Connection between interfaces with IPSEC

Hi guys

I have a router rb951, with two LANs 172.30.22.0/24 and 172.22.94.0/24 on it. it networks are choice for the client so can’t be change.
i just configure a IPSEC tunnel to a remote fortigate, the problem is that the client need to route the entire network 172.16.0.0/12 on the tunnel so when i configure the tunnel working good but i don’t have connection between networks 172.30.22.0/24 and 172.22.94.0/24 all the traffic goes to the tunnel and not between interfaces

the NAT has a NO-NAT over interfaces 172.22.94.0 and 172.30.22.0

I dont want to make all the subneting to exclude the internal networks SO ANY IDEA to how can be exclude of he tunnel
some pic attachment

thanks.
Christian Z
02.png
01.png
04.png
03.png