DaveVVV,
I also hit a wall attempting to use BEFVP41's for a site to site IPSEC tunnel. Each remote secure group is a private subnet. I wanted my snmp traffic to traverse the IPSEC tunnel to a (semi) public network address(their isp blocks snmp but otherwise its a public address). I found no way to configure the router to direct the traffic into the tunnel. I attempted to enter in static routes but it would just dump the request out the WAN interface (note when entering the static route, all you can reference is WAN or LAN, in a CISCO 3000 series, you can reference the tunnel itself as a gateway) I used a sniffer connected to a hub to verify this. I am currently seeking solutions for this (vpn 3005 fits the need, just a bit pricey) How I would love to find a Linksys priced solution.