Hi all,
after further testing with personell on the peer side, we finally solved it.
We tested differenet proposals and policy-object and finally another server on the peer-side.
Finally traffic flew as intended both encrypted and decrypted.
Thanks for all your suggestions.