problems with masquerade ??

Hi all, first sorry for my terrible english, and now i start to
explain my problem.


router <--->Firewall <--> Lan

I did NAT in ther router to the firewall and in the firewall y do
MASQUERADE  for the LAN,  i redirect with DNAT traffic 1723 to a VPN
server in the lan BUT if i do the test with my laptop in the net
between router-Firewall I can access to the vpn server, but if i try
to do the same from internet doesn't works.

Any idea??


