Thank you both for the replies. Unfortunately disabling split tunneling is not an option as we don't want remote users internet traffic to be routed through the VPN. Red, the method you described is what I have been experimenting with. I must be configuring the static route on our internal network wrong, as my traceroutes to the external site when connected to the VPN don't go past 10.200.200.200 which if I understand is the default server IP of the SA4000. Guess I will need to keep experimenting with the routes on our internal network. I more or less was hoping someone would respond saying they have done it before and it is possible before I waste to much more time on something that isn't even possible.
... View more