VPN tunnel encryption method

Question asked by Ray Hugh on Mar 6, 2018
I'm not sure if this is in the right section, but this is the closest I can find.


I am trying to set up an IKE v2 tunnel on R75.20.  I see inbound and outbound SAs when I use the vpn tu command.  However, in the log, it shows as dropped because there is no valid SA, and I see that it is trying to do AES256/SHA1 even though it's set up as AES256/SHA256.