I have a similar issue with a crr, If the router is off for any length of time it appears hang at boot. If you leave it for almost a minute or more it will boot. I have the UPS package installed, but the UPS is unhooked because it cause's other issues. Running latest 6.7I had an interesting experience with a CCR yesterday.
Went to hook up a UPS (APC SU3000RMXL) to the serial console. Uploaded the UPS package and rebooted the CCR to install it.
The CCR got stuck with "routerboot configuration" displayed on the screen (first useful thing I've seen with that dumb little LCD).
I waited and waited... after a few minutes of no activity, I pulled the plug and tried again. Still stuck on "routerboot configuration," so I hooked up a serial console cable, cycled the power again, and it booted right up!
The UPS package did NOT install, there were no log messages about why it would fail. I tried again, and again, the CCR stuck at "routerboot configuration" with the UPS plugged in, and never would install the UPS package.
Any ideas?
-Troy
It does this without the UPS plugged inIt looks scarry at first while the router is not booting.
Here is the formal answer.....
This is expected, as the unit receives information via console, and perceives
this as the "press any key" message at startup, and then enters RouterBOOT menu.
To change this, enter RouterBOOT setup, and change the "any key" behavior in the
settings.
/system console disable numbers=0
We do not wish to "reset" the router. We wish to force it to reload RouterOS packages from your update site.Doesn't "system reset" do what you asked? Or you meant something like upgrade+reset with one command? You can do that already. Upload the packages, and issue the "system reset" command, it will reboot, reset and upgrade also.It would be nice if the /system package upgrade in Winbox gave you a choice to "force" upgrade or "reload RoS" so you can overwrite all the test versions easily when the full
release comes out
Hi Alexander,@krisjanis
If you could update us with these tickets about what you are seeing and giving us things to try that would be useful.
I can't test with one right now but we could ask Stuart (distributor) to set it up with our config and test it out.
Can you let us know what you are seeing? do your ones just auto neg at 1G immediately? do you have to lock them to 1G? does it work immediately when you lock it? does it need one or more reboots?
We are happy to help with sorting out these problems (need to buy me a personal CCR1036-8G-2S+)
A
could you please contact support with more details about your problem, so we can figure out what is happening? thanksIt does this without the UPS plugged in
Happy new year mateHi Alexander,@krisjanis
If you could update us with these tickets about what you are seeing and giving us things to try that would be useful.
I can't test with one right now but we could ask Stuart (distributor) to set it up with our config and test it out.
Can you let us know what you are seeing? do your ones just auto neg at 1G immediately? do you have to lock them to 1G? does it work immediately when you lock it? does it need one or more reboots?
We are happy to help with sorting out these problems (need to buy me a personal CCR1036-8G-2S+)
A
Let me know if you need anything
Happy New year by the way
Regards,
Stuart
I'm gathering all interfaces bps, cpu, ram usage without any performance degradationIs anyone successfully monitoring a CCR with SNMP ?
We have been holding back on this on our production units as I recall there were wide spread issues with this causing performance issues previously.
We have several CCR1036 and RB1100AHx2. We monitor those routers with SNMP without performance issue. But we couldn`t see CPU utilization on SolarWinds Orion NPM.Is anyone successfully monitoring a CCR with SNMP ?
We have been holding back on this on our production units as I recall there were wide spread issues with this causing performance issues previously.
Thanks otgooneoWe have several CCR1036 and RB1100AHx2. We monitor those routers with SNMP without performance issue. But we couldn`t see CPU utilization on SolarWinds Orion NPM.Is anyone successfully monitoring a CCR with SNMP ?
We have been holding back on this on our production units as I recall there were wide spread issues with this causing performance issues previously.
I'm using It on my CCR in 6.8RC1, Full BGP with 3 x 470K prefixes and 20 private peering, with PRTG for CPU and interface stats.Thanks otgooneoWe have several CCR1036 and RB1100AHx2. We monitor those routers with SNMP without performance issue. But we couldn`t see CPU utilization on SolarWinds Orion NPM.Is anyone successfully monitoring a CCR with SNMP ?
We have been holding back on this on our production units as I recall there were wide spread issues with this causing performance issues previously.
I will give it a try on some of our less important routers.
Thats great to hear.
I'm using It on my CCR in 6.8RC1, Full BGP with 3 x 470K prefixes and 20 private peering, with PRTG for CPU and interface stats.
No issue found.
/some-missing-stuff print
This is my experience:Sharing my experience:
Upgrading My CCR to Ver 6.8RC1 of 19/12/2013
all seems runing ok, BGP, OSPF ...
loaded 3 x BGP upstream provider with 470000 prefixes each in 2 minutes 11 secondes...
http://www.mikrotik.com/download/share/ ... 6.8rc1.npk - this is file for CCR series.Hi guys!
where can i download a Ros 6.8rc1? i need to test it with ZTE MF 823 in an older version of Ros MF823 is not supported
What's new in 6.8rc1 (2014-Jan-23 16:45):
*) userman - improve startup time;
*) sstp client - support server name verification from certificate;
*) wireless - improved 11n and nv2 stability;
*) dhcp client - support interfaces in bridge;
*) dhcp - parse decimal strings and IP addreses in options value;
*) bgp - don't show community 'internet' in BGP advertisements;
*) ipsec - enable hardware acceleration for aes-cbc + md5|sha1|sha256 aead on tilera cpus;
*) ospf - fixed checksum calculation for OSPFv3 AS-external-LSAs;
*) default configuration - changed dhcp server lease time to 10 minutes;
*) fixed port isolation on CRSs (bug introduced in v6.6);
*) smb - added support for SMB 2.002
*) timezone information updated;
*) ppp - fixed ppp bridging (did not work since v6.6);
*) improved speed of PPP, PPPoE, PPTP & L2TP on multicore routers;
*) address-list - fix crash when adding two identical address list entries (not allowed any more);
*) fixed multicast forwarding on CCRs;
*) firewall - improved address-type matcher, and added it for ipv6 aswell;
We have got 9 Days up time with 21 BGP Peers connected. with around 520,000 Prefix's (IPv4 / IPv6) on CCR36-12-4S <3% CPU using 1G of Ram
Im having some issues with local pref and MED settings in v6 even after adding it to the Filters it appears to take no notice. This is a pain because you have no control which peer the traffic goes over.
Its defo looking like the software is getting more reliable
Stewart
I have seen it before. there is an issue with with 100Mbit half duplex. one of my CCR had rebooted by a watchdog while one port was set to 100Mb half. maybe its related to a bridge on this port.For the first time, i got problems using CCR. This is my first CCR, not using sfp, so it might be related to my problem.
I changed a RB1000 to a CCR. The purpus of the router, is to make VPLS tunnels from a IC With another ISP. Setup is easy : ether1 -Cisco(l2 link in to site) ether2 - misc mikrotik radioes ether3 -Huawei (IC to other ISP) VPLS Tunnelt do sites in a MPLS Cloud ( all working)
After changed, confed (mainly just put backup bac, and confirm config) The router started to not respons over ether1. Nither ether 4 - Laptop could find the router. After som reasearch, it seems like ether1 Connected to cisco, 100mb/half Duplex. I Called fiber providere, and asked to check port, and it was set to auto. We tried to set to 100 full in both sides, get no better results. There was a lot of CRC errors. We then tried to change port in CCR and Cisco, and change cable. We got same results here. The Device get unresponsive after some secound, and we hadf' to reebot to recconnect.
After this we decided to try a gigabit Interface to link. We used a copper SFP, and linked at 1G speed. Sucess. All went ok. So its seems like 100mb/s and cisco, would not Connect correctly.
After all this was ok, i started to make the VPLS tunnel, and put them back in bridge connecting to other ISP ( huawei) . Now router compleatly freeze , and was not able to even boot by LCD. Had to take Power out. After some Research, woundring about maybe loops etc, since it freezes as fast as router was puted in bridge, we figured out that the huawei also had Connected 100mb/half Duplex. All this using ros 6.7. I decided to try 6.6, and downgraded to 6.6 (as long as the eternet to huawei was not in bridge, all was ok). After the downgrade, i started to se a really bad portflap in all ports. I think this migh be the problem. Once every 20-30 second, the Connected ports og to no link - link - no link link. Now i did not loose winbox to router. after a lot of troble, i desided to change back to the rb1000. I put it in rack, Powered up, and wolla. All have went ok since this.
There is som major problem to Ethernet in ros 6.x on tilera. I dont see this at the PowerPC ( Rb 1000)
We have got 9 Days up time with 21 BGP Peers connected. with around 520,000 Prefix's (IPv4 / IPv6) on CCR36-12-4S <3% CPU using 1G of Ram
Im having some issues with local pref and MED settings in v6 even after adding it to the Filters it appears to take no notice. This is a pain because you have no control which peer the traffic goes over.
Its defo looking like the software is getting more reliable
Stewart
I can confirm problems regarding to local pref and MED setting.
http://forum.mikrotik.com/viewtopic.php?f=14&t=80722 Might be related to this.
For the first time, i got problems using CCR. This is my first CCR, not using sfp, so it might be related to my problem.
I changed a RB1000 to a CCR. The purpus of the router, is to make VPLS tunnels from a IC With another ISP. Setup is easy : ether1 -Cisco(l2 link in to site) ether2 - misc mikrotik radioes ether3 -Huawei (IC to other ISP) VPLS Tunnelt do sites in a MPLS Cloud ( all working)
After changed, confed (mainly just put backup bac, and confirm config) The router started to not respons over ether1. Nither ether 4 - Laptop could find the router. After som reasearch, it seems like ether1 Connected to cisco, 100mb/half Duplex. I Called fiber providere, and asked to check port, and it was set to auto. We tried to set to 100 full in both sides, get no better results. There was a lot of CRC errors. We then tried to change port in CCR and Cisco, and change cable. We got same results here. The Device get unresponsive after some secound, and we hadf' to reebot to recconnect.
After this we decided to try a gigabit Interface to link. We used a copper SFP, and linked at 1G speed. Sucess. All went ok. So its seems like 100mb/s and cisco, would not Connect correctly.
After all this was ok, i started to make the VPLS tunnel, and put them back in bridge connecting to other ISP ( huawei) . Now router compleatly freeze , and was not able to even boot by LCD. Had to take Power out. After some Research, woundring about maybe loops etc, since it freezes as fast as router was puted in bridge, we figured out that the huawei also had Connected 100mb/half Duplex. All this using ros 6.7. I decided to try 6.6, and downgraded to 6.6 (as long as the eternet to huawei was not in bridge, all was ok). After the downgrade, i started to se a really bad portflap in all ports. I think this migh be the problem. Once every 20-30 second, the Connected ports og to no link - link - no link link. Now i did not loose winbox to router. after a lot of troble, i desided to change back to the rb1000. I put it in rack, Powered up, and wolla. All have went ok since this.
There is som major problem to Ethernet in ros 6.x on tilera. I dont see this at the PowerPC ( Rb 1000)
You should try to reinstall this CCR with Netinstall and make sure RouterBoot firmware is upgraded to v3.10 and report this to MikroTik support with supout.rif file.For the first time, i got problems using CCR. This is my first CCR, not using sfp, so it might be related to my problem.
I changed a RB1000 to a CCR. The purpus of the router, is to make VPLS tunnels from a IC With another ISP. Setup is easy : ether1 -Cisco(l2 link in to site) ether2 - misc mikrotik radioes ether3 -Huawei (IC to other ISP) VPLS Tunnelt do sites in a MPLS Cloud ( all working)
After changed, confed (mainly just put backup bac, and confirm config) The router started to not respons over ether1. Nither ether 4 - Laptop could find the router. After som reasearch, it seems like ether1 Connected to cisco, 100mb/half Duplex. I Called fiber providere, and asked to check port, and it was set to auto. We tried to set to 100 full in both sides, get no better results. There was a lot of CRC errors. We then tried to change port in CCR and Cisco, and change cable. We got same results here. The Device get unresponsive after some secound, and we hadf' to reebot to recconnect.
After this we decided to try a gigabit Interface to link. We used a copper SFP, and linked at 1G speed. Sucess. All went ok. So its seems like 100mb/s and cisco, would not Connect correctly.
After all this was ok, i started to make the VPLS tunnel, and put them back in bridge connecting to other ISP ( huawei) . Now router compleatly freeze , and was not able to even boot by LCD. Had to take Power out. After some Research, woundring about maybe loops etc, since it freezes as fast as router was puted in bridge, we figured out that the huawei also had Connected 100mb/half Duplex. All this using ros 6.7. I decided to try 6.6, and downgraded to 6.6 (as long as the eternet to huawei was not in bridge, all was ok). After the downgrade, i started to se a really bad portflap in all ports. I think this migh be the problem. Once every 20-30 second, the Connected ports og to no link - link - no link link. Now i did not loose winbox to router. after a lot of troble, i desided to change back to the rb1000. I put it in rack, Powered up, and wolla. All have went ok since this.
There is som major problem to Ethernet in ros 6.x on tilera. I dont see this at the PowerPC ( Rb 1000)
som more investigations done. It seems like CCR will get CRC error on a port as harware fault and would reeboot if watchdog is enabled. when Ethernet is set to auto, connecting to cisco (With a 10/100 port), i always get 100 half, and CRC error. No problem just enabeling this. but as once as the port get traffic, and count CRC error, the watchdog steps in, and boot the router.
You should try to reinstall this CCR with Netinstall and make sure RouterBoot firmware is upgraded to v3.10 and report this to MikroTik support with supout.rif file.For the first time, i got problems using CCR. This is my first CCR, not using sfp, so it might be related to my problem.
I changed a RB1000 to a CCR. The purpus of the router, is to make VPLS tunnels from a IC With another ISP. Setup is easy : ether1 -Cisco(l2 link in to site) ether2 - misc mikrotik radioes ether3 -Huawei (IC to other ISP) VPLS Tunnelt do sites in a MPLS Cloud ( all working)
After changed, confed (mainly just put backup bac, and confirm config) The router started to not respons over ether1. Nither ether 4 - Laptop could find the router. After som reasearch, it seems like ether1 Connected to cisco, 100mb/half Duplex. I Called fiber providere, and asked to check port, and it was set to auto. We tried to set to 100 full in both sides, get no better results. There was a lot of CRC errors. We then tried to change port in CCR and Cisco, and change cable. We got same results here. The Device get unresponsive after some secound, and we hadf' to reebot to recconnect.
After this we decided to try a gigabit Interface to link. We used a copper SFP, and linked at 1G speed. Sucess. All went ok. So its seems like 100mb/s and cisco, would not Connect correctly.
After all this was ok, i started to make the VPLS tunnel, and put them back in bridge connecting to other ISP ( huawei) . Now router compleatly freeze , and was not able to even boot by LCD. Had to take Power out. After some Research, woundring about maybe loops etc, since it freezes as fast as router was puted in bridge, we figured out that the huawei also had Connected 100mb/half Duplex. All this using ros 6.7. I decided to try 6.6, and downgraded to 6.6 (as long as the eternet to huawei was not in bridge, all was ok). After the downgrade, i started to se a really bad portflap in all ports. I think this migh be the problem. Once every 20-30 second, the Connected ports og to no link - link - no link link. Now i did not loose winbox to router. after a lot of troble, i desided to change back to the rb1000. I put it in rack, Powered up, and wolla. All have went ok since this.
There is som major problem to Ethernet in ros 6.x on tilera. I dont see this at the PowerPC ( Rb 1000)
som more investigations done. It seems like CCR will get CRC error on a port as harware fault and would reeboot if watchdog is enabled. when Ethernet is set to auto, connecting to cisco (With a 10/100 port), i always get 100 half, and CRC error. No problem just enabeling this. but as once as the port get traffic, and count CRC error, the watchdog steps in, and boot the router.
/interface bridge add l2mtu=1500 name=Internett add l2mtu=1525 name=bridgeNN add name=loopback /interface ethernet set [ find default-name=sfp1 ] l2mtu=3000 /interface vpls add disabled=no l2mtu=1500 mac-address=02:EA:1A:14:08:78 name="Halden Dyrendal" remote-peer=172.31.0.163 vpls-id=172.31.0.5:5 add advertised-l2mtu=1525 disabled=no l2mtu=1525 mac-address=02:5C:3A:58:9F:A2 mtu=1510 name="MPLS Grepperod NN" remote-peer=172.31.0.19 vpls-id=172.31.0.19:20 add advertised-l2mtu=1525 disabled=no l2mtu=1525 mac-address=02:BC:14:78:A7:A5 mtu=1510 name="VPLS Bjornasen NN" remote-peer=172.31.0.100 vpls-id=172.31.0.5:105 add advertised-l2mtu=1525 disabled=no l2mtu=1525 mac-address=02:89:08:BB:7C:E6 mtu=1510 name="VPLS Julsrud NN" remote-peer=172.31.0.41 vpls-id=172.31.0.5:41 add advertised-l2mtu=1525 disabled=no l2mtu=1525 mac-address=02:C4:D1:C9:27:86 mtu=1510 name="VPLS RadeVann NN" remote-peer=172.31.0.14 vpls-id=172.31.0.14:1500 add advertised-l2mtu=1525 disabled=no l2mtu=1525 mac-address=02:CA:D1:FC:D5:C3 mtu=1510 name="VPLS Tomb NN" remote-peer=172.31.0.52 vpls-id=172.31.0.52:53 /ip ipsec proposal set [ find default=yes ] enc-algorithms=3des /port set 0 name=serial0 set 1 name=serial1 /routing bgp instance set default as=5 confederation=31018 confederation-peers=1-1000 router-id=172.31.0.5 /routing ospf instance set [ find default=yes ] redistribute-connected=as-type-1 redistribute-static=as-type-1 router-id=172.31.0.5 /system logging action set 0 memory-lines=100 set 1 disk-lines-per-file=100 /interface bridge port add bridge=Internett interface="Halden Dyrendal" add bridge=bridgeNN horizon=1 interface="VPLS Bjornasen NN" add bridge=bridgeNN horizon=1 interface="MPLS Grepperod NN" add bridge=bridgeNN horizon=1 interface="VPLS Tomb NN" add bridge=bridgeNN horizon=1 interface="VPLS RadeVann NN" add bridge=bridgeNN horizon=1 interface="VPLS Julsrud NN" add bridge=bridgeNN interface=ether2 /ip address add address=172.17.76.26/29 interface=sfp1 network=172.17.76.24 add address=172.31.0.5/32 interface=loopback network=172.31.0.5 add address=172.17.5.1/29 interface=ether1 network=172.17.5.0 add address=172.17.5.17/29 interface=ether1 network=172.17.5.16 add address=172.17.5.9/29 interface=ether1 network=172.17.5.8 /ip route vrf add export-route-targets=0.0.0.0:0 import-route-targets=0.0.0.0:0 route-distinguisher="(unknown)" routing-mark=vrf.internet /lcd interface set sfp1 interface=sfp1 set sfp2 interface=sfp2 set sfp3 interface=sfp3 set sfp4 interface=sfp4 set ether1 interface=ether1 set ether2 interface=ether2 set ether3 interface=ether3 set ether4 interface=ether4 set ether5 interface=ether5 set ether6 interface=ether6 set ether7 interface=ether7 set ether8 interface=ether8 set ether9 interface=ether9 set ether10 interface=ether10 set ether11 interface=ether11 set ether12 interface=ether12 /lcd interface pages set 0 interfaces=sfp1,sfp2,sfp3,sfp4,ether1,ether2,ether3,ether4,ether5,ether6,ether7,ether8 /mpls set propagate-ttl=no /mpls interface set [ find default=yes ] mpls-mtu=1590 /mpls ldp set enabled=yes lsr-id=172.31.0.5 transport-address=172.31.0.5 /mpls ldp interface add interface=sfp1 /routing bgp instance vrf add redistribute-connected=yes redistribute-static=yes routing-mark=vrf.internet /routing bgp peer add address-families=l2vpn-cisco,vpnv4 default-originate=if-installed multihop=yes name=Oslo remote-address=172.31.1.76 remote-as=376 tcp-md5-key=eb5296a05aa9fc01704aa4fb6aXXXXXX ttl=default update-source=loopback /routing ospf interface add authentication=md5 authentication-key=OSPF96a05aXXXXXX interface=sfp1 network-type=point-to-point /routing ospf network add area=backbone network=172.17.76.24/29 /snmp set enabled=yes trap-community=public /system identity set name="MPLS Sagahuset" /system logging add topics=mpls,debug /system note set note="\ \n YES ============================= NO\ \n +-----------|| Does the Darn Thing work\? ||-----------+\ \n | ============================= |\ \n V V\ \n +----------+ +---------+ +---------+\ \n | Don't | NO | Does | +-------+ YES | Did you |\ \n | mess | +---| anyone |<------| YOU |<---------| mess |\ \n | with it! | | | know\? | | MORON | | with it |\ \n +----------+ | +---------+ +-------+ +---------+\ \n | V | YES | NO\ \n | +------+ +-----------+ |\ \n | | HIDE | V V\ \n | | IT | +--------+ +-----------+\ \n | +------+ | YOU | YES | WILL THEY |\ \n | | +------->| POOR |<------------| CATCH YOU\?|\ \n | | | |BASTARD!| +-----------+\ \n | | | |________| | NO\ \n | | | | |\ \n | | | V V\ \n | | | +---------------+ +-----------+\ \n | | | NO | CAN YOU BLAME | |DESTROY THE|\ \n | | +------| SOMEONE ELSE\? | | EVIDENCE |\ \n | | +---------------+ +-----------+\ \n | | | YES |\ \n | | v |\ \n | | ============================ |\ \n | +---->|| N O ||<---------+\ \n +------------>|| P R O B L E M ||\ \n ============================\ \n\ \n" /system ntp client set enabled=yes mode=unicast primary-ntp=172.31.255.6 secondary-ntp=172.31.255.6 /system routerboard settings set cpu-frequency=1200MHz memory-frequency=1066DDR /tool bandwidth-server set authenticate=no
set route-distinguisher to valid value
This and the "bug" that dont let a l2tp server run inside a vrf, is annying. Maybe a feature request. What vrf, do you want to use for what service. eg. ftp at vrf1, ssh at vrf2 and l2tp at vrf3.Mikrotik, as reported previously, and as per samsung172's post, there are STILL issues with CCR connecting to Cisco devices with static port speeds e.g. 100mbit/FDX.
Now im not sure if this is even specific to CCR --> Cisco, or it is just static 100/FDX configuration as the only time we use this config is connected to Cisco devices...
Has Mikrotik done any testing on this ?
It is an annoying fault as sometime it will go nicely for weeks, then all of a sudden stop working, e.g. port speed changes to 1gigabit, or router reboots or freezes.
/ snmp { :foreach x in=[ community find ] do={ community remove $x }; community add name=INSTALL address=172.16.1.1/32 read-access=yes; set enabled=yes contact="" location="" }
+1@samsung172
Best note ever LOL )
Hi,I have loaded my CCR and all looks well. I suspect the release of 6.9 is good judging by the lack of complaints on this thread
Currently in the LAb. as from tomorrow it will be in production will keep you posted if any issuesHi,I have loaded my CCR and all looks well. I suspect the release of 6.9 is good judging by the lack of complaints on this thread
This CCR is empty? in the lab? or it does some networking?
ok,thanks:) give me to know. because currently CCR 1036-12-4 works with old stable 6.3:)Currently in the LAb. as from tomorrow it will be in production will keep you posted if any issuesHi,I have loaded my CCR and all looks well. I suspect the release of 6.9 is good judging by the lack of complaints on this thread
This CCR is empty? in the lab? or it does some networking?
What functions it performs?ok,thanks:) give me to know. because currently CCR 1036-12-4 works with old stable 6.3:)
core router for 200 customers with traffic shaping, dhcp server, vlan internetworking, firewalling. works so far so good...What functions it performs?ok,thanks:) give me to know. because currently CCR 1036-12-4 works with old stable 6.3:)
/tool profile
Queue Tree is NOT Multi-thread/Multi-Core optimized yet so performance will be limited to a single core(tile) on the CCR routers. This is likely what you are experiencing.ROS 6.9
What about effective distribution of the load between the processor cores?
just 80 Mbit/s L2TP, NAT and Queu tree with 20 rules server on CCR1036-12G-4S
Yes, Queu tree slows all perfomance of router - when i disable it, bandwidth increase dramaticaly.Queue Tree is NOT Multi-thread/Multi-Core optimized yet so performance will be limited to a single core(tile) on the CCR routers. This is likely what you are experiencing.ROS 6.9
What about effective distribution of the load between the processor cores?
just 80 Mbit/s L2TP, NAT and Queu tree with 20 rules server on CCR1036-12G-4S
Mikrotik have indicated this is the next thing that will get optimized once PPP optimizations are finished.
#!/bin/bash
IP="172.16.хх.хх"
OID=".1.3.6.1.2.1.25.3.3.1.2"
snmpwalk -v2c -c public -On $IP $OID | awk '{ print($4) }' | awk 'BEGIN{sum=0}{sum+=$1}END{print int(sum/36)}'
Yes, Queu tree slows all perfomance of router - when i disable it, bandwidth increase dramaticaly.Queue Tree is NOT Multi-thread/Multi-Core optimized yet so performance will be limited to a single core(tile) on the CCR routers. This is likely what you are experiencing.ROS 6.9
What about effective distribution of the load between the processor cores?
just 80 Mbit/s L2TP, NAT and Queu tree with 20 rules server on CCR1036-12G-4S
Mikrotik have indicated this is the next thing that will get optimized once PPP optimizations are finished.
what advise for optimise Queu tree?
Mikrotik have not hidden the fact that Queue Trees are not yet optimized on CCR. I am sure they will fix this as soon as they have resource.It is evident that the majority of processor cores again do nothing while three cores perform the work. Question - for what are we paying money?
I also have queue tree issue. As support suggested I`m avoiding to use queue tree while MT improves optimization. At the moment, I`m using an other CCR instead of queue tree. I believe queue tree and majority functions will be optimized on CCR soon.Mikrotik have not hidden the fact that Queue Trees are not yet optimized on CCR. I am sure they will fix this as soon as they have resource.It is evident that the majority of processor cores again do nothing while three cores perform the work. Question - for what are we paying money?
You can fix this problem by applying configuration example from container below. This problem occurred due to rare bug that corrupted led configuration, we already made changes in ROS to prevent such thing happening in future release versions.CCR1036-12G-4S-EM, default config, after upgrade to 6.9, yellow LED's near empty SFP slots blinks all together in different intervals like sending morse code. Is that some new feature?
"system leds disable [find]" shut them off, but this is not resolution.
"system leds enable [find]" start all over again ...
And why those SFP LED's must be that bright? Every time, I look directly to CCR, I am blinded.
/system leds
set 0 disabled=no interface=sfp1 leds=eth0-led type=interface-activity
set 1 disabled=no interface=sfp2 leds=eth1-led type=interface-activity
set 2 disabled=no interface=sfp3 leds=eth2-led type=interface-activity
set 3 disabled=no interface=sfp4 leds=eth3-led type=interface-activity
I pasted your code in the console, but this do not fixing the problem. Now all SFP LED's are lit all the time.You can fix this problem by applying configuration example from container below. This problem occurred due to rare bug that corrupted led configuration, we already made changes in ROS to prevent such thing happening in future release versions.
Code: Select all/system leds set 0 disabled=no interface=sfp1 leds=eth0-led type=interface-activity set 1 disabled=no interface=sfp2 leds=eth1-led type=interface-activity set 2 disabled=no interface=sfp3 leds=eth2-led type=interface-activity set 3 disabled=no interface=sfp4 leds=eth3-led type=interface-activity
I am not entirely sure how, but after upgrade brand new CCR from 6.1 to 6.9, current-firmware and upgrade-firmware was the same 3.10. Just in case I did fw upgrade, but this did not change anything. However, my other CCR with 6.3 shows version 3.09 firmware. Now I am not sure, did the new CCR somehow upgrade itself automatically to 3.10, did I upgrade it and do not remember this, was it 3.10 before, or is it another bug to show incorrect version. Anyway, if I started to investigate the problem, it was already 3.10.@netmaster
whats your firmware version? mine solved by upgrading firmware to 3.10
CCR 10-16 ver 6.9 all 100% Well done Mikrotik.
What are the features that you are using now?Currently CCR1036 and CCR1016, both ROS v.6.9, so far so good.
Regards,
Can someone resolve my problem? This speed using most older apc ups.Hi! CCR1036-12G-4S os. ver 6.7
I have problem with Serial port. When I want to set baud-rate=2400 i get message: "failure: specified port speed is not supported on this port"
I believe that I am also having a "port flapping issue". I can't find a definition, but my log files show my symptom...Hi MT
We have updated or CCR to 6.9 and we are still seeing port flapping, any changes to a Ethernet interface will cause the router to crash and only a hard power off and on will bring it back.
Also there is still a issue with Ethernet TCP through put, we still can not use our 100mb leased line to the max due to this issue.
Adrian
Perhaps sometimes in the future an device behind thewhat advise for optimise Queu tree?
This is an interesting question. The Tilera CPU supports key-exchange (RSA, etc.) acceleration, which is the most expensive part of a SSL handshake - the actual encryption of the data itself after key exchange has been done is not that CPU intensive anymore. But if you have a high session rate and lots of threads (CPUs), this could speed up things.Could you help me with SSL offload? I plans install http reverse prosy for SSL offload (I know, Tilera CPU supports it on very big speeds) on CCR with Router OS.
This is not able to practice! I mean the comparing of two different hardware architecturesThe fact that the traffic on my CCR1036 increased to 700-800 Mbps, and the packet loss began. I gave a detailed description of the scheme of testing.
At the same RB800 performance testing UDP packets of 64-750 bytes is much higher than the CCR
This is right, but this function must also be inserted first in RouterOS, that we all are ableHello!
Could you help me with SSL offload? I plans install http reverse prosy for SSL offload (I know, Tilera CPU supports it on very big speeds) on CCR with Router OS.
This is not true, sorry! The Tilera platform used by MikroTik to build the CCR series
This is an interesting question. The Tilera CPU supports key-exchange (RSA, etc.) acceleration, which is the most expensive part of a SSL handshake
The Tilera CPU cores (tiny cpus) are only used for two real things
- the actual encryption of the data itself after key exchange has been done is not that CPU intensive anymore. But if you have a high session rate and lots of threads (CPUs), this could speed up things.
Why booting a second system or pre boot system?
As far as I know, RouterOS doesn't support such functions, but - if it would be possible to boot some kind of plain Linux on the box and if a engine plugin for OpenSSL were available, you cold theoretically do such things.
No one is able to do so, or your are owning a Tilera SDK and you have an account
Question: Has anyone already booted a plain Linux on a CCR and if yes - how?
Then I wish for my self and all others an extra LAN port either SFP, SFP+ or copper based
I think that with stud, varnish and haproxy the CCR would surely make a decent HTTP load balancer and accelerator.
Hello!This is an interesting question. The Tilera CPU supports key-exchange (RSA, etc.) acceleration, which is the most expensive part of a SSL handshake - the actual encryption of the data itself after key exchange has been done is not that CPU intensive anymore. But if you have a high session rate and lots of threads (CPUs), this could speed up things.Could you help me with SSL offload? I plans install http reverse prosy for SSL offload (I know, Tilera CPU supports it on very big speeds) on CCR with Router OS.
As far as I know, RouterOS doesn't support such functions, but - if it would be possible to boot some kind of plain Linux on the box and if a engine plugin for OpenSSL were available, you cold theoretically do such things.
Question: Has anyone already booted a plain Linux on a CCR and if yes - how? I think that with stud, varnish and haproxy the CCR would surely make a decent HTTP load balancer and accelerator.
Ok, if there are only one or two engines per CPU and not one per core, that's a point. I just flew over the specs at http://www.tilera.com/sites/default/fil ... 02_web.pdfThis is not true, sorry! The Tilera platform used by MikroTik to build the CCR series is owning one or two units if the high speed encryption engine so called "MiCA" (at this point I want say tank you MikroTik for choosing this variant) and this MiCA is taking any data out directly from the RAM for doing the encrypting or decrypting work that means the entire or whole crypto work is done outside of the Tilera many Core CPU!!! But, that we are all able to use this as a function or option or so called feature, MikroTik must write code that is using this MiCA encryption engine for taking the entire load from the CPU, but if this is done the CCR series could be also used as a fine VPN concentrator as well.
Why? Creative usage of technology .Why booting a second system or pre boot system? And by the way the Linux must be compiled for the Tilera platform it selfs otherwise the code will not be executed on this machine!
[...]
No one is able to do so, or your are owning a Tilera SDK and you have an account to the over 2500 pre compiled code packets (.rpm) from the Tilera company and also perhaps a compiler that matches the Tilera platform.
True, the whole point of all this is just messing around and wondering what might be possible. Nothing really serious in particular. I just love this hardwareThen I wish for my self and all others an extra LAN port either SFP, SFP+ or copper based for setting up two or more routers to build a router cluster with ARP balance over CARP so that the whole load will be balanced over many routers, but this depends on the own wishes mostly.
I think that with stud, varnish and haproxy the CCR would surely make a decent HTTP load balancer and accelerator.
Surely they do, but we are talking here about two different parts of the entire SoC.And - AFAIK - RouterOS utilizes the engine since v6.8 (don't know if full or only in parts), it is mentioned somewhere in the changelog.
Please watch out in the attached picture on the coners on the left siteOk, if there are only one or two engines per CPU and not one per core, that's a point.
How do I tired of all ..Just got on my CCR1036 stopped working vlan. Stopped going traffic on some Vlan. Helped rebut. ROS v6.10
+1i cannot use 6.10 have reboots every some days. max uptime was 4 days. i went back to 6.7.
both firmwares have a memleak when creating support files. i tried to create a support-file every 10min to have one in case of an error. you can see the mem going down rapidly.
after a conversation with support i upgraded to 6.10 which is unstable. now i am down to 6.7.
can someone tell us here which version of routeros für ccr is stable to use in production environment.
i need ipsec, sstp und l2tp
25 rule each did process the packets. In normal conditions this would not happen, and actual packets would pass only few of them and packets from established and related connections just 2 to 4 rules. Adding 1 or removing 1 rule from that list would not change that much.Looking to understand the impact of the Firewall on high speed routing on a CCR. The benchmark's refer to 25 rules, I assume they are "passing" rules rather than blocks? Ie the traffic is being checked 25 times in a row and passing before being routed on to the end locations.
1. What impact would rule 1 being "Drop All UDP" have on the performance of the forwarding plane. Minimal? None?
2. If the 25 rules are going from most generic to most specific on DROP's and then the default is accept what would I expect to see from a impact view on the unit?
I know these are really loaded questions, just trying to understand based on the data on the web page and real world, really how the tests were completed and what an inverted usage of the firewall would have?
As you can probably imagine, this is all around DDoS and keeping the firewalls alive, especially when they have 10G interfaces.
6.9 is as unstable as 6.10 and sstp is not working with Windows clientsany reason 6.7 and not 6.9 ?
I am having performance issues with 6.10...
Does the said above mean that as rules are processed sequentially, the ones that you expect to be hit the most, you want to put them higher so the packets hit the rule and are not checked against the other rules further down the list?25 rule each did process the packets. In normal conditions this would not happen, and actual packets would pass only few of them and packets from established and related connections just 2 to 4 rules. Adding 1 or removing 1 rule from that list would not change that much.Looking to understand the impact of the Firewall on high speed routing on a CCR. The benchmark's refer to 25 rules, I assume they are "passing" rules rather than blocks? Ie the traffic is being checked 25 times in a row and passing before being routed on to the end locations.
1. What impact would rule 1 being "Drop All UDP" have on the performance of the forwarding plane. Minimal? None?
2. If the 25 rules are going from most generic to most specific on DROP's and then the default is accept what would I expect to see from a impact view on the unit?
I know these are really loaded questions, just trying to understand based on the data on the web page and real world, really how the tests were completed and what an inverted usage of the firewall would have?
As you can probably imagine, this is all around DDoS and keeping the firewalls alive, especially when they have 10G interfaces.
Also, dropping a packets does not cost (as in CPU resources) that much.
in normal conditions this is exactly what happens.25 rule each did process the packets. In normal conditions this would not happen
And the CCR1036 is not able to delivery you that throughput?Does anybody use CCR for NAT?
I need about 1G of NAT.
I am using x86 server with ROS 6.10 only for nat. Utilisation is 5% for 300M,And the CCR1036 is not able to delivery you that throughput?Does anybody use CCR for NAT?
I need about 1G of NAT.
Ok for SPI & NAT you should shorten the entire throughput
for something around 3% - 5% in normal cases.
It depends. Most switches from Vendors like Cisco or HP will - unlike MikroTik - only accept SFP modules with the right branding, so I think options 2 or 3 would be the only ways to go. Don't know about the SG500 series (they are ex Linksys, IIRC), though. Maybe they'll accept the MikroTik modules, maybe not. Best thing to do is try out for yourself if the switch accepts the transceiver. As long as the speed and wavelength of the transceivers match, there should be no problem.I want to connect CCR CCR1036-12G-4S-EM with Cisco switch SG500 series via multimode fiber optic on SFP transceiver.
Which is better to use :
1. Both side with Mikrotik SFP module S-85DLC05D
2. Both side with Cisco SFP module MGBSX1
3. On CCR side using Mikrotik SFP module S-85DLC05D & on Cisco side using Cisco SFP module MGBSX1
I am using x86 server with ROS 6.10 only for nat. Utilisation is 5% for 300M,And the CCR1036 is not able to delivery you that throughput?Does anybody use CCR for NAT?
I need about 1G of NAT.
Ok for SPI & NAT you should shorten the entire throughput
for something around 3% - 5% in normal cases.
but sometimes this machine got occasionaly reboot. Support didn't find eny problem in config.
It's cheaper to buy new CCR than ty to find compatible PC box.
I just wonder if enybody running NAT on CCR at least 3 month without crash o reboot.
1Gb/sec NAT is fine for 1036.Does anybody use CCR for NAT?
I need about 1G of NAT.
Already done at Ticket#2014030766000056Begetan, please email support with these details and supout.rif file. Thanks!
ipsec - enable hardware acceleration for aes-cbc-128 + md5|sha1|sha256 aead on tilera cpus;
http://wiki.mikrotik.com/wiki/Manual:IP/IPsec#Hardware_encryption
Which version of RoS?Hello,
I am interested in status of IPSec hardware acceleration. In the beginning of this topic you have mentioned that this will be available soon.
Today I have tested to encrypt traffic between two CCR1036 and the best result was about 300Mbps.
Regards,
1. uptime: 1w14h8m27s (I started using it for NAT a week ago).ners, thank you for reply!
Could you provide please some more details:
1. What is maximum utime?
2. Current version of ROS.
3. Does NAT utilise multi cores or single core?
# CPU LOAD IRQ DISK
0 cpu0 7% 7% 0%
1 cpu1 5% 5% 0%
2 cpu2 4% 4% 0%
3 cpu3 6% 6% 0%
4 cpu4 7% 7% 0%
5 cpu5 4% 4% 0%
6 cpu6 3% 3% 0%
7 cpu7 3% 3% 0%
8 cpu8 4% 4% 0%
9 cpu9 8% 8% 0%
10 cpu10 9% 9% 0%
11 cpu11 7% 7% 0%
12 cpu12 7% 7% 0%
13 cpu13 9% 9% 0%
14 cpu14 5% 5% 0%
15 cpu15 4% 4% 0%
16 cpu16 6% 6% 0%
17 cpu17 8% 8% 0%
18 cpu18 7% 7% 0%
19 cpu19 8% 7% 0%
20 cpu20 7% 7% 0%
21 cpu21 4% 4% 0%
22 cpu22 4% 4% 0%
23 cpu23 5% 5% 0%
24 cpu24 8% 8% 0%
25 cpu25 3% 3% 0%
26 cpu26 4% 4% 0%
27 cpu27 9% 9% 0%
28 cpu28 9% 9% 0%
29 cpu29 1% 1% 0%
30 cpu30 9% 9% 0%
31 cpu31 7% 7% 0%
32 cpu32 11% 11% 0%
33 cpu33 9% 9% 0%
34 cpu34 4% 4% 0%
35 cpu35 5% 5% 0%
ners, I think this is useful information for all. Please update information after 1 month of stable work.
I had previously RB1100AHx2 with uptime of 300 days running on ROS 5.18. Hope CCR should be the same.
v6.5 is the best 6.x release so farners, I think this is useful information for all. Please update information after 1 month of stable work.
I had previously RB1100AHx2 with uptime of 300 days running on ROS 5.18. Hope CCR should be the same.
I have CCR1036-12G-4S. Doing 81 NATs over 19 EoIP tunnels and 62 VLANs. Total bandwidth it currently serves is a bit below 700Mbps, sometimes peaking 750Mbps, but thats not CCRs limitation, its mine. Load rarely exceeds 30%. Uptime over 2 months. Rebooted recently, because added one package. v6.5 Running more or less stable.
Interesting, we are running about 20 VRF's with around 50 interfaces in them on 6.5, pushed around 1700TB through it and it has been really stable!not if using vfr's. Router hang after puting an Interface to a vrf.
all after 6.5 is best. I have seen no big problem to the latest 6.8-9-10. 10 the best couse of partly fixes cisco non gigabit issue
installed new firmware?My CCR1036 suddenly erupts this morning, I don't know why..
I did and experienced a very weird bug. Suddenly some vlan interfaces stopped working. They just wouldn't pass traffic at all although shown as running and I could ping their addresses and also PPPoE service was working fine over them. When I deleted the affected vlan interface and tried to recreate it, it wouldn't let me, said there was already such an item (although really there wasn't). After a reboot the VLAN came back on its own and started passing traffic again, but after 30 minutes or so, it stopped working again.anyone tried 6.11 on ccr? i am still stuck at 6.7 because 6.9 and 6.10 run unstable. max uptime was about 4 days.
I never open the case. Other device from the same power cord is fine.wow! I would take a guess there was a short on the board between that component and the ground. Depending on the cause. if manufacture fault then yes. if foreign object then no
Last time I installed 6.10 and upgrade to that firmware..installed new firmware?My CCR1036 suddenly erupts this morning, I don't know why..
I am still at 6.7 because ist more stable than 6.9 and 6.10 but today the router stopped working properly.Posted in the other thread, I am on 6.3, which is mostly stable. Am I right in saying 6.7 is the most stable now at the moment?
/system routerboard print
For CloudCoreRouterI'm having stability issues with my CCR (CCR1016-12G) after upgrading from ROS 6.5 to 6.10 and also 6.11. The CCR will run for a few days (as little as 2 days and as long as 7 days) before it loses connectivity. I can't ping or access via Winbox. Sometimes the touchscreen and serial console are unresponsive as well. Only solution is to unplug power and plug back in. Sometimes (though less frequent) I lose the connectivity, but touchscreen and serial console work.
I noticed today when this happened and I still had serial connectivity thatshowed the firmware version was 3.10 with version 3.12 available. I updated the firmware to 3.12 and rebooted. Here's to hoping this solves the issue. If not, I'm going to revert back to 6.5 or possibly 6.7. Does anyone know where I can download older versions of ROS?Code: Select all/system routerboard print
From all the reports on here, yes.we are going to put 2 CCR into production with 6.11 code
primary use bonding, vlan, vrrp and bgpd
bad move?
We have a similar setup but we don't touch the new releases as they are simply unstable. Mikrotik's public releases seem to be betas now days.we are going to put 2 CCR into production with 6.11 code
primary use bonding, vlan, vrrp and bgpd
bad move?
uptime: 5w5d20h25m43s
version: 6.9
build-time: Jan/31/2014 11:18:19
free-memory: 3483.3MiB
total-memory: 3969.0MiB
cpu: tilegx
cpu-count: 36
cpu-frequency: 1200MHz
cpu-load: 15%
free-hdd-space: 903.6MiB
total-hdd-space: 1024.0MiB
architecture-name: tile
board-name: CCR1036-12G-4S
platform: MikroTik
In ROS 6.x bad performance DNS server. Try not to use DNS ROS 6.x.I have a CCR1036-12G-4S with the following running on it;
hotspot
PCC load balancing
2 Nat rules
I am seeing slow load times on webpages and I suspect a possible issue with DNS Caching. I am on v6.1 with firmware version 3.09. All packages installed are running v6.1 including user-manager.
Should I update to a newer version to possibly resolve the dns issue? If so what version seems to be the most stable, I see a lot of 6.5's possibly?
I have several CCR's in production now, all of them are running similar setups and seeing similar performance. all of them are on v6.1
I have RP Filter set to no currently. PCC setups are not designed to work if RP Filter is enabledmaybe SRPF impact. try disable RP filtering if used(usual/reasonal for bras/cpe only), temporally.
1Gb/sec NAT is fine for 1036.Does anybody use CCR for NAT?
I need about 1G of NAT.
Thank you. This is fantastic stuff. Where can we find more of this sort of thing? I highly suggest this is more visible to people like us browsing the forums. It actually answered a lot of my questions.Very useful information about CCR is available here:
http://mum.mikrotik.com/presentations/RU14/megis.pdf
Come to the MUM, that is what it's forThank you. This is fantastic stuff. Where can we find more of this sort of thing? I highly suggest this is more visible to people like us browsing the forums. It actually answered a lot of my questions.Very useful information about CCR is available here:
http://mum.mikrotik.com/presentations/RU14/megis.pdf
I am in New Zealand... not quite possible lol Maybe the next one in Australia.Come to the MUM, that is what it's forThank you. This is fantastic stuff. Where can we find more of this sort of thing? I highly suggest this is more visible to people like us browsing the forums. It actually answered a lot of my questions.Very useful information about CCR is available here:
http://mum.mikrotik.com/presentations/RU14/megis.pdf
+1Hello all
since yesterday I am using (in production environment) a CCR1016-12G with 6.13, as BGP router connected to two peers
anybody else using a CCR as BGP router, with a recent build, can report that the initial issues had been solved? I am a bit worried... since in the first four months of 2014 we tried several 6.x builds, and with most of them BGP was not error-free (the router crashed suddendly and needed a power cycling to restart; we have two other CCRs in production, without BGP, and they all have several months uptime with no issue at all)
Leo
I suspect it was this however it happened so quickly we could not check in real time. Our ccr usually ran at around 4-5%, however on the cacti graphs before a reboot I could see it hitting 70%. I know in V6 bgp is not multicore....What did CPU utilization for BGP look like during these outages?
SureJust out of curiosity, could you share your watchdog settings?
It's a tough one. Our CCR for BGP is also in our DC which is around 15min car drive from our office. We were originally running one CCR for OSPF, BGP, firewall rules, queues, natting etc which I think was our issue. Though it ran fine for +- 5 months like this. All of a sudden we were getting random reboots to an extent that it would reboot 10-15 times a day. We pulled the CCR out, put a new one in, copied config - same issue. We thought there may be a short in one of the cables comming from the roof of the DC to some of our antennas so we redid the cabling - same issue. Decided new config was need, disabled all config that was "bloat" - same issue. Swapped the SFP's - same issue. Ran BGP only on one SFP instead of three vlans over two SFP's - same issue. Eventually we decided to remove BGP off the CCR and revert to our unused Cisco7200 which we used when there was no such thing as a CCR. This ran fine for 2months. So diagnosed the issue was with BGP and the CPU which was backed up by our cacti graphs showing spikes before a reboot.we never enabled a watchdog on any MT router
should I do it, on the bgp ccr?
can I safely assume that, if I enable watchdog, next time that the ccr will have a BIG problem, it will reboot by itself, instead of crashing and needing somebody run there to power cycle it?
of course, I would be happier, if MT has sorted things out and with RC13 has already solved this issue; I am an optimistic person; I like to risk... actually I have already ordered one more ccr, a brand new CCR1016-12S-1S+, and would like to use it as our main bgp router
So far so good, touch woodHi paulsa,
What is your latest result?
No issues so far.keep us posted paulsa.
I suggest you to use RB1100AHx2 for this. This device is absolutelly stable - I got uptime more than 1 year for it with one Full BGP table for ROS 5.x and traffic up to 300M.Thanks for the information, I am shopping for a low cost router for my new colo space, I ordered 2 100MB connections and will use BPG. I was debating using the Cloud router however I need something 100% stable. The other products I was looking at was either a Ubiquiti Edgemax Pro, A pfsence box, or getting a used Cisco or Juniper router on ebay.
in 6.13 vpn implementation is far from stable. so if you Need this you have to use an older version. the most stable until now is 6.7 (at least for my usecase)So v6.13 seems stable? Anyone using a hotspot with usermanager? Anyone using PCC and needing to use allow remote dns use?
It is even the same deal with this in my eyes!Our redundant concentrator running 4.17 on a RB1000 has been working perfectly for years.
Thank you for sharing this information with us!in our case, UNTIL NOW, 6.13 seems stable, when used as BGP router; uptime 9 days
Yup, V6.13 seems stable for BGPin our case, UNTIL NOW, 6.13 seems stable, when used as BGP router; uptime 9 days
@dddIt is even the same deal with this in my eyes!Our redundant concentrator running 4.17 on a RB1000 has been working perfectly for years.
If they (MikroTik) is not inserting many new features the half of the crowd is crying loud,
and if all this fine things find their way in RouterOS and there are some failures or issues
the rest of the crowed is crying loud! And what to do now if you don´t want to loose clients?
-Would the way UBNT was going the right thing?
Fiddle out all things and then delivering the CCR Series
-Is this way the right one? But I really thing they (MikroTik) will never be able to test out
all different situations and set ups their clients are using and having installed in the field.
So less features, options and functions should be the goal?
For the other versions of RouterOS, likes x86, MIPSBE and PPC it would be right, I considerIn my opiniion sorting out major bugs has the highest priority and comes long before adding features.
Ok right and this was my question to the user ddd, should they do it like UBNT was doingthe situation now is that ccr is not usable in production because every new update that should solve some anoying bugs intruduces new bugs you have to work around. and it doesnot seem to get a lot better over time.
(selling only if the router is stable)
.
Ok quick and dirty, but the true, that was exactly what I personally want to know.If a product is not fit for purpose then it shouldn't be sold.
But this is a nearly unclear answer and on top in the total other direction, why?If a user wants to unlock the full feature set they can do so at their own risk.
For sure I consider, this could be a risk for MikroTik but if they get this device ready to workThe current stability issues are going it very difficult to trust these routers again.
(selling only if the router is stable)
.
If a product is not fit for purpose then it shouldn't be sold.
In the case of the CCR it seems its only stable under certain configurations. I believe it would be best to release a cut back version of the firmware that only allows tested and stable configuration / packages.
If a user wants to unlock the full feature set they can do so at their own risk.
The current stability issues are going it very difficult to trust these routers again.
I really respect your mind and I also must consider in some points, but not all as I want to say also.in my opinion the problem is the release cycle where they mix up versions with new features with bugfixes.(selling only if the router is stable)
.
If a product is not fit for purpose then it shouldn't be sold.
In the case of the CCR it seems its only stable under certain configurations. I believe it would be best to release a cut back version of the firmware that only allows tested and stable configuration / packages.
If a user wants to unlock the full feature set they can do so at their own risk.
The current stability issues are going it very difficult to trust these routers again.
i would like to see a 6.7.10 for example. 6.7 was stable, compared to the next versions and they should have fixed the bugs there and released some minor-minor version until 6.7.x is stable.
And this is the part I can´t consider to you, related to the circumstance that aso everybody would be happy and this plan would take some pressure from the development team to finally get out the "one first stable version" quickly.
But with this strategy i can decide if there is a stable Version with the Features i Need and if so i got to the shop an buy a MikroTik-router. otherwise i can always decide to take the risk of a Version with more features, but not so stable.And this is the part I can´t consider to you, related to the circumstance that a
first stable version with only the half activated feature set offered by RouterOS
or in other words without all from RouterOS given options and functions, only to
tell the whole public, "we have now the first reallystable release!"
Absolutely sure, I consider this is right! For us both or some peoples this would be perhapsBut with this strategy i can decide if there is a stable Version with the Features i Need and if so i got to the shop an buy a MikroTik-router. otherwise i can always decide to take the risk of a Version with more features, but not so stable.And this is the part I can´t consider to you, related to the circumstance that a
first stable version with only the half activated feature set offered by RouterOS
or in other words without all from RouterOS given options and functions, only to
tell the whole public, "we have now the first reallystable release!"
now i dont have the choice.
My CCR1009 is working great with 3 different subnets ... 1 on the bridge linking ether1-4 as switch group + ether 5 & 6 bonded for LACP + SFP+, ether 7 and 8 have their own subnets, with ether 8 actually leading to another router as backup WAN. Primary WAN (500Mbps symmetrical fibre) is on SFP.I have a very big problem with my CCR1009 with ROS 6.15, I prefix that I've bought it now so I test only with 6.12 and 6.15 but the problem persists.
The situation is this:
-ether1 with subnet 192.168.88.1/24
-ether2 with subnet 192.168.0.5/24
If a connect 2PC or router on the 2 different subnet I can't access the other subnet and I can't also ping.
The conf is very simply and with my rb951 work good with all versione of ros inclused 6.15.
I've already tried to do this, so I don't know what's the problem.My CCR1009 is working great with 3 different subnets ... 1 on the bridge linking ether1-4 as switch group + ether 5 & 6 bonded for LACP + SFP+, ether 7 and 8 have their own subnets, with ether 8 actually leading to another router as backup WAN. Primary WAN (500Mbps symmetrical fibre) is on SFP.I have a very big problem with my CCR1009 with ROS 6.15, I prefix that I've bought it now so I test only with 6.12 and 6.15 but the problem persists.
The situation is this:
-ether1 with subnet 192.168.88.1/24
-ether2 with subnet 192.168.0.5/24
If a connect 2PC or router on the 2 different subnet I can't access the other subnet and I can't also ping.
The conf is very simply and with my rb951 work good with all versione of ros inclused 6.15.
I'm not sure how you configure your CCR1009 but perhaps you can try putting the 2nd subnet on the non-switch group (i.e. ether 5 to 8 ).
ROS 6.15 / Firmware 3.13.I've already tried to do this, so I don't know what's the problem.
What ROS version and firmware do you have?
The firewall are disabled on every device.I would check firewalls on both PCs: Windows Firewall blocks ICMP not from local subnet at least in WinXP, for example
you can check with Tools -> Torch on both interfaces - I'm sure, there are packets received and transmitted
The default gateway of PC is 192.168.88.1, the ata has no gateway set like the other routerboard that I tried instead of the ata I putThis really should have been in a separate thread.
What is the default gateway on the 192.168.88.253 PC?
What is the default gateway on the 192.168.0.250 ATA?
Can the PC ping 192.168.0.5?
/ip route
add gateway=192.168.0.5
I forgotten the gatewayOn the 192.168.0.251 mikrotik,
If the 192.168.0.0/24 hosts don't know how to get back to 192.168.88.0/24, how can they respond to pings and traceroutes and web requests from devices in 192.168.88.0/24 or any other non-192.168.0.0/24 hosts?Code: Select all/ip route add gateway=192.168.0.5
Now that I'm on a real screen and not the smartphone...I forgotten the gateway :shock:On the 192.168.0.251 mikrotik,
Code: Select all/ip route add gateway=192.168.0.5
So now I added it and from the mikrotik 951 (192.168.0.251/24) I can reach the ccr1009 192.168.0.5 but not 192.168.88.0/24.
From the ccr1009 (precisely 192.168.88.1) I can't reach 192.168.0.251 despite I added the rule
Perhaps is needed static routing indirect?Code: Select alladd distance=1 gateway=192.168.0.251
If I set gateway 192.168.0.5 on rb951 it says me reachable but I can't reach 192.168.88.1.Now that I'm on a real screen and not the smartphone...I forgotten the gatewayOn the 192.168.0.251 mikrotik,
Code: Select all/ip route add gateway=192.168.0.5
So now I added it and from the mikrotik 951 (192.168.0.251/24) I can reach the ccr1009 192.168.0.5 but not 192.168.88.0/24.
From the ccr1009 (precisely 192.168.88.1) I can't reach 192.168.0.251 despite I added the rule
Perhaps is needed static routing indirect?Code: Select alladd distance=1 gateway=192.168.0.251
According to what you wrote, you told the 951 that it was its own default gateway. Set the gateway to 192.168.0.5.
I think really it would be better to look at the website from Tilera and not in the forum ofHi everyone,
I'm looking for detailed implementation information for the Tilera architecture.
Bare Metal and functions could be found in this white paper here:Basically, while considering CCRs as candidates to offload some tasks from Cisco and Juniper boxes, we'd like to get some deterministic scales based on the number of cores involved in each and avery bare-metal-implemented feature.
This can be revealed by this white paper from Tilera:Which features are implemented on bare tiles ? How many tiles per feature's scalability (i.e. core per x thousand L2TP session, core per y Gbps of switched or sampled traffic, etc...) ? Is there a dynamic ressource allocator or is it hardcoded ? If dynamic, how to proritize when oversubscribing ?
This is able to handle by a RB1100AHx2 without problems and by any kind of CCR200Mb on my WAN side.
about 300 customers connected using pppoe
not very complex firewall rules (35 filter rules, 25 nat rules and 15 mangle rules)
and 30 simple queues using pcq.
But my concern is that i will serve inet connection to my customers using JUST ONE ETHERNET on the LAN side.
More than 1 GBit/s it will not be passing if you only use one ethernet LAN port.Does it affect to the performance a MULTICORE router can afford?
It would not speeding up the entire and only 1 GBit/s uplink!Make sense to get a 16 or 32 core router with this topology limitation ?
Surely it can do the job also, but for a little bit more reserve I would suggest the 16 core orAs far as i can see a 9 core router can accomplish the load without issues...
Got yesterday a CCR-1009 8G 1SFP+1SFP and spent half an day for some documentations and manual,...Come to the MUM, that is what it's forThank you. This is fantastic stuff. Where can we find more of this sort of thing? I highly suggest this is more visible to people like us browsing the forums. It actually answered a lot of my questions.Very useful information about CCR is available here:
http://mum.mikrotik.com/presentations/RU14/megis.pdf
So made the mistake to get myself a CCR1036-8G-2S+
6.22 (3.19 firmware) *all* Ethernet ports connect at 10/Half Duplex (multiple switches/servers, multiple cables), *all* Ethernet ports receives 0 frames/packets according to Interface statistics.
Upgraded to 6.23 (3.20 firmware) *exactly* the same issue.
Nice. I have a USD1K door stop...
Same problem on 6.24 and RB2011, about 40mbit traffic heavy cpu load, port flaps regularly every 10minutes. Downgrade to 6.20 resolve the issue. Keeping 6.24 and LCD DISABLED solves the issue too.helloAnybody with this port flapping on the CCR, can you try disabling the LCD screen, and see if anything changes at all ?
we have this problem on x86 with v6.6rc1 28/10/2013 without package lcd
a+
Thierry
The Tilera CPU supports it, but motherboard - not supports. This document describes differences of pinouts ECC and not-ECC SoDIMM. So i was trying set up the modules KVR13LSE9S8/4 in my CCR1036-12G-4S and router does not work with them. Wrote this because could not found information about support ECC in CCR routers.The Tilera CPU supports it from the DDR3 controllers onboars, so it should work.Dear Normis!
The CCR-1036 support SO-DIMM ECC RAM memory ?
(...like: Kingston SO-DIMM 8 GB ECC DDR3-1333 x2)
What type of SO-DIMM memory is the best for the CCR-1036 ?
(ECC vs. NON ECC, 1333MHz vs. 1600MHz)
Please help choosing between these...
Thx.
Attila