v7.2rc2 and v7.2rc3 is released!

I too am awaiting a fix for this. my RB3011 idles at 9% CPU which is way higher than the RB2011IUAS I have at another site which only has a 600Mhz single core with similar traffic loads.. I would expect the dual 1.4Ghz core to be idling quite a lot lower than it is.

Hopefully its something in the pipeline.

“queue - fixed traffic processing” is MT speak for fixing queues completly broken in a way not moving any traffic at all.
It is really bothering how such a severe bug can make it into an > rc2 > release without being discovered.
How is it possible to miss a completly broken core feature in rc testing? With broken meaning not working at all?

“Or else it doesn’t, you know. The name of the song is called ‘Haddocks’ Eyes’.”
“Oh, that’s the name of the song, is it?” Alice said, trying to feel interested.
“No, you don’t understand,” the Knight said, looking a little vexed.
“That’s what the name is called. The name really is ‘The Aged Aged Man’.”
“Then I ought to have said ‘That’s what the song is called’?” Alice corrected herself.
“No, you oughtn’t: that’s quite another thing! The song is called ‘Ways And Means’: but that’s only what it’s called, you know!”
“Well, what is the song, then?” said Alice, who was by this time completely bewildered.
“I was coming to that,” the Knight said. “The song really is ‘A-sitting On A Gate’: and the tune’s my own invention.”

(c) Lewis Carroll, “Through the Looking-Glass”

Well.
The version name is called “release candidate (rc)”
The version name is “beta”
The version is called “alpha”
The version is “pre-alpha”
And yes, it’s possible in pre-alpha versions.

Adding zerotier via the new Winbox option is not working for me.
When I add zerortier via the cli everything works smooth. Someone seen this issue also?
[Edit]
Some further investigation showed the Zerotier IP-Address is not added automaticaly to /ip/adressess.

After adding the address manualy it seems to work.

Hi,

Failed to disable IP > Firewall > Service Ports :frowning:

[admin@r1] > /ip/firewall/service-port/disable [find]
failure: module udplite is built-in and cannot be individually disabled

DCCP, STCP and udplite not disabled.

Regards …

Can confirm that it does not work on 7.2rc3, but do work on 7.1. Send an email to support@mikrotik.com so they make a support case out of it.

I have updated my RB4011 from 7.1.1 to 7.2rc3 and I already had all service ports disabled on 7.1.1, they remain so on 7.2rc3.
At least that is what is being displayed, maybe it is not the reality…

At least the big showstopper problem that prevented me from running 7.2rc1 (problems with routing table) seem to have been resolved.

Torch for IPv6 still not working. Can anyone confirm?

There’s no fix that mentiones torch, why would you expect it to work?

I am very happy to see the demand for cake and fq_codel here, and do hope the ipv6 problem is resolved soon. I’ve been trying to help
with cake specific configuration primarily over here: http://forum.mikrotik.com/t/some-quick-comments-on-configuring-cake/152505/1 and here: http://forum.mikrotik.com/t/for-isps-motivations-and-methods-for-implementing-fq-codel-and-cake/154153/1

I am a big fan of the flent.org testing tool (the tcp_nup, rrul, and rtt_fair tests primarily), and there a lot of usage of that and examples on those threads. I hope the mikrotik folk start using it also to drive loads and optimize cpu usage, among other additional things.

We still have not validated the diffserv and ecn support actually work, and I hope someone gets on that. You can also specify -6 or -4 to select ipv6 or ipv4 as the transport. I keep hoping for a 2 ports into one test in particular.

(well, my big hope is that more make fq_codel the default on all interfaces, per https://datatracker.ietf.org/doc/rfc7567/ as it’s the default nowadays for most other linux, openwrt, ios, and osx. It’s really lightweight when run at line rate and way better than a fifo)

It’s also not clear to me if mikrotik picked up the wifi work on any of their wifi gear: https://lwn.net/Articles/705884/

I don’t actually have any mikrotik hardware at this point, and plan to just haunt those two threads for now, although I’d like to find something that can drive multiple 10GigE ports eventually. My biggest feature request of mikrotik is that somehow they start making packets, drops, marks, and reschedules statistics available, and/or any of the more detailed stats cake provides.

@ Mafioso Please read through this and tell us where Torch is noted

THEN copy and paste it into excel or any document and do FIND/SEARCH for the word Torch, just in case you missed it doing in manually.


What’s new in 7.2rc2 (2022-Jan-28 11:00):

*) arm - fixed “shutdown” command on hAP ac^2;
*) bgp - fixed routing table and BGP configuration order in export;
*) bluetooth - disable scanning by default;
*) bridge - added fast-path and inter-VLAN routing FastTrack support when vlan-filtering is enabled;
*) bridge - fixed bridge filter and NAT rules on ARM64 and TILE devices;
*) capsman - improved stability when running background scan on CAP;
*) clock - properly notify all instances about time changes;
*) conntrack - properly detect helper status;
*) console - improved console responsiveness when processing received characters;
*) console - updated copyright notice;
*) crs3xx - fixed QSFP+ interface LEDs;
*) crs3xx - fixed optical SFP+ linking (introduced in v7.2rc1);
*) crs3xx - improved SFP+ interface linking after reboot for CRS312 device;
*) crs3xx - improved SFP+/QSFP+ link stability for CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (introduced in v7.2rc1);
*) defconf - made “192.168.188.1/24” the default LAN IP address for LTE CPE devices;
*) dhcpv4-server - remove dynamic leases when server configuration is removed;
*) dot1x - added “server-fail-vlan-id”, “guest-vlan-id” and “reauth-timeout” settings for dot1x server;
*) dot1x - added “src-address”, “src-mac-address” and “src-port” settings for dynamic switch rules;
*) dot1x - added NAS-Port-ID attribute for RADIUS Access-Request;
*) firewall - improved system stability when using address lists (introduced in v7.2rc1);
*) hotspot - fixed memory leak on every web page loading;
*) hotspot - fixed web page loading using HTTPS;
*) ike2 - ignore “INITIAL-CONTACT” payload on responder when “send-initial-contact” is disabled;
*) interface - fixed minor memory leak when interface or connected route is changed;
*) l3hw - added HW offloaded FastTrack support for inter-VLAN routing;
*) l3hw - fixed HW offloaded NAT;
*) leds - fixed user LED on RB750Gr3;
*) log - include message also in e-mail body;
*) lora - fixed “antenna-gain” parameter unit;
*) lte - added 3 APN profile support and APN name re-using on R11e-LTE6;
*) lte - added MAC address and IPv6 LL address persistence after reboot on EG12 and EG18 modems;
*) lte - added class based support for configless RNDIS LTE modems;
*) lte - do not show external antenna selector on devices that does not support it;
*) lte - fixed IPv6 address addition after startup on R11e-LTE6;
*) lte - fixed possible timeouts when sending SMS in LTE only mode on R11e-LTE;
*) lte - fixed support for Sierra MC7710;
*) lte - fixed support for Telit 960;
*) lte - improved stability on “+EGMR” response in MBIM mode;
*) lte - improved support for sending/receiving SMS in LTE only mode on R11e-LTE6;
*) lte - properly recognize MBIM modem in USB port as LTE on Chateau 5G;
*) ospf - added “ptmp-broadcast” interface type (compatible with RouterOSv6 PTMP type);
*) ospf - convert ospf “static” redistribute to “static,dhcp,modem,vpn” after update from RouterOS v6;
*) ospf - fixed MD5 authentication;
*) ospf - fixed NBMA hello’s not being sent if priority is set to 0;
*) ospf - fixed default type-3 LSA’s not being injected to stub area;
*) ospf - fixed incorrect LSA types when changing area types;
*) ospf - fixed neighbor election failure;
*) ospf - improved logging;
*) ospf - improved stability on OSPFv3 instance disabling;
*) ovpn - improved UDP session handling;
*) ppp - fixed AT+CPIN chat when SIM PIN is specified;
*) pptp - show insecure connection warning on dynamic interfaces;
*) qsfp - correctly display auto-negotiation status;
*) queue - improved system stability when processing traffic;
*) route - fixed “suppress-hw-offload” update;
*) route - fixed router’s LSA for PTP networks;
*) route - fixed routing configuration export on SMIPS devices;
*) route - improved routing table print speed;
*) route - show OSPF and RIP specific attributes in “/routing route” table;
*) route-filter - fixed “return” action;
*) route-filter - fixed complex matchers with “|| or and &&”;
*) route-filter - fixed incorrect invert-match configuration upgrade from RouterOS v6;
*) route-filter - fixed range conversion after update from RouterOS v6;
*) rpki - made RPKI verify non-strict, introduces new state “unverified”;
*) rpki - show expire timer;
*) smb - fixed SMB2.0 disk size reporting;
*) snmp - added SFP vendor name to optical table;
*) snmp - added support for “ipv6AddrPrefixTable” and “ipv6RouteNumber” OID’s;
*) snmp - allow two level nesting for vlan, bonding speed query;
*) system - fixed license loss on some RB1100Dx4 and RB4011 devices;
*) traffic-flow - do not handle NAT events when “nat-events” is disabled;
*) traffic-generator - fixed transmit speed for multiple asymmetric streams;
*) usb - fixed display of incorrect port count for USB serial ports;
*) vlan - fixed improper VLAN priority addition for routed packets;
*) vxlan - allow unsetting “group” and “interface” properties;
*) webfig - do not show side menu if WebFig is disabled by skin;
*) winbox - added “Disconnect Notify” checkbox to “Interface/OVPN Client” menu;
*) winbox - added “Freq. Usage” and “Scan” buttons for WifiWave2 interfaces;
*) winbox - added “Ignore Missing” selector to “System/Packages” menu;
*) winbox - added “Routing Table” parameter for IPv6 routes;
*) winbox - added “VPN” tab to “Routing/BGP” menu;
*) winbox - added “VRF” parameter to “IP/Services” menu;
*) winbox - added “comment” parameter to “User Manager/Users” menu;
*) winbox - added MLAG support;
*) winbox - added SHA256 and SHA512 “Auth” values for OVPN menu’s;
*) winbox - added ZeroTier support;
*) winbox - added explicit “Upload” and “Download” names for “Bucket Size” parameters under “Queues” menu;
*) winbox - allow setting “Interface” parameter for 100G LED types;
*) winbox - do not show “Antenna Scan” button on devices that do not support it;
*) winbox - fixed “action” field in “IP/Web Proxy/Access” menu;
*) winbox - fixed CHR License renewing process;
*) winbox - fixed content filtering in “Tools/Packet Sniffer/Packets” menu;
*) winbox - fixed entry order in “Tools/Packet Sniffer/Packets” menu;
*) winbox - made OSPF interface type names consistent between CLI and GUI;
*) winbox - properly save “IPv6/Settings” menu in session file;
*) winbox - renamed “MBPS” to “Mbps” value unit name in “Tools/Traffic Generator” menu;
*) winbox - show “H” flag for offloaded connections in “IP/Firewall/Connections” menu;
*) winbox - show “System/SwOS” menu only on boards that have dual boot;
*) winbox - sort “Address List” parameter values alphabetically in “IP/DHCP Server/Leases” menu;
*) wireless - improved wireless connection stability during background scans;
*) wireless - fixed interface initialization on Metal 2SHPn;
*) x86 - added support for Intel E810 NIC;
*) x86 - made “no” the default value for “disable-running-check” ethernet parameter;
*) x86 - properly distinguish multiple NICs that share the same PCI bus number;
*) zerotier - made MAC and MTU values read-only;

If you got this, far then clearly its not a case of : not having two clues and being lazy, - we can drop the lazy part. :stuck_out_tongue_winking_eye:

@anav
http://forum.mikrotik.com/t/torch-not-working-for-ipv6-traffic/155409/1
Ipv6 definitely should work with Torch just like IPv4 does under RoS v7.x …

Look I think it’s fair game to comment if the docs don’t indicate something is broken. See https://help.mikrotik.com/docs/display/ROS/Torch could just say “IPv6 not support in V7” (and removed when it is). So the fact this isn’t documented is a bug IMO.

Here’s another config question: Is it possible to make a mikrotik box into a “Bump on the wire”?

https://apenwarr.ca/log/20180808

Well, the problems I had with routing in 7.2rc1 are also not mentioned and they are fixed. Unless you mean that “router hangs when showing routes” is fixed by:

*) route - improved routing table print speed;

.

Probably, yes. When you need to ask, then not by you.

Even devs wrote numerous times they make alot of silent changes even on big fixes and dont always write it in changelog..

So he asking if by any chance something was fixed isnt so lazy/stupid…

how to remove annoying warning about PPTP ???

it is not my choice to use PPTP
so i don’t see any reason to throw annoying red errors in something i could not change
slk1.png

it is unusable this way
even if pptp is disabled, and only used when needed
the red color always suggest that there is error in interfaces … but, no, no error
at least, change color to blue, like warnings in LOG
mkt.jpg

Whenever I find someone defending Mikrotik by calling the user lazy, unaware tec it is always a forum guru.