In a scenario where Firewall (e.g. Cisco,Juniper ) has 2 WAN ports, additional VPN redundancy can be setup with the primary VPN connection going through Mushroom device and the backup VPN bypassing Mushroom and using another static IP from WAN2 subnet as illustrated in the attached diagram.