set type dynamic set interface "port1" set ike-version 2 set peertype
any set proposal aes128-sha256 aes256-sha256 aes128-sha1 aes256-sha384
aes128gcm-prfsha256 set dpd on-idle set dhgrp 20 19 14 set reauth enable
set idle-timeout enable set psksecre...
Emoc. Thank you so much for helping me. I have a same setup against
Cisco ASA, PAN and StrongSwan as well as Fortigate. Cisco ASA, PAN and
StrongSwan works. :) The last pieces is Fortigate.
Strongwan set ikev2 as a default.From my original post. ike
0:d740acea5f4716a4/0000000000000000:4901: responder received SA_INIT msg
ike 0:d740acea5f4716a4/0000000000000000:4901: received notify type
NAT_DETECTION_SOURCE_IP ike 0:d740acea5f4716a4/000...