I have created a site-to-site vpn tunnel with a vendor and it works, but they have requested that we restrict traffic to a single IP Address that represents out internal network. Basically they want all traffic going through the tunnel to look like it originates from one IP address.
I have a single TMG server with three legs, External, Internal, Perimeter. I could accomplish this with a third party nat device by routing all traffic through it before going through TMG, but I was wondering if it could be accomplished natively with TMG.