Skip to main content
Register the endpoint module in strongSwan’s native PKCS #11 plugin.

Configure the plugin

Setting load_certs = no keeps certificates on the filesystem. The module name futurex must match the module value in swanctl.conf.

Enable a charon log

Verify module loading

The log reports the Futurex library, token slot 0, and a loaded PKCS #11 plugin. The measured library identifies itself to charon as PKCS #11 v3.2.
The message module 'futurex' does not support hot-plugging, canceled does not block a statically configured endpoint.