Hi,
I’ve upgraded one of our RB192 to RouterOS v3.22, and it seems like ipsec manual-sa option is gone:
In 2.9.44
[user@MikroTik] ip ipsec>
IP security supports secure (encrypted) communications over IP networks.. – go up to ip
policy/ – Security policies
installed-sa/ – Currently installed security associations
manual-sa/ – Templates for manual security associations
In 3.22
[user@MikroTik] /ip ipsec>
IP security supports secure (encrypted) communications over IP networks.. – go up to ip
export – Print or save an export script that can be used to restore configuration
installed-sa – Currently installed security associations
peer – IKE peer configuration
policy – Security policies
proposal – phase2 IKE proposal settings
remote-peers – Remote peers
statistics –
I’m assuming there was some reorganisation and this feature is still available, but I can’t find changes documentation…
(http://www.mikrotik.com/testdocs/ros/3.0/vpn/ipsec.php still mentions manual-sa)
Here are package details in old/new RouterOS, should it be important.
[user@MikroTik] system package> print
Flags: X - disabledNAME VERSION SCHEDULED
0 routeros-rb500 2.9.44
1 system 2.9.44
2 hotspot 2.9.44
3 wireless 2.9.44
4 ntp 2.9.44
5 X rstp-bridge-test 2.9.44
6 routerboard 2.9.44
7 X wireless-legacy 2.9.44
8 webproxy-test 2.9.44
9 X routing 2.9.44
10 security 2.9.44
11 advanced-tools 2.9.44
12 dhcp 2.9.44
13 ppp 2.9.44
14 routing-test 2.9.44
[user@MikroTik] /system package> print
Flags: X - disabledNAME VERSION SCHEDULED
0 routeros-mipsle 3.22
1 system 3.22
2 X mpls 3.22
3 routerboard 3.22
4 X ipv6 3.22
5 advanced-tools 3.22
6 security 3.22
7 dhcp 3.22
8 wireless 3.22
9 hotspot 3.22
10 ppp 3.22
11 routing 3.22