I recommend dropping incoming DNS requests from the internet unless specifically required, there is huge active DNS amplification attacks going on and mikrotik is kinda vulnerable when it runs the dns proxy with "allow remote requests" checked.
Typical symptoms to look out for would be CPU pegged at 100% and higher than normal packet rates and outbound traffic on Internet links.
Here is the CERT alert http://www.us-cert.gov/ncas/alerts/TA13-088A
Jon