Hi Jakob, > charon: 06[CFG] peer config match remote: 0 (ID_KEY_ID -> 6b:72:30:35) The peer identity types don't match, the client uses ID_KEY_ID whereas you use FQDN with your rightid setting of > rightid=kr05 Try the following to force the identity type to ID_KEY_ID: rightid=@#6b:72:30:35 Regards, Tobias