Even though the firewall safeguards the router from the general public interface, you should still choose to disable RouterOS products and services.The 1st rule accepts packets from now established connections, assuming They're Protected to not overload the CPU. The 2nd rule drops any packet that link tracking identifies as invalid. Following that,