Progress, but you still have work to do. Memory usage and Disk usage gives: ERROR: NO ACCESS!*) webfig - fixed displaying of grahs in status pages
Can you explain this, please?*) container - added support for running Docker (TM) containers on ARM, ARM64 and x86 (containers created before v7.4 must be recreated);
Progress, but you still have work to do. Memory usage and Disk usage gives: ERROR: NO ACCESS!*) webfig - fixed displaying of grahs in status pages;
What is the problem???While you are at it fix mikrotik_logo.png on WebFig. Please make background transparent and not white.
I try to use my monitor at home, thanks.It looks ugly to have a white rectangle on a grey gradient...
was this a bug regarding ospf redistribution - does somebody have more info about it?*) ospf - fixed handling of external forwarding address;
Example, please.*) capsman - added randomized range option for "reselect-interval" parameter (CLI only);
Example, please.*) capsman - added randomized range option for "reselect-interval" parameter (CLI only);
/caps-man/interface set <CAPSMAN INTERFACE NAME> channel.reselect-interval=[:rndnum 86400 172800]
*) netinstall - fixed Netinstall procedure for ARM devices;
Hi,WAP60G station-bridge (WAP60G-AP are ok as bridge-ap) causing high bandwidth (20-30Gbps) only on wlan60-1 interface and 1xcore CPU spike upon management login. 7.4.1 works fine - only a problem on 7.5
*) l3hw - fixed HW offloaded NAT;
@GuntisExample: caps-man/configuration/add channel.reselect-interval=10m..20m
It will run channel reselection at a random interval that is within the defined range.
I confirmed this on my 2115 as well. L3HW switching was enabled on the switch and NAT worked prior to 7.5. After upgrade NAT was broken until I disabled L3HW switching on the switch.Interesting, on my CCR2116 l3hw nat was working fine for me before 7.5. Post 7.5 traffic that is natted has high % drop rate so high not even a TLS session can establish. Disabling l3hw removes the packet loss behavior.Code: Select all*) l3hw - fixed HW offloaded NAT;
Similar issue on RB4011 - SFP+ 10G Copper.. had to disable/enable/change auto to hard code and back again a few times then it would work fine. (did try cold reboot as you did)Updated to 7.5 stable and have issue with sfp+. Every time I software reboot RB4011iGS+5HacQ2HnD, I keep getting "sfpplus1 fcs error on link" on sfpplus1 of CCR1016-12S-1S+. Winbox is connected to CCR1016-12S-1S+ as its the main router that everything connects to. The way to fix RB4011iGS+5HacQ2HnD is by hard rebooting with complete power loss for 10+ seconds. Doing a software reboot RB4011iGS+5HacQ2HnD locks me up again. All sfp+ ports are on default settings.
Is the netinstall necessary or it is enough only when I flash this firmware?*) netinstall - fixed Netinstall procedure for ARM devices;
I'm not @Guntis, but if is only one channel in list, is useless, but if you set two or more channels on list, the choice is made on the better on that list.@Guntis
so that one will have effect only if the channel is auto , if i specify it, then there is no point using that , am i correct?
@LonDat, @Rox169*) netinstall - fixed Netinstall procedure for ARM devices;
I confirmed this on my 2115 as well. L3HW switching was enabled on the switch and NAT worked prior to 7.5. After upgrade NAT was broken until I disabled L3HW switching on the switch.Interesting, on my CCR2116 l3hw nat was working fine for me before 7.5. Post 7.5 traffic that is natted has high % drop rate so high not even a TLS session can establish. Disabling l3hw removes the packet loss behavior.Code: Select all*) l3hw - fixed HW offloaded NAT;
VRRP issues between a setup with an x86 & CCR2004 master/slave preemptive setup on 7.5 (both devices) - both nodes showing master, packet sniffing confirms all traffic including broadcast is seen by both nodes.
I wanted to start debugging this outside production on pair lab HEXs - both on 7.5, both fresh barebones configs - ended up with a completely different VRRP problem - vrrp IP and vrrp interfaces stay in invalid state on both routers despite valid shared /32 address in the same address space as the parent interface.. was using ether3 on both lab hex routers connected directly.
So, VRRP seems a little janky on 7.5
Sorry, but I can´t agree. My RB4011iGS+5HacQ2HnD is connected via SFP+ with my CRS326-24S+2Q+ with an MikroTik DAC-Cable and regardless if I soft- or hardreboot my device the SFP+ connection came up without any issues.Similar issue on RB4011 - SFP+ 10G Copper.. had to disable/enable/change auto to hard code and back again a few times then it would work fine. (did try cold reboot as you did)Updated to 7.5 stable and have issue with sfp+. Every time I software reboot RB4011iGS+5HacQ2HnD, I keep getting "sfpplus1 fcs error on link" on sfpplus1 of CCR1016-12S-1S+. Winbox is connected to CCR1016-12S-1S+ as its the main router that everything connects to. The way to fix RB4011iGS+5HacQ2HnD is by hard rebooting with complete power loss for 10+ seconds. Doing a software reboot RB4011iGS+5HacQ2HnD locks me up again. All sfp+ ports are on default settings.
Updated to 7.5 stable and have issue with sfp+.
Similar issue on RB4011 - SFP+ 10G Copper..
I take it this was both RouterOS and Routerboard updated to 7.5?Hello. CubeG-5ac60ay with 7.5 as client = kernel failure every minute.
After downgrade to 7.4.1 = everything OK
ticket: SUP-91404
It is sad to see, that MK is not testing new "STABLE" version again after recently bricked soo many devices....2x CubeG-5ac60ad constantly rebooting every 1-3 Minutes, both upgraded from 7.4.1 to 7.5.
Neither setup was using connection tracking.
Are you using sync-connection-tracking=yes? We have identified the issue where sync-connection-tracking didn't work on HEX (and on any MIPS device); the fix will be released in the next beta.
Regarding the VRRP setup between x86 and CCR2004, please post your "/interface export" and "/ip export" configurations from both devices. I suggest creating a separate forum thread here.
This problem was introduced in the 7.5beta and reported, but it has been ignored so now it ends up in the "stable" release...Issue showing uptime and Remote ID of BGP SESSIONS after upgrading to 7.5
I have opposite situation with hEX S at 7.5: HDD and Memory available, but CPU missing from Resource Graphs and webfig gives "no access" to CPU.Progress, but you still have work to do. Memory usage and Disk usage gives: ERROR: NO ACCESS!*) webfig - fixed displaying of grahs in status pages
CPU usage is fine and interfaces.
Sorry, but I can´t agree. My RB4011iGS+5HacQ2HnD is connected via SFP+ with my CRS326-24S+2Q+ with an MikroTik DAC-Cable and regardless if I soft- or hardreboot my device the SFP+ connection came up without any issues.
Similar issue on RB4011 - SFP+ 10G Copper.. had to disable/enable/change auto to hard code and back again a few times then it would work fine. (did try cold reboot as you did)
So maybe it´s a device specific problem with your CCR or with your SFP+ GBIC.
I'm not seeing that on hap ac3 coming from 7.4.1, nor on ac3 coming from 7.5rc2 (which also was on 7.4.1 some versions before).All devices with ARM cpu's are coming up at the wrong frequency after the 7.4.1 to 7.5 upgrade. You see this in the System / RouterBOARD menu. A warning appears that the cpu is not running at the default frequency. Clicking on the "Settings" button, you see it is incorrectly set to 716MHz and needs to be manually changed back to auto.
YES. Problem is only if CubePRO is in station bridge mode. AP mode works.I take it this was both RouterOS and Routerboard updated to 7.5?Hello. CubeG-5ac60ay with 7.5 as client = kernel failure every minute.
After downgrade to 7.4.1 = everything OK
ticket: SUP-91404
Yes. I saw another topic that is pretty much the same like yours, but that was on a RB750Gr3 on RouterOS v7.1.3. -> viewtopic.php?p=954791I have opposite situation with hEX S at 7.5: HDD and Memory available, but CPU missing from Resource Graphs and webfig gives "no access" to CPU.
Progress, but you still have work to do. Memory usage and Disk usage gives: ERROR: NO ACCESS!
CPU usage is fine and interfaces.
match-subdomain was demonstrated here: viewtopic.php?t=187950#p948005how to get to :
*) dns - added "address-list" parameter for static DNS entries (CLI only);
*) dns - added "match-subdomain" option for static entries (CLI only);
I have a similar issue with a pair of wireless wire that started to get flaky after upgrading from 7.4.1 to 7.5. gonna test a downgrade with netinstall today and see2x CubeG-5ac60ad constantly rebooting every 1-3 Minutes, both upgraded from 7.4.1 to 7.5.
EDIT: The issue seems to be related to the W60G interface, once disabled, the reboots stop.
Downgraded to 7.4.1 and devices are stable again with W60G interface enabled.
My hAP ac^2 (arm) came back with "auto".All devices with ARM cpu's are coming up at the wrong frequency after the 7.4.1 to 7.5 upgrade. You see this in the System / RouterBOARD menu. A warning appears that the cpu is not running at the default frequency. Clicking on the "Settings" button, you see it is incorrectly set to 716MHz and needs to be manually changed back to auto.
MikroTik RouterOS 7.5 (c) 1999-2022 https://www.mikrotik.com/
Press F1 for help
sep/02/2022 16:13:17 system,error,critical error while running customized default configuration script: bad command name wireless (line 985 column 25)
sep/02/2022 16:13:17 system,error,critical
There is an option to retrieve the script being used at startup, I believe ?Is this really so hard to fix?
There is an option to retrieve the script being used at startup, I believe ?Is this really so hard to fix?
You should be able to see specifically what the error is about since the exact location has been mentioned ?
bad command name wireless
There is an option to retrieve the script being used at startup, I believe ?Is this really so hard to fix?
You should be able to see specifically what the error is about since the exact location has been mentioned ?
This issue was fixed some time ago in 7.5beta4 so I guess it won't happen from now on.
I know it's already a long standing one waiting for an answer :lol:My question was rather rhetorical one.
This issue was fixed some time ago in 7.5beta4 so I guess it won't happen from now on.
So when can I expect the fix to kick in? I did a couple of reboots after installing 7.5 (if not for other things to bring routerboot version up) and the message is shown every time ... my feelingnis that this fix is one of those that need to be included in several ROS releases before they're done correctly.
Perhaps. I did netinstall when first installing v7 on this device (I think it was 7.1rc2 or something) so no v6 config lingering in backgroud.I guess doing netinstall can help in these cases (to wipe old, hidden on export configurations).
How is Disk2 and Disk3 connected?CCR1009 ... upgrade from 7.4.1 to 7.5 stable
Under Winbox v3.37
Disks do not show the installed number of Disks .... attached image shows that under Files does show the proper number of disks but under Disks only 2 disks are visible
disks.GIF
Disk2 is USB and named Disk2 but as shown in screen shot as directory
Good catch Znevna …. In fact disk3 is microSD card and disk2 is microUSB …..How is Disk2 and Disk3 connected?
You only seem to have one usb device connected with one partition.
@mkxThis is really getting stale .... after upgrading Audience with wifiwave2 package from 7.4.1 to 7.5:
[...]
Is this really so hard to fix?
/system default-configuration print file=defaultconfigscripts
Code: Select all/system default-configuration print file=defaultconfigscripts
Hi !
Anyone tested allready if ovpn ist stable now with this version ?
thx, Richard
When the "get-custom-defconf" is interrupted for some reason, the "flag" get-custom-defconf runned successfully is not set, and everytime at reboot it try to run the script,Code: Select allsep/02/2022 16:13:17 system,error,critical error while running customized default configuration script: bad command name wireless (line 985 column 25) sep/02/2022 16:13:17 system,error,critical
# wait wlan3 it takes 7sec slower to load than wlan1/2 on Audience
$addCL (" :local count 0;")
$addCL (" :while ([/interface wireless find default-name=\"wlan3\"] = \"\") do={ ")
$addCL (" :if (\$count = 15) do={")
$addCL (" :log warning \"DefConf: Unable to find wlan3 interface\";")
$addCL (" /quit")
$addCL (" }")
$addCL (" :delay 1s; :set count (\$count +1);")
$addCL (" };")
# TODO: set band and ext, probably use setWlan function
$addCL (" /interface wireless {")
$addCL (" :local wl3 [find default-name=\"wlan3\"]")
$addCL (" :local wlanMac [get \$wl3 mac-address];")
$addCL (" :set ssid \"SYNC-\$[:pick \$wlanMac 9 11]\$[:pick \$wlanMac 12 14]\$[:pick \$wlanMac 15 17]\"")
$addCL (" set \$wl3 disabled=no mode=ap-bridge band=5ghz-a/n/ac ssid=\$ssid security-profile=wpsSync wps-mode=push-button")
# set channnel width 20/40/80mhz-XXXX (russia 20/40mhz-XX)
<<< LINE 983 >>> # wait wlan3 it takes 7sec slower to load than wlan1/2 on Audience
:local count 0;
<<< @mkx LINE 985 >>> :while ([/interface wireless find default-name="wlan3"] = "") do={
:if ($count = 30) do={
:log warning "DefConf: Unable to find wlan3 interface";
/quit
}
:delay 1s; :set count ($count +1);
};
<<< LINE 993 >>> :local hwInfo [/interface wireless info hw-info [.. find where default-name="wlan3"] as-value];
$addDL ("#| channel-width: 20/40mhz-XX;")
<<< LINE 995 >>> $addCL (" set \$wl3 channel-width=20/40mhz-XX")
$addCL (" };")
}
.... means the connection stays open at the mikrotik router (ovpn server) even if the client disconnect ?Hi !
Anyone tested allready if ovpn ist stable now with this version ?
thx, Richard
ovpn udp, the client disconnects and the server (mikrotik) never drops the connection, even for hours...
I'm having the same issue. Those connections were definitely offloaded (no cpu activity at high rates) before and worked fine.
I confirmed this on my 2115 as well. L3HW switching was enabled on the switch and NAT worked prior to 7.5. After upgrade NAT was broken until I disabled L3HW switching on the switch.
Before 7.5, FastTrack NAT connections could be reported as hw-offloaded despite still getting processed by the CPU. In 7.5 those are actually hw-offloaded. Maybe the problem is that the hardware cannot handle some types of connections (e.g. a tunneled connection), so those shouldn't be offloaded in the first place. Please create a support ticket, so we can investigate the problem.
yes, even with the option explicit-exit-notify 1.... means the connection stays open at the mikrotik router (ovpn server) even if the client disconnect ?
ovpn udp, the client disconnects and the server (mikrotik) never drops the connection, even for hours...
Hi,no need to quote preceding post - use "Post Reply"
Updated my ticket.Can you elaborate on that problem?
Could address-list be related to views in DNS? Different clients getting different answers?match-subdomain was demonstrated here: viewtopic.php?t=187950#p948005how to get to :
*) dns - added "address-list" parameter for static DNS entries (CLI only);
*) dns - added "match-subdomain" option for static entries (CLI only);
It's the same functionality as using a regex, but I suppose it's a little cleaner.
I still haven't seen "address-list" demonstrated.
It would be nice if there was official documentation on these features.
What about 7.4.1 ?Upgraded a CRS354-48P-4S+2Q+RM MLAG paired stack. After this weekend customer reported extreme slow network speed.
Made a return to 7.2.3 and now everything works again.
same issue CCR2216....crazy to have bug like this,..Is it me or BGP is not an important protocol to be first running correctly on V7 ?This problem was introduced in the 7.5beta and reported, but it has been ignored so now it ends up in the "stable" release...Issue showing uptime and Remote ID of BGP SESSIONS after upgrading to 7.5
hope this gets sorted soonsame issue CCR2216....crazy to have bug like this,..Is it me or BGP is not an important protocol to be first running correctly on V7 ?
This problem was introduced in the 7.5beta and reported, but it has been ignored so now it ends up in the "stable" release...
No, it adds resolved addresses to address list. AFAIK there's still no official documentation, so check this: viewtopic.php?p=952360#p952360Could address-list be related to views in DNS? Different clients getting different answers?
Hi there. I will try hAP-AC3 with pihole or AdGuard. This router is just for a small home network (really small network :D).Hi,no need to quote preceding post - use "Post Reply"
im just wondering which container app will you try? Hap AC3 has limited cpu power..
With manual package upload and reboot it works just fine. There was no problem with version change but since this is spare/test router I didn't expect problems.This has happened in the past because of a change in naming convention and it was specifically on powerpc if my memory serves me well (why on earth they decided to do that eludes me. At least they could have foresee a shortcut-link to the old naming for these cases :rolleyes: ).
Since you move from 6.xx to 7.xx this might very well be the problem here.
Can you update manually ?
Subsequent versions should go fine then.
/container/set 0 start-on-boot=yes
i had a similar problem; streaming and file trasnfer in LAN stopped suddenly, i resolved downgrade to 7.4.1 all CHR, Hex POE, HAP AC, then i reinstalled 7.5 starting from CHR (no problem) then Hex POE (no problem) then HAP AC (no problem)Is anyone else having problems with Capsman? With 7.5 I had to give up using Capsman, as the speed with hap ac2 access points went down to 30 Mbps... :/ The same devices without Capsman are easily reaching over 250 Mps... Capsman is installed on the main router, RB4011, I use vlans, so I do not see a reason for such a drastic drop in wireless speed.
Too many variables? Capsman ON = low speed. Capsman off and individual access points activated on hap a2 = full speed. The location of Capsman (server) does not seem to be relevant (I've tried 2 routers). When Capsman is on, the traffic seems to go via CPU on hAP (load goes up to ca. 50%). When it is off, traffic goes via vlans and CPU remains below 10%. There are no firewall/NAT/mange rules activated, no other tunnels on hAP ac2 devices.Too many other variables which might be responsible for that speed drop instead of blaming capsman.
@holvoetn wrote
Best to start a separate thread and post your config(s) so it can be inspected.
I have tested it and it works for me. At home (server) 2011UiAS-2HnD with 7.5 installed. At work, as a separate router (only for this test , all other traffic is routed trough other routers) RB952Ui-5ac2nD - hAP ac lite with ROS 7.5 as a client. It all works well. No disconnects observed.Openvpn mikrotik-to-mirkotik is still not tested before stable releases and is not working, since 7.4 viewtopic.php?t=187760#p946943
Key encryption renewal process which caused periodic session disconnects. as the change log clearly said. Although still, one problem exists, rarely does a client get disconnected for whatever reason But, the server shows the connection active.No disconnects were observed.
Enabled of course. That's why I mentioned this problem in 7.5 thread, I've been using Capsman for a while..With local forwarding activated or disabled? If you want speed you need to use local forwarding in Capsman.
@Znevna is rightAccording the help page
https://help.mikrotik.com/docs/display/ROS/Container
while i get bad commandCode: Select all/container/set 0 start-on-boot=yes
A simple google search will do more than enough.ipsec,error unable to get local issuer certificate(20) at depth:0 cert:(this is my remote certificate name)
It sucks that the help.mikrotik.com site does not mention version numbers or has different "views" depending on version numbers...
Thanks for the nothing because there's no answer these websites to my problems! My certificates just work fine...A simple google search will do more than enough.ipsec,error unable to get local issuer certificate(20) at depth:0 cert:(this is my remote certificate name)
mikrotik ipsec,error unable to get local issuer certificate(20) at depth:0 cert site=https://forum.mikrotik.com
viewtopic.php?t=162145
viewtopic.php?t=145608
nice s–t answer...Thanks for the nothing
You're welcome anyway. :)Thanks for the nothing because there's no answer these websites to my problems! My certificates just work fine...
I had a feeling this might be related to ROS7.5, I'm experiencing the same issue: viewtopic.php?p=955390Hy everyone!
I have a problem with Router OS 7.5 on my LTAP mini (RB912r-2ND-ltn).
My Ipsec connection dose not work while I upgrade on 7.4.1 to 7.5 OS.
The firmware type is qca9531L, current firmware is 7.5.
Anybody knows what a problem is?
I see my log where I find that massage
ipsec,error unable to get local issuer certificate(20) at depth:0 cert:(this is my remote certificate name)
thanks
this might be related to ROS7.5
mikrotik system,error,critical kernel failure in previous boot
Interesting. Are you using NordVPN? Did you load any certificates other than the Root CA certificate?2022-09-09_12-17-47.jpgthis might be related to ROS7.5
/export show-sensitive
/user> export show-sensitive
/user
add address=192.168.10.0/24 comment="system default user" disabled=yes group=full name=admin
add group=full name=demo
add address=192.168.10.50/32 comment="Use to get remote SSH information." group=full name=admin-ssh
/ip/ipsec/identity> export show-sensitive
/ip ipsec identity
add generate-policy=port-override peer=peer1 remote-id=ignore secret=Complicated_Password
/ip/ipsec/identity> export
/ip ipsec identity
add generate-policy=port-override peer=peer1 remote-id=ignore
What about 7.4.1 ?Upgraded a CRS354-48P-4S+2Q+RM MLAG paired stack. After this weekend customer reported extreme slow network speed.
Made a return to 7.2.3 and now everything works again.
That is interesting - has the default changed with introduction of v7, because at least as far as i remember all ipq4000 devices were defaulted to this same 716 MHz before and same is mentioned in the hardware specifications as well (yes I know that "auto" setting was there in v6 for quite some time...)?All devices with ARM cpu's are coming up at the wrong frequency after the 7.4.1 to 7.5 upgrade. You see this in the System / RouterBOARD menu. A warning appears that the cpu is not running at the default frequency. Clicking on the "Settings" button, you see it is incorrectly set to 716MHz and needs to be manually changed back to auto.
Before the CPU was running at a fixed frequency: 716MHz. This is why it's set to 716MHz after upgrade. Problem is: RoS now wants to run with "auto", and shows this complain when set to 716MHz.That is interesting - has the default changed with introduction of v7, because at least as far as i remember all ipq4000 devices were defaulted to this same 716 MHz before and same is mentioned in the hardware specifications as well (yes I know that "auto" setting was there in v6 for quite some time...)?
Can be simply the LTE operator that do not want one user to stay linked forever...@Chiara ...
He wrote that he upgraded from 6.49.6 to 7.5. But he did not tell if before it was the same thing. Hopefully he watched the logging before he upgraded.Wind3 in Italy? They reset every connection after 4 hours, you can't avoid this.
Probably the providers are playing with such a parameter to try to solve problems in their network, e.g. overloading of particular cells.
Normally the clients are behind CGNAT so running services on them does not make much sense anyway.another one is making sure clients (at least most of them) don't run service off their mobile subscription plan (with its dumping price).
Be carefull on 7.4.1 I had problem on ROS 7.4 few days ago....I upgraded especially because this fix *) w60g - improved interface initialization after being inactive for a while;Hi,
yesterday first problem with 7.5stable.
On RBLHGG-60ad units, boot error, kernel panic.
Reverting back to 7.4.1 solved that problem.
Be careful with upgrade on these units guys.
Is this version (7.5) already fixed ping issue (Cannot ping to everywhere after run for a while)?ping - improved service stability;
Yes.Is this version (7.5) already fixed ping issue (Cannot ping to everywhere after run for a while)?
You may need to enable an extra column in the display to see that.the recursive work, but no recursive via words on /ip route menu
/ip route
add check-gateway=ping disabled=no distance=1 dst-address=10.1.2.0/30 gateway=10.1.1.2
add check-gateway=ping disabled=no distance=1 dst-address=10.1.3.0/30 gateway=10.1.2.2 target-scope=31
add check-gateway=ping disabled=no distance=1 dst-address=192.168.2.0/29 gateway=10.1.1.2
add check-gateway=ping disabled=no distance=1 dst-address=192.168.3.0/29 gateway=10.1.2.2 target-scope=31
add check-gateway=ping disabled=no distance=1 dst-address=192.168.4.0/29 gateway=10.1.3.2 target-scope=32
add disabled=no distance=2 dst-address=10.1.2.0/30 gateway=10.1.4.1
add disabled=no distance=2 dst-address=10.1.3.0/30 gateway=10.1.4.1
add disabled=no distance=2 dst-address=192.168.2.0/29 gateway=10.1.4.1
add disabled=no distance=2 dst-address=192.168.3.0/29 gateway=10.1.4.1
add disabled=no distance=2 dst-address=192.168.4.0/29 gateway=10.1.4.1
[admin@R1] /ip/route> print detail
Flags: D - dynamic; X - disabled, I - inactive, A - active; c - connect, s - static, r - rip, b - bgp, o - ospf, d - dhcp, v - vpn, m - modem, y - copy; H - hw-offloaded; + - ecmp
DAd dst-address=0.0.0.0/0 routing-table=main pref-src="" gateway=10.31.31.1 immediate-gw=10.31.31.1%ether1 distance=1 scope=30 target-scope=10 vrf-interface=ether1 suppress-hw-offload=no
DAc dst-address=10.1.1.0/30 routing-table=main gateway=ether3 immediate-gw=ether3 distance=0 scope=10 suppress-hw-offload=no local-address=10.1.1.1%ether3
0 s dst-address=10.1.2.0/30 routing-table=main pref-src="" gateway=10.1.4.1 immediate-gw=10.1.4.1%ether4 distance=2 scope=30 target-scope=10 suppress-hw-offload=no
1 As dst-address=10.1.2.0/30 routing-table=main pref-src="" gateway=10.1.1.2 immediate-gw=10.1.1.2%ether3 check-gateway=ping distance=1 scope=30 target-scope=10 suppress-hw-offload=no
2 s dst-address=10.1.3.0/30 routing-table=main pref-src="" gateway=10.1.4.1 immediate-gw=10.1.4.1%ether4 distance=2 scope=30 target-scope=10 suppress-hw-offload=no
3 As dst-address=10.1.3.0/30 routing-table=main pref-src="" gateway=10.1.2.2 immediate-gw=10.1.1.2%ether3 check-gateway=ping distance=1 scope=30 target-scope=31 suppress-hw-offload=no
DAc dst-address=10.1.4.0/30 routing-table=main gateway=ether4 immediate-gw=ether4 distance=0 scope=10 suppress-hw-offload=no local-address=10.1.4.2%ether4
DAc dst-address=10.31.31.0/24 routing-table=main gateway=ether1 immediate-gw=ether1 distance=0 scope=10 suppress-hw-offload=no local-address=10.31.31.230%ether1
DAc dst-address=192.168.1.0/29 routing-table=main gateway=ether2 immediate-gw=ether2 distance=0 scope=10 suppress-hw-offload=no local-address=192.168.1.1%ether2
4 s dst-address=192.168.2.0/29 routing-table=main pref-src="" gateway=10.1.4.1 immediate-gw=10.1.4.1%ether4 distance=2 scope=30 target-scope=10 suppress-hw-offload=no
5 As dst-address=192.168.2.0/29 routing-table=main pref-src="" gateway=10.1.1.2 immediate-gw=10.1.1.2%ether3 check-gateway=ping distance=1 scope=30 target-scope=10 suppress-hw-offload=no
6 s dst-address=192.168.3.0/29 routing-table=main pref-src="" gateway=10.1.4.1 immediate-gw=10.1.4.1%ether4 distance=2 scope=30 target-scope=10 suppress-hw-offload=no
7 As dst-address=192.168.3.0/29 routing-table=main pref-src="" gateway=10.1.2.2 immediate-gw=10.1.1.2%ether3 check-gateway=ping distance=1 scope=30 target-scope=31 suppress-hw-offload=no
8 s dst-address=192.168.4.0/29 routing-table=main pref-src="" gateway=10.1.4.1 immediate-gw=10.1.4.1%ether4 distance=2 scope=30 target-scope=10 suppress-hw-offload=no
9 As dst-address=192.168.4.0/29 routing-table=main pref-src="" gateway=10.1.3.2 immediate-gw=10.1.1.2%ether3 check-gateway=ping distance=1 scope=30 target-scope=32 suppress-hw-offload=no
v7 introduces a new menu /routing route, which shows all address family routes as well as all filtered routes with all possible route attributes. /ip route and /ipv6 route menus are used to add static routes and for simplicity show only basic route attributes.
For more in-depth information on routing see this article (IP Routing).
That is all correct. There are no unreachable or prohibited routes anymore, and when you had them they are converted to blackhole.normally we can see recursive via both on gui and cli. i can not see it on v7.x; check on target-scope>30
also, no-more unreachable (U) and or prohibit (P) options for routing, thus no (B) flag shown on blackhole entries.
-r resets the configuration upon reinstallation procedure, optional
The inconsistence continues beyond that ... UI is completely different.@mkx: hmmm ... missed that. Good to know !
But then it is inconsistent with the Windows version ...
/log print
18:50:00 system,error,critical router was rebooted without proper shutdown, pro
bably kernel failure
18:50:01 system,error,critical kernel failure in previous boot
Regular update or netinstall ?Took a factory Fresh RB3011 and Updated it to 7.5.
moderator note: why do you quote whole preceding post? Use "Post Reply" instead.
@gotsprings ....If we need to start doing netinstalls before sending them out in the field... I wanna see a big f--king warning on the top of EVERYTHING from the Mikrotik domain.
14:53:18 container,info,debug importing remote image: routeros-container/routeros-container, tag: latest
14:53:18 system,info item added by admin
14:53:18 container,info,debug failed to parse www-auth
14:53:18 container,info,debug was unable to import, container 4558db4a-cc1f-4f92-825c-c1c1f94fbb86
Thanks, it's true in this case.This is because your DSCP is different between the two directions
This is default settings in ros7, I not enabled that by myself.and you selected a matching with DSCP (even when it is "any").
Hi mozerd, can you confirm its easy to implement 2FA with tailscale, vice wireguard which seems to be a bit of a challenge.With Tailscale [WireGuard management system] you can have your Cake and Eat it and performance is wonderful. Mastering Tailscale is no big deal exploiting Tailscale Subnet routers and traffic relay nodes provides a great deal of power in your hands.
Greetings anavHi mozerd, can you confirm its easy to implement 2FA with tailscale, vice wireguard which seems to be a bit of a challenge.
[admin@Mikrotik] > tool/ping arp-ping=yes interface=bridge-lan count=5 192.168.0.1
SEQ HOST SIZE TTL TIME STATUS
0 ping failed
1 ping failed
2 ping failed
3 ping failed
4 ping failed
sent=5 received=0 packet-loss=100%
Yes... I have the same problem with this, is there any solution?بدون عنوان.png
No session time left
No limit bytes total
How to fix that
It is not like all activity w.r.t. BGP is now spread over all cores. That would require a multithreaded implementation of the BGP protocol, which is apparently hard to do.Not sure if what I'm seeing is correct but I thought Ros7 utilizes all cores more efficiently.
The attached image shows only 1 CPU being used on a 2216 that's only doing BGP and nothing else.
From which version?After updating to 7.5, when I want to add a new entry to QoS (simple), I noticed that it causes an interruption of the internet connection for the given subnet for which I am setting it up. Someone had that too? What is the answer?
I would like to add that the previously added entries work, and the new ones do not.
I updated one by one as "stable" appeared, ie from the previous one, ie 7.4.1. I admit, I don't know if the problem has arisen now. Maybe it was already during an earlier upgrade. I am unable to establish this.From which version?After updating to 7.5, when I want to add a new entry to QoS (simple), I noticed that it causes an interruption of the internet connection for the given subnet for which I am setting it up. Someone had that too? What is the answer?
I would like to add that the previously added entries work, and the new ones do not.
beforeAlso, please show a /queue/simple/export made both before and after you have added the new entry.
OMG, you are right, and I thought I tried it in the 70M / 70M configuration before and it didn't work ... ehhh ... well, it actually works.70 BYTES is not a lot.
Should be 70M/70M, no ?
Thanks for explanation. Regards :)Up to latest v6 releases the principle was that every release (e.g. 6.x) was kind of a feature freeze. Then the minor releases (e.g. 6.x.y) were more or less bug fixes. This kind of release cycle is not prominent in v7 yet as the whole v7 is still largely work in progress. I expect that with some 7.10 things will slowly converge and we'll see more "bug fix only" releases from that point forward.
And I really don't see need for major version inflation (e.g. v8 after 7.7). We've had v6 around pretty long time (I'm not around long enough to remember v5) while there were quite a few major changes in the v6 series (e.g. brand new wireless driver which is proprietary now, bridge with VLAN functionality, etc.).
I'm still hoping that someone at MikroTik has a list of features of v6 that are no longer working in v7, and assigns some priority to fixing those or putting up a list of features in the documentation that "are gone and will not come back".Up to latest v6 releases the principle was that every release (e.g. 6.x) was kind of a feature freeze. Then the minor releases (e.g. 6.x.y) were more or less bug fixes. This kind of release cycle is not prominent in v7 yet as the whole v7 is still largely work in progress. I expect that with some 7.10 things will slowly converge and we'll see more "bug fix only" releases from that point forward.