HI i can confirm this problem.Upgraded an RB2011L from rc13 to 14. DHCP Client and DHCP Server would not issue to or bind to addresses. Downgraded to 5.24, all is back to normal.
Debug your script which part of it exactly is not working.send backup by mail script, still does not work, in the v6rc11 version works fine...
any news on this?
Im running rc14 since few Days, MT made here a good Job.
Thanks also for fixing this traffic-flow Deadlock.
btw: Is there a Model planned with Dual CPU? or 72 Core tilegx?
That's the frequency in kilohertz, just like the atheros driver under linux reports it.All V6rc show bad frequency in LOG
Moar pps is what i need, and yes i would pay for that 2-3k $.THere still NO OPTIMIZATION on 36 cores and you wont 2 CPU or 72 cores?
any ddos on TCP attack about 400mbit killing CCR in two seconds.. and for me I need to buy some another firewall.. becouse ccr are useless
It's not a final release which means it's not ready for production use!it seems that Mikrotik OS gets worse from release to release
sorry but i have enought !!
Yes but is not a Beta!It's not a final release which means it's not ready for production use!it seems that Mikrotik OS gets worse from release to release
sorry but i have enought !!
We are using vlans, bonding and vlans on bonding with no issues.it is a release candidate for sure - but major things like Vlans should work....
and also with 5.24 we have even more sudden reboots of the boxes and no answers or fixes
and MT sell routers where you cant use a final ROS ( CCR )
please make a new topic and post "this config" that works only up to rc13. we will see what is so special about it.the config works until rc13....
seems to be not so wrong...
and also works on >100 other MT boxes
after upgrade from rc13 no more connectivity via Vlan on RB1100AHx2
it is a shame that MT does not really test those releases !!!
i would like to get some money for testing and wasting time with this buggy stuf !
it seems that Mikrotik OS gets worse from release to release
sorry but i have enought !!
hey mikrotik why dont you try to fix all the errors first an then bring new features ????
please clarify what SNMP bug do you mean? did you contact support and report it?Bug with SNMP not fixed.
after upgrade from rc13 no more connectivity via Vlan on RB1100AHx2
it is a shame that MT does not really test those releases !!!
i would like to get some money for testing and wasting time with this buggy stuf !
it seems that Mikrotik OS gets worse from release to release
sorry but i have enought !!
hey mikrotik why dont you try to fix all the errors first an then bring new features ????
Hello, i am using Vlans with RB1100AHx2 since 6.0rc11. And after upgrade from rc13 to rc14, Vlan's still working.
So i can't confirm this bug
Intel PRO/1000 (e1000?) VLAN tagging fail
2 device="02:01.0" name="82547EI Gigabit Ethernet Controller (rev: 0)"
vendor="Intel Corporation" category="Ethernet controller"
vendor-id="0x8086" device-id="0x1019"
(OnBoard Intel Server Board S875WP1-E http://downloadmirror.intel.com/19459/e ... 5WP1-E.zip)
Temporary workaround: create new bridge, put the problematic ether interface in that bridge. Add the VLANs with interface=that bridge so that bridge software would now be taking care of vlan tagging etc. instead of the NIC driver. (Note: the VLANs are not bridge ports of the mentioned bridge. They can be bridge ports of another bridge)
@MT I will send you the supout.rif file taken when problem is observed.
p.s. it may be vlan offload bug or otherwise Intel bug in my opinion !!!! (where MT could choose the driver, tweaks, they have in ROS, maybe NIC firmware or if they can - patch the damn driver (patching of NIC firmware is also a possibility))
P.S. 2: Intel PRO/1000 NIC driver in RouterOS 5.22 did not have this problem
/ip route vrf add export-route-targets=0.0.0.0:0 import-route-targets=0.0.0.0:0 \ route-distinguisher="(unknown)" routing-mark=vrf.internet
No, I not contact support. I speak english very bad. Если говорят в саппорте по русски, то тогда смогуplease clarify what SNMP bug do you mean? did you contact support and report it?Bug with SNMP not fixed.
You can write in Russian. Some of our support enginers will be able to understand it. Please send full description so we can test.No, I not contact support. I speak english very bad. Если говорят в саппорте по русски, то тогда смогуplease clarify what SNMP bug do you mean? did you contact support and report it?Bug with SNMP not fixed.
описать проблему им очень подробно.
I have softrouter on server PC. When I use 6.0rc11 graphics fine. When I upgrade to 6.0rc13:
"bridge is fail" is not enough to understand your problem and fix it. please describe in more detail and send it to support.CCR in bridge is fail. When it will be fixed?
I think you have a different understanding of word "unstable". You probably mean "slow"is unstable in bridge, dot. Throughput is 200Mbit.
I can confirm VLAN bug in RC14 on RB751G which is used as an AP with VLAN, see http://forum.mikrotik.com/viewtopic.php ... 73#p362473Upgrading an RB1100AHx2 with VLANs from rc13 to this rc14 the router was inaccesible, only connecting directly to the ether13 i can access by MAC in winbox and solve the problem changing the L2 MTU from 1598 to 1700 of the ether3 where are all the VLANs
Seems like some of the problems around vrf are partly introduced in rc14. I cannot use it due to unstable router (hanging, not showing anny error in log etc. It also had a strange, not possible to start terminal from winbox. (wrong user password) teleneted from the link in, and it was ok. Something wired are back.
Also not yet fied the vrf bug route-distinguisher
Here there should be 0.0.0.0:0
ros code
/ip route vrf add export-route-targets=0.0.0.0:0 import-route-targets=0.0.0.0:0 \ route-distinguisher="(unknown)" routing-mark=vrf.internet
I have also had some troble mac-telnet from later releases of v6 and 5.xx to clients in nv2 mode. Is this a common problem? switching from nv2 to 802.11 solve the problem.
Also im missing good old preamble mode, ack-timeout etc make the setup of bad links easier.
You will have to copy them from elsewhere with different version or from a backup. In RC14 they are mysteriously missing.What happend with the HTML files of hotspot ? after I made the upgrade they vanished.
cheers
HI i can confirm this problem.send backup by mail script, still does not work, in the v6rc11 version works fine...
any news on this?
its started 29 april ;PMT has started to make rc15.
Hey Mark -- I'm very interested in this problem.
- With about 1'000 connections or more bridge-local will disappear all of the sudden.
Today morning there weren't any entriesits started 29 april ;PMT has started to make rc15.
Bridge-local disappears in GUIs and traffic won't be passed after that happens; »unknown interface« (or the like) appears where you normally could read »bridge-local«.Hey Mark -- I'm very interested in this problem.
- With about 1'000 connections or more bridge-local will disappear all of the sudden.
Using an RB2011L-RM on 6.0rc14, I experience very intermittent (~weekly) loss of the router (completely unresponsive to ping, won't route traffic, etc.).
I'm wondering if this is an issue with our bridge-local interface disappearing -- for you, does the interface only disappear in the gui, or does the bridge itself seem to disappear & stop passing traffic?
Hi.Delete tls=yes of the script and enable in /tools/email.HI i can confirm this problem.send backup by mail script, still does not work, in the v6rc11 version works fine...
any news on this?
You can't and most likely in current implementation such feature will not be added.Some things I would fix (rc14):
- Using BGP-VPLS (l2vpn) there's no way (or I haven't found it) to see the BGP advertisements
Confirmed, will be fixed.- The web GUI for BGP-VPLS doesn't work
See the first answer- For routing->bgp it would be nice to have a l2vpn routes tab
It is a known problem that down->init, init->2-way etc are not logged, but those state changes are not so important to spam the logs. In the future we could change that.- Logging isn't very consistent. I have noticed that, for instance, some OSPF state transitions are logged, but not all.
Click on entry in the "Discovery interface" table, there will be checkbox "enabled" uncheck it and discovery will be disabled.- IP->Neighbors->discovery: the web GUI doesn't offer the option to change default discovery settings. It can be set from the command line, though.
Those are not bugs, but feature requests. Many settings still don't accept IPv6. Thanks for the requests.
- sending emails using IPv6 SMTP server doesn't work
- restricting access to IPv6 subnets in IP → Services doesn't work
- L7-filters not available for IPv6
- Accounting (the CGI script) is not available via HTTPS
Understood. However, please do consider adding it as soon as possible after the 6.0 milestone is reached. If the l2vpn feature is widely used, that debugging information will be very important.You can't and most likely in current implementation such feature will not be added.Some things I would fix (rc14):
- Using BGP-VPLS (l2vpn) there's no way (or I haven't found it) to see the BGP advertisements
I would seriously consider an overhaul of the logging policies. It's much better to "spam" the logs, allowing the user to filter what is needed and what not, rather than limiting logging. Such information can be critical to track bugs, regression changes, _and_ security incidents. You never really know what message is important (or not) until you miss it when you need it.It is a known problem that down->init, init->2-way etc are not logged, but those state changes are not so important to spam the logs. In the future we could change that.- Logging isn't very consistent. I have noticed that, for instance, some OSPF state transitions are logged, but not all.
[/quote]Click on entry in the "Discovery interface" table, there will be checkbox "enabled" uncheck it and discovery will be disabled.- IP->Neighbors->discovery: the web GUI doesn't offer the option to change default discovery settings. It can be set from the command line, though.
this is a feature, because in "advanced channels" you can specify channels with decimal places. khz will give you preciseFrekvency in log is still displayed in kHz
The same question.. when? .. We need some protection of our servers..MT,
when Firewall will get the benefit of manycores Platform?
In an old post Normis wrote into Feb. now we are in May.....
regards
Ros
100% on all cores means that all cores are supported for firewall and working. What you are asking is for more speed in general. Did you enable SYN cookie in RouterOS? What kind of rule is that exactly?We have access to really big booters (min. 1Gbit/s of SSYN TCP) (2mln/packets) now and testing CCR with MANY RULES AND EXACLY ONE RULE for tested attack.. always the same.. he filtering of coures but not big attacks..
CCR give up when he must filtering about 700k/p.. (350mbit/s TCP).. many people ddosing everything and testing testing testing.. They without problem Can get acces to booters with 1mln/packets.. and our CCR is going to 100% on all cores..
Why there is no fastpatch support?
Depends on your rule. Is that a Tarpit rule, or Drop? Based on what criteria?ah ah ah.. I wrote to You this half year ago.. yes i have SYN cookies enable..
I didnt say that they are no support for all cores for firewall.. but there is no good optimization for firewall..
Post a link/contact please. I`m very curious about this. Thanks.One company from Poland install some distrubution of Linux on CCR, and filtering 2mln/packets of TCP with 50% CPU.. So I thing there is a posibillity to do that the same on RouterOS..
"target" option now can be used - specify interface there.There's a regression problem.
On 5.25 I can add a simple queue and bind it to an interface. Example:
[admin@OmniTik-casa] /queue simple> add name=queue-guest max-limit=512K/128K interface=ether2-master-local
This doesn't work on 6.0rc14. I can't add the "interface" clause to a simple queue.
This is a simple rate limit applied to a bridging interface, nothing complex. And 6.0 rc14 doesn't work as the documentation states.
Has the simple queuing been changed on 6.0 or is this a bug?
Thank you"target" option now can be used - specify interface there.
does not feel clear nor simple.it's actually 'upload' of a 'target', i.e. traffic received on the interface
It is "Target upload" not "router upload". Therefore, these options are from perspective of the target. If you want to limit your users's upload capability, set "target upload".does not feel clear nor simple.it's actually 'upload' of a 'target', i.e. traffic received on the interface
I'm still confused about "target" and "dst".It is "Target upload" not "router upload". Therefore, these options are from perspective of the target. If you want to limit your users's upload capability, set "target upload".does not feel clear nor simple.it's actually 'upload' of a 'target', i.e. traffic received on the interface
# may/20/2013 17:59:08 by RouterOS 6.0rc14
# software id = PAXV-BRR1
#
/queue simple
add burst-limit=2M/192k burst-time=3s/3s dst=ether2-master-local limit-at=1M/128k max-limit=1M/128k name=guest-limit target=""
Hm.. I have a different experience..I just installed version 6.0.
First impressions compared to 5.24: (mipsbe on RB435G)
Memory usage +100%
Disk usage -50%
CPU usage about +30% for the same bandwidth (this measurement is approximate as I cannot replicate exact same bandwidth/number of connections)
I would go back to 5.24 but since we are going to move to 6.x eventually, I will give it a try for some time.
what version did you have before you upgraded?All Simple Queues are gone, closed the winbox and opened again several times and still not displaying no queue.
upgrade v5.21 to v6.0 , Had this same problem reported after the queues are gone --> fixed queues - router could become unresponsive when configuring queues;)what version did you have before you upgraded?All Simple Queues are gone, closed the winbox and opened again several times and still not displaying no queue.
It sounds something for the OpenWRT. Maybe they are developing it.does anyone have any more informaiton on linux on CCR? who got it going, etc> any links etc?
thanks leon