Dougnc,
Nope. One of the fundamental rules of security is not to allow something in and then out again on the same interface. It's just bad.
You VPN traffic gets to the PIX, unencrypted and then dropped out on the LAN. It is sourced from the PIX.
You are doing the right thing using a box inside the network to VPN out.
Liberty for All,
Brian