ipsec router behind microtik on same ip address

Hello,

we have only one public IP address.
Currently, we have configured multiple IPSec VPN Side to Side tunnels in routeros directly.
Now a customer would like to send send me a managed hw box where a ipsec Side to Side tunnel ist configured.


XXXXXXXXX
                                                                            XX        XX  XXXXXXX
    +------------------------+         +---------------------+              X          XXXX      XXXXX
    |                        |         |                     |            XXX                        X
    |   Customer HW Box      +---------+   Mikrotik Router   +--------+XXXX                          X
    |                        |         |                     |         X                           XXX
    |   1 IPSec S2s Config   |         |  7 IPSec S2S tunel  |         XX      Internet           XX
    |                        |         |                     |          XX                         X
    +------------------------+         +---------------------+           XX                        X
                                                                        XX                 X      XX
                                                                         XXXX           XXXXXX  XX
                                                                            XXXXXX   XXXX    XXX
                                                                                 XXXX

Is it possible to route all incoming traffic from a specific IP address to the hw box before the mikrotik ipsec configuration will handle the traffic?

Of course. Through destination nat.