One more distinction is the final rule which drops all new link attempts with the WAN port to our LAN network (unless DstNat is made use of). Devoid of this rule, if an attacker is familiar with or guesses your local subnet, he/she will be able to set up connections https://wbofficial.com