This is a manual which I used to do what you want to achieve:https://www.reddit.com/r/PFSENSE/comments/6edsav/how_to_proper_partial_network_vpn_with_kill_switch/It's for pfSense but it's really easy to adopt it.
You need an Outbound NAT rule on the VPN Interface to masquerade outgoing traffic with the ip address of your VPN interface