Diambil dari http://forum.mikrotik.com/viewtopic.php?f=9&t=20420
:local sum; :local traf; :set sum 0 /ip firewall rule forward { :foreach i in [find] do={:incr sum} :for i from=1 to=$sum do={ :set traf [get [find comment=("user" . $i)] bytes] :set traf ($traf/1073741824) :if ($traf>1) do={:log facility=System-Info \ message=("user" . $i ." exceeded 1Gb limit!")} } }