iptables -A input_wan_rule -d $WAN2_NET/29 -j reject iptables -t nat -A prerouting_wan_rule -p tcp -d $WAN2_IP3 --dport 80 -j DNAT --to-destination 192.168.0.90:80 -m comment --comment "Web server" # goal is to do not pass into default WAN rules iptables -t nat -A prerouting_wan_rule -d $WAN2_NET/29 -j ACCEPT