Dear MikroTIK Community,
there is one thing, i cannot understand really, i think it has to do with my network knowledge but maybe you people could help me.
When i do firewall rules, i do basically this: input drop invalid - input accept related,established and than the same with forward and at the end: drop input in-interface:WAN
This way i think im fine, but i read a comment somewhere, where they do the same kind of fw and asked, why do the connections work from the laptop? Arent thoose connections new? Why can i pass the firewall without a rule like this: forward accept con-state:new in-interface:LAN or something like this?
Your answer would greatly apreciated,because i think im missing something!
Thank you in advance!