то, что expires in 48 seconds - это так и должно быть?
Ну и вот я сразу ошибку вижу:
received NO_PROPOSAL_CHOSEN error notify
Чему равно policy? strict, obey?
It is well known that IKEv1 main mode with PSK authentication just does not work in NAT situations! Please switch to IKEv2 if the peer supports it or use certificate-based authentication.