Hi,

I have installed two servers nw6.5 sp3 with BM3.8 SP3.
One is for Internet connection and the other is for vpn C2S only.
The BM server for internet connection is also the default gw.
The BM for vpn C2S is not in the same container (could this read in Craigs
book).
config:
BM server for internet
public 213.x.x.1
private 192.168.250.1
static route 0.0.0.0-> 213.x.x.2 and
net 192.168.150.0.0 ->192.168.250.10
BM server for vpn
public 192.168.150.1
private 192.168.250.10
static route 0.0.0.0 -> 192.168.150.2
NAT is disabled
Filter is enabled
With imanager the traffic rule is implemented 192.168.250.0 encrypt

If I make a vpn connection NMAS authentication is ok and I can see the
policy.
But it is not possible to ping any ip at the lan.

If I make a testinstallation with only one BM3.8 ping to any ip inside the
lan is no problem.
I think normaly it should work, but maybe there is any additional
consideration necesary.
Any ideas ?