A bit of a curly one. I have a small network of routers that are all connected back to a single site via a crypto-map and matching subnets in ACL's. In addition, I have an inbound static TCP NAT rule on the same inbound interface to a host on the i...