Custom VPN Policy to route subnet IPs to VPN

I have a GL-MT3000 that's connected to my remote wireguard server and I want to route traffic on a subnet to the wireguard server while all other traffic goes to the normal internet

The router assigns IPs on 192.168.8.x and I'd like to access peers on my wireguard server on 192.168.7.x

I've connected to my wireguard server like this:

And my proxy settings look like this


When I ssh into the router, I can ping the server

However devices connected to the router cannot ping that IP

If you already have allowed ips configured in your profile, you don't need to configure policy mode, select global mode and see if that works?