{ # Add my private PKI's CA certificate to the system-wide trust store. security.pki.certificateFiles = [ ../../certs/ecc-ca.crt ]; }