My guess is that you must[?] to put the 10PCs on a *different subnet* like 192.168.2.*
(at least for simplicity/clarity; I don't know whether you could do some tricky [=nasty!] 'mapping' to do all this on the ONE existing [sub]net! That would put 'evil' pkts on that LAN!)
New server would have three[!?] NICs: one to ..1.* LAN, one to new ..2.* LAN of 10PCs,
and one with a *publically-routeable* (not 192.168.*/10.*) ISP-provided address.
I don't know firewall! I'm guessing you have CentOS7 with
firewalld. Best wishes! Let us know
** I welcome other LQ'ers feedback/corrections! (I hope this will prod things along here
)
UPDATE edit: looks like *I* need to web-research like: network dmz diagram