Yet another variation is the last rule which drops all new link attempts in the WAN port to our LAN community (Until DstNat is employed). Without this rule, if an attacker appreciates or guesses your neighborhood subnet, he/she will create connections straight to nearby hosts and induce a protection danger. https://wbofficial.com