Hello Juan,
It is normal that it doesn't work. I tested in my lab by creating a group with the the local and remote subnets of the VPN tunnel; and adding the group to the VPN domain of the "RemoteAccess "community. It was OK but it wasn't enough.
In order to make it work, I had to add the Office Mode subnet (CP_default_Office ...) to the local VPN domain because I was getting the following log :
'Encryption Failure: according to the policy the packet should not have been decrypted'
So I created a group with the local subnet and the Office Mode subnet to be added to the VPN domain of the local site:
data:image/s3,"s3://crabby-images/fffe9/fffe970175a630fcfee4a0b3a53cd1e547fc6bba" alt="Local_VPN_Domain.JPG Local_VPN_Domain.JPG"
Then, I had to authorize the Office Mode subnet, on the remote gateway because the packets finished in the cleanup rule of the remote gateway.
data:image/s3,"s3://crabby-images/8069a/8069a990d5ac2dacb9929fd11f15008ab66e2064" alt="Office_mode_subnet_authorization.JPG Office_mode_subnet_authorization.JPG"
This way from the remote client (on remote access), I was able to access to a PC on the remote site through the VPN tunnel
I hope this will help