Hi everyone,
Thanks so much for the help. I was hoping it was something small I've missed and I think echidov was right. Every time I tested I would connect the client and then try to ping that client from the internal network which would fail. Then I'd go back and ping from the connected client and wonder why traffic would only flow in one direction.
If I ping from the connected client to bring up the SA, then try to access the conencted client from the internal network everything would work. Small little detail that the internal network can't bring up the SA, but one I won't forget any time soon.
Thanks for the help everyone. 🙂