Eu pesquisei bastante no forum sobre isso achei essas regras, coloquei e vi que esta marcando blz, mas minhas duvidas, na priority não deveria ser 1 ao invés de 8?
Outra dúvida meu servidor voip tem a porta 5060 que é a de conecção mas as de comunicação vão da 10000 a 20000, eu não deveria marcar essas portas também e colocar a priority em 1 pra eles tb??


ip firewall nat
add chain=dstnat dst-address=189.115.127.96 protocol=tcp dst-port=4040 action=dst-nat to-addresses=0.0.0.0-255.255.255.255 to-ports=8000-65535 comment="LIBERA O DAS PORTAS DE ENTRADA \(SERVI O VONO\)" disabled=no
add chain=dstnat dst-address=189.115.127.96 protocol=udp dst-port=4040 action=dst-nat to-addresses=0.0.0.0-255.255.255.255 to-ports=8000-65535 comment="" disabled=no
add chain=dstnat dst-address=189.115.127.96 protocol=udp dst-port=8000-65535 action=dst-nat to-addresses=0.0.0.0-255.255.255.255 to-ports=8000-65535 comment="" disabled=no
add chain=dstnat dst-address=189.115.127.96 protocol=tcp dst-port=1571 action=accept comment="" disabled=yes

ip firewall mangle
add chain=prerouting protocol=udp dst-port=5060 action=mark-connection new-connection-mark=voip_in passthrough=yes comment="VOIP-IN" disabled=no
add chain=prerouting connection-mark=voip_in action=mark-packet new-packet-mark=VOIP_IN passthrough=yes comment="" disabled=no
add chain=prerouting protocol=udp src-port=5060 action=mark-connection new-connection-mark=voip_out passthrough=yes comment="VOIP-OUT" disabled=no
add chain=prerouting connection-mark=voip_out action=mark-packet new-packet-mark=VOIP_OUT passthrough=yes comment="" disabled=no

queue tree
add name="voip_in" parent=global-in packet-mark=VOIP_IN limit-at=64000 queue=default priority=8 max-limit=64000 burst-limit=0 burst-threshold=0 burst-time=0s disabled=no
add name="voip_out" parent=global-out packet-mark=VOIP_OUT limit-at=64000 queue=default priority=8 max-limit=64000 burst-limit=0 burst-threshold=0 burst-time=0s disabled=no

desde já muito obrigado.