Why can't we just use the following rule:
PASS src GUEST_LAN dst !WAN
This way, if one ever adds a second or third LAN, I don't have to remember to add firewall rules.
PASS src GUEST_LAN dst !WAN
This way, if one ever adds a second or third LAN, I don't have to remember to add firewall rules.