IKEv2 IPSec - no dynamic route entries

Hi All,

sorry if it’s noob’s question. But I could findn’t an answer myself.
I’ve got IKEv2 VPN setup and running between two Mkrotiks.
Client Mikrotik have dynamic NAT entries. It also has routing entry for the endpoint IP assigned by the headend Mikrotik.
However, what strucks me is that there are no routing entries for the headnet subnets advertised by the server and for which I have dynamic source NAT in the client device.
Yet, all traffic is flowing like a charm.
And I do have injected dymnaicl local routes if I connect any other IKEv2 client. But not with Mikrotik.

Then how the hell Mikrotik knows that a particular subnet needs to be routed via IPSec tunnel (and then source NATed)?