In the firewall (using WebFig), the first item in the forward chain is a "special dummy rule to show fasttrack counters". If I open it, I see that it is in "forward" chain and the action is "passthrough" and nothing else is set.
So I assume any traffic that goes through the forward box in the flowchart is counted AND given to the next step.
What I did, I also added a new rule, right after this one and set it exactly to the same settings, i.e. forward, passthrough and nothing else. So I would expect that every traffic from the first rule also hits this one and again, only counted and passed on to the next rule.
Strangely enough I see totally different Bytes numbers for the two rules.
The one I see in my rule is in line with the subsequent forward rules, so I can see what happens to the bytes that go through my rule. On the built in rule I see often a much larger number and I do not understand what it counts.
Could someone help me?