i made a script that do log up/down message using netwatch, that can be used to monitor various thing. Eks WireGuard.
viewtopic.php?p=888800#p888800
One of them is me, since I have to rewrite the Splunk Mikrotik logging.Likely the problem is that a complete overhaul of the logging system would make some people (who have invested time in handling the mess as it is) angry...
Are you logged inn to your router (winbox/web) and have the log window open all time?Sure, but I agree with OP that it doesn't seem very professional with screens full of red warnings that every connection is unsafe.
/ip firewall connection remove [find where dst-address~"your_public_ip_on_interface_xxx"]
/opt/splunk/etc/system/local/inputs.conf
/opt/splunk/bin
./splunk btool inputs list | grep udp
[monitor:///data/syslog/udp/.../*.log]
[udp]
index=*
This is how beta are posted. Look at older beta threads and you will find all beta version in just one thread for each main version.7.3beta40 is available, why is it buried in this thread.
/ip arp print detail
:put [/ip arp get *1]
{
/ppp secret
:foreach id in=[find where profile="Profile-A"] do={
set $id profile="Profile-B"
}
}
When something needs to be run on both versions, don't use syntax compatible only with v7![]()
:local Version [/system/resource get version]
->
:local Version [resource get version]
Did you ask your ISP if they have an NTP server you can use?It is confirmed that the ISP is blocking NTP protocol and they will not do anything to solve it. I have to do it from my side.
Can not be. Missing DHCP/Bridge/interface config +++Is that the full config ?
index=* sourcetype=mikrotik eventtype IN (*tp_connection_from,*tp_user_logged_in,ppp_authentication_failed,l2tp_user_logged_out)
index=* sourcetype=mikrotik ppp
index=*
Does not help if owner of Mikrotik Routers does not bother to read the forum.Put it in the signature part of your user account ;)
Did you read this forum before upgrade?Argh the wiviwave2 package make my hAPAC3 bootloop forever...
Can you give some example on that.all other disadvantages...
:put [/ip cloud get public-address]
:put [/system/resource/get uptime]
5w4d12:38:02
I am not a troll, You are asked by me and by normis what is wrong with 7.Mikrotik ignores any requests and denies users to use v6.48.6 [long-term] for this product forcing upgrade to currently unusable v7.
You did not reply to this.Why downgrade?
What does not work?
Why downgrade?Hence these are impossible to downgrade to v6.48.6.
index=*
Since you can not see what's inside HTTPS packages, you can not know if its a web site or DoH traffic. And since any can setup a DoH or DoT server, there are no way you can block this.Not necessarily.
Because DoH server can be blocked, and then fallback to standard DNS.
Not the same, but you can install VmWare and use CHR version of RouterOS.I hope that one day my network interface will work
version 6 works without problems
local cAdd
set cAdd [/ip/cloud/get public-address]
You should not be shocked, since this is just a test version and should not be used in production.but it was a little shocking moment as the PING didn´t came back.....
From my long list of release, there has not been a faster public release (4:25) from 6.47 and up (including beta). Have not looked at releases before 6.47. But I may have missed some...No, there have been fix releases quicker than that...
:put [/ip/cloud/get public-address]
It was just to show that in 7.x series MT has change from posting many beta version of the software to posting many RC version.What is the problem that you are reporting with this specific 7.2rc6 and what does it have to do with 6.4x versions?
Then you should remove 8.8.8.8 DNS settings from 192.168.0.3Because if the source IP is 192.168.0.3, Google should just drop the packet , it can't send traffic back to it.
No, it will only block traffic that has destination IP in the blackhole route.Unless I'm missing something, this will blackhole all internal traffic..
/ip firewall nat reset-counters-all
name~"(?i)fibr"
name~"(\?i)fibr"
This is why you should (if possible) always test on a equal local device before starting on remote device.Nope, the device was upgraded from v6.48.x -> v7.1.3 -> v7.1.5 remotely is the key word here
What's new in 7.1.4 (2022-Mar-21 13:23):
*) ups - fixed UPS support;
I know its only arm yet. Can you post a link to where MT stats that there will be no ZeroTier for other platform?no plans for other architecture atm as per MT
add action=dst-nat chain=dstnat comment="FTP -> Server" dst-address-list=WAN-IP dst-port=21 log-prefix=ND_DE_FTP-Balder protocol=tcp to-addresses=192.168.233.32
/export
/quit
/export show-sensitive
/ip firewall nat add src-address=172.16.1.20 action=src-nat to-addresses=92.x.x.x
/ip firewall nat add dst-address=92.x.x.x dst-port=443 protocol=tcp action=dst-nat to-addresses=172.16.1.20
/ip firewall address-list add address=youtube.com list=demo
failure: already have such entry
/ip firewall address-list add address=[:resolve mt.lv] list="demo"
for me that is an bug. If you work with time, you do work with time and 00:00 -5m should be 23:55.if the time is 00:00 the "[/system clock get time] - 5m" is negative time value -00:05:00 and do not find the previous day log from 23:55
:local loglist [:toarray [/log find time>([/system clock get time] - 5m) message~"negotiation failed"]]
:put ([/system clock get time] - 6m)
For how many years ?I understand what you're trying to say but isn't it better to be ready for the change (prepared) instead of being forced to do so (in a hurry, with all possible consequences) ?
:put [:rndstr length=12 from="0123456789abcdef"]
True, but most home router I have been working with can be set to bridge mode, so you can use a home router as an access point or as an switch.an access point usually can not be a router
YesIs hAP AC a wireless router or an access point?
My latest postet script do work on both 6 and 7, but version rextended posted does not work on v7.@Jonte, which one, and what problem you having? I can offer what see in @rextended's examples below, but can't vouch that's all the V7 issues.
:parse "/export show-sensitive file=test.rsc"
[:parse "/export show-sensitive file=test.rsc"]
Why?Oh, thank you so much!, its possibe to disable or remove? thanks
Table are far from equal.I'd call it a WinBox feature, not a bug.
:put [/ip firewall connection find where connection-type=sip]
:put [/ip firewall connection find where connection-mark=SIP]
Was 6.49.3 really compiled Des 22 2021?try again, it should work correctly now
Upgrade to 6.49.2 and you should see 7.1.2Can't find this update on my RB5009. Have checked for updates in /system packages
Quick Set > Check for updates shows installed version 7.0.5 and latest version 6.49.2
If this is a huge production network, you have big balls, 42 min after release :)Upgraded all my devices...no problem upgrading.
Still very long export time on devices with little CPU in 7.2rc2 (compare to 6.x)This is fixed in 7.2rc2.