I have the following problem. On my opnsense I discovered the following in the firewall live view. Since my internet often hardly works as a result, I need a solution.getting over it I don’t understand the src and dst. src is my public IP and dst are the registered servers. Is the scan now coming from outside or over my network. I have already done a package capture on all interfaces, but only discovered the port scan on the wan interface. I have also already tried to block the port scan with suricata, but without success, probably because of my own IP, right?