I want to improve performance on mikrotik for transit traffic on Mikrotik CPE
Part of config:
Code: Select all
/ip firewall filter
add action=accept chain=input comment="accept all ICMP" protocol=icmp
add action=accept chain=input comment="accept all ESTABLISHED,RELATED" connection-state=established,related
add action=drop chain=input comment="drop all input from ISP-in" in-interface-list=ISP-in
add action=drop chain=input comment="drop all input"
#start FORWARD
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" connection-state=established,related
add chain=forward comment="accept established,related" connection-state=established,related
#END FORWARD
Code: Select all
/ip firewall raw add action=notrack chain=prerouting in-interface-list=ISP-in dst-address=111.222.111.223