On Cisco Configuration :

NAT statements added for external addresses
:

ip nat inside source list NAT interface FastEthernet4 overload
!
ip access-list extended NAT
permit udp host 194.62.42.150 host 213.123.196.140 eq 50561
permit udp host 194.62.42.150 host 213.123.197.21 eq 50561

!
VPN match statement to include Public_Ip UDP flow NAT traffic :
!
VPN access-list for VPN Traffic :

ip access-list extended VPN
remark LAN_TO_LAN
permit ip local_lan_subnet/mask remote_lan_subnet/mask
remark Access_To_PUBLIC_IP_OVER_VPN
permit udp host local_lan_ip host 194.72.93.118

VPN Peer terminating devices is a Linux BOX :

Route updated on Linux Box to forward NAT Public Ip traffic over VPN to remote site HQ.

sudo ip route add 194.72.93.118 via 10.200.0.1 dev eth1 proto zebra equalize

Linux Box Iptables Firewall site_to_site chain updated to allow traffic source
from Public_Ip over VPN
:

sudo iptables -I  site_to_site -s 194.72.93.118 -j ACCEPT
sudo iptables -I  site_to_site -s 194.72.93.119 -j ACCEPT