Hi Mikrotik, I like the include/exclude feature in the interface lists, but I believe it should be both improved and fixed:
A) Improve: Mark all entries coming from include feature with "D" (dynamic)
B) Improve/Fix: Make sure recursive lists works (eg: if we have list L1 include list L2 include list L3, adding an interface into L3 should go as well into L1 and L2)
C) Fix: Firewall rules sometimes do not match properly the interface with the dynamic entries in the list. Cannot state the exact condition but updating the definition of the interface list seems to solve it immediately. So there must be some outdated cached information or loading issue after reboot.