The purpose is to have all my home web traffic exit the VPS Mikrotik. I think it is essentially pretty close to this: https://wiki.mikrotik.com/wiki/Routing_through_remote_network_over_IPsec So using that diagram, my intent is to route 80,443 from workstations on 10.10.10.0/24 out the other GW of 1....