I currently have site to site VPN configured which works fine with the exception of policy NAT. I want to be able to policy NAT traffic coming out of the VPN tunnel destined for the internal network. For instance traffic from remote subnet x.x.x.x ...