According to the VR900 manual it only supports site-to-site IPSec with IPs specified for both ends. Not much use for a dial-in VPN.
If the OP wants to be able to dial-in he's going to need a different router, or have another device behind the existing router configured as an end point.
How's tunnelling into your network going to make any difference to watching Netflix or iPlayer?
SSH with forwarding would also be a possibility for that kind of purpose.
whats SSH with forwarding just out of curiosity?