Dynamic tackle configuration is the easiest option. Basically set up a DHCP customer on the general public interface.The main rule accepts packets from currently recognized connections, assuming They may be Secure not to overload the CPU. The 2nd rule drops any packet that connection tracking identifies as invalid. After that, we put in place usual