Community discussions

MikroTik App

Search found 13622 matches

  • 1
  • 2
  • 3
  • 4
  • 5
  • 46
by rextended
Fri Mar 21, 2025 6:26 pm
Forum: General
Topic: Expired SSL cert locks you out of 7.18.2 GUI
Replies: 7
Views: 346

Re: Expired SSL cert locks you out of 7.18.2 GUI

Ok, I'll give up before I answer badly.
Of three questions, you didn't answer one.
by rextended
Fri Mar 21, 2025 5:44 pm
Forum: General
Topic: Public-Mikrotik-Bandwidth-Test-Server(s) ( shutting down on April 1st 2025 )
Replies: 1070
Views: 1272779

Re: Public-Mikrotik-Bandwidth-Test-Server(s) ( shutting down on April 1st 2025 )

The lack of respect is very high, like that ignorant person who tried a 40Gbps test....
by rextended
Fri Mar 21, 2025 5:28 pm
Forum: General
Topic: Expired SSL cert locks you out of 7.18.2 GUI
Replies: 7
Views: 346

Re: Expired SSL cert locks you out of 7.18.2 GUI

So the certificate is self-renewing or not?
The new one does not apply to the www-ssl service?

Have you tried with any browser?
by rextended
Fri Mar 21, 2025 3:57 pm
Forum: General
Topic: Expired SSL cert locks you out of 7.18.2 GUI
Replies: 7
Views: 346

Re: Expired SSL cert locks you out of 7.18.2 GUI

The service on port 80 must be active for automatic renewal, as written in the guide, in 7.18.2. (for 7.17x and 7.19 there is also renewal via DNS verification) There is no practical reason why if you expose port 443 to the world, you cannot also leave 80 open. Absolutely nothing changes from a secu...
by rextended
Fri Mar 21, 2025 2:55 pm
Forum: General
Topic: Reclaiming flash space by clearing console history?
Replies: 1
Views: 159

Re: Reclaiming flash space by clearing console history?

If you have a database and you free only some rows, the database is not compactedd for every delete.
If you delete all database, probably is also "compacted"....
by rextended
Thu Mar 20, 2025 11:27 pm
Forum: General
Topic: All IPv6 stops working until I manually renew DHCP6 lease from ISP?
Replies: 2
Views: 226

Re: All IPv6 stops working until I manually renew DHCP6 lease from ISP?

Probably ISP do not asign static IPv6 etc. etc. etc.

Paste this on terminal and reboot, see if solve on long term.

terminal code

/ipv6 nd
set [ find default=yes ] hop-limit=64
/ipv6 nd prefix default
set preferred-lifetime=45m valid-lifetime=1h30m
by rextended
Wed Mar 19, 2025 8:49 pm
Forum: General
Topic: installation of system-7.18.2 failed: disk is too small
Replies: 10
Views: 591

Re: installation of system-7.18.2 failed: disk is too small

Probably free space more than 134217727 bit cause variable overflow.

On your spare time, can you try again the passage from 7.18 to 7.18.[1|2] leaving on purpose free space less of 134217727???

On that devices are expected only 128MiB........

Just for fun and curiosity...........
by rextended
Wed Mar 19, 2025 8:39 pm
Forum: Forwarding Protocols
Topic: AMT - Automatic Multicast Tunneling support
Replies: 51
Views: 13586

Re: AMT - Automatic Multicast Tunneling support

Aside from the fact that they banned my account for a week for revealing some things in advance,
I'm not telling you that they shouldn't be published, but that in the face of this news, there needs to be PROOF.
Do you understand what I write or not?
by rextended
Wed Mar 19, 2025 8:34 pm
Forum: Forwarding Protocols
Topic: AMT - Automatic Multicast Tunneling support
Replies: 51
Views: 13586

Re: AMT - Automatic Multicast Tunneling support

discussion is just childish.

You are right, I will stop here, or rather there↑↑↑

The point is that it is wrong to provide information WITHOUT PROOF.
by rextended
Wed Mar 19, 2025 8:30 pm
Forum: Forwarding Protocols
Topic: AMT - Automatic Multicast Tunneling support
Replies: 51
Views: 13586

Re: AMT - Automatic Multicast Tunneling support

When people say it's rainy in their town, you also asking officials to confirm this? [/color] ... I'm tired of this bullshit. Your words bother you? Then don't say them... I'm fed up too, especially with the wrong examples. I don't care about the information about whether it rains somewhere or not,...
by rextended
Wed Mar 19, 2025 8:22 pm
Forum: Forwarding Protocols
Topic: AMT - Automatic Multicast Tunneling support
Replies: 51
Views: 13586

Re: AMT - Automatic Multicast Tunneling support

This absolutely doesn't change the fact, that AMT has appeared in 7.18, as I initially stated. Everything else is another question. And this absolutely does not change the fact that when someone appeared on the forum and writes about new features added to RouterOS, he must always cite the official ...
by rextended
Wed Mar 19, 2025 8:02 pm
Forum: General
Topic: Blocking the "standard"/most common DNS-over-HTTPS servers
Replies: 15
Views: 770

Re: Blocking the "standard"/most common DNS-over-HTTPS servers

No matter, now DNS-over-QUIC is used. ROS supports DoQ??? No, are the browsers that ignore completely the DHCP/fixed DNS settings and use own protocol for show the ads. The final scope of all that is that you must not skip ads on browser, privacy is a big bullsh1ft and has nothing to do with it...
by rextended
Wed Mar 19, 2025 7:21 pm
Forum: General
Topic: Blocking the "standard"/most common DNS-over-HTTPS servers
Replies: 15
Views: 770

Re: Blocking the "standard"/most common DNS-over-HTTPS servers

No matter,
now DNS-over-QUIC is used.
by rextended
Wed Mar 19, 2025 5:31 pm
Forum: Forwarding Protocols
Topic: AMT - Automatic Multicast Tunneling support
Replies: 51
Views: 13586

Re: AMT - Automatic Multicast Tunneling support

I won't comment these stupid conclusions. Calm down and don't scream so loud. The conclusion is not stupid, someone passing by, without be one forum admin or post official sources, announces something, it's just bullshit. Not to mention that maybe, as already happened, they remove some features fro...
by rextended
Wed Mar 19, 2025 5:24 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

Are there partitions used on this router? Two partitions would split the disk.
Official reply, please:
Are discontinued PPC products from year 2011 still fully supported?

Thanks.
by rextended
Wed Mar 19, 2025 5:14 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

Completely useless note or consideration,
because no matter what happens if it only sees 64MiB out of 128MiB there is definitely some underlying problem...
by rextended
Wed Mar 19, 2025 5:07 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

Hi: 7.19beta6 is too big for the RB1100AHx2, by a few bytes: ERROR: not enough disk space, 20.7MiB is required and only 20.7 MiB is free. The router was never re-partitioned, i.e. has a single "part0" with 64 MiB size. There are no files or directories under /files. -- azg RB1100AHx2 ( ye...
by rextended
Wed Mar 19, 2025 3:22 pm
Forum: General
Topic: Functionality Suggestion on RouterOS
Replies: 8
Views: 492

Re: Functionality Suggestion on RouterOS

Simply that you are writing nonsense and in the user forum.
If you want to contact MikroTik write to support@mikrotik.com
What users think or write matters absolutely nothing.
by rextended
Wed Mar 19, 2025 12:45 pm
Forum: General
Topic: Functionality Suggestion on RouterOS
Replies: 8
Views: 492

Re: Functionality Suggestion on RouterOS

They've already invented the "supercazzola prematurata con doppio scappellamento a destra".
hahahaha :lol:
Few will understand it...
Like the OP on user forum... :lol:
by rextended
Wed Mar 19, 2025 12:38 pm
Forum: General
Topic: Functionality Suggestion on RouterOS
Replies: 8
Views: 492

Re: Functionality Suggestion on RouterOS

They've already invented the "supercazzola prematurata con doppio scappellamento a destra".
by rextended
Wed Mar 19, 2025 12:29 am
Forum: General
Topic: force a reboot when storage is full
Replies: 2
Views: 334

Re: force a reboot when storage is full

Put 7.16.2 back and wait until someone at MikroTik figures out the difference between 16M and 128M...
by rextended
Wed Mar 19, 2025 12:25 am
Forum: General
Topic: Kid control keeps TCP sessions open
Replies: 5
Views: 828

Re: Kid control keeps TCP sessions open

The whole kid control thing makes no sense how it is implemented. In short: If you feel the need to use machines to control humans, you are definitely doing something wrong. Long: You are absolutely right, it is the parents who have become incompetent. When my father told me something it was law, n...
by rextended
Wed Mar 19, 2025 12:21 am
Forum: Forwarding Protocols
Topic: NAT and Switch on a Single Device
Replies: 4
Views: 1164

Re: NAT and Switch on a Single Device

It's like writing "I don't know how to do it, click here, click there"...
What you wrote is completely useless, just read my previous post and you can clearly see what needs to be changed.
by rextended
Tue Mar 18, 2025 9:13 pm
Forum: General
Topic: renew ssl certificate let's encrypt
Replies: 15
Views: 971

Re: renew ssl certificate let's encrypt

do you have a list of domains or ip used for renewal? it doesn't seem very professional to expose the port to everyone unless there is a service exposed on it. Il servizio non è fornito dalla MikroTik, quindi rivolgiti a Let's Encrypt per la lista... se te la danno. [ The service is not provided by...
by rextended
Tue Mar 18, 2025 8:27 pm
Forum: General
Topic: Feature Request : don't log specific user login/logout actions
Replies: 6
Views: 559

Re: Feature Request : don't log specific user login/logout actions

I change one user-manager and one Dude done with RB1100AHx2 (powerpc) to two RB1100Dx4 (arm) when is coming out, but have internal disk, not use mainboard flash.
But RB1100AHx2 still working both...
by rextended
Tue Mar 18, 2025 8:03 pm
Forum: Scripting
Topic: Script error: already have such entry (address lists)
Replies: 1
Views: 395

Re: Script error: already have such entry (address lists)

full of useless... /ip firewall address-list remove [/ip firewall address-list find list=firehol_L1] /ip firewall address-list add addres=1.10.16.0/20 list=firehol_L1 timeout=2d /ip firewall address-list add addres=1.19.0.0/16 list=firehol_L1 timeout=2d /ip firewall address-list add addres=1.32.128....
by rextended
Tue Mar 18, 2025 7:56 pm
Forum: General
Topic: Feature Request : don't log specific user login/logout actions
Replies: 6
Views: 559

Re: Feature Request : don't log specific user login/logout actions

From 2007 i never change a single device for memory wearing,
but also I change obsolete devices, no matter if are working or not.
I have only xxx-ac devices and CCR/CRS. No more RBxxx except "new" RB1100Dx4
by rextended
Tue Mar 18, 2025 6:36 pm
Forum: General
Topic: Feature Request : don't log specific user login/logout actions
Replies: 6
Views: 559

Re: Feature Request : don't log specific user login/logout actions

POSIX do not have that at all, not only RouterOS.
by rextended
Tue Mar 18, 2025 5:06 pm
Forum: Forwarding Protocols
Topic: NAT and Switch on a Single Device
Replies: 4
Views: 1164

Re: NAT and Switch on a Single Device

Ignoring why you want to expose a device to the internet with an IP, instead of opening only the necessary ports via NAT, you have not explained how the provider delivers you internet and how they should deliver the second IP to you. Paste this on terminal for join ether1 and ether5 on one bridge, s...
by rextended
Tue Mar 18, 2025 4:14 pm
Forum: General
Topic: forum guru status
Replies: 27
Views: 1546

Re: forum guru status

What’s the meaning of life? 😁 The problem is that if I write it, life for you might no longer have any meaning... The meaning of Life is... to seek a meaning to Life. _ _ _ __ _ _ _ _ _ _ _ _ | | (_) | \_\ | | | | | | | (_) | ( ) | | | __ _ __ ___| |_ __ _ ___ | |__ ___| | | __ _ _ __ ___ _ __ ___|...
by rextended
Tue Mar 18, 2025 4:08 pm
Forum: General
Topic: forum guru status
Replies: 27
Views: 1546

Re: forum guru status

"Karma" has been gone for a while... In fact if you search for old topics you will be able to see everytime at the end of a reply "if it was useful, please add Karma..." which had become boring as "Sent from my phone using Tapatalk Pro" at the end of every post, for laz...
by rextended
Sun Mar 16, 2025 3:33 pm
Forum: Scripting
Topic: Api version response empty [SOLVED]
Replies: 7
Views: 1885

Re: Api vesrion response empty [SOLVED]

So what would be the point of this topic?
by rextended
Thu Mar 13, 2025 7:50 pm
Forum: Beginner Basics
Topic: Router os 7.18
Replies: 3
Views: 501

Re: Router os 7.18

You try another PC? If not, what you wait?

Device model?
Winbox version?
RouterOS version?... You update today to 7.18 or 7.18.2?

Do one
/export show-sensitive
on SSH, save the results and netinstall the device.
by rextended
Thu Mar 13, 2025 7:44 pm
Forum: General
Topic: IP DNS QUESTION
Replies: 9
Views: 643

Re: IP DNS QUESTION

Super, much thanks.
by rextended
Thu Mar 13, 2025 7:37 pm
Forum: General
Topic: IP DNS QUESTION
Replies: 9
Views: 643

Re: IP DNS QUESTION

Are you making the same mistake as beginners? Ask directly what you need. In case 1) set allow-remote-requests=yes is completely useless, and the input port from the LAN must not be opened (which by DEFAULT is only allowed from the LAN) In case 2) just leave the DEFAULT rules and the LAN devices MUS...
by rextended
Thu Mar 13, 2025 7:27 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.2 [stable] is released!

The fles are signed, why uselessly use cpu power to encrypt/decrypt what is already signed?
by rextended
Thu Mar 13, 2025 6:10 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

Understand, but I am not able to read your "version"... This? /system leds find [ :if ($leds=[:toarray "user-led"]) do={ set $".id" type="on" \ disabled=(!$disabled) } ] addedndum on previous post: missing quotes between "trueon", the 2nd pair of [ ]...
by rextended
Thu Mar 13, 2025 6:07 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

@Josephny

Interesting, but the LEDs are small and you would have to have the device in front of them to attract attention...
by rextended
Thu Mar 13, 2025 5:59 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

For example, if wifi interfaces are on/off.
Some customers ask me to disable wifi on cAP central button press, that also disable the led...
by rextended
Thu Mar 13, 2025 5:55 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.2 [stable] is released!

Anyone can make a certificate these days. It's all become so trivial... The purpose of https is to encrypt the connection between two points, not to certify what passes through it... However, yes, .npk files have 32 bit of signature at the end (and also .dpk, and also .fwf) so they can't be tampered...
by rextended
Thu Mar 13, 2025 5:45 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

(no space between do= and {)

I think this suffice... on same set you can set more... ;)
/system leds find [:if ($leds=[:toarray "user-led"]) do={set $".id" type="on" disabled=(!$disabled)}]
by rextended
Thu Mar 13, 2025 5:40 pm
Forum: Wireless Networking
Topic: Unifi access point
Replies: 15
Views: 1558

Re: Unifi access point

Yes, if you configure it properly How about I configure my boot right into your pin hole. You are worthless piece of shi f t, if you have nothing constructive to say then shut the fuc hs' endothelial k ibble up. I think you broke the record for swear words and insults in a single post. Not even a f...
by rextended
Wed Mar 12, 2025 7:50 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

Karnaugh
  Y N
O 0 1
F 0 0

disabled Yes / No
type On / oFf
LED 0=off 1=on

So the less expensive thing to consider if is at the same time disabled=no and type=on
by rextended
Wed Mar 12, 2025 5:14 pm
Forum: Useful user articles
Topic: Advanced Routing Failover without Scripting
Replies: 295
Views: 167561

Re: Advanced Routing Failover without Scripting

It is understood that without scripts/scheduler/on-event/netwatch it does not mean that scripts cannot be used to initially configure the device...
by rextended
Wed Mar 12, 2025 5:11 pm
Forum: General
Topic: Connectivity Issues after Upgrade 7.17.2 > 7.18 / 7.18.2
Replies: 12
Views: 1557

Re: Connectivity Issues after Upgrade 7.17.2 > 7.18 / 7.18.2

I'm not getting into the OP's issue, but IPsec is a VPN and using WinBox over IPsec............
by rextended
Wed Mar 12, 2025 5:08 pm
Forum: General
Topic: Upgrade or no (revisited)
Replies: 13
Views: 715

Re: Upgrade or no (revisited)

I'll be vague, as I was before the CVE for brute-forcing usernames came out publicly.
I wouldn't use 7.17 even if they paid me, I believe MikroTik got it done with 7.18....
but with 16MB peripherals I wouldn't use 7.18.2 either...
and anyway 7.18.2 is too fresh....
by rextended
Wed Mar 12, 2025 5:02 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

I think you misunderstood me, it was a compliment for you... :lol:
I know you didn't have the idea, but you were fundamental in intuiting the right point of view.... 8)
[What can be easy flipped as true/false? Whether it is disabled or not!]
by rextended
Wed Mar 12, 2025 4:56 pm
Forum: General
Topic: Upgrade or no (revisited)
Replies: 13
Views: 715

Re: Upgrade or no (revisited)

7.17.x 1) is too fresh ; 2) and deplete completely the 16MB free space after some time.... 7.18 is worse for point 2) and is unstable (see 7.18.2 and is not finished...) 7.17 is no longer being developed or fixed, so if no new fixes come out it's not because there aren't problems... because with eac...
by rextended
Wed Mar 12, 2025 4:39 pm
Forum: General
Topic: Upgrade or no (revisited)
Replies: 13
Views: 715

Re: Upgrade or no (revisited)

Simple approach:
Peripherals that have 16MB of NAND/Flash or less leave them at 6.49.18 long-term (for those that can be put v6).

In the rest of the cases put them at 7.16.2 and wait...
by rextended
Wed Mar 12, 2025 4:24 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

Turn on/off the user-led if is already defined,
/system leds find [:if ($leds=[:toarray "user-led"]) do={set $".id" disabled=(!$disabled)}]
obviously is always type="on"


Well, you should be satisfied, today you beat me!!! :roll: :lol:
by rextended
Wed Mar 12, 2025 4:16 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

use set 0=on/set 0=off.
no... please no........

at least set [find] type="<on or off>"


While playing with the thingy, there is also the disabled state, the user-led set to on BUT disabled is actually off, and as soon as I enable it, it lights up.
muble, muble.....
by rextended
Wed Mar 12, 2025 3:41 pm
Forum: Useful user articles
Topic: Advanced Routing Failover without Scripting
Replies: 295
Views: 167561

Re: Advanced Routing Failover without Scripting

I've got the idea from someone you might know: https://forum.mikrotik.com/viewtopic.php?p=875571#p875571 I know myself well enough not to stay in the same positions if something evolve. If I later notice problems that arise because RouterOS changes or interactions with other functions that were not...
by rextended
Wed Mar 12, 2025 12:55 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.2 [stable] is released!

Open separate topics, don't mix everything in here, it's already hard to understand anything.
When you've done it elsewhere, write the results here.
by rextended
Wed Mar 12, 2025 12:23 pm
Forum: Useful user articles
Topic: Advanced Routing Failover without Scripting
Replies: 295
Views: 167561

Re: Advanced Routing Failover without Scripting

place-before=*0 place-before=*0 ERRORS. for 2+1 reasons: 1a) *0 ID do not exist if there are not mangle rules, 1b) never use IDs or "relative numbers" on scripts. 2) Better not move static items over dynamic "special dummy rule to show fasttrack counters" or the RouterBOARD it m...
by rextended
Wed Mar 12, 2025 12:11 pm
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

[...] The essence is the same :) , bummer :( >>> Why " :( " ? It's better than... I don't want to argue with the AI ​​as usual >>> I hoped there was a clever way to invert the status of a boolean *somehow* without needing to check the current one Exact, can be done, but is not a boolean, ...
by rextended
Wed Mar 12, 2025 10:32 am
Forum: Scripting
Topic: LEDtoggle, simple script to toggle user led on/off
Replies: 25
Views: 1566

Re: LEDtoggle, simple script to toggle user led on/off

1) If work, is correct and is not too much complicated. 2) See my example. 3) Can be one-line command if accepts true/false (boolean) instead of on/off... 4) Missing a chech if the leds group exist. On my example I add it if is missing (but I do not check hardware if have or not the led) If is somet...
by rextended
Tue Mar 11, 2025 4:15 pm
Forum: General
Topic: How to force "Actual MTU" on PPPoE client [SOLVED]
Replies: 21
Views: 10743

Re: How to force "Actual MTU" on PPPoE client [SOLVED]

I'm repeating myself, but unfortunately people don't know how to distinguish L2MTU from MTU and it always creates confusion . If all the machines are under your control, making a PPPoE connection with an internal MTU of 1500 is a walk in the park. If instead you have to go through third-party lines ...
by rextended
Tue Mar 11, 2025 2:37 pm
Forum: General
Topic: ACL Switch Rules issue after RouterOS v7.17 update (CRS Series) - ARP Blocking Problem
Replies: 7
Views: 598

Re: ACL Switch Rules issue after RouterOS v7.17 update (CRS Series) - ARP Blocking Problem

/interface ethernet switch rule add switch=switch1 ports=ether41-node102 src-address=192.168.1.30/32 comment="Allow only IP 192.168.1.30" add switch=switch1 ports=ether41-node102 new-dst-ports="" comment="Block all other IPs"[/quote] It obviously works fine if it also ...
by rextended
Mon Mar 10, 2025 10:22 pm
Forum: General
Topic: How to force "Actual MTU" on PPPoE client [SOLVED]
Replies: 21
Views: 10743

Re: How to force "Actual MTU" on PPPoE client [SOLVED]

Let's not mix apples with oranges. Layer 3 MTU is one thing, Layer 2 (L2MTU) is another. Ethernet MTU refers to how much the IP (and others) data is. VLAN MTU means how much big can be the data that internal ethertype can carry. If you have one ethernet with MTU of 1500, you notice that a VLAN with ...
by rextended
Sun Mar 09, 2025 5:20 am
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

This thing made me think so much, that I could write a book about it. A story of a civilization so advanced that no one leaves home, everyone is in a cabin and no one has ever really seen anyone other than their family and the robotic doctor. Everyone would look the way they want to others. People w...
by rextended
Sun Mar 09, 2025 4:53 am
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

I'll try to explain better what concerns me, so that no assumptions can be made. If I forgot something, ask... Q) What would change in my life if an AI came out that wrote scripts better than me and others here on the forum? A) Absolutely nothing to me. Q) If the aforementioned AI existed, would I u...
by rextended
Sun Mar 09, 2025 4:26 am
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

Your emotional resistance won't change that trajectory. How cute, the emotions, the love, the envy, the joy... It has nothing to do with it. Do you want to explain whether or not a black hole exists.. with a fart??? :lol: :lol: :lol: You are fear of this, you are fear of that, you are envious of th...
by rextended
Sun Mar 09, 2025 2:36 am
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

typists had toward word processors switchboard operators had toward automated exchanges Two examples that require determinism, against something not determinate, as you yourself wrote. I don't want a word processor to correct my sentences as someone else likes, just because someone else whose LLM h...
by rextended
Sat Mar 08, 2025 1:24 pm
Forum: General
Topic: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]
Replies: 15
Views: 3315

Re: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]

PLEASE do not quote SO USELESSLY... The actual ping/https process have it's connection taken down, for restart ping/https from that process, stop and start again, for create a new connection. The fix is close... (wait...) add this on "disable NAT" part of the script... do not alter timeout...
by rextended
Sat Mar 08, 2025 11:25 am
Forum: General
Topic: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]
Replies: 15
Views: 3315

Re: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]

/ip ipsec policy get [find where peer="NordVPN"]
alone do not do nothing
:put [/ip ipsec policy get [find where peer="NordVPN"] ph2-state]
by rextended
Sat Mar 08, 2025 11:21 am
Forum: General
Topic: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]
Replies: 15
Views: 3315

Re: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]

I added the answers in the post after your questions.

The previous posts have been integrated.
Always check the IPsec status, only that it is no longer based on commenting dynamic routes...

The scheduler is put on the same previous topic where is the script.
by rextended
Sat Mar 08, 2025 11:08 am
Forum: General
Topic: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]
Replies: 15
Views: 3315

Re: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]

1) I use winbox, not the command line. The dynamic route created by LTE lost the comment everytime. 2) Is not cpu expensive, so every 2 second suffice. I add the "copy & paste" for create the schedule 3) If you bring down the LTE, how the IPsec can go up? I miss something on your confi...
by rextended
Sat Mar 08, 2025 10:58 am
Forum: General
Topic: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]
Replies: 15
Views: 3315

Re: PLEASE tell me how to make a VPN Kill Switch on ROS 7.15.2 [SOLVED]

Schedule this: :if ([/ip ipsec policy get [find where peer="NordVPN"] ph2-state] = "estabilished") do={ /ip firewall nat enable [find where comment="defconf: masquerade" and disabled] } else={ /ip firewall nat disable [find where comment="defconf: masquerade" ...
by rextended
Sat Mar 08, 2025 10:34 am
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

I don't want to bother you in this thread, but wouldn't it be better to find the safe-mode active by default (maybe it can be disabled with an option when launching winbox) and ask for confirmation of the changes when exiting winbox? (at most from the browser if you forget to confirm or the operatin...
by rextended
Sat Mar 08, 2025 10:32 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

As already written, I'm an ordinary user (and not even a moderator as you thought), you have to write directly to support@mikrotik.com if you want to contact the staff, this is a user forum where sometime staff appear here. But, as already written, RouterOS uses an old kernel and I don't know if the...
by rextended
Sat Mar 08, 2025 10:26 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

Not to insist, but I've been writing this since the beginning I wrore about compatibility...
by rextended
Sat Mar 08, 2025 10:14 am
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

Thanks for the explanation, in this case you have my total understanding. A suggestion for the future: If it were possible to introduce automatic measures to prevent permalocks, such as preventing deleting or disabling a bridge if there are still ( active ) ports connected. It always makes me think ...
by rextended
Fri Mar 07, 2025 8:39 pm
Forum: General
Topic: Separate trusted from untrusted devices in same subnet
Replies: 3
Views: 582

Re: Separate trusted from untrusted devices in same subnet

Throw everything in the trash and start over. The configuration is unwatchable, all the BASIC firewall rules are missing... And if you want help, but hide the rest of the configuration, you can do it yourself. You have to show everything with "/export file=myexport", even vlan, ip (censore...
by rextended
Fri Mar 07, 2025 3:51 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

it's released to public, so someone's gotta test it and report when things don't go as planned

I would really like to know what quality control they do, since it takes very little to block an updated routerboard.

Do they expect the user to just do netintall to update them???
by rextended
Fri Mar 07, 2025 2:30 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

I don't understand the blame,
the software is beta,
if you didn't want risk to brick the device, why did you put it in?
by rextended
Fri Mar 07, 2025 1:53 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

You have time machine, Feb/7/2106...
by rextended
Fri Mar 07, 2025 1:16 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

*) console - added on-error to "for" and "foreach" loops;
*) console - do not treat return values as errors in scripts run from scheduler;

Image
by rextended
Thu Mar 06, 2025 10:22 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

That switch is used on:
RB750Gr2 (hEX)
RB962UiGS-5HacT2HnT (hAP ac)
RB960PGS (hEX PoE)
RB960PGS-PB (PowerBox Pro)
RB3011 (all series)
RB OmniTik ac (all series)
by rextended
Thu Mar 06, 2025 10:17 pm
Forum: General
Topic: hEX PoE (bridge mode) is only a switch ?
Replies: 17
Views: 1894

Re: hEX PoE (bridge mode) is only a switch ?

I'm missing something... Why you do not want fasttrack UDP?
by rextended
Thu Mar 06, 2025 8:33 pm
Forum: General
Topic: hEX PoE (bridge mode) is only a switch ?
Replies: 17
Views: 1894

Re: hEX PoE (bridge mode) is only a switch ?

https://help.mikrotik.com/docs/spaces/ROS/pages/15302988/Switch+Chip+Features#SwitchChipFeatures-Introduction https://help.mikrotik.com/docs/spaces/ROS/pages/328068/Bridging+and+Switching#BridgingandSwitching-BridgeHardwareOffloading So, in that models: C52iG-5HaxD2HaxD-TC (hAP ax2) C53UiG+5HPaxD2HP...
by rextended
Thu Mar 06, 2025 8:06 pm
Forum: Scripting
Topic: Built in function library
Replies: 147
Views: 168074

Re: Built in function library

Ah, on RouterOS??? Do not write on forum, but to support@mikrotik.com At least [rex@7.23.5] > :put [:timestamp] ; # timestamp give already "time" 2879w18:16:44.037086370 [rex@7.23.5] > :put [:tonum [:timestamp]] 1741285004 [rex@7.23.5] > :put [: todate [:timestamp]] 2025-03-06 18:16:44.037...
by rextended
Thu Mar 06, 2025 7:36 pm
Forum: Scripting
Topic: Built in function library
Replies: 147
Views: 168074

Re: Built in function library

Already exist this: https://forum.mikrotik.com/viewtopic.php?p=977170#p977170 and also consider TIMEZONE... [rex@7.16.2v7] > :global unixtodatetime do={ {... :local ux [:tonum $1] {... :local Fzerofill do={:return [:pick (100 + $1) 1 3]} {... :local prMntDays [:toarray "0,0,31,59,90,120,151,181...
by rextended
Thu Mar 06, 2025 7:27 pm
Forum: General
Topic: ELI5 VLAN help
Replies: 15
Views: 3514

Re: ELI5 VLAN help

Can a pc read tags, NO, so we have to untag the traffic leaving the port that is connected to the PC.
But... that's not quite right...
by rextended
Thu Mar 06, 2025 7:22 pm
Forum: General
Topic: block all internet traffic except few
Replies: 5
Views: 1205

Re: block all internet traffic except few

Aside from wanting to hurt yourself with bullshit (not censored on purpose, this time), the most logical thing to do is to allow all the traffic that is done by a "clean" device, and the traffic destination is logged and then is allowed permanently by the other devices as well. So one devi...
by rextended
Thu Mar 06, 2025 4:45 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

[..] I make a full binary backup and then assign a restore via the scheduler with enough time in advance.[...] I was already giving the same advice a few years ago, it's how I work... 0) If it's a bug like the one reported above(¹), you're fu–ed anyway... 1) Make a binary backup 2) Make one export ...
by rextended
Thu Mar 06, 2025 4:41 pm
Forum: General
Topic: Route two different ISP parallel communication is it posible [SOLVED]
Replies: 16
Views: 2887

Re: Route two different ISP parallel communication is it posible [SOLVED]

Let's get out of the rambling. Given that security is important, for me you have a too serious approach. You approach a network for casual users in transit at the bar in the same way as a network of institutes for bacteriological research. I know that total security is equal to the sum of its parts,...
by rextended
Thu Mar 06, 2025 4:30 pm
Forum: General
Topic: Route two different ISP parallel communication is it posible [SOLVED]
Replies: 16
Views: 2887

Re: Route two different ISP parallel communication is it posible [SOLVED]

What borders? Wait a few months and... there will be "some" unemployed on border customs in Canamericaland... :mrgreen:
by rextended
Thu Mar 06, 2025 2:03 pm
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

MikroTik has the habit of leaving the same name for different things... the user-manager of v6 has nothing to do with the one of v7, like CAPsMAN, etc...
by rextended
Thu Mar 06, 2025 1:46 pm
Forum: General
Topic: PPPoE Client can actually select multiple interfaces!
Replies: 3
Views: 905

Re: PPPoE Client can actually select multiple interfaces!

It's easy: if you have multiple sources, specify more interface where search service/AC Name.
by rextended
Thu Mar 06, 2025 1:36 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

It would be enough if the safe mode was automatic(*) and asked for confirmation of changes before exiting...

(*) Increased from 100 to ad libitum...
by rextended
Wed Mar 05, 2025 2:29 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

Like removing or disabling bridge for error on untouched router cause permalock
by rextended
Wed Mar 05, 2025 2:19 pm
Forum: Beginner Basics
Topic: Second IP range can't connect to Internet [SOLVED]
Replies: 5
Views: 702

Re: Second IP range can't connect to Internet

Where is the export?

Where is the masquerade?
by rextended
Wed Mar 05, 2025 2:15 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

This exist on 7.18.1 so, probably, also exist on 7.19beta BUG : Removing not default queue type used on queue simple or queue tree before removing/changing the existant queue cause permalock . How to replicate: /queue type add kind=cake name=queue1 /queue simple add name=queue1 target="" t...
by rextended
Wed Mar 05, 2025 2:12 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

BUG : Removing not default queue type used on queue simple or queue tree before removing/changing the existant queue cause permalock . How to replicate: /queue type add kind=cake name=queue1 /queue simple add name=queue1 target="" total-queue=queue1 /queue tree add name=queue1 parent=glob...
by rextended
Wed Mar 05, 2025 2:09 pm
Forum: General
Topic: My Mikrotik is sometimes incredible slow, need help.
Replies: 19
Views: 1339

Re: My Mikrotik is sometimes incredible slow, need help.

Ouch... RouterOS 6.43.8 fast-forward off??? /interface bridge add fast-forward=no name=bridge1 all the bridge config is obsolete for new versions, just upgrade to last v6 long term. pptp server enabled whit blank user??? the world is not enough.... open door for all the world... /interface pptp-ser...
by rextended
Wed Mar 05, 2025 1:53 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

Ok, with remove [find default=no] also my device is locked... probably the command is used before deleting existing queue simple/tree that use the type..... A manual reboot solved, not go on loop. NO. Must netinstall. after some seconds locks again. /queue type add kind=cake name=queue1 /queue simpl...
by rextended
Wed Mar 05, 2025 10:53 am
Forum: General
Topic: My Mikrotik is sometimes incredible slow, need help.
Replies: 19
Views: 1339

Re: My Mikrotik is sometimes incredible slow, need help.

It's a switch, not a router, it has a different use. Do you drink broth with a fork? Whatever happens, you need to show the switch configuration export (not screenshot), because it should still be able to rotate at least 100Mbps for sure, so it could be the configuration that sinks it. https://mikro...
by rextended
Wed Mar 05, 2025 10:44 am
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

If I tried to translate it into English it would be "Come on, I don't believe it!"
by rextended
Wed Mar 05, 2025 10:35 am
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

Avoid this command in this version, your device will crashed and put the device on boot loop. /queue/type/remove [find default =no] just done, nothing happen. C52iG-5HaxD2HaxD These things written so haphazardly and without the slightest context are worthless. Provide the supout.rif to support@mikr...
by rextended
Tue Mar 04, 2025 4:03 pm
Forum: Beginner Basics
Topic: Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]
Replies: 51
Views: 6816

Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]

Didn’t mean you specifically, but if you relate… well, I’m not gonna argue! 65+ maybe? :D
I thought you were referring to me, since I wrote a lot in this topic.

No... I'm about 20 years young... less... :roll:
by rextended
Tue Mar 04, 2025 3:30 pm
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

Experienced travelers still bring their expertise to interpret the GPS suggestions, understanding when to follow them and when human judgment should override. How many people I found going the wrong way, children run over by those who end up on the sidewalk to look at the screen... But it would hav...
by rextended
Tue Mar 04, 2025 3:15 pm
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

But look, I would call it a heartfelt discussion, rather than a flamed one.
So far it is at a high level of democracy and civilization.
by rextended
Tue Mar 04, 2025 3:12 pm
Forum: Beginner Basics
Topic: Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]
Replies: 51
Views: 6816

Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]

Look, you can count on my help (if it's my sector), it's not that if I think, in one way or another, I give up expressing what I think. I repeat again that users have no qualms about sharing knowledge, they simply don't want to be treated like AI proofreaders . (at least this is what I deduce from w...
by rextended
Tue Mar 04, 2025 3:03 pm
Forum: Beginner Basics
Topic: Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]
Replies: 51
Views: 6816

Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]

When something comes easily to someone, they often struggle to understand why others might need different approaches or tools to achieve the same outcomes. Not everyone processes information the same way, has the same learning style, or possesses identical cognitive strengths. You finally wrote som...
by rextended
Tue Mar 04, 2025 2:59 pm
Forum: Beginner Basics
Topic: Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]
Replies: 51
Views: 6816

Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]

I wonder what your actual capacity to understand and want is. That you are a ChatBot? Now I will avoid asking you to prove to me that you are alive, but I will ask you a simple question: Did you take those who participate (for free) on the forum, making their knowledge available (for free) as proofr...
by rextended
Tue Mar 04, 2025 2:51 pm
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

[*]Create content that many users can't distinguish from human expertise Exactly, many users, not all users... [*]Produce solutions that work well enough to be implemented Maybe, never seen (well enough). [*]Capture value from your knowledge and corrections without compensation I am among the many ...
by rextended
Tue Mar 04, 2025 2:40 pm
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

Two posts ago, the answer seemed to me to be written by AI, completely written in an unnatural and artificial way. And as I have written several times, I only write what I write, nothing else. So, if your intelligence has not yet understood it, I am against posting those incorrect -hi- results. Yes,...
by rextended
Tue Mar 04, 2025 2:27 pm
Forum: Beginner Basics
Topic: Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]
Replies: 51
Views: 6816

Re: Setting Up Policy-Based Routing with Mikrotik Hex Refresh for Selective VPN Traffic [SOLVED]

Tools evolve and help us do more with less, and that’s kind of the point, right? In fact, look at nature: It has a tendency to make the most stupid or defective plants, animals and beings in the same species die more easily, while it rewards and makes the plants, animals and beings that know how to...
by rextended
Tue Mar 04, 2025 2:13 pm
Forum: Beginner Basics
Topic: v7.18 7.18.1 Console has crashed [SOLVED]
Replies: 9
Views: 2046

Re: v7.18 7.18.1 Console has crashed [SOLVED]

(ask also how many partitions...)
by rextended
Tue Mar 04, 2025 1:24 pm
Forum: General
Topic: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot
Replies: 81
Views: 12464

Re: Request for Comprehensive RouterOS v7 Manual with Examples to build code generation chatbot

The problem with posting s–t generated here on the forum is that, in addition to the s–t generated by real people, it adds to the material with which intelligence is trained and users (the few) who search for something on the forum also find the remains of s–t from artificial intelligence. Not to me...
by rextended
Tue Mar 04, 2025 12:34 pm
Forum: Scripting
Topic: Run script via ssh
Replies: 2
Views: 641

Re: Run script via ssh

Forget about generative artificial intelligence, consider instead intelligentive real generation... First of all, but if in the script you delete all the backups that have a date lower than now less 30 days, isn't it quicker to delete them all with adequate remove-find-where command??? All the previ...
by rextended
Tue Mar 04, 2025 12:25 pm
Forum: General
Topic: Route two different ISP parallel communication is it posible [SOLVED]
Replies: 16
Views: 2887

Re: Route two different ISP parallel communication is it posible [SOLVED]

(*) Ignoring any higher level considerations, read this:
https://help.mikrotik.com/docs/spaces/R ... classifier

There is no (*) way to add two different ISPs to increase speed. At most you go as fast as the faster of the two.
by rextended
Tue Mar 04, 2025 12:12 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

Same here (hap ax3 user)...I could never get mtu 1492 pppoe client...always goes back to mtu 1480, no matter how i manually set mtu mru etc.. But when I use my openwrt router (pppoe client), I can get mtu 1492 automatically. If you don't show (the export ) how you configured the device, what do you...
by rextended
Tue Mar 04, 2025 11:57 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

I need all the support from each and everyone of you As already written, either you buy a RouterBOARD or you use bare metal hardware compatible with RouterOS x32_64, or a virtualiser (as the other user suggested, ESXi) compatible with hardware to which the virtualiser can provide direct access, but...
by rextended
Tue Mar 04, 2025 11:52 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

I see there is still confusion between MTU and L2MTU...... But the user still doesn't understand the difference between L2 and L3 MTU, As already written in other posts, the MTU must be 1500 everywhere, when is not needed to be changed. PPPoE MTU and MRU 1500 (no MRRU). The VLAN is not an L3 protoco...
by rextended
Tue Mar 04, 2025 9:36 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

The PPPoE MTU is more related to those who play at home with RouterOS, or some company that to save money buys toys instead of a serious RouterBOARD (and if the ISP knows how to do its job and provides an MTU of 1500...). Please read post earlier [...] So stop saying my isp is not doing good job IT...
by rextended
Tue Mar 04, 2025 1:57 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

which ones are included in each ROS version remains a big mystery
which Linux kernel NIC drivers Mikrotik chooses to opt in when compiling RouterOS is unknown.
viewtopic.php?t=214801#p1130469
by rextended
Mon Mar 03, 2025 7:36 pm
Forum: Wireless Networking
Topic: Repeater config shared please?
Replies: 21
Views: 1438

Re: Repeater config shared please?

Thanks, you saved me the trouble of searching through the changelogs.
by rextended
Mon Mar 03, 2025 7:15 pm
Forum: Wireless Networking
Topic: Repeater config shared please?
Replies: 21
Views: 1438

Re: Repeater config shared please?

I have to write that station-bridge and station-pseudobridge appeared in 7.18.1 in the hAPax² that I have for testing, so, I didn't notice, they added something...

wifi, double click on wifi1, general tab.... mode:...
by rextended
Mon Mar 03, 2025 6:52 pm
Forum: Wireless Networking
Topic: Repeater config shared please?
Replies: 21
Views: 1438

Re: Repeater config shared please?

I have to write that station-bridge and station-pseudobridge appeared in 7.18.1 in the hAPax² that I have for testing, so, I didn't notice, they added something... I need to investigate further. https://help.mikrotik.com/docs/spaces/ROS/pages/122388518/Wireless+Station+Modes This mode is MikroTik pr...
by rextended
Mon Mar 03, 2025 6:38 pm
Forum: Wireless Networking
Topic: Repeater config shared please?
Replies: 21
Views: 1438

Re: Repeater config shared please?

I usually say what I say, and I don't start saying I didn't say something...
by rextended
Mon Mar 03, 2025 6:21 pm
Forum: Wireless Networking
Topic: Repeater config shared please?
Replies: 21
Views: 1438

Re: Repeater config shared please?

Before continuing, please note that NEW AC or AX drivers DO NOT SUPPORT any modes other than AP and simple client,
instead all old drivers support all legacy 4-MAC modes, like station-bridge, etc.
by rextended
Mon Mar 03, 2025 6:11 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

Since all the internet, or at least 90% (ahem... :wink:) transmits with MTU at 1500, you will never have problems with MTU at 1480/1492 in PPPoE because in this regard I think that nobody connects via PPPoE to a host hosted on a cloud... The PPPoE MTU is more related to those who play at home with R...
by rextended
Mon Mar 03, 2025 5:29 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

Ahhhh, not rules, addresses.... 🙃
Effort for effort, put 7.18.1 instead of 7.18[nothing], it fixes more issues related to those written than it seems...
by rextended
Mon Mar 03, 2025 5:28 pm
Forum: General
Topic: no LTS for current mikrotik hardware - will that change?
Replies: 3
Views: 747

Re: no LTS for current mikrotik hardware - will that change?

If you want an official answer, write to support@mikrotik.com and see if they give more importance to the latest arrival (sarcastic),
than those who have been asking for years to make 7.something an LTS................
I recommend 7.16.2, for now....
by rextended
Mon Mar 03, 2025 5:24 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

38,146 only on firewall filter????......
by rextended
Mon Mar 03, 2025 5:19 pm
Forum: Scripting
Topic: Bug when executing script that contains :return statement from scheduler
Replies: 10
Views: 1226

Re: Bug when executing script that contains :return statement from scheduler

But as I wrote before, just put the correct command in the scheduler instead of just the name of the script:
/system script run myscriptname
by rextended
Mon Mar 03, 2025 5:14 pm
Forum: Scripting
Topic: Bug when executing script that contains :return statement from scheduler
Replies: 10
Views: 1226

Re: Bug when executing script that contains :return statement from scheduler

More fast than my copy & paste....
:local thisscript do={
    :log info "PRE-RETURN"
    :return   ""
    :log info "NOT-EXECUTED"
}

$thisscript
by rextended
Mon Mar 03, 2025 5:10 pm
Forum: Scripting
Topic: Bug when executing script that contains :return statement from scheduler
Replies: 10
Views: 1226

Re: Bug when executing script that contains :return statement from scheduler

/system script run p
Inside the scheduler, and work as you expected....

:return is for go outside one function, not for stop the script, is a misuse, where is on the docs?
by rextended
Mon Mar 03, 2025 4:45 pm
Forum: Scripting
Topic: Bug when executing script that contains :return statement from scheduler
Replies: 10
Views: 1226

Re: Bug when executing script that contains :return statement from scheduler

I was unable to replicate the error. Based on what you wrote, and guessing everything else... The error is... You omit "/system script run" in front of "p". Is not just "p" but the full path must be specified: /system script run p Detailed: What is p ? Is a shortcut fo...
by rextended
Mon Mar 03, 2025 4:29 pm
Forum: Scripting
Topic: Bug when executing script that contains :return statement from scheduler
Replies: 10
Views: 1226

Re: Bug when executing script that contains :return statement from scheduler

is better "/system scheduler export" and "/system script export" that one print for readability & debug and also for see how the script is invoked but what's the point of a :return "" outside a loop that returns nothing to nothing? also this is a correct script, but...
by rextended
Mon Mar 03, 2025 4:26 pm
Forum: Announcements
Topic: v6.49.18 [long-term] is released!
Replies: 42
Views: 49456

Re: v6.49.18 [long-term] is released!

Thanks for the clarification.
by rextended
Mon Mar 03, 2025 4:23 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

I can only assume that it works fine for some users.
There are already some complaints on the forum about the same thing on x86 systems because you can't change the MTU from 1500 to more.
by rextended
Mon Mar 03, 2025 4:21 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

(
I forgot, the driver for Intel i211AT is only present on VyOS
==> Intel(R) Gigabit Ethernet Network Driver igb 6.6.79
that on RouterOS is not present but e000e driver can use only basic functions due that do not support completely 82575-, 82576-, 82580-, I350-, I210-, I211- based NIC.
)
by rextended
Mon Mar 03, 2025 3:55 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

I'm not a moderator, so I didn't ban anything, it was your behavior (not in this thread/topic)
by rextended
Mon Mar 03, 2025 3:20 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

NIC drivers on RouterOS 7.18.1 for CHR / x86_64 5.6.3 kernel ( 2020 ) Intel(R) PRO/100 Network Driver e100 (2016) Intel(R) PRO/1000 Network Driver e1000 7.3.21 Intel(R) PRO/1000 Network Driver e1000e 3.2.6 Intel(R) Gigabit Virtual Function Network Driver igbvf 2.4.0 NIC drivers on VyOS 6.6.79 kernel...
by rextended
Mon Mar 03, 2025 2:57 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

It would seem there is something lacking in RoS. And what have I written so far? There are no drivers. Can these drivers be added? Last VyOS release is ~600MB, last x86_64 / CHR RouterOS release is ~20MB? (i do not remember correct size but are closed to what I wrote) so RouterOS has ~580MB of &quo...
by rextended
Mon Mar 03, 2025 2:51 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

A trivial example (direct on bare metal x86, not CHR), VyOS supports the Intel i211AT chip because it has dedicated and specific drivers inside.
RouterOS does not have specific drivers, but generic ones, which do not allow you to make popcorn(...) with the network card.
by rextended
Mon Mar 03, 2025 2:43 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

@anav , is the same: and RouterOS doesn't support all the functions on non-RouterBOARD hardware or that doesn't have fully compatible drivers inside RouterOS ... Unzip the .npk and you have the list of what kext are inside the RouterOS... Usually you have to prove the existence of something you cla...
by rextended
Mon Mar 03, 2025 2:40 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

You've already had an answer, how long does it take you to figure it out? I had to reply to a user in another topic and I found yet another post resurrected to draw attention to his problem with 1492 / 1480 MTU. But the user still doesn't understand the difference between L2 and L3 MTU, and RouterOS...
by rextended
Mon Mar 03, 2025 2:35 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

@jlgonzalez
Don't pollute this topic unnecessarily, open a new one in Scripting for this thing and show the script.
by rextended
Mon Mar 03, 2025 1:22 pm
Forum: Scripting
Topic: Problem Sending Message to Telegram via API on MikroTik RouterOS
Replies: 14
Views: 1542

Re: Problem Sending Message to Telegram via API on MikroTik RouterOS

mode must not used if is used url


It looks like a script made by artificial deficiency, too many clues.
Even a person who doesn't know scripting could not systematically write it badly like that.
# Replace spaces with %20 to avoid error in Telegram
:set Message [ $Message ];
by rextended
Mon Mar 03, 2025 1:19 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

He already knows it...
viewtopic.php?t=202945#p1045773
by rextended
Mon Mar 03, 2025 12:55 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18.1 [stable] is released!

I could understand for the peripherals that were born with RouterOS v6, but for a peripheral that was born with v7 (am I remembering wrong?) they should make dedicated packages where useless drivers for all the other individual arm models are not put... Have you tried if netinstall + .rsc does the m...
by rextended
Mon Mar 03, 2025 12:40 pm
Forum: Announcements
Topic: v6.49.18 [long-term] is released!
Replies: 42
Views: 49456

Re: v6.49.18 [stable] is released!

Why, do you keep a door open with winbox to the rest of the world? How could this possibly bother you or the security team? Do you use the default user admin or some other trivial username??? In another topic it has already come out that if you put the user like "#7464.myXomRuser" it takes...
by rextended
Sun Mar 02, 2025 11:54 pm
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

Finally wise words.
by rextended
Sun Mar 02, 2025 4:27 am
Forum: Beginner Basics
Topic: v7.8 Access List not working in Station mode.
Replies: 5
Views: 1096

Re: v7.8 Access List not working in Station mode.

On v6 ax do not exist at all.
by rextended
Sun Mar 02, 2025 4:22 am
Forum: Scripting
Topic: Scripting problems / email / upgrade routerboard
Replies: 23
Views: 1798

Re: v7.18 [stable] is released!

Instead of being sarcastic, try to understand what I wrote, that these are free lessons. It doesn't matter if you admit that you take them into consideration, no one will ever know. No one is elite or infallible, insistence is wrong, especially when there is a clear and simple solution: /system rout...
by rextended
Sun Mar 02, 2025 4:12 am
Forum: Scripting
Topic: Scripting problems / email / upgrade routerboard
Replies: 23
Views: 1798

Re: v7.18 [stable] is released!

Also you failed the read the part where I stated if you want the full value that another pick statement is required. don't try to climb up the mirrors... { :local firmware "7.17.2" :local upgrade "7.18" :local curver ([pick $firmware 0 1] + [:pick $firmware 2 4] + [:pick $firmwa...
by rextended
Sun Mar 02, 2025 4:09 am
Forum: Scripting
Topic: Scripting problems / email / upgrade routerboard
Replies: 23
Views: 1798

Re: v7.18 [stable] is released!

So important it's wrong. For "him" 7.17.1 and 7.17.2 are the same thing... Ignoring then that 7.9.x and lower give an error...
by rextended
Sun Mar 02, 2025 4:05 am
Forum: Scripting
Topic: Scripting problems / email / upgrade routerboard
Replies: 23
Views: 1798

Re: v7.18 [stable] is released!

That script works just fine. since I'm already using it. Maybe try it for yourself ? Do you really want to teach me the basics? (for example :set $curver, where is already defined curver? why is present $ in face of curver, you try to add two strings, etc.) Using your logic: { :local firmware "...
by rextended
Sun Mar 02, 2025 3:55 am
Forum: Scripting
Topic: Scripting problems / email / upgrade routerboard
Replies: 23
Views: 1798

Re: v7.18 [stable] is released!

Script Error: cannot add string to string And is full of other errors. Before you write this b–t, do you try them? As I already wrote, it's useless, just let RouterOS do it, since you have to restart it anyway to use the new "bios"... /system routerboard settings set auto-upgrade=yes
by rextended
Sun Mar 02, 2025 3:23 am
Forum: General
Topic: ROS 6 To 7 migration help
Replies: 11
Views: 1363

Re: ROS 6 To 7 migration help

in ROS6 working flawlessly
So I ask myself why change...
by rextended
Sun Mar 02, 2025 3:08 am
Forum: General
Topic: Need help creating a simple script.
Replies: 12
Views: 1327

Re: Need help creating a simple script.

I asked Grok if the script was correct, and to tell me the truth, not to please me and not to give me satisfaction. To these instructions he replied that the script immediately locks with an error, because no one responds to "value:" and even if someone responds, to the first "remove ...
by rextended
Sun Mar 02, 2025 2:52 am
Forum: Beginner Basics
Topic: v7.8 Access List not working in Station mode.
Replies: 5
Views: 1096

Re: v7.8 Access List not working in Station mode.

RouterOS v7 does not use MikroTik custom drivers as v6,
so,
no extra features that aren't already built by the driver/chip vendor.
by rextended
Sun Mar 02, 2025 2:49 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

I had to reply to a user in another topic and I found yet another post resurrected to draw attention to his problem with 1492 / 1480 MTU. But the user still doesn't understand the difference between L2 and L3 MTU, and RouterOS doesn't support all the functions on non-RouterBOARD hardware or that doe...
by rextended
Sun Mar 02, 2025 2:33 am
Forum: Beginner Basics
Topic: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492
Replies: 103
Views: 10400

Re: PPPOE MTU ALWAYS DEFAULTS TO 1480 INSTEAD OF 1492

Stop resurrecting old topics and merging them all here.

You've had your moment of attention.

Write to support@mikrotik.com or buy a MiroTik device if you want to use RouterOS in full.
by rextended
Sun Mar 02, 2025 2:27 am
Forum: General
Topic: How to force "Actual MTU" on PPPoE client [SOLVED]
Replies: 21
Views: 10743

Re: How to force "Actual MTU" on PPPoE client [SOLVED]

You are becoming a plague on the forum with the necroposting and hijacking the topics that need to converge with yours. Buy MikroTik hardware so you solve the problem. MikroTik does not provide support for every peripheral on the market, if you use x86 or CHR it is up to you to choose compatible ha...
by rextended
Sun Mar 02, 2025 2:14 am
Forum: Scripting
Topic: Updating CA root certs regularly [SOLVED]
Replies: 46
Views: 24009

Re: Updating CA root certs regularly [SOLVED]

Since 7.18 that structure doesn't work. Now you can't import a txt file as a certificate. It's necessary a pem file. A PEM file IS a renamed TXT file... Probably do not work for "bug" solved on 7.19beta... *) console - fixed issue with files when using scripts (introduced in v7.18); I hav...
by rextended
Fri Feb 28, 2025 7:37 pm
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

Everytime start from upper IP, but on multiple "next", use the "next" only when the main poll is depleted. /ip pool add name=SuperPool ranges=192.168.88.2-192.168.88.254,192.168.89.1-192.168.89.254,192.168.90.1-192.168.90.254,192.168.91.1-192.168.91.254 usually start from 192.168...
by rextended
Fri Feb 28, 2025 5:37 pm
Forum: Beginner Basics
Topic: Attempting to isolate Winbox access [SOLVED]
Replies: 9
Views: 1927

Re: Attempting to isolate Winbox access [SOLVED]

The software used on DVRs/NVRs is leaky everywhere, especially in the less expensive ones... Customers install them and leave them on for months without ever checking for updates or brute force usernames and passwords. Then once hackers have hacked them, they install their own firmware on top and do...
by rextended
Fri Feb 28, 2025 5:30 pm
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

Nothing particularly technical... :lol:
by rextended
Fri Feb 28, 2025 5:26 pm
Forum: Beginner Basics
Topic: Attempting to isolate Winbox access [SOLVED]
Replies: 9
Views: 1927

Re: Attempting to isolate Winbox access [SOLVED]

Easy: Avoid to open ports to DVR/NVR
by rextended
Fri Feb 28, 2025 5:22 pm
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

IP address of "1.1" should be expanded to "1.0.0.1" (which is Cloudflare's other DNS IP) But RouterOS deals with IPv4 shortcuts just fine: :put [:tostr 1.1] 1.0.0.1 :put [:typeof 1.1] ip Yes, it follows it so well that in json 1.1 as a string it is then converted to an IP even i...
by rextended
Fri Feb 28, 2025 5:11 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

To add default IPv6 FastTrack when updating from ANY v7 previous version, just paste this into the terminal (barring arbitrary changes to the default configuration already made). New devices netinstalled with default 7.18beta4 config and later, or reset with default configuration on 7.18beta4 and l...
by rextended
Fri Feb 28, 2025 5:06 pm
Forum: Announcements
Topic: v7.19beta [testing] is released!
Replies: 272
Views: 61335

Re: v7.19beta [testing] is released!

Can, please, be explained this:
*) bridge - improved stability in case of configuration error (introduced in v7.15);
by rextended
Fri Feb 28, 2025 5:03 pm
Forum: Beginner Basics
Topic: The twelve Rules of Mikrotik Club
Replies: 53
Views: 7430

Re: The twelve Rules of Mikrotik Club

The problem is not there. One must always know what he is doing. For example, in the default configuration of a hAPax², if a novice deletes or deactivates the bridge he immediately loses control of the device and must netisntall it from scratch to access the configuration again... (out of the bridge...
by rextended
Fri Feb 28, 2025 4:25 pm
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

And again, is simple to split the pool, that remember why fake MAC are used on leases .... Extra fake leases inside the leases table are more annoying when working with them than setting up the pools correctly once and for all. And then I think that taking unnecessary steps later is worse than immed...
by rextended
Fri Feb 28, 2025 1:07 pm
Forum: General
Topic: Disabling SMB auto sharing
Replies: 3
Views: 1182

Re: Disabling SMB auto sharing

Set default share on "lo" interface only.
/disk settings
set auto-media-interface=lo
by rextended
Fri Feb 28, 2025 12:50 pm
Forum: Beginner Basics
Topic: Attempting to isolate Winbox access [SOLVED]
Replies: 9
Views: 1927

Re: Attempting to isolate Winbox access [SOLVED]

Lately I see dozens and dozens of customers with a hacked DVR / NVR because they insist on leaving a port open to reach it from outside, instead of using the cloud or a VPN first... (All used as an attack vector for RDP protocols) It will be yet another NVR in the hands of hackers. add action=accept...
by rextended
Fri Feb 28, 2025 12:22 pm
Forum: Scripting
Topic: 7.18 rOS and the problem with scripts
Replies: 2
Views: 1121

Re: 7.18 rOS and the problem with scripts

Use correct syntax, show-sensitive included for full backup.......... /export terse show-sensitive file="backup1-gw.rsc" /tool e-mail send to="user@email.com" subject="$[/system identity get name] export" \ body="Gateway Backup-Config $[/system clock get date]"...
by rextended
Fri Feb 28, 2025 11:27 am
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

This script is not working, Please check [...] It's not the script that doesn't work, it's you who are unable to write it correctly. I misread before, but just do this: /system routerboard settings set auto-upgrade=yes The routerboard does not auto-reboot to apply it (and not even in the previous s...
by rextended
Fri Feb 28, 2025 10:19 am
Forum: General
Topic: PPPoE Server rejects MTU of 1540
Replies: 7
Views: 2708

Re: PPPoE Server rejects MTU of 1540

Have you tried what I wrote to you? Server side: Ethernet MTU 1500 (pppoe is not a L3 protocol, useless increase MTU) Restore original ethernet L2MTU of 1580 (suffice for VLAN + PPPoE) Bridge MTU AUTO (remove the MTU) Set VLAN MTU to 1548 Set PPPoE Server Max MRU and MTU to 1540 and do not set MRRU ...
by rextended
Fri Feb 28, 2025 10:03 am
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

The simplest, if you really like shooting yourself in the foot, is this:

viewtopic.php?t=214886#p1127217
by rextended
Thu Feb 27, 2025 3:25 pm
Forum: Wireless Networking
Topic: Multi-Passphrase some not working..
Replies: 5
Views: 1416

Re: Multi-Passphrase some not working..

Expires ::= Year-Month-Day Hour:Min:Sec Hour ::= 00..24 Min,Sec ::= 00..59 Month ::= 1..12 Day ::= 1..31 Year ::= 1970.. 2106 2106 is the "fix" using unsigned 32 bit for gain time... (06:28:15 UTC on Sunday, 7 February 2106) (and similar problem exist for NTP that stop working 06:28:16 UT...
by rextended
Thu Feb 27, 2025 3:17 pm
Forum: Wireless Networking
Topic: Multi-Passphrase some not working..
Replies: 5
Views: 1416

Re: Multi-Passphrase some not working..

I do not know why is 14 days later on 2 Feb and not 19 Jan, but is something involved like that... too much coincidence...
by rextended
Thu Feb 27, 2025 3:14 pm
Forum: Wireless Networking
Topic: Multi-Passphrase some not working..
Replies: 5
Views: 1416

Re: Multi-Passphrase some not working..

Is simply the time bug that from 03:14:07 UTC on 19 January 2038 all 32 bit OS stop correctly working on dates.
The next seconds the time go back to 20:45:52 UTC on 13 December 1901
by rextended
Thu Feb 27, 2025 3:06 pm
Forum: Scripting
Topic: executing script DynDNS from scheduler failed, please check it manually
Replies: 13
Views: 3381

Re: executing script DynDNS from scheduler failed, please check it manually

remove want one array of one or more IDs as parameter
/file remove [find where name="$identitydate-IP.txt"]
no matter if on terminal this or that work or not.
by rextended
Thu Feb 27, 2025 11:41 am
Forum: Announcements
Topic: Newsletter #123 | February 2025
Replies: 36
Views: 7097

Re: Newsletter #123 | February 2025

A device that is recommended instead of the cloud that uses proprietary and closed software is worse and provides fewer guarantees . Here in fact comes the problem of using "in house" solutions rather than the cloud. If you do everything yourself and something breaks you get screwed, if yo...
by rextended
Thu Feb 27, 2025 11:13 am
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

No one is forcing you to use or buy that model, just ignore it.
by rextended
Thu Feb 27, 2025 10:47 am
Forum: Scripting
Topic: executing script DynDNS from scheduler failed, please check it manually
Replies: 13
Views: 3381

Re: executing script DynDNS from scheduler failed, please check it manually

for localize all commands without write in every line /system, on this case only date is used, but also gmt-offset, time-zone-autodetect, dst-active, time, time-zone-name can be obtained without write everytime /system /system :local cdate [clock get date] is the same to :local cdate [/system clock ...
by rextended
Wed Feb 26, 2025 9:22 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

WARNING: Installing 7.20_ab28 (on 7.18rc1) reset to " no " the device-mode flagging-enabled, traffic-gen, container, partitions, routerboard , on my hAPax² that I have already set to " yes " on 7.18rc1 (OK, this topic is about 7.18, but 7.20_alpha_build28 is provided in this topic)
by rextended
Wed Feb 26, 2025 9:17 pm
Forum: Beginner Basics
Topic: Cant ping from vlan to lan interface
Replies: 15
Views: 2133

Re: Cant ping from vlan to lan interface

I have pointed out the errors in general, then if something goes wrong, first draw a diagram of how things should go,
then @anav will guide you (if you listen to him and are cooperative) in what you need.

Post also a "fresh" export
by rextended
Wed Feb 26, 2025 9:08 pm
Forum: Beginner Basics
Topic: Cant ping from vlan to lan interface
Replies: 15
Views: 2133

Re: Cant ping from vlan to lan interface

i used the dhcp setup it give me that by default
I don't believe it even if you make a video.

First you made the VLANs, then you put the IPs randomly, then when you launched the DHCP setup it adapted to the bu–it you wrote before.
by rextended
Wed Feb 26, 2025 9:04 pm
Forum: Beginner Basics
Topic: Cant ping from vlan to lan interface
Replies: 15
Views: 2133

Re: Cant ping from vlan to lan interface

no difference because @panisk0 do not finish the corrections
by rextended
Wed Feb 26, 2025 9:00 pm
Forum: Beginner Basics
Topic: Cant ping from vlan to lan interface
Replies: 15
Views: 2133

Re: Cant ping from vlan to lan interface

You can not use .0 IPs for addresses, nor for gateway, and also the pools must start from 2, not from 1.

Where you find this s~y config?
by rextended
Wed Feb 26, 2025 8:20 pm
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

One /22 of 1015 address (+ 1 gateway + 1 broadcast + 1 network + 6 skipped .0 and .255 addresses = 1024) /ip dhcp-server network add address=192.168.88.0/22 dns-server=192.168.88.1 gateway=192.168.88.1 netmask=22 ntp-server=192.168.88.1 /ip pool add name=SuperPool ranges=192.168.88.2-192.168.88.254,...
by rextended
Wed Feb 26, 2025 7:59 pm
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

is simple to split the pool, that remember why fake MAC are used on leases....
by rextended
Wed Feb 26, 2025 3:45 pm
Forum: General
Topic: mikrotik script find mac address specific octet
Replies: 3
Views: 1473

Re: mikrotik script find mac address specific octet

viewtopic.php?p=996854#p996854

Also 3, 7, B and F have private bit on...

Just this:
:local test "0F:0C:DE:AD:BE:EF" ; :if ($test~"^.[2367aAbBeEfF]:") do={ :put "fkng private"}
by rextended
Wed Feb 26, 2025 2:02 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

Could you please do me a favor? Just to satisfy my curiosity.
Just open the file with 7-zip or similar for see routeros-7.20_ab23-arm64.npk\lib\modules\5.6.3
by rextended
Wed Feb 26, 2025 1:42 pm
Forum: Announcements
Topic: Newsletter #123 | February 2025
Replies: 36
Views: 7097

Re: Newsletter #123 | February 2024

Kudos to the graphic designer who made the ROSE logo, brilliant!
by rextended
Wed Feb 26, 2025 1:32 pm
Forum: General
Topic: Log rule regex doesn't work for negative lookahead [SOLVED]
Replies: 8
Views: 3233

Re: Log rule regex doesn't work for negative lookahead [SOLVED]

I know, but negative lookahead frop PHP is unsupported on all POSIX revision (actually).
by rextended
Wed Feb 26, 2025 1:25 pm
Forum: General
Topic: Log rule regex doesn't work for negative lookahead [SOLVED]
Replies: 8
Views: 3233

Re: Log rule regex doesn't work for negative lookahead [SOLVED]

/log print where (!(message~"ntp change time"))
by rextended
Wed Feb 26, 2025 1:17 pm
Forum: General
Topic: Log rule regex doesn't work for negative lookahead [SOLVED]
Replies: 8
Views: 3233

Re: Log rule regex doesn't work for negative lookahead [SOLVED]

Simply RouterOS for RegEx use only POSIX standard without metadata (Character classes) or syntax from other languages

https://en.wikibooks.org/wiki/Regular_E ... xpressions
by rextended
Wed Feb 26, 2025 12:59 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

OVPN related issues are fixed, if you still have problems with this version, send us supout. https://box.mikrotik.com/d/c2fc960065ed49b78214/ . Great news, thanks for the quick fix on this one. Can we expect a v7.18.1 fixing this, or it will be published on v7.19 only, for example? Probably only on...
by rextended
Wed Feb 26, 2025 12:10 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

@oskarsk
WARNING: Are links for RouterOS 7.20_ab22!!!

I do not know if is done on purpose, skipping 7.18.x / 7.19
by rextended
Wed Feb 26, 2025 12:03 pm
Forum: General
Topic: CRS125-24G-1S-2HnD no Back-2-Home feature.
Replies: 4
Views: 1519

Re: CRS125-24G-1S-2HnD no Back-2-Home feature.

@jaceqp
How difficult is it to read a manual before posting a question?

https://help.mikrotik.com/docs/spaces/R ... ck+To+Home
Hardware requirements: ARM/ARM64/TILE architecture devices

CRS125-24G-1S-2HnD is a mipsbe Switch, not a arm64 or tile Router...
by rextended
Wed Feb 26, 2025 11:59 am
Forum: Scripting
Topic: How to configure Mikrotik for Pi-Hole with automatic failover
Replies: 5
Views: 12102

Re: How to configure Mikrotik for Pi-Hole with automatic failover

It's easy. On DHCP server provide only PiHole as DNS server. Block on firewall any other DNS / DoT / (and DoH, if you can...) If on netwatch (or other methods) PiHole stop working, redirect all DNS calls to PiHole to RouterBOARD itself and use internal RouterBOARD DNS service. Probably, however, the...
by rextended
Wed Feb 26, 2025 11:53 am
Forum: General
Topic: Use /24 FW rules for /23 subnets
Replies: 34
Views: 3788

Re: Use /24 FW rules for /23 subnets

:!: bravo
by rextended
Tue Feb 25, 2025 3:34 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

@LordNikkon you can only cry on your own.
No matter who the vendor is, putting a newly released software into production without even testing it for a month is irresponsible.
by rextended
Tue Feb 25, 2025 10:20 am
Forum: General
Topic: CVE-2024-54772 Information About
Replies: 20
Views: 5472

Re: CVE-2024-54772 Information About

If you could try more users in parallel and increase the speed of the brute force it would be absurd, so the more users you try, the longer it takes. Finding a non-stupid user like admin , root , superuser , etc. with a dictionary attack is "easy". Finding a user like @Rex#Tended23 takes 6...
by rextended
Mon Feb 24, 2025 9:30 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

For enable default IPv6 FastTrack, do not suffice just manual/auto update/upgrade, defconf is not applied on already installed devices:
viewtopic.php?p=1128583#p1128583
by rextended
Mon Feb 24, 2025 9:18 pm
Forum: General
Topic: CVE-2024-54772 Information About
Replies: 20
Views: 5472

Re: The twelve Rules of Mikrotik Club

How many years can brute force continue undetected with a random 254 characters password??? Depends how lucky attacker is, just mentioned as possible edge case, from 7.18 without possibility of user enumeration it is even lesser probability for brute force. @optio Maybe we didn't understand each ot...
by rextended
Mon Feb 24, 2025 8:16 pm
Forum: General
Topic: binding services to specific interfaces
Replies: 18
Views: 2614

Re: binding services to specific interfaces

Sorry, but you were the first one who wasn't clear.
You always have to be correct and specify what you're doing,
whether you're configuring a purchased peripheral or just fiddling around with GNS to waste time.
This way, users can choose whether to help you or not.
by rextended
Mon Feb 24, 2025 8:09 pm
Forum: MikroTik hardware questions
Topic: mUPS battery feature on netPower Lite 7R?
Replies: 3
Views: 2062

Re: mUPS battery feature on netPower Lite 7R?

That product photo is CSS610-8P-2S+OUT

Is like the CSS610-8P-2S+IN with one outdoor enclosure.
by rextended
Mon Feb 24, 2025 7:59 pm
Forum: General
Topic: binding services to specific interfaces
Replies: 18
Views: 2614

Re: binding services to specific interfaces

@anav (& Co.)
See?

If you don't ask first what device and what specific version of RouterOS are talking about,
these people are just wasting your time.
by rextended
Mon Feb 24, 2025 7:58 pm
Forum: General
Topic: binding services to specific interfaces
Replies: 18
Views: 2614

Re: binding services to specific interfaces

...
by rextended
Mon Feb 24, 2025 7:09 pm
Forum: General
Topic: binding services to specific interfaces
Replies: 18
Views: 2614

Re: binding services to specific interfaces

For DEFAULT nothing is on WAN...
by rextended
Mon Feb 24, 2025 6:58 pm
Forum: General
Topic: CVE-2024-54772 Information About
Replies: 20
Views: 5472

Re: The twelve Rules of Mikrotik Club

How many years can brute force continue undetected with a random 254 characters password???
by rextended
Mon Feb 24, 2025 6:19 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

bugs introduced and resolved within beta/rc are not in this list.
As it should be.
by rextended
Mon Feb 24, 2025 4:43 pm
Forum: Announcements
Topic: v7.18.2 [stable] is released!
Replies: 494
Views: 119083

Re: v7.18 [stable] is released!

To add default IPv6 FastTrack when updating from ANY v7 previous version, just paste this into the terminal (barring arbitrary changes to the default configuration already made). New devices netinstalled with beta4 and later, or reset with default configuration on beta4 and later, are already ready...
by rextended
Mon Feb 24, 2025 4:34 pm
Forum: Beginner Basics
Topic: The twelve Rules of Mikrotik Club
Replies: 53
Views: 7430

Re: The twelve Rules of Mikrotik Club

3 . You remove default user admin and set a strong password before connecting to the internet. I have written in the past NOT to remove the admin user, but to leave it there harmless, without right, with a random very long password. Now that the CVE is public, you can learn the reasons. In the past...
by rextended
Mon Feb 24, 2025 2:19 pm
Forum: General
Topic: Offbridge -- why /30?
Replies: 37
Views: 4413

Re: Offbridge -- why /30?

On my way the IP/DHCP configuration of your computer's network card does not matter.

Then you could always set the reset/mode/wps button,
which in case there is no ethernet port connected resets the software to the last configuration that was working.
by rextended
Mon Feb 24, 2025 2:15 pm
Forum: General
Topic: Offbridge -- why /30?
Replies: 37
Views: 4413

Re: Offbridge -- why /30?

I'm a bit of a... peculiar person... If essentially the purpose of having a "console" port via serial (built-in or USB), when there is one, or a MGMT port, is to get out of trouble if there is a error in the configuration, but it must not be accessible from "elsewhere", using Win...
by rextended
Mon Feb 24, 2025 1:39 pm
Forum: General
Topic: Offbridge -- why /30?
Replies: 37
Views: 4413

Re: Offbridge -- why /30?

What I don't understand is why the IP assigned should be in a network size of /30 Completely useless all of this. If the device does not provide a specific MGMT port Just leave the last non-poe port or the last poe if there are only poe (trivial rule, one for all) for MGMT purpose. There is absolut...
by rextended
Mon Feb 24, 2025 1:10 pm
Forum: Scripting
Topic: Updating CA root certs regularly [SOLVED]
Replies: 46
Views: 24009

Re: Updating CA root certs regularly [SOLVED]

I have no idea, honestly...
by rextended
Mon Feb 24, 2025 1:06 pm
Forum: Scripting
Topic: Updating CA root certs regularly [SOLVED]
Replies: 46
Views: 24009

Re: Updating CA root certs regularly [SOLVED]

Thanks for the code @rextended - can I ask why the certs come from a salesforce-sites.com URL? No, ask directly https://www.ccadb.org because the link is inside https://www.ccadb.org/resources on Server Authentication (SSL/TLS) Root Certificates PEM of Root Certificates in Mozilla’s Root Store with...
by rextended
Fri Feb 21, 2025 2:44 pm
Forum: Forwarding Protocols
Topic: Torch ethernet protocol 9003
Replies: 6
Views: 2041

Re: Torch ethernet protocol 9003

I don't understand the questions.
The presence in torch means that it is in function, not that there is a loop.
by rextended
Fri Feb 21, 2025 2:36 pm
Forum: Forwarding Protocols
Topic: Torch ethernet protocol 9003
Replies: 6
Views: 2041

Re: Torch ethernet protocol 9003

Is a loop protect on VLANs, for default is on.

You can disable it like disable airbag before one accident.
by rextended
Fri Feb 21, 2025 2:32 pm
Forum: Beginner Basics
Topic: First time configuration
Replies: 8
Views: 2408

Re: First time configuration

Is why I have wrote: First make hAP working, then think about IPv6, VLANs & Co. First you have to run everything with the default firewall turned on, then check the rest. As for UPnP, it is used to dynamically open ports for games when they need them. It has the same level of security as making ...
by rextended
Fri Feb 21, 2025 2:03 pm
Forum: General
Topic: PPPoE Server rejects MTU of 1540
Replies: 7
Views: 2708

Re: PPPoE Server rejects MTU of 1540

L2MTU and MTU are not the same thing. Set PPPoE server/client MTU/MRU to 1540 Set VLAN MTU to 1548 Restore ethernet MTU to 1500. Do not touch L2MTU, restore to defaults everywhere. Restore on ipv6 nd the 1500 mtu Standard IPv6 traffic (non MAP-E) must be keep 1500 or is fragmented on internet. I thi...
by rextended
Fri Feb 21, 2025 1:35 pm
Forum: Beginner Basics
Topic: First time configuration
Replies: 8
Views: 2408

Re: First time configuration

When you have the device, without touch anything, first upgrade to latest "stable" routeros 7.17.2, then reset to defaults on system. Do not touch quickset. IPv6 must supported from your ISP. Default firewall is perfect. NAT work perfectly with UPnP for XBOX, if hAP is the router. VDSL2 mo...
by rextended
Fri Feb 21, 2025 1:22 pm
Forum: Scripting
Topic: how to get log records for last 5 mins?
Replies: 14
Views: 10234

Re: how to get log records for last 5 mins?

On log "time" is everyTIME one string of 4 diffferent formats, do not work "-5" everyTIME, just when time format is hh:mm:ss.


viewtopic.php?t=177551#p995556
by rextended
Thu Feb 20, 2025 3:59 pm
Forum: Beginner Basics
Topic: Anyone uses AI for their config?
Replies: 32
Views: 3769

Re: Anyone uses AI for their config?

Yes of course, that says a lot about how you solve problems.
by rextended
Thu Feb 20, 2025 3:47 pm
Forum: Beginner Basics
Topic: Anyone uses AI for their config?
Replies: 32
Views: 3769

Re: Anyone uses AI for their config?

https://i.imgur.com/DgOims7.png Did you show the image to the AI ​​to determine the problem? I think that if I show it to a real friend of mine, a bit mentally retarded, and I'm serious, it's not a joke, I love him (as a friend), he will immediately notice that the ethernet interfaces (the non-blue...
by rextended
Thu Feb 20, 2025 3:41 pm
Forum: Beginner Basics
Topic: Anyone uses AI for their config?
Replies: 32
Views: 3769

Re: Anyone uses AI for their config?

The reason was I'm having looping packets. Even if there's no physical loop connection, I'm still having looping problem. If there is a loop, barring a physical failure in the device, it means there is a loop. Maybe some shi–y access point configured haphazardly on two different trunks have been me...
by rextended
Thu Feb 20, 2025 3:37 pm
Forum: Beginner Basics
Topic: Anyone uses AI for their config?
Replies: 32
Views: 3769

Re: Anyone uses AI for their config?

OP Title: Anyone uses AI for their config? The question is missing the word "working". I wonder why. @naks Forum members are happy to help others, each with their own skills. But they don't care about those who consider forum members as a fallback to fix the configuration generated by an a...
by rextended
Thu Feb 20, 2025 2:10 pm
Forum: Scripting
Topic: /system healt "get" temperature in RouterOS 7
Replies: 3
Views: 1833

Re: /system healt "get" temperature in RouterOS 7

This doesn't work as expected on script, shouldn't use print numbers in scripts.

example code

:global temp [/system/health get [find where name="temperature"] value]
by rextended
Tue Feb 18, 2025 10:02 pm
Forum: Scripting
Topic: script for auto update
Replies: 7
Views: 3166

Re: script for auto update

One of the stupidest things you can do is update something as soon as the new version comes out... Especially with RouterOS.... Apart from that, the script is full of bulls–t. For example, after the update installation starts, the system automatically reboots without the need to reboot it with the c...
by rextended
Tue Feb 18, 2025 10:01 pm
Forum: General
Topic: TCP SYN Flood attack causing high cpu
Replies: 6
Views: 2368

Re: TCP SYN Flood attack causing high cpu

:lol: :lol: :lol:
by rextended
Tue Feb 18, 2025 9:22 pm
Forum: General
Topic: TCP SYN Flood attack causing high cpu
Replies: 6
Views: 2368

Re: TCP SYN Flood attack causing high cpu

What are you doing that is attracting an attack??

Nince question... but the user never logging on foum since 27th September 2024 2024...
Is just one-post-wait-immediate-reply-and-go-away user.
by rextended
Tue Feb 18, 2025 9:18 pm
Forum: General
Topic: TCP SYN Flood attack causing high cpu
Replies: 6
Views: 2368

Re: TCP SYN Flood attack causing high cpu

Please describe usage of CCR1036... because there are different types of configs of firewall to use depending on the scenario..
@PortalNET why uselessly necroposting?
Are you convinced that it's still there waiting a reply since September 2024?
by rextended
Tue Feb 18, 2025 8:38 pm
Forum: Announcements
Topic: v6.49.18 [long-term] is released!
Replies: 42
Views: 49456

Re: v6.49.18 [stable] is released!

To make the product safer, just don't give it to i–s.
So you need to get a certification and a gun router license.
by rextended
Tue Feb 18, 2025 3:21 pm
Forum: General
Topic: Feature Request: On new devices, set the admin username to the same as the password on the label.
Replies: 4
Views: 2668

Feature Request: On new devices, set the admin username to the same as the password on the label.

Feature Request: On new devices, set the admin username to the same as the password on the label. Very easy to implement, just edit the get-custom-defconf file which changes from admin to $defconfPassword the default username. Additionally: Prevent name "admin", "root" & Co. ...
by rextended
Tue Feb 18, 2025 3:04 pm
Forum: Announcements
Topic: v6.49.18 [long-term] is released!
Replies: 42
Views: 49456

Re: v6.49.18 [stable] is released!

This is a stupid vulnerability, because surely whoever stupid leaves port 8291 open to the world, is the same one who continues to have "admin" as a username... And it's also a stupid vulnerability, because the intelligent administrator, if forced for extreme reasons to leave the winbox po...
by rextended
Tue Feb 18, 2025 12:22 pm
Forum: Scripting
Topic: Character Set
Replies: 17
Views: 7431

Re: Character Set

In short: RouterOS does not support UTF encoding or any other. The only one it supports is 7-bit ASCII characters. So don't use special characters, but only the classic 0-9 A-Z a-z v space !"#$%&'()*+,-./0123456789:;<=>?@ABCDEFGHIJKLMNOPQRSTUVWXYZ[\]^_`abcdefghijklmnopqrstuvwxyz{|}~
by rextended
Tue Feb 18, 2025 12:16 pm
Forum: Announcements
Topic: v7.18rc [testing] is released!
Replies: 145
Views: 26294

Re: v7.18rc [testing] is released!

Thanks for the improvements.
  • 1
  • 2
  • 3
  • 4
  • 5
  • 46