@juanki_hd
hi,
it seems to me that, you are using pfSense only......., because of the OpenVPN server
@juanki_hd "I think it would be double NAT?" - (you already have one)
your current system also have dual-NAT configuration
(ISP router to USG = double-NAT, because RFC1918 192.168......172.10.......)
BTW: pfSense has more serious abilities than a USG and is more customizable.
all your problems will be solved, if you put your ISP device in bridge mode and pfSense will replace USG
and USG will be listed on eBay (yeah, joke, but possible)