wan 2023-03-26T15:42:02-04:00 [my public IP, redacted] 10.0.20.103 icmp let out anything from firewall host itself (force gw)
$ sudo traceroute 10.0.20.103traceroute to 10.0.20.103 (10.0.20.103), 30 hops max, 60 byte packets 1 10.0.10.1 (10.0.10.1) 0.213 ms 0.166 ms 0.130 ms 2 [redacted] ([my ISP gateway].1) 14.033 ms 14.010 ms 13.952 ms 3 [redacted] ([my public IP]) 2.603 ms 2.470 ms 2.665 ms
What upstream gateway is set on the VLAN interface assignments?
As per the ICMP: do you have another rule on Floating or the interface they are originating that has the WAN interface enforced as Gateway? I don't suppose so but let's just check.