Community discussions

MikroTik App

Search found 234 matches

by memelchenkov
Sat Feb 03, 2024 12:41 am
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 510
Views: 154710

Re: v7.14beta [testing] is released!

It's a great idea to rename to "nas"! I love roses, like well Guns'n'Roses, rose flowers, rose perfume and so on… but how it is related to SMB I really don't understand! the rose-storage package does not only offer the "nas" function, but also the "client" function. In...
by memelchenkov
Fri Feb 02, 2024 10:15 pm
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 510
Views: 154710

Re: v7.14beta [testing] is released!

It's a great idea to rename to "nas"! I love roses, like well Guns'n'Roses, rose flowers, rose perfume and so on… but how it is related to SMB I really don't understand!
by memelchenkov
Sat Jan 27, 2024 11:07 pm
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265853

Re: v7.13.3 [stable] is released!

Not a good update, now there are many messages "reassociating", "disconnected, ok" in wifi logs.
by memelchenkov
Sat Jan 27, 2024 4:11 pm
Forum: Scripting
Topic: WordPress API Mikrotik
Replies: 7
Views: 1083

Re: WordPress API Mikrotik

Normis, from what you write it seems like you don't really like Wordpress
Tech. pros don't like WordPress ;-)
by memelchenkov
Sat Dec 16, 2023 2:12 am
Forum: Announcements
Topic: v7.13.5 [stable] is released!
Replies: 909
Views: 265853

Re: v7.13 [stable] is released!

Now empty "WiFi" tab in WinBox. And working WiFi tab copied to "Wireless".
by memelchenkov
Wed Dec 13, 2023 8:43 pm
Forum: Beginner Basics
Topic: WG handshake drops !!
Replies: 11
Views: 2112

Re: WG handshake drops !!

@anav, so it works by accident rather than not works by accident? Cool.
by memelchenkov
Wed Dec 13, 2023 8:19 pm
Forum: Beginner Basics
Topic: WG handshake drops !!
Replies: 11
Views: 2112

Re: WG handshake drops !!

You did not give details what country. Many world countries now block VPNs. If you live in a such one that means they start blocking. Another variant — specific ISP blocks. First of all you should talk to the ISP where is not working and get official answer about open port or DPI hardware. Only then...
by memelchenkov
Mon Nov 13, 2023 8:29 pm
Forum: General
Topic: Subject: MikroTik Router Storage Issue - 100% Full
Replies: 12
Views: 1451

Re: Subject: MikroTik Router Storage Issue - 100% Full

It may be firewall address list, for example. In mine case of the same situation—only netinstall :(
by memelchenkov
Sun Nov 12, 2023 7:35 pm
Forum: Scripting
Topic: A Mikrotik Safe+ Mode?
Replies: 3
Views: 1124

Re: A Mikrotik Safe+ Mode?

Write a script on a virtual desktop that will kill WinBox if some pings failed.
by memelchenkov
Fri Oct 27, 2023 8:51 pm
Forum: Useful user articles
Topic: OpenWRT open source on MikroTik devices (hAP ac2 etc.)
Replies: 9
Views: 3404

Re: OpenWRT open source on MikroTik devices (hAP ac2 etc.)

But can docker be used on such a small device like the hAPac2 ? As I understand it, docker requires much disk memory, 100+ MB or so, whereas such a hAPac2 has got only 128 MB :-) USB flash for Docker? I did not try that. Docker images could be really small, on Alpine Linux only few megabytes. ac2 i...
by memelchenkov
Fri Oct 27, 2023 8:14 pm
Forum: Useful user articles
Topic: OpenWRT open source on MikroTik devices (hAP ac2 etc.)
Replies: 9
Views: 3404

Re: OpenWRT open source on MikroTik devices (hAP ac2 etc.)

At MUM few years I asked MikroTik about packages like in OpenWRT, Asus. They told "no". And years later they bring Docker.
by memelchenkov
Thu Oct 26, 2023 3:04 pm
Forum: General
Topic: VPN Issues 7.11.2
Replies: 3
Views: 691

Re: VPN Issues 7.11.2

Check that VPN connections are excluded from FastTrack, it's a mandatory rule for correct working of VPN.
by memelchenkov
Wed Oct 25, 2023 10:43 pm
Forum: General
Topic: Mikrotik 900 ft under ground.
Replies: 3
Views: 1188

Re: Mikrotik 900 ft under ground.

It's interesting if he mentioned MikroTik in his book or not :-). (look the latest comment on YouTube)
It won't work good on a length > 100 m. Do they install active repeaters/switches? Maybe. It's very interesting anyway.
by memelchenkov
Wed Oct 25, 2023 1:48 pm
Forum: RouterBOARD hardware
Topic: Upgrading CRS326 and CRS317 to ROS 7 failing
Replies: 3
Views: 2413

Re: Upgrading CRS326 and CRS317 to ROS 7 failing

Just out of curiosity, what do you want to achieve by upgrading major version?
by memelchenkov
Tue Oct 24, 2023 3:00 pm
Forum: Beginner Basics
Topic: My Youtube Video player has blocked
Replies: 6
Views: 1878

Re: My Youtube Video player has blocked

When I use Adblocker my YouTube video player has stopped.
You got the wrong forum. It is a forum about MikroTik routers. You should write to forum about your Adblocker software.
by memelchenkov
Tue Oct 24, 2023 2:57 pm
Forum: General
Topic: Chateau LTE12 - ROS 7.11.2 (stable) - Loses (some) config on reboot
Replies: 5
Views: 1299

Re: Chateau LTE12 - ROS 7.11.2 (stable) - Loses (some) config on reboot

I can restore from backup
Just an idea: try to restore from export, not from backup. Backup (the binary configuration itself) could be corrupted.

Also, check free disk memory. If it is near zero it could cause these problems.
by memelchenkov
Fri Oct 20, 2023 9:11 pm
Forum: Wireless Networking
Topic: HAP AX3 WIFI slow
Replies: 6
Views: 1913

Re: HAP AX3 WIFI slow

Your current measurements does not anyhow shows problem with the router. Try to get ISP technicians first, let them show you the real channel speed via their own hardware (usually they come with an notebook with Ethernet port). They will show you the real channel speed, you will see what they use fo...
by memelchenkov
Fri Oct 20, 2023 8:48 pm
Forum: Wireless Networking
Topic: HAP AX3 WIFI slow
Replies: 6
Views: 1913

Re: HAP AX3 WIFI slow

You should not check ISP speed by trying random speedtest website/app. You should ask your ISP which server to use to check wire speed. The speedtest server should be installed on ISP side. That's the only way to properly check link speed between your hardware and your ISP. Speeds between your hardw...
by memelchenkov
Fri Oct 20, 2023 1:58 pm
Forum: General
Topic: (Resolved) NTP & DNS clients not working .. just firewall misconfig
Replies: 23
Views: 2356

Re: NTP & DNS clients config problem v7.11.2

Yep we have an input firewall, only ping is open to world ..
Then how the router can accept DNS NTP answers if you block all traffic except ping?
by memelchenkov
Fri Oct 20, 2023 12:24 pm
Forum: General
Topic: (Resolved) NTP & DNS clients not working .. just firewall misconfig
Replies: 23
Views: 2356

Re: NTP & DNS clients config problem v7.11.2

Whois shows it is telecom from France. Yes, is recently buyed, checked on RIPE. But I prefer to remove the post with the IP, since is open to the world..................... Not a problem, the first bot scanner will penetrate any public IP in first five minutes. Also, it is LTE so probably CG NAT wi...
by memelchenkov
Fri Oct 20, 2023 12:17 pm
Forum: General
Topic: (Resolved) NTP & DNS clients not working .. just firewall misconfig
Replies: 23
Views: 2356

Re: NTP & DNS clients config problem v7.11.2

On picture...
94.187.x.y is from Kuwait???
Whois shows it is telecom from France.
by memelchenkov
Fri Oct 20, 2023 12:16 pm
Forum: General
Topic: (Resolved) NTP & DNS clients not working .. just firewall misconfig
Replies: 23
Views: 2356

Re: NTP & DNS clients config problem v7.11.2

Flash again (not reset) you’ll get the default config. It’s impossible to say anything about condition of the device you get, does it have some kind of broken firmware or not. Default FW config is pretty similar among different models and these devices do not have any problems with DNS NTP etc.
by memelchenkov
Fri Oct 13, 2023 2:20 pm
Forum: Scripting
Topic: Advice on configuring Mikrotik devices with Ansible
Replies: 4
Views: 2031

Re: Advice on configuring Mikrotik devices with Ansible

Check TR069 instead, will it work for you or not.
by memelchenkov
Mon Oct 02, 2023 6:40 pm
Forum: Beginner Basics
Topic: TV authentication timeout on wifi
Replies: 11
Views: 10020

Re: TV authentication timeout on wifi

Check signal strength.
by memelchenkov
Sun Oct 01, 2023 4:27 pm
Forum: General
Topic: qBittorrent opened 1400+ UPNP Sessions [SOLVED]
Replies: 6
Views: 1963

Re: qBittorrent opened 1400+ UPNP Sessions [SOLVED]

Set fixed port in qBittorrent, it randomizes it on each launch.
by memelchenkov
Sun Oct 01, 2023 2:50 pm
Forum: Beginner Basics
Topic: Starlink, HAP ax2, Papertrail & OpenDNS
Replies: 4
Views: 788

Re: Starlink, HAP ax2, Papertrail & OpenDNS

So its not like that an un-approved user can get on the Wifi to sniff around? Yes, it is. MAC can be sniffed, then spoofed. However, if your film&tv staff is not very tech-savvy (I mean, not hackers) and don't specially want to drown you they probably will not hack Wi-Fi. So yes you may then. N...
by memelchenkov
Sun Oct 01, 2023 2:20 pm
Forum: Beginner Basics
Topic: Starlink, HAP ax2, Papertrail & OpenDNS
Replies: 4
Views: 788

Re: Starlink, HAP ax2, Papertrail & OpenDNS

> restrict Wifi access to the Starklink to specific Mac addresses
Not secure. MAC could be spoofed.

> I do not trust them
Do not share with them then.

Are you a soldier of fortune? Starlink, odd parts of the world, strange colleagues whom you can't trust...
by memelchenkov
Tue Sep 26, 2023 3:18 pm
Forum: Beginner Basics
Topic: Mikrotik and coaxial output
Replies: 7
Views: 1099

Re: Mikrotik and coaxial output

Or can we? :wink: Yes, we can. As a former system administrator of multi-service ISP, and as just an IT professional with a broad experience with small businesses in some other countries, what can I say: - MikroTik is an enterprise-grade hardware and software, ISP routers are not. ISP routers are S...
by memelchenkov
Mon Sep 25, 2023 11:00 pm
Forum: Beginner Basics
Topic: Mikrotik and coaxial output
Replies: 7
Views: 1099

Re: Mikrotik and coaxial output

The only drawback of such setup (apart from being ugly :wink:) is that there's another device consuming power. Not the only. Sometimes, they are quite unstable and have software and/or hardware bugs. So it's almost always better to use media converter than a router (if possible, of course). But for...
by memelchenkov
Tue Sep 19, 2023 3:25 pm
Forum: General
Topic: Mikrotik SUCKS
Replies: 82
Views: 12888

Re: Mikrotik SUCKS

@millenium7 yes, AFAIK it is, Cisco cert is relatively easy to buy without real knowledge, there are special people for this.
by memelchenkov
Mon Sep 18, 2023 5:22 pm
Forum: Beginner Basics
Topic: VPN Client Can Access Local Network but Not the MikroTik Router Itself
Replies: 4
Views: 2902

Re: VPN Client Can Access Local Network but Not the MikroTik Router Itself

Create address list with your VPN address range, then:
add action=accept chain=input comment="accept requests to MikroTik from VPN" \
ipsec-policy=in,ipsec src-address-list=LAN
by memelchenkov
Sun Sep 17, 2023 2:20 am
Forum: General
Topic: Mikrotik SUCKS
Replies: 82
Views: 12888

Re: Mikrotik SUCKS

You and your colleagues should get offline training. You are right, MikroTik's UI is counter-intuitive, even for those who knows Linux, and you'll spend months mastering it yourself. However, knowing how these UI sections interacts with hardware and with each other, it will not be harder than any ot...
by memelchenkov
Fri Sep 15, 2023 5:23 pm
Forum: General
Topic: Feature requests
Replies: 1742
Views: 637279

Re: Feature requests

And another (much repeated request) for a NATIVE MacOS Winbox version. Currently have to start VMWare Fusion just to start Winbox....
WinBox works perfectly under CrossOver for ages, you do not need virtualisation software to run it.
by memelchenkov
Fri Sep 15, 2023 1:49 am
Forum: Wireless Networking
Topic: WiFi with Apple Products
Replies: 99
Views: 31863

Re: WiFi with Apple Products

How do you force the device to join only 5G band? There are two ways: 1. Separate network names for 2.4 Ghz and 5 Ghz networks . 2. When the same name, use "Access List" tab of Wireless, add necessary MAC addresses, select 2.4 Ghz interface and uncheck "Authentication" and "...
by memelchenkov
Mon Sep 11, 2023 12:32 am
Forum: General
Topic: Winbox2 and Winbox3 Differences pertinent to Windows10
Replies: 14
Views: 3353

Re: Winbox2 and Winbox3 Differences pertinent to Windows10

Maybe it's better to change base OS than WinBox. Windows is a kind of system full of strange bugs. It perfectly works under CrossOver on macOS.
by memelchenkov
Sat Sep 09, 2023 5:08 pm
Forum: Beginner Basics
Topic: Successor crs112
Replies: 5
Views: 1738

Re: Successor crs112

but now it is usable only as switch
Now? It has always been a switch and nothing more.
by memelchenkov
Wed Sep 06, 2023 7:42 pm
Forum: Beginner Basics
Topic: when to upgrade ROS (7.xx)
Replies: 24
Views: 3720

Re: when to upgrade ROS (7.xx)

v6 is already out of service for a long time. if you haven't noticed, there are no upgrades for v6 except CVE / critical security fixes (rare)
That's exactly what I mean. It will be out of service when there will no be security fixes.
by memelchenkov
Wed Sep 06, 2023 2:03 pm
Forum: Beginner Basics
Topic: when to upgrade ROS (7.xx)
Replies: 24
Views: 3720

Re: when to upgrade ROS (7.xx)

Upgrade when 6.x branch will be out of service (not anytime soon). “If it ain't broke, don't fix it”.
by memelchenkov
Thu Aug 31, 2023 3:03 pm
Forum: Announcements
Topic: v7.11.2 [stable] is released!
Replies: 348
Views: 165399

Re: v7.11 and 7.11.1 [stable] are released!

7.11 comparing to 7.10 has some issues with Wi-Fi signal strength on Chateau.
by memelchenkov
Wed Aug 16, 2023 1:24 pm
Forum: Announcements
Topic: v7.11.2 [stable] is released!
Replies: 348
Views: 165399

Re: v7.11 [stable] is released!

This update is relatively slow. Don't worry if your router is not up in few seconds. Await several minutes.
by memelchenkov
Sun Aug 06, 2023 10:58 pm
Forum: General
Topic: feature request: faster internet via DNS option
Replies: 11
Views: 1738

Re: feature request: faster internet via DNS option

You may use Docker container with dnsmasq installed, just add necessary option to DHCP so DHCP clients will get the proper server address.
by memelchenkov
Sun Jul 23, 2023 7:26 pm
Forum: General
Topic: Software RSS feeds don't seem to work
Replies: 2
Views: 1252

Re: Software RSS feeds don't seem to work

https://mikrotik.com/current.rss works with Inoreader, also available by direct link, no issues.
by memelchenkov
Wed Jul 19, 2023 9:31 pm
Forum: General
Topic: Mikrotik devices dying
Replies: 7
Views: 1025

Re: Mikrotik devices dying

It could be power adapters issue.
by memelchenkov
Mon Jul 17, 2023 9:38 pm
Forum: Scripting
Topic: Who have as native the Cyrillic alphabet, please help here...
Replies: 10
Views: 2364

Re: Who have as native the Cyrillic alphabet, please help here...

I appreciate the answer, I was dubious just for that specification I cite... The link IS helpful. My intention, of course, is not to offend anyone if there is some mistake… If you have any questions about things related to Cyrillic encodings feel free to ask (probably better in messages or email be...
by memelchenkov
Mon Jul 17, 2023 8:23 pm
Forum: Scripting
Topic: Who have as native the Cyrillic alphabet, please help here...
Replies: 10
Views: 2364

Re: Who have as native the Cyrillic alphabet, please help here...

Cyrillic is not a language, its an alphabet shared across multiple languages And those languages use that alphabet. I don't understand the clarification, it was more than obvious... Your words… "who knows Cyrillic as native language". Was my reply helpful? Or this message is the only you ...
by memelchenkov
Mon Jul 17, 2023 7:46 pm
Forum: Scripting
Topic: Who have as native the Cyrillic alphabet, please help here...
Replies: 10
Views: 2364

Re: Who have as native the Cyrillic alphabet, please help here...

Cyrillic is not a language, its an alphabet shared across multiple languages. I.e. https://en.wikipedia.org/wiki/Romanization_of_Russian and follow "See also" chapter for other languages.
by memelchenkov
Tue May 30, 2023 12:21 pm
Forum: Announcements
Topic: v7.10rc is released!
Replies: 183
Views: 53882

Re: v7.10rc is released!

I agree with above what onnoossendrijver said. Why need to have a printer constantly at 1G? Printers will never have the need for such speed anyway, and it's apparently doing this to save power. Let it do it's thing. My device is not a printer, it's a dock (with Ethernet adapter) connected to a not...
by memelchenkov
Tue May 30, 2023 12:33 am
Forum: Announcements
Topic: v7.10rc is released!
Replies: 183
Views: 53882

Re: v7.10rc is released!

Disabling interface and enabling again, brings it back to 100M. But after 5 minutes ... 10M again. And case closed after further investigation. Someone here at home changed the power settings on the printer so it went to power safe mode after 5 minutes. Time to set an admin passwd on that device to...
by memelchenkov
Tue May 09, 2023 12:50 pm
Forum: General
Topic: what framework is webfig written in?
Replies: 20
Views: 1451

Re: what framework is webfig written in?

My comment was mainly that "rolling your own from scratch" usually no longer makes sense from a maintainability standpoint. Not that it can't be maintained, just that it usually isn't cost effective compared to using a framework. My first program was for MS-DOS v 3.30 on i8086 CPU (honest...
by memelchenkov
Tue Apr 25, 2023 11:16 am
Forum: Beginner Basics
Topic: ROS NTFS file system support
Replies: 3
Views: 1034

Re: ROS NTFS file system support

Replace FAT32 with exFAT then. FAT32 is outdated in all senses. NTFS is proprietary, so Linux implementation is rather buggy and only via FUSE. exFAT is not proprietary, and is in Kernel now (new driver since 5.7).
by memelchenkov
Mon Mar 13, 2023 10:07 am
Forum: Scripting
Topic: Mikrotik script editor and ChatGPT
Replies: 20
Views: 3955

Re: Mikrotik script editor and ChatGPT

ChatGPT “lies” not more than average citizen in real life. It’s not a “lie” by itself but something like a cognitive distortion that humans have. But some people treat it like a strict computer program, like an expert system. No, it’s a “black box” machine transforming input from really big database...
by memelchenkov
Fri Mar 03, 2023 6:33 pm
Forum: General
Topic: ROSE storage
Replies: 18
Views: 5563

Re: ROSE storage

ROSE could be used with the USB to disk on a RB4011
RB4011 is an excellent router, but it does not have USB.
by memelchenkov
Wed Mar 01, 2023 9:33 pm
Forum: RouterOS beta
Topic: MacOS IKEv2 VPN client not working with routerOS
Replies: 29
Views: 7818

Re: MacOS IKEv2 VPN client not working with routerOS

I see only one big difference (except RADIUS auth)

Mine:
/ip ipsec proposal
add auth-algorithms=sha256,sha1 enc-algorithms=aes-256-cbc name=server-ikev2 pfs-group=none

And yours don't have "enc-algorithms" for this string in your config. Maybe it will help?
by memelchenkov
Wed Mar 01, 2023 7:14 pm
Forum: RouterOS beta
Topic: MacOS IKEv2 VPN client not working with routerOS
Replies: 29
Views: 7818

Re: MacOS IKEv2 VPN client not working with routerOS

Self generated certificates? RSA2048? ECDP?
Self-signed, RSA2048. Used fields are "Common Name" and "Subject Alt. Name: DNS" (same as "Common Name"). Key Usage - "tls client" for client and "tls server" for server.
by memelchenkov
Wed Mar 01, 2023 5:26 pm
Forum: RouterOS beta
Topic: MacOS IKEv2 VPN client not working with routerOS
Replies: 29
Views: 7818

Re: MacOS IKEv2 VPN client not working with routerOS

With username/password + certificate?
With certificate only (User Authentication: None, Machine Authentication: Certificate).
by memelchenkov
Wed Mar 01, 2023 7:28 am
Forum: RouterOS beta
Topic: MacOS IKEv2 VPN client not working with routerOS
Replies: 29
Views: 7818

Re: MacOS IKEv2 VPN client not working with routerOS

I successfully connect to IKEv2 VPN on macOS 13.2.1 M1 Max CPU both to 6.x branch and 7.x branch. Try also watch logs of IPsec in macOS Console.app.
by memelchenkov
Mon Feb 27, 2023 1:44 pm
Forum: General
Topic: Is mum.mikrotik.com offline or moved?
Replies: 7
Views: 885

Re: Is mum.mikrotik.com offline or moved?

Now works. At the time when OP posted it — not worked for me with the same error, too.
by memelchenkov
Mon Feb 27, 2023 12:06 pm
Forum: Announcements
Topic: v7.8 [stable] is released!
Replies: 425
Views: 140244

Re: v7.8 [stable] is released!

why there is missing zero tier on Arm?!!!
It's there, in all_packages-arm-7.8.zip file.
by memelchenkov
Sun Feb 26, 2023 4:30 pm
Forum: General
Topic: Download Speed Issue
Replies: 2
Views: 376

Re: Download Speed Issue

- Bad idea to upgrade the firmware, because you had a well-known working solution, then something happened externally, and now you changed internal conditions, so understand what happened will be much harder now. - Check logs what you see there. - Try to change Wi-Fi channel. Probably someone pollut...
by memelchenkov
Fri Feb 24, 2023 7:08 pm
Forum: Announcements
Topic: v7.7 [stable] is released!
Replies: 357
Views: 114085

Re: v7.7 [stable] is released!

Here is memory usage graph since Aug 2022. Jan 12 2023 is a point where I updated the firmware from 7.6 to 7.7, and then the graph level started increasing. It's a router which is in use by only 2 people. I do not know, what is it — caches, or not, but, if developers did not do changes related to ca...
by memelchenkov
Tue Feb 21, 2023 10:49 am
Forum: Beginner Basics
Topic: Why doesn't the port open?
Replies: 26
Views: 2046

Re: Why doesn't the port open?

Your ISP may filter game ports. Ask them, is it, or not.
by memelchenkov
Mon Feb 20, 2023 9:52 am
Forum: General
Topic: New to mikrotik
Replies: 3
Views: 554

Re: New to mikrotik

Looking back, I would prefer to enroll in courses, rather than learning it myself. In fact, all concepts are taken from Linux (after all, this is what it is), but you need to be an advanced network engineer in order to learn MikroTik “at a glance”. As for WinBox, many of us uses it via Wine from Mac...
by memelchenkov
Wed Feb 15, 2023 10:02 pm
Forum: Scripting
Topic: Detect device that take down network
Replies: 4
Views: 1282

Re: Detect device that take down network

One more idea is so-called "ethernet loops". It could caused by faulty Ethernet card. You should configure some loop-detection feature on your switch or router.
by memelchenkov
Wed Feb 15, 2023 9:41 pm
Forum: Scripting
Topic: Detect device that take down network
Replies: 4
Views: 1282

Re: Detect device that take down network

I know this is a shot in the dark but anyone ever experienced this? Sure. It's a standard task for any network administrator. Watch logs and sniff traffic. First, you should determine what happening. Next, make to avoid it (depends on kind of situation). I am sure there is some traffic analyzing so...
by memelchenkov
Sun Jan 29, 2023 1:23 pm
Forum: General
Topic: Block Youtube on computers and smartphone apps
Replies: 85
Views: 18772

Re: Block Youtube on computers and smartphone apps

BTW: SNI intercept can also help in blocking youtube etc.
TLS 1.3 encrypts SNI. So this method is gone now.
by memelchenkov
Fri Jan 20, 2023 12:42 pm
Forum: Announcements
Topic: v7.7 [stable] is released!
Replies: 357
Views: 114085

Re: v7.7 [stable] is released!

@leonardogyn why do you think it's a leak and not a cache? There are many different kinds of memory in Linux kernel. The properly working system should use the whole available memory to maximize its performance and free it only when necessary. So I'd like to know why you decided it's a leak and not ...
by memelchenkov
Thu Jan 12, 2023 8:33 pm
Forum: Announcements
Topic: v7.7 [stable] is released!
Replies: 357
Views: 114085

Re: v7.7 [stable] is released!

memelchenkov - Please send supout file from your router to support@mikrotik.com. Please note that your router did fail while running v7.6. The issue is not caused by v7.7. It seems you are right, that the problem is not related to 7.7 upgrade, thanks! I rebooted without trying to update and the sam...
by memelchenkov
Thu Jan 12, 2023 7:50 pm
Forum: Announcements
Topic: v7.7 [stable] is released!
Replies: 357
Views: 114085

Re: v7.7 [stable] is released!

I have downloaded. ARM Chateau. But after reboot still 7.6, no upgrade performed. Tried twice. In logs: "router was rebooted without proper shutdown, probably kernel failure".
by memelchenkov
Fri Sep 23, 2022 2:28 pm
Forum: Beginner Basics
Topic: My open ports: 443 & 1723
Replies: 32
Views: 5043

Re: My open ports: 443 & 1723

You do it wrong way:
- Do not use PPTP, it's an insecure protocol.
- Do not open management interface from outside the network.

The proper way:
- Establish secure OpenVPN/IPSEC/WireGuard channel.
- After, connect to the router by its internal IP address (Web, WinBox and so on, as you wish).
by memelchenkov
Wed Aug 10, 2022 1:36 pm
Forum: RouterBOARD hardware
Topic: hAP ax² dual band Wi-Fi 6 (802.11ax)
Replies: 287
Views: 67551

Re: hAP ax² dual band Wi-Fi 6 (802.11ax)

It is very hard for an OEM to select the features to include or exclude.
If they buy OEM hardware, what another manufacturers use the same platforms?
by memelchenkov
Sat Jul 16, 2022 8:11 pm
Forum: General
Topic: Proton VPN on Mikrotik
Replies: 3
Views: 1060

Re: Proton VPN on Mikrotik

Why check YouTube and different sites if ProtonVPN has its own manual? https://protonvpn.com/support/vpn-mikrotik-router/
by memelchenkov
Sun Jun 12, 2022 10:00 am
Forum: Announcements
Topic: v7.4beta [testing] is released!
Replies: 189
Views: 61588

Re: v7.4beta [testing] is released!

*) bridge - properly process IPsec decapsulated packets through the firewall when the "use-ip-firewall" option is enabled; NAT with IPSEC with Use IP Firewall enabled still not working correctly. Connections are freezes. Fortunately, Bridge Filter Marks now works!! So IP Firewall for some...
by memelchenkov
Wed Jun 08, 2022 9:32 am
Forum: Announcements
Topic: v7.4beta [testing] is released!
Replies: 189
Views: 61588

Re: v7.4beta [testing] is released!

memelchenkov - Works for us. Can you provide supout file from this device to support@mikrotik.com which would be generated right after you have tried to make a backup?
SUP-84114 just filed. Thanks!
by memelchenkov
Tue Jun 07, 2022 9:36 pm
Forum: Announcements
Topic: v7.4beta [testing] is released!
Replies: 189
Views: 61588

Re: v7.4beta [testing] is released!

"RouterOS WinBox Error — Couldn't make backup - action failed (6)" when doing backup. 7.4beta2 on RBD53G-5HacD2HnD (Chateau).
by memelchenkov
Wed Jun 01, 2022 9:22 pm
Forum: General
Topic: My RB4011 with ROS 7.2.3 still consume 100% cpu on only 1 core. [SOLVED]
Replies: 18
Views: 3116

Re: My RB4011 with ROS 7.2.3 still consume 100% cpu on only 1 core. [SOLVED]

I doubt anybody will fix PPTP even if there is some bug.
by memelchenkov
Tue May 31, 2022 4:20 pm
Forum: General
Topic: Question regarding IKEv2/IPSEC route based
Replies: 16
Views: 5818

Re: Question regarding IKEv2/IPSEC route based

Replying to author's original post: if I remember correctly, route-based IPSEC is a standard choice on *BSD systems (and routers based on it), not on Linux. VTI/XFRM interfaces, which probably could implement what you want (sorry, I can't say exactly because did not work with them), are not implemen...
by memelchenkov
Wed May 25, 2022 9:50 am
Forum: General
Topic: VPN does not work with Cloud DDNS
Replies: 6
Views: 937

Re: VPN does not work with Cloud DDNS

Thank you for posting feedback! I am glad I was able to help you.
by memelchenkov
Tue May 24, 2022 2:40 pm
Forum: General
Topic: VPN does not work with Cloud DDNS
Replies: 6
Views: 937

Re: VPN does not work with Cloud DDNS

You’ll need to enable debug for “ipsec” and “l2tp” topics.
https://help.mikrotik.com/docs/display/ROS/Log
by memelchenkov
Tue May 24, 2022 1:11 pm
Forum: General
Topic: VPN does not work with Cloud DDNS
Replies: 6
Views: 937

Re: VPN does not work with Cloud DDNS

- Check IP of your DDNS domain is the same as your public IP.
- Enable debug logging both on client and server and look which part of VPN communication have issues.
by memelchenkov
Mon May 23, 2022 4:38 pm
Forum: General
Topic: DHCP Leases
Replies: 18
Views: 1104

Re: DHCP Leases

i am using hotspot, users due to ip change, they have to login again
You may use MAC cookie feature to avoid this: https://wiki.mikrotik.com/wiki/Manual:H ... MAC_Cookie
by memelchenkov
Sun May 22, 2022 7:59 am
Forum: Announcements
Topic: v6.49.6 [stable] is released!
Replies: 56
Views: 85220

Re: v6.49.6 [stable] is released!

Hola Amigo! It's the only two words I know in Spanish! Welcome to our forum!
by memelchenkov
Thu May 12, 2022 4:33 pm
Forum: RouterBOARD hardware
Topic: cAP ac availability
Replies: 10
Views: 2710

Re: cAP ac availability

You forgot the new COVID lockdown in China which already holds for several weeks.
by memelchenkov
Wed May 11, 2022 8:37 pm
Forum: General
Topic: Access attempts from ShadowServer
Replies: 4
Views: 820

Re: Access attempts from ShadowServer

Once I tried to mitigate attacks from DigitalOcean network. I tried to reach their abuse/security department very hard with no adequate reaction. In my opinion, it was a serious issue, with a real malicious activity. It seems, ShadowServer works on opposite side—they try to make the Internet more se...
by memelchenkov
Mon May 09, 2022 10:28 am
Forum: Wireless Networking
Topic: Need help with WiFi in Apartments/Flats
Replies: 11
Views: 4531

Re: Need help with WiFi in Apartments/Flats

Hmm, it's a quite interesting situation. That's true, you can't have much 2.4 Ghz Wi-Fi in a small environment. What about if set up common hallway-based powerful enough Wi-Fi APs, and set 802.1x authentication for each user. Then you will be able to limit their Internet based on their tariff plan.
by memelchenkov
Sat May 07, 2022 9:40 pm
Forum: General
Topic: P2P IPSEC strange behavere [SOLVED]
Replies: 31
Views: 2946

Re: P2P IPSEC strange behavere [SOLVED]

It may be due wrong PFS. Try 'none' to make sure it is not related.
It may be due to 7.x firmware if you use it, they have some bugs, depends on configuration.
by memelchenkov
Thu Apr 28, 2022 10:41 am
Forum: Announcements
Topic: v7.3rc [testing] is released!
Replies: 452
Views: 104050

Re: v7.3beta [testing] is released!

*) bridge - fixed packet marking for IP/IPv6 firewall;
Please tell, what exactly fixed? Will it fix SUP-72355?
by memelchenkov
Wed Mar 02, 2022 2:08 pm
Forum: Announcements
Topic: v7.2rc4 is released!
Replies: 143
Views: 42564

Re: v7.2rc4 is released!

- Some problems with switching Wi-Fi networks (different SSIDs on the same router). Hardware (phone, notebook) reports "Network not found", but on the second try it connects OK. Not happened with 7.1.3. + Performance a lot better than before (CPU monitoring show normal load at 100 Mbps rou...
by memelchenkov
Sun Feb 27, 2022 11:38 am
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

UPD: the situation reappears after two days. Bridge IP Firewall is not fixed. Do not use it at all, very buggy feature.
by memelchenkov
Fri Feb 25, 2022 6:24 pm
Forum: RouterOS beta
Topic: Russia only: MTS VoWIFI issues [SOLVED]
Replies: 4
Views: 3399

Re: Russia only: MTS VoWIFI issues [SOLVED]

It was issue with NAT and Bridge IP Firewall: NAT worked incorrectly. It was fixed in 7.2rc4.
UPD: no, not fixed.
by memelchenkov
Fri Feb 25, 2022 6:23 pm
Forum: General
Topic: Bridge filter and Chateau [SOLVED]
Replies: 1
Views: 713

Re: Bridge filter and Chateau [SOLVED]

The support is already aware of the problem, they reproduced it, and will fix it in next ROS 7 versions.
by memelchenkov
Fri Feb 25, 2022 6:23 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

NAT with Bridge IP Firewall bug is now fixed in 7.2rc4. Bridge Filters (packet-marks not working) are not fixed yet, but the support is already reproduced the problem and will fix it in future. For me, my situation is solved now (I hope :), because I use Bridge IP Firewall, not Bridge Filter for my ...
by memelchenkov
Thu Feb 24, 2022 4:13 pm
Forum: Announcements
Topic: v7.2rc4 is released!
Replies: 143
Views: 42564

Re: v7.2rc4 is released!

Thanks but it seems that v 7.2rc3 cannot be downloaded... (or where exactly?) the archive contains only stable releases, not beta and rc? You may download it by direct link: https://download.mikrotik.com/routeros/7.2rc3/routeros-7.2rc3-arm.npk (I just replaced "4" from current download li...
by memelchenkov
Wed Feb 23, 2022 3:30 pm
Forum: Announcements
Topic: v7.1.3 is released!
Replies: 251
Views: 56910

Re: v7.1.3 is released!

Oh, thank you so much!, its possibe to disable or remove? thanks
I doubt.
by memelchenkov
Wed Feb 23, 2022 3:12 pm
Forum: Announcements
Topic: v7.1.3 is released!
Replies: 251
Views: 56910

Re: v7.1.3 is released!

Upgrade my devices, all working property, but, what is (xxxus) after (xxms) ping? i never seen that before upgrade. Thanks
Microseconds (μs).
by memelchenkov
Wed Feb 23, 2022 11:37 am
Forum: Announcements
Topic: v7.2rc2 and v7.2rc3 is released!
Replies: 222
Views: 86359

Re: v7.2rc2 and v7.2rc3 is released!

For example, in the old days of Windows NT development there were about 5000 developers and about 5000 testers, that's why the resulting programs run so well, even to this day. 😳🤪 Seriously? We must have a different understanding of " run so well ". Comparing to 9x branch? It ran VERY well.
by memelchenkov
Wed Feb 23, 2022 11:35 am
Forum: Announcements
Topic: v7.2rc2 and v7.2rc3 is released!
Replies: 222
Views: 86359

Re: v7.2rc2 and v7.2rc3 is released!

No one downplays MikroTik. But some things get very annoying, especially when you can't solve them for months.
by memelchenkov
Wed Feb 23, 2022 11:27 am
Forum: Announcements
Topic: v7.2rc2 and v7.2rc3 is released!
Replies: 222
Views: 86359

Re: v7.2rc2 and v7.2rc3 is released!

In today's world they are very good standing, if comparing. In today's world any software become a piece of ... Customers are no longer engineers, but zoomers with no education. They are brought up on SJW ideas, not qualities. I talk like an old fart, but I feel that I got into the forest, and aroun...
by memelchenkov
Wed Feb 23, 2022 11:04 am
Forum: Announcements
Topic: v7.2rc2 and v7.2rc3 is released!
Replies: 222
Views: 86359

Re: v7.2rc2 and v7.2rc3 is released!

We are here, on the forum, already noticed MikroTik lacks proper QA team. It's not related to dev. team and support team, but to very poor management decisions (nobody will forget when they sold Chateau device with alpha-quality firmware without mentioning it, and only after 1-2 years on the market ...
by memelchenkov
Sat Feb 19, 2022 3:50 pm
Forum: General
Topic: How can I deny .exe file type download
Replies: 8
Views: 1818

Re: How can I deny .exe file type download

What do you mean you can’t limit client? Limit him by MAC, or by dot1x. Administrative actions, all in one. If it’s a company—then it’s not a problem at all, fine-then-fire policy works well. If some public network… there are variants too.
by memelchenkov
Fri Feb 18, 2022 9:47 pm
Forum: RouterBOARD hardware
Topic: Problems with hardware availability in EU
Replies: 5
Views: 1344

Re: Problems with hardware availability in EU

Worldwide chip shortcoming. Logistics problems (seriously, hard times due COVID).
by memelchenkov
Thu Feb 17, 2022 3:32 pm
Forum: General
Topic: Webpage no longer displaying
Replies: 5
Views: 717

Re: Webpage no longer displaying

Too little information. I suggest you to start regular diagnostics procedure which involves standard steps: - sniff traffic from the Internet port till the server port, at each point; - analyze the traffic; - if no issues, then proceed with investigation of the server. This way I fixing many problem...
by memelchenkov
Wed Feb 16, 2022 6:11 pm
Forum: General
Topic: EoIP client for Windows
Replies: 8
Views: 10196

Re: EoIP client for Windows

MikroTik CHR? You can run it in virtualization software on Windows.
by memelchenkov
Wed Feb 16, 2022 5:50 pm
Forum: General
Topic: Webpage no longer displaying
Replies: 5
Views: 717

Re: Webpage no longer displaying

If you did not change the network configuration then why you thinking the problem is in the MikroTik? Check your server first.
by memelchenkov
Wed Feb 16, 2022 3:41 pm
Forum: Announcements
Topic: v7.2rc2 and v7.2rc3 is released!
Replies: 222
Views: 86359

Re: v7.2rc2 and v7.2rc3 is released!

bridge - fixed bridge filter and NAT rules on ARM64 and TILE devices; -- please tell what's exactly fixed? I experience bridge filter and bridge IP firewall issues in 7.1.2. Bridge Filter do not mark packets, and bridge IP firewall breaks NAT. But it's ARM platform (Chateau), not ARM64. Does this f...
by memelchenkov
Wed Feb 16, 2022 3:24 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

but you have to add some src-address(-list) condition to restrict the effect of the rule only to traffic initiated from your local LAN subnets. If that doesn't help, I cannot see any other way how to distinguish the routing phase from the bridging phase. It seems it does not work that way. When add...
by memelchenkov
Wed Feb 16, 2022 12:31 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

If you mean below rule, then this rule just blocks everything.
/ip firewall raw
add action=notrack chain=prerouting in-interface=!bridge
by memelchenkov
Wed Feb 16, 2022 12:21 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

There is no in-bridge-port-list option for RAW section.
However, I use this option in Mangle section, to connection-mark traffic coming from specific WLAN interfaces which destination is WAN.
by memelchenkov
Wed Feb 16, 2022 12:05 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

/interface bridge settings set use-ip-firewall=yes ? This. I didn't think about this, thanks (and MikroTik support didn't think about this too). Sounds reasonable. However, I do not realize how to implement raw rule with both "In. Interface" and "Out. Interface" options, to excl...
by memelchenkov
Wed Feb 16, 2022 11:28 am
Forum: Virtualization
Topic: Container on MIPS hardware
Replies: 1
Views: 4022

Re: Container on MIPS hardware

Just for own education: why Tailscale if there is already ZeroTier?
by memelchenkov
Wed Feb 16, 2022 11:19 am
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

The support still did not solve the issue. The reply was still the same as before: check routing (it's OK), make sure your provider's NAT is OK. They checked router config, config is also well. When sending follow-up, no reply back. I just found they did not fix Bridge IP Firewall, however they told...
by memelchenkov
Wed Feb 16, 2022 10:14 am
Forum: General
Topic: Bridge filter and Chateau [SOLVED]
Replies: 1
Views: 713

Bridge filter and Chateau [SOLVED]

Hello!

Can somebody test on Chateau (or maybe other device) with 7.1.2 if bridge filter working for them? I mark packets in bridge filter but do not see these marks in Firewall Mangle section.
by memelchenkov
Thu Feb 10, 2022 6:23 pm
Forum: Announcements
Topic: WinBox v3.33 and v3.34 released!
Replies: 102
Views: 25825

Re: WinBox v3.33 and v3.34 released!

What's new in v3.34:

*) fixed WinBox crash on startup (introduced in v3.33);
Thank you!
by memelchenkov
Thu Feb 10, 2022 4:28 pm
Forum: Announcements
Topic: WinBox v3.33 and v3.34 released!
Replies: 102
Views: 25825

Re: WinBox v3.33 released!

For anyone looking for previous version of WinBox: https://download.mikrotik.com/winbox/3.33/winbox64.exe
There should be 3.32: https://download.mikrotik.com/winbox/3.32/winbox64.exe

PS: fix 3.33 for Crossover, please, there is a demand.
by memelchenkov
Wed Feb 09, 2022 4:26 pm
Forum: Useful user articles
Topic: WinBox for MacOS ??
Replies: 32
Views: 14005

Re: WinBox for MacOS ??

I don't see why the app should be made in Electron. iOS already has MikroTik app, and it startup timings are very fast, and its size is only 25 MB. Probably, some cross-platform toolkit, but with native performance.
by memelchenkov
Tue Feb 08, 2022 11:43 am
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

Overall information from this forum shows that there are different issues with VoWiFi, and one of them is lack (or blocking) of keep-alive packets. But, it is not the single possible issue (i.e. it's not related to my case). Second issue is NAT problems, like in my case, as stated by tech. support. ...
by memelchenkov
Tue Feb 08, 2022 11:35 am
Forum: RouterOS beta
Topic: Russia only: MTS VoWIFI issues [SOLVED]
Replies: 4
Views: 3399

Re: Russia only: MTS VoWIFI issues [SOLVED]

works
MTS VoWiFi works for you on firmware 7.1.1? Moscow region?
by memelchenkov
Fri Jan 28, 2022 5:07 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

Waiting for resolution from MikroTik side.
by memelchenkov
Fri Jan 28, 2022 3:14 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

what I see: src-address: LAN IP -> dst-address: MTS IP. And src-address: MTS IP -> dst-address: Provider IP. On what interfaces? wlanX->bridge->pppoe? Here is the dump. 10.x - LAN, x.77 - MTS VoWiFi IP, x.61 - my provider. [admin@Router] > /tool sniffer quick ip-address=x.77 Columns: INTERFACE, TIM...
by memelchenkov
Fri Jan 28, 2022 2:56 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

Still... if you shut down WiFi on the phone, wait for the existing weird connections to die off (3+ minutes), then run /tool sniffer quick ip-address=ip.of.the.exchange and switch on the WiFi on the phone, what does the sniffer output show? Wi-Fi calling was turned off on the phone, at least one da...
by memelchenkov
Thu Jan 27, 2022 7:51 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

But I've got another idea - would it be possible that if the WAN goes down for some reason, the packets towards the exchange take some other route than via the WAN gateway? That would explain why the new connection is not src-nated. No, it do not goest down. Indeed, I have interface list as masquer...
by memelchenkov
Thu Jan 27, 2022 7:13 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

And there is no restriction of allowed to-ports in the src-nat/masquerade rule that normally creates the correct, bi-diectional & src-nated, connection? Sure no. A default plain masquerade rule. Maybe the newer version of ipfilter in RouterOS 7 behaves differently in the same situation, but… I ...
by memelchenkov
Thu Jan 27, 2022 2:24 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

So connection #4 should have been src-nated (unless there is an issue in chain srcnat of nat , which is unlikely as it works for some time after reboot) but it is not, and connection #3 should not have been even accepted unless connections to UDP port 4500 are permitted in chain input of filter . I...
by memelchenkov
Thu Jan 27, 2022 12:39 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

When you had double entries, was one of them with an untranslated port number 4500 and the other one with a different reply port number? Look: * IP ends with .77 is cellular provider's IP. * IP ends with .61 is my external IP. * IP 10.0.0.24 is cellphone's IP. https://i.postimg.cc/4d9ZxhJ6/Double-e...
by memelchenkov
Tue Jan 25, 2022 4:55 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

I can hardly imagine how a forwarded UDP connection on a NATing router could create two independent unidirectional connections, unless... Yes, it's a very unusual situation. Sorry for not sharing details publicly, but I created one more ticket with support, #[SUP-72355], especially related to this ...
by memelchenkov
Sat Jan 22, 2022 1:37 am
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

A stupid question - the phone keeps sending its IPsec traffic to port 4500 of the IP address of the mobile exchange. Assuming you haven't intentionally told the src-nat/masquerade rule to use only a single specific port at your WAN IP address for this connection, if you run /tool/sniffer/quick ip-a...
by memelchenkov
Fri Jan 21, 2022 2:37 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

7.1.1 firmware seems solved problems with VoWIFI I experienced. I updated yesterday and still testing it, but for these two days it works well. Unfortunately, I was too optimistic. On the third day it stops working. The situation as was before: on port 4500 (UDP) there is only one-way traffic, beca...
by memelchenkov
Mon Jan 17, 2022 4:12 pm
Forum: General
Topic: Cannot dial out wifi-call from mobile phone [SOLVED]
Replies: 79
Views: 28216

Re: Cannot dial out wifi-call from mobile phone [SOLVED]

7.1.1 firmware seems solved problems with VoWIFI I experienced. I updated yesterday and still testing it, but for these two days it works well.
by memelchenkov
Wed Dec 15, 2021 2:13 am
Forum: RouterOS beta
Topic: Speed drop after update to 7.1stable [SOLVED]
Replies: 39
Views: 17565

Re: Speed drop after update to 7.1stable [SOLVED]

Bridge filtering and bridge IP firewall do not work as expected. It’s better to avoid them until they will be fixed.
by memelchenkov
Tue Dec 14, 2021 10:34 am
Forum: Announcements
Topic: v7.1 is released!
Replies: 785
Views: 226781

Re: v7.1 is released!

Bridge filtering and bridge IP Firewall Filter still working abnormal. Chateau device. I mention it in SUP-66472.
by memelchenkov
Fri Nov 19, 2021 11:13 am
Forum: RouterOS beta
Topic: Russia only: MTS VoWIFI issues [SOLVED]
Replies: 4
Views: 3399

Re: Russia only: MTS VoWIFI issues [SOLVED]

I found it is NAT issue. Instead of creating mapping LAN_IP:4500 <--> SERVER_IP:4500 Connections tab has two unrelated connections LAN_IP:4500 -> SERVER_IP:4500 and SERVER_IP:4500 -> PUBLIC_IP:4500. So, instead of passing traffic in NATted connection both connections are stalled due this. What's the...
by memelchenkov
Thu Nov 18, 2021 9:20 am
Forum: RouterOS beta
Topic: Russia only: MTS VoWIFI issues [SOLVED]
Replies: 4
Views: 3399

Russia only: MTS VoWIFI issues [SOLVED]

Hello fellow Russian citizens, Anybody use Chateau with 7.0.3/7.0.5 stable firmware? I experiencing issues with MTS Moscow VoWIFI. Port 4500 connection has xxx/0 bytes — in other words, IPSEC channel does not receive anything. Sometimes it does, sometimes not. I do not see a logic. Probably it's a b...
by memelchenkov
Mon Sep 20, 2021 1:47 pm
Forum: General
Topic: Only 100Mbps full-duplex speed on 1Gbps port
Replies: 5
Views: 3242

Re: Only 100Mbps full-duplex speed on 1Gbps port

only cable is different
Then the problem is in the cable (or, at least, this cable is the most problematic item in all hardware). The cable is probably out of specification (fake), or was damaged during installation/operation (i.e. rats).
by memelchenkov
Mon Sep 20, 2021 1:35 pm
Forum: General
Topic: Only 100Mbps full-duplex speed on 1Gbps port
Replies: 5
Views: 3242

Re: Only 100Mbps full-duplex speed on 1Gbps port

I have tried this cable outside the wall (though it is much shorter) with a different socket (not that in-wall socket I have everywhere), that one worked perfectly with 1Gbps speed. That's the answer. You have a cable/socket hardware problem. Make sure your cable and socket are 1Gbps compatible and...
by memelchenkov
Mon Sep 20, 2021 1:08 pm
Forum: General
Topic: HELP! Mikrotik router is accessible from outside
Replies: 4
Views: 828

Re: HELP! Mikrotik router is accessible from outside

Mikrotik router is accessible from outside but there are no rules to allow the same. How is this possible?
There is only one possibility: misconfiguration.
Show your config.
by memelchenkov
Mon Sep 13, 2021 8:45 pm
Forum: Beginner Basics
Topic: NordVpn extremely slow
Replies: 12
Views: 6008

Re: NordVpn extremely slow

Search this forum for 'mss fix', probably that is.
by memelchenkov
Sat Aug 28, 2021 10:21 pm
Forum: General
Topic: HotSpot minimum set of HTML files
Replies: 1
Views: 569

HotSpot minimum set of HTML files

Hello!

What's the minimum set of HTML files in hotspot directory? I mean, can I remove i.e. logout.html, status.html, radvert.html, ...? I want to customize only login.html and (if this file is mandatory) error.html, and delete all others as non-customized. Am I right doing this or not?
by memelchenkov
Fri Jul 16, 2021 12:38 pm
Forum: RouterOS beta
Topic: v7 launch date
Replies: 156
Views: 49496

Re: v7 launch date

Sorry for my ignorance, but why does anybody need route filters?
It's a carrier-grade feature. https://mum.mikrotik.com/presentations/ ... 374753.pdf
by memelchenkov
Fri Jul 16, 2021 12:22 am
Forum: Scripting
Topic: Create an .exe for restarting the mikrotik
Replies: 14
Views: 2678

Re: Create an .exe for restarting the mikrotik

I have not used policies for myself, but, according to documentation https://help.mikrotik.com/docs/display/ROS/User, isn't it enought to create a user with "reboot" only policy disabling other policies? And allow API only access to router. By the way, why to restart MikroTik? It's super-s...
by memelchenkov
Wed Jul 14, 2021 10:23 am
Forum: RouterOS beta
Topic: LTE issues on Mikrotik Chateau - looking for 7.1Beta4 D/L
Replies: 10
Views: 2955

Re: LTE issues on Mikrotik Chateau - looking for 7.1Beta4 D/L

I have 7.1b4. Mail me: m at emelchenkov dot pro, I'll send you.
I also have 7.0.3 stable for Chateau.
by memelchenkov
Wed Jul 14, 2021 8:37 am
Forum: General
Topic: RouterOS 6 on Chateau LTE??
Replies: 2
Views: 690

Re: RouterOS 6 on Chateau LTE??

Not possible. But there is stable 7.0.3 version, try it: viewtopic.php?f=1&t=175201&p=865504#p865428
by memelchenkov
Sun Jul 11, 2021 8:07 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243504

Re: v7.1beta6 [development] is released!

How to subscribe to updates for new versions of 7.0.x stable for Chateau? I downgraded to 7.0.3 from 7.1b4 and pretty happy with it. So I want to continue get updates for a stable channel.
by memelchenkov
Thu Jul 08, 2021 12:14 pm
Forum: RouterOS beta
Topic: mDNS repeater feature
Replies: 330
Views: 101445

Re: mDNS repeater feature

To those people asking for mDNS, can you give examples where it will be useful? I.e. network printers in wired network shared with VLAN of wireless clients. Connections to printers are allowed by firewall, but mDNS are not routed so users must enter IP addresses rather than use auto-discovery featu...
by memelchenkov
Tue Jul 06, 2021 11:03 pm
Forum: General
Topic: btest server listen interfaces issue
Replies: 0
Views: 705

btest server listen interfaces issue

Hello. I have two MikroTik routers with IPSEC channel between them. I run btest server on both of them. I am able to connect from btest client of first router to a btest server of second router by external IP (PPPoE), but I am not able to do it by its internal IP (which belongs to 'bridge' and avail...
by memelchenkov
Fri Jul 02, 2021 3:18 pm
Forum: RouterOS beta
Topic: v7 launch date
Replies: 156
Views: 49496

Re: v7 launch date

My experience of downgrading form 7.1beta4 to 7.0.3: - I uploaded 7.0.3 firmware and rebooted. - My configuration flushed. - But I am able to connect via Neighbours tab. Probably, above procedure was my mistake (I don't really know why my config was flushed). After: - I uploaded 7.0.3 firmware again...
by memelchenkov
Fri Jul 02, 2021 11:56 am
Forum: RouterOS beta
Topic: v7 launch date
Replies: 156
Views: 49496

Re: v7 launch date

Do not upgrade Chateau from 7.1beta4 to 7.0.3. It will not boot after upgrade. I will investigate it a bit later.
by memelchenkov
Mon Jun 28, 2021 2:37 pm
Forum: RouterOS beta
Topic: v7 launch date
Replies: 156
Views: 49496

Re: v7 launch date

Chateau cannot run on RouterOS v6. It is shipped with v7.0.X (stable) , which is different than 7.1betaX (development) . Historically, RouterOS is released per platform (x86, arm, mips, tile, etc.). Unfortunately, there is no stable per-platform ROS v7 available yet. So the decision has been made t...
by memelchenkov
Sat Jun 26, 2021 4:11 pm
Forum: RouterOS beta
Topic: Adding 3rd party packages
Replies: 5
Views: 2300

Re: Adding 3rd party packages

You can install OpenWRT on some MikroTik routers.
by memelchenkov
Mon Jun 07, 2021 5:54 pm
Forum: RouterOS beta
Topic: Feature request: Wildcard DNS on Address Lists
Replies: 14
Views: 5469

Re: Feature request: Wildcard DNS on Address Lists

It's a provocation, you do not notice that? you think really routeros go test from You got it wrong. A device queries Mikrotik's DNS server -> address list filed. That's all. It's how it works now (?) — I don't know exactly how it is implemented now, but IP address appears at the list after request...
by memelchenkov
Mon Jun 07, 2021 4:22 pm
Forum: RouterOS beta
Topic: Feature request: Wildcard DNS on Address Lists
Replies: 14
Views: 5469

Re: Feature request: Wildcard DNS on Address Lists

(using e.g. bgpq3) You usually don’t want to get all AS range. You may not know all ASes used by website. And it involves 3rd-party integration anyway. For home/small offices it’s overkill. I am pretty happy with what embedded DNS server and Firewall Address List offers, just want to be it more fle...
by memelchenkov
Mon Jun 07, 2021 3:16 pm
Forum: RouterOS beta
Topic: Feature request: Wildcard DNS on Address Lists
Replies: 14
Views: 5469

Re: Feature request: Wildcard DNS on Address Lists

Use an external DNS server for that?
I use these lists for traffic forwarding, not blocking. So, this feature built into Mikrotik will be perfect. Even more, it’s already there, just no wildcard support yet.
by memelchenkov
Mon Jun 07, 2021 3:14 pm
Forum: RouterOS beta
Topic: Feature request: Wildcard DNS on Address Lists
Replies: 14
Views: 5469

Re: Feature request: Wildcard DNS on Address Lists

like put "*.google.it" and the routeros try to resolve (address to add ip on address-list)
all possible combination
Yes.
by memelchenkov
Mon Jun 07, 2021 12:56 pm
Forum: RouterOS beta
Topic: Feature request: Wildcard DNS on Address Lists
Replies: 14
Views: 5469

Feature request: Wildcard DNS on Address Lists

Hello! It will be cool if you will implement wildcards for Firewall Address List. It's easy to use with internal DNS server, easier than L7 processing. There already were such requests but they were for v6, so I hope for v7 we'll finally see it.
by memelchenkov
Thu Jun 03, 2021 9:43 am
Forum: Scripting
Topic: Torrent blocking working in y2020
Replies: 34
Views: 27714

Re: Torrent blocking working in y2020

Why would you want to do this? Torrent is illegal where i live,,,,,, if i don't block it then our small ISP will be charge by the internet authority What's the problem? Pass the court order to the violator, he will pay the fine. Torrents are not illegal. Downloading/uploading copyrighted content is...
by memelchenkov
Thu May 20, 2021 9:02 pm
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243504

Re: v7.1beta6 [development] is released!

@gdanov, don't spend time explaining, you are absolutely right, it's not a beta, it's about alpha quality, just keep it in mind. It's already discussed there many times and nothing really changed. I'm surprised why Mikrotik still adds new features instead of stabilizing existing ones. This is some k...
by memelchenkov
Thu May 20, 2021 11:56 am
Forum: Wireless Networking
Topic: CAPsMAN separate VLAN for Ethernet port [SOLVED]
Replies: 2
Views: 1865

CAPsMAN separate VLAN for Ethernet port [SOLVED]

Is it possible to configure CAPsMAN to provide separate VLAN to second Ethernet port of cAP ac?
by memelchenkov
Thu May 20, 2021 10:15 am
Forum: RouterOS beta
Topic: v7.1beta6 [development] is released!
Replies: 377
Views: 243504

Re: v7.1beta6 [development] is released!

Is "MikroTik support #[SUP-37062]: ROS 7.1b4: Packet mark issue" fixed in this version? I'd love to see detailed changelog for each beta, because "other minor fixes and improvements" is not very informative, and usually these "minor fixes" are not minor at all.
by memelchenkov
Wed May 12, 2021 4:39 pm
Forum: General
Topic: Tapatalk support lost?
Replies: 5
Views: 1498

Re: Tapatalk support lost?

I tried today and found out it's broken again. Open a support request with Mikrotik, they probably will fix. I opened previous time, and after they fixed.
by memelchenkov
Wed May 12, 2021 1:49 pm
Forum: General
Topic: Suspect hAP ac lite wasn't new
Replies: 10
Views: 1465

Re: Suspect hAP ac lite wasn't new

Amazon often sells used items, Amazon problem, not Mikrotik problem. Buy from authorized resellers, not from marketplaces.
by memelchenkov
Wed May 12, 2021 1:46 pm
Forum: RouterOS beta
Topic: v7 launch date
Replies: 156
Views: 49496

Re: v7 launch date

Couple of questions on v7 - when is the planned launch date of the non-beta version and would I be mad to consider installing it in production?
Forget. It's still alpha quality, even not beta. However, it works quite stable for some basic things. But advanced RouterOS features do not work at all.
by memelchenkov
Sun May 09, 2021 5:54 pm
Forum: RouterOS beta
Topic: v7.1beta5 [development] is released!
Replies: 292
Views: 86436

Re: v7.1beta5 [development] is released!

Are you an immigrant?

No, not AFAIK. But in the troll mode (again after some quiet time LOL).
Ahaha, OK OK :)
by memelchenkov
Sun May 09, 2021 4:34 pm
Forum: RouterOS beta
Topic: v7.1beta5 [development] is released!
Replies: 292
Views: 86436

Re: v7.1beta5 [development] is released!

It seems you are disturbed that they sold products that depend on using a beta firmware. Seems justified but the folks that are affected are all those that jumped on the home wifi bandwagon of MT which many have been stating to avoid for some time now. So my sympathy factor for those with audience ...
by memelchenkov
Sun May 09, 2021 3:44 pm
Forum: RouterOS beta
Topic: v7.1beta5 [development] is released!
Replies: 292
Views: 86436

Re: v7.1beta5 [development] is released!

It seems you are disturbed that they sold products that depend on using a beta firmware. Seems justified but the folks that are affected are all those that jumped on the home wifi bandwagon of MT which many have been stating to avoid for some time now. So my sympathy factor for those with audience ...
by memelchenkov
Sun May 09, 2021 2:02 pm
Forum: RouterOS beta
Topic: v7.1beta5 [development] is released!
Replies: 292
Views: 86436

Re: v7.1beta5 [development] is released!

volunteer testers. :-)
volunteers choose their own destiny, deceived customers do not 😠 Show me idiots who want to test this alpha-quality piece of code by itself. NO, they sold it as release.
by memelchenkov
Thu Apr 29, 2021 8:57 pm
Forum: RouterOS beta
Topic: v7.1beta5 [development] is released!
Replies: 292
Views: 86436

Re: v7.1beta5 [development] is released!

Maybe report the issues you have found to support. They may provide beta6 for testing. Their official answer at 21st of April was "Unfortunately, the issue still is not fixed. I will remind the developer team about this issue. Apologize for the inconvenience caused." Original report of th...
by memelchenkov
Thu Apr 29, 2021 9:57 am
Forum: RouterOS beta
Topic: v7.1beta5 [development] is released!
Replies: 292
Views: 86436

Re: v7.1beta5 [development] is released!

When the new beta will be released? I am so tired to wait for a fix of bridge IP filtering functionality, which totally break my config (I must disable it to continue to use your router).
by memelchenkov
Mon Apr 12, 2021 9:27 am
Forum: RouterOS beta
Topic: mDNS repeater feature
Replies: 330
Views: 101445

Re: mDNS repeater feature

A pretty neat feature and often required here. It's usually good for sharing printers in work environment, rather than for home. However, for home could be useful too, people are just lazy now to make some complicated setups of their networks. But Mikrotik is a complicated device, it's strange they ...
by memelchenkov
Wed Mar 31, 2021 3:30 pm
Forum: RouterBOARD hardware
Topic: Chateau hanging
Replies: 8
Views: 2809

Re: Chateau hanging

Install 7.1b4 or 7.1b5. I use 7.1b4 now with limited config (full feature set not supported in 7x branch yet), works stable. Before export your config in text format. Update could go not smooth.
by memelchenkov
Sun Mar 28, 2021 9:31 am
Forum: General
Topic: ISP speed is 200 MB but Mikrotik speed is 100 MB
Replies: 14
Views: 7098

Re: ISP speed is 200 MB but Mikrotik speed is 100 MB

Change the cable (or crimp it again). It's a wire hardware issue.
by memelchenkov
Mon Mar 08, 2021 6:39 pm
Forum: General
Topic: Is there a shortage with some Mikrotik products ?
Replies: 3
Views: 1222

Re: Is there a shortage with some Mikrotik products ?

Russian shops: LTE6 is on sale, non-LTE — absent.
by memelchenkov
Fri Mar 05, 2021 9:00 am
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

Depending on how complicated the things you are doing are, you might be able to use bridge filter rules instead of the "Use IP Firewall". Wi-Fi interfaces are on the same bridge with outbound interfaces and IPsec tunnel, and I packet-mark traffic from Wi-Fi for NATing. I already tried Bri...
by memelchenkov
Thu Mar 04, 2021 11:40 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

sorry for beeing sarcastic. I am in the Chateau12 camp too. Struggling since 11/2020 with this device. But I dont give up hope. Oh yeah! The same. Recently I found the root of my problems of wrong traffic routing and IPsec issues, which I experienced for 2 months with no resolution from support's s...
by memelchenkov
Thu Mar 04, 2021 8:25 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

c'mon! Everybody knows that you need to check Mikrotik forums and download-pages before you buy a Mikrotik product! Always these naive people that buy hardware and assume there is a stable software available.... Not everybody, but only those who work with MikroTik long and a lot—network administrat...
by memelchenkov
Thu Mar 04, 2021 7:38 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

Which product?
https://mikrotik.com/product/chateau_lte12
Still not mentioned that it has alpha/beta quality firmware.
by memelchenkov
Sat Feb 27, 2021 7:43 pm
Forum: Announcements
Topic: WinBox v3.27 released!
Replies: 100
Views: 59687

Re: WinBox v3.27 released!

I'd love to see "duplicate" command for firewall rules, to create similar rule. Especially useful if want to try something by copying old rule and then temporary disable old one. And when create several similar rules. That is the COPY button that is already there. Oh my God! Thanks. I nev...
by memelchenkov
Sat Feb 27, 2021 5:02 pm
Forum: Announcements
Topic: WinBox v3.27 released!
Replies: 100
Views: 59687

Re: WinBox v3.27 released!

I'd love to see "duplicate" command for firewall rules, to create similar rule. Especially useful if want to try something by copying old rule and then temporary disable old one. And when create several similar rules.
by memelchenkov
Mon Feb 22, 2021 6:39 pm
Forum: General
Topic: IPSec Connection: Data is not corretly "transmitted" trough policy
Replies: 3
Views: 731

Re: IPSec Connection: Data is not corretly "transmitted" trough policy

I faced wrong IPSEC behavior in 7.1b4. Packets route wrong way, in my case it was IPSEC tunnel where packets should not be routed to. Support looked at dumps and told it’s working, no packets routed wrong. I believe my eyes, not support, when I see tcpdump’ed traffic at the end of the tunnel, at str...
by memelchenkov
Fri Feb 19, 2021 4:00 pm
Forum: SwOS
Topic: Can SwitchOS pass VLAN's to other MikroTik switches?
Replies: 4
Views: 4396

Re: Can SwitchOS pass VLAN's to other MikroTik switches?

VLAN is layer 2 technology, no need L3 switch.
by memelchenkov
Fri Feb 19, 2021 1:09 pm
Forum: General
Topic: RB3011 - UPL/DL fast but pages loading slowly
Replies: 2
Views: 642

Re: RB3011 - UPL/DL fast but pages loading slowly

Just a thought: it could be MTU issue. Try MTU/MSS manual altering, as usual on Mikrotiks.
by memelchenkov
Fri Feb 19, 2021 11:36 am
Forum: Beginner Basics
Topic: Chromecast not detectable
Replies: 22
Views: 7177

Re: Chromecast not detectable

You need an MDNS repeater between the subnets to make the chromecast work. I believe RouterOS doesn't have MDNS functionality.. I use a linux machine with avahi for this. Topicstarter told he has single bridged network, no subnets. That's true, MDNS will not be repeated by Mikrotik by itself, witho...
by memelchenkov
Wed Feb 17, 2021 1:55 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

Unfortunately, developers in medium/large companies do not decide anything. Even Project Manager can't do much. Only Product Owner / Sales Managers / General Managers decide. They already decided to sell product with alpha-quality firmware, telling everyone it's a release. What do you expect from th...
by memelchenkov
Wed Feb 17, 2021 1:06 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

As an experienced software developer, I confirm that there is definitely lack of developers who are working on it! QA team is also understaffed. Hardly the owners read this forum, so it's just a cry in the blank.
by memelchenkov
Wed Feb 17, 2021 12:41 pm
Forum: RouterOS beta
Topic: IPv6 firewall counters are very strange
Replies: 3
Views: 1329

Re: IPv6 firewall counters are very strange

I noticed bugs with counters in ROS7. It was not related to IPv6 firewall. But if I met these bugs then you met it too.
by memelchenkov
Wed Feb 17, 2021 12:36 pm
Forum: RouterOS beta
Topic: VPN issues
Replies: 0
Views: 1023

VPN issues

Hi! Does anybody have VPN issues with ROS7? You should have IKE2 instantiated from MikroTik. And also you should instantiate IKE2 from your PC/Mac. If you use a such configuration, please tell if you experience issues. Because I get so much issues with it and can't solve, MikroTik support also start...
by memelchenkov
Sat Feb 13, 2021 11:44 pm
Forum: RouterBOARD hardware
Topic: Mikrotik hAP ac3 RBD53iG-5HacD2HnD
Replies: 3
Views: 1510

Re: Mikrotik hAP ac3 RBD53iG-5HacD2HnD

So is it that difficult to have some consistency within Mikrotik documentation?
OK, I will take it as a "thank you" :-D
by memelchenkov
Sat Feb 13, 2021 10:49 pm
Forum: RouterBOARD hardware
Topic: Mikrotik hAP ac3 RBD53iG-5HacD2HnD
Replies: 3
Views: 1510

Re: Mikrotik hAP ac3 RBD53iG-5HacD2HnD

It's there, under different name, search page for "RBD53iG-5HacD2HnD (hAP ac³)" and you'll find Atheros8327.
by memelchenkov
Fri Feb 12, 2021 3:55 pm
Forum: SwOS
Topic: CRS 112 Slow Throughput
Replies: 17
Views: 6934

Re: CRS 112 Slow Throughput

Sorry, it looks like a whole project. I even did not pay attention that the topic was published in SwOS area (got there by "Active Topics" page so have not looked where I am :), I never use SwOS on managed switches myself so even can't advise anything.
by memelchenkov
Fri Feb 12, 2021 2:08 pm
Forum: SwOS
Topic: CRS 112 Slow Throughput
Replies: 17
Views: 6934

Re: CRS 112 Slow Throughput

It seems, you somewhere lose HW Offload so your CPU reach 100%. Check this manual for your model: https://wiki.mikrotik.com/wiki/Manual:CRS1xx/2xx_series_switches_examples The main idea is you must use switch-chip hardware features to avoid using CPU at all. You cannot really route traffic using thi...
by memelchenkov
Thu Feb 11, 2021 3:36 pm
Forum: Beginner Basics
Topic: Malicious VPN connection attempts?
Replies: 12
Views: 5532

Re: Malicious VPN connection attempts?

I’d better investigate it, is it targeted attack or not.
I.e. I spent several months trying to make DigitalOcean to stop botnet attacks from their network, still not resolved, next step will be report to FBI.
by memelchenkov
Wed Feb 10, 2021 4:05 pm
Forum: General
Topic: Does quouting quotes of quotes in consecutive post make any sense?
Replies: 148
Views: 22920

Re: Does quouting quotes of quotes in consecutive post make any sense?

Over-quoting prohibition is part of netiquette. Netiquette is almost dead as Internet became platform not for engineers and scientists only, but for everyone. As soon as speed of life increased, quality of discussions decreased, traffic costs nothing (and channels are wide), over-quoting become &quo...
by memelchenkov
Tue Feb 09, 2021 6:16 pm
Forum: General
Topic: How to Ping Chateau from outside / Passthrough or IP problem? [SOLVED]
Replies: 4
Views: 1728

Re: How to Ping Chateau from outside / Passthrough or IP problem? [SOLVED]

I pretty sure everything incoming will be blocked by them. I see two solutions: 1. Ask your cell ISP if they can give you static IP and what ports/protocols will be allowed. Who knows, but I suppose they will provide it only to companies (corporate accounts). 2. Deploy intermediate VPN server on VPS...
by memelchenkov
Tue Feb 09, 2021 1:07 pm
Forum: General
Topic: Weird VLAN issue after upgrading to ROS 6.48.1 from 6.48
Replies: 6
Views: 1711

Re: Weird VLAN issue after upgrading to ROS 6.48.1 from 6.48

Just downgrade then, no? 6.48 branch has so many reported bugs so I'd be stay away from it as far as possible.
by memelchenkov
Tue Feb 09, 2021 11:53 am
Forum: General
Topic: How to Ping Chateau from outside / Passthrough or IP problem? [SOLVED]
Replies: 4
Views: 1728

Re: How to Ping Chateau from outside / Passthrough or IP problem? [SOLVED]

Chateau user here. The most likely cause is that your cell ISP provides you with NATed IP, not dynamic/static IP. I tried on my operator too, the same behaviour. Where are you from? Russia? Yota? Because I testing on Yota, I got the address from 100.x.x.x subnet, I do not know, is it internal Yota s...
by memelchenkov
Sat Feb 06, 2021 11:02 pm
Forum: RouterOS beta
Topic: Issue with low-level traffic handling
Replies: 3
Views: 1469

Re: Issue with low-level traffic handling

I simplified Firewall rules and even completely disabled Fasttrack. I can say "yes", PPPoE reconnects brings mess to mangling and IPSEC processing, traffic starts going wrong way. I updated the ticket, please Mikrotik supporters who read the forum please take an eye on my ticket.
by memelchenkov
Fri Feb 05, 2021 1:23 pm
Forum: RouterOS beta
Topic: Issue with low-level traffic handling
Replies: 3
Views: 1469

Re: Issue with low-level traffic handling

After PPPoE reconnects no-marked traffic funny passes to IPSEC mangled channel. The bug still exists, I really appreciate if you'll fix it in short time, because it completely breaks my whole work process. I believe, bugs in core components should be killed at the first place, and only after cleanin...
by memelchenkov
Fri Feb 05, 2021 12:29 pm
Forum: RouterOS beta
Topic: Issue with low-level traffic handling
Replies: 3
Views: 1469

Re: Issue with low-level traffic handling

With 7.1b4 now a strange behavior: udp connection mangled as no-mark works for some time, then just stalled, no incoming traffic. Pressing "Remove" button in firewall helps, traffic starts going. It differs from previous beta, there were no such bug. However, it's only early hours, will se...
by memelchenkov
Fri Feb 05, 2021 12:17 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

Chateau LTE12, /export works just fine. Please report to support everyone who has issues, that means the bug depends on your specific configuration, so Mikrotik should detect which config lines/firmware problems causes export failing.
by memelchenkov
Thu Feb 04, 2021 11:22 pm
Forum: RouterOS beta
Topic: v7.1beta4 [development] is released!
Replies: 211
Views: 56975

Re: v7.1beta4 [development] is released!

Tried an upgrade on Chateau LTE12 (from 7beta3).
Device in boot loop and not possible to reset the device.
Will need to do a netinstall...
Upgraded just fine from 7.1 pre-beta4. Did not tried to upgrade from beta3.
by memelchenkov
Thu Feb 04, 2021 2:48 pm
Forum: Beginner Basics
Topic: Unable to update firmware - Request suggestions
Replies: 2
Views: 1014

Re: Unable to update firmware - Request suggestions

Your issue may lies in problem of ISP networks interconnection.
Just update it manually: https://wiki.mikrotik.com/wiki/Manual:U ... ing_Winbox
Update board firmware after updating main firmware: System - RouterBOARD - Upgrade.
by memelchenkov
Tue Feb 02, 2021 11:00 pm
Forum: Beginner Basics
Topic: My last hope.
Replies: 10
Views: 1608

Re: My last hope.

since the modem itself is a passthrough to the router. Your computer can act just fine as an end device. You do not need a router to connect to Internet (https://community.netgear.com/t5/Cable-Modems-Routers/Nighthwak-CM1150v-No-Internet-Direct-to-Computer/td-p/1976652). I just noticed there is no ...
by memelchenkov
Tue Feb 02, 2021 10:32 pm
Forum: General
Topic: website responds ping but does not navigate
Replies: 6
Views: 1232

Re: website responds ping but does not navigate

It sounds like MTU/MSS issues, dig this way.
by memelchenkov
Tue Feb 02, 2021 10:27 pm
Forum: Beginner Basics
Topic: My last hope.
Replies: 10
Views: 1608

Re: My last hope.

Is there a possibility here of the mikrotik router is actually defective and if so how i can test? Connect your PC directly via Ethernet cable to the modem and try to reproduce your problem. Make sure it works without issues. If yes, then you can investigate further. If has issues, resolve it with ...
by memelchenkov
Thu Jan 28, 2021 12:51 pm
Forum: RouterOS beta
Topic: v7.1beta3 [development] is released!
Replies: 261
Views: 79858

Re: v7.1beta3 [development] is released!

my question was "when" not "where"
Ask support, they may send you pre-beta4 version, where this issue is already fixed.
by memelchenkov
Thu Jan 28, 2021 12:47 pm
Forum: RouterOS beta
Topic: Issue with low-level traffic handling
Replies: 3
Views: 1469

Issue with low-level traffic handling

Does anybody experienced the issue, when traffic goes by wrong path? I have IPSEC channel instantiated by Mikrotik. I mangle some traffic by connmarks and mangled traffic should pass this IPSEC channel. It works well until PPPoE connection re-initiates. After this, mystic things happens: by Mikrotik...
by memelchenkov
Tue Jan 26, 2021 1:28 pm
Forum: RouterOS beta
Topic: Any chance to install ROS6 on Chateau 12?
Replies: 6
Views: 2069

Re: Any chance to install ROS6 on Chateau 12?

I am some surprised that MT sells product with only Beta software. This tells me that MT must speed up in releasing v7. Not sure if that is good or bad for the release of v7. There is nowhere mentioned it was a beta: nor in shops, nor on Mikrotik website. It's definitely not a good marketing experi...
by memelchenkov
Fri Jan 22, 2021 10:37 pm
Forum: RouterOS beta
Topic: Feature Request - Clean up IPSEC Tabs
Replies: 3
Views: 1530

Re: Feature Request - Clean up IPSEC Tabs

+1, please fix tab order to make it comply with step-by-step connection creation.
by memelchenkov
Sat Jan 16, 2021 1:54 pm
Forum: RouterOS beta
Topic: Bonding HW offload on CRS112 [SOLVED]
Replies: 2
Views: 2134

Re: Bonding HW offload on CRS112 [SOLVED]

Static trunking does work (not LACP or "software" bonding)
https://wiki.mikrotik.com/wiki/Manual:C ... s#Trunking
You are my hero for today, thank you very much!
by memelchenkov
Fri Jan 15, 2021 9:40 pm
Forum: RouterOS beta
Topic: Bonding HW offload on CRS112 [SOLVED]
Replies: 2
Views: 2134

Bonding HW offload on CRS112 [SOLVED]

Does bonding HW offloading works on CRS112 with ROS7 beta, or there is chipset limitation? I read in Wiki that only CRS3xx supports this feature.
by memelchenkov
Sat Dec 12, 2020 3:32 pm
Forum: RouterOS beta
Topic: Multiple corrupted backups
Replies: 3
Views: 1471

Re: Multiple corrupted backups

Is there any way to check and repair the backup file? It’s password encrypted, however I’ll be lucky if there is something I can do. Maybe Mikrotik support can help, I don't know. On the other hand, with this issue is there a possibility of file system issues / bad memory blocks? It's an issue of b...
by memelchenkov
Sat Dec 12, 2020 3:10 am
Forum: RouterOS beta
Topic: Multiple corrupted backups
Replies: 3
Views: 1471

Re: Multiple corrupted backups

I use export to preserve configuration, don't rely on backups on beta. I don't think you can restore, no utilities to read backup file available.
by memelchenkov
Tue Dec 08, 2020 4:32 pm
Forum: RouterOS beta
Topic: Chateau BOOT LOOP Simple Queue [SOLVED]
Replies: 2
Views: 1906

Re: Chateau BOOT LOOP Simple Queue [SOLVED]

No v.6 for Chateau.
People reported similar issues: viewtopic.php?f=1&t=164923
Best of all make a request to Support, they will require additional information from you to make this bug go away faster.
by memelchenkov
Sun Dec 06, 2020 8:28 pm
Forum: RouterOS beta
Topic: v7.1beta2 | Bridge VLAN Filtering: unable to get IP via DHCP on VLAN
Replies: 8
Views: 3657

Re: v7.1beta2 | Bridge VLAN Filtering: unable to get IP via DHCP on VLAN

There were DHCP issues in 7.1b2, and they were fixed in 7.1b3. Can't say regarding subj issue, though.
by memelchenkov
Fri Dec 04, 2020 6:04 pm
Forum: RouterOS beta
Topic: Where is UPS?
Replies: 26
Views: 14047

Where is UPS?

Where is UPS menu in ROS 7.1b3?
by memelchenkov
Fri Dec 04, 2020 1:21 am
Forum: General
Topic: Two IPSEC channels problem
Replies: 8
Views: 1485

Re: Two IPSEC channels problem

I've been running 7.1beta2 on a 4011 for several months. I don't have any IKEv2 tunnels though. I'll upgrade to 7.1beta3 and configure an IKEv2 tunnel tomorrow and see if I have any problems. Thanks for offering a help, but, please don’t bother. I spent two hours today with different tunnels, combi...
by memelchenkov
Fri Dec 04, 2020 12:44 am
Forum: General
Topic: Two IPSEC channels problem
Replies: 8
Views: 1485

Re: Two IPSEC channels problem

I'd still prefer to see the configuration before jumping to a conclusion that it is caused by a bug. It would have to be one on a fairly critical level (connection tracking). It's fun but I can't export it :-)) (due to a bug, export command just never completes). I'll try investigate it with Suppor...
by memelchenkov
Fri Dec 04, 2020 12:36 am
Forum: General
Topic: Two IPSEC channels problem
Replies: 8
Views: 1485

Re: Two IPSEC channels problem

That is strange to me too. Thanks you very much for info! I'll file a ticket with Support, it could be a firmware issue. A bug in RouterOS is fairly unlikely, but can't be completely ruled out. What version are you running? Unfortunately, 7.1b3 (because of Chateau device, which can't be downgraded ...
by memelchenkov
Thu Dec 03, 2020 11:52 pm
Forum: General
Topic: Two IPSEC channels problem
Replies: 8
Views: 1485

Re: Two IPSEC channels problem

That is strange to me too. Thanks you very much for info! I'll file a ticket with Support, it could be a firmware issue.
by memelchenkov
Thu Dec 03, 2020 11:04 pm
Forum: General
Topic: Two IPSEC channels problem
Replies: 8
Views: 1485

Two IPSEC channels problem

Hello. I have a first IPSEC IKEv2 channel established by Mikrotik itself, and a second IPSEC IKEv2 channel established by LAN computer (the computer behind NAT). Unfortunately, the second established channel disconnects after ~2 min, or can't be established at all. If I disable the first channel, th...
by memelchenkov
Thu Dec 03, 2020 2:11 pm
Forum: RouterOS beta
Topic: v7.1beta3 [development] is released!
Replies: 261
Views: 79858

Re: v7.1beta3 [development] is released!

After upgrade Chateau to 7.1b3, right after reboot, I noticed in logs:

lte1 mbim: error: function error: not opened

next lines are:
lte1: IPV4: x.x.x.x, DNS: 2
lte1 link up
by memelchenkov
Wed Dec 02, 2020 12:05 pm
Forum: RouterOS beta
Topic: Chateau 12 - WiFi no longer connects for a random device [SOLVED]
Replies: 10
Views: 3735

Re: Chateau 12 - WiFi no longer connects for a random device [SOLVED]

Please can you advice beta 3 build time ? (look for build time under "system/packages") and share this.
Thanks to @redhatperl for sharing the firmware. It solves my different problems. Build time: Nov/13/2020 11:05:49.
by memelchenkov
Wed Dec 02, 2020 12:13 am
Forum: RouterOS beta
Topic: Bridge filtering problem
Replies: 1
Views: 1158

Re: Bridge filtering problem

Work for me with 7.1b3.
by memelchenkov
Tue Dec 01, 2020 11:09 pm
Forum: RouterOS beta
Topic: v7.1beta2 [development] is released!
Replies: 385
Views: 154396

Re: v7.1beta2 [development] is released!

Yes, write to the support, they react very fast and will provide you with the firmware For Chateau? Can you share it with me? I have issues too, I hope it will fix at least Wi-Fi issues. Unfortunately, this time they don't react fast. Why you can't, they prohibit it? UPD: Nevermind, I found the lin...
by memelchenkov
Tue Dec 01, 2020 7:38 pm
Forum: RouterOS beta
Topic: v7.1beta2 [development] is released!
Replies: 385
Views: 154396

Re: v7.1beta2 [development] is released!

I got today beta3 from Mikrotik, seems to be solved.. clients are connecting correctly.
For Chateau? Can you share it with me? I have issues too, I hope it will fix at least Wi-Fi issues.
by memelchenkov
Tue Dec 01, 2020 12:19 pm
Forum: RouterOS beta
Topic: HAP AC^2 wifi clients stuck obtaining IP address
Replies: 15
Views: 5631

Re: HAP AC^2 wifi clients stuck obtaining IP address

I also have Wi-Fi disconnection issues with Chateau and iPhone (ROS 7 stable build and 7.1b2 the same). Beta is even worse—it does not reconnect until I renew the lease manually on the iPhone.
by memelchenkov
Mon Nov 30, 2020 11:37 am
Forum: RouterOS beta
Topic: Bridge filtering problem
Replies: 1
Views: 1158

Bridge filtering problem

Hi! Does anybody experience issues with bridge filtering (both bridge filtering itself and use-ip-firewall setting)? I will not describe everything I tried in process of trying to make it work, but always (4 times) I get boot-loop and only hard reset via button helps. I already reported this issue t...
by memelchenkov
Sun Nov 01, 2020 7:00 pm
Forum: RouterOS beta
Topic: Warning: cpu not running at default frequency [SOLVED]
Replies: 7
Views: 18764

Warning: cpu not running at default frequency [SOLVED]

Hello. In Chateau device w/ default firmware I have a warning "Warning: cpu not running at default frequency" in "System - RouterBOARD" window. If I come deeper, to its "Settings", there is "716Mhz" frequency chosen. What should I set there? Or just ignore thi...
by memelchenkov
Sat Oct 31, 2020 2:31 pm
Forum: RouterOS beta
Topic: Feature request: mDNS relay/proxying across networks
Replies: 5
Views: 1729

Re: Feature request: mDNS relay/proxying across networks

+1, especially for 6.x stable firmware. Need for routing printers mdns between VLANs.
by memelchenkov
Sun Oct 11, 2020 12:01 pm
Forum: RouterOS beta
Topic: OpenVPN Client cert auth
Replies: 1
Views: 1323

OpenVPN Client cert auth

Hello! Can't find how to authenticate OpenVPN client with certificates (outgoing connection)? If not implemented yet, any estimates? For Chateau router.