Hi,
IPSec uses the ESP IP protocol (not port) and UDP port 500 (isakmp) and might use the AH IP protocol.
If you use Nat-T then you need UDP port 500 (isakmp) and UDP port 4500 (originally UDP port 10000). With Nat-T there is no need for the ESP and AH protocols.
Regards, Frank