[kostik@switch1] > system package update check-for-updates
current-version: 6.27
latest-version: 6.27
status: System is already up to date
/system leds
set 0 interface=sfp1
set 1 interface=sfp2
set 2 interface=sfp3
set 3 interface=sfp4
set 4 interface=sfp5
set 5 interface=sfp6
set 6 interface=sfp7
set 7 interface=sfp8
set 8 interface=sfp9
set 9 interface=sfp1
set 10 interface=sfp1
set 11 interface=sfp1
set 12 interface=sfpplus1
set 13 interface=sfpplus1
Clauu - I have checked this on my router and Health shows correct information. Please check
1) If "/system health print" function shows anything;
[admin@MikroTik_Node2] > /system health print
[admin@MikroTik_Node2] >
3) If problem still persist, then make sure that you use latest firmware. Run command "/system routerboard print" and if latest-firmware is higher than current one then run commands:
"/system routerboard upgrade" and "/system reboot"
[admin@MikroTik_Node2] > /system routerboard print
routerboard: yes
model: 2011UiAS-2HnD
serial-number: 467304C92E52
current-firmware: 3.22
upgrade-firmware: 3.22
[admin@MikroTik_Node2] >
have the same, I resolve the issue by correction of an mistake of myself about routerID in OSPFV3...I tried to update my router, which had ospf, and it totally went crazy, till i returned to 6.37, not sure what happened to this CCR, but careful while upgrading. i was interested in the route fix. !
That is ABSURD.cegner - Problem should be gone if you would reset configuration to defaults on you router.
...
I think he just meant the LED configuration, not the entire router.That is ABSURD.cegner - Problem should be gone if you would reset configuration to defaults on you router.
...
Between software update we need to reset router to default each time
can I laugh?
You may reset devices that are on the shelf, not ones that are in production with 1000+ users on it.!
Believe me, just on the forum you can find a lot of advices to reset router to the default conf....I think he just meant the LED configuration, not the entire router.That is ABSURD.cegner - Problem should be gone if you would reset configuration to defaults on you router.
...
Between software update we need to reset router to default each time
can I laugh?
You may reset devices that are on the shelf, not ones that are in production with 1000+ users on it.!
(other users: sorry for the Italian)Believe me, just on the forum you can find a lot of advices to reset router to the default conf....I think he just meant the LED configuration, not the entire router.
That is ABSURD.
Between software update we need to reset router to default each time
can I laugh?
You may reset devices that are on the shelf, not ones that are in production with 1000+ users on it.!
or:ROS 6.28, RB2011UAS-2HnD
try this
1) Tools -> RoMON, check ENABLE, click OK
2) Tools -> RoMON, uncheck ENABLE, click OK
CPU usage will be 100%, you must enable it again.
/romon port remove [find]
Even I do not need torrent, I would like to have one zip file with all packages for all architectures at once. Why it is not possible?We do not offer torrent download directly from our servers any more. You can download this torrent, download RouterOS files, associate them and then share with others.
Ciao Rextended non hai avuto nessun problema con ospf come qualcuno scriveva su?I just finish upgrade all my "core" routers for BGP.
Finally I can upgrade my 4 pppoe servers from 6.7 to 6.28 directly.
Two bug introduced on 6.8 are finally fixed (pppoe & EoIP mtu/mrru problems with fragmented packets).
I do not have any problem.
but for security I do:
/romon port remove [find]
[op@MikroTik] > system health print
action timed out - try again, if error continues contact MikroTik support and send a supout file (13)
[op@MikroTik] > system routerboard print
routerboard: yes
model: CCR1009-8G-1S-1S+
serial-number: 554A04E8C989
current-firmware: 3.22
upgrade-firmware: 3.22
[op@MikroTik] >
email sent[op@HotSpotAs] > system health print
action timed out - try again, if error continues contact MikroTik support and send a supout file (13)
[op@HotSpotAs] > system routerboard print
routerboard: yes
model: 450
serial-number: 188901F9981Z
current-firmware: 3.22
upgrade-firmware: 3.22
[op@HotSpotAs] >
check the log...I am only using ospf 2, i could not even reach the router, was pinging it with very high latency, but returning to old firmware it came back to normal operation, i am still trying to see what happened, as i tried with a test router and all went ok on a smaller network.
/interface bridge
add comment=TV l2mtu=1596 name=bridge1000 priority=0 protocol-mode=rstp
add comment=INET l2mtu=1596 name=bridge2000 priority=0 protocol-mode=rstp
expected end of command (line 1 column 18)
It was related to smips (941-2nd) not to mipsbe which is working for me too. Read again my post, you will get the reason to use winbox3rc.I also checked the issue @jarda posted on winbox, but my unit is offering the exe via http. I have not checked the winbox3RCs yet, that will be after my final run thought (since it is only RC still).
/system package update check-for-updates - works in scripts;
/system package update check-for-updates - not works in scripts because of waiting for user input;
/system package update check-for-updates once - works in scripts & syntax check error on ROS < 6.27
It is not possible to upgrade all my devices at one time. SSTP Client from Small and Home Office are located throughout the world (Hong Kong, Dubai, USA, Canada, Czech Republic ..).RomanHujer - Please use version higher than 6.25 on your routers with SSTP configuration. Also make sure that PFS is either enabled or disabled on both endpoints of connection;
One word...PRO! You can download, you can do this, you can do that...what can you do? Aperently not combined torrent package which should be easy to do for a user to share with others, but impossible for Mikrotik?We do not offer torrent download directly from our servers any more. You can download this torrent, download RouterOS files, associate them and then share with others.
Hi, could you please send supouts from both versions to support@mikrotik.com ?ROS 6.28 seems to break the WiFi setup on my OmniTIK UPA-5HnD.
1 ap bridge with 2 virtual APs (a/n, 20/40MHz channel). Client is a Nanostation M5 (I am using wireless-fp).
Works flawless in 6.27.
After upgrade the client does not connect.
Downgrade to 6.27 fixes the problem.
Sorry for the alert.Hi, could you please send supouts from both versions to support@mikrotik.com ?ROS 6.28 seems to break the WiFi setup on my OmniTIK UPA-5HnD.
1 ap bridge with 2 virtual APs (a/n, 20/40MHz channel). Client is a Nanostation M5 (I am using wireless-fp).
Works flawless in 6.27.
After upgrade the client does not connect.
Downgrade to 6.27 fixes the problem.
Check "open in new window", works like a charmAfter update RB941-2nd from 6.27 to 6.28 it is no more possible to connect by winbox3rc6 (was working fine until update). Winbox closes right immediatelly after writing "downloading plugins".
The same with winbox3rc9 (actually latest).
The main website of router does not contain any downloadable winbox application. ( error 404: file not found when going to http://router.ip/winbox/winbox.exe)
Winbox 2.2.18 of course does not work with smips by any chance since beginning (was never officially told by Mikrotik in advance in documentation or product page but it is how it is).
There is no winbox that could log into it.
This and other posts above are putting my expectations back. I thought recently that mikrotik changed at least a bit their approach to software development management but it is not obviously true. I am unhappy of that.
Leroylim, can you tell me, do you have direct access to your equipment or is it on remote site?I am currently on ROS 6.28 RC20. I am having an issue when upgrading to ROS 6.28 that my connectivity totally breaks.
Let me describe the issue I am having.
Currently I am using a CCR1036-8G-2S+ with a bonded link using 2 1 Gbps ports using LACP to my switch.
Over the bonded link, I have 3 VLANs, VLAN 1 - LAN, VLAN 5 - WAN1, VLAN 6 - WAN2.
In ROS 6.28 RC20, everything works fine, traffic for LAN over VLAN 1, traffic for 2 WANs with DHCP client over VLANs 5 and 6.
But when I upgrade to ROS 6.28, connectivity is totally lost, as in, I cannot ping anything over VLAN 1, when looking in Winbox -> Interfaces, I can see VLAN 1 transmitting, but never receiving anything in return. VLANs 5 and 6 DHCP client is also searching with no avail.
I have tried upgrading to ROS 6.28 twice, and rolling back to 6.28 RC 20 as connectivity was totally broken.
Unfortunaelly not for me. Even after downgrade back to 6.27 I am not able to connect by winbox3rc9 or winbox3rc6. Strange. Even not after power cycle...Check "open in new window", works like a charmAfter update RB941-2nd from 6.27 to 6.28 it is no more possible to connect by winbox3rc6 (was working fine until update). Winbox closes right immediatelly after writing "downloading plugins".
The same with winbox3rc9 (actually latest).
The main website of router does not contain any downloadable winbox application. ( error 404: file not found when going to http://router.ip/winbox/winbox.exe)
Winbox 2.2.18 of course does not work with smips by any chance since beginning (was never officially told by Mikrotik in advance in documentation or product page but it is how it is).
There is no winbox that could log into it.
This and other posts above are putting my expectations back. I thought recently that mikrotik changed at least a bit their approach to software development management but it is not obviously true. I am unhappy of that.
I had same problem, and solved by logging another system user, so problem is in winbox dll cache, we need to find them and clear to winbox work!Unfortunaelly not for me. Even after downgrade back to 6.27 I am not able to connect by winbox3rc9 or winbox3rc6. Strange. Even not after power cycle...
Did you report this to support@mikrotik.com?Problem with e-mail client still exists.
If you use TLS then the second EHLO, which is normally issued after STARTTLS, is malformed and rejected by postfix with error "Helo command rejected: invalid ip address"
Just did it.Did you report this to support@mikrotik.com?
Leroylim, can you tell me, do you have direct access to your equipment or is it on remote site?I am currently on ROS 6.28 RC20. I am having an issue when upgrading to ROS 6.28 that my connectivity totally breaks.
Let me describe the issue I am having.
Currently I am using a CCR1036-8G-2S+ with a bonded link using 2 1 Gbps ports using LACP to my switch.
Over the bonded link, I have 3 VLANs, VLAN 1 - LAN, VLAN 5 - WAN1, VLAN 6 - WAN2.
In ROS 6.28 RC20, everything works fine, traffic for LAN over VLAN 1, traffic for 2 WANs with DHCP client over VLANs 5 and 6.
But when I upgrade to ROS 6.28, connectivity is totally lost, as in, I cannot ping anything over VLAN 1, when looking in Winbox -> Interfaces, I can see VLAN 1 transmitting, but never receiving anything in return. VLANs 5 and 6 DHCP client is also searching with no avail.
I have tried upgrading to ROS 6.28 twice, and rolling back to 6.28 RC 20 as connectivity was totally broken.
You can check if you have local access by logging into router to see if there is problem with interface mismatch.
For example, after upgrade, eth5 became eth1 and so on. In this case, you must manually adjust interface numbers.
Unfortunaelly not for me. Even after downgrade back to 6.27 I am not able to connect by winbox3rc9 or winbox3rc6. Strange. Even not after power cycle...Check "open in new window", works like a charmAfter update RB941-2nd from 6.27 to 6.28 it is no more possible to connect by winbox3rc6 (was working fine until update). Winbox closes right immediatelly after writing "downloading plugins".
The same with winbox3rc9 (actually latest).
The main website of router does not contain any downloadable winbox application. ( error 404: file not found when going to http://router.ip/winbox/winbox.exe)
Winbox 2.2.18 of course does not work with smips by any chance since beginning (was never officially told by Mikrotik in advance in documentation or product page but it is how it is).
There is no winbox that could log into it.
This and other posts above are putting my expectations back. I thought recently that mikrotik changed at least a bit their approach to software development management but it is not obviously true. I am unhappy of that.
I had same problem, and solved by logging another system user, so problem is in winbox dll cache, we need to find them and clear to winbox work!Unfortunaelly not for me. Even after downgrade back to 6.27 I am not able to connect by winbox3rc9 or winbox3rc6. Strange. Even not after power cycle...
Well, I have just created a new "full" user and tried to log in, both with 3RC6 and 3RC9, both with "open in new window" on and off. No luck.
/system package update
check-for-updates
:delay 1s;
:if ( [get current-version] != [get latest-version]) do={ upgrade }
[Vaselli@Raffa's MK] >
current-version: 6.28
latest-version: 6.28
status: System is already up to date
-- [Q quit|D dump|C-z pause]
latest-version: 6.28
status: System is already up to date
-- [Q quit|D dump|C-z pause]
-- [Q quit|D dump|C-z pause]
status: resolving upgrade.mikrotik.com
-- [Q quit|D dump|C-z pause]
Use command: check-for-updates once. It works this way from 6.28 but not on older versions.Hello
the script to auto upgrade that is ins the wiki is not working any moresince i dont user for a while i dont know tell from witch version it stoped working i think on 6.27Code: Select all/system package update check-for-updates :delay 1s; :if ( [get current-version] != [get latest-version]) do={ upgrade }
when i run it on the terminal i get this and i know that the code worked in early version of ROS
any suggestion ?
[Vaselli@Raffa's MK] >
current-version: 6.28
latest-version: 6.28
status: System is already up to date
-- [Q quit|D dump|C-z pause]
latest-version: 6.28
status: System is already up to date
-- [Q quit|D dump|C-z pause]
-- [Q quit|D dump|C-z pause]
status: resolving upgrade.mikrotik.com
-- [Q quit|D dump|C-z pause]
Hi, I not use MPLS and OSPF or any other routing protocol,Ciao Rextended non hai avuto nessun problema con ospf come qualcuno scriveva su?I just finish upgrade all my "core" routers for BGP.
Finally I can upgrade my 4 pppoe servers from 6.7 to 6.28 directly.
Two bug introduced on 6.8 are finally fixed (pppoe & EoIP mtu/mrru problems with fragmented packets).
I do not have any problem.
but for security I do:
/romon port remove [find]
Hi Rextended have you had any problem with ospf as written by someone?
If you want take the risk of the update, must exist some benefit.It is not possible to upgrade all my devices at one time. SSTP Client from Small and Home Office are located throughout the world (Hong Kong, Dubai, USA, Canada, Czech Republic ..).RomanHujer - Please use version higher than 6.25 on your routers with SSTP configuration. Also make sure that PFS is either enabled or disabled on both endpoints of connection;
@strods:
I think my problem directly after the update is related to the new romon feature maybe somehow:
See the two peaks in CPU Usage right after the update, nothing was changed in the config. Then i read about the new romon feature, activated it and deactivated it again and also high cpu usage was the result. That could be related to my problem somehow, though i did not initially made some changes to the config after the update, when theses problems appeared. Now the romon feature is activated again, to prevent high cpu usage...
Will investigate more and make a support ticket.
/romon port remove [find]
Freeze forever no 6.25 is not a good idea. (reasons for update: support for new hardware, security updates, new features ....)If you want take the risk of the update, must exist some benefit.It is not possible to upgrade all my devices at one time. SSTP Client from Small and Home Office are located throughout the world (Hong Kong, Dubai, USA, Canada, Czech Republic ..).RomanHujer - Please use version higher than 6.25 on your routers with SSTP configuration. Also make sure that PFS is either enabled or disabled on both endpoints of connection;
If all is working, why you want update?
What does that mean exactly?*) lte - ZTE MF823 may loose configuration;
On what hardware?LCD Page List not working, can not add interfaces to the LCD Page List and the Max Speed can not be set.
Please stop to post this everywhere.Mikrotik without igmp snooping and DHCP snooping is cheap toys !
We really need to switch IGMP and DHCP snooping.
Already went to the site and performed a manual reboot (Power out) and voila....up again.Hi all,
I'm no t really sure whether this is a version issue but i have upgraded 4 units so far to this ver. and 3 out of four never came back from the upgrade, all are remote units so now i have to go and check them up.
Has any one had this tiny problem upgrading to this new release?
thanks
+1 memory leak in my 2011. Downgrade to 6.27 fix cyclic reboot.Rapid reboot loop, out of memory, 6.28. Fine with 6.27.
System initially ran for about 30 minutes, but then entered reboot loop with a time constant of less than 30s. I managed to scp the 6.27 .npk package in during one brief window and then run "/system package downgrade" in the next to recover the router.
apr/22/2015 20:38:23 system,error,critical System rebooted because of kernel failure
apr/22/2015 20:38:23 system,error,critical Out of memory condition was detected
apr/22/2015 20:38:23 system,error,critical router was rebooted without proper shutdown
apr/22/2015 20:40:09 system,error,critical router was rebooted without proper shutdown by watchdog timer
apr/22/2015 20:41:19 system,error,critical System rebooted because of kernel failure
apr/22/2015 20:41:19 system,error,critical Out of memory condition was detected
apr/22/2015 20:41:19 system,error,critical router was rebooted without proper shutdown
RB2011 uAS. I don't think I'm doing anything exotic: prosumer PPPoE, IPv6, some queue prioritisation, nothing very complex.
What model?Hi all,
Upgrade to 6.28, CCR1036
after 20 mins my BGP config disappear, no more instance, no more config possible.
autosuppout created.
reverse to 6.27 resolve the problem.
ticket created at support.
anybody has the case ?
regards
Armand
[admin@RB850Gx2] > /system console print
Flags: X - disabled, U - used, F - free
# PORT TERM
RouterBOOT booter 3.22
RouterBoard 850Gx2
CPU frequency: 533 MHz
Memory size: 512 MiB
NAND size: 512 MiB
Press any key within 2 seconds to enter setup..
loading kernel from nand... OK
setting up elf image... OK
jumping to kernel code
Please report it to support@mikrotik.comRouter RB850Gx2 hangs on reboot if serial port is removed from the /system consoleCode: Select all[admin@RB850Gx2] > /system console print Flags: X - disabled, U - used, F - free # PORT TERM
Then the network is not running, the port LEDs do not lightCode: Select allRouterBOOT booter 3.22 RouterBoard 850Gx2 CPU frequency: 533 MHz Memory size: 512 MiB NAND size: 512 MiB Press any key within 2 seconds to enter setup.. loading kernel from nand... OK setting up elf image... OK jumping to kernel code
Cycling the power helps
CCR1036-12G-4S, autosuppout has been created by the problem and has sent to support, waiting reply from them...What model?Hi all,
Upgrade to 6.28, CCR1036
after 20 mins my BGP config disappear, no more instance, no more config possible.
autosuppout created.
reverse to 6.27 resolve the problem.
ticket created at support.
anybody has the case ?
regards
Armand
I have only some CCR1036-12G-4S and no one have this problem.
Is your Address List dynamic or have a timeout?Every update of RouterOS kills my Ip Adress list, so i have to manualy reconfigure it. Is this a bug or a feature?
Judging by the fact that 6.29rc11 crashes with kernel panic where works 6.27 - we are waiting for an interesting version.Changelog for 6.29rc version is now uploaded to our download site. Sorry about a delay.
Also can't make supout.rif.[admin@Jna AP] /system health> print
action timed out - try again, if error continues contact MikroTik support and send
a supout file (13)
I have the same issue with the gx2..I need some help please.
I have Mikrotik RB850Gx2 running RouterOS 6.28. There are about 30 or so ppttp-clients connecting to it.
Every now and then, the RB850Gx2 logs the following error: Encryption got out of sync - disabling
Is your Address List dynamic or have a timeout?Every update of RouterOS kills my Ip Adress list, so i have to manualy reconfigure it. Is this a bug or a feature?
I have have an Address List of 3900 IP's (my blacklist), I have never lost it during an update.
Restart is invalid, and no way to solve@npero on my gx2 i had the same problem but after another reboot it get back to normal.. try a rebootI have the same issue with the gx2..I need some help please.
I have Mikrotik RB850Gx2 running RouterOS 6.28. There are about 30 or so ppttp-clients connecting to it.
Every now and then, the RB850Gx2 logs the following error: Encryption got out of sync - disabling
On the second RB priorities are just swapped so VRRP-13-GW-254 is Master GW for DHCP users./interface vrrp
add arp=proxy-arp interface=BRGLAN192 name=VRRP-13-GW-254 priority=254 vrid=13
add arp=proxy-arp interface=BRGLAN192 name=VRRP-17-GW-1 priority=1 vrid=17
add address=192.168.1.13/24 interface=VRRP-13-GW-254 network=192.168.1.0
add address=192.168.1.17/24 interface=VRRP-17-GW-1 network=192.168.1.0
sounds like these must be dynamic lists that are deleted whenever the router is rebooted. I have never see this with static listsEvery update of RouterOS kills my Ip Adress list, so i have to manualy reconfigure it. Is this a bug or a feature?
It shouldn't matter, but i'm curious which SFPs you are using?I have the same problem as leandrobianchin except my CRS-226 just has a 10GBE uplink to the CCR1036 via SFP+. The uplink also serves as the master of the entire CRS. The CCR has been running ok on 6.28 and 6.29rc10 but SFP+ on CRS has been a frequent problem after 6.27. So far I've found the relatively stable combination being with CCR running 6.27 or 6.28 or 6.29rc10 and CRS running 6.27. But even this combination still causes one SFP+ incidence on CRS every 5-6 days.
Same on RB433AH...I runned to another case of increasing sector writes at System/Resources. Steps to reproduce:
- open winbox.
- check sector writes first to check it is not changing.
- go to ip --> firewall --> connections.
- stay there browse the list.
- sector writes start to increase by 1 - 2 every second untill you reboot router.
I observe this on my RB951G-2HnD. RouterOS 6.28.
1) Close Firewall window and then close Winbox.- sector writes start to increase by 1 - 2 every second untill you reboot router.
Hmm you are right. They stop to increase after you restart winbox.1) Close Firewall window and then close Winbox.- sector writes start to increase by 1 - 2 every second untill you reboot router.
2) Run Winbox.
3) What about sector writes? I don't see any increasing now...
To less people urge Mikrotik to do work for this. I tried for a long time now. My only solution is to replace MT where I see this problem.Hate to sound like a broken record. But we really need some fixed for TCP traffic over NV2. Any Idea when that is going to happen.
I am afraid i am going to have to start doing the same thing. It is to hard to have Links that should do 200 or 300 Meg getting 10 Meg TCP. I have lost customers over this.To less people urge Mikrotik to do work for this. I tried for a long time now. My only solution is to replace MT where I see this problem.Hate to sound like a broken record. But we really need some fixed for TCP traffic over NV2. Any Idea when that is going to happen.
yep fanny isnt it!?I am afraid i am going to have to start doing the same thing. It is to hard to have Links that should do 200 or 300 Meg getting 10 Meg TCP. I have lost customers over this.To less people urge Mikrotik to do work for this. I tried for a long time now. My only solution is to replace MT where I see this problem.Hate to sound like a broken record. But we really need some fixed for TCP traffic over NV2. Any Idea when that is going to happen.
This is even more funny going over multiple hops or/and using .ac. You've great (udp)bandwidth but the customer blames you what the sh... you're selling him.I have links using nstreme can go up to 100mbit, when switched to nv2 it can barely go 20 to 30mbits
And when AC txpower will be fixed?
Can this be expanded for all interface types and other items ? Especially when adding/changing comments.vrrp - do not reset interface when no interesting config changes;
We are seeing decreased in every part of our network because of this problem. Nstream does not handle Multipoint well. 802.11 has high latency and NV2 had TCP throughput problems. I really wish (REALLY WISH) Mikrotik would spend some time on Fixing this issue and others related to CORE service rather then releasing all these NEW Features.This is even more funny going over multiple hops or/and using .ac. You've great (udp)bandwidth but the customer blames you what the sh... you're selling him.I have links using nstreme can go up to 100mbit, when switched to nv2 it can barely go 20 to 30mbits
And when AC txpower will be fixed?
Ok BUG confirmed, Support told this will be fix in the next release...CCR1036-12G-4S, autosuppout has been created by the problem and has sent to support, waiting reply from them...What model?Hi all,
Upgrade to 6.28, CCR1036
after 20 mins my BGP config disappear, no more instance, no more config possible.
autosuppout created.
reverse to 6.27 resolve the problem.
ticket created at support.
anybody has the case ?
regards
Armand
I have only some CCR1036-12G-4S and no one have this problem.
Have you investigated how NV2 works?? and also how TCP works??Hate to sound like a broken record. But we really need some fixed for TCP traffic over NV2. Any Idea when that is going to happen.
Have you investigated how NV2 works?? and also how TCP works??Hate to sound like a broken record. But we really need some fixed for TCP traffic over NV2. Any Idea when that is going to happen.
Try to do the test in the middle of night when your TCP connection is only traffic on the link.
Then try to do the same test in the morning when half link is busy with clients traffic.
You will see that your test will give better results in the morning when there are some other traffic on the link.
It is just the way NV2 works..., if all you need is single TCP connection - DO NOT USE NV2...
I downgraded to 6.27 and everything works again, with ~100MiB free memory most the time.uptime: 1m8s
version: 6.28
build-time: Apr/15/2015 15:18:31
free-memory: 12.7MiB
total-memory: 128.0MiB
PTMP environment... that was the significant information that was missing....The simple problem is TCP over NV2 in a PTMP environment is increasingly painful...
Probably is not the most common but there are thousand and thousand AP that are working with NV2 in PtMP and this is the only protocol that can compete with airmax.In any case PTMP NV2 is not the most common config, especially with 802.11ac around. So on global scale significance of the fix vs. time to fix it simply doesn't cost the effort. So you might need to work around it.The simple problem is TCP over NV2 in a PTMP environment is increasingly painful...
No. If your traffic passes multiple ptp connections your tcp-speed decreases with every nv2 ptp hop. So the problem ist with ptp, too.PTMP environment... that was the significant information that was missing....The simple problem is TCP over NV2 in a PTMP environment is increasingly painful...
Please, make sure that you point that out.. cause PtP it works as it should.
They know the problem but it has no priority due to not enough users urge them to work on that. Writing to a forum is "urge them". Your statement is: Everything is fine just ignore this.Also there is no need to refer to this problem in every unrelated forum topic, it doesn't work - you need to write to support@mikrotik.com
There is no solution to work around. You can try to use nstreme but nstreme is very sensitive to interference so you get faster tcp-speeds but with disconnects.In any case PTMP NV2 is not the most common config, especially with 802.11ac around. So on global scale significance of the fix vs. time to fix it simply doesn't cost the effort. So you might need to work around it.
Over saturated links - no problem. I have 5 ptp hopsNo. If your traffic passes multiple ptp connections your tcp-speed decreases with every nv2 ptp hop. So the problem ist with ptp, too.
Sorry, but Hijacking topics is simply impolite! Create a topic and spam in it as much times as you like!They know the problem but it has no priority due to not enough users urge them to work on that. Writing to a forum is "urge them". Your statement is: Everything is fine just ignore this.
Just stop spammingmacgaiver: 'cause PtP it works as it should' - using nv2 hm... 99% I am not sure about that, well you should try nstreme and see how it should work - except disconnect problem (yep ste:nstreme is very sensitive to interference) but noting is done past 2 years.
And again Mikrotik please give me a simple answer when AC txpower will be fixed?
ste quote "Just stop spamming " it was just a jokeWell it looks like i touched a nerve. Look I believe that Mikrotik is a fantastic system. But I am noticing an ongoing problem with NV2 and TCP connections. And as everyone here knows TCP works in multiple streams However. When your delivering a 25 Meg Connection to a user and they get on a speediest server and continually complain about speed. It becomes and issue. Especially when UBNT does great at those tests. I have also submited trouble tickets on tcp and nv2 speed problems and you get no response the only place you have to URGE a response is in the forums. There are also MANY posts on this in the forums. To draw some attention we post in the New Release forums. It is not an attempt to complain to complain or to spam for spamming sake it is an attempt to let the company who I have spend Thousands of Dollars on know that it is a REAL PROBLEM. We invest in this infrastructure we rely on it. We make our livings off of it. Please explain to me why in a forum on RouterOS release and beta testing it is considered spamming a topic to discuss a PROBLEM with ROUTEROS.
ROS 6.28, RB2011UAS-2HnD
try this
1) Tools -> RoMON, check ENABLE, click OK
2) Tools -> RoMON, uncheck ENABLE, click OK
CPU usage will be 100%, you must enable it again.
I have the same exact experience,No. If your traffic passes multiple ptp connections your tcp-speed decreases with every nv2 ptp hop. So the problem ist with ptp, too.PTMP environment... that was the significant information that was missing....The simple problem is TCP over NV2 in a PTMP environment is increasingly painful...
Please, make sure that you point that out.. cause PtP it works as it should.
They know the problem but it has no priority due to not enough users urge them to work on that. Writing to a forum is "urge them". Your statement is: Everything is fine just ignore this.Also there is no need to refer to this problem in every unrelated forum topic, it doesn't work - you need to write to support@mikrotik.com
There is no solution to work around. You can try to use nstreme but nstreme is very sensitive to interference so you get faster tcp-speeds but with disconnects.In any case PTMP NV2 is not the most common config, especially with 802.11ac around. So on global scale significance of the fix vs. time to fix it simply doesn't cost the effort. So you might need to work around it.
Not sure were you got the 150M in my posts. And I am aware that NV2 Does not work like that and I can never expect 150 Meg on a PTMP link I am looking back and can't find were in this thread i have stated that. However, their are items that need to be addressed.ste quote "Just stop spamming " it was just a jokeWell it looks like i touched a nerve. Look I believe that Mikrotik is a fantastic system. But I am noticing an ongoing problem with NV2 and TCP connections. And as everyone here knows TCP works in multiple streams However. When your delivering a 25 Meg Connection to a user and they get on a speediest server and continually complain about speed. It becomes and issue. Especially when UBNT does great at those tests. I have also submited trouble tickets on tcp and nv2 speed problems and you get no response the only place you have to URGE a response is in the forums. There are also MANY posts on this in the forums. To draw some attention we post in the New Release forums. It is not an attempt to complain to complain or to spam for spamming sake it is an attempt to let the company who I have spend Thousands of Dollars on know that it is a REAL PROBLEM. We invest in this infrastructure we rely on it. We make our livings off of it. Please explain to me why in a forum on RouterOS release and beta testing it is considered spamming a topic to discuss a PROBLEM with ROUTEROS.
look bclewl1ns NV2 does not work like that, not like on Mikrotik web "Performance test results", in real world u can not expect in PTMP situation AP to deliver 150mbit to station. And in some parts u are right nv2 needs lot of improvements
especially for the P2P situation
+11. Latency - Even using auto on the NV2 Setting latency is way to high.
2. Jitter - It is increasely getting worse on NV2 Links
3. TCP Throughput Should be more stable and better then 10% of UDP
I am aware of NV2's benefits and its shortcomings. My only POINT is that instead of doing all these new features LETS Stabilize a issue that is effecting current users.
1228800 bps is 1228,8 kbps, and WinBox does not round limits in output. for example, 1228000 should be shown as 1228kHello,
Upload rate in queues is shown in bits instead of kb alson on this version.
The queues are set in radius.
This item does not seem to be listed in the changelog for 6.29. Is it, in fact, fixed? If it will take a long time for 6.29 to be released (due to the addition and testing of fast-track) can this fix be provided independently sooner?Issue with sector writes rising will be fixed in version 6.29. If you want to test it, then fix for it will be included in RouterOS starting from 6.29rc13 version when it comes out.
on 17th day one of my CCRs became loosing packets on _some_ neighbour routers until reboot... I hope it was just a Moon in wrong phaseNow are 15 days after I have installed the 6.28 on my border BGP routers, my gateways, firewalls and user-managers.
No one single problem
i have 2 diffrrent RB that runs web-proxy on 6.28, no problemHi
Unfortunately, the new version (6.28) web proxy does not work
Please check
+11. Latency - Even using auto on the NV2 Setting latency is way to high.
2. Jitter - It is increasely getting worse on NV2 Links
3. TCP Throughput Should be more stable and better then 10% of UDP
I am aware of NV2's benefits and its shortcomings. My only POINT is that instead of doing all these new features LETS Stabilize a issue that is effecting current users.
1) Clear CacheHi
Unfortunately, the new version (6.28) web proxy does not work
Please check
This is a known limitation: BGP routing table loading is single threaded thus using only one CPU.Slow download speeds BGP prefixes, and uneven loading the CPU.
This is a known limitation: BGP routing table loading is single threaded thus using only one CPU.
L2TP/ipsec firewall config:
/ip firewall mangle
chain=input action=mark-packet new-packet-mark=ipsec passthrough=yes
protocol=udp dst-port=500,4500 log=no log-prefix=""
/ip firewall filter
3 chain=input action=accept protocol=udp dst-port=1701 packet-mark=ipsec
log=yes log-prefix=""
4 chain=input action=reject reject-with=icmp-network-unreachable
protocol=udp dst-port=1701 packet-mark=no-mark log=no log-prefix=""
L2TP/IPsec packet does not match rule 3, but match rule 4.
It seems there is no marker after the decryption IPSEC packet.
downgrade to 6.27 solve this problem.
You mark the packet on input chain and apply the filter on forward chain.When the gentlemen of mikrotik deign to reply:
Ticket#2015042166000534 Data: 2015-04-21 16:08
Post
2015-04-21 15:57
Critical bug in 6.28
After updating to version 6.28 is the problem of detection ipsec esp.
Before that could properly be described in Mangle encrypted traffic Packet
Markt: IPSEC and then on filter rule i culd filter IP inside the ipsec
tunnel
Since version 6.28 does not have the capability of this.
Because the above error stanol traffic on one of the VPN concentrator.
Please fix it as fast as possible
1 Rule on mangle
/ip firewall mangle
add action=mark-packet chain=input comment=IPSEC new-packet-mark=\
ipsec-encrypted passthrough=no protocol=ipsec-esp
2 Rule on forward
/ip firewall filter
add action=passthrough chain=forward comment=IPSEC
packet-mark=ipsec-encrypted
You mark the packet on input chain and apply the filter on forward chain.When the gentlemen of mikrotik deign to reply:
Ticket#2015042166000534 Data: 2015-04-21 16:08
Post
2015-04-21 15:57
Critical bug in 6.28
After updating to version 6.28 is the problem of detection ipsec esp.
Before that could properly be described in Mangle encrypted traffic Packet
Markt: IPSEC and then on filter rule i culd filter IP inside the ipsec
tunnel
Since version 6.28 does not have the capability of this.
Because the above error stanol traffic on one of the VPN concentrator.
Please fix it as fast as possible
1 Rule on mangle
/ip firewall mangle
add action=mark-packet chain=input comment=IPSEC new-packet-mark=\
ipsec-encrypted passthrough=no protocol=ipsec-esp
2 Rule on forward
/ip firewall filter
add action=passthrough chain=forward comment=IPSEC
packet-mark=ipsec-encrypted
Obviously you can not see any input marked packet on forward chain.
Use on both rules the input chain or on both rules the forwad chain.
@skibi82: ipsec is in transport mode or tunnel mode?
caps-man datapath print
0 name="datapath1" client-to-client-forwarding=yes bridge=bridge_work
1 name="datapath2" client-to-client-forwarding=yes bridge=bridge_free
interface bridge port print
Flags: X - disabled, I - inactive, D - dynamic
# INTERFACE BRIDGE PRIORITY PATH-COST HORIZON
0 ether8 bridge_work 0x80 10 none
1 ;;; master1
ether1 bridge_work 0x80 10 none
2 ;;; master2
ether7 bridge_work 0x80 10 none
3 I wlan_work bridge_work 0x80 10 none
4 I ether6 bridge_work 0x80 10 none
5 ether9 bridge_work 0x80 10 none
6 ether10 bridge_work 0x80 10 none
7 I wlan_guest bridge_free 0x80 10 none
8 ID cap7 bridge_work 0x80 10 none
9 D cap8 bridge_free 0x80 10 none
10 ID cap9 bridge_work 0x80 10 none
11 D cap10 bridge_free 0x80 10 none
CAPsMAN v1 works fine if you have separate device for CAPsMAN and separate wireless devices, but if you are using for CAPsMAN router with wireless, it won't allow packets between wireless interface and other interfaces on this router. This bug apparently is corrected in v2. There is no exact mention about it in changelog, only this: ' improved CAP<->CAPsMAN data connection protocol'2. now i use wireless-fp to use capsman, and i got 2 routers in configuration, and i got 2 bridges in master router
i got datapath1 configurated to add all master-wifi's in first bridge_work
and cap on master router did it, but no packets pass through router to, even when cap is in bridge_work, inet working but no local connect
on my second datapath2 configuration the slave-wifi's added to bridge_free
i make simple rules to allow bridge_free clients access to 2 of bridge_work adresses and its worked, like it should
when i use capsman2 on 6.28 i didnt have such trouble, all my master-wifi's client with datapath1 can connect each others and every bridge_work (lan) clients
Thx fo reply!CAPsMAN v1 works fine if you have separate device for CAPsMAN and separate wireless devices, but if you are using for CAPsMAN router with wireless, it won't allow packets between wireless interface and other interfaces on this router. This bug apparently is corrected in v2. There is no exact mention about it in changelog, only this: ' improved CAP<->CAPsMAN data connection protocol'
Link for capsmanv2:Thx fo reply!CAPsMAN v1 works fine if you have separate device for CAPsMAN and separate wireless devices, but if you are using for CAPsMAN router with wireless, it won't allow packets between wireless interface and other interfaces on this router. This bug apparently is corrected in v2. There is no exact mention about it in changelog, only this: ' improved CAP<->CAPsMAN data connection protocol'
I would gladly use capsmanv2, on my running 29rc18, but i didnt know where can i pick a npk file for RC
and one more time in 6.28 with v2 all works great
i got vicious circle
6.27 cant fasttrack
6.28 have "sector writes"
6.29rc doesnt have capsmanv2
what should i do? back to 6.27?
THX alot!Link for capsmanv2:
http://www.mikrotik.com/download/share/ ... mipsbe.npk
Change "mispbe" with you router architecture.
Have yet to test, does this apply also if set in N mode?I am well aware of the increased self-interference . We plan sites very carefully to avoid this as much as possible. I also agree Nstream is allot better for PTP however it has proven to be almost useless when it comes to the new AC radios.
THX alot!Link for capsmanv2:
http://www.mikrotik.com/download/share/ ... mipsbe.npk
Change "mispbe" with you router architecture.
there are you get this? any archive or beta page with list of stuffs, or you simply write it with own logic?
Which boards have this problem? Only mipsbe?Issue with sector writes rising will be fixed in version 6.29. If you want to test it, then fix for it will be included in RouterOS starting from 6.29rc13 version when it comes out.
I have set to only N mode however if the radio is and AC radio the problem persists.Have yet to test, does this apply also if set in N mode?I am well aware of the increased self-interference . We plan sites very carefully to avoid this as much as possible. I also agree Nstream is allot better for PTP however it has proven to be almost useless when it comes to the new AC radios.
If you have 6to4 with 2002::/16 address derived from IPv4, unspecified remote address for 6to4 interface and 192.88.99.1 as default gateway, you're running into "my" 6to4 bug (broken since 6.20, in current state since 6.24). The problem is that default gateway specified as ::192.88.99.1%6to4 does not work at all. So you can only access 2002::/16 and that's it. And if someone tries to connect to you from production (non-2002::/16) range, packets get to your router, but replies don't get out.3. i added and configured 6to4 interface through 192.88.99.1 but cant get good score on tests because MT blocks ICMPv6 to local bridge, ...
/interface 6to4
add local-address=<your IPv4 address> mtu=1480 name=6to4
add local-address=<your IPv4 address> mtu=1480 name=6to4gw remote-address=192.88.99.1
/ipv6 address
add address=2002:<your IPv4 address>::1/16 advertise=no interface=6to4
/ipv6 route
add distance=1 gateway=6to4gw
I did as suggested, and now http://www.ipv6-test.com/ tells me there is no ipv6Current workaround recommended by MikroTik support is to use two 6to4 interfaces:
Ok, that does not sound like improvement. I'd suggest to create new topic and post more details, config export, etc..I did as suggested, and now http://www.ipv6-test.com/ tells me there is no ipv6
I do not have this problem, on production I do not have any mipsbe devices.... and the excessive flash writings?
And this provocative phrase that means?So just because -you- are not affected by the bug, does not mean that 6.28 was all colors and rainbows.
It means that Mikrotik 6.28 (or any other 6.x version) is FAR from stable.And this provocative phrase that means?So just because -you- are not affected by the bug, does not mean that 6.28 was all colors and rainbows.
I may have been a bit offensive to you but that was not my intention.
1) Update the bios (/sys rou up)Since upgrading my home box seems very unstable, lots of spontaneous reboots and enough bad connections that I have power cycled it a few times.
[admin@catbus_home] /system> /system routerboard print
routerboard: yes
model: 751G-2HnD
serial-number: 2F8701252CD1
current-firmware: 3.17
upgrade-firmware: 3.22
[admin@catbus_home] /system> /system resource print
uptime: 58m57s
version: 6.28
build-time: Apr/15/2015 15:18:31
free-memory: 26.1MiB
total-memory: 64.0MiB
cpu: MIPS 24Kc V7.4
cpu-count: 1
cpu-frequency: 250MHz
cpu-load: 4%
free-hdd-space: 21.4MiB
total-hdd-space: 64.0MiB
write-sect-since-reboot: 3132
write-sect-total: 12762707
bad-blocks: 0%
architecture-name: mipsbe
board-name: RB751G-2HnD
platform: MikroTik
[admin@catbus_home] /system>
From the log
may/18 23:14:53 system,error,critical System rebooted because of kernel failure
may/18 23:14:54 system,error,critical Out of memory condition was detected
may/18 23:14:54 system,error,critical router was rebooted without proper shutdown
What method you use for install 6.7 (or the previous and what method use to go to 6.7)?After upgrade from 6.7 to 6.28 we now get spontaneous hangs every few days on CCR1036-12G-4S.
What package you have installed and what date and time have the packages?routerboard: yes
model: CCR1036-12G-4S
serial-number: ...
current-firmware: 3.10
upgrade-firmware: 3.22
nmaton,
please contact MikroTik support (support@mikrotik.com) with attached support output files from one of your routers.
We will try to find out what is the reason for your issues. We are sorry for any inconvenience.