If given the choice, I would change to IKEv2. I don't see any point in continuing to use the legacy IKEv1 unless you have to.
You could also change to using certificate authentication (a bit painful to setup).
You could also simple use nice long strong random pre-shared keys. Once you get up to 24 characters long they are almost impossible to hack.