Dynamic deal with configuration is the easiest alternative. Merely put in place a DHCP client on the public interface.The initial rule accepts packets from now proven connections, assuming they are Harmless not to overload the CPU. The next rule drops any packet that link monitoring identifies as invalid. After that, we create standard accept guide