Not what I would call a beginner network LOL.
That is some major work you have!! Bravo, I would be running away LOL
Are the two main routers physically connected by ethernet? If so how have you decided to connect them??
Is the client device configured to use the vpn as default gateway?
Okay post your latest complete config to compare to the diagram etc...........
/export hide-sensitive file=anynameyouwish