Hej,
im testing our configuration already working with latest v16.5. We use Digital Certificates in the IPSec-Connections. For Remote Certificate we use the value "External Certificate" and editing the Remote-ID manuelly. With v17 Beta1 you have to select a RemoteCACertficate to verify the External Certificate and you can only select CA-Certifcates with PrivateKey installed. For security reasons, I cannot install the private key of our headquarter-firewall on the branchoffice firewalls.
Please fix this.