Can you please share your configuration?
/export hide-sensitive file=anynameyoulike
I have no Firewall Rules Configured.
Hopefully you mean no additional rules?
This is my current config. Ive done this config a thousand times in the past with no issues, but right now its not working. I've tried 3 different Routers, no joy!
# jun/18/2021 14:09:37 by RouterOS 6.48.3
# software id = SBVY-3BTC
#
# model = RouterBOARD 750G r3
# serial number =
/interface l2tp-client
add add-default-route=yes allow=pap,chap connect-to=102.221.yyy.yyy disabled=\
no name=l2tp-out1 user=molatudi
/interface list
add name=WAN
add name=LAN
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip pool
add name=dhcp ranges=192.168.88.101-192.168.88.103
/ip dhcp-server
add address-pool=dhcp interface=ether2 name=dhcp1
/ip neighbor discovery-settings
set discover-interface-list=!dynamic
/interface list member
add interface=ether1 list=WAN
add list=LAN
/ip address
add address=192.168.88.1/24 interface=ether2 network=192.168.88.0
/ip dhcp-client
add disabled=no interface=ether1
/ip dhcp-server network
add address=192.168.88.0/24 gateway=192.168.88.1 netmask=24
/ip firewall nat
add action=masquerade chain=srcnat out-interface-list=WAN
add action=dst-nat chain=dstnat dst-address=102.221.xxx.xxx dst-port=25 \
protocol=tcp to-addresses=192.168.88.3
add action=dst-nat chain=dstnat dst-address=102.221.xxx.xxx dst-port=53 \
protocol=tcp to-addresses=192.168.88.3
add action=dst-nat chain=dstnat dst-address=102.221.xxx.xxx dst-port=3389 \
log=yes protocol=tcp to-addresses=192.168.88.3
add action=dst-nat chain=dstnat dst-address=102.221.xxx.xxx dst-port=135 \
protocol=tcp to-addresses=192.168.88.3
add action=dst-nat chain=dstnat dst-address=102.221.xxx.xxx dst-port=443 \
protocol=tcp to-addresses=192.168.88.3
/system clock
set time-zone-name=Africa/Johannesburg