Go the other way, make vpn default gw but route all known ports http, https, dns etc to vlan2 gw, and you won't need to deal with reverse dnat since you usually don't get incoming traffic for that. EDIT: Forgot that transmission sends http, https as well to trackers so that won't help hide IP from trackers, but should cover all the torrent

Configuring a Cisco ASA 5505 with static routes over a VPN The concentrator is plugged into a MPLS network where it know how to route those networkshowever on the private .201/24 I cannot get it to pass this traffic over the tunnel to the gateway. On the ASA, there is a section for routes which i have assigned all to go over the and chose VPN tunnel.

