Wonder how many that "thousands of static entries" can I load (faster or not) into DNS server?What's new in 6.39.1 (2017-Apr-27 10:06):
*) dns - made loading thousands of static entries faster;
It depends on what device you have. But certainly the only useful backup is the backup that you have downloaded to another system.Reading about the 6.39 problems, I have just made a backup before upgrading (via Winbox / Files), directly in root.
However, the backup file disappeared after upgrade; is it normal??
I saved the backup when reading about update issues (config lost). If the config would have been lost, I could simply load the backup (when no reset is necessary, I understand).It depends on what device you have. But certainly the only useful backup is the backup that you have downloaded to another system.
Keeping your backup on the router is not useful as it will be gone when you need to factory-reset it, the time you need the backup.
On that device and all other "new" devices with 16MB flash it is normal, yes. The root directory that you see is a RAMdisk,I saved the backup when reading about update issues (config lost). If the config would have been lost, I could simply load the backup (when no reset is necessary, I understand).It depends on what device you have. But certainly the only useful backup is the backup that you have downloaded to another system.
Keeping your backup on the router is not useful as it will be gone when you need to factory-reset it, the time you need the backup.
But I had no problem, the config was properly kept; I just saw that the backup wasn't there anymore (I had no other file)...
I am still interested, is it normal?
The device is RouterBOARD 962UiGS-5HacT2HnT
Thanks,
Gabriel
Why did you upgrade a roofmounted p2p link from 6.39 to 6.39.1 ???Upgrade from 6.39
So, again travel to roof
Useless information without indicating what was your previous version and how your router is configured...also downloaded and installed the 6.39.1
[SOLVED]Use the backup partition before any update. When update fails, use netinstall.
i lost my RB951G-2Hnd after upgrading from 6.39 to 6.39.1 !!!
After updating the router does not work.
I tried a reset without success
I tried a netinstall but the router is nether seen in the netinstall interface
How to repair my RB951G-2Hnd ?
I used the MikroTik wiki to use netinstall and it don't work (they says to put 10.0.1.10/24 IP to the ethernet interface on the PC and to put 192.168.1.2 to the network booting server configuration in netinstall)Have you tried a shielded cable max lenght of 2mt (direct connection) for net install?i lost my RB951G-2Hnd after upgrading from 6.39 to 6.39.1 !!!
After updating the router does not work.
I tried a reset without success
I tried a netinstall but the router is nether seen in the netinstall interface
How to repair my RB951G-2Hnd ?
I said in my post that my router was running now.Try this :
First put the power, after 2-3 seconds press the reset button and after 5 seconds release it and see if you will initialize the flash!
I use 10.0.0.1/24 for PC lan adapter and 10.0.0.2 for PXE .
Glad it worksI said in my post that my router was running now.Try this :
First put the power, after 2-3 seconds press the reset button and after 5 seconds release it and see if you will initialize the flash!
I use 10.0.0.1/24 for PC lan adapter and 10.0.0.2 for PXE .
exact, i don't read the MikroTik wiki correctly@mikegyver42: You have to put on your computer an IP address from the same network.(eg: on PC: 10.10.10.10/24, on netinstall server: 10.10.10.20/24.
It doesn't work if you put on PC 192.168.10.10 and on netinstall server 10.10.10.20 because you don't have a route from 192.x.x.x to 10.x.x.x.)
Then you should be able to access through netinstall interface the router to install the ROS.
I have upgraded my 3011 without issues. The only problem I have now is fasttrack issues but those are related to connections using fasttrack then passing a CHR (on Hyper-V 2012 R2).Some people here are complaining about serious issues with 3011 after upgrade.
However I haven't seen any reaction of MK confirming or rejecting that. So I'm asking whether is it safe to upgrade 3011 and wish to hear clear answer.
/ip proxy access remove numbers=[find action=deny]
/ip proxy access remove numbers=[find action="deny"]
/disk1/hotspot/hotspot1
/flash/disk1/hotspot/hotspot1
From my point of view, the only working upgrade for a RB3011 is to use netinstall. I had the exactly same issue (bootloop) on 3 different 3011 devices after updating them. I would NOT recommend you to update. unless its ok for you to use netinstallSome people here are complaining about serious issues with 3011 after upgrade.
However I haven't seen any reaction of MK confirming or rejecting that. So I'm asking whether is it safe to upgrade 3011 and wish to hear clear answer.
+1 on the Thanks, and on the Wiki update suggestion.After some testing arount, the new features seem to work great
@Mikrotik -> Please update the capsman wiki. some new options need explanation.
they are present, I just erased them.Channel list seems to work properly, but I would like to see the current channel/frequency in the CAP interface list, similar to SSID, Band, etc.
The columns are there but empty.
Yes, I have on a rb750g3 with two wireless caps and local break out instead of capsman forward. The rb750 uses eth2 as LAN-interface and fasttrack firewall rules are on top. Websites load slow and local media streamers are not visible sometimes (chromecast). Disable fasttrack solves the problem.I'm having very strange fasttrack issues with this release (did not test 6.39).
Had no issues on 6.38.5.
The issue is that suft from Windows to internet and so on work as expected BUT an RDP connection to a Windows server does not and a connection from an other Mikrotik device going to internet does not work either. As soon as I disable the Fatstrack rule in firewall everything started working as expected.
Anybody else have issues using fasttrack?
My 750 Gr3 is my WAN router and the 3011 hold my user network but this issue appears to if the traffic passes my CHR router (DMZ). Don't know why this is and it's not all traffic but I think it's related to some typ of encryption as RDP does not work.Yes, I have on a rb750g3 with two wireless caps and local break out instead of capsman forward. The rb750 uses eth2 as LAN-interface and fasttrack firewall rules are on top. Websites load slow and local media streamers are not visible sometimes (chromecast). Disable fasttrack solves the problem.I'm having very strange fasttrack issues with this release (did not test 6.39).
Had no issues on 6.38.5.
The issue is that suft from Windows to internet and so on work as expected BUT an RDP connection to a Windows server does not and a connection from an other Mikrotik device going to internet does not work either. As soon as I disable the Fatstrack rule in firewall everything started working as expected.
Anybody else have issues using fasttrack?
With capsman forward and break out on a bridge on the rb750 seems to work ok. Might be a config issue.
The same problem with this model.Hi !
I downloaded and installed the 6.39.1 of ROS on a RB951G-2Hnd. After rebooting, the router stopped to work properly. I wasn't able to gain access to the router via Winbox or Webfig using IP or MAC addresses.
I tried to do factory reset, but for some reason I wasn't able to connect via Winbox(IP and MAC). In the end I performed a netinstall. It was the only way to regain access to the router.
And if You must work instead of waiting 2-3 weaks for paid rma - routers are out of warranty? You and other company workers goes to vacation for this reason?I have heard about no one who bought a new router because the previous was bricked by update. They are rather sent to rma instead which is for sure profitable for mikrotik...
It seems mainly https sites on my 750gr3, so you might have a good point.My 750 Gr3 is my WAN router and the 3011 hold my user network but this issue appears to if the traffic passes my CHR router (DMZ). Don't know why this is and it's not all traffic but I think it's related to some typ of encryption as RDP does not work.Yes, I have on a rb750g3 with two wireless caps and local break out instead of capsman forward. The rb750 uses eth2 as LAN-interface and fasttrack firewall rules are on top. Websites load slow and local media streamers are not visible sometimes (chromecast). Disable fasttrack solves the problem.I'm having very strange fasttrack issues with this release (did not test 6.39).
Had no issues on 6.38.5.
The issue is that suft from Windows to internet and so on work as expected BUT an RDP connection to a Windows server does not and a connection from an other Mikrotik device going to internet does not work either. As soon as I disable the Fatstrack rule in firewall everything started working as expected.
Anybody else have issues using fasttrack?
With capsman forward and break out on a bridge on the rb750 seems to work ok. Might be a config issue.
Which country and frequency did you set it to? Some frequencies require a very long radar search (10 minutes)I also having problem with DFS on AP in this version. One of my AP still detecting for radar and never switch back to normal mode. I don't have this issue on clients. AP si RB411.
I think the issue here isn't that they are breaking things - its that they actually fixed partitions, but didn't test what happens if you upgrade a device that already had the broken partitions in place.Very bad message. I am using multiple partitions where possible to prevent such problems during updates. And now it is opposed? Now I must say like others: you are breaking things and not testing enough before public release to current branch.
My mAP broken tooAfter update RB 750 v.6.38 to 6.39.1 is di. Nothig help .......reset or hardware reset. Netinstall not help too. Blink only power light.
I use 6.39.1 live on production (CCR1009-7G-1C, netmetal 5, hex poe, etc.), actually the only problem I have is when I use old winbox 2 for disable/enable something. But if I use 3.11 I have no problem.Same problem here.
Last weekend tried to upgrade my CCR1009 from 6.38.5 to 6.39.1
It was a disaster. Luckily i could connect it anyway over my VPN and did a downgrade to 6.38.5 and reinstalled dude-server. Working fine now.
This morning tried to upgrade wAP from 6.38.5 to 6.39.1 and that's totally bricked now!
Wil try netinstall later today and see if that will solve it.
When is 6.39.1 removed from the site?
Netinstall not workin i try 50 times. I read wiki manual but nothig hapen.Netinstall work always
Read wiki
Push and hold reset buton all time, then power up
Sent from my iPhone using Tapatalk Pro
This is a useless remark in a topic where several issues are discussed.Same problem here.
I'm using CCR1009-8G-1S-1S+ also with Winbox 3.11I use 6.39.1 live on production (CCR1009-7G-1C, netmetal 5, hex poe, etc.), [...]
Hi,On bridge I use new fast-forward=yes and I notice decreased latency, but not more bandwidth.
Hi,Hi Everyone.
It's my first time posting in this forum and just a little over 3 months using Mikrotik routers, having worked in mostly Cisco network environments. Just would like to ask what the most stable RouterOS there is for a Mikrotik1036? If it helps, I'll be running BGP on the router.
I have so much questions about Mikrotik, would this be the best forum for Mikrotik?
Thanks in advance.
This kind of problem is often caused by having "FastTrack" in the configuration in a situation where it is not possible to do it, and being rescued byBeen working great in this setup until 6.39.1 In fact upgrading from bugfix to current I saw the same issue immediately after it booted the current.
Thanks for the info. I currently do not use FastTrack as historically it doesn't play nice with queuing. Both routers do not have a FastTrack rule in /ip firewall filter.This kind of problem is often caused by having "FastTrack" in the configuration in a situation where it is not possible to do it, and being rescued byBeen working great in this setup until 6.39.1 In fact upgrading from bugfix to current I saw the same issue immediately after it booted the current.
the fact that FastTrack was not yet supported for some specific interface type. When a new version extends FastTrack support to that interface
type, the configuration that always was incorrect suddenly starts failing.
This can be confirmed by disabling FastTrack to see if it fixes it, and if so: study the matter and maybe put some rules before the FastTrack rule.
Really??The IKEV2 requested are this:
Authentication: Pre-Shared Key
Hi, I have problem with 6.39 and 6.39.1 on rb951g & rb750gl, it is not possible to edit ports in firewall, they are greyed. Ports can be edited only after switching protocol. On 6.38.5 everything worked normally.
I have sent in supout but has not gotten any feedback from you. I can reproduce the issue so I can create new files if you like or give you remote access.Please everyone who is experiencing issues with this version and can see that after disabling FastTrack/FastPath issues goes away - generate supout file on device while problem is actual and send this file to support@mikrotik.com
We have not received yet such file from anyone and are not being able to notice any issues in common configurations where FastTrack/FastPath is being used.
I heard the same thing from a local user!
Have several routers (CCRs) with 6.39 and 6.39.1, accounting enabled, working with freeradius 3, framedipaddress is sent correctly. Have you inspected a packet capture?Description :
In case when Mikrotik stops the PPP session, it sends wrong Framed-IP address (10.0.0.0).
We work with the Framed-IP address as part of session identification and our Radius cannot close the session correctly. I'm pretty sure all Radius based software are affected by this.
Here is a correct START packet, where Framed-IP is the IP address of customer (192.168.102.5) :
START:
Service-Type = Framed-User
Framed-Protocol = PPP
Framed-IP-Address = 192.168.102.5
Acct-Authentic = RADIUS
And here is a STOP packet with broken Framed-IP address :
Service-Type = Framed-User
Framed-Protocol = PPP
Framed-IP-Address = 10.0.0.0
Acct-Authentic = RADIUS
Event-Timestamp = "May 2 2017 18:16:38 CEST"
NAS-IP-Address = 10.0.1.36
thank you very much, indeed, after flashing the second router and after restarting the signal is recovered. watching the work onI heard the same thing from a local user!
It was fixed when the other side was rebooted as well...
Maybe a second reboot of the updated 433 might have fixed it as well.
Tested on hEX (RB750Gr3) -- 4020 items only. No one more, any DNS cache settings, 150+MB RAM free.Wonder how many that "thousands of static entries" can I load (faster or not) into DNS server?What's new in 6.39.1 (2017-Apr-27 10:06):
*) dns - made loading thousands of static entries faster;
dnsmasq manage about 50K eating 30MB RAM on x86... works well... wont the same in MT.
Isn't it something to be expected?Starting from v6.39, when connecting to a device from WinBox version 2 (Winbox v2.2.16),
a problem is detected...
What's new in 6.39 (2017-Apr-27 10:06):
...
!) winbox - minimal required version is v3.11;
...
Do you really think that MikroTik should spend development and debug effort, effort that cannot then be spent on other tasks, for supporting your ancient computer and special request?pe1chl
I have a some workstation with Win2k it has for develop and debug purposes. So on it i use winbox v2. IMHO, Webfig is not very comfortable for me.
Sorry, some records failed to add because of more than 63 chars length (I've specially tested this limit).Tested on hEX (RB750Gr3) -- 4020 items only. No one more, any DNS cache settings, 150+MB RAM free.Wonder how many that "thousands of static entries" can I load (faster or not) into DNS server?What's new in 6.39.1 (2017-Apr-27 10:06):
*) dns - made loading thousands of static entries faster;
dnsmasq manage about 50K eating 30MB RAM on x86... works well... wont the same in MT.
Sad.
A DNS name cannot be longer than 255 chars in total and no more than 63 chars in each "label" (part between dots).Sorry, some records failed to add because of more than 63 chars length (I've specially tested this limit).
Are you talking about Stop accounting packet ? I'm telling that Framed-IP is OK in Accounting-start, regular accounting and access packets. It's broken only in accounting-stop packet.Have several routers (CCRs) with 6.39 and 6.39.1, accounting enabled, working with freeradius 3, framedipaddress is sent correctly. Have you inspected a packet capture?
I'm having this issue. driving me bonkers! Support advised downgrade to bugfix version however I'm sure a downgrade would go horribly wrong given I also have 30 odd CAPS connecting to the problem router for CAPsMAN.. Eagerly awaiting a later version with a fix.Has anyone seen trouble with DHCP after upgrading to 6.39 or 6.39.1? I upgraded a 951Ui-2HnD router to 6.39 at a customer on Tuesday morning because I was onsite to add new equipment and thought I'd try the upgrade (yeah, silly idea I know) and now our Debian Linux server isn't accepting DHCP offers from it (the Linux box hasn't been touched and no software has been upgraded on it). The Linux box syslog reports that no DHCP offers were received, the router log says the offer wasn't accepted. Windows 7 doesn't seem to have a problem and gets a lease without problem. I've tried 6.39.1 and that doesn't seem to have fixed it.
All domain names are real ones (russian gov. block list), but IMHO that limits are for name field, not for REGEXP field in MT ROS DNS static records. & yes, I've tested dot delimited regexps each shorter than 63 chars too, without success. Any case, I need more static records than huge their lengths.A DNS name cannot be longer than 255 chars in total and no more than 63 chars in each "label" (part between dots).Sorry, some records failed to add because of more than 63 chars length (I've specially tested this limit).
That is described in the standard, so when you expected to use longer labels the error is on your side.
I was referring to the stop records in radacct (guess you use a SQL backend).Are you talking about Stop accounting packet ? I'm telling that Framed-IP is OK in Accounting-start, regular accounting and access packets. It's broken only in accounting-stop packet.Have several routers (CCRs) with 6.39 and 6.39.1, accounting enabled, working with freeradius 3, framedipaddress is sent correctly. Have you inspected a packet capture?
How to generate accounting stop packet - close the existing PPPoE session and Mikrotik will send this packet to Radius.
I'm quite sure in this, we use Framed-IP in our software for session identification and now our clients who upgraded RouterOS are facing the issue.
same here, I upgraded to 6.39.1 yesterday but do not get stable connection on DFS channels (using CAPSMAN), downgraded the APs to 6.38.5 and it is fine again. CAPSMAN still on 6.39.1still having DFS problems with hAP ac on 6.39.1
on 6.38.5 everything was fine.
every day there is radar detected and the AP switches channels until it gets to a non DFS channel (5180).
it makes no difference if I change antenna gain or the "start channel" to another one (usally 5500 ist default, tested with 5580, 5640).
the problem only seems to occur, if the device is triple chain 5GHz.
this problem seems to also be present on netmetal 5.
one connected device is sufficient to trigger the DFS problem.
Follow the postings: viewtopic.php?p=596706#p596706Anyone experience any issues with with P2P filters after this upgrade? i had configured torrent filters but after the upgrade am now told p2p filters is obsolete i match with layer7. how do i go about fixing this problem?
Czech Republic and frequency 5600 I think...Which country and frequency did you set it to? Some frequencies require a very long radar search (10 minutes)I also having problem with DFS on AP in this version. One of my AP still detecting for radar and never switch back to normal mode. I don't have this issue on clients. AP si RB411.
I also upgraded a CCR1016-12G to RouterOS v6.39.1, and the IPsec tunnel stopped working.Upgrade 3x CCR1016-12G and my tunnels base on IPSec are down...
Our routers are set to auto Update.Some people here are complaining about serious issues with 3011 after upgrade.
However I haven't seen any reaction of MK confirming or rejecting that. So I'm asking whether is it safe to upgrade 3011 and wish to hear clear answer.
I can confirm the issue with 3011 and radius accounting Stop on 6.39.1,Are you talking about Stop accounting packet ? I'm telling that Framed-IP is OK in Accounting-start, regular accounting and access packets. It's broken only in accounting-stop packet.Have several routers (CCRs) with 6.39 and 6.39.1, accounting enabled, working with freeradius 3, framedipaddress is sent correctly. Have you inspected a packet capture?
How to generate accounting stop packet - close the existing PPPoE session and Mikrotik will send this packet to Radius.
I'm quite sure in this, we use Framed-IP in our software for session identification and now our clients who upgraded RouterOS are facing the issue.
Hi Sir..Hi,Hi Everyone.
It's my first time posting in this forum and just a little over 3 months using Mikrotik routers, having worked in mostly Cisco network environments. Just would like to ask what the most stable RouterOS there is for a Mikrotik1036? If it helps, I'll be running BGP on the router.
I have so much questions about Mikrotik, would this be the best forum for Mikrotik?
Thanks in advance.
Im using version 6.38.5 on CCR1036-12G-4S and using bgp without any problem.
DearI do not blindly hurry with updates. I read the forum. When I know why to do the update, I firstly test in the lab. And yes, I needed to use a serial cable and netinstall few times in the history in the lab. But never in the field so far.
I also use backup partitions to be able easily revert the routers back when necessary so I am very unhappy of those new routers with 16MB of flash that are not able to carry two partitions.
Mon May 22 12:32:11 2017 : Info: Released IP 10.0.0.0 (did Optima4014 cli C8:0E:14:46:6D:37 user 209_mi_voce@optimabs)
Mon May 22 12:32:11 2017 : Auth: Login OK: [209_mi_voce@optimabs] (from client MIKROTIK PPPoE-2 port 15765441 cli C8:0E:14:46:6D:37)
Mon May 22 12:32:11 2017 : Info: Allocated IP: 10.101.5.119 from voce_nga (did Optima4014 cli C8:0E:14:46:6D:37 port 15765441 user 209_mi_voce@optimabs)
Dear ,The one you are running now if you do not suffer by any problem or do not need any of new features.
When in doubt, just stick to the latest version in the bugfix update channel, which is 6.37.5 as of now.please just suggest me which is the best version.
and which version you are working with
I am seeing to many "group key timeouts" aswell with CAPSMAN forwarding (mainly on 2.4Ghz.)i am seeing a lot of rejected, forbidden by access list, and group key timeout, sending station leaving
anybody else?
Hi,
i've upgraded my pair of CCR1072 that i use as PPPoE Server and i've the same issue of alexcherry about radius accounting stop packet.
The Framed-IP-Address value that RouterOS send to Freeradius was totally incorrect.
The Framed-IP-Address value for the Interim-Update of same connected user works fine.
INTERIM-UPDATE
May/22/2017 12:30:16 radius,debug,packet sending Accounting-Request with id 86 to 185.129.91.248:1646
May/22/2017 12:30:16 radius,debug,packet Signature = 0x66b016e8ba441d18c7ed03c01a7d14e5
May/22/2017 12:30:16 radius,debug,packet Service-Type = 2
May/22/2017 12:30:16 radius,debug,packet Framed-Protocol = 1
May/22/2017 12:30:16 radius,debug,packet NAS-Port = 15765320
May/22/2017 12:30:16 radius,debug,packet NAS-Port-Type = 15
May/22/2017 12:30:16 radius,debug,packet User-Name = "209_mi_voce@optimabs"
May/22/2017 12:30:16 radius,debug,packet Calling-Station-Id = "C8:0E:14:46:6D:37"
May/22/2017 12:30:16 radius,debug,packet Called-Station-Id = "Optima4014"
May/22/2017 12:30:16 radius,debug,packet NAS-Port-Id = "bridgeVlan4014"
May/22/2017 12:30:16 radius,debug,packet MS-CHAP-Domain = "optimabs"
May/22/2017 12:30:16 radius,debug,packet Acct-Session-Id = "81908eef"
May/22/2017 12:30:16 radius,debug,packet Framed-IP-Address = 10.101.7.52
May/22/2017 12:30:16 radius,debug,packet Acct-Authentic = 1
May/22/2017 12:30:16 radius,debug,packet Event-Timestamp = 1495449016
May/22/2017 12:30:16 radius,debug,packet Acct-Session-Time = 780
May/22/2017 12:30:16 radius,debug,packet Idle-Timeout = 3600
May/22/2017 12:30:16 radius,debug,packet Session-Timeout = 0
May/22/2017 12:30:16 radius,debug,packet MT-Address-List = "ngavoce"
May/22/2017 12:30:16 radius,debug,packet Acct-Input-Octets = 54
May/22/2017 12:30:16 radius,debug,packet Acct-Input-Gigawords = 0
May/22/2017 12:30:16 radius,debug,packet Acct-Input-Packets = 3
May/22/2017 12:30:16 radius,debug,packet Acct-Output-Octets = 46
May/22/2017 12:30:16 radius,debug,packet Acct-Output-Gigawords = 0
May/22/2017 12:30:16 radius,debug,packet Acct-Output-Packets = 4
May/22/2017 12:30:16 radius,debug,packet Acct-Status-Type = 3
May/22/2017 12:30:16 radius,debug,packet NAS-Identifier = "PPPoE-2"
May/22/2017 12:30:16 radius,debug,packet Acct-Delay-Time = 0
May/22/2017 12:30:16 radius,debug,packet MT-Realm = 0x6f7074696d616273
May/22/2017 12:30:16 radius,debug,packet NAS-IP-Address = 185.129.88.5
RELEASE
May/22/2017 12:30:29 radius,debug,packet sending Accounting-Request with id 98 to 185.129.91.248:1646
May/22/2017 12:30:29 radius,debug,packet Signature = 0xcd439aab48a306e004dc6280de6f2fc8
May/22/2017 12:30:29 radius,debug,packet Service-Type = 2
May/22/2017 12:30:29 radius,debug,packet Framed-Protocol = 1
May/22/2017 12:30:29 radius,debug,packet NAS-Port = 15765320
May/22/2017 12:30:29 radius,debug,packet NAS-Port-Type = 15
May/22/2017 12:30:29 radius,debug,packet User-Name = "209_mi_voce@optimabs"
May/22/2017 12:30:29 radius,debug,packet Calling-Station-Id = "C8:0E:14:46:6D:37"
May/22/2017 12:30:29 radius,debug,packet Called-Station-Id = "Optima4014"
May/22/2017 12:30:29 radius,debug,packet NAS-Port-Id = "bridgeVlan4014"
May/22/2017 12:30:29 radius,debug,packet MS-CHAP-Domain = "optimabs"
May/22/2017 12:30:29 radius,debug,packet Acct-Session-Id = "81908eef"
May/22/2017 12:30:29 radius,debug,packet Framed-IP-Address = 10.0.0.0
May/22/2017 12:30:29 radius,debug,packet Acct-Authentic = 1
May/22/2017 12:30:29 radius,debug,packet Event-Timestamp = 1495449029
May/22/2017 12:30:29 radius,debug,packet Acct-Session-Time = 794
May/22/2017 12:30:29 radius,debug,packet Idle-Timeout = 3600
May/22/2017 12:30:29 radius,debug,packet Session-Timeout = 0
May/22/2017 12:30:29 radius,debug,packet MT-Address-List = "ngavoce"
May/22/2017 12:30:29 radius,debug,packet Acct-Input-Octets = 54
May/22/2017 12:30:29 radius,debug,packet Acct-Input-Gigawords = 0
May/22/2017 12:30:29 radius,debug,packet Acct-Input-Packets = 3
May/22/2017 12:30:29 radius,debug,packet Acct-Output-Octets = 46
May/22/2017 12:30:29 radius,debug,packet Acct-Output-Gigawords = 0
May/22/2017 12:30:29 radius,debug,packet Acct-Output-Packets = 4
May/22/2017 12:30:29 radius,debug,packet Acct-Status-Type = 2
May/22/2017 12:30:29 radius,debug,packet Acct-Terminate-Cause = 10
May/22/2017 12:30:29 radius,debug,packet NAS-Identifier = "PPPoE-2"
May/22/2017 12:30:29 radius,debug,packet Acct-Delay-Time = 0
May/22/2017 12:30:29 radius,debug,packet MT-Realm = 0x6f7074696d616273
May/22/2017 12:30:29 radius,debug,packet NAS-IP-Address = 185.129.88.5
FreeRadius LOGCode: Select allMon May 22 12:32:11 2017 : Info: Released IP 10.0.0.0 (did Optima4014 cli C8:0E:14:46:6D:37 user 209_mi_voce@optimabs) Mon May 22 12:32:11 2017 : Auth: Login OK: [209_mi_voce@optimabs] (from client MIKROTIK PPPoE-2 port 15765441 cli C8:0E:14:46:6D:37) Mon May 22 12:32:11 2017 : Info: Allocated IP: 10.101.5.119 from voce_nga (did Optima4014 cli C8:0E:14:46:6D:37 port 15765441 user 209_mi_voce@optimabs)
I cannot downgrade to previous version because i create a service disruption...please fix it....
Thank you so Much Dear .When in doubt, just stick to the latest version in the bugfix update channel, which is 6.37.5 as of now.please just suggest me which is the best version.
and which version you are working with
Thank you Dear For your Answer .I am mostly running at 6.39.1 now. Just few remote devices where I was not brave enough to upgrade are running with older versions.
PS4 does not support EDNSWe use mikrotiks for are customers and seem to be having issues on PS4 at the moment
I seem to be having an issue on PS4's with the dns.
The error code that pops up is
Cannot connect to playstation network. Dns error (NW-31253-4).
They suggest many things all of which i have tried. Just for reference though the the web browser on the ps4 works just fine.
port forwards
dns switched to google or open dns
updating ps4
static the ip
upnp... nothing works
I'm left at possibly the latest update to 3.39.1
"dns - made loading thousands of static entries faster;"
May be breaking something and preventing connection to it.
I'm kind of at a loss I even attempted to call Mikrotik experts from LinkTechs to review settings and find out what the problem is.
script: :global ssid;
#| WISP Bridge:
#| * wireless and LAN interfaces are bridged;
#| * IP address 192.168.88.1/24 is set on bridge
#| wlan1 Configuration:
#| mode: ap-bridge;
#| band: 2ghz-b/g/n;
#| ht-chains: 0,1;
#| ht-extension: 20/40mhz-Ce;
#| LAN Configuration:
:log info Starting_defconf_script_;
:global action;
#-------------------------------------------------------------------------------
# Apply configuration.
# these commands are executed after installation or configuration reset
#-------------------------------------------------------------------------------
:if ($action = "apply") do={
# wait for interfaces
:local count 0;
:while ([/interface ethernet find] = "") do={
:if ($count = 30) do={
:log warning "DefConf: Unable to find ethernet interfaces";
/quit;
}
:delay 1s; :set count ($count +1);
};
:local count 0;
:while ([/interface wireless print count-only] < 1) do={
:set count ($count +1);
:if ($count = 30) do={
:log warning "DefConf: Unable to find wireless interface(s)";
/ip address add address=192.168.88.1/24 interface=ether1 comment="defconf";
/quit
}
:delay 1s;
};
/interface wireless {
set wlan1 mode=ap-bridge band=2ghz-b/g/n tx-chains=0,1 rx-chains=0,1 \
disabled=no wireless-protocol=802.11 distance=indoors
:local wlanMac [/interface wireless get wlan1 mac-address];
:set ssid "MikroTik-$[:pick $wlanMac 9 11]$[:pick $wlanMac 12 14]$[:pick $wlanMac 15 17]"
set wlan1 ssid=$ssid
set wlan1 frequency=auto
set wlan1 channel-width=20/40mhz-Ce ;
}
/interface bridge
add name=bridge disabled=no auto-mac=yes protocol-mode=rstp comment=defconf;
:local bMACIsSet 0;
:foreach k in=[/interface find where !(slave=yes || name~"bridge")] do={
:log info "k: $k"
:local tmpPortName [/interface get $k name];
:log info "port: $tmpPortName"
:if ($bMACIsSet = 0) do={
:if ([/interface get $k type] = "ether") do={
/interface bridge set "bridge" auto-mac=no admin-mac=[/interface ethernet get $tmpPortName mac-address];
:set bMACIsSet 1;
}
}
/interface bridge port
add bridge=bridge interface=$tmpPortName comment=defconf;
}
/ip address add address=192.168.88.1/24 interface=bridge comment="defconf";
}
#-------------------------------------------------------------------------------
# Revert configuration.
# these commands are executed if user requests to remove default configuration
#-------------------------------------------------------------------------------
:if ($action = "revert") do={
# remove wan port protection
/ip firewall filter remove [find comment~"defconf"]
/ip firewall nat remove [find comment~"defconf"]
/tool mac-server remove [find interface!=all]
/tool mac-server set [find] disabled=no
/tool mac-server mac-winbox remove [find interface!=all]
/tool mac-server mac-winbox set [find] disabled=no
/ip neighbor discovery set [find ] discover=yes
:local o [/ip dhcp-server network find comment="defconf"]
:if ([:len $o] != 0) do={ /ip dhcp-server network remove $o }
:local o [/ip dhcp-server find name="defconf" !disabled]
:if ([:len $o] != 0) do={ /ip dhcp-server remove $o }
/ip pool {
:local o [find name="default-dhcp" ranges=192.168.88.10-192.168.88.254]
:if ([:len $o] != 0) do={ remove $o }
}
:local o [/ip dhcp-client find comment="defconf"]
:if ([:len $o] != 0) do={ /ip dhcp-client remove $o }
/ip dns {
set allow-remote-requests=no
:local o [static find name=router address=192.168.88.1]
:if ([:len $o] != 0) do={ static remove $o }
}
/ip address {
:local o [find comment="defconf"]
:if ([:len $o] != 0) do={ remove $o }
}
:foreach iface in=[/interface ethernet find] do={
/interface ethernet set $iface name=[get $iface default-name]
}
/interface bridge port remove [find comment="defconf"]
/interface bridge remove [find comment="defconf"]
/interface wireless reset-configuration wlan1
}
:log info Defconf_script_finished;
script: :global ssid;
#| WISP Bridge:
#| * wireless and LAN interfaces are bridged;
#| wlan1 Configuration:
#| mode: ap-bridge;
#| band: 2ghz-b/g/n;
#| ht-chains: 0,1;
#| ht-extension: 20/40mhz-Ce;
#| LAN Configuration:
#| DHCP Client: enabled on LAN port;
:log info Starting_defconf_script_;
:global action;
#-------------------------------------------------------------------------------
# Apply configuration.
# these commands are executed after installation or configuration reset
#-------------------------------------------------------------------------------
:if ($action = "apply") do={
# wait for interfaces
:local count 0;
:while ([/interface ethernet find] = "") do={
:if ($count = 30) do={
:log warning "DefConf: Unable to find ethernet interfaces";
/quit;
}
:delay 1s; :set count ($count +1);
};
:local count 0;
:while ([/interface wireless print count-only] < 1) do={
:set count ($count +1);
:if ($count = 30) do={
:log warning "DefConf: Unable to find wireless interface(s)";
/ip address add address=192.168.88.1/24 interface=ether1 comment="defconf";
/quit
}
:delay 1s;
};
/interface wireless {
set wlan1 mode=ap-bridge band=2ghz-b/g/n tx-chains=0,1 rx-chains=0,1 \
disabled=no wireless-protocol=802.11 distance=indoors
:local wlanMac [/interface wireless get wlan1 mac-address];
:set ssid "MikroTik-$[:pick $wlanMac 9 11]$[:pick $wlanMac 12 14]$[:pick $wlanMac 15 17]"
set wlan1 ssid=$ssid
set wlan1 frequency=auto
set wlan1 channel-width=20/40mhz-Ce ;
}
/interface bridge
add name=bridge disabled=no auto-mac=yes protocol-mode=rstp comment=defconf;
:local bMACIsSet 0;
:foreach k in=[/interface find where !(slave=yes || name~"bridge")] do={
:log info "k: $k"
:local tmpPortName [/interface get $k name];
:log info "port: $tmpPortName"
:if ($bMACIsSet = 0) do={
:if ([/interface get $k type] = "ether") do={
/interface bridge set "bridge" auto-mac=no admin-mac=[/interface ethernet get $tmpPortName mac-address];
:set bMACIsSet 1;
}
}
/interface bridge port
add bridge=bridge interface=$tmpPortName comment=defconf;
}
/ip dhcp-client add interface=bridge disabled=no comment="defconf";
}
#-------------------------------------------------------------------------------
# Revert configuration.
# these commands are executed if user requests to remove default configuration
#-------------------------------------------------------------------------------
:if ($action = "revert") do={
# remove wan port protection
/ip firewall filter remove [find comment~"defconf"]
/ip firewall nat remove [find comment~"defconf"]
/tool mac-server remove [find interface!=all]
/tool mac-server set [find] disabled=no
/tool mac-server mac-winbox remove [find interface!=all]
/tool mac-server mac-winbox set [find] disabled=no
/ip neighbor discovery set [find ] discover=yes
:local o [/ip dhcp-server network find comment="defconf"]
:if ([:len $o] != 0) do={ /ip dhcp-server network remove $o }
:local o [/ip dhcp-server find name="defconf" !disabled]
:if ([:len $o] != 0) do={ /ip dhcp-server remove $o }
/ip pool {
:local o [find name="default-dhcp" ranges=192.168.88.10-192.168.88.254]
:if ([:len $o] != 0) do={ remove $o }
}
:local o [/ip dhcp-client find comment="defconf"]
:if ([:len $o] != 0) do={ /ip dhcp-client remove $o }
/ip dns {
set allow-remote-requests=no
:local o [static find name=router address=192.168.88.1]
:if ([:len $o] != 0) do={ static remove $o }
}
/ip address {
:local o [find comment="defconf"]
:if ([:len $o] != 0) do={ remove $o }
}
:foreach iface in=[/interface ethernet find] do={
/interface ethernet set $iface name=[get $iface default-name]
}
/interface bridge port remove [find comment="defconf"]
/interface bridge remove [find comment="defconf"]
/interface wireless reset-configuration wlan1
}
:log info Defconf_script_finished;