• This option performs NAT on VPN control connections to and from this object. This makes it possible to install a policy or collect logs across a NAT gateway. This object must be either a Security Management server or a Log Server.