Basic firewall forwarding allow rule question

In default configuration drop rule comes with the “in-interface-list=WAN” parameter, so it does not match traffic coming from LAN.