after a long fight with VLAN configuration on CSR125, I encountered a strange error with DHCP server. It does not assign IP addresses to clients connected via Access Point, but only for one specific subnet: 10.69.0.0/24. For all other subnets, clients receive IP addresses. Surprisingly, clients connected to physical ports that are tied to 10.69.0.0/24 subnet get IP addresses.
Can someone please take a look on my configuration? Maybe I lost ability to spot errors after few hours of investigations.
MikroTik RouterOS 6.46.4 (c) 1999-2020 http://www.mikrotik.com/
# mar/29/2020 15:12:06 by RouterOS 6.46.4
# software id = NS8X-P5RS
#
# model = CRS125-24G-1S
# serial number = 787207C5CE27
/interface bridge
add mtu=1500 name=my-bridge vlan-filtering=yes
/interface vlan
add interface=my-bridge name=vlan-59 vlan-id=59
add interface=my-bridge name=vlan-69 vlan-id=69
add interface=my-bridge name=vlan-79 vlan-id=79
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip pool
add name=pool-vlan59 ranges=10.59.0.2-10.59.0.254
add name=pool-vlan69 ranges=10.69.0.2-10.69.0.254
add name=pool-vlan79 ranges=10.79.0.2-10.79.0.254
add name=pool-mgmt ranges=10.100.0.2
/ip dhcp-server
add address-pool=pool-mgmt disabled=no interface=ether17 name=dhcp-mgmt
add address-pool=pool-vlan59 disabled=no interface=vlan-59 lease-time=30m name=dhcp-vlan59
add address-pool=pool-vlan69 disabled=no interface=vlan-69 lease-time=23h59m59s name=dhcp-vlan69
add address-pool=pool-vlan79 disabled=no interface=vlan-79 lease-time=23h59m59s name=dhcp-vlan79
/interface bridge port
add bridge=my-bridge ingress-filtering=yes interface=ether2 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether3 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether4 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether5 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether6 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether8 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether9 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether10 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether11 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether12 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether13 pvid=79
add bridge=my-bridge ingress-filtering=yes interface=ether14 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether15 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether16 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether18 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether19 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether20 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether21 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether7 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether22 pvid=69
add bridge=my-bridge ingress-filtering=yes interface=ether23 pvid=69
/interface bridge vlan
add bridge=my-bridge tagged=my-bridge vlan-ids=69
add bridge=my-bridge tagged=my-bridge,ether7,ether22,ether23 vlan-ids=79
add bridge=my-bridge tagged=my-bridge,ether7,ether22,ether23 vlan-ids=59
/ip address
add address=10.100.0.1/24 interface=ether17 network=10.100.0.0
add address=10.69.0.1/24 interface=vlan-69 network=10.69.0.0
add address=10.79.0.1/24 interface=vlan-79 network=10.79.0.0
add address=10.59.0.1/24 interface=vlan-59 network=10.59.0.0
/ip dhcp-client
add disabled=no interface=ether1
/ip dhcp-server network
add address=10.59.0.0/24 dns-server=10.59.0.1,8.8.8.8 gateway=10.59.0.1 netmask=24
add address=10.69.0.0/24 dns-server=10.69.0.1,8.8.8.8 domain=my.home gateway=10.69.0.1 netmask=24
add address=10.79.0.0/24 dns-server=10.79.0.1,8.8.8.8 gateway=10.79.0.1 netmask=24
add address=10.100.0.0/30 dns-server=10.100.0.1,8.8.8.8 domain=my.home gateway=10.100.0.1 netmask=30
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=10.69.0.250 name=unifi.my.home
add address=10.69.0.248 name=printer.my.home
/ip firewall nat
add action=masquerade chain=srcnat out-interface=ether1
/system clock
set time-zone-name=Europe/Warsaw
Access points: Unifi UAP-AC-LR
I found a few threads about DHCP issues with 6.46.4 and back to 6.38... but I'm not sure if that is the issue in my case.