Hello Roland,
Try this
no access-list 115 permit ip 192.168.1.0 0.0.0.255 192.168.5.0 0.0.0.255
no access-list 115 deny ip 192.168.5.0 0.0.0.255 any
ip access-list extended NAT
deny ip 192.168.5.0 0.0.0.255 192.168.1.0 0.0.0.255
permit ip 192.168.5.0 0.0.0.255 any
no ip nat inside source list 1 interface Dialer0 overload
ip nat inside source list NAT interface Dialer0 overload
no access-list 101 deny ip any any
access-list 101 permit esp any host "yourpublicIPhere"
access-list 101 permit ahp any host "yourpublicUPhere"
access-list 101 permit udp any host "yourpublicIPhere" eq isakmp
access-list 101 permit udp any host "yourpublicIPhere" eq non500-isakmp
access-list 101 deny ip any any
Regards