Seeing if anyone can help with an issue. we have a Cisco 5510 with 8.2.1 and running both a phone proxy and ipsec site to site vpns. the asa sslphone proxy works fine for any lan and wan sites ( mpls) behind the asa. that is not an issue. and lan / wan phones can reach all pnoes at sites connected via the ipsec vpn's. no issue. the issue is that when an ssl phone proxy attached external phone attempts to call another ip phone at a remote site the call fails no VOICE. It appears as if the ASA does not hairpin or route traffic out from the ssl phone proxy back out the interface to the vpn tunnel. Note I am ponly using a single global media termination address which is external. ( not one where I can put one on each interface) If anyone has done an ssl phone proxy coming in and then hairpinning back out an ipsec site to site vpn tunnel connection please let me know and if you can share a sanitized sample config it would be appreciated. this one is frustrating me. Thank you.