Extra settings for RouterOS bridge

Hi All,

The use-ip-firewall switch seems straightforward enough, which is to enact the IP firewall on bridged traffic for transparent shaping etc. What I need to know is what the use-ip-firewall-for-vlan option does. Whether this simply enables me to perform firewall operations on bridged VLAN interfaces once enabled, or whether this will implicitly peek inside VLAN tagged traffic on a bridged physical interface and perform firewall operations without explicitly having to name each VLAN.

Thanks :slight_smile:

seems like it should inspect tagged traffic: http://wiki.mikrotik.com/wiki/Bridge#Bridge_Settings