we use pfsense virtual appliance in AWS for configuring site to site VPN ONLY. We configure IP NAT within
VPN / IPsec / Tunnels / Edit Phase 2 which is needed across IPSEC VPN tunnel.
These NAT statements do not appear under–> Firewall / NAT / 1:1 (and also not under 'outbound').
Question: if I want to disable firewall function at --> System / Advanced / Firewall & NAT though it says it will disable NAT function too, can I still disable it without affecting my NAT configuration settings under IPSEC VPN?
No. NAT in IPsec is accomplished using pf on interface enc0. Disabling the firewall will also disable that NAT.