Hi,
Yes, you could directly access the PC at the remote site from the Hub. Below is some info on VPN3002 NEM and this concept should apply for all EZVPN Implementation in NEM. Also, if you chose to deploy NEM, make sure that there are no overlapping remote subnets.
Network Extension mode allows the VPN 3002 to present a single, routable network to the remote private network over the VPN tunnel. IPSec encapsulates all traffic from the VPN 3002 private network to networks behind the central-site VPN Concentrator. PAT does not apply. Therefore, devices behind the VPN Concentrator have direct access to devices on the VPN 3002 private network over the tunnel, and only over the tunnel, and vice versa. The VPN 3002 must initiate the tunnel, but after the tunnel is up, either side can initiate data exchange.
http://www.cisco.com/en/US/products/hw/vpndevc/ps2286/products_getting_started_guide_chapter09186a008015ce60.html#1278289
Regards,
Arul
** Please rate all helpful posts **