Networking is HARD!

I'm trying to get some of my network traffic permanently going through a network-wide VPN connection. I actually have that set on my Edgerouter with a network group of devices...but they then can't access my locally self-hosted applications which are _not_ going through the VPN! I know it's not a port forward best guess it's a DNAT issue...and it's driving me nuts.

