Your rule "4 allow-http-all" makes access to internet possible without authorization. Try to disable it
Anyway, your "6 allow_standard" rule covers RTSP (TCP/UDP 554), so it seems very strange
Try to capture session via pcapdump utility in DFL's CLI and analyze what happened