IKEv2 AUTH test. The certs are valid but both ends use an explicit ID, not the cert ID. These IDs may only be trusted if they appear as subjectAltName (SAN) on the certificate. Since the cert RDN's match the id= configuration, the connection should succeed.