i don't think the nat-t port can be manipulated.
couple alternatives i can think of is to use tcp over ipsec, and then you will be able to use whatever port you prefer; or you may configure port forwarding on the router/firewall in front of the concentrator.