Install the certificates
Configure the token credential
The following command reads the endpoint password and CKA_ID from their protected files. It writes both values into the root-only strongSwan credential file without printing them.Load the key
The output includes
load-token reply {success=yes ...}. The charon log includes loaded RSA private key from token.
