Feature request: named addresses and lists in firewall rules

Hi all,

I think it would be really nice if you could use DHCP client hostnames (including static entries) as the src/dst address in firewall rules, and see the name (not the IP address) in the rule list.

It would also be really nice to have named IP address lists with multiple subnets on them (e.g. admins, customers, DMZs).

Thanks, Chris.

  • you can use the existing address-list feature, you can add as many individual addresses, ranges, or prefixes to the same address-list (same list value), and the rule then matches if the IP address matches any of the records on that list.
  • one of parameters of a DHCP lease is address-lists. So whenever that lease is active, the address is added to all the address lists listed in this parameter; once the lease expires, the address is removed from those lists.

Other than that, spawning a new topic on this forum is not the right way to issue a feature request, you have to post the request in the dedicated topic named “feature requests” spawned by one of Mikrotik support staff members.

According to Mikrotik’s official policy, the right channel for feature requests is your distributor.