When the Fragment Packets option is enabled, this value specifies the largest
non-fragmented packet size allowed. If a packet size is larger than this value,
fragmentation is performed. This setting applies to both IP Packet Pre
Fragmentation and IKE Packet Fragmentation. The default setting for this value
is 540 bytes.
NAT-T Negotiations
Set this value to Enable or Force if you would like the VPN Client IPSEC Daemon
to use the IKE and ESP NAT Traversal protocol extensions. When the value is
set to Enable, the protocol extensions will only be used if the VPN Gateway also
has support and NAT is detected. When the value is set to Force, the protocol
extensions are used regardless of wether or not the VPN Gateway has support
or NAT is detected. The default value for this setting is Enable.
NAT-T UDP Port
Enter the UDP port that the VPN Client Gateway is using for NAT-T services.
The default value for this setting is UDP port 4500.
Keep-Alive Packet Rate
Enter the rate at which the Client IPSEC Daemon should send NAT-T Keep alive
packets. Keep alive packets can help prevent problems from occurring when a
Firewall or NAT exists between the VPN Client and the Peer Gateway. The
default value for this setting is 30 seconds.