# /etc/strongswan.conf - strongSwan configuration file swanctl { load = pem botan x509 revocation constraints pubkey } charon-systemd { load = nonce test-vectors botan pem x509 revocation constraints pubkey curl kernel-netlink socket-default updown vici rsa_pss = yes integrity_test = yes crypto_test { on_add = yes } }