Mmmm... NAT Passthrough will cause some problems, sure. The only way to diagnose that is with Port Mirroring and some software to take that info and point you in the right direction, such as Wireshark.
However, I would suggest to not use an IP Masquerade, as you are now. Easiest to do is...