The log shows "NAT Discovery : Peer IPSec Security Gateway behind a NAT/NAPT Device"
03/26/2020 8 16483
DESCRIPTION: The log shows "NAT Discovery : Peer IPSec Security Gateway behind a NAT/NAPT Device"
These messages are sent during initialization of an IKE VPN when NAT Traversal option is enabled. There are some inherent problems while sending IPSec packets through NAT devices. One way to overcome these problems is to encapsulate IPSec packets in UDP. To do this effectively, there is a discovery phase in IKE (Phase1) that tries to determine if either of the IPSec gateways is behind a NAT device. If a NAT device is found, IPSec-over-UDP is proposed during IPSec (Phase 2) negotiation. If there is no NAT device detected, IPSec is used.
Here is the list all possible NAT-Traversal logs during discovery phase.