IPSec with moře subnets (SAs)

Hello,

I have a problem with site to site VPN.

ccr1036 X 750Gr3, both 6.42.6

First SA is 10.13.0.0/8 against 10.13.151.0/24

Second SA is 10.10.10.1 against 10.10.10.2
(for EoIP and transparent L2 for some VLANs)

It is working only one SA (subnet). The first used.

And yes, I have “unique”, ESP, tunnel.

Has somebody working more SAs with one peer with 6.42.6?

Thank you

ToVa

Yes, multiple SAs, one per policy, between the same pair of peers work normally for me with exchange-mode=ike2, on 6.42.6 among other versions.