[ no | default ] ipsec option nat-t
Command introduced before JUNOSe Release 7.1.0.
Enables IPSec Network Address Translation Traversal (NAT-T) for the current virtual router. With NAT-T enabled, IPSec traffic flows transparently through a NAT device, thereby allowing one or more remote hosts located behind the NAT device to use secure L2TP/IPSec tunnels to access the router. The ipsec option nat-t command affects only IKE SAs negotiated on this virtual router after the command is issued; it has no effect on previously negotiated IKE SAs. The no version disables NAT-T for the current virtual router. The default version restores the default NAT-T setting, enabled.
Global Configuration