Thank you for your patience.
Making progress.
ad. 1. I corrected my policy according to your advice. So now the configuration is:
Untrust to Trust
- Name = vpnclient_inbound
- Source Address
- Address Book Entry = Dial-UP VPN
- Destination Address
- New Address = 0.0.0.0/0
- Service = ANY
- Application = None ( means ANY )
- Action = Tunnel
- Tunnel = vpnclient_tunnel [ Auto Key IKE vpn name ]
- NAT enabled
Now when connecting with the "tunnel all" option I can access local network resources, but access to the internet does not work. Neither does pinging the internet.
ad. 2. As for ip pool, I know what address you are talking about. My point is that when I create a pool, I have no option of specyfying whether this pool can be /24 or /32. That is what I am asking and that is what I need, since my internal network is /24. When vpn pool is always /32, I will not be able to connect to /24 internal network (or am I mistaken???) without any special settings, I guess.
Thank you!