> With these requirements, I think I'd be taking a good hard look at
> openvpn.
>
> Clients would Openvpn once, and then be able to telnet to the IP's on
> teh other side without any mystery.
>
> http://openvpn.net/
>
Unfortunately I do not have server admin rights to install a server
app thus the desire to stick with an application already in use
(SSHd). No doubt that if I had control of both sides I could do
that.