the routing looks ok as far as I can see. Your local network is 192.168.2.x and you have an outside IP address of 24.xxx.?????
However, routing in itself is nothing really to do with port forwarding.....
You need to find some page which will enable you to port forward 5900 (I think that's VNC right?) from 24.xxx.???? coming in to 192.168.2.5 port 5900
I do it on my OpenBSD firewall, routing 22 (ssh) to an internal box. From there I can get to the rest, including VNC'ing to any windows boxen. SSH takes care of the rest of the tunneling
Bok