Community discussions

MikroTik App

Search found 7209 matches

  • 1
  • 2
  • 3
  • 4
  • 5
  • 25
by mrz
Tue Mar 25, 2025 11:19 pm
Forum: Forwarding Protocols
Topic: BGP ECMP (multipathing)
Replies: 80
Views: 50866

Re: BGP ECMP (multipathing)

Add path parameter does nothing and you see two active routes because you have incorrect configuration (each receiving peer is running in its own bgp instance).
by mrz
Wed Mar 19, 2025 3:59 pm
Forum: Forwarding Protocols
Topic: OSPF area id 0.0.0.0 does not consider interface cost
Replies: 10
Views: 1019

Re: OSPF area id 0.0.0.0 does not consider interface cost

This is by OSPF design. An area where the prefix originated is more preferred.
by mrz
Wed Mar 19, 2025 2:25 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 383
Views: 98037

Re: v7.19beta [testing] is released!

None of the reported BGP problems are BFD-related or specific to v7.19beta.
One is caused by BGP connection flap with configured input filters other is related to large address lists to be loaded by routing protocols.
by mrz
Fri Mar 14, 2025 3:25 pm
Forum: Forwarding Protocols
Topic: route filter based on prefix/address list
Replies: 2
Views: 647

Re: route filter based on prefix/address list

You can match all prefixes in one chain and match against that chain, which works equivalent to prefix lists.
by mrz
Fri Mar 14, 2025 9:21 am
Forum: Forwarding Protocols
Topic: iBGP RR Client option missing from v7.16+
Replies: 3
Views: 657

Re: iBGP RR Client option missing from v7.16+

No, you are not required to build full mesh, you just need to establish iBGP session to route reflector. Reflections are being done on the reflector not the client.
by mrz
Fri Mar 14, 2025 9:17 am
Forum: Forwarding Protocols
Topic: What is the reason IPv4 prefixes over IPv6 BGP peer could not work?
Replies: 6
Views: 6636

Re: What is the reason IPv4 prefixes over IPv6 BGP peer could not work?

RFC8950 - Advertising IPv4 Network Layer Reachability Information (NLRI) with an IPv6 Next Hop As of today 2025-03-13 in 7.18.2 it is not possible to route IPv4 over an IPv6 BGP connection. Routes will be displayed on each other router, but is unreachable because of lack of routing via inet6. In Li...
by mrz
Fri Mar 07, 2025 2:09 pm
Forum: Forwarding Protocols
Topic: v7.18.1 && v7.19beta2 - Error in metric [SOLVED]
Replies: 5
Views: 4568

Re: v7.18.1 && v7.19beta2 - Error in metric [SOLVED]

to send rip metric for redistributed routes "set rip-ext-metric 200;"
but rip metric is not distance anyway.
by mrz
Fri Mar 07, 2025 12:18 pm
Forum: Forwarding Protocols
Topic: v7.18.1 && v7.19beta2 - Error in metric [SOLVED]
Replies: 5
Views: 4568

Re: v7.18.1 && v7.19beta2 - Routing filter not working [SOLVED]

Of course, you cannot change distance on remote machines. Distance is a local parameter.
by mrz
Tue Mar 04, 2025 12:13 pm
Forum: Forwarding Protocols
Topic: BFD without dynmaic routing protocol
Replies: 7
Views: 1115

Re: BFD without dynmaic routing protocol

Not directly. There is an option to use BFD as a gateway check for static routes but it is not yet implemented fully. It does not create BFD session, it can use only existing BFD sessions created by other routing protocols.
by mrz
Fri Feb 28, 2025 8:17 am
Forum: Forwarding Protocols
Topic: local-pref and weight not working fine?
Replies: 2
Views: 1687

Re: local-pref and weight not working fine?

For best path selection to work routes must be received from peers belonging to the same instance:
https://help.mikrotik.com/docs/spaces/R ... hSelection
by mrz
Mon Feb 24, 2025 11:06 am
Forum: Announcements
Topic: v7.18rc [testing] is released!
Replies: 145
Views: 28684

Re: v7.18rc [testing] is released!

@MikroTik i have one request Can the new feature random-source-port be moved ar the server (l2tp-server)? That is really what we need, so we can get multiple VPNs, win & phones, ect. It would be GREAT to have such a feature! :) We are also looking forward to this ... for a very long time... Yes...
by mrz
Fri Feb 21, 2025 2:48 pm
Forum: Announcements
Topic: v7.18rc [testing] is released!
Replies: 145
Views: 28684

Re: v7.18rc [testing] is released!

LDP signaled VPLS works
BGP signaled VPLS works
VPNv6 works

either misconfiguration or very specific setup.
by mrz
Mon Feb 10, 2025 11:14 am
Forum: General
Topic: Externally monitoring OSPF neighbor states?
Replies: 3
Views: 3085

Re: Externally monitoring OSPF neighbor states?

You can monitor OSPF states via API.
by mrz
Mon Feb 03, 2025 5:00 pm
Forum: Announcements
Topic: v7.18beta [testing] is released!
Replies: 573
Views: 166584

Re: v7.18beta [testing] is released!

Pls read the forum, not just posting. https://forum.mikrotik.com/viewtopic.php?p=1122915#p1122915 hi oreggin it's seem that you also got U = unreachable status for vpnv6 next-hop any trick to make it active? Currently IPv4 mapped gateways cannot be resolved. You have to change the gateway to valid ...
by mrz
Mon Feb 03, 2025 4:58 pm
Forum: Announcements
Topic: v7.18beta [testing] is released!
Replies: 573
Views: 166584

Re: v7.18beta [testing] is released!

In Cisco there is "vrf upgrade cli multi af mode common policies" Seems that the equivalent to that is missing in RouterOS. Today, in RouterOS v7, exists the objects: /ip/vrf/ /routing/table/ /routing/bgp/vpn/ The meaning of all those has some intersection, but only /routing/bgp/vpn/ allo...
by mrz
Wed Jan 22, 2025 1:30 pm
Forum: General
Topic: MPLS/VPLS decapsulation locked to single CPU core on ARM/ARM64 (CCR2004, CCR2116)
Replies: 40
Views: 12742

Re: MPLS/VPLS decapsulation locked to single CPU core on ARM/ARM64 (CCR2004, CCR2116)

In /mpls/settings you can disable/enable mpls fast path. You cannot disable/enable it only for VPLS tunnels.
by mrz
Wed Jan 22, 2025 10:26 am
Forum: Forwarding Protocols
Topic: Multi Session BGP
Replies: 7
Views: 3204

Re: Multi Session BGP

Yes, a single connection matcher to match multiple incoming session connections is the way. It was designed for such scenarios.
by mrz
Tue Jan 21, 2025 1:05 pm
Forum: Forwarding Protocols
Topic: Multi Session BGP
Replies: 7
Views: 3204

Re: Multi Session BGP

There is no such thing as a point to multipoint BGP. A session is unicast from one single point to another single point. By configuring the network in connection settings you just allowed listening for incoming connections coming from the specified subnet (a convenient way to have less static config).
by mrz
Thu Jan 16, 2025 10:04 am
Forum: Forwarding Protocols
Topic: BGP routes received despite NRLI filter
Replies: 6
Views: 2935

Re: BGP routes received despite NRLI filter

Address lists are designed to match host addresses in subnets, for firewall and other similar places. So yes, currently it is a side-effect when using address lists to match only subnets.
by mrz
Wed Jan 15, 2025 12:13 pm
Forum: Forwarding Protocols
Topic: BGP routes received despite NRLI filter
Replies: 6
Views: 2935

Re: BGP routes received despite NRLI filter

/32 routes?
by mrz
Sun Jan 12, 2025 10:27 am
Forum: Forwarding Protocols
Topic: BGP Neighbor IP Mismatch in Traceroute/MTR on CCR1009
Replies: 3
Views: 4832

Re: BGP Neighbor IP Mismatch in Traceroute/MTR on CCR1009

For ROS v7 you can set /ip settings set icmp-errors-use-inbound-interface-address=yes
by mrz
Fri Jan 10, 2025 4:26 pm
Forum: Forwarding Protocols
Topic: eBGP dual-home
Replies: 3
Views: 3009

Re: eBGP dual-home

That rule is wrong if you want only default route. That rule will accept all ipv4 routes. Correct rule would be "if (dst == 0.0.0.0/0) { accept } else { reject }" But keep in mind that it will still install routes in the routing table as filtered, to save resources it is better to use inpu...
by mrz
Fri Jan 10, 2025 2:36 pm
Forum: Forwarding Protocols
Topic: eBGP dual-home
Replies: 3
Views: 3009

Re: eBGP dual-home

To simplify things you can just as your isp to send only a default route.
by mrz
Thu Jan 09, 2025 11:23 pm
Forum: Forwarding Protocols
Topic: OSPF P-Bit - NSSA Route Redistribution
Replies: 4
Views: 3340

Re: OSPF P-Bit - NSSA Route Redistribution

OSPF prefers routing within the area even if metrics are lower for the path over the backbone.
by mrz
Thu Jan 09, 2025 12:31 pm
Forum: Forwarding Protocols
Topic: OSPF P-Bit - NSSA Route Redistribution
Replies: 4
Views: 3340

Re: OSPF P-Bit - NSSA Route Redistribution

You cannot manipulate p-bit but on the area border router in input chain you can drop any unwanted route from NSSA
by mrz
Sat Dec 28, 2024 10:28 am
Forum: Scripting
Topic: Wildcards with API calls Please can someone help!
Replies: 1
Views: 3211

Re: Wildcards with API calls Please can someone help!

All API supported queries are described in the manual:
https://help.mikrotik.com/docs/spaces/R ... PI-Queries
by mrz
Fri Dec 27, 2024 1:30 pm
Forum: Forwarding Protocols
Topic: Put 500,000+ BGP routes in your MikroTik for testing with this VM
Replies: 17
Views: 10331

Re: Put 500,000+ BGP routes in your MikroTik for testing with this VM

Currently, MRT loader is not publicly available.
by mrz
Wed Dec 25, 2024 11:46 am
Forum: Forwarding Protocols
Topic: ROS7 and BGP IPv6 Reflectors, still broken?
Replies: 14
Views: 7129

Re: ROS7 and BGP IPv6 Reflectors, still broken?

It is not a reflector if it has only one BGP peer, where do routes that supposedly should be reflected come from?
by mrz
Tue Dec 24, 2024 1:17 am
Forum: Forwarding Protocols
Topic: ROS7 and BGP IPv6 Reflectors, still broken?
Replies: 14
Views: 7129

Re: ROS7 and BGP IPv6 Reflectors, still broken?

show your bgp connections configuration.
by mrz
Mon Dec 23, 2024 2:08 pm
Forum: Forwarding Protocols
Topic: ROS7 and BGP IPv6 Reflectors, still broken?
Replies: 14
Views: 7129

Re: ROS7 and BGP IPv6 Reflectors, still broken?

IPv6 reflector works as expected, it does not change nexthop to itself.
I guess that there are link local gateways in which case changing nexthop is expected behavior.
by mrz
Mon Dec 23, 2024 12:29 pm
Forum: Forwarding Protocols
Topic: BGP - Adding prefixes to an address list [SOLVED]
Replies: 1
Views: 7732

Re: BGP - Adding prefixes to an address list [SOLVED]

Currently answers are No and No.
by mrz
Wed Dec 18, 2024 9:39 pm
Forum: Forwarding Protocols
Topic: BGP Route Exchange Between Local VRFs on a MikroTik Router
Replies: 10
Views: 4951

Re: BGP Route Exchange Between Local VRFs on a MikroTik Router

If you actually read OP you will see that it has nothing to do with label distribution protocols, there is zero need of such protocols in particular setup. Also, there are no known problems with LDP interoperability with Cisco or other vendors. LDP is implemented according to RFC the same way as for...
by mrz
Wed Dec 18, 2024 7:19 pm
Forum: Forwarding Protocols
Topic: eBGP not establishing [SOLVED]
Replies: 10
Views: 10257

Re: eBGP not establishing [SOLVED]

RFC 3021 compliance dictates that assigning the broadcast address of a /31 is not problematic.
OP clearly hows that broadcast address of /30 is used, it has nothing to do with /31
by mrz
Tue Dec 17, 2024 10:20 pm
Forum: Forwarding Protocols
Topic: eBGP not establishing [SOLVED]
Replies: 10
Views: 10257

Re: eBGP not establishing [SOLVED]

that is networking basics
by mrz
Tue Dec 17, 2024 9:14 pm
Forum: Forwarding Protocols
Topic: eBGP not establishing [SOLVED]
Replies: 10
Views: 10257

Re: eBGP not establishing [SOLVED]

You must not assign subnets broadcast address to host.
by mrz
Tue Dec 17, 2024 9:12 pm
Forum: Forwarding Protocols
Topic: BGP Route Exchange Between Local VRFs on a MikroTik Router
Replies: 10
Views: 4951

Re: BGP Route Exchange Between Local VRFs on a MikroTik Router

There was a problem with resolving BGP gateways. Next beta version will have the fix.
by mrz
Tue Dec 17, 2024 1:23 pm
Forum: Forwarding Protocols
Topic: BGP Route Exchange Between Local VRFs on a MikroTik Router
Replies: 10
Views: 4951

Re: BGP Route Exchange Between Local VRFs on a MikroTik Router

Gateway must be resolvable in that particular vrf. If it can't be resolved then there will be empty immediate gateay and route will not be active.
by mrz
Mon Dec 16, 2024 3:26 pm
Forum: Forwarding Protocols
Topic: BGP Route Exchange Between Local VRFs on a MikroTik Router
Replies: 10
Views: 4951

Re: BGP Route Exchange Between Local VRFs on a MikroTik Router

You don't need BGP session between VRFs, VPN import is done without active session. See the manual:
https://help.mikrotik.com/docs/spaces/R ... uteleaking
by mrz
Tue Dec 10, 2024 10:24 am
Forum: Announcements
Topic: v7.17rc [testing] is released!
Replies: 408
Views: 163907

Re: v7.17rc [testing] is released!

DNS in a VRF still doesn't work... 7.17rc2
As explained already before, setting VRF parameter allows to listen for DNS queries in a VRF. Feature to connect to remote DNS servers via VRF does not exist yet.
by mrz
Mon Nov 25, 2024 5:26 pm
Forum: Announcements
Topic: v7.17rc [testing] is released!
Replies: 408
Views: 163907

Re: v7.17rc [testing] is released!

One disabled ovpn-server was/is always there - even if you do not use ovpn server at all.
Configuration is upgraded and new server is created only if in older version at leat one parameter in server configuration was set by you to non-default value.
by mrz
Mon Nov 25, 2024 11:40 am
Forum: Forwarding Protocols
Topic: [SOLVED]can't find set-routing-mark in route filters for BGP in ROS7
Replies: 2
Views: 3180

Re: can't find set-routing-mark in route filters for BGP in ROS7

You cannot set tables for individual routes but, you can set "routing-table" in BGP connection config. It will add all routes in a specified table.
by mrz
Tue Nov 19, 2024 5:00 pm
Forum: General
Topic: Create self-signed certificates with openssl for MIkrotik SSTP VPN server
Replies: 2
Views: 1169

Re: Create self-signed certificates with openssl for MIkrotik SSTP VPN server

Just generate self signed cert on the router itself
All the info is in the manual
https://help.mikrotik.com/docs/spaces/R ... rtificates
by mrz
Mon Nov 11, 2024 12:42 pm
Forum: General
Topic: BGP routes [SOLVED]
Replies: 4
Views: 1184

Re: BGP routes [SOLVED]

In perfect conditions less than a minute
by mrz
Mon Nov 11, 2024 11:48 am
Forum: General
Topic: packet filter by content
Replies: 8
Views: 1365

Re: packet filter by content

I would suggest to look at the packets sniffer before trying to match anything.
If you look at DNS query you will see that what you think is a dot is not a dot. Separator is non-printable character and cannot be matched with "content" parameter.
by mrz
Mon Nov 04, 2024 5:36 pm
Forum: Announcements
Topic: v7.17beta [testing] is released!
Replies: 773
Views: 209236

Re: v7.17beta [testing] is released!

And additionally what pe1chl mentioned it is strange that you see this only after upgrade, such behaviour existed for years.
by mrz
Sat Nov 02, 2024 11:05 am
Forum: Announcements
Topic: v7.17beta [testing] is released!
Replies: 773
Views: 209236

Re: v7.17beta [testing] is released!

But how should i sell my colleagues and boss a Solution which is completely randomly deciding to focus on NAS Features when things like HW-accel or proper HA are nothing near ready? If you read this forum then you will notice statements that more than one developer is working on ROS. Adding NAS fea...
by mrz
Tue Oct 29, 2024 1:44 pm
Forum: Beginner Basics
Topic: Setup my mikrotik as a bgp client from public route server
Replies: 5
Views: 3010

Re: Setup my mikrotik as a bgp client from public route server

Start by basics, read what is iBGP what is eBGP, and in which case what ASNs should be used.
There are a lot of articles and examples out on the internet, very very basic stuff is also in the manual:
https://help.mikrotik.com/docs/spaces/R ... -BGPBasics
by mrz
Tue Oct 29, 2024 1:05 pm
Forum: General
Topic: RouterOS x86, no support for Chelsio T540 VF? [SOLVED]
Replies: 47
Views: 5090

Re: RouterOS x86, no support for Chelsio T540 VF? [SOLVED]

I do not understand the point you are trying to make from these posts. OP stated that the device is passed, but not recognized correctly by ROS. So you can already assume that all drivers and config for passthrough is set up correctly on the host system. Right? Right. ROS now has enabled the cxgb4vf...
by mrz
Tue Oct 29, 2024 9:57 am
Forum: General
Topic: RouterOS x86, no support for Chelsio T540 VF? [SOLVED]
Replies: 47
Views: 5090

Re: RouterOS x86, no support for Chelsio T540 VF? [SOLVED]

Yes, passthrough requires a driver on the guest OS, and yes we have added cxgb4vf driver in our latest development branch. v7.17 will have this driver enabled.
by mrz
Fri Oct 18, 2024 1:11 pm
Forum: Announcements
Topic: v7.17beta [testing] is released!
Replies: 773
Views: 209236

Re: v7.17beta [testing] is released!

container and run whatever you like.
by mrz
Mon Oct 14, 2024 12:11 pm
Forum: General
Topic: enabling/disabling routes takes a long time
Replies: 7
Views: 1107

Re: enabling/disabling routes takes a long time

Yes, route needs to be found before it can be disabled, and it is done by the console script, which adds to computing time even more.
v7 has faster lookup done directly by routing process, but with v6 there is nothing much you can do except reducing amount of routes.
by mrz
Mon Oct 14, 2024 12:07 pm
Forum: Forwarding Protocols
Topic: l3-hw and filtered routes
Replies: 1
Views: 3190

Re: l3-hw and filtered routes

There is no "discard" in filters, but it I am not sure how it is even related to L3-HW, because only "active" route can be sent to HW.
by mrz
Sun Oct 13, 2024 10:25 am
Forum: Forwarding Protocols
Topic: bgp-path-len BGP AS-PATH [SOLVED]
Replies: 3
Views: 7746

Re: bgp-path-len BGP AS-PATH [SOLVED]

use bgp-path-len
list of all the routing filter parameters is in the manual:
https://help.mikrotik.com/docs/display/ ... nd+Filters
by mrz
Fri Oct 11, 2024 12:00 pm
Forum: General
Topic: MPLS-TE [SOLVED]
Replies: 8
Views: 1735

Re: MPLS-TE [SOLVED]

No, it is not 7.17 related at all.
Its a winbox issue, currently use CLI to add path.
by mrz
Fri Oct 11, 2024 10:06 am
Forum: General
Topic: MPLS-TE [SOLVED]
Replies: 8
Views: 1735

Re: MPLS-TE [SOLVED]

TE is not an interface that you can use for forwarding manually.
TE tunnel is used automatically, for example, on VPLS when src/dst addresses of the vpls tunnel match te tunnel ones.
by mrz
Wed Oct 09, 2024 10:01 pm
Forum: Forwarding Protocols
Topic: BGP PBR instead of ECMP
Replies: 5
Views: 3528

Re: BGP PBR instead of ECMP

Well of course, but for that you need to use the correct names, as I mentioned previously.
by mrz
Wed Oct 09, 2024 9:37 pm
Forum: Forwarding Protocols
Topic: BGP PBR instead of ECMP
Replies: 5
Views: 3528

Re: BGP PBR instead of ECMP

It is not working probably because marks "to_ISPX" are not the same "ISPX"
by mrz
Wed Oct 09, 2024 3:10 pm
Forum: Forwarding Protocols
Topic: IS-IS
Replies: 172
Views: 70735

Re: IS-IS

Yes, currently it is made as you say, 0=/=3
by mrz
Tue Oct 08, 2024 7:17 pm
Forum: Announcements
Topic: v7.17beta [testing] is released!
Replies: 773
Views: 209236

Re: v7.17beta [testing] is released!

Kernel version have been discussed many times before and like it was mentioned before it is being patched, so you cannot say that it is 5.6.3 in the form as it came out in 2020. Kernel version is updated when it is absolutely necessary or the actual gains are worth the effort.
by mrz
Tue Oct 08, 2024 5:49 pm
Forum: Forwarding Protocols
Topic: OSPF and blackhole routes
Replies: 1
Views: 3024

Re: OSPF and blackhole routes

routing filters
by mrz
Tue Oct 08, 2024 1:45 pm
Forum: Forwarding Protocols
Topic: Bgp vpls with route reflector not working Rosv7
Replies: 3
Views: 3198

Re: Bgp vpls with route reflector not working Rosv7

Send to support packet sniffs of the BGP session form both last working version and from non working version.
by mrz
Sun Sep 29, 2024 1:18 pm
Forum: Forwarding Protocols
Topic: VRF Route Leaking between VRF network and Main [SOLVED]
Replies: 20
Views: 19192

Re: VRF Route Leaking between VRF network and Main [SOLVED]

default originate feature for bgp vpn does not exist yet.
by mrz
Fri Sep 27, 2024 7:27 pm
Forum: Announcements
Topic: v7.17beta [testing] is released!
Replies: 773
Views: 209236

Re: v7.17beta [testing] is released!

BGP still missing ibgp-rr-client local.role since 7.16
It will be missing because ibgp-rr-client had no special meaning, it is the same as ibgp.
by mrz
Thu Sep 26, 2024 9:23 pm
Forum: Forwarding Protocols
Topic: IPv6 switch rules on CCR2116
Replies: 1
Views: 3458

Re: IPv6 switch rules on CCR2116

See documentation when parameters are applied:
https://help.mikrotik.com/docs/display/ ... Rules(ACL)
by mrz
Wed Sep 25, 2024 10:38 am
Forum: Announcements
Topic: v7.16.2 [stable] is released!
Replies: 506
Views: 247559

Re: v7.16 [stable] is released!

it seems vrf-routing is trouble, coming from 7.15.3 static vrf routes were marked inactive and we found no way to get those active, neither deleting, adding new ones, basically all vrf-routes are inactive and show things like: 4 IsH dst-address=0.0.0.0/0 routing-table=main gateway=10.100.6.5 immedi...
by mrz
Tue Sep 24, 2024 8:34 pm
Forum: General
Topic: Wishes for 7.17 beta
Replies: 12
Views: 2268

Re: Wishes for 7.17 beta


7.16 to 7.16.1 is a minor change.
7.16 to 7.17 is a mayor change.
industry standard MAJOR.MINOR.PATCH
by mrz
Tue Sep 24, 2024 2:19 pm
Forum: General
Topic: Wishes for 7.17 beta
Replies: 12
Views: 2268

Re: Wishes for 7.17 beta

I don't think that you will see such fundamental rework in any minor release. RouterOS logging has list of topics, there are no strict separation in "severity", "module", "info" etc. List of topics can contain * "module" and/or "sub-module" topics * ...
by mrz
Wed Sep 18, 2024 8:50 am
Forum: Announcements
Topic: v7.16rc [testing] is released!
Replies: 362
Views: 133411

Re: v7.16rc [testing] is released!

Like I already said it is in a todo list.
by mrz
Tue Sep 17, 2024 10:00 pm
Forum: Announcements
Topic: v7.16rc [testing] is released!
Replies: 362
Views: 133411

Re: v7.16rc [testing] is released!

Yes, it is like in any other configuration with vrf parameter.
by mrz
Tue Sep 17, 2024 7:29 pm
Forum: Announcements
Topic: v7.16rc [testing] is released!
Replies: 362
Views: 133411

Re: v7.16rc [testing] is released!

v7.16rc4 - DNS VRF does not work. When setting: /ip dns set vrf=mgmtvrf the system always sends DNS queries via the main vrf, regardless of this setting. issued SUP-160816 on 2024-07-31 with not a single reaction had the same idea with a mgmt vrf where i needed DNS resolution ... went the "mai...
by mrz
Tue Sep 17, 2024 1:37 pm
Forum: Forwarding Protocols
Topic: Discard Default Router acquired by OSPF
Replies: 2
Views: 4101

Re: Discard Default Router acquired by OSPF

And you could use simpler rule:
"if (dst == 0.0.0.0/0) { reject }"
by mrz
Thu Sep 12, 2024 1:04 pm
Forum: Forwarding Protocols
Topic: BGP-GR: Google requires it, Mikrotik does not support it? [SOLVED]
Replies: 4
Views: 9736

Re: BGP-GR: Google requires it, Mikrotik does not support it? [SOLVED]

Even if Google specifies GR as a requirement, it will not change anything you will still be able to establish session. ROS is advertising GR capability.
by mrz
Wed Sep 11, 2024 6:08 pm
Forum: Forwarding Protocols
Topic: route filtering based on route tag
Replies: 2
Views: 3088

Re: route filtering based on route tag

Only OSPF and RIP routes can have tags.
by mrz
Tue Sep 03, 2024 9:39 pm
Forum: General
Topic: /31 through a IPSec over GRE tunnel
Replies: 7
Views: 1065

Re: /31 through a IPSec over GRE tunnel

/31 is not supported, use /32
by mrz
Tue Sep 03, 2024 4:17 pm
Forum: Announcements
Topic: 📣 WinBox 4 is here 📣
Replies: 2137
Views: 1262792

Re: WinBox 4 is here

The detached window feature would make sense if there is only one Winbox instance running at a time. Since mostly several Winbox instances are running, detaching windows would create even more usability issues.
by mrz
Fri Aug 30, 2024 8:56 am
Forum: Announcements
Topic: 📣 WinBox 4 is here 📣
Replies: 2137
Views: 1262792

Re: WinBox 4 is here

Not working on windows 7 (still on all my windows machines). Win 7 mainstream support dropped almost 10years ago. Noone in their right mind will deliberately compile their software with old libraries (potentially buggy and most likely breaking experience for newer OS users). If you are not willing ...
by mrz
Thu Aug 29, 2024 3:03 pm
Forum: Announcements
Topic: 📣 WinBox 4 is here 📣
Replies: 2137
Views: 1262792

x

Routing table is 2.5 mill currently. I get 51 routes after 20 seconds, 61 after 25, 74 after 30.. Super slow.. Not to mention ridiculousness of monitoring 2.5 M routes in winbox, winbox 4 is not slower than winbox 3 (loads 400k routes in few minutes on a router with 5.5 M routes). So for the bottle...
by mrz
Wed Aug 28, 2024 3:24 pm
Forum: Beginner Basics
Topic: Filter Layer7 regex failure
Replies: 2
Views: 752

Re: Filter Layer7 regex failure

Like the error says, "." is a control character. "\\x2e" is ASCII "."
Instead of "\\x2e" write "\\."
by mrz
Tue Aug 27, 2024 10:49 am
Forum: Forwarding Protocols
Topic: BGP Filter Issue Between MikroTik v7 and Cisco Routers
Replies: 9
Views: 5503

Re: BGP Filter Issue Between MikroTik v7 and Cisco Routers

First of all filters are local to the router, they cannot work differently depending on what vendor is the remote peer.

Second, in your config snipet you are not even using chains where you have added the rules. So if there are no rules in DC-SDWAN-OUT chain everything is rejected by default.
by mrz
Sun Aug 25, 2024 9:01 am
Forum: Forwarding Protocols
Topic: BGP Issues for full routing table
Replies: 9
Views: 4539

Re: BGP Issues for full routing table

It appears to be 8year old problem on ubnt
https://community.ui.com/questions/BGP- ... b960b2c617
Maybe it is time to change remote peer to something that actually works correctly.
by mrz
Sat Aug 24, 2024 1:57 pm
Forum: Forwarding Protocols
Topic: L3HW: Route HW table FULL
Replies: 5
Views: 5038

Re: L3HW: Route HW table FULL

Solution for what exactly?
by mrz
Fri Aug 23, 2024 10:06 pm
Forum: Forwarding Protocols
Topic: BGP Issues for full routing table
Replies: 9
Views: 4539

Re: BGP Issues for full routing table

Filters cannot delete or modify aggregator attribute, but you can filter by atomic-aggregate
"if (bgp-atomic-aggregate) {reject}"
by mrz
Thu Aug 22, 2024 9:55 am
Forum: General
Topic: new-mss VS. clamp-to-pmtu with v7
Replies: 10
Views: 5165

Re: new-mss VS. clamp-to-pmtu with v7

The first example is used when one hop along the path, not controlled by you, has a lower MTU and path MTU discovery is blocked.
The second example can be used on the router, controlled by you, that is at the edge of the path with the lower MTU.
by mrz
Thu Aug 22, 2024 9:40 am
Forum: General
Topic: Routing mark uses wrong source address (RouterOS bug?)
Replies: 3
Views: 1048

Re: Routing mark uses wrong source address (RouterOS bug?)

Mangle is for marking not for changing source addresses, for that, you have to use srcnat or masquerade on out interface.
by mrz
Thu Aug 22, 2024 9:21 am
Forum: Forwarding Protocols
Topic: BGP Issues for full routing table
Replies: 9
Views: 4539

Re: BGP Issues for full routing table

Rn packet sniffer on that session and send pcap file and supout file to support.
by mrz
Wed Aug 21, 2024 3:17 pm
Forum: Beginner Basics
Topic: Routes to subnets in other routing tables. Why doesn't this work?
Replies: 5
Views: 1026

Re: Routes to subnets in other routing tables. Why doesn't this work?

Those routes are completely unnecessary if you do not use VRFs.
But if you use VRFs then here is an example how to properly do it
https://help.mikrotik.com/docs/pages/vi ... uteleaking
by mrz
Wed Aug 14, 2024 12:03 am
Forum: General
Topic: ECMP recursive routes
Replies: 38
Views: 12689

Re: ECMP recursive routes

In OP example they are not the same, what is intended is to try to install forwarding path over ether1 twice and through ether2 once, leading to forwarding where ether1 is chosen twice as much as ether2. This is not going to work in v7, because, like I said previously, equal gateways are installed i...
by mrz
Tue Aug 13, 2024 9:38 pm
Forum: General
Topic: ECMP recursive routes
Replies: 38
Views: 12689

Re: ECMP recursive routes

And if we return to OP, if gateways are equal ROSv7 adds it only once.
So ECMP with gateway x1,x1,x2 will be added as x1,x2 in the FIB.
by mrz
Mon Aug 12, 2024 10:15 pm
Forum: General
Topic: ECMP recursive routes
Replies: 38
Views: 12689

Re: ECMP recursive routes

However, I could not find where it states explicitly the hashing is used to choose the active route in the case of ECMP. Hashing is not used to select active routes, it is used to select forwarding path of the packet. Selection process of active routes is described here: https://help.mikrotik.com/d...
by mrz
Thu Aug 08, 2024 2:45 pm
Forum: Forwarding Protocols
Topic: ROSv7 - BGP Blackhole
Replies: 9
Views: 5867

Re: ROSv7 - BGP Blackhole

Yes, it won't as it was already mentioned before here and in the documentation, because of the reasons I pointed out in my previous posts.
So setting a blackhole route on the edge router is a good practice.
by mrz
Thu Aug 08, 2024 1:46 pm
Forum: Forwarding Protocols
Topic: ROSv7 - BGP Blackhole
Replies: 9
Views: 5867

Re: ROSv7 - BGP Blackhole

If you set a static route to point to your downstream then traffic will not be blackholed, it will be routed downstream, but if you do not have routes at all (even no blackhole) and have a default route to upstream, then congratulations you created a routing loop and congested your upstream link. Ba...
by mrz
Thu Aug 08, 2024 1:30 pm
Forum: Forwarding Protocols
Topic: ROSv7 - BGP Blackhole
Replies: 9
Views: 5867

Re: ROSv7 - BGP Blackhole

Quite the contrary, it is a bad idea to route traffic inside your network without an actual destination.
Blackholing traffic on the edge prevents it.
by mrz
Thu Aug 08, 2024 10:00 am
Forum: Announcements
Topic: v7.16rc [testing] is released!
Replies: 362
Views: 133411

Re: v7.16rc [testing] is released!

But how can I print the differences between RIB and FIB?
Only active routes are in the FIB.
by mrz
Tue Aug 06, 2024 9:42 am
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!

I do not know the details of why @br0kenPKI is so upset, but FYI the problem is acknowledged and will be fixed.
by mrz
Mon Aug 05, 2024 11:53 am
Forum: General
Topic: Export specefic Address list via command
Replies: 7
Views: 2138

Re: Export specefic Address list via command

Those are dynamic entries, of course export will not export them.
by mrz
Mon Aug 05, 2024 11:29 am
Forum: General
Topic: Export specefic Address list via command
Replies: 7
Views: 2138

Re: Export specefic Address list via command

/ip/firewall/address-list export where list="your_list"
by mrz
Wed Jul 31, 2024 11:01 pm
Forum: Forwarding Protocols
Topic: 2 x BGP full routing table performs terribly
Replies: 7
Views: 4468

Re: 2 x BGP full routing table performs terribly

As it is described in the article above input and output processes are not handling route calculations. bgp input process receives updates, decodes and sends routing info to main process. Main process is doing the calculations bgp output is similar to input, it "asks" for routes from the m...
by mrz
Wed Jul 31, 2024 1:09 pm
Forum: Forwarding Protocols
Topic: 2 x BGP full routing table performs terribly
Replies: 7
Views: 4468

Re: 2 x BGP full routing table performs terribly

There are certain tasks done by one process, check this article how multicore with routing processes work:
https://help.mikrotik.com/docs/display/ ... re+Support
by mrz
Wed Jul 31, 2024 11:58 am
Forum: Forwarding Protocols
Topic: 2 x BGP full routing table performs terribly
Replies: 7
Views: 4468

Re: 2 x BGP full routing table performs terribly

ip route print detail where bgp-as-path ~ "30621\$" is not going to work because such parameters do not exist. And even if you do such search in a correct menu with correct parameters you are asking console to run a script that gets whole routing table ( which by itself could take few minu...
by mrz
Mon Jul 29, 2024 3:04 pm
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!

Hm, my device receives an address via dhcp client, but it does not set any routes... Neither default one, nor stateless ones (option 121).
DHCP routes installed with no issues. Contact support.
by mrz
Mon Jul 29, 2024 9:58 am
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!

In 7.16beta7 ALL (all instances in all protocols) dynamic routing and, for some reason, 6to4 tunnel breaks, when using routing filter rule with "set gw" property.
There is a route crash, will be fixed in next beta.
by mrz
Wed Jul 24, 2024 4:04 pm
Forum: Forwarding Protocols
Topic: Static Routes not redistributed with OSPF on v7 - Solution
Replies: 3
Views: 3553

Re: Static Routes not redistributed with OSPF on v7 - Solution

It's impossible to tell anything more from a given info, but from a description, it looks like a misconfiguration on the network where one router has forwarding network actually resolvable.
by mrz
Thu Jul 18, 2024 4:20 pm
Forum: Forwarding Protocols
Topic: CCR1016 BGP ignore AS path
Replies: 4
Views: 3467

Re: CCR1016 BGP ignore AS path

A remote address and/or common template does not mean that the session runs on the same instance. See documentation for more info:
https://help.mikrotik.com/docs/display/ ... neInstance
by mrz
Thu Jul 18, 2024 3:36 pm
Forum: Forwarding Protocols
Topic: CCR1016 BGP ignore AS path
Replies: 4
Views: 3467

Re: CCR1016 BGP ignore AS path

Set BGP properly so that all sessions run on the same BGP instance.
by mrz
Tue Jul 16, 2024 3:28 pm
Forum: General
Topic: Help feature no longer working with question mark "?"
Replies: 10
Views: 977

Re: Help feature no longer working with question mark "?"

It's been that way for quite some time already.
by mrz
Mon Jul 15, 2024 12:00 pm
Forum: General
Topic: VRF.Web-proxy
Replies: 29
Views: 3644

Re: VRF.Web-proxy

if i add: dst-address=192.168.88.0/24 gateway=bridge1@vrf1 routing-table=main ,===> i can ping the phone, but no access to the phone dst-address=192.168.88.0/24 gateway=vrf1@vrf1 routing-table=main ,======>i can ping the router itslef This is expected. You can reach local table only when gateways i...
by mrz
Fri Jul 12, 2024 12:47 pm
Forum: General
Topic: Any plans to bring back UI for routing filters in v7?
Replies: 5
Views: 1039

Re: Any plans to bring back UI for routing filters in v7?

What is really inefficient is smashing your head against a wall due to typo's or not fully understanding the syntax The GUI shows you every potential option, there is no need to go wandering off on a side quest to find out what the capabilities are, or what the correct syntax is For this specific r...
by mrz
Fri Jul 12, 2024 10:39 am
Forum: General
Topic: migrating routing filters 6 to 7: "set-routing-mark" ?
Replies: 2
Views: 1242

Re: migrating routing filters 6 to 7: "set-routing-mark" ?

You cannot set routing marks with filters. To add routes in a specific routing table use routing-table parameter in bgp config.
by mrz
Thu Jul 11, 2024 1:59 pm
Forum: Scripting
Topic: Routing rules for dynamic IP addresses
Replies: 16
Views: 7299

Re: Routing rules for dynamic IP addresses

routing rule is just a frontend for linux ip rules. Here you will find this "unknown reason":
https://www.man7.org/linux/man-pages/ma ... ule.8.html
by mrz
Thu Jul 11, 2024 11:27 am
Forum: Scripting
Topic: Routing rules for dynamic IP addresses
Replies: 16
Views: 7299

Re: Routing rules for dynamic IP addresses

It has nothing to do with script syntax. You should familiarize with the configuration changes between v7 and v6. You can start with this article: https://help.mikrotik.com/docs/display/ROS/Moving+from+ROSv6+to+v7+with+examples In fact syntax highlight will show you exactly where the error is and gi...
by mrz
Mon Jul 08, 2024 9:11 am
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!


Unless the logs change to include some unique string, number, whatever, per BGP peer or per IPsec tunnel or per anything, regex won't really work.
Have you seen v7 BGP logs? What else is required to differentiate between BGP sessions apart from already logged session name, local/remote address ?
by mrz
Wed Jul 03, 2024 9:52 am
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!

If you gave a little more detail on new things, people might try them. i.e.
It is in the manual:
https://help.mikrotik.com/docs/display/ ... CMP)routes
by mrz
Wed Jul 03, 2024 9:47 am
Forum: Forwarding Protocols
Topic: Interfaces on VRFs not utilising SRCNAT with RoutingMarks
Replies: 1
Views: 3761

Re: Interfaces on VRFs not utilising SRCNAT with RoutingMarks

VRF is not the same as routing mark in v7. To be able to use routing mark you need to set it first. To match vrf in the firewall you can use other parameters, for example match on vrf interface. More info on vrf and fireall can be found in the manual: https://help.mikrotik.com/docs/pages/viewpage.ac...
by mrz
Mon Jul 01, 2024 10:38 am
Forum: Forwarding Protocols
Topic: BGP - Prevent VRRP from advertising [SOLVED]
Replies: 2
Views: 11157

Re: BGP - Prevent VRRP from advertising [SOLVED]

Set routing filter to reject /32
by mrz
Wed Jun 26, 2024 12:59 pm
Forum: Forwarding Protocols
Topic: ECMP not working
Replies: 8
Views: 4847

Re: ECMP not working

ECMP works if there are multiple paths (as name suggests).
by mrz
Wed Jun 26, 2024 12:05 pm
Forum: Forwarding Protocols
Topic: ECMP not working
Replies: 8
Views: 4847

Re: ECMP not working

Of course ECMP works, but like I said, FIB will not install multiple same gateways in FIB.
by mrz
Wed Jun 26, 2024 9:55 am
Forum: Forwarding Protocols
Topic: ECMP not working
Replies: 8
Views: 4847

Re: ECMP not working

v7 will not add multiple same gateways in FIB.
by mrz
Wed Jun 19, 2024 12:12 pm
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!

look at the units, GB is not the same as GiB. Disk size is detected properly if you convert form GiB to GB
by mrz
Wed Jun 19, 2024 11:57 am
Forum: Forwarding Protocols
Topic: Policy-Based Routing with BGP routes in v7 - How?
Replies: 3
Views: 3874

Re: Policy-Based Routing with BGP routes in v7 - How?

You cannot set routing tables with routing filters. You can only install all routes in a specific table by setting routing-table parameter in bgp config.
by mrz
Mon Jun 17, 2024 4:44 pm
Forum: General
Topic: Route Filters v7
Replies: 4
Views: 928

Re: Route Filters v7

Your filters will be converted after the upgrade.
But for differences you can start by checking this article:
https://help.mikrotik.com/docs/display/ ... ingFilters
by mrz
Mon Jun 17, 2024 4:38 pm
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15.1 [stable] is released!

It is purely a winbox 3.x issue, unrelated to nftables, iptables, netfilters or anything else.
Like pe1chl already wrote, Winbox takes all routes from routing/route and is applying the filters.
by mrz
Tue Jun 11, 2024 2:50 pm
Forum: General
Topic: Feature Request: 6VPE (VPNv6) - ipv6 address family
Replies: 41
Views: 8651

Re: Feature Request: 6VPE (VPNv6) - ipv6 address family

sorry, but unfortunately no, you can add ipv4 route with ipv6 gateway, not the other way around.
by mrz
Mon Jun 10, 2024 10:12 am
Forum: General
Topic: Feature Request: 6VPE (VPNv6) - ipv6 address family
Replies: 41
Views: 8651

Re: Feature Request: 6VPE (VPNv6) - ipv6 address family

you can already add static ipv6 routes with ipv4 gateways. But it was not possible to set it with routing filters, let me check now.
by mrz
Mon Jun 10, 2024 9:50 am
Forum: Forwarding Protocols
Topic: 2 networsk via l2tp route issue [SOLVED]
Replies: 4
Views: 11720

Re: 2 networsk via l2tp route issue [SOLVED]

Make a static binding in /interface/l2tp-server menu
by mrz
Sat Jun 08, 2024 1:47 pm
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

Leak is related to route attributes, so basically any setup where routes are added/removed frequently (like for example flapping tunnels, lots of bgp updates etc.)
by mrz
Sat Jun 08, 2024 11:18 am
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

This memory leak is fixed and will be included in the next release.
by mrz
Fri Jun 07, 2024 11:33 pm
Forum: General
Topic: Feature Request: 6VPE (VPNv6) - ipv6 address family
Replies: 41
Views: 8651

Re: Feature Request: 6VPE (VPNv6) - ipv6 address family

Even on cisco forums they have similar suggestions:
see Gopinath_Pigili post:
https://learningnetwork.cisco.com/s/que ... gp-session
by mrz
Fri Jun 07, 2024 11:27 pm
Forum: General
Topic: Feature Request: 6VPE (VPNv6) - ipv6 address family
Replies: 41
Views: 8651

Re: Feature Request: 6VPE (VPNv6) - ipv6 address family

Correct me if I'm wrong, but that is not supposed to work. Mapped ipv4 address is just a representation of IPv4 address in a specific format to be able to store it in ipv6 database. It cannot be used as real address or to be routed. In RouterOS routes with such a gateway will always be unreachable b...
by mrz
Fri Jun 07, 2024 3:07 pm
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

:toip is a command that converts from one variable type to different one (in this case to IP address type). "1.2.3.4" is a string representing an IP address which can be parsed and converted to IP address type. "google.com" is not a string of IP address, so obviously it cannot be...
by mrz
Fri Jun 07, 2024 12:00 pm
Forum: General
Topic: Feature Request: 6VPE (VPNv6) - ipv6 address family
Replies: 41
Views: 8651

Re: Feature Request: 6VPE (VPNv6) - ipv6 address family

By default ipv4 mapped gateway is installed if the BGP session is also ipv4.
Either change gateway with routing filters or run vpnv6 on ipv6 BGP session.
by mrz
Thu Jun 06, 2024 10:29 pm
Forum: Announcements
Topic: v7.16beta [testing] is released!
Replies: 288
Views: 136476

Re: v7.16beta [testing] is released!


- The way the default route is represented is strange:
It is not strange, it is how it is supposed to be when you send ipv6 routes over ipv4 session. It is ipv4 mapped address.
by mrz
Thu Jun 06, 2024 1:18 pm
Forum: Forwarding Protocols
Topic: BGP issue upgrading from ROS 6 to ROS 7
Replies: 6
Views: 4850

Re: BGP issue upgrading from ROS 6 to ROS 7

I guess that the problem is update-source. Look what is happening after upgrade, if local-address is empty, then set it to desired IP address. You can start by checking this article on differences between v6 and v7: https://help.mikrotik.com/docs/display/ROS/Moving+from+ROSv6+to+v7+with+examples#Mov...
by mrz
Wed Jun 05, 2024 8:36 am
Forum: Forwarding Protocols
Topic: BGP V7 filter question
Replies: 5
Views: 4579

Re: BGP V7 filter question

Add all numbers in num-list, and then use that numlist in a single rule.
by mrz
Tue Jun 04, 2024 10:20 am
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

Like I said contact support with all the relevant info.
by mrz
Tue Jun 04, 2024 10:11 am
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

If it comes from the downstream customer then it is customer originated route not locally originated route. And it should be investigated why the customer is sending you that route only when you upgrade to v7.15, or maybe it is just a coincidence and has nothing to do with v7.15
by mrz
Tue Jun 04, 2024 9:43 am
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

There are no reports indicating that actually v7.15 is the one originating this route, from what is known is what I mentioned previously, route is received from other peer, not originated.
Contact support with supout file and /routing/bgp/advertisements output showing the route you are talking about.
by mrz
Tue Jun 04, 2024 8:56 am
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

Check your routing table, I bet there is a route received from some other peer and is not actually locally originated. Trace where this route is coming from.
by mrz
Mon Jun 03, 2024 1:40 pm
Forum: Forwarding Protocols
Topic: IS-IS
Replies: 172
Views: 70735

Re: IS-IS

Is is-is support wide metic in v7.15 ??
It does:
https://help.mikrotik.com/docs/display/ROS/IS-IS
by mrz
Thu May 30, 2024 11:21 pm
Forum: Announcements
Topic: v7.15.3 [stable] is released!
Replies: 649
Views: 294482

Re: v7.15 [stable] is released!

??? How not distributing 127.0.0.1 address is "stripping functionality"? It does not even make sense to distribute 127.0.0.1, it is called "localhost" for a reason.
by mrz
Wed May 29, 2024 4:51 pm
Forum: Scripting
Topic: Are IDs returned from REST API stable?
Replies: 4
Views: 3845

Re: Are IDs returned from REST API stable?

Internal ID stays the same as long as object exists. It doesn't matter if it is api, rest api or console ID, is the same.
by mrz
Tue May 28, 2024 12:45 pm
Forum: Forwarding Protocols
Topic: OSPF Bug: incorrect network advertisement for point-to-point addresses
Replies: 9
Views: 4509

Re: OSPF Bug: incorrect network advertisement for point-to-point addresses

Like pe1chl said, but if you want to summarize those /32 routes then use "ospf area range".
by mrz
Tue May 21, 2024 2:18 pm
Forum: Forwarding Protocols
Topic: How to use "input accept communities" in BGP?
Replies: 14
Views: 12750

Re: How to use "input accept communities" in BGP?

currently input.accept-communities does not work as intended, problem is known and it will be addressed in the future.
by mrz
Mon May 20, 2024 5:27 pm
Forum: Forwarding Protocols
Topic: BGP-VPN between main and vrf
Replies: 5
Views: 5067

Re: BGP-VPN between main and vrf

Currently not possible
by mrz
Wed May 15, 2024 9:24 pm
Forum: Forwarding Protocols
Topic: IS-IS
Replies: 172
Views: 70735

Re: IS-IS

Like I said, those problems are known and will be addressed in the future.
by mrz
Wed May 15, 2024 4:08 pm
Forum: Forwarding Protocols
Topic: IS-IS
Replies: 172
Views: 70735

Re: IS-IS

Yes, IS-IS is in early development and there are known problems that will be addressed in the future.
by mrz
Tue May 14, 2024 4:09 pm
Forum: Announcements
Topic: v7.15rc [testing] is released!
Replies: 340
Views: 136343

Re: v7.15rc [testing] is released!

it is not specific to v7.15 so rc3 most likely will not fix your problem.
by mrz
Tue May 14, 2024 2:26 pm
Forum: Announcements
Topic: v7.15rc [testing] is released!
Replies: 340
Views: 136343

Re: v7.15rc [testing] is released!

Wait for the next RC, there will be potential fix for the problems appeared in v7.15 builds. However there can be other "high CPU usage" causes that are not strictly related to v7.15
by mrz
Fri May 10, 2024 4:04 pm
Forum: Forwarding Protocols
Topic: default route check with BFD
Replies: 10
Views: 5263

Re: default route check with BFD

unfortunately I cannot give you any timeframe.
by mrz
Fri May 10, 2024 1:09 pm
Forum: Forwarding Protocols
Topic: default route check with BFD
Replies: 10
Views: 5263

Re: v7.15rc [testing] is released!

All of this is unrelated to 7.15rc release, if you have difficulties etting routing filters or BFD questions then please create a separate topic. Also "BFD for OSPF" means that BFD is used to detect whether the OSPF neighbor is down, it is unrelated to setting check gateways for the ospf r...
by mrz
Thu May 02, 2024 9:57 am
Forum: RouterOS beta
Topic: v7 inter VRF route leak doesn't work for local IPs
Replies: 40
Views: 20526

Re: v7 inter VRF route leak doesn't work for local IPs

Probably was removed by mistake, it should be reverted now.
by mrz
Tue Apr 30, 2024 9:19 am
Forum: Forwarding Protocols
Topic: Advertise filters v6 vs v7 (differences)
Replies: 2
Views: 3564

Re: Advertise filters v6 vs v7 (differences)

You need to set advertise=yes, because default assumed value is "no".
by mrz
Wed Apr 24, 2024 3:49 pm
Forum: General
Topic: RouterOS 7 can't edit dynamic object
Replies: 18
Views: 4301

Re: RouterOS 7 can't edit dynamic object

Dynamic rules not being removed should be reported to support and fixed. Do you mean not being removed after switching off the feature which created them(like after switching off hotspot)? Yes, if you switch on something that creates the dynamic rules, then those rules must be removed after the fea...
by mrz
Wed Apr 24, 2024 2:29 pm
Forum: General
Topic: RouterOS 7 can't edit dynamic object
Replies: 18
Views: 4301

Re: RouterOS 7 can't edit dynamic object

Dynamic rules are called dynamic for a reason, if you want a specific rule then make a static rule with your specific parameters.

Dynamic rules not being removed should be reported to support and fixed.
by mrz
Mon Apr 22, 2024 5:12 pm
Forum: General
Topic: system/logging Confusion...
Replies: 5
Views: 1003

Re: system/logging Confusion...

If topics of the log message contains your specified topics log entry is logged, for example "info" will match all that contains "info" ( "info,wireless","info,ospf" etc) You can exclude specific topics, for example: "info,!wireless" will exclude all...
by mrz
Tue Apr 16, 2024 5:45 pm
Forum: Announcements
Topic: v7.15beta [testing] is released!
Replies: 492
Views: 160188

Re: v7.15beta [testing] is released!

isis to cisco works for me and there are no isis changes that could break isis with cisco in v7.15beta versions. There must be something specific to your config which is not related to v7.15release
by mrz
Mon Apr 15, 2024 4:51 pm
Forum: Forwarding Protocols
Topic: Single-hop BFD session is not restored after reboot or power outage
Replies: 6
Views: 4483

Re: Single-hop BFD session is not restored after reboot or power outage

As it was already mentioned here, BFD for static routes is not ready. Currently BFD session can be created by routing protocols with enabled BFD, static route may use existing session, if destination address match, but it cannot create the new session.
by mrz
Sat Apr 13, 2024 11:10 am
Forum: Announcements
Topic: v7.15beta [testing] is released!
Replies: 492
Views: 160188

Re: v7.15beta [testing] is released!

route will not show if that router is also originating default route and one of the other two routers selected it as best.
by mrz
Fri Apr 12, 2024 11:27 pm
Forum: Forwarding Protocols
Topic: Passive Interfaces MPLS - VPLS RouterOS v7
Replies: 6
Views: 4575

Re: Passive Interfaces MPLS - VPLS RouterOS v7

For those who are interested, find the following information: In MPLS (Multiprotocol Label Switching), a passive interface on a Mikrotik router refers to an interface that does not actively participate in the exchange of MPLS labels. In other words, the passive interface on a Mikrotik router does n...
by mrz
Sun Apr 07, 2024 1:50 am
Forum: Forwarding Protocols
Topic: BGP VPLS with route reflector [SOLVED]
Replies: 14
Views: 16364

Re: BGP VPLS with route reflector [SOLVED]

That passive flag is unrelated to the problem, this is just an additional info that is available in ROSv7.
Passive flag shows if LDP router has active or passive role, more info here:
https://datatracker.ietf.org/doc/html/r ... tion-2.5.2
by mrz
Sun Apr 07, 2024 1:43 am
Forum: Forwarding Protocols
Topic: BGP ECMP (multipathing)
Replies: 80
Views: 50866

Re: BGP ECMP (multipathing)

To my knowledge none of the MT employees have said that add path is required to install ECMP routes. And if you are so familiar with Cisco, Juniper and FRR and have at least once deployed BGP on the RouterOS you should know what BGP instance is. There is a lot of info all over the internet on what B...
by mrz
Thu Apr 04, 2024 12:36 pm
Forum: Forwarding Protocols
Topic: BGP ECMP (multipathing)
Replies: 80
Views: 50866

Re: BGP ECMP (multipathing)

I agree that for BGP to install ECMP routes, add path is not necessary, but since both ADD PATH and ECMP would need changes in best path selection code, those features should be linked and implemented at the same time. But that's not ECMP. There's nothing looking at the route costs to determine that...
by mrz
Wed Apr 03, 2024 2:17 pm
Forum: Forwarding Protocols
Topic: BGP ECMP (multipathing)
Replies: 80
Views: 50866

Re: BGP ECMP (multipathing)

but you can already have ECMP in any other case, each instance session can install its own best route and form ecmp.
by mrz
Wed Apr 03, 2024 1:43 pm
Forum: Forwarding Protocols
Topic: BGP ECMP (multipathing)
Replies: 80
Views: 50866

Re: BGP ECMP (multipathing)

There is no confusion, for OP setup ADD PATH is necessary.
by mrz
Fri Mar 29, 2024 12:21 pm
Forum: Forwarding Protocols
Topic: VRF Route Leaking between VRF network and Main [SOLVED]
Replies: 20
Views: 19192

Re: VRF Route Leaking between VRF network and Main [SOLVED]

THere are possible workarounds that might be implemented in the future, but currently it is as it is.
by mrz
Fri Mar 29, 2024 12:19 pm
Forum: Announcements
Topic: v7.15beta [testing] is released!
Replies: 492
Views: 160188

Re: v7.15beta [testing] is released!

This may be by default and supposed to work this way. But, Using bgp, we had accidentally set redistribute static and connected in bgp. We "thought" turning off our output network would turn off any outbound network advertisements. But, that static route still pushed to our upstream. This...
by mrz
Thu Mar 28, 2024 3:26 pm
Forum: Forwarding Protocols
Topic: VRF Route Leaking between VRF network and Main [SOLVED]
Replies: 20
Views: 19192

Re: VRF Route Leaking between VRF network and Main [SOLVED]

That setup may work for your needs, but it has its own limitations as described here: https://help.mikrotik.com/docs/pages/viewpage.action?pageId=328206#VirtualRoutingandForwarding(VRF)-StaticVRF-LiteConnectedrouteleaking It is not possible to leak "main" connected routes and be able to re...
by mrz
Wed Mar 27, 2024 3:57 pm
Forum: Forwarding Protocols
Topic: BGP relationship between connection and template [SOLVED]
Replies: 6
Views: 14338

Re: BGP relationship between connection and template [SOLVED]

RouterOS does not copy values from template to connection config. Winbox is doing that if you open connection and apply config.
by mrz
Wed Mar 27, 2024 8:19 am
Forum: Forwarding Protocols
Topic: BGP relationship between connection and template [SOLVED]
Replies: 6
Views: 14338

Re: BGP relationship between connection and template [SOLVED]

Template is not mandatory, you can find all your answers in the documentation:
https://help.mikrotik.com/docs/display/ ... figuration
by mrz
Wed Mar 27, 2024 8:14 am
Forum: Forwarding Protocols
Topic: Can't enter in 6 digit asn in communities
Replies: 2
Views: 3920

Re: Can't enter in 6 digit asn in communities

Of course you will not be able to do that.
A community is a 32-bit value split into two 16-bit sections
by mrz
Mon Mar 18, 2024 11:11 am
Forum: Forwarding Protocols
Topic: Split subnet to smaller in a router with BGP
Replies: 2
Views: 3527

Re: Split subnet to smaller in a router with BGP

I assume you are trying to advertise smaller subnet than /24 to the upstream. Typically upstream does not accept smaller subnets than 24
by mrz
Fri Mar 15, 2024 5:52 pm
Forum: Forwarding Protocols
Topic: V7.14.1 ISIS evaluation
Replies: 7
Views: 5010

Re: V7.14.1 ISIS evaluation

Then you are familiar what is the purpose of VRF as interface with the linux, the same is with the ROS.
by mrz
Fri Mar 15, 2024 9:24 am
Forum: Forwarding Protocols
Topic: V7.14.1 ISIS evaluation
Replies: 7
Views: 5010

Re: V7.14.1 ISIS evaluation

Lo is not supposed to be attached to VRF.
VRFs have their own vrf interfaces (interface name is the same as vrf name).
by mrz
Thu Mar 14, 2024 11:31 pm
Forum: RouterOS beta
Topic: BGP + ECMP
Replies: 17
Views: 15674

Re: BGP + ECMP

nothing is silently changed, multipath is still not implemented.
by mrz
Thu Mar 14, 2024 4:07 pm
Forum: General
Topic: v7.15beta broke backup file naming
Replies: 46
Views: 5507

Re: v7.15beta broke backup file naming

exactly
by mrz
Thu Mar 14, 2024 3:27 pm
Forum: General
Topic: v7.15beta broke backup file naming
Replies: 46
Views: 5507

Re: v7.15beta broke backup file naming

common sense would dictate not to use special chars in filenames anyway, especially when one can download files to other systems not supporting specific characters in filenames
by mrz
Wed Mar 13, 2024 12:49 pm
Forum: General
Topic: discarding BFD packet: too short
Replies: 7
Views: 3611

Re: discarding BFD packet: too short

Solution is just like for any other unwanted traffic. You block it.

Or upgrade to v7 and remove all BFD config.
by mrz
Wed Mar 13, 2024 10:40 am
Forum: General
Topic: discarding BFD packet: too short
Replies: 7
Views: 3611

Re: discarding BFD packet: too short

It is not a bug. Something is sending non bfd packet to bfd port, so bfd reports that it is not a valid bfd packet.
by mrz
Wed Mar 06, 2024 3:41 pm
Forum: Forwarding Protocols
Topic: BGP VRF route leak
Replies: 10
Views: 5492

Re: BGP VRF route leak

I would say that it is misconfiguration. VPNv4 requires at least LDP, otherwiseVPNv4 MPLS label cannot be resolved.
by mrz
Mon Mar 04, 2024 9:58 am
Forum: RouterOS beta
Topic: v7 inter VRF route leak doesn't work for local IPs
Replies: 40
Views: 20526

Re: v7 inter VRF route leak doesn't work for local IPs

Local addresses will be reachable starting from v7.15beta
by mrz
Fri Mar 01, 2024 6:56 pm
Forum: General
Topic: VRF routing issue on 7.14 [SOLVED]
Replies: 34
Views: 16481

Re: VRF routing issue on 7.14 [SOLVED]

vrf-interface parameter is just another way to say in which vrf route will be added. VRF is then chosen based on which VRF interface belongs, but since after reboot IPIP tunnel is assigned to "main", route is also moved to main.
by mrz
Fri Mar 01, 2024 2:56 pm
Forum: Forwarding Protocols
Topic: BGP Filter is not working as expected
Replies: 6
Views: 4029

Re: BGP Filter is not working as expected

Of course, best path selection never worked if routes are coming from different instances.
by mrz
Fri Mar 01, 2024 2:54 pm
Forum: General
Topic: VRF routing issue on 7.14 [SOLVED]
Replies: 34
Views: 16481

Re: VRF routing issue on 7.14 [SOLVED]

Thanks, confirmed.
by mrz
Fri Mar 01, 2024 2:31 pm
Forum: Forwarding Protocols
Topic: BGP Filter is not working as expected
Replies: 6
Views: 4029

Re: BGP Filter is not working as expected

make sure you are running all bgp peers on the sam bgp instance
by mrz
Tue Feb 27, 2024 9:13 am
Forum: Announcements
Topic: v7.14rc [testing] is released!
Replies: 176
Views: 67973

Re: v7.14rc [testing] is released!

7.15 beta what? IS-IS is already in v7.14
by mrz
Mon Feb 26, 2024 12:00 pm
Forum: Forwarding Protocols
Topic: ROSv7.13.3 - bgp-ext-communities
Replies: 2
Views: 3708

Re: ROSv7.13.3 - bgp-ext-communities

by mrz
Tue Feb 20, 2024 10:55 am
Forum: Forwarding Protocols
Topic: peering between bgp instance
Replies: 2
Views: 3661

Re: peering between bgp instance

Add VRFs and leak connected routes
https://help.mikrotik.com/docs/pages/vi ... uteleaking

then set up BGP connections between VRFs.
That way you can simulate or fake any eBGP setup you like.
by mrz
Thu Feb 15, 2024 12:45 pm
Forum: Forwarding Protocols
Topic: BGP session name (ROS 7.13.4)
Replies: 1
Views: 3627

Re: BGP session name (ROS 7.13.4)

because connection is a matcher and it can match multiple sessions. That is why session name = connection_name-x
by mrz
Fri Feb 09, 2024 1:55 pm
Forum: RouterOS beta
Topic: v7 inter VRF route leak doesn't work for local IPs
Replies: 40
Views: 20526

Re: v7 inter VRF route leak doesn't work for local IPs

probably can be used as vrf loopback.
by mrz
Fri Feb 09, 2024 9:42 am
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 498
Views: 188975

Re: v7.14beta [testing] is released!

Please bring IS-IS ipv6 :(
Have you even tried?
by mrz
Fri Feb 09, 2024 8:35 am
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

what do you mean?
by mrz
Thu Feb 08, 2024 3:25 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

It sure does work. Setup (111.15.0.1)CE1—-PE1——-PE2——CE2(111.13.0.1) PE2 will be used for nat testing. Relevant IPs on PE2: 1 111.13.0.2/24 111.13.0.0 sfp-sfpplus2 ;;; router-test 3 111.16.0.1/24 111.16.0.0 vrf-dummy /ip vrf add interfaces=sfp-sfpplus2,vrf-dummy name=vrfTest Relevant routes: DAc dst...
by mrz
Thu Feb 08, 2024 10:18 am
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

It is not entirely true, PE can still be protected and client behind PE as well. Only thing that you cannot do is destination nat on traffic from MPLS cloud to CE.
by mrz
Thu Feb 08, 2024 8:53 am
Forum: RouterOS beta
Topic: v7 inter VRF route leak doesn't work for local IPs
Replies: 40
Views: 20526

Re: v7 inter VRF route leak doesn't work for local IPs

Currently, Local addresses will not be reachable, because BGP VPN sets interface@vrf gateways. There are plans to change it in the future.
by mrz
Thu Feb 08, 2024 8:47 am
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 498
Views: 188975

Re: v7.14beta [testing] is released!

unfortunately no BGP/VRF local route leaking updates...
*) route - fixed gateways of locally imported vpnv4 routes;
by mrz
Mon Feb 05, 2024 7:01 pm
Forum: Forwarding Protocols
Topic: ERROR: RECV RouteRefresh with invalid subtype: 0
Replies: 19
Views: 11041

Re: ERROR: RECV RouteRefresh with invalid subtype: 0

Solving this is in a todo list but with low priority
by mrz
Mon Feb 05, 2024 1:27 pm
Forum: Forwarding Protocols
Topic: ERROR: RECV RouteRefresh with invalid subtype: 0
Replies: 19
Views: 11041

Re: ERROR: RECV RouteRefresh with invalid subtype: 0

AFAIK this does not do any harm. Do you have any actual problem? If not and you simply do not like warnings, then those can be hidden or reconfigured to be recorded in different buffer.
by mrz
Tue Jan 30, 2024 11:00 am
Forum: Forwarding Protocols
Topic: BGP Default Route Disappearing
Replies: 3
Views: 4175

Re: BGP Default Route Disappearing

Typically you run IGP in your network, which deals with the default route.
by mrz
Fri Jan 26, 2024 3:16 pm
Forum: Scripting
Topic: ✂ Rextended Fragments of Snippets
Replies: 107
Views: 111610

Re: ✂ Rextended Fragments of Snippets

I can't continue to comment this in my topic, this on this topic is off-topic in... my topic.
Well, this is indeed off-topic, it has nothing to do with script snippets.
by mrz
Fri Jan 26, 2024 12:23 am
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

Few comments: - VPLS PW works fine between v7 routers, either there is something specific or misconfiguration. - Yes, RSVP-TE does not require LDP, those are independent label distribution methods. - You might need to restart LDP when you change advertise/accept filters. - Lo and VRF interfaces are ...
by mrz
Tue Jan 23, 2024 2:46 pm
Forum: Forwarding Protocols
Topic: RPKI
Replies: 6
Views: 4570

Re: RPKI

rpki-verify just adds the RPKI status to the prefix, you can see whether status have been addd by looking at parameters in /routing/route/print detail To actually reject or accept prefix you have to match the rpki status and add apropriate action, see example here: https://help.mikrotik.com/docs/dis...
by mrz
Thu Jan 18, 2024 5:03 pm
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 498
Views: 188975

Re: v7.14beta [testing] is released!

Separating routing protocols will not give you any significant gains in terms of disk storage. For example, by adding is-is, executable size increased only by 20KB. Separating it into its own executable would use more disk space. Multiply that by all routing protocols and on 16MB devices most likely...
by mrz
Thu Jan 18, 2024 3:44 pm
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 498
Views: 188975

Re: v7.14beta [testing] is released!

There is no separate bgp/ospf etc processes that could be put into separate packages, everything is integrated.
by mrz
Thu Jan 18, 2024 3:12 pm
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 498
Views: 188975

Re: v7.14beta [testing] is released!

routing is essential to install even connected and static routes for router to be able to forward anything at all. it does not makes sense to run router without a "routing package", which will render router useless.
by mrz
Fri Jan 12, 2024 3:28 pm
Forum: Forwarding Protocols
Topic: Bgp- signaled vpls and l3vpn issues in 7.10
Replies: 19
Views: 8739

Re: Bgp- signaled vpls and l3vpn issues in 7.10

Yes, it is a known route reflector issue, will be fixed in the future.
by mrz
Thu Jan 11, 2024 3:43 pm
Forum: Forwarding Protocols
Topic: BGP ROS7
Replies: 3
Views: 4413

Re: BGP ROS7

Here is everything you need to get started:
https://help.mikrotik.com/docs/display/ ... h+examples
by mrz
Sat Dec 30, 2023 12:46 pm
Forum: RouterOS beta
Topic: v7 inter VRF route leak doesn't work for local IPs
Replies: 40
Views: 20526

Re: v7 inter VRF route leak doesn't work for local IPs

this exact example works only in 7.14 because loopback and vrf interfaces are exposed only starting from this version.
by mrz
Fri Dec 29, 2023 4:17 pm
Forum: RouterOS beta
Topic: v7 inter VRF route leak doesn't work for local IPs
Replies: 40
Views: 20526

Re: v7 inter VRF route leak doesn't work for local IPs

As it was already mentioned in other topics, there never was a mechanism to automatically leak connected routes from other VRFs, like in the provided cisco config in this topic. For that static config is required, and starting from 7.14 where loopbacks are exposed it is even easier: /interface bridg...
by mrz
Thu Dec 28, 2023 5:02 pm
Forum: Forwarding Protocols
Topic: default route distance filter
Replies: 2
Views: 4012

Re: default route distance filter

dst == 0.0.0.0/0
by mrz
Thu Dec 28, 2023 11:24 am
Forum: Forwarding Protocols
Topic: BGP Established Issue in between MikroTik and Juniper . Error: Unsupported capability received, code: 128
Replies: 6
Views: 4901

Re: BGP Established Issue in between MikroTik and Juniper . Error: Unsupported capability received, code: 128

BTW it is not an error, it is a debug message informing that unsupported apability is being sent by remote peer, thats it. the BGP session will work regardless of that message. There is another reason why BGP session is tearing down which happens after open messages are exchanged and enteing establi...
by mrz
Thu Dec 28, 2023 11:16 am
Forum: Forwarding Protocols
Topic: BGP Routing Problems after upgrade from v6 to v7.13
Replies: 7
Views: 7297

Re: BGP Routing Problems after upgrade from v6 to v7.13

If v6 rule had ation=passthrough, then v7 rule is converted without action since it is the same as the "passthrough".
by mrz
Fri Dec 22, 2023 1:07 am
Forum: Forwarding Protocols
Topic: BGP Routing Problems after upgrade from v6 to v7.13
Replies: 7
Views: 7297

Re: BGP Routing Problems after upgrade from v6 to v7.13

yes, you could use "force self" as a workaround if you for some reason do not want to set up IGP.

regarding filters, do you have at least one rule that accepts something? if not then everything is rejected by default.
by mrz
Thu Dec 21, 2023 10:53 pm
Forum: Forwarding Protocols
Topic: BGP Routing Problems after upgrade from v6 to v7.13
Replies: 7
Views: 7297

Re: BGP Routing Problems after upgrade from v6 to v7.13

You need IGP running or static routes to resolve recursive gateways. And apart from that running two BGP instances does not make sense in that setup.
by mrz
Wed Dec 20, 2023 1:23 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

inter-VRF route leaking via RD with import/export on ROSv7 like it was useable in v6
That never existed in v6 either. There was just a workaround where you could establish bgp session between vrfs on a single router and then redistribute. In theory you already can do the same in v7 too.
by mrz
Tue Dec 19, 2023 12:07 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

7.14 will have exposed vrf interface and loopback interface ,so you will be able to match in firewall traffic looped to vrf interface.
by mrz
Mon Dec 18, 2023 8:43 pm
Forum: Forwarding Protocols
Topic: /ip route print detail where dst-address =x.x.x.x/xx FAIL!
Replies: 8
Views: 17444

Re: /ip route print detail where dst-address =x.x.x.x/xx FAIL!

/ip route print where 10.10.10.15 in dst-address
by mrz
Mon Dec 18, 2023 5:07 pm
Forum: Forwarding Protocols
Topic: BGP connections not appearing in sessions
Replies: 2
Views: 5528

Re: BGP connections not appearing in sessions

You have not reached any limits. Check packet sniffer to see if what you have configured actually matches incoming connection.
by mrz
Wed Dec 13, 2023 10:44 am
Forum: Forwarding Protocols
Topic: BGP - Best Path Selection with Multiple Upstreams [SOLVED]
Replies: 3
Views: 17941

Re: BGP - Best Path Selection with Multiple Upstreams [SOLVED]

I am on RouterOS v7.12.1. I think this MT documentation on best path selection is confusing me since I can't see any "BGP instance". I can only see BGP instances in ROS v6.


https://help.mikrotik.com/docs/display/ ... neInstance
by mrz
Tue Dec 12, 2023 4:10 pm
Forum: Forwarding Protocols
Topic: ROS 7.12.1 BGP Peer not initiaing connects or responding to connections
Replies: 1
Views: 6761

Re: ROS 7.12.1 BGP Peer not initiaing connects or responding to connections

Check the packet sniff, I am guessing that the md5 key is not correct.
by mrz
Fri Dec 08, 2023 6:55 pm
Forum: RouterOS beta
Topic: OS upgrade Issue from version 6 to version 7
Replies: 43
Views: 17286

Re: OS upgrade Issue from version 6 to version 7

Well, macos is a bad example, even some of their own developed software stops working after the upgrade and needs reinstall or config have to be changed. If we return to the topic, when something is not implemented yet or removed entirely, for those features config cannot be upgraded. Even if the co...
by mrz
Wed Dec 06, 2023 10:34 am
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 22918

Re: Status of ROS V7 for BGP, MPLS, VPLS

but MikroTik decided it was a terrible idea to support these three on the ASICs.
Hate to tell you, but your "inside source" is not trustworthy.
by mrz
Wed Nov 29, 2023 10:46 am
Forum: Forwarding Protocols
Topic: ROS 7.1 BGP max-prefix-limit missing
Replies: 54
Views: 19978

Re: ROS 7.1 BGP max-prefix-limit missing

No, template parameters are exposed to connection, so there is no need to create template for each connection.
by mrz
Wed Nov 29, 2023 9:31 am
Forum: Forwarding Protocols
Topic: ROS 7.1 BGP max-prefix-limit missing
Replies: 54
Views: 19978

Re: ROS 7.1 BGP max-prefix-limit missing

Let's use Microsoft AS8075 as an example. On their PeeringDB entry (https://www.peeringdb.com/net/694) they specify that peers should see no greater than 2000 v4 and 500 v6 routes and to assume there is an issue if a peer receives anything greater than this. If a peer hits a limit it should do an a...
by mrz
Tue Nov 28, 2023 2:09 pm
Forum: Forwarding Protocols
Topic: Migrate BGP VPN4 from v6 to v7
Replies: 1
Views: 7782

Re: Migrate BGP VPN4 from v6 to v7

Here you can find a basic example to start with
https://help.mikrotik.com/docs/pages/vi ... LSVPNsetup
by mrz
Thu Nov 23, 2023 11:01 am
Forum: Forwarding Protocols
Topic: Default Route Advertisement
Replies: 4
Views: 7453

Re: Default Route Advertisement

Which gateway is used to forward packets from the client is not determined by the default route you are originating to the client but by the routing table on your router.
by mrz
Fri Nov 17, 2023 9:04 am
Forum: Forwarding Protocols
Topic: BGP: filter prefixes based on AS path
Replies: 8
Views: 7912

Re: BGP: filter prefixes based on AS path

Regexps are slow, do not use regexpfor simple things like to match as path length, for that there is parameter bgp-path-len
https://help.mikrotik.com/docs/display/ ... Properties
by mrz
Fri Nov 17, 2023 8:58 am
Forum: Forwarding Protocols
Topic: VRF Route
Replies: 2
Views: 4701

Re: VRF Route

dst-address=1.1.1.0/24 gateway=y.y.y.y@vrf where "y.y.y.y" is the gateway in vrf and "vrf" is vrf name
by mrz
Thu Nov 16, 2023 6:01 pm
Forum: Scripting
Topic: GPT4 and writing scripts for Mikrotik
Replies: 51
Views: 10048

Re: GPT4 and writing scripts for Mikrotik

good luck using that code :D
by mrz
Thu Nov 16, 2023 5:32 pm
Forum: General
Topic: Fundamental problems at MikroTik
Replies: 32
Views: 5904

Re: Fundamental problems at MikroTik

Nobody is forcing to order a CD and pay for preparing it and shipping.
As it is already mentioned by normis, write to support and ask and you will get the GPL-covered source without charge.
by mrz
Thu Nov 16, 2023 2:27 pm
Forum: General
Topic: Fundamental problems at MikroTik
Replies: 32
Views: 5904

Re: Fundamental problems at MikroTik

Fake news :cnn:
Nobody is asking $45 USD to get GPL covered source.
by mrz
Thu Nov 16, 2023 2:21 pm
Forum: General
Topic: RouterOS 7.12 - RPKI - Refresh can't be set and SNMP issue
Replies: 4
Views: 1989

Re: RouterOS 7.12 - RPKI refresh can't be set and SNMP issue

I assume that you have a large routing table and you are trying to monitor whole routing table via SNMP.
When routing filters, in this case RPKI in filters, is updating routing table SNMP will not be able to get data until calculation is done.
by mrz
Thu Nov 16, 2023 12:16 pm
Forum: General
Topic: Fundamental problems at MikroTik
Replies: 32
Views: 5904

Re: v7.12 [stable] is released!

If software has it's roots in GPL-based projects, then the entire software must also be under GPL license. This logic does not make sense. In that case closed source drivers would not exist, and you would not be able to run any commercial software, and commercial linux distros would not exist. Or e...
by mrz
Thu Nov 16, 2023 1:01 am
Forum: Announcements
Topic: v7.12.1 [stable] is released!
Replies: 251
Views: 123543

Re: v7.12 [stable] is released!

cisco "show ip route x.x.x.x" is not equivalent to "ip route check".
You can already do the same as ciscos show ip route with
ip route print where x.x.x.x in dst-address
by mrz
Wed Nov 15, 2023 1:47 pm
Forum: Scripting
Topic: GPT4 and writing scripts for Mikrotik
Replies: 51
Views: 10048

Re: GPT4 and writing scripts for Mikrotik

I cannot say much about GPT4, maybe paid version is better, but in my experience GPT3.5 fails miserably in most of the cases, it just keeps imagining things that do not exist in the real world and it is not just with ROS scripts.
by mrz
Wed Nov 15, 2023 12:58 pm
Forum: Announcements
Topic: v7.13beta [testing] is released!
Replies: 460
Views: 120587

Re: v7.13beta [testing] is released!

serialize,deserialize - convert provided value from/to specified format onerror - catch errors grep - like linux grep tool Press F1 and you will see the parameters and descriptions: some examples: :put [:serialize to=json value=a,b,c] ["a","b","c"] :grep pattern="v...
by mrz
Tue Nov 14, 2023 5:45 pm
Forum: Announcements
Topic: v7.12.1 [stable] is released!
Replies: 251
Views: 123543

Re: v7.12 [stable] is released!

Until v7.12 in MPLS L3 env/ topology. /routing/route/print where routing-table=xxxx or /ip/route print where routing-table=xxxx did not show any routes when /ip/vrf interfaces=none. Works for me in any version above 7.11 [admin@MikroTik] /ip/route> /ip vrf/print Flags: X - disabled; * - builtin 0 n...
by mrz
Mon Nov 13, 2023 10:06 am
Forum: Forwarding Protocols
Topic: IS-IS
Replies: 172
Views: 70735

Re: IS-IS

Unfortunately for some and fortunately for others it is not a joke. IS-IS is in development but disabled for wider public in v7.12. Stay tuned, its coming soon.
by mrz
Fri Nov 10, 2023 11:28 am
Forum: Beginner Basics
Topic: From documentation - why is "WAN interface is now pppoe-out"
Replies: 4
Views: 1919

Re: From documentation - why is "WAN interface is now pppoe-out"

That is just a warning for that specific configuration, that from the point when you add pppoe inteface it is considered a WAN interface. You add multiple interfaces to WAN list only if you have multiple wan connections. in this case ether1 is not a wan connection, it is used just as a transport int...
by mrz
Fri Nov 10, 2023 12:58 am
Forum: Forwarding Protocols
Topic: ROS v7 Route Filter Question [SOLVED]
Replies: 1
Views: 11179

Re: ROS v7 Route Filter Question [SOLVED]

"if ( comment text xxx ) { do_some_stuff }" All available properties are listed in the manual: https://help.mikrotik.com/docs/display/ROS/Route+Selection+and+Filters#RouteSelectionandFilters-FilterSyntax And by pressing tab while typing autocompletion will suggest supported properties/com...
by mrz
Thu Nov 02, 2023 11:56 am
Forum: Forwarding Protocols
Topic: RouterOS V7 does not work BGP multihop peer
Replies: 8
Views: 7048

Re: RouterOS V7 does not work BGP multihop peer

Do not specify interface if you wan to match multihop sessions.
  • 1
  • 2
  • 3
  • 4
  • 5
  • 25