ok, it turns out using the DHCP server from the remote LAN to give me an IP address was the problem. I removed the IKE config mode (pool) and specified in the NetDefend client IP to use the "local IP" and voila I was connected.. Kinda makes sense... Now, it has two disparate networks to route between... anyways, thanks to those that responded..