When you want all traffic via the tunnel you will also need to change this setting on the SSG side for the destination address to be everything 0.0.0.0/0 instead of your limited resource address previously.
Define the following parameters.
- Name = vpnclient_inbound
- Source Address
- Address Book Entry = Dial-UP VPN
- Destination Address
- New Address = 10.1.2.0/24
- Service = ANY
- Application = None ( means ANY )
- Action = Tunnel
- Tunnel = vpnclient_tunnel [ Auto Key IKE vpn name ]
In addition, you will need to be sure that the pool addresses you created for the vpn client have a valid policy and nat policy to access the internet from the SSG. So it needs to be in the range you already have an internet access and nat policy for, or you need to add a policy that provides that for the pool.