Dynamic handle configuration is the best possibility. Simply setup a DHCP client on the public interface.The first rule accepts packets from now founded connections, assuming They may be Secure not to overload the CPU. The second rule drops any packet that connection tracking identifies as invalid. After that, we build usual settle for policies for