Hi there,
If the VPN clients receive an IP address in the same IP subnet as the LAN machines you do not need any static routes. They are all in the same IP subnet, so no IP routing can take place. What happens is that the RRAS server does proxy ARP for the remote client.
The DMZ should not be in the same IP subnet as the LAN, and if the remote client wants to access the Internet through the VPN tunnel, we should configure NAT for the VPN client in the RRAS server.
Here are some links that might help you in getting some insights into this topology.
RRAS VPN - DMZ / LAN routing and Internet access https://social.technet.microsoft.com/Forums/windowsserver/en-US/02fdc5b3-8e69-40e3-ab07-5e4f1557a707/rras-vpn-dmz-lan-routing-and-internet-access?forum=winserverNIS
Enable RRAS as a VPN Server and a NAT Router
https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/dd458971(v=ws.11)?redirectedfrom=MSDN
---------------------------------------------------------------------------------------------------------------
--If the reply is helpful, please Upvote and Accept it as an answer–