Connecting 2 Seperated Services

I need to deploy a scenario in my network and I need your Help Please
I have Connected Pep wave - MAX with Pep link- balance ( Which is connecting to SIP Server at same LAN) with IPSEC VPN and it’s working without Issues
now I need to connect and register IP Phone (connected to LAN Port in Pep wave) to SIP Server that attached to Pep link with VPN only without browsing Internet
That mean just VPN and Block any Other Connections (Private)
and at Same Time need to Connect Smart Phone to WiFi of Pep Wave with Browsing Internet ability