Wow, I've been tearing my hair out for the past 3 hours trying to figure out why my VPN didn't work over the WAN. Turns out a Macbook on the network decided to steal port 4500. Adding the ACL to prevent UPnP giving away that port instantly fixed the issue! Many thanks.
↧