Although the firewall protects the router from the public interface, you should still choose to disable RouterOS solutions.The 1st rule accepts packets from already proven connections, assuming They are really Protected not to overload the CPU. The 2nd rule drops any packet that connection tracking identifies as invalid. Following that, we arrange