Less complex and easier on firewall traversals.

Easier from performance point of view? Thanks.

I think IPSec needs special treatment when it comes to NAT port forwarding. WireGuard claims this is not necessary with wireguard.

