/ip firewall mangle
add action=mark-connection chain=prerouting comment=\
    "Controle de Banda" connection-bytes=4194304-0 \
    disabled=yes dst-port=80 new-connection-mark=\
    Controle passthrough=yes protocol=tcp
add action=mark-connection chain=prerouting \
    connection-bytes=4194304-0 disabled=yes \
    new-connection-mark=Controle passthrough=yes \
    protocol=tcp src-port=80
add action=mark-connection chain=prerouting \
    connection-bytes=4194304-0 disabled=yes \
    new-connection-mark=Controle passthrough=yes \
    protocol=tcp src-port=53
add action=mark-connection chain=prerouting \
    connection-bytes=4194304-0 disabled=yes \
    new-connection-mark=Controle passthrough=yes \
    protocol=udp src-port=53
add action=mark-connection chain=prerouting \
    connection-bytes=4194304-0 disabled=yes \
    new-connection-mark=Controle passthrough=yes \
    protocol=udp src-port=53
add action=mark-connection chain=prerouting \
    connection-bytes=4194304-0 disabled=yes dst-port=53 \
    new-connection-mark=Controle passthrough=yes \
    protocol=tcp
add action=mark-packet chain=prerouting connection-mark=\
    Controle disabled=yes new-packet-mark=ControleMark \
    passthrough=yes src-address-list=10.2.0.254