This is not a problem. Don't worry about it. Non IPSec packets will not be able to pass through the Router to the LAN. My guess is that these packets relate to phase 1 SA initialization offers which have to clear, because no encryption policy has bee...
I have not studied the provided configs, so I do not claim to understand the enviroment or the nature of this problem, but I do have something to add. I use the command 'ip route-cache' in several of my VPN configs. In particular, I have found this c...
You can terminate a VPN on any interface. You can even apply crypto maps to every interface independantly. Also note, the name 'dmz' is just a tag. You could rename the Interface to 'VPN'. I suspect your problem is with Routing. If you are tunneling...
Alternatively, I have had success with using WINS. Also, a properly configured DNS in a Win2K environment should eliminate the need for WINS, but for simplicity WINS will work.