isc.org dns server attack block

Hi

im trying to find a way to block this attack to my dns server
i try on Layer 7
with Content
with limit without results

another idea?

I’m guessing you are seeing hundreds of forged DNS queries requesting information about isc.org, which would be indicative of a DDOS attack against the purported requestor, of which they are using your device to participate in the attack. But not being entirely sure what “this attack” you refer to is, if you would like to secure your DNS relay/server from outside use/abuse, see my other posts on that very topic:
http://forum.mikrotik.com/t/how-to-block-a-dns-request-from-the-outside-world/63404/1

Hi

i disable the relay from outside a long time ago but im still getting a lot of request from unknown sources so anyway i can solve my problem with Layer 7 and a drop rule

thanks anyway