On 16.23 by Anonim in ,
/ip firewall filteradd action=drop chain=input comment="Drop Invalid connections" \connection-state=invalid disabled=noadd action=add-src-to-address-list address-list="port scanners" \address-list-timeout=2w chain=input comment="Port scanners to list " \disabled=no protocol=tcp psd=21,3s,3,1add action=add-src-to-address-list address-list="port scanners" \address-list-timeout=2w chain=input comment="NMAP...