I could ping 10.x.y.z and other hosts from subnet site A thinking it was my address on subnet site B. So it is mixing with my own configuration and I prefer to ban local addresses from WAN.
I just reminded that OpenBSD allows this by default. I though this was the case with iptables, but under Linux you need bcp38.
Thank you very much for all your explanations.