Aplicar apenas no roteador de borda.
/ipv6 firewall raw add action=drop chain=prerouting comment="!::ANTISPAM-TCP-->INTERNET" disabled=yes dst-address-list=!REDE-GLOBAL dst-port=0,17,19,25,69,110,111,135,137,138,139,143,161,162,389 protocol=tcp src-address-list=REDE-GLOBAL
/ipv6 firewall raw add action=drop chain=prerouting comment="!::ANTISPAM-TCP-->INTERNET" disabled=yes dst-address-list=!REDE-GLOBAL dst-port=445,799,800,1900,3283,3702,4665,5353,10001,11211,27960,179 protocol=tcp src-address-list=REDE-GLOBAL
/ipv6 firewall raw add action=drop chain=prerouting comment="!::ANTISPAM-UDP-->INTERNET" disabled=yes dst-address-list=!REDE-GLOBAL dst-port=0,17,19,25,69,110,111,135,137,138,139,143,161,162,389 protocol=udp src-address-list=REDE-GLOBAL
/ipv6 firewall raw add action=drop chain=prerouting comment="!::ANTISPAM-UDP-->INTERNET" disabled=yes dst-address-list=!REDE-GLOBAL dst-port=445,799,800,1900,3283,3702,4665,5353,10001,11211,27960,179 protocol=udp src-address-list=REDE-GLOBAL
#