Static NAT before VPN tunneling

Hello, I would to create a configuration where hosts belonging to LAN network will be translated via static nat before the VPN tunnelling.IS this configuration supported by Mango or Brume 2 platform?
Example:
LAN network 192.168.1.0\24
Host1 192.168.1.1
Host2 192.168.1.2

SNAT:
192.168.1.1 → 10.10.1.1
192.168.1.2 → 10.10.1.2

TUNNELING via IPSEC VPN to remote site

Mango or Brume doesn’t support IPSEC.
Could you draw the topology for a better understanding of your requirement?