good afternoon, please help with advice,
mikrotik acts as an initiator of the ipsec connection
/ip ipsec mode-config
add connection-mark=HomeVPN name=HomeVPN responder=no use-responder-dns=no
/ip ipsec policy group
add name=HomeVPN
/ip ipsec profile
add name=HomeVPN
/ip ipsec peer
add address=my.home.com name=HomeVPN profile=HomeVPN
/ip ipsec proposal
add name=HomeVPN
/ip ipsec identity
add auth-method=pre-shared-key-xauth generate-policy=port-strict mode-config=HomeVPN peer=HomeVPN username=HomeVPN012345
/ip ipsec policy
add dst-address=0.0.0.0/0 group=HomeVPN src-address=0.0.0.0/0 template=yes
it is also a responder server ike2
/ip pool
add name=pool1 ranges=10.0.3.2-10.0.3.99
/ip ipsec mode-config
add address-pool=pool1 address-prefix-length=32 name=ike2-modconf split-include=0.0.0.0/0
/ip ipsec policy group
add name=ike2
/ip ipsec profile
add name=profile-ike2
/ip ipsec peer
add exchange-mode=ike2 name=peer-ike2 passive=yes profile=profile-ike2
/ip ipsec proposal
add name=proposal-ike2 pfs-group=none
/ip ipsec identity
add auth-method=eap-radius certificate=1.1.1.1.sslip.io,r10.pem_0 generate-policy=port-strict mode-config=ike2-modconf peer=peer-ike2 policy-template-group=ike2
/ip ipsec policy
add dst-address=10.0.3.0/24 group=ike2 proposal=proposal-ike2 src-address=0.0.0.0/0 template=yes
how route all incoming ike2 connections to the connection ipsec?