so since it's quiet on the .config front...
http://www.2shared.com/file/GCdey-3L/configtruecryptandnetfilter.htmlChanges from kwave's .config:
1. TrueCrypt 7 related
Device Drivers --->
[*] Block Devices --->
<M> Cryptoloop Support
-*- Cryptographic API --->
{M} GF(2^128) multiplication functions (EXPERIMENTAL)
<M> LRW support (EXPERIMENTAL)
<M> XTS support (EXPERIMENTAL)
<M> RIPEMD-160 digest algorithm
<M> SHA384 and SHA512 digest algorithms
<M> Serpent cipher algorithm
<M> Twofish cipher algorithm
(probably an overkill because PROs don't have that but..

)
[*] Hardware crypto devices --->
<M> Driver HIFN 795x crypto accelerator chips
2. ..and all the netfilter related stuff I could find (so we should be good for NAT and what-not).
BTW, @digitlman - kwave's changes should do what you want to have, guess you'd just have to check if those modules are enough for you.
Could we try the modules out now, WarheadsSE, plz plz plz?
