netmap without interface?

I’m facing the same problem which has been solved here before: http://forum.mikrotik.com/t/nat-1-1-mapping-using-netmap/97241/1
But I have to use pure IPSec/IKE2 for the site-to-site VPN, so I don’t have an in- or out-interface I could use in the netmap rules or ip route.
Is there any workaround for this case?

You don’t need interfaces for this, src/dst-address is enough.