There should be an SA for each proxy-id / policy pair. Seems like this is confirmed.
So we are now on step 7 for troubleshooting traffic not passing on an active VPN. You have confimed SA and matching tunnel policies. Now verify the traffic matching the policy shows up in the session table.
If not, we have a policy order problem.
If it does create flows, we need to enable and collect further trace options.
How to troubleshoot a VPN that is up, but is not passing traffic
https://kb.juniper.net/InfoCenter/index?page=content&id=KB10093