I have a routerboard that I would like to setup as a firewall between my lan and my workstation. I want to filter traffic coming from the lan and from the internet to this machine. I would like to keep everything on the same subnet . I have been playing with bridge mode and using the ip firewall setting enabled but it does not seem to do what I want or I am missing something.
network 192.168.0.0/24 ----> Routerboard eth1 <--Bridge1 192.168.0.15/24--> Routerboard eth2 ----> my workstation 192.168.0.20/24.
For examples sake I would like ssh from my LAN to pass and http from the Internet only (not from LAN). My firewall currently passes http to my workstation.
Hopefully this is enough to understand what I am trying to accomplish.