Hello,
i use a "User Group Network" object in the Network Securty Firewall alias Packet filter for Users with "Remote Access". After I'm connected with e.g. L2TP or SSL VPN it takes around five minutes until my packets from the vpn gets thru. In this time i can see them in the live log as Default DROP. In the context menu of the user group its says knowing IP addresses of users 1 IP v4 address. And than my packet filter rule 'goes on' an the packets are passed thru.
Regards,
Daniel