@Family_AM
To further refine the above correct answer, this is exactly what I do. I have created a LAN network, assigned it to it's own VLAN, mapped that VLAN to a dedicated physical port on my SG2008P switch and then created a policy route for the LAN subnet that forces its default route to be my L2TP/IPsec client (will show up in the WAN options for the policy route). I also enabled 'Guest Network' to prevent any local access to my private IPs.
This allows me to forward all traffic from that port (and also SSID if you map the subnet to an SSID as I do) via the VPN tunnel. I have tested this with an IPTV box and it works just like it would at the far end site.
At time of writing, I believe only the L2TP VPN will allow you to route multiple subnets across a tunnel. The OpenVPN implementation on my ER605's is still very much a single client IP. I also have to use Client/Server implementations as one end of my VPN is NAT'd.