We were able to reproduce your issue in our labs.
Our developers have already considered this issue, and it will be fixed in future releases, but unfortunately, I cannot share any ETA yet.
I sent the following to support@mikrotik.com - will update if I get a response. Hello Mikrotik, Logging to email for "critical" topics is broken since 7.16 - it worked in 7.15.3. I have this issue on all of my devices hAPac^2, hAPac^3, Metal52ac, and RB750Gr3. I've reset my RB750Gr3 to the...
Still broken with 7.16.1. The critical log email is when NTP gets a new time from an external source, so the network and dns ae up. With the exact same configuration file, the email was sent for the NTP time change after boot with 7.15.3. This broke on update to 7.16. Both manual and logging trigger...
Hello, With 7.16, I am no longer getting log emails being sent immediately after boot. I have logging setup to send any critical topic to echo, email and remote. With 7.15.3 and earlier, every reboot I would get an email (and syslog, and echo to console) for the ntp time change. With 7.16 the email ...
It's all in the whitepaper https://www.wireguard.com/papers/wireguard.pdf - which is admittedly a pretty heavy read. This is the way I understand it: Either end initiates a connection, and the two communicating devices send traffic back and forth as required. There is no server and client, both ends...
It can't be a 2 minute timeframe to do nothing, but probably the 5 min could be reduced to 4 min (with the script scheduled every 2 minutes); or it could be set to 185s with the script scheduled every 65s. This is my thought experiment determining these numbers: Assume handshake is done and data sen...
I like this one more: https://forum.mikrotik.com/viewtopic.php?p=921026#p921026 Because you have FQDN in WG Peer, not only in a script, and you only update it when there's no connectivity. WG can automatically detect new peer IP if there are packets from new IP with the same signature, so you don't...
FYI, The netwatch script didn't work for me. I've got two devices (hAp ac2 / hAp ac3), both configured to open a wireguard connection to the other device using mikrotik cloud DDNS names. The devices are a hundred km apart, connected to different ISPs. When I updated the remote hAp ac3 from 7.1.3 to ...
Agreed. That's simpler and clearer than https://help.mikrotik.com/docs/display/ ... uard-Peers
allowed-address = List of IP (v4 or v6) addresses with CIDR masks from which incoming traffic for this peer is allowed and to which outgoing traffic for this peer is directed.
Well, maybe it's not exactly filtering, but it doesn't hurt to think about it as such. If peer's allow-address contains packet's destination address, it will go there, otherwise it won't. Isn't it nice and easy to understand? Yes but it misses the fact that besides matching is also a selection func...
I was using a subnet IP, and I don't think this is evidence of the value of an IP address as I still have removed it - it's simply an observation that when the IP is removed, the route need to be setup with a preferred source. :D The setup was like this: router A - subnets & addresses10.1.1.1/24...
Re: post 910487 (late reply, and off topic of OP, but I think interesting anyway) @sob, what does the effect or what is the purpose of using preferred source, something I have not used yet, nor understand?? Is this a weapon I will find useful??? /ip/route add dst-address=10.1.101.0/24 gateway=wiregu...
MikroTik support confirms that the settings are for SFP ports. This RouterOS setting is intended for 1G SFP fiber optic links. For example, it is necessary in 10G SFP+ interfaces when connected to 1G SFP device. https://wiki.mikrotik.com/wiki/MikroTik_SFP_module_compatibility_table#SFP.2B_interface_...
Thanks for the responses. @tdw Thanks for clearing that up. Not wanting to read the full specification, I did a quick search and Wikipedia says the same thing quite succinctly as well: https://en.wikipedia.org/wiki/Ethernet#Autonegotiation Also, there is a note in the MikroTik documentation - see No...
Hello, I've got a hEX (RB750Gr3) and a couple of hAP ac² routers. With both devices, I have never gotten a successful connection to any of my various periphal devices when the routers Ethernet port is configured as a 1G link without Auto Negotiation: # does not work /interface ethernet set [ find de...
Hello, I'm running 6.43.2 on a hEX RB750Gr3, and OBi200.mshome is setup as an IPv4 only static entry in the DNS table. Can anyone explain why syslog reports "A dns name exists, but no appropriate record", but the DNS reply contain the correct IP address "obi200.mshome:A:600=172.18.169...
Hi normis, Yes, the IP CLOUD features are off. I checked both locations you mention - and I also verified that System->Clock, Time Zone Autodetected is deselected. As a test, I checked what would happen if I turned on one of the cloud features. If I turn DDNS on, then I see (as expected) additional ...
Hi normis, Thanks for the quick reply - apologies for the slow follow-up. To answer your question, I did not have QuickSet open, but I did have many windows open in WinBox, and your reply gave me a hint. I was able to replicate the problem tonight. I first opened WinBox and setup my logging to show ...
Sorry for resurrecting an old post, but I'm running 6.40.3 on a RB750Gr3, and see the same issue - frequent DNS queries to upgrade.mikrotik.com (approximately a couple times every minute). Has the bug on 6.33 early versions crept back into the code? 03:00:02 dns local query: #47433 upgrade.mikrotik....
I setup a very simple script to disable simple queue counters - I removed all policy settings, so am expecting the script to not work: [admin@RB750Gr3] > /system script print Flags: I - invalid 0 name="Reset Simple Queue Counters" owner="admin" last-started=mar/18/2017 23:36:45 r...
Thanks jkarras for the script - it work very well.
I've created a mod as a proposed method to dynamically determine the domain: https://github.com/daven-que/ROS-DDNS
After some investigating, I discovered the reason the default configuration changed. With the wireless package disabled, the default configuration after a reset-configuration is: ------------------------------------------------------------------------------- IP address 192.168.88.1/24 is on ether1 e...
New user here - so apologies if my search prior to post was inadequate. I have a new RB750Gr3. When I first got the router, the default configuration was as per http://wiki.mikrotik.com/wiki/Manual:Default_Configurations , which indicates that the default configuration for 750G is: WAN ether1; LAN S...