2 WANs (one for technology and one for Data) setup

Hello to everybody!

I have the following setup (see picture attached to this post):

  1. The Technological WAN connected to port 1 of my router. (192.168.0.0/24)
  2. The Data WAN (the one that will provide the internet) connected to port 2 of my router. (192.168.1.0/24)
  3. 4 PLCs.
  4. 1 SCADA PC.
  5. WiFi access for my laptop, for diagnosis and maintenance purposes.

What I did:

  1. Setup (in quick access) the IP of my router as 192.168.0.211 and the gateway as 192.168.0.1.
  2. Port forwarding on port 502 to PLC2 (192.168.222.202) for a Modbus TCP connection - a Master from the technological WAN connects to my PLC to read/write data via Modbus TCP/IP.

So far, so good.

What I must do:

  1. Create a connection to the internet, via Data WAN and allow access to the internet only for the SCADA PC and via WiFi (hidden SSID).
  2. Create port forwarding from Data WAN to SCADA PC for VNC ussage.
  3. Setup the router for a VPN, in order to connect remotely to the LAN, for debuging purposes.
  4. Without question, the internet from WAN 2 should not route to WAN 1.

Could someone help me setup my router accordingly?

Best regards,
Voicu.