Hi
Your going to have an access-list already on your router which states which subnets on the router go across the vpn , after you create your new lan subnet vlan etc make sure its not part of that acl so it doesn't get sent down the vpn and breaks out to the internet only as normal
The internet connection is there and your vpn is there already , so its just a matter of creating an new vlan/interface whatever way your setting it up and make sure its not part of vpn traffic