I have read the manual on this but it still seems a bit archaic, my desire is simply to implement a “fail2ban” type firewall rule to an internet connected Ros board.The board is using only 2 interfaces, the wlan1 and ether1 ports. I want to lock out bogus login attempts to ether1 from the internet after say, 2-3 failed attempts. This has got to be pretty simple but if I screw up and lock myself out it would be awfully troublesome as the board is on a tower so I’ve got one chance to get it right the first time. My confidence level just isn’t that high yet..lol.
Take a look at this wiki article;
http://wiki.mikrotik.com/wiki/Bruteforce_login_prevention_(FTP_%26_SSH)