Basic help needed - restriction

Dear MikroTik Community,

i have a basic question, i cannot get it to work.

I’d like to achieve, that from one subet to other (its NATted) only RDP should be working.

I did this:
chain=input action=drop protocol=udp src-address=10.10.10.0/24 dst-port=!3389 log=no log-prefix=“”

but i cannot connect via RDP, and if i disable this rule, than i am able to connect.

How to achieve this?

Thank you in advance

from one subet to other (its NATted)

i’ts not clear exactly what your network set up is so here is my best guess

use forward chain (traffic passing through the router) instead of input chain (traffic heading into the router itself)

Why duplicate post???

http://forum.mikrotik.com/t/from-one-subnet-to-other-but/119950/1

bc someone asked so much bs that i thought no one will read it and he asked the same thing x times. btw: how to delete a post?