I am almost positive that you can't block seeing where the packets are going/comming from. Am I wrong? I know the reason has to do with troubleshooting and security issues but I was wondering if you guys could explain further on the subject. [/B]
No, you are right. You cant hide ip/port from the the tunnels' ends. If the guy are using his own machine for tunnel start, all packets will depart from his machine (and with his ip).
The only way to hide source ip/port is using another machine and tunnel the traffic thru that.