There is a page at the strongswan site that talks about different options for route-based tunneling (Google it), which is what I think you want... You could tie the IP Xfrm activity to a virtual interface... Vti-based, xfrm-based, or tun-tap based.I think you may want to look at that.Also, is there a reason your specifically choosing ikev1, as opposed to ikev2 in your config?
__attachment_message__1584717838827.eml
Description: application/eml