I have a handle on my input chain, allow established connections, block invalid, allow all from LAN, then finally block all as a safety net. But below is my forward chain so far after setting up a Guest and Voice VLAN along with the usual rules the wiki suggested adding to secure the device.
I feel like this is overly complicated but can't think of a way to change it all to more efficiently do the same thing. Can anybody share their input on this forward chain and give me ideas on how they would structure it to accomplish the same things but just in a more efficient small matter.