Part of the Furniture
The below, in combination with your script, seem to cause a lockout in internet connectivity for clients, but not the router. I've removed the reloading script and everything is hunky dory from a reboot. I have no idea why they're fighting each other!
Neither do I.

The logic I use to insert the '-j Blacklist' firewall rule is simply look for the existing 'DROP/logdrop' rules, clone them, and insert the duplicate rule immediately preceding the original. Perhaps my left-field 'wholly original' idea is fatally flawed?

So in theory, the packet was to be DROP'd / logdrop'd anyway?