Pretty sure we're on the same page. 🙂 See screenshots below of the current setup. I have the new group for the local encryption domain. and the remote side is the JAMF_IPSEC_NET which is a /24 of our choosing on the JAMF side.
Showing the new local group for the vpn domain which has all the local FW subnets and problem server I couldn't connect to. On the bottom is the JAMF side and the /24 we created on the webpage in JAMF.Shows the JAMF IP endpoint and the /24 we created.On the JAMF side we pick the subnet we want for the local network. Remote side is 0.0.0.0/0