I think I reported this in the earlier v8 beta stage, but today we are facing the same issue with the 7.911 update.
When using RSA as the authentication method to connect to a v7.504 astaro through a Site 2 Site IPSec connection, the VPN always reports things like:
2010:05:21-00:09:08 FW pluto[3630]: "VPN"[818] IPADDRESS-v8WAN:4500 #3051: responding to Main Mode from unknown peer IPADDRESS-v8WAN:4500
2010:05:21-00:09:08 FW pluto[3630]: "VPN"[818] IPADDRESS-v8WAN:4500 #3048: max number of retransmissions (2) reached STATE_MAIN_R2
2010:05:21-00:09:08 FW pluto[3630]: "VPN"[818] IPADDRESS-v8WAN:4500 #3051: NAT-Traversal: Result using RFC 3947: peer is NATed
2010:05:21-00:09:08 FW pluto[3630]: "VPN"[818] IPADDRESS-v8WAN:4500 #3051: Peer ID is ID_FQDN: '@RSA_HostID'
2010:05:21-00:09:08 FW pluto[3630]: "VPN"[818] IPADDRESS-v8WAN:4500 #3051: Signature check (on @RSA_HostID) failed (wrong key?); tried *AQOctsYAa
2010:05:21-00:09:08 FW pluto[3630]: "VPN"[818] IPADDRESS-v8WAN:4500 #3051: sending encrypted notification INVALID_KEY_INFORMATION to IPADDRESS-v8WAN:4500
I tried using PSK, and in the first VPN tunnel to our first v8 machine, it worked, but for some reason (which I'll post in the v7 VPN list) setting the PSK config isn't allowed??? so, I can't use that as a backup right now?
Is this an open bug, or is there a solution for it?
Thanks for refreshing my memory...