I’ve been tuning my MikroTik configuration, but as we all know with RouterOS: with great power comes a great ability to shoot yourself in the foot.
While everything seems to be working fine on the surface—DNS, Port Forwarding, and internal VLANs—I keep asking myself: How does a normal user actually verify if their Firewall, NAT, and Mangle rules follow basic security standards and aren't quietly leaking traffic or burning CPU cycles?
Source: r/mikrotik · by /u/qtr20_22