<< Previous Next >>

Basic IPv6 Firewall on RouterOS

[admin@mikrotik] > /ipv6 firewall filter print
Flags: X - disabled, I - invalid, D - dynamic 
 0   chain=input action=accept protocol=icmpv6 

 1   chain=input action=drop in-interface=sit1 

 2   chain=forward action=accept protocol=icmpv6 

 3   chain=forward action=accept connection-state=established 

 4   chain=forward action=accept connection-state=related 

 5   ;;; ssh server #1
     chain=forward action=accept protocol=tcp dst-address=2001:xxxx:xxxx:xxxx::xxxx/128 in-interface=sit1 
     port=22

 6   ;;; ssh server #2
     chain=forward action=accept protocol=tcp dst-address=2001:xxxx:xxxx:xxxx::xxxx/128 in-interface=sit1 
     port=22

 7   ;;; UPS status page
     chain=forward action=accept protocol=tcp dst-address=2001:xxxx:xxxx:xxxx::xxxx/128 in-interface=sit1 port=80 

 8   chain=forward action=drop in-interface=sit1