So, I can forward UDP ports 4500 and 500 with no issues. But when I attempt to forward AH, ESP, and GRE, it rejects the NAT commands. In sites where I have a /29, this is easy, I assign static NAT, allow traffic, done.
So,
one global IP address on ...