I currently have a 3020 VPN concentrator where the public interface is on the DMZ and the private interface is on the internal network.
I am in the process of redesigning it where the public interface will be on the DMZ and the private interface will be on another interface on the firewall.
Will the tunnel default gateway be the firewall interface ip of the private side?
Clients receive the IP on the same subnet as the private interface. I read on some posting that this creates problems. I do not really understand how though.