Hi,Thanks for agreeing to assist. Please allow me to answer your questions in points:1. Only a few random clients loose connectivity behind the firewall.2. When connectivity drops, the firewall shows no signs of lost connectivity. Meaning, Unbound still shows DNS queries from clients flowing in and the responses sent thereof. Yes, unbound shows sending responses to those clients who apparently show the 'Connection Timeout' error in browsers. Firewall also can update pkg in that interim. Firewall can ping 8.8.8.8 using 'Auto' interface selection. However, random clients fail to ping 8.8.8.8.3. As a matter of fact, I today itself created a Failover GW group instead of a load balanced one with the ISP having a much more stable connection as Tier 1 and viola, my issue seems to have disappeared!Does this mean that the Firewall is having troubles quickly switching clients from one GW to another in a load-balanced scenario? If so, how could I verify that and be sure? I remember that with pfSense (also the same ISPs) the switch used to be almost immediate.I have attached my current LAN rules which seem to be working fine. Please do advise though if there are any obvious silly mistakes there.Thanks & Regards,