# /etc/strongswan.conf - strongSwan configuration file libimcv { plugins { imc-os { push_info = no } imc-swid { swid_directory = /usr/share swid_pretty = yes } } } libtls { suites = TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 } pt-tls-client { load = revocation constraints pem openssl curl nonce tnc-tnccs tnc-imc tnccs-20 }