HiI just resolved an issue with a router and IPSec where I could not communicate via the IPSec tunnel unless I allowed the private addresses at either end of the tunnel through the internet facing access-list, as well as the usual UDP500 (isakmp) and...