Improve ACL handling to allow creation of service groups

Instead of having to create a port forward for service ports and then having to also create the firewall rule, the request is to be able to create the port forward and check a box that “allows” inbound to streamline this process. This is desirable in specific situations where the customer always want to allow inbound services from any source after rule creation.