I know this is a bit old, but I've had this problem several times, always find this post, but now I finally discovered an answer! AWS basically has 'strict' policy selection enabled. This means the ASA must have the IKEv2 proposal listed 'first' and ...