Hello everyone!
I have a problem with a tunnel. I used ipsec_pki for tunnel and I have some issues... the debug look like ...

crypto pki trustpoint enode - router certificate which is sign by CA
enrollment terminal pem
serial-number none
ip-address none
subject-name CN=xxxxx
subject-alt-name CN=xxxxx
revocation-check crl
rsakeypair xxxkey
I have a valid CA and subCA and first time I did the trustpoint for them before to generate CSR.
the partner have just CA. Could be a cause for this logs ?