6.32.3 version released!

To upgrade, click “Check for updates” in your RouterOS configuration interface, or head to our download page: http://www.mikrotik.com/download

What’s new in 6.32.3 (2015-Oct-19 11:13):

*) switch - fixed CRS settings set back to defaults after a reboot;
*) netinstall - include missing RB1200 drivers;
*) firewall - fixed connection-rate matcher;
*) ppp, pptp, l2tp, pppoe: fixed router dead locked if compression was enabled on link;
*) quickset - create proper firewall rules when PPPoE is used for address acquisition;
*) sstp - fixed kernel crash when other party started to fragment ppp packets in the middle;
*) ippool6 - optimize same prefix acquisition;
*) winbox - Shift+Ins & Shift+Del did not work in multi entry fields;
*) winbox - allow to specify ipv6 address in traffic flow target;
*) winbox - allow to specify eap-radius-accounting in CAPsMAN;
*) winbox - allow to enter dns name in email server;
*) ups - fix console oid print;
*) tunnel - fix loopback keepalives on gre and ipip;
*) pptp,l 2tp, sstp, pppoe: do not send data packets before we have negotiated connection with other
side (happens on dial-on-demand interfaces), this brakes when connecting to other party servers;
*) pptp, l2tp, sstp - make it work when add-default-route & dial-on-demand both are enabled;
*) pptp, l2tp, sstp, pppoe clients - fixed problem where they failed to connect
at startup and only reboot helped;
*) nv2 - fixed kernel failure with frame size accounting;
*) ovpn client - fixed crash when ovpn didn’t receive it’s ip address;
*) lcd - fix slideshow for CCR1072, and possible sign issues for temperatures;
*) winbox - make console notice correct screen size;
*) ssh - allow to specify pass as argument for private key import;
*) winbox - refetch hotspot walled garden hit counter;
*) winbox - added client-connections & server-connections to web proxy status;
*) cerm - fix scep server certificate-reply degenerate PKCS#7 signed-data content;
*) bgp - specific BGP networks were changed to different ones;
*) cerm - allow export for all types except templates;
*) wlan - update brazil-anatel country;
*) winbox - fixed context menu actions to apply to all selected items;

Screenshot 2015-10-20 14.08.05.png
Let’s open MikroTik.com download page.

current (channel) = new features + fixes*.
bugfix (channel) = fixes.

    • “new features+fixes” means latest tested features and fixes.

Let’s have a closer look at 6.32
At the moment current channel is 6.32.3, the previous current version was 6.32.2. There are only bugfixes added to 6.32.3

New features are (will be) added to 6.33, they are already present in 6.33rc (Release candidate channel).

You can discuss version naming in new topic,
http://forum.mikrotik.com/viewtopic.php?f=2&t=101479&p=504153#p504153

Please remember this topic is about 6.32.3!

Upgraded test network to this version, so far so good.
Thanks, for connection-rate fix.

Where can I see each country options? Brazil has 4 country options: brazil, brazil direct, brazil-922, brazil-anatel. What???

You can get info about channels,

in wire info country-info bra
“brazil direct” brazil brazil-922 brazil-anatel

[admin@Main_GW] > in wire info country-info brazil-anatel
ranges: 2402-2482/b,g,gn20,gn40(20dBm)/passive
5170-5250/a,an20,an40,ac20,ac40,ac80,ac160(10dBm)/passive
5250-5330/a,an20,an40,ac20,ac40,ac80,ac160(10dBm)/passive
5490-5710/a,an20,an40,ac20,ac40,ac80,ac160(15dBm)/passive
5730-5845/a,an20,an40,ac20,ac40,ac80,ac160(15dBm)

[admin@Main_GW] > in wire info country-info brazil-922
ranges: 912-932/b,g,gn20,gn40(30dBm)

[admin@Main_GW] > in wire info country-info “brazil direct”
ranges: 2402-2472/b,g,gn20,gn40(36dBm)/passive
2417-2457/g-turbo(36dBm)
5730-5845/a,an20,an40,ac20,ac40,ac80,ac160(36dBm)
5740-5820/a-turbo(36dBm)

nv2 fix was added to fix router occasional reboots in the specific configuration.

*) bgp - specific BGP networks were changed to different ones;

:open_mouth:

What does this mean?

*) winbox - allow to enter dns name in email server;

This is only a once off adding in terminal and resolves immediately, not on each use.
it also cannot be set via winbox > tools > email, still only allows IP.

I guess I will have to wait for the RC to release where it has the options amended already.
was just hoping it would be in this version.

Device: RB951G-2HnD with ROS v6.32.3 Firmware v3.24

Hello, do I have to upgrade AP only or all Clients too for this fix?

Thanks Miroslav

Good qestion? i have not sean this problem in my network.

Thanks MT…Working well on the following so far:

CCR1072-1G-8S+
CCR1036-8G-2S+

thanx for connection-rate fix

+1


thx a lot

after upgrading to 6.32.3 speed of wan is degraded (also on 6.33 rc`s). now i got only ~ 270 MBit/s but with 6.32.2 i had ~330 MBit/s.

tried to downgrade to 6.32.2 and speed got back to 330 MBit/s

routerboard RB951G-2HnD

any news wireless protocol to be introduce after nv2 ???

Eising

This fix is for /1 /2 specific networks, in 6.32.2 networks were changed incorrectly.

[admin@rack1_b2] /routing bgp network> add network=0.0.0.0/1
[admin@rack1_b2] /routing bgp network> add network=128.0.0.0/1
[admin@rack1_b2] /routing bgp network> add network=0.0.0.0/2
[admin@rack1_b2] /routing bgp network> add network=64.0.0.0/2
[admin@rack1_b2] /routing bgp network> add network=128.0.0.0/2
[admin@rack1_b2] /routing bgp network> add network=192.0.0.0/2

[admin@rack1_b2] /routing bgp network> print
Flags: X - disabled

NETWORK SYNCHRONIZE

0 0.0.0.0/25 yes
1 0.0.0.128/25 yes
2 0.0.0.0/26 yes
3 0.0.0.64/26 yes
4 0.0.0.128/26 yes
5 0.0.0.192/26 yes



Once again remember this is a topic about 6.32.3 version release. If you have suggestions about changelog or other features, post it in the appropriate thread.

So far this new release system is working well.

Good job Mikrotik.

Certificate got issues. Version 6.32.3, 6.33rc29 and 6.33rc30. Downgrade to 6.30.4 it works.

When try to create CA and self-signed to use in www-ssl, it doesn’t work. Can’t open Router using www-ssl. If you create on 6.30.4, then upgrade to 6.32.3, it works, you can access to the router by www-ssl.

I create the certificates with this commands:

/certificate add name=ca-template common-name=CA-NAME key-usage=key-cert-sign,crl-sign country=XX days-valid=7300 locality=XXXX organization=“XXXX” subject-alt-name=IP:X.X.X.X trusted=yes state=XXXX
/certificate add name=gw-template common-name=GW-CERT days-valid=7299 country=XX locality=XXXX state=XXXX organization=“XXXX” subject-alt-name=IP:X.X.X.X trusted=yes

/certificate sign ca-template ca-crl-host=X.X.X.X name=CA-NAME
/certificate sign ca=CA-NAME gw-template name=GW-CERT

/certificate set GW-CERT trusted=yes

With a downgrade to 6.30.4, an erase “GW-CERT” en creating again (maintaining the same CA-NAME), it works.

sindudas, what RouterBOARD do you use? I tried the same on my CCR board, everything worked fine.
Screenshot 2015-10-23 15.27.48.png