Bryan,
Do you mean that 208.x.x.x is your external (public) IP address?
Does it also mean that Zentyal is not "between" internal and external networks?
Is your question related to access to "external web servers" using Zentyal HTTP proxy for HTTPS protocol? If yes, you have to ensure that Zentyal proxy is configured in explicit (non transparent) mode.
Last but not least, what do you mean with:
What I want to do is have it so that the external VPN users (174.xxx.xxx.xxx) can access https webpages as if they were from the work address of 208.xxx.xxx.xxx.
HTTPS is quite different from HTTP because of the tunnel and tunnel is between web browser and HTTPS server, not between proxy and server. Thus could you please clarfify your goal?