<html>
<head>
<meta content="text/html; charset=utf-8" http-equiv="Content-Type">
</head>
<body bgcolor="#FFFFFF" text="#000000">
<br>
<br>
<div class="moz-cite-prefix">On 25/Feb/16 10:07, Tayeb Meftah wrote:<br>
<br>
</div>
<blockquote
cite="mid:DD2B7CE1-B36A-48F8-B0CC-4181C632DC3A@gmail.com"
type="cite">
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<div>
<div style="direction: ltr;">to drop port from outside:</div>
<div style="direction: ltr;">/ip firewall filter</div>
<div style="direction: ltr;">add action=drop in-interface=wan
dst-port=53 protocol=tcp</div>
<div style="direction: ltr;">please change the wan interface
accordingly</div>
<div style="direction: ltr;">please note</div>
<div style="direction: ltr;">if you have huge traffic i dont
recomand you to completly disable the routeros dns resolver,
but just drop the port from outside like i sayd</div>
<div style="direction: ltr;">droping dns resolver will result in
lot of dns query, and built-in resolver support cache</div>
<div style="direction: ltr;">thanks 👌</div>
</div>
</blockquote>
<br>
Good protein. Thanks.<br>
<br>
Mark.<br>
</body>
</html>