You mean use a pix 501 instead of the software client? Not likely - pixen don't do SSL "vpns". Even if it that client is an IPSec client, they could be using not standard extensions, or authentication hardware that a pix cannot use to originate a connect (RSA securid, etc)