1 cd /etc/strongswan/ipsec.d/
2 strongswan pki --gen --type rsa --size 4096 --outform pem \
3 > private/strongswanKey.pem
4 chmod 600 private/strongswanKey.pem
5 strongswan pki --self --ca --lifetime 3650 \
6 --in private/strongswanKey.pem --type rsa \
7 --dn "C=JP, O=ROB-VPN-JP, CN=207.148.98.140" \
9 > cacerts/strongswanCert.pem