Hi, > And the scheme detected is SIGN_RSA_EMSA_PKCS1_NULL 0x1 You can't use IKEv1 with TPM 2.0 because the latter doesn't support the former's legacy signature schemes. Regards, Tobias