I.E host 192.168.200.1 => next hop => send traffic to VPN_int_1host 192.168.200.2 => Next hop => sent traffic to VPN_int_2
You have to create a gateway with the P2P IP (mark as far gateway) and then set this gateway in firewall rule
It's allowed, but the one-liner makes the same. You dont have to assign interfaces (which can brake system). Create a gateway and mark as far (since there is no IF) .. then you can set in firewall rules as you described yourself..