- # /etc/strongswan.conf - strongSwan configuration file
- charon-systemd {
- load = random nonce aes sha1 sha2 pem pkcs1 curve25519 gmp dnskey pubkey unbound ipseckey hmac vici kernel-netlink socket-default updown resolve
- plugins {
- ipseckey {
- enable = yes
- }
- unbound {
- trust_anchors = /etc/swanctl/dnssec.keys
- }
- }
- }
|