/ip firewall filter
add action=drop chain=forward comment="TV funk\E8n\ED blok" layer7-protocol=teamviewer log=yes log-prefix=tv src-address-list=!povoleni-tv
add action=drop chain=forward comment="TV funk\E8n\ED blok" layer7-protocol=teamviewer1 src-address-list=!povoleni-tv
add action=drop chain=forward comment="3 TV BLOK" dst-port=5938 protocol=tcp src-address-list=!povoleni-tv
add action=drop chain=forward comment="4 TV BLOK" dst-port=5939 protocol=tcp src-address-list=!povoleni-tv
add action=drop chain=forward comment="5 TV BLOK" dst-port=5938 protocol=udp src-address-list=!povoleni-tv
add action=drop chain=forward comment="6 TV BLOK" dst-port=5939 protocol=udp src-address-list=!povoleni-tv
/ip firewall layer7-protocol
add name=ammyy regexp=^.*rl.ammyy.com.*
add name=teamviewer regexp="^(post|get) /d(out|in).aspx\\\?.*client=dyngate"
add name=teamviewer1 regexp="^\\\\x17"
v address listu je pod povoleni-tv vždy jednotlivá IP