when you click the session under Remote Access Sessions, do you see an IPSec SA established?
we would need some logs from the 3000 for further troubleshotting the issue:
1. Goto Configuration->System->Events->Classes, add IKE, IKEDBG, IKEDECODE, IPSEC, IPSECDBG and IPSECDECODE with sevirities from 1-9 under events to log.
2. Goto Monitoring->Live Event Log and collect the logs and see whether Phase 2 COmpleted message appears or not.
if the phase 2 is complete then you have to check whether you can first ping the vpn client IP from the concentrator itself, if not try adding a static route for the client pool pointing to your default gateway of the 3000.
check whether vpn client pool is not conflicting with any other ipsec tunnel?
also check for routing behind 3000. there can be a firewall issue on the client side as well but you should be able to initiate traffic from the vpn client though.
paste the log here if you are not able to look into it and I can help you.