We could make the same change for charon (actually setting it for charon in strongswan.conf.testing would work for charon-systemd too), however, there are dozens of test cases that currently set charondebug in ipsec.conf.
21 lines
452 B
Plaintext
Executable File
21 lines
452 B
Plaintext
Executable File
# /etc/strongswan.conf - strongSwan configuration file
|
|
|
|
swanctl {
|
|
load = pem pkcs1 x509 revocation constraints pubkey openssl random
|
|
}
|
|
|
|
charon-systemd {
|
|
load = random nonce aes sha1 sha2 hmac pem pkcs1 x509 revocation curve25519 gmp curl kernel-netlink socket-default updown sqlite attr-sql vici
|
|
|
|
plugins {
|
|
attr-sql {
|
|
database = sqlite:///etc/db.d/ipsec.db
|
|
}
|
|
}
|
|
}
|
|
|
|
pool {
|
|
load = sqlite
|
|
database = sqlite:///etc/db.d/ipsec.db
|
|
}
|