I'll to to put this into words.
I have an ACE implementation that is sitting on a 10.210.36.x/24 network. I have an load balancing on the front end poing to 10.210.36.12. I need to NAT this out to the public internet. No problem so far.
But, I also have another certain port that needs to be open that customer will need to be able to upload files through. The files will be required to be encrypted through a VPN tunnel that terminates on the same firewall where I am putting the SSL Nat.
Is it possible to have the VPN tunnel terminate on the outside interface of the firewall and then have the special port NAT'd to the same subnet and maintain the encrypted connection?
Does that make any sense at all?