Currently, the VPN object has the following limitations:
All certificates on the gateways of a particular VPN must be of the same strength. If you want to have different encryption strengths in your configuration, you must define multiple VPNs, one for each strength.
The key, data, and MAC algorithms must be the same for all gateways within a VPN.