IKEv2 AUTH test. The certs are valid but both ends use an explicit ID, not the cert ID. These IDs may only be trusted if they appear as subjectAltName (SAN) on the certificate. One of the id= settings is for NOTeast, and so the RDN mismatch should cause the connection to fail.