One more distinction is the final rule which drops all new relationship tries through the WAN port to our LAN network (Unless of course DstNat is utilised). With no this rule, if an attacker is familiar with or guesses your local subnet, he/she will set up connections straight to regional https://wbofficial.com