Community discussions

MikroTik App

Search found 78 matches

by uCZBpmK6pwoZg7LR
Thu Feb 08, 2024 1:58 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 12526

Re: Status of ROS V7 for BGP, MPLS, VPLS

It is not entirely true, PE can still be protected and client behind PE as well. Only thing that you cannot do is destination nat on traffic from MPLS cloud to CE. DNAT to local interface(bridge assigned to vrf works) "works" is too loud word in that case, at least it reach PREROUTING, FO...
by uCZBpmK6pwoZg7LR
Thu Feb 08, 2024 9:46 am
Forum: Forwarding Protocols
Topic: Mikrotik ROS 7 VPN4 firewall BROKEN
Replies: 3
Views: 899

Re: Mikrotik ROS 7 VPN4 firewall BROKEN

Thank you very much for your concerns and bringing it up to the attention. v7 is now using new linux kernel with proper VRF implementation, which of course will lead to completely different operation principles. VRF has its own vrfinterface which is used as a loopback for all the traffic that needs...
by uCZBpmK6pwoZg7LR
Thu Feb 08, 2024 8:29 am
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 12526

Re: Status of ROS V7 for BGP, MPLS, VPLS

I can say even more since ros 7.14 it will be no firewall in PE routers . PE-CE segment will be not protected. will be not possible to SNAT and DNAT VPN4 traffic on PE router.
by uCZBpmK6pwoZg7LR
Tue Feb 06, 2024 10:12 am
Forum: Forwarding Protocols
Topic: Mikrotik ROS 7 VPN4 firewall BROKEN
Replies: 3
Views: 899

Mikrotik ROS 7 VPN4 firewall BROKEN

Hi guys. I think it is time to move that to public. We started to worry about future of mikrotik. Look like that they lost their leading developers who understand network technologies. In October 2023 i reported to mikrotik problem that VPN4 packets from MPLS interface to VRF marked in firewall as p...
by uCZBpmK6pwoZg7LR
Fri Jan 26, 2024 12:46 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 12526

Re: Status of ROS V7 for BGP, MPLS, VPLS


- There are no known problems with VPNv4 and route reflectors. There is a known/not yet fixed problem with VPLS and route reflectors.
What about silent firewall ignore on CPE for traffic which came from VPN4 to VRF (SUP-141699) ?
by uCZBpmK6pwoZg7LR
Thu Jan 25, 2024 7:22 pm
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 510
Views: 155255

Re: v7.14beta [testing] is released!


1- v7.14 is still in beta
2- I'm having a similar problem with static routes in VRFs: viewtopic.php?t=202612&start=300#p1051523
try to use ipaddress%inface@table
by uCZBpmK6pwoZg7LR
Thu Jan 25, 2024 6:38 pm
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 510
Views: 155255

Re: v7.14beta [testing] is released!

ROS 7.14 very nice. Now firewall for VPRN traffic to VRF on CPE mikrotik routers just completely and silently ignored . DNAT to VRF also don`t work.
Well done.
by uCZBpmK6pwoZg7LR
Sat Dec 30, 2023 7:19 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 12526

Re: Status of ROS V7 for BGP, MPLS, VPLS

Care to share how much MPLS traffic you have at peak and is it in tile arch?, we have a pilot MPLS implementation base on v6 (mpls atom/pseudowire) in one of our PoP and just running < 500mb at peak In excess of 20Gbit worth of L3VPN traffic per CCR1072 router. How you got it ? I cannot pass 1gb/s ...
by uCZBpmK6pwoZg7LR
Thu Dec 21, 2023 9:42 am
Forum: Announcements
Topic: v7.14beta [testing] is released!
Replies: 510
Views: 155255

Re: v7.14beta [testing] is released!

Tell me please, what are the advantages of a "exposed lo" interface over the old way?
I seen mention that it potentially can fix issue with MPLS VPN4 security firewall bug.
by uCZBpmK6pwoZg7LR
Tue Dec 19, 2023 12:04 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 12526

Re: Status of ROS V7 for BGP, MPLS, VPLS

Is this ChatGPT? What the hell are you talking about? An ISP should never put any kind of data plane firewall in an MPLS core. MPLS core P and PE routers only have firewall rules for the control plane of the P and PE routers. What dumb approach is this? CE devices should have localised firewall as ...
by uCZBpmK6pwoZg7LR
Mon Dec 18, 2023 5:21 pm
Forum: Forwarding Protocols
Topic: Status of ROS V7 for BGP, MPLS, VPLS
Replies: 70
Views: 12526

Re: Status of ROS V7 for BGP, MPLS, VPLS

Don`t use MPLS VPN4 ROS 7 because you CPE will be completely open for remote side of tunnel. Firewall fail to detect inbound interface and mark it as unknown and if you filter something using : add action=drop chain=input in-interface=<mpls interface> traffic will reach you CPE without any limitatio...
by uCZBpmK6pwoZg7LR
Thu Oct 26, 2023 9:40 am
Forum: Forwarding Protocols
Topic: VPLS fragment reassembly bug only on TILE-arch
Replies: 10
Views: 5205

Re: VPLS fragment reassembly bug only on TILE-arch

I lost any hopes that MPLS related bugs in ROS 7 will be fixed. Started to look for another router brand without success for now.
by uCZBpmK6pwoZg7LR
Tue Oct 17, 2023 9:54 am
Forum: Announcements
Topic: v7.12rc is released!
Replies: 225
Views: 93705

Re: v7.12rc is released!

Please fix SUP-130540 and SUP-130672
by uCZBpmK6pwoZg7LR
Tue Oct 10, 2023 10:30 am
Forum: Announcements
Topic: v7.12rc is released!
Replies: 225
Views: 93705

Re: v7.12rc is released!

Fix at last firewall problem with interface unknown to interface unknown. Due to this issue mikrotik firewall does not work at all for MPLS VPN4 traffic. You have critical security issue but continue to fix useless docker containers.
by uCZBpmK6pwoZg7LR
Tue Oct 03, 2023 12:30 pm
Forum: Announcements
Topic: v7.12beta [testing] is released!
Replies: 263
Views: 126043

Re: v7.12beta [testing] is released!

Please fix bug SUP-125227 and SUP-129944 (traffic from interface unknown to interface unknown) . It is not possible to use firewall due to it.
by uCZBpmK6pwoZg7LR
Wed Aug 16, 2023 6:24 pm
Forum: Forwarding Protocols
Topic: VPNv4 route inconsistant.
Replies: 2
Views: 2188

Re: VPNv4 route inconsistant.

try to remove interface from vrf assignment and put back. quite often it helps. I normally remove iface , wait 3 - 5 seconds and put back
by uCZBpmK6pwoZg7LR
Wed Aug 16, 2023 6:19 pm
Forum: Forwarding Protocols
Topic: VPN4 tunnels limit.
Replies: 1
Views: 2215

VPN4 tunnels limit.

Good day/morning/night. I have most probably quite weird question. Do exist some kind of limitation in mikrotik about amount active unique VPN4 tunnels in network. I have a tiny mpls based network where i have quite a lot of VPN4 tunnels and i cannot pass more than 200 active unique VPN4 tunnels. Wh...
by uCZBpmK6pwoZg7LR
Mon Aug 07, 2023 1:19 pm
Forum: Announcements
Topic: v7.11rc is released!
Replies: 195
Views: 49459

Re: v7.11rc is released!

any plans to fix interface unknown in firewall for mpls vpn4 traffic ?
by uCZBpmK6pwoZg7LR
Tue Aug 01, 2023 4:22 pm
Forum: Forwarding Protocols
Topic: v7 vrf dnat snat
Replies: 1
Views: 2113

Re: v7 vrf dnat snat

1) make routing mark at mangle prerouting for public WAN port 1.1.1.1:tcp/22
2) dnat using routing mark 1.1.1.1:tcp/22 -> 10.255.255.254:22
by uCZBpmK6pwoZg7LR
Thu Jun 29, 2023 8:52 pm
Forum: Forwarding Protocols
Topic: ROSv6 to v7 VPNv4 VRF Routes
Replies: 14
Views: 4469

Re: ROSv6 to v7 VPNv4 VRF Routes

I just wanted to post a quick update. It appears the upgrading to 7.10 fixed the VPNv4 issues we had.
Nope not everything fixed. Traffic to bridge interface which is member of VRF still don`t hit mangle prerouting and also not possible to ping it from another side of tunnel.
by uCZBpmK6pwoZg7LR
Mon Jun 12, 2023 11:54 am
Forum: Announcements
Topic: v7.10rc is released!
Replies: 183
Views: 54072

Re: v7.10rc is released!

any chance to fix MPLS packets which does not follow packet flow diagram in case if destination ip is interface ip address member of VRF ( ie input interface unknown isue)?
by uCZBpmK6pwoZg7LR
Tue May 30, 2023 9:40 pm
Forum: RouterBOARD hardware
Topic: CCR availability in EU
Replies: 11
Views: 2871

Re: CCR availability in EU

Netherlands ?

https://www.dectdirect.nl/nl/cloud-core ... s-2xq.html

2 on stock.

I usually buy there.
Thanks CCR2116-12G-4S+ is not ccr2216-1g-12xs-2xq. And look on price :) 1st one 1k EUR.
by uCZBpmK6pwoZg7LR
Tue May 30, 2023 8:28 pm
Forum: RouterBOARD hardware
Topic: CCR availability in EU
Replies: 11
Views: 2871

Re: CCR availability in EU

Having a quick look around the german markets: 5 shops with CCR2216-1G-12XS-2XQ shippable 1 shop with CCR2004-1G-12S+2XS shippable 4 shops with CCR2004-16G-2S+ shippable 4 shops with CCR2004-16G-2S+PC shippable 5 shops with RB1100DX4 shippable 2 shop with CCR1072-1G-8S+ shippable 3 shops with RB500...
by uCZBpmK6pwoZg7LR
Tue May 30, 2023 12:39 pm
Forum: RouterBOARD hardware
Topic: CCR availability in EU
Replies: 11
Views: 2871

CCR availability in EU

I have one question. Is Mikrotik plan to close their doors? Last time we do quite a lot of installations of CCR routes inside our network and last 3 months we observe situation that it is not possible to buy anymore in European Union Mikrotik routers CCR series. Current nearest delivery date is 30 J...
by uCZBpmK6pwoZg7LR
Wed May 24, 2023 1:38 pm
Forum: Announcements
Topic: Announcement regarding CVE-2023-32154
Replies: 23
Views: 28800

Re: Announcement regarding CVE-2023-32154

Added quoted text. Nobody reported the bug to MikroTik before May 10th. (and by the way it's an useless bug) As i told before most probably somebody under false flag (if to believe to Mktik) entitled itself as Mikrotik person and took a part at pwn2own and got details about attack. Well done. It me...
by uCZBpmK6pwoZg7LR
Wed May 24, 2023 1:20 pm
Forum: Announcements
Topic: Announcement regarding CVE-2023-32154
Replies: 23
Views: 28800

Re: Announcement regarding CVE-2023-32154

And it's even more shameful that you write bullshit without knowing what you're writing. Tell me more or i can say same about you. Ok this is just Mikrotiks words against somebody else words. Basically it means that somebody who was entitled as Mikrotik representation may be false entitled was awar...
by uCZBpmK6pwoZg7LR
Wed May 24, 2023 1:18 pm
Forum: Announcements
Topic: Announcement regarding CVE-2023-32154
Replies: 23
Views: 28800

Re: Announcement regarding CVE-2023-32154

It is extremely shame not to fix critical vuln during almost half year. So it means that somebody could root your device for relatively small amount of money.
by uCZBpmK6pwoZg7LR
Fri May 12, 2023 3:38 pm
Forum: Forwarding Protocols
Topic: ROSv6 to v7 VPNv4 VRF Routes
Replies: 14
Views: 4469

Re: ROSv6 to v7 VPNv4 VRF Routes

We are stuck in a hard place here. We ordered a few of CCR2004-16G-2S+ (ARM64) because CCR1009-7G-1C-1S (TILE) are longer available and we need the 10G SFP+ port for some of our customers. The CCR2004-16G-2S+ (ARM64) does not have the ability to downgrade to ROSv6. We would've done that in a heart ...
by uCZBpmK6pwoZg7LR
Thu May 11, 2023 5:42 pm
Forum: Forwarding Protocols
Topic: ROSv6 to v7 VPNv4 VRF Routes
Replies: 14
Views: 4469

Re: ROSv6 to v7 VPNv4 VRF Routes

Better create ticket in their support . i created but if it will be more people i presume it will get more priority. PS: today i got a weird answer from support where they say something like that now router decide to which VRF routes have to be installed using RD instead of RT. Due to it . It is lo...
by uCZBpmK6pwoZg7LR
Tue May 09, 2023 9:46 pm
Forum: Forwarding Protocols
Topic: ROSv6 to v7 VPNv4 VRF Routes
Replies: 14
Views: 4469

Re: ROSv6 to v7 VPNv4 VRF Routes

Just downgrade to ROS 7.8 i have exactly same issue . Downgrade solve it . You are right... That fixed it, everything came up with the exact configuration. So is the solution to run on 7.8 for VPNv4 VRF and not stable 7.9? Better create ticket in their support . i created but if it will be more peo...
by uCZBpmK6pwoZg7LR
Tue May 09, 2023 7:09 pm
Forum: Forwarding Protocols
Topic: ROSv6 to v7 VPNv4 VRF Routes
Replies: 14
Views: 4469

Re: ROSv6 to v7 VPNv4 VRF Routes

Just downgrade to ROS 7.8
i have exactly same issue . Downgrade solve it .
by uCZBpmK6pwoZg7LR
Tue May 09, 2023 4:01 pm
Forum: Forwarding Protocols
Topic: ROSv6 to v7 VPNv4 VRF Routes
Replies: 14
Views: 4469

Re: ROSv6 to v7 VPNv4 VRF Routes

downgrade to 7.8 and try again
by uCZBpmK6pwoZg7LR
Tue May 09, 2023 4:00 pm
Forum: Forwarding Protocols
Topic: Internal subnet not working v7
Replies: 8
Views: 2218

Re: Internal subnet not working v7

try to set preffered source ip in routing table or in route rules.
by uCZBpmK6pwoZg7LR
Tue May 09, 2023 3:42 pm
Forum: Announcements
Topic: v7.9 [stable] is released!
Replies: 242
Views: 55260

Re: v7.9 [stable] is released!

export your config nothing really special : /routing bgp template set default address-families=vpnv4 disabled=no multihop=yes router-id=\ 10.29.193.27 routing-table=main /routing bgp connection add address-families=vpnv4 as=65530 connect=yes disabled=no local.address=\ 10.29.193.27 .role=ibgp-rr-cl...
by uCZBpmK6pwoZg7LR
Tue May 09, 2023 11:43 am
Forum: Announcements
Topic: v7.9 [stable] is released!
Replies: 242
Views: 55260

Re: v7.9 [stable] is released!

vpn4 works!!!

mwaaa MT
For me now it is completely broken.
Now VPN4 on ROS7 not add routes to VRF
by uCZBpmK6pwoZg7LR
Tue Mar 07, 2023 2:33 pm
Forum: Announcements
Topic: v7.8 [stable] is released!
Replies: 425
Views: 140648

Re: v7.8 [stable] is released!

We are working of BFD support.
From brief look over reported BGP issues in the this topic, they should be polished and fixed in 7.9.

pe1chl, do you have any issue with BGP in 7.8?
VPRN ?? if you fix VPRN i ll drink beer until fall under table.
by uCZBpmK6pwoZg7LR
Thu Mar 02, 2023 4:54 pm
Forum: Announcements
Topic: v7.8 [stable] is released!
Replies: 425
Views: 140648

Re: v7.8 [stable] is released!

Plase fix VPRN route reflector

what is wrong with that?
mikrotik transmit self instead of learned NEXT_HOP value and ignore propagate setting for vrf route. Due to it VPRN completely broken
by uCZBpmK6pwoZg7LR
Wed Mar 01, 2023 1:31 pm
Forum: Announcements
Topic: v7.8 [stable] is released!
Replies: 425
Views: 140648

Re: v7.8 [stable] is released!

Plase fix VPRN route reflector
by uCZBpmK6pwoZg7LR
Thu Jan 26, 2023 4:52 pm
Forum: Announcements
Topic: v7.8beta [testing] is released!
Replies: 307
Views: 76975

Re: v7.8beta [testing] is released!

It is already fixed in v7.7 and v7.8betas Can u explain more exactly what you have fixed for bpg vpn4? It still have problem with best path calculation? Thx It was fix of issue that MT send reflected route back to sender with own self as nexthop . Due to it sender installed reflected route which it...
by uCZBpmK6pwoZg7LR
Wed Jan 25, 2023 10:09 am
Forum: Announcements
Topic: v7.8beta [testing] is released!
Replies: 307
Views: 76975

Re: v7.8beta [testing] is released!

pls fix BGP-VRF-VPNv4 - working with RR
Agree. This issue is upgrade blocker cannot migrate due to it to ROS 7.
by uCZBpmK6pwoZg7LR
Mon Jan 16, 2023 10:50 am
Forum: Announcements
Topic: v7.7 [stable] is released!
Replies: 357
Views: 114429

Re: v7.7 [stable] is released!

I have a problem with SRC-NAT, it is not matching all the connections so there are connections that are passing through the router without being NATed.
This problem persist since 6.xx.xx.
by uCZBpmK6pwoZg7LR
Wed Jan 04, 2023 12:15 pm
Forum: Announcements
Topic: v7.7rc is released!
Replies: 259
Views: 90325

Re: v7.7rc is released!

I'd love to see VTI implemented on RouterOS, but I kinda lost hope. I'd even gladly swap Wireguard for VTI.
I think it will be somewhere at 2033. :) They cannot fix yet standard functionality like VPRN already more than year. And it block upgrades.
by uCZBpmK6pwoZg7LR
Wed Dec 14, 2022 4:33 pm
Forum: Announcements
Topic: v7.7rc is released!
Replies: 259
Views: 90325

Re: v7.7rc is released!

Any plans for fix broken VPN4 bgp reflection ? Are you experiencing issues with a Routeros v7 Route Reflector? I am testing against a Cisco Route Reflector, and it seems to work properly. No, i using VPN4 ie l3 vpn (VPRN). inside vrf ROS 7 transmit self nexthop instead of mpls hop. Ie ROS7 just ign...
by uCZBpmK6pwoZg7LR
Tue Dec 13, 2022 4:47 pm
Forum: Announcements
Topic: v7.7rc is released!
Replies: 259
Views: 90325

Re: v7.7rc is released!

Any plans for fix broken VPN4 bgp reflection ?
by uCZBpmK6pwoZg7LR
Fri Nov 25, 2022 1:48 pm
Forum: Announcements
Topic: v7.7beta [testing] is released!
Replies: 322
Views: 125103

Re: v7.7beta [testing] is released!

Is it planned to fix BGP propagate? Option do not work for VPN4. VPN4 is completely broken due to it.
by uCZBpmK6pwoZg7LR
Sun Sep 11, 2022 11:14 am
Forum: Forwarding Protocols
Topic: DNS VRF
Replies: 2
Views: 1964

Re: DNS VRF

Feels like really crutches.
by uCZBpmK6pwoZg7LR
Tue Aug 30, 2022 4:08 pm
Forum: General
Topic: and again slow mikrotik vpn.
Replies: 1
Views: 315

and again slow mikrotik vpn.

Well it look like that really exist issue with ipsec vpn performance on Mikrotik devices. I did some tests with following environment : ipsec_slow_mkt.png 1) on web server i placed linux kernel 200 megabytes file 2) datacenter with web server have internet channel 1Gbit/s up /1Gbit/s down 3) locatio...
by uCZBpmK6pwoZg7LR
Mon Jun 27, 2022 5:48 pm
Forum: RouterBOARD hardware
Topic: cAP ac (RBcAPGi-5acD2nD) POE in question
Replies: 9
Views: 3813

Re: cAP ac (RBcAPGi-5acD2nD) POE in question

Have same issue with Cisco SG350 and CBS350 poe switches. Everything what i connect to it work except cAP ac.
by uCZBpmK6pwoZg7LR
Tue May 03, 2022 12:24 am
Forum: RouterOS beta
Topic: ROS7 MPLS forwarding over PPP
Replies: 1
Views: 2192

Re: ROS7 MPLS forwarding over PPP

it is broken. Better fill in bug report.
by uCZBpmK6pwoZg7LR
Thu Apr 28, 2022 6:00 pm
Forum: Announcements
Topic: v7.3rc [testing] is released!
Replies: 452
Views: 104376

Re: v7.3beta [testing] is released!

MPLS over Tunnels still broken
by uCZBpmK6pwoZg7LR
Fri Apr 22, 2022 10:47 am
Forum: Forwarding Protocols
Topic: ROS 7.2 LDP does not work
Replies: 2
Views: 892

Re: ROS 7.2 LDP does not work

Hi. In reality it is works but due to bugs unusable. LDP session establish but label enabled routes not properly mapped in local and remote mapping tables. Due to it all mapping tables become invalid and forwarding table empty. I created SUP-80288 about this. And suggest you to do same to increase p...
by uCZBpmK6pwoZg7LR
Mon Oct 25, 2021 10:34 am
Forum: Forwarding Protocols
Topic: How can I leak my routes from main table into another (VRF?) table?
Replies: 1
Views: 3252

Re: How can I leak my routes from main table into another (VRF?) table?

Well . Mikrotik in their documentation say that it have to work over : " In general it is recommended that all routes between VRF should be exchanged using BGP local import and export functionality. If that is not enough, static routes can be used to achieve this so-called route leaking. "...
by uCZBpmK6pwoZg7LR
Mon Aug 09, 2021 8:42 pm
Forum: Forwarding Protocols
Topic: And again VPN4 MPLS
Replies: 0
Views: 2652

And again VPN4 MPLS

Hi. Guys do somebody have same weird issue as me. CCR1036 6.48.3 When you add vrf rd , export , import and after you enable bgp vrf . label in out assigned to 0 in and 0 out also vrf routes not added to MPLS forwarding table Do i need to disturb support or somebody know quick fix . Basically same se...
by uCZBpmK6pwoZg7LR
Sat Aug 07, 2021 3:42 pm
Forum: Forwarding Protocols
Topic: ldp interface became red
Replies: 0
Views: 2445

ldp interface became red

Hi. I have an issue . After i changed Dynamic label range . All ldp interfaces became red and never go up anymore.
I tried to enable and disable LDP it not solve issue .
Do somebody have an idea how to solve it. Reboot of router is not an option .
by uCZBpmK6pwoZg7LR
Thu Aug 05, 2021 1:41 pm
Forum: Forwarding Protocols
Topic: BGP routing with TE Tunnel
Replies: 7
Views: 7177

Re: BGP routing with TE Tunnel

Is this bug solved already ? or V7 , 8 , 9 , 10?
by uCZBpmK6pwoZg7LR
Thu Jan 14, 2021 8:49 pm
Forum: RouterBOARD hardware
Topic: RB3011 port flopping - bad design
Replies: 131
Views: 62734

Re: RB3011 port flopping - bad design

In my config started bit better after complete removal All interface rules in Tools -> Graphing. From my side i can tell that it is no relation to 100mb or 1gb . I have 3 devices which are 100mb only. And links flapped untill i removed Graphing. Most probabaly exist multiply issues 1) Combination 10...
by uCZBpmK6pwoZg7LR
Wed Aug 05, 2020 7:44 pm
Forum: General
Topic: ipv6 bgp filters broken ? [SOLVED]
Replies: 2
Views: 1688

Re: ipv6 bgp filters broken ? [SOLVED]

Yes this is main target of such simple example. This extraction of config illustrate that mikrotik cannot filter ipv6 prefixes. if i understand right this script have to block advertisement of all ipv6 and ipv4 prefixes. But in reality it block only ipv4 prefixes. Most probably just a bug. PS : Dele...
by uCZBpmK6pwoZg7LR
Wed Aug 05, 2020 4:52 pm
Forum: General
Topic: ipv6 bgp filters broken ? [SOLVED]
Replies: 2
Views: 1688

ipv6 bgp filters broken ? [SOLVED]

Hi. Any idea how to filter ipv6 routes ? I have on my router simple test : /routing filter add action=discard address-family=ip chain=BGP_OFFICE_OUT prefix=0.0.0.0/0 prefix-length=0-128 add action=discard address-family=ipv6 chain=BGP_OFFICE_OUT prefix=::/0 prefix-length=0-128 add action=log address...
by uCZBpmK6pwoZg7LR
Thu Jun 18, 2020 4:33 pm
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 348
Views: 173085

Re: v6.47 [stable] is released!

Hi, Where the truth ?
Capsman show 30dbm on 5g. Same interface on AP wap ac which connected to capsman show 19dbm and antenna-gain on same ap 2dbm.
by uCZBpmK6pwoZg7LR
Wed Jun 17, 2020 3:34 pm
Forum: Announcements
Topic: v6.47 [stable] is released!
Replies: 348
Views: 173085

Re: v6.47 [stable] is released!

What is default antenna-gain for wap ac and cap ac ? Because i cannot set even regulatory domain on my routers.
In documentation written 0 is default but if i set 0 then it is not possible to set regulatory domain.
by uCZBpmK6pwoZg7LR
Tue Apr 14, 2020 11:06 pm
Forum: General
Topic: Weird issue [SOLVED]
Replies: 3
Views: 4940

Re: Weird issue [SOLVED]

Issue was due to Interfaces->Detect Internet feature. After complete disable this buggy and crap feature everything started to work.
by uCZBpmK6pwoZg7LR
Tue Apr 14, 2020 4:07 pm
Forum: General
Topic: Weird issue [SOLVED]
Replies: 3
Views: 4940

Re: Weird issue [SOLVED]

Hi, Thanks for your answer.
I just checked firewall and i not see any fasttrack rules there.
I also checked WanBridge . It have STP : none.
So most probably issue somewhere else. May be another ideas ?
Well i fighting with this issue already month or so without any result.
by uCZBpmK6pwoZg7LR
Tue Apr 14, 2020 3:46 pm
Forum: General
Topic: Weird issue [SOLVED]
Replies: 3
Views: 4940

Weird issue [SOLVED]

Well i have very weird issue on RB3011UIAS. Mikrotik pass traffic only for 40 seconds every 1 minute. When I do a ping for example to google from mikrotik . 40 seconds pingable and 20 seconds not pingable. It is look like time slots of internet. What is strange : In moment when i start Packet sniffe...
by uCZBpmK6pwoZg7LR
Wed Oct 31, 2018 5:23 pm
Forum: General
Topic: Strange behaviour
Replies: 6
Views: 1745

Re: Strange behaviour

...and finally I got what are you trying to prove :) No difference in behaviour between CCR and all others I mentioned above. The answer is in your log: obviously, in such case there is no in-interface, so it doesn't match your first rule. extraction from /interface print 1 RS ether2LAN ether 1500 ...
by uCZBpmK6pwoZg7LR
Wed Oct 31, 2018 5:19 pm
Forum: General
Topic: Strange behaviour
Replies: 6
Views: 1745

Re: Strange behaviour

Tried on hEX, hAP ac2, hAP mini - nothing like this.
Exactly HAP ac2 affected with version 6.43.4
and at least 5 different HEX lites with different versions of firmware have same issue.
Most probably something else inside mikrotik affect this .
by uCZBpmK6pwoZg7LR
Wed Oct 31, 2018 1:53 pm
Forum: General
Topic: Strange behaviour
Replies: 6
Views: 1745

Strange behaviour

/interface bridge add admin-mac=B8:69:F4:7F:9B:C1 auto-mac=no name=bridgeLAN /interface bridge port add bridge=bridgeLAN interface=ether2LAN add bridge=bridgeLAN interface=ether3LAN add bridge=bridgeLAN interface=ether4LAN add bridge=bridgeLAN interface=ether5LAN add bridge=bridgeLAN interface=wlan...
by uCZBpmK6pwoZg7LR
Wed Aug 01, 2018 3:06 pm
Forum: General
Topic: TR069 with FreeACS
Replies: 68
Views: 163169

Re: TR069 with FreeACS

Hi Mikrotik. How to interpretate this error ? Why it cannot do config overwrite ? 14:03:43 tr069,warning couldn't apply config overwrite 14:03:43 tr069,debug starting session, events: [7 TRANSFER COMPLETE, M Download (1), ] 14:03:43 tr069,debug send: Inform 14:03:43 tr069,debug rcvd: InformResponse ...
by uCZBpmK6pwoZg7LR
Tue Jul 31, 2018 4:18 pm
Forum: General
Topic: TR-069 fail with any HTTPS
Replies: 0
Views: 997

TR-069 fail with any HTTPS

In following example simple tr069-client without any certificate checks /tr069-client set acs-url=https://example.com enabled=yes password=test \ periodic-inform-interval=1m username=test example.com - have valid asterisk certificate from DigiCert. I also tried Letsencrypt one with same results . It...
by uCZBpmK6pwoZg7LR
Fri Oct 20, 2017 11:03 am
Forum: Forwarding Protocols
Topic: export route to vrf route table
Replies: 1
Views: 2166

Re: export route to vrf route table

Nobody knows or it is bug in Mikrotik ? Ok some extra config to recreate issue /routing bgp peer add address-families=ip,l2vpn in-filter=BGP_IN name=Main nexthop-choice=force-self out-filter=BGP_OUT remote-address=10.29.0.37 remote-as=65001 ttl=default /routing filter add append-bgp-communities=&quo...
by uCZBpmK6pwoZg7LR
Thu Oct 19, 2017 9:37 pm
Forum: Forwarding Protocols
Topic: MPLS over IPIP tunnels
Replies: 5
Views: 3027

Re: MPLS over IPIP tunnels

Working even over l2tp
by uCZBpmK6pwoZg7LR
Thu Oct 19, 2017 4:27 pm
Forum: Forwarding Protocols
Topic: export route to vrf route table
Replies: 1
Views: 2166

export route to vrf route table

Hi. Static example : /ip route add routing-mark=RED dst-address=0.0.0.0/0 gateway=1.1.1.1@main Question : Can i do the same for multi VRFs dynamically using default route from BGP ? I tried to use append rd in filters for default route which i got from upstream but it is not work. Route not appear i...
by uCZBpmK6pwoZg7LR
Wed Aug 02, 2017 3:13 pm
Forum: General
Topic: RFC 2890
Replies: 0
Views: 784

RFC 2890

Is it possible after 17 years of active development to have implementation for Key and Sequence Number Extensions to GRE in Mikrotik.
We really realy need it.
Thanks.
by uCZBpmK6pwoZg7LR
Wed Aug 02, 2017 2:58 pm
Forum: General
Topic: Edition route filters using Winbox issue
Replies: 0
Views: 612

Edition route filters using Winbox issue

In case of usage Winbox for edition Routing->Filters. After some operations Router Filters representation in GUI is not same as output command /routing filter print . Look like it happeing because Winbox not updating Route Filters window with real data after insert/delete etc. Issue happens on 6.39....
by uCZBpmK6pwoZg7LR
Wed Aug 02, 2017 2:41 pm
Forum: Forwarding Protocols
Topic: advert represenation possible bug
Replies: 2
Views: 1043

advert represenation possible bug

In case of usage routing-table in bgp instance routes advertised list is empty but routes advertise and install in routing table for examaple /routing bgp> instance print Flags: * - default, X - disabled 0 * name="default" as=65530 router-id=0.0.0.0 redistribute-connected=no redistribute-s...
by uCZBpmK6pwoZg7LR
Wed Jul 20, 2016 12:15 pm
Forum: General
Topic: about MIkrotik
Replies: 2
Views: 989

about MIkrotik

I have a question is it in policy of mikrotik company during upgrade of firmware completely brake configuration which was working on previous version ? For example today i upgraded production router CCR 1036 to bugfix release. And after reboot Ovpn stopped to work with TLS error, Firewall filter rul...
by uCZBpmK6pwoZg7LR
Tue Mar 29, 2016 11:47 am
Forum: Forwarding Protocols
Topic: ospf filters not work or i not get something ?
Replies: 2
Views: 1708

ospf filters not work or i not get something ?

As i undertand following rules must not accept inbound routes and outbound routes ospf [ktoto@TunnelBroker] /routing> filter print Flags: X - disabled 0 chain=ospf-in invert-match=no action=discard set-bgp-prepend-path="" 1 chain=ospf-out invert-match=no action=discard set-bgp-prepend-path...
by uCZBpmK6pwoZg7LR
Tue Nov 17, 2015 3:27 pm
Forum: General
Topic: Linux on MT hardware.
Replies: 0
Views: 713

Linux on MT hardware.

Good morning. Is it possible to remove completely RouterOs from Mikrotik device and install Linux on routerboard (CCR1009 )? I am even ready to compile everything myself. But may be exist somewhere install ready distribution. I moved to mikrotik from cisco. And found that amount of issues and bugs a...
by uCZBpmK6pwoZg7LR
Fri Nov 13, 2015 10:34 am
Forum: Beginner Basics
Topic: strange ping behaviour
Replies: 1
Views: 1541

strange ping behaviour

Hi guys. Today morning i detected following issue. (CCR1009 6.33) ping src-address=10.111.114.199 10.51.25.1 SEQ HOST SIZE TTL TIME STATUS 0 22 (Invalid argument) 1 22 (Invalid argument) 2 22 (Invalid argument) 3 22 (Invalid argument) sent=4 received=0 packet-loss=100% 10.51.25.0/24 network on anoth...