CAPsMAN without local forwarding drops SMB load from windows 10 machines

Hello I’m looking for help with CAPsMAN wired behavior.

My network:
internet → Router(hAP ac3) → RB260GS → 2x cAP ac (CAPsMAN) ((( —5Ghz— ))) Windows 10 SMB client
RB260GS → OMV home server

hAP ac3 = Router, CAP manager
cAP ac = CAPsMAN APs, Bridged LANs and WLANs
RB260GS = switch
Server = openmediavault server

CAPsMAN basic configuration

add country="czech republic" datapath.client-to-client-forwarding=yes interface-list=LAN local-forwarding=yes distance=indoors installation=indoor mode=ap name=cfg1 security.authentication-types=wpa-psk,wpa2-psk encryption=aes-ccm ssid=MySSID

All wired and android wireless clients works well.
But without local forwarding CAPsMAN same error appears at all Windows 10 machines as wirelles clients, tested DELL, Acer, Lenovo notebooks.
Transfer to server always drops after average 60MB with error “0x8007003b An unexpected network error occurred.”
I changing only datapath local-forwarding and bridge to reach this error.

Firewall:
-“Building Advanced Firewall” like without bad TCP a ICMP chains
-raw firewall bypassed for testing

SMB client side wireshark:
wireshark.png
Looks like CAPsMAN without local forwarding cause TCP drops under heavy load.
After enable local forwarding, copy data to server works well.
Is it Widows bug, or RouterOS CAPsMAN encapsulation bug, or I overlooked some setting?
I use CAPsMAN without local forwarding for practical reason better seeing and managing traffic from APs, I know it isnt deadly important. But I d like find where is problem.
router.rsc (15.1 KB)

Hi,
I have exactly the same problem. Did you found solution?

One more problem with local forwarding from my side - if

local-forwarding=yes

I am getting

dhcp offering lease without success

problem sometimes.

If

local-forwarding=no

there is no problem with dhcp, but there are problems with copying large files over samba from windows clients.



My config (excerpt):
There are two bridge interfaces:

bridge-LAN - there are two SSID with this bridge. Primary SSID (local-forwarding=yes, client-to-client=yes, hide-ssid=no), Secondary SSID (local-forwarding=yes, client-to-client=yes, hide-ssid=yes)

bridge-HOTSPOT - there is only one SSID (local-forwarding=no, client-to-client=no, hide-ssid=no)

RB750Gr3, 6.49.18 (CAPsMAN), Several AP (RBcAPGi-5acD2nD, 6.49.:sunglasses: