Thank you Ruben,
So I can use tcpdump to see what adjustments I want/need to make and when I add an entry to iptables and I monitor iptables and see the action I was expecting, ( in this case dropped packets ) then my iptable entry has been correctly configured.
Regards, Ian..
Quoting Ruben ON3RVH via 44Net 44net@mailman.ampr.org:
You will always see that in your tcpdumo as tcpdump works on the kernel level and before the packet hits the firewall. But this means that some of the users do not properly filter their neighbour discovery on mikrotik and do not have sufficient firewall rules to prevent mikrotik neighbour discovery
Ruben - ON3RVH