Now in ip firewall: /ip firewall address-list add address=100.64.0.0/10 comment="defconf: RFC6890" list=bad_ipv4 /ip firewall raw add action=drop chain=prerouting comment="defconf: drop from bogon IP's" in-interface-list=WAN src-address-list=bad_ipv4 I don't like this. This valid...