Community discussions

MikroTik App

Search found 96 matches

by karwos
Fri Jan 08, 2021 2:44 pm
Forum: Virtualization
Topic: CHR is useless for disaster recovery scenarios
Replies: 6
Views: 7417

Re: CHR is useless for disaster recovery scenarios

The OP probably did not make a good backup of the original machine, but rather made a "clone" and used that. This clone has a different MAC address and won't accept the same license. Instead he should have shutdown the machine, copied its files, then power back on and keep the copied file...
by karwos
Sun Nov 08, 2020 4:17 am
Forum: Virtualization
Topic: CHR is useless for disaster recovery scenarios
Replies: 6
Views: 7417

CHR is useless for disaster recovery scenarios

Hello, CHR is useless for disaster recovery scenarios. Imagine you have nice backups made weekly or daily.. stored VM images on some external SAN. On disaster recovery, You can restore image using just one click. No, no - not with Mikrotik. After restore licence will be set to FREE (1mbit tx cap on ...
by karwos
Thu May 07, 2020 10:00 pm
Forum: Virtualization
Topic: Kindly add ESXI 7.0 new feature: Watchdog Timer
Replies: 0
Views: 3096

Kindly add ESXI 7.0 new feature: Watchdog Timer

ESXi 7.0 introduced long-waiting Watchdog Timer. However, it needs to be supported ('kicked' by guest os), else Guest will be constantly rebooted.
This is really needed feature, as long as CHR tends to just hangup during high througphut conditions.

Thanks !
by karwos
Mon Nov 18, 2019 8:35 pm
Forum: SwOS
Topic: CSS326-24G-2S+RM Management & Ping reachability bug
Replies: 1
Views: 3721

Re: CSS326-24G-2S+RM Management & Ping reachability bug

Observe port errors for collisions, late collisions and deferred packets.

Mikrotik swos have great stability problems.
For example, autonego fallback to halfduplex.
After some time whole switch goes offline (mgmt)
by karwos
Thu Nov 14, 2019 1:42 am
Forum: SwOS
Topic: SwOS: snmp traps and/or link down/up counter
Replies: 0
Views: 3246

SwOS: snmp traps and/or link down/up counter

Any chances to get either 1. Snmp Traps for port link up/down event 2. Link up/down counter 3. Not dreaming of rx/tx errors/drops traps (like rmon) Simple to implement but... will mikrotik consider adding that? I know swos is simple, but cmon - how to run professional network on such limited softwar...
by karwos
Thu Oct 31, 2019 3:13 am
Forum: RouterBOARD hardware
Topic: New High Performance Routers ! ?
Replies: 85
Views: 26478

Re: New High Performance Routers ! ?

Dont even think of chr. https://forum.mikrotik.com/viewtopic.php?t=148310 "Hello, TSO & LRO are disabled on virtual Ethernet drivers since 6.41rc14. Our devs are looking possibility to fix TCP connection offloading issue." It simply breaks end2end connectivity by reassembling tcp conns...
by karwos
Wed May 29, 2019 11:58 pm
Forum: Virtualization
Topic: SR-IOV PCI bypass
Replies: 2
Views: 5796

Re: SR-IOV PCI bypass

It would be big step forward - adding sr-iov drivers. They are regular ethernet drivers, so if MT can handle that out, I think baremetal x64 ROS dream would come true.
by karwos
Sun May 19, 2019 11:47 pm
Forum: SwOS
Topic: Feature Request - Link down/up count
Replies: 3
Views: 3115

Re: Feature Request - Link down/up count

In SwOS? Yes, i know it is avaiable in ROS, but I dont see it nowhere in SWOS.

Xan You post screenshot and tell me whixh device does have it?

I know swos have diffrences between devices but...
by karwos
Sun May 19, 2019 11:44 pm
Forum: SwOS
Topic: SWOS or ROUTEROS: Confused
Replies: 3
Views: 21882

Re: SWOS or ROUTEROS: Confused

In the end, all traffic is handled by specialised switch chip. Its just the way how HW registers of such specialises chip is configured (vlans, speed, acls, port isolations), but also way how administration os done (snmp, routeros), personal preferences. Routeros is more complex, but also can be con...
by karwos
Sat May 18, 2019 2:50 am
Forum: SwOS
Topic: Feature Request - Link down/up count
Replies: 3
Views: 3115

Feature Request - Link down/up count

I think it's most missing feature, so port flaps events are much harder to diagnose.

Please consider.
by karwos
Fri May 10, 2019 2:24 pm
Forum: Virtualization
Topic: CHR + ESXI = Need urgent new version with disabled LRO / TSO
Replies: 4
Views: 6722

Re: CHR + ESXI = Need urgent new version with disabled LRO / TSO

"Hello,

TSO & LRO are disabled on virtual Ethernet drivers since 6.41rc14. Our devs are looking possibility to fix TCP connection offloading issue."
by karwos
Wed May 08, 2019 3:57 am
Forum: Virtualization
Topic: CHR + ESXI = Need urgent new version with disabled LRO / TSO
Replies: 4
Views: 6722

CHR + ESXI = Need urgent new version with disabled LRO / TSO

Hi, It's been 2 years now and problem is not fixed (it was reported problems w/ MPLS). I have ESXI 6 box. ESXi have disabled following flags: Net.Vmxnet3SwLRO Net.Vmxnet3HwLRO And in general, all things related to TSO/LRO, software emulation, etc. I can verify this approach in esxcfg-info -n | less ...
by karwos
Thu May 02, 2019 8:39 pm
Forum: Forwarding Protocols
Topic: Mikrotik ECMP - how nexthop is calculated? Hashing?
Replies: 2
Views: 2864

Re: Mikrotik ECMP - how nexthop is calculated? Hashing?

It uses hashing: Source Address, Destination Address, Protocol, Source Port, Destination Port

That is if you are talking about IPv4
Then why single tcp connection during transfer gets randomly swapped between nexthops ?
by karwos
Thu May 02, 2019 2:41 am
Forum: Forwarding Protocols
Topic: Mikrotik ECMP - how nexthop is calculated? Hashing?
Replies: 2
Views: 2864

Mikrotik ECMP - how nexthop is calculated? Hashing?

How ECMP nexthop is calculated in Mikrotik implementation? Does it hash src addr/dst addr/ports ? Or other method ? I have tested and single TCP connections and it get switched during transfer between interfaces, so looks like it's like some round-robing algorithm not related to identified flow. Is ...
by karwos
Mon Apr 29, 2019 10:11 pm
Forum: Virtualization
Topic: The CPU has been disabled by the guest operating system
Replies: 32
Views: 16604

Re: The CPU has been disabled by the guest operating system

Guys, disable conn tracking and problem will gone.
It's been known for a long time. It dies once DDOS kicks in. They not fixed that, but I can confirm disabling conntracks not causing CPU to go offline and machine halt.
by karwos
Mon Apr 29, 2019 5:01 am
Forum: General
Topic: Mikrotik ECMP - how nexthop is calculated? Hashing?
Replies: 0
Views: 689

Mikrotik ECMP - how nexthop is calculated? Hashing?

How ECMP nexthop is calculated in Mikrotik implementation? Does it hash src addr/dst addr/ports ? Or other method ? I have tested and single TCP connections and it get switched during transfer between interfaces, so looks like it's like some round-robing algorithm not related to identified flow. Is ...
by karwos
Sun Feb 10, 2019 10:31 pm
Forum: General
Topic: Beware using Winbox v3.x with ROS v5.x devices
Replies: 1
Views: 890

Beware using Winbox v3.x with ROS v5.x devices

Yes, we know 5.x is legacy systems, but since they were extremely stable, we secured them well and held upgrade process, seems will need to little speedup that. Don't use Winbox v3.11 with v5.x systems. They aren't properly closing Winbox sessions and when you open users->active session you will get...
by karwos
Mon Aug 13, 2018 9:10 pm
Forum: SwOS
Topic: Website download for CRS 2.8 links to CSS
Replies: 4
Views: 3584

Re: Website download for CRS 2.8 links to CSS

Okay Now we're confused, we double checked the download link on https://mikrotik.com/download and the link for "version 2.8 for CRS328-24P-4S+" links to the https://download2.mikrotik.com/swos2/css328p/swos-css328p-2.8.bin CSS version ? Not sure if this is a fluke for not. But since the u...
by karwos
Mon Aug 13, 2018 9:05 pm
Forum: SwOS
Topic: CSS326-24G-2S+ firmware 2.8 broken web UI
Replies: 4
Views: 3854

Re: CSS326-24G-2S+ firmware 2.8 broken web UI

Already tried that 3 times, waiting increasingly amounts of time 30 sec, 5 mins and 30 mins. Still no access to the gui. After upgrade to v2.8, switch goes from "static IP" to "DHCP with fallback", - looks like a bug. so put DHCP server on top of swtich and use that dynamic assi...
by karwos
Sat Aug 11, 2018 1:50 pm
Forum: SwOS
Topic: CSS106, v2.8 and SFP DDM
Replies: 0
Views: 2747

CSS106, v2.8 and SFP DDM

Hi, it's nice that you added SNMP for optical table. However, I couldn't get TX and RX power for CSS106. I can see all SFP info in webinterface, but in snmp i can get all values (bias, temperature, interface name, wavelength) but no TX/Rx Power. The OID i use for temperature is 1.3.6.1.4.1.14988.1.1...
by karwos
Tue Jul 03, 2018 8:58 pm
Forum: General
Topic: CRS125 and SFP DDM
Replies: 1
Views: 1110

CRS125 and SFP DDM

Is there any way to fix that damn bug?
DDM read works fine for other Mt products (crs106), but for crs125 i have to physically re-insert module (after switch bootup).. after that, DDM is readen ok...
by karwos
Tue Jul 03, 2018 8:57 pm
Forum: RouterBOARD hardware
Topic: DDM not showing on SFP prot
Replies: 2
Views: 1550

Re: DDM not showing on SFP prot

Same here, on CRS106-all OK.
On CRS125 works only if you re-insert SFP module after CRS bootup. try it and let know about results.
by karwos
Fri May 25, 2018 11:06 pm
Forum: Forwarding Protocols
Topic: BGP peering route stall and rpfilter
Replies: 3
Views: 3787

BGP peering route stall and rpfilter

Hi, I am *supposing* bug with rp_filter=loose option. From time to time, I am loosing connectivity with one of peering partners. Thats not L2 problem, I can refresh, resend routes, i see established session and everything seems to be OK. However, i don't see RX traffic on that interface (besides of ...
by karwos
Sun May 13, 2018 2:38 am
Forum: Virtualization
Topic: CHR kernel crash when heavy traffic
Replies: 8
Views: 8672

Re: CHR kernel crash when heavy traffic

Disable conntrack
by karwos
Sun Apr 22, 2018 1:20 pm
Forum: Announcements
Topic: v6.42 [current]
Replies: 147
Views: 77059

Re: v6.42 [current]

My experience of new NV2 implementation: 1) Overall throughput increased, that's true. Previously, as I look on graphs on 2 test APs it didn't reached 40MBits. Now can reach 85mbits easily. 2) However there is some problem with TDMA timing. For example, let run btest between AP with 6.42 and some 2 ...
by karwos
Sun Apr 22, 2018 12:58 pm
Forum: Announcements
Topic: v6.42 [current]
Replies: 147
Views: 77059

Re: v6.42 [current]

Does 5.26 to 6.41 upgrade go without problems? Jumping 43 versions ahead with MAJOR change of bridge and switch implementations? Brave move.
5.26 to 6.40 - no problems, Mr Smartie
by karwos
Sun Apr 22, 2018 4:01 am
Forum: Announcements
Topic: v6.42 [current]
Replies: 147
Views: 77059

Re: v6.42 [current]

SXT bricked after 5.26 upgrade to 6.42
Please withdraw this release or add some warning on top.
by karwos
Sun Apr 22, 2018 12:00 am
Forum: Announcements
Topic: v6.43rc [release candidate] is released!
Replies: 557
Views: 223644

Re: v6.43rc [release candidate] is released!

Phone: huawei p9 lite Problem: slow Wlan throughput and packet loss Reported: year ago :D Fixed: in v6.43rc3 Speedtest before upgrade: 19mbit / 39mbit After upgrade: 89mbit/89mbit Wondering if "auto" channel problems fixed too. It would be prefferable to merge that fix to current/bugfix br...
by karwos
Fri Mar 16, 2018 11:03 am
Forum: General
Topic: Does Mikrotik use underlying Quagga for BGP?
Replies: 8
Views: 4029

Re: Does Mikrotik use underlying Quagga for BGP?

I think it may be worth to proceed with extensive security audit of Mikrotik BGP implementation... It's not Quagga! Also, I can see some clear misunderstanding. BGP is a routing "control" protocol. It does no forwarding of packets so changing/upgrading BGP engine will have no effect on th...
by karwos
Thu Mar 15, 2018 11:48 pm
Forum: Virtualization
Topic: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.
Replies: 7
Views: 5820

Re: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.

Bump:
When router will eventually recover from lock-up (with holdtimer expired message), even if it's receiving traffic from bgp - it's not forwarding that traffic.

Conclusion: whole routing package is going to die.
by karwos
Thu Mar 15, 2018 11:19 pm
Forum: General
Topic: Does Mikrotik use underlying Quagga for BGP?
Replies: 8
Views: 4029

Re: Does Mikrotik use underlying Quagga for BGP?

I think it may be worth to proceed with extensive security audit of Mikrotik BGP implementation...
by karwos
Thu Mar 15, 2018 11:18 pm
Forum: General
Topic: Does Mikrotik use underlying Quagga for BGP?
Replies: 8
Views: 4029

Re: Does Mikrotik use underlying Quagga for BGP?

Quagga Security Note 2018-1114 ============================== https://www.quagga.net/security/Quagga-2018-1114.txt Affects: -------- - Likely to affect all versions of Quagga Summary ------- The Quagga BGP daemon, bgpd, can double-free memory when processing certain forms of UPDATE message, containi...
by karwos
Thu Mar 15, 2018 11:17 pm
Forum: General
Topic: Does Mikrotik use underlying Quagga for BGP?
Replies: 8
Views: 4029

Re: Does Mikrotik use underlying Quagga for BGP?

Quagga Security Note 2018-1975 ============================== https://www.quagga.net/security/Quagga-2018-1975.txt Affects: -------- - Quagga version 0.99.9, and all later versions - All versions, if the "override-capability" neighbour option is set (not the default). Summary ------- The Q...
by karwos
Thu Mar 15, 2018 10:58 pm
Forum: General
Topic: Does Mikrotik use underlying Quagga for BGP?
Replies: 8
Views: 4029

Re: Does Mikrotik use underlying Quagga for BGP?

If Mikrotik use Quagga fork, then it may be worth fixing, cos I'm experiencing DenialOfService since last 48hrs on BOTH , independant bgp routers... Still diagnosing though. BGP Flaws Patched in Quagga Routing Software Friday, 16 February 2018 Administrator Security News 0 Comments Several vulnerabi...
by karwos
Thu Mar 15, 2018 7:59 pm
Forum: General
Topic: Does Mikrotik use underlying Quagga for BGP?
Replies: 8
Views: 4029

Does Mikrotik use underlying Quagga for BGP?

If anyone knows, I would be thankfull for the answer.
by karwos
Thu Mar 15, 2018 7:44 pm
Forum: Virtualization
Topic: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.
Replies: 7
Views: 5820

Re: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.

Does mikrotik use Quagga ? BGP Flaws Patched in Quagga Routing Software Friday, 16 February 2018 Administrator Security News 0 Comments Several vulnerabilities that could lead to denial-of-service (DoS), information disclosure, and remote code execution have been patched this week in the Quagga rout...
by karwos
Thu Mar 15, 2018 5:04 pm
Forum: Virtualization
Topic: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.
Replies: 7
Views: 5820

Re: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.

This have to be related with malcious BGP UPDATEs received. I have observed Slave server now and it looks like this: 1) It takeover traffic, when Master goes down 2) Traffic flowing NORMALLY through two BGP peers 3) It gets UNRESPONSIVE for 10-15 seconds, while i see Traffic with 1st BGP peer is 0by...
by karwos
Tue Mar 13, 2018 10:32 pm
Forum: Virtualization
Topic: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.
Replies: 7
Views: 5820

Re: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.

It have to be traffic related, there is no other f**g way. Master server crashed 19:06:59 Then, Slave took over traffic and crashed 19:07:04 I have tried 6.40.6 - no luck Testing RC with open-vm-tools now... is there anyway to enable kernel debugging and intercept the kernel panic stack calls ???
by karwos
Tue Mar 13, 2018 6:52 pm
Forum: Virtualization
Topic: CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.
Replies: 7
Views: 5820

CHR locking up again and again, VMAutomation_HandleCLIHLTEvent. Do nothing.

Any clue. Locking up on both machines. VMWare log: 2018-03-13T14:32:22.381Z| vcpu-0| I120: Vix: [35317 vmxCommands.c:7739]: VMAutomation_HandleCLIHLTEvent. Do nothing. 2018-03-13T14:32:22.381Z| vcpu-0| I120: MsgHint: msg.monitorevent.halt 2018-03-13T14:32:22.381Z| vcpu-0| I120+ The CPU has been disa...
by karwos
Tue Mar 13, 2018 6:23 pm
Forum: Virtualization
Topic: Using 'Hardware' watchdog
Replies: 1
Views: 3062

Re: Using 'Hardware' watchdog

+1
Chr lockup getting to be more and more frequent and annoying
by karwos
Mon Nov 27, 2017 6:28 pm
Forum: Virtualization
Topic: CHR 6.37.5 and ESXI 6.0 - "The CPU has been disabled by the guest operating system. Power off or reset the machine"
Replies: 0
Views: 2631

CHR 6.37.5 and ESXI 6.0 - "The CPU has been disabled by the guest operating system. Power off or reset the machine"

Hi! As i stated yesterday, we had hardware failure of BGP machine yesterday. I have restored BGP image on second machine. Same ESXi version, SAME hw configuration, same BGP CHR Mikrotik Image w/configuration. It worked stable since yesterday, today it hanged up and got this message in ESXi events: &...
by karwos
Sun Nov 26, 2017 6:52 pm
Forum: General
Topic: BGP filters - set pref src with invalid IP - route silently DROPPED without any message
Replies: 1
Views: 1596

BGP filters - set pref src with invalid IP - route silently DROPPED without any message

Hi Mikrotik Team, Today i had another blackout, and needed couple of long minutes to work it out what exactly happened. However, this time I cannot 100% blame Mikrotk, anyway something might be done *better* so other might have their ass saved in future. So, I have two BGP servers: 1) BGP1 2) BGP2 B...
by karwos
Thu Sep 07, 2017 12:09 pm
Forum: General
Topic: Hotspot Attack ( high CPU use )
Replies: 9
Views: 4617

Re: Hotspot Attack ( high CPU use )

i tested the above rules with hotspot login page. when i click rapidly (F5) refresh in chrome at login page i can see that mikrotik cpu usage was 20-30%. the above rules didnt filter this. when i was rapidly pressing a bookmark http link (http://www.imdb.com) at chrome the cpu usage was normal 5-10...
by karwos
Thu Sep 07, 2017 2:34 am
Forum: General
Topic: Hotspot Attack ( high CPU use )
Replies: 9
Views: 4617

Re: Hotspot Attack ( high CPU use )

Hi R1CH, Thanks for your reply. Everytime this happens I block the MAC in Hotspot > IP-Binginds. So it happened again today and here are some informations: http://prodatastelecom.com.br/assets/images/attack2.png http://prodatastelecom.com.br/assets/images/attack3.png Sometimes it does not take 100%...
by karwos
Wed Sep 06, 2017 11:20 pm
Forum: Virtualization
Topic: CHR suggestions for new functionality
Replies: 157
Views: 58043

Re: CHR suggestions for new functionality

Guys, I think CHR should be kept clean, as it is now. It's damn small, and you can backup and restore your vm image in disaster recovery scenario quickly. Thats virtual router, not full blown linux machine. Thats why routeros (beside its bugs, sometimes) is rock solid. Adding too much stuff will en...
by karwos
Wed Sep 06, 2017 11:17 pm
Forum: Virtualization
Topic: Problem CPU CHR 100 % whit 27 GHZ xeon processor
Replies: 36
Views: 14595

Re: Problem CPU CHR 100 % whit 27 GHZ xeon processor

Hi, we have installed a CHR realease of rouuteros on a vmware VM on a dedicated host phisical machine in our datacenter. It acts as pppoe server on our network, 1850 subscribers active. On peak hours, subscribers have packet loss when they ping hosts on the internet (se when they pass through the p...
by karwos
Wed Sep 06, 2017 11:12 pm
Forum: Virtualization
Topic: Problem CPU CHR 100 % whit 27 GHZ xeon processor
Replies: 36
Views: 14595

Re: Problem CPU CHR 100 % whit 27 GHZ xeon processor

Hi, we have installed a CHR realease of rouuteros on a vmware VM on a dedicated host phisical machine in our datacenter. It acts as pppoe server on our network, 1850 subscribers active. On peak hours, subscribers have packet loss when they ping hosts on the internet (se when they pass through the p...
by karwos
Wed Sep 06, 2017 10:50 pm
Forum: Virtualization
Topic: CHR suggestions for new functionality
Replies: 157
Views: 58043

Re: CHR suggestions for new functionality

Guys, I think CHR should be kept clean, as it is now. It's damn small, and you can backup and restore your vm image in disaster recovery scenario quickly. Thats virtual router, not full blown linux machine. Thats why routeros (beside its bugs, sometimes) is rock solid. Adding too much stuff will end...
by karwos
Sat Jul 29, 2017 1:59 pm
Forum: Announcements
Topic: v6.40 [current]
Replies: 102
Views: 41636

Re: v6.40 [current]

@TomjNorthIdaho Uplink/Downlink ratio support doesn't work. Test many times in p2p & p2mp scenario 0 extra download ratio for clients only limit upload too 20%. 0 extra download speed for clients NV2 MT 6.40 vs 6.38.5 no matter dynamic or fixed ratio. Yeah, it will limit UP speed to 20%, becaus...
by karwos
Wed Jul 26, 2017 5:48 pm
Forum: General
Topic: X86_64 ROS - 64bit Mikrotik [SOLVED]
Replies: 92
Views: 73510

Re: X86_64 ROS - 64bit Mikrotik [SOLVED]

I am running two BGP servers and they are just work perfect in CHR. what traffic do you have on them? BGP without full view works perfect on any RB hardware :) total ~800k routes CHR 6.37.5 vmxnet3 driver and PVSCSI driver Connection tracking ON, few queue trees, 1k simple queues, couple of firewal...
by karwos
Tue Jul 25, 2017 10:18 pm
Forum: General
Topic: VRRP and BGP - default disabled behaviour and BGP trigger
Replies: 3
Views: 1589

Re: VRRP and BGP - default disabled behaviour and BGP trigger

You should create a direct cable link between the two routers and allow them to forward packets between each other directly. This would fix your problem because when VRRP comes up, the newly-booted router could pass traffic through the well-established router while its routing table gets populated ...
by karwos
Tue Jul 25, 2017 7:33 pm
Forum: General
Topic: Hot to get Multiple Public IP's on 1 interface?
Replies: 8
Views: 4863

Re: Hot to get Multiple Public IP's on 1 interface?

Change operator. they should route a subnet for you - this is correct way.
But in this case i think VLAN is only way to go.
by karwos
Tue Jul 25, 2017 7:29 pm
Forum: General
Topic: X86_64 ROS - 64bit Mikrotik [SOLVED]
Replies: 92
Views: 73510

Re: X86_64 ROS - 64bit Mikrotik [SOLVED]

Guys is there any real *benefit* from running CHR in x86_64 native environment? I know VM puts some overhead, but c'mon, that's not 2006, It's 2017 when most of hardware, including CPUs and NICs have hardware virtualization support. Overhead is small nowadays, I am running two BGP servers and they a...
by karwos
Tue Jul 25, 2017 6:55 pm
Forum: General
Topic: VRRP and BGP - default disabled behaviour and BGP trigger
Replies: 3
Views: 1589

VRRP and BGP - default disabled behaviour and BGP trigger

Hi, I am having two BGP servers in VRRP cluster, Both of servers having established BGP sessions to upstream, and prepending paaths according to VRRP situation. This work smooth and with 100ms vrrp interval, outage is no loger than 300ms. I am using preemption, because 1st server is always prefered....
by karwos
Sat Jul 15, 2017 2:42 pm
Forum: General
Topic: SNMP Trap and Master port in switches - not working as expected
Replies: 1
Views: 996

SNMP Trap and Master port in switches - not working as expected

Hi, i have setup a SNMP trap in various of CRS switches. However, traps are reported only in slave ports. Master ports remain active, even after disconnection of cable. So please change behaviour, because it is now useless on master ports - no SNMP trap becoming because link state becomes still &quo...
by karwos
Wed Jul 12, 2017 7:06 pm
Forum: SwOS
Topic: Css106 (rb260gs) v2 - any way to disable flow control
Replies: 1
Views: 2553

Re: Css106 (rb260gs) v2 - any way to disable flow control

After upgrading to v2.3 i could disable flow ctrl on sfp normally.
Weird, no any info about that in changelogs.
by karwos
Wed Jul 12, 2017 6:59 pm
Forum: General
Topic: RB941-2nD-TC cli unresponsive
Replies: 1
Views: 979

Re: RB941-2nD-TC cli unresponsive

Set WLAN channel manually.
Auto have known problems, MT dont hesistate to fix that.
by karwos
Wed Jul 12, 2017 6:49 pm
Forum: General
Topic: CRS125-24G-1S locks up, passes only ARP traffic
Replies: 13
Views: 4307

Re: CRS125-24G-1S locks up, passes only ARP traffic

Has anyone tried swapping in a CRS326 for one of these locking up switches. We have a CRS226 that locks up every few days, and no firmware changes have seemed to help the problem. I think we are just going to have to bite the bullet and get something else. I noticed the 326 has a different chip in ...
by karwos
Wed Jul 05, 2017 12:06 pm
Forum: General
Topic: CRS125-24G-1S locks up, passes only ARP traffic
Replies: 13
Views: 4307

Re: CRS125-24G-1S locks up, passes only ARP traffic

Problem showed up again today,
I have rebooted switch with System->Reboot (so no power-off, power-up), and all back online again.
So it must be SW problem
by karwos
Wed May 10, 2017 12:56 am
Forum: SwOS
Topic: Css106 (rb260gs) v2 - any way to disable flow control
Replies: 1
Views: 2553

Css106 (rb260gs) v2 - any way to disable flow control

Any way to disable flow control on this model?
I can only disable flowctrl on ports 1-5, no way doing that on SFP port.

Any clues?
by karwos
Wed May 10, 2017 12:53 am
Forum: General
Topic: "Slow" download RB3011
Replies: 6
Views: 2456

Re: "Slow" download RB3011

If there is speed mismatch like 1gbit to 100mbit links, and flow control is enabled, L2 device may send pause frames and that may decrease network throughput.

Avoid using flow ctrl, tcp handles that stuff best.
by karwos
Wed May 10, 2017 12:28 am
Forum: General
Topic: Groove A-52HPn r2 - ethernet link problem - stays in 100 halfduplex - most cerainly MIKROTIK BUG
Replies: 6
Views: 2129

Re: Groove A-52HPn r2 - ethernet link problem - stays in 100 halfduplex - most cerainly MIKROTIK BUG

The unit was tested on-site, and after founding the fault it was moved to lab, where we used diffrent poe, diffrent cable (1meter of 5e patch cable), diffrent power supply. Also, unit was reset to factory defaults - same problems. We moved it back on-site and it works now around 8 hours. No single t...
by karwos
Tue May 09, 2017 10:12 pm
Forum: General
Topic: Groove A-52HPn r2 - ethernet link problem - stays in 100 halfduplex - most cerainly MIKROTIK BUG
Replies: 6
Views: 2129

Groove A-52HPn r2 - ethernet link problem - stays in 100 halfduplex - most cerainly MIKROTIK BUG

Long time no bugs :D Welcome again ! So here we are, Groove A-52HPn r2. Tested firmware versions: 6.34.3, 6.37.5 (stable), 6.38.1, 6.39.1 Tested routerboard version: factory (3.33), current (3.38) Wlan and ether1 bridged, RSTP is disabled. Loop protection is disabled. Device works only first time af...
by karwos
Fri Apr 07, 2017 8:02 pm
Forum: General
Topic: CRS125-24G-1S locks up, passes only ARP traffic
Replies: 13
Views: 4307

CRS125-24G-1S locks up, passes only ARP traffic

We just left 2 big Mikrotik swamps, and entered another one :) Situation: CRS125-24G-1S, v6.37.3, latest Routerboot firmware (3.33). Acts as a core router, ports splitted on 3 partitions, first partitions use VLANs etc. Today it had simply locked up . But it wasn't regular lockup, It was normally re...
by karwos
Tue Mar 21, 2017 8:06 pm
Forum: Virtualization
Topic: Problem with CHR partition
Replies: 2
Views: 2616

Re: Problem with CHR partition

Use pvscsi controller instead legacy IDE emulation mode.
by karwos
Sun Mar 19, 2017 4:21 am
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 19
Views: 10538

Re: Mikrotik CHR P1 Licence - packet loss [FIXED]

Router migrated to 6.37.5 and applied P1 licence
Seems packet loss problem were fixed
Thx
by karwos
Sun Mar 12, 2017 6:01 pm
Forum: General
Topic: CIA exploits against Mikrotik hardware
Replies: 97
Views: 61169

Re: CIA exploits against Mikrotik hardware

I know it's illegal, but i've reverse enigineered Mikrotik :D And I can confirm, all this Nova stuff - they do care about security, most of intermediate libs/sw is writted by them in C++, and finding exploits surely is possible, but TAKES TIME AND MONEY, unlikely open-sourced UBNT products, as we sa...
by karwos
Sun Mar 12, 2017 5:30 pm
Forum: Virtualization
Topic: Does routerOS and CHR handle multicore systems differently?
Replies: 3
Views: 5311

Re: Does routerOS and CHR handle multicore systems differently?

The RPS is software IRQ load balancer. It's helpful when your ethernet card have 1 Rx/Tx queue and IRQ, and you wanna spread incoming packets through 4-8-16 cores. If you use ESXi and vmxnet3, which have 4 TX innterrupts, and 4 RX interrupts, just disable RPS, and use multi-queue-ethernet default fo...
by karwos
Wed Mar 08, 2017 11:04 pm
Forum: Beginner Basics
Topic: Begginer - Internet for 1500 houses (Gated community)
Replies: 14
Views: 3029

Re: Begginer - Internet for 1500 houses (Gated community)

I WANT DESIGN AND CONSTRUCT HOUSE BUT I DONT KNOW ANYTHING ABOUT IT.

SHALL I USE CONCRETE OR WOOD ?? :D
SHALL I MAKE PROJECT FIRST , IN PAINT MAYBE? :lol: :lol:
by karwos
Wed Mar 08, 2017 10:55 pm
Forum: General
Topic: ETSI EN 301 893 V2.0.7
Replies: 3
Views: 1608

Re: ETSI EN 301 893 V2.0.7

EU idiots ... they know better, what is good to us. Just wait and see how this EU zone goes more and more fragmented. Can't wait to see it. Thanks god we will always have CIA exploits ;-) at least one bright side of it Besides of it, market don't like empty spaces. Unlockers and 3rd party tools and ...
by karwos
Mon Mar 06, 2017 5:45 pm
Forum: Beginner Basics
Topic: Pray for Saint Rita before using WinBOX!
Replies: 3
Views: 1053

Pray for Saint Rita before using WinBOX!

Because every day we find new critical bugs, we started to pray Saint Rita every time before logon to winbox - hope it will help, beacuse even basic changes can cause kernel oooooooooooooops or other bugs... we are too afraid doing anything on router, because ANYTHING can cause ANYTHING unpredictab...
by karwos
Fri Mar 03, 2017 8:33 pm
Forum: Wireless Networking
Topic: Wi-Fi speed issues on hAP AC Lite
Replies: 39
Views: 36989

Re: Wi-Fi speed issues on hAP AC Lite

This is known problem by us too, and there is atleast 2 problems with WLAN in this product: 1. Compatibility problems (connect huawei p9 lite and performance is DEAD, solution is to use 20mhz channel width) 2. When using frequency=auto, there is sometimes performance problems too, network is visible...
by karwos
Tue Feb 28, 2017 6:54 pm
Forum: General
Topic: Intel 82571eb and v.6 Ros
Replies: 2
Views: 1204

Re: Intel 82571eb and v.6 Ros

Bump...
by karwos
Sun Feb 26, 2017 1:22 pm
Forum: General
Topic: Intel 82571eb and v.6 Ros
Replies: 2
Views: 1204

Intel 82571eb and v.6 Ros

Can anyone actually confirm these chipsets works with V6 tree?
We're scheduling update plan from v5, however I heard there is lots of problem with packet loss on this chip and V6

Also: 82574l, 82579 - any feedbacks?
by karwos
Tue Feb 21, 2017 6:48 pm
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 19
Views: 10538

Re: Mikrotik CHR P1 Licence - packet loss [FIXED]

you can spin up any number of CHR trial instances, this is the beauty of CHR. It needs no license and it is virtual. You are right, this is big pro of CHR. However I meant for example x86 version. For example, we've found simple queues bug last days. v5, Router keeps rebooting, sometimes each hour,...
by karwos
Tue Feb 21, 2017 12:59 pm
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 19
Views: 10538

Re: Mikrotik CHR P1 Licence - packet loss [FIXED]

I am not dare to test it until confirmed and put stable.
Everyday we find new nasty bugs. Moving to each new version is too big pain.
by karwos
Thu Feb 16, 2017 2:37 pm
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 19
Views: 10538

Re: Mikrotik CHR P1 Licence - packet loss [FIXED]

Dear mods,
the thread is marked as a [FIXED] one,
however at moment I do not see any new version released with fixed problem.
I still need to use P unlimited trial licence.
by karwos
Thu Feb 09, 2017 6:53 pm
Forum: Virtualization
Topic: Mikrotik CHR P1 Licence - packet loss [FIXED]
Replies: 19
Views: 10538

Mikrotik CHR P1 Licence - packet loss [FIXED]

Just wanted to beware, and inform everyone (maybe with similiar problem) about some really bad bug in Mikrotik CHR licencing. We have launched new BGP CHR server instance (v6.37.1) in December. We've obtained 60 days P unlimited licence. Everything has been working like a dream during trial period. ...
by karwos
Sat Jul 23, 2016 12:36 am
Forum: General
Topic: Mikrotik hAP lite and Huwei P9 lite compatibility problems
Replies: 1
Views: 1181

Mikrotik hAP lite and Huwei P9 lite compatibility problems

Hi. I've been using Mikrotik hAP lite for quite a while now, maybe year. I've used it with with various devices, some G-band, some N-Band, some 150mbs rated, some 300mbs rated. In the past, experienced some problems with auto-channel selecting, however after manually selecting channel all back's to ...
by karwos
Thu May 05, 2016 2:22 pm
Forum: Announcements
Topic: v6.35.1 [current] is released!
Replies: 84
Views: 36169

Re: v6.35.1 [current] is released!

[ As I mentioned possibly modules them selves are acting up sometimes. System can stop attempting to read ddmi if there are to many failed attempts. These modules DDM works perfectly in other manufacturer equipment (i.e. DASAN networking). I can send you one module for tests, or make some tests/deb...
by karwos
Mon May 02, 2016 10:20 pm
Forum: Announcements
Topic: v6.35.1 [current] is released!
Replies: 84
Views: 36169

Re: v6.35.1 [current] is released!

Please FINALLY FIX SFP DDM INFORMATION READING On CRS125, there is nothing shown in SFP tab... HOWEVER i've successfully readen DDM data (and RX/TX power was updated few times a seconds too) today on CRS125. How it's fixed? Run CRS125 without SFP module. Tick system restart, while restarting PLUG S...
by karwos
Sat Apr 30, 2016 4:27 pm
Forum: Announcements
Topic: v6.35.1 [current] is released!
Replies: 84
Views: 36169

Re: v6.35.1 [current] is released!

Please FINALLY FIX SFP DDM INFORMATION READING On CRS125, there is nothing shown in SFP tab... HOWEVER i've successfully readen DDM data (and RX/TX power was updated few times a seconds too) today on CRS125. How it's fixed? Run CRS125 without SFP module. Tick system restart, while restarting PLUG SF...
by karwos
Fri Feb 12, 2016 8:33 pm
Forum: Announcements
Topic: v6.34.1 [current] is released!
Replies: 59
Views: 27511

Re: v6.34.1 [current] is released!

CRS125 : after installing 6.34.1 and "RESET CONFIGURATION", device is being put into ROUTER MODE and ether1 is gateway (even not SFP).

Previous behaviour was: bridge mode (hw switch). As for switch, I think it should defaultly act as a switch, not router.

Greetings
by karwos
Wed Feb 03, 2016 3:44 pm
Forum: General
Topic: hAP lite auto channel selecting not work as expected
Replies: 0
Views: 1031

hAP lite auto channel selecting not work as expected

When set AUTO in channel mode, sometimes all going totally wrong. Wireless performance about 0.5 MBIT, ping timeouts, etc. COmplelty mess. After changing channel to manual (2412,2450 or any) all going back to normal (50-90mbit). This is surely not a noise problem - i've tried all of channels, and al...
by karwos
Tue Nov 17, 2015 1:05 am
Forum: Announcements
Topic: 6.33 version released!
Replies: 139
Views: 56670

Re: 6.33 version released!

Dear support, FIRST of ... SFP DDM has gone in this (or some of previous) version. I could read DDM data normally from my SFP modules (AscentOptics OEM, branded and popular in Poland like OPTON, OPTEC, etc) from other devices, like : Transceiver type: SFP or SFP+ Transceiver: 1000BASE-LX Length: 3 K...
by karwos
Tue Sep 22, 2015 12:03 am
Forum: General
Topic: Possible bridge leak problem
Replies: 9
Views: 3639

Re: Possible bridge leak problem

I bet 100% this is same bug, experienced the same, however fixed it :

http://forum.mikrotik.com/viewtopic.php?f=2&t=98272

Maybe check it out, it's something wrong with MAC mechanisms
by karwos
Mon Sep 21, 2015 11:56 pm
Forum: General
Topic: Serious bug casuing network DDOS in RouterOS v5.20 (and maybe others-didn't tested yet).
Replies: 12
Views: 4255

Re: Serious bug casuing network DDOS in RouterOS v5.20 (and maybe others-didn't tested yet).

bump ...................... c'mon guys, if you are really too lazy to check this, get me access to kernel and OS and i will debug and find out this for you ...
by karwos
Sun Jul 05, 2015 5:53 pm
Forum: General
Topic: Serious bug casuing network DDOS in RouterOS v5.20 (and maybe others-didn't tested yet).
Replies: 12
Views: 4255

Serious bug casuing network DDOS in RouterOS v5.20 (and maybe others-didn't tested yet).

I've encountered several DDOS attacks in my network. The more interesting fact was that attacking device was Mikrotik RouterOS itself. I've successfully reproduced problem and confirmed that causative device was MT router... . Configuration: RouterOS v5.20 on x86 platform, around ten gigabit etherne...
by karwos
Sun Jul 05, 2015 5:37 pm
Forum: General
Topic: Add new PCQ classifiers
Replies: 8
Views: 3061

Re: Add new PCQ classifiers

bump ...
by karwos
Sun May 10, 2015 9:35 pm
Forum: General
Topic: Add new PCQ classifiers
Replies: 8
Views: 3061

Re: Add new PCQ classifiers

Queue work only on layer 3 traffics, So don't work on bridge ports.
Queue don't limit traffics forward through bridge ports.
I though "interface queue" is last queue before calling hw transmit - so it should work on L2 as well. any comment from MT engineers?
by karwos
Sat Apr 04, 2015 5:36 pm
Forum: General
Topic: Feature requests
Replies: 1742
Views: 637495

Re: Feature requests

Add new attributes to PCQ classifier: dst-mac-addr, src-mac-addr IP working only on plain IP packets (etherType=0x800), when device working in bridge mode and passing VLAN, VLAN-in-VLAN, PPPoE packets - it's not properly placing packets in queue (they are bpassed). Solution is to make few other chec...
by karwos
Fri Apr 03, 2015 4:51 pm
Forum: General
Topic: Add new PCQ classifiers
Replies: 8
Views: 3061

Add new PCQ classifiers

Hi, seems current PCQ classifiers (dst-ip-addr, src-ip-addr) working only on etherType=0x800=ip packet when device working in bridge mode and bridging packets, when it's attached QUEUE on INTERFACE, it's only classyfing plain IP packets. Packets with etherType=pppoe sesssions, or packets with VLAN h...
by karwos
Thu Apr 02, 2015 7:32 pm
Forum: General
Topic: How PCQ marking works, regarding to etherType = IP / PPPoE
Replies: 0
Views: 654

How PCQ marking works, regarding to etherType = IP / PPPoE

Considering following environment: 1) There is some Routerboard device, working in bridge mode 2) On Interface Queues, is attached properly working PCQ queue Then, how pcq-dst-addr or pcq-src-addr qualifier works? Considering, through bridge are bridgeg both plain-IP packets (etherType 0x800) and IP...