how to drop udp attack without port in mikrotik?

Hi friends
I Have a problem with my CCR Router,36Mbps udp connection without port? do you know what is this and how to block?


Untitled.png

UDP is a port oriented protocol just like tcp. these may be invalid packets / spoofed or just not reported.

you can use packet sniff to see what it is
or you can use wireshark on pc to see what it is
it is strange ,udp often have it’s port

Those are fragments. It looks like you are being attacked by a reflected DNS DDoS amplification attack, there isn’t much you can do about it as by the time you could block it it’s already consumed your bandwidth. You should also ensure you have correct firewall rules to make sure you aren’t actually running insecure DNS too.