This looks awesome! I hope it is usable for client VPN as well.
The only other thing that could make it even better is if it supported either adding DHCP hosts to the local zone or DNS registration (allowing machines to self-register in DNS). That would allow VPN clients to talk to internal hosts by DNS name.
This would be great for small companies that don't have Active Directory, and rely on broadcast name resolution systems when on WiFi or LAN to find servers, NASes, IoT devices, etc.