Feature requests

Hi.
I know, that Mikrotik dropped the mipsle platform support… I know… but..
Please, backport two fantastic changes to mipsle, specifically to RB532.

  1. WPS client mode.
  2. EAP-PEAP-MSCHAPv2

Please, make a “routeros-mipsle-6.32.5” package with these features to make our old routers happier. :slight_smile:

Thanks and best regards: CsXen

Please, add /31 mask on p2p support (rfc3021).

it would be nice in capsman interfaces tab a column with how many devices are connected per cap.

+1 for this, it makes the current traffic flow implementation 99% complete. It’s that 1% we all need to make it useful to anyone using BGP.

Please add support for DHCPInform for PPP link. It is usefull for Windows VPN clients (push additional info such as domain name, classless routes etc.). Now I must redirect DHCPInform request from PPP to external DHCP server.

Please add support for setup l2tp client source portselection - set port by maunal, or set random port. Something like /interface l2tp-client set l2tp-out1 src-port=port_number, or src-port=random. It would be a very useful feature, especially if multiple l2tp clients + ipsec establishes connections from local network via one NAT address.
Thanks.

Unmetered Content’ / to bypass local servers from radius accounting.

You know how everyone’s always saying “we want UDP support in OpenVPN” and “we want LZO”? And MikroTik say that their OVPN implementation is really nasty code that’s hard to work on?

How about instead we look to the future: WireGuard https://www.wireguard.io

Clients for every major OS, modern cryptography, and the performance looks pretty amazing:
Screen Shot 2017-06-10 at 23.44.39.png

Please add:

  • Incremental SPF
  • IP FRR (RFC5714) and microloops (RFC5715)
  • LFA (RFC5286) & Remote LFA (RFC7490)

And it would be really great if you add:

  • RSVP FRR (RFC4090)
  • MRT (RFC7812)

About the WireGuard idea, are you a time traveller writing to us from future? :slight_smile: I almost got excited, but at present time, things don’t look so bright yet:

So I think I’ll stick with wanting better OpenVPN for a while, at least until this happens:

Spoiler alert: Trump gets impeached!

…but I’m not going to reveal which one is released first: WireGuard v1.0 and RouterOS v7.0 :slight_smile:

Please add in capsman registration table “active host name” and “active address”! THX

Providing Compression for the OpenVPN client, would be something i would wish for.

  1. add /ip route check-gateway-ping-interval
  2. ability to customize fasttrack rules a little bit. more dual wan friendly. right now i cannot figure out a way to have fasttrack with both ipsec and multi wan, although it does appear possible if its just one extra feature.
  1. +1!
  2. If your dual wan setup depends on mangle be aware of: https://wiki.mikrotik.com/wiki/Manual:IP/Fasttrack

Queues (except Queue Trees parented to interfaces), > firewall filter and mangle rules will not be applied for FastTracked traffic.

i made some workarounds to make fasttrack+ipsec+dualwan all work together..but i really wish they’d come up with something better

/tool fetch keep-result (yes | no; Default: yes) If yes, creates an input file.

rename this to save-tofile or something… from what i am seeing, keep-result appears to save the output to disk. or is it input? i’ve no idea anymore.

MT could possibly hire an englishman to straighten the terms out.

Could you please describe how did you worked out port forwarding in dual wan environment with fasttrack?

DNSCrypt feature request topic has been started in 2012! Your customers waiting it about 5 years and still no support from you. Looks like you are not interested in customer’s data privacy at all. Now open your eyes, read the message and satisfy us.

add tool: tcp/udp open port tester.