Hi, I'm trying to set up a NAT-T IPSec VPN with one of my client.
Is this configuration ok on ipsec.conf for NAT-T?
ike esp \
from 10.85.98.16/29 to {10.249.0.0/21} \
peer <IP CLIENT> \
main auth hmac-sha1 enc aes-256 group modp1536 lifetime 86400 \
quick auth hmac-sha1 enc aes-256 group modp1536 lifetime 86400 \
srcid "<MY PUBLIC IP>" \
psk "********"
Something else to force NAT-T?
Thanks by advance,
Sébastien

