Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Unlike Cisco IOS/ASA, you don't need to create ACLs manually to allow VPN traffic. Just setting up the tunnel will automatically allow and NAT exempt such traffic.
Regarding the disappeared NAT-T setting, that is indeed weird. Not sure if the reboot ...
That setup is supposed to work, so you might want to try again. Otherwise you can also back up the config file and open a support case to check where the problem is.