I use Tailscale, not OpenVPN, but the principle should be the same. I run Tailscale on my router/firewall (pfSense) then I use firewall and routing rules to point various servers to go out over the VPN or not. I am sure there are ways to do this directly in Proxmox, but I have never explored those.