwan configuration file swanctl { load = pem pkcs1 pubkey openssl random } charon-systemd { load = random drbg nonce openssl test-vectors pem pkcs1 curl revocation cmac xcbc ml vici kernel-netlink socket-default updown integrity_test = yes crypto_test { on_add = yes } }