This project provides a simple and functional example, which can and should be adjusted according to your environment’s needs.
- MikroTik RouterOS installed and accessible
- Access via Winbox or terminal (CLI)
- Basic understanding of firewall chains (input, forward, output)
- IP addressing configured on interfaces
- Allows essential traffic (DNS, ICMP, established/related connections)
- Blocks unwanted external traffic
- Basic protection rules for the WAN interface
This project does not cover advanced scenarios (such as NAT, mangle, VPN, or layer-7 filters). The goal is to provide a minimal secure baseline.
Created by Muller Matos