MikroTik Easy and Simple DMZ

Whilst going through the MikroTik forums I noticed a post asking about DMZ, whilst this in itself is very easy if you know what you are doing with RouterOS. It may not be if you are new or not well versed in it. Below is my simple “one liner” to get a DMZ working to an IP of your choice. This should be relatively safe to use if you are on the LAN side as it will only push traffic coming to you through your WAN interface. Also note that it will not work for any local requests that need to go through NAT.

/ip firewall nat
add action=dst-nat chain=dstnat comment="DMZ rule [edit the \"in interface\" to your WAN connection and the \"to address\" to your LAN IP]." in-interface=WAN-IN to-addresses=192.168.1.50

Simple. More to come so you can actually get a handle on controlling other services that you may not want to go through the DMZ.