Mikrotik Brute Force
/ip firewall filter add action=drop chain=input comment=”Drop SSH Brute Forcers” dst-port=22 protocol=tcp src-address-list=brute-force_blacklist
/ip firewall filter add action=add-src-to-address-list address-list=brute-force_blacklist address-list-timeout=1d chain=input connection-state= new dst-port=22,23 protocol=tcp src-address-list=bruteforce_stage3
/ip firewall filter add action=add-src-to-address-list address-list=bruteforce_stage3 address-list-timeou= 30s chain=input connection-state=new dst-port=22,23 protocol=tcp src-address-list=bruteforce_stage2
/ip firewall filter add action=add-src-to-address-list address-list=bruteforce_stage2 address-list-timeout=30s chain=input connection-state=new dst-port=22,23 protocol=tcp src-address-list=bruteforce_stage1
/ip firewall filter add action=add-src-to-address-list address-list=bruteforce_stage2 address-list-timeout=30s chain=input connection-state=new dst-port=22,23 protocol=tcp src-address-list=bruteforce_stage1