Hi Joseph,
Can you attach the configs of both end ASA devices between which the tunnel is built. Also, once you are connected to the Anyconnect clinet to the HQ ASA, please get the following outputs:
--show vpn-sessiondb detail anyconnect filter name (for post 8.3code running on the ASA )
or --show vpn-sessiondb detail svc filter name (for pre 8.3 codes running on the ASA)
Bsically we need to verify the config first.. In the Lan to Lan tunnel config the pool ip address which the client gets should be configured. With Proper nat statements in place U-turning the traffic to remote sites should work fine
Thanks,
Ankit Sharma