I want to Block winbox throughout public IP and only access from VPN connection like pptp.
I already set a firewall rule to block all IP and only access dedicated IP. but in this situation when I change my dedicated IP I have to change the firewall rule via console to access winbox again.
I set a VPN user with a password but when I set the src. address to my virtual IP firewall not recognizing the NAT IP and instead of this seeing my internet IP and blocking the IP access to winbox.
I used the mangle and raw with prerouting but nothing changed. the Firewall Rules always seeing the IP first and blocking it.