Setting a horizon value on a bridge port disables hardware offload on that port, so this isn’t an option
But I have a setup that requires ports to be isolated from each other to prevent any accidental loop and reduce unnecessary broadcast traffic
How else can it be achieved without lots of messy filter rules?
By means of not so messy /interface ethernet switch rule. For each ingress port you can specify a list of permitted egress ports. Sorry, on the phone, can’t be more verbose.
Does at least print show them? It would be a workaround and missing parts of configuration in export are definitely a bug worth reporting to support@mikrotik.com, but better than nothing.
Must be a bug then. Switch is a CRS317 running 6.44.3 so its a recent firmware. Definitely does not show up in a normal /export
It doesn’t even show if I do a ‘/interface ethernet switch export’
I have to specifically do ‘/interface ethernet switch port export’