#Router and internal network protection, no internal servers, LAN is friendly
/ip firewall filter
add chain=input action=drop connection-state=invalid comment="Disallow weird packets"
add chain=input action=accept connection-state=new in-interface=LAN comment="Allow LAN access to router and Internet"
add chain=input action=accept connection-state=established comment="Allow connections that originated from LAN"
add chain=input action=accept connection-state=related comment="Allow connections that originated from LAN"
add chain=input action=accept protocol=icmp comment="Allow ping ICMP from anywhere"
add chain=input action=drop comment="Disallow anything from anywhere on any interface"
add chain=forward action=drop connection-state=invalid comment="Disallow weird packets"
add chain=forward action=accept connection-state=new in-interface=LAN comment="Allow LAN access to router and Internet"
add chain=forward action=accept connection-state=established comment="Allow connections that originated from LAN"
add chain=forward action=accept connection-state=related comment="Allow connections that originated from LAN"
add chain=forward action=drop
Sign up here with your email
1 comments:
Write commentsMikrotik Fast Browsing Trick - Mikrotik Tutorials >>>>> Download Now
Reply>>>>> Download Full
Mikrotik Fast Browsing Trick - Mikrotik Tutorials >>>>> Download LINK
>>>>> Download Now
Mikrotik Fast Browsing Trick - Mikrotik Tutorials >>>>> Download Full
>>>>> Download LINK
ConversionConversion EmoticonEmoticon