Looking at your config you are missing something from the authentication sections.
You've set the pre-shared key but no IDs (think: who am I and who are you).
https://help.ui.com/hc/en-us/articles/115013382567-E...
shows a couple of ways (either/or) of setting the (local-) id and remote-id that will be used by each end.
The article is also an example of when one side is behind NAT when deciding what to use as an ID.
If the Fritzbox does not expose the IDs and just configures them based on other information provided, you'll need to figure out what it uses.
Could be IP addresses, FQDNs (AVM call it those a web address which is confusing because it is not a URL) or some other unique label.
I still think you'll need to watch the ER-X VPN logs while connecting to see if the responses provide remaining hints.
prlzx on Zen: FTTC (VDSL) at ~40Mbps / 10Mbps
with IP4/6 (no v6? - not true Internet)
Edited by prlzx (Sat 31-Jul-21 15:42:45)