v7.2rc5 is released!

RouterOS version 7.2rc5 has been released “v7 testing” channel!

Before an upgrade:

  1. Remember to make backup/export files before an upgrade and save them on another storage device;
  2. Make sure the device will not lose power during upgrade process;
  3. Device has enough free storage space for all RouterOS packages to be downloaded.

What’s new in 7.2rc5 (2022-Mar-23 12:04):

*) api - accept “Content-Type” with specified charset;
*) arm - fixed “auto” CPU frequency setting;
*) arm64 - improved Watchdog initiated reboot reason reporting;
*) backup - fixed cloud backup’s creation timezone;
*) bgp - added BGP advertisements display (requires output.keep-sent-attributes to be set);
*) bgp - fixed link-local iBGP address selection;
*) bgp - fixed network advertisement from address-lists after reboot;
*) bridge - fixed firewall “ingress-priority” matcher and “new-priority=from-ingress” action settings from VLAN tagged frames;
*) ccr2004 - improved system stability on CCR2004-12S+2XS;
*) crs1xx/2xx - fixed static switch host addresses after link down;
*) crs1xx/2xx - ignore static bridge host addresses (switch unicast-fdb should be used instead);
*) dhcpv6 - added VRF support;
*) dude - fixed The Dude client compatibility with RouterOS v7;
*) firewall - improved available port lookup for source NAT when free port range is exhausted;
*) ipsec - fixed “identities” menu emptying after RouterOS upgrade/reboot;
*) ipv6 - do not add duplicate dynamic prefix when static already exists;
*) ipv6 - fixed “retransmissit-interval” unit value;
*) ipv6 - fixed VLAN tagged PPPoE packet receiving on RB5009;
*) l2tp - fixed CHAP challenge packet processing over IPsec;
*) l3hw - improved routing table offloading for CRS305, CRS326-24G-2S+, CRS328, netPower, netFiber devices;
*) led - fixed LED behavior on Audience;
*) led - reduced LTE signal LED range to -70;
*) log - added warning message when connection tracking table is full;
*) lte - add IPv6 address on interface as well;
*) lte - added support for Uplink CA reporting;
*) lte - changed “CS/PS” registration type from “both” to “any” on R11e-LTE un R11e-LTE6;
*) lte - do not loose “band” configuration after reboot on Chateau 5G;
*) lte - fixed AT command response handling on R11e-LTE;
*) lte - fixed MBIM modem reset on AT timeout;
*) lte - fixed link flapping when loosing cellular signal on R11e-LTE un R11e-LTE6;
*) ntp - improved service stability when none of the NTP servers are reachable for a while;
*) ospf - general stability improvements;
*) ospf - improved DB retransmit logging;
*) ospf - send notifies for neighbors;
*) ovpn - improved memory allocation on Tile in “ethernet” mode;
*) ovpn - improved system stability in high load scenarios;
*) pimsm - fixed menu prints;
*) pimsm - general stability improvements;
*) queue - fixed queued IPv6 traffic considered as “invalid” by Firewall;
*) rb4011 - fixed jumbo frame processing on SFP+ port when using 1G module;
*) rip - added logging;
*) rip - fixed route metrics;
*) rip - fixed route redistribution;
*) rip - use nexthop with interface;
*) route - fixed “table” menu emptying after RouterOS upgrade;
*) route - fixed BGP atomic aggregate value;
*) route - fixed ECMP route removal;
*) route - general stability improvements;
*) routerboard - fixed “ether2” interface presence on some RBwAPGR devices;
*) routerboard - fixed WPS button functionality on Audience;
*) routing - added PCAP viewer tool for BGP advertisements debugging purposes;
) routing-filter - fixed "bgp--communities-empty" matcher;
*) sfp - improved SFP module detection on CRS106 and CRS112;
*) smips - improved RAM allocation;
*) switch - added “rx-overflow” counter for 88E6393X (RB5009) and 88E6191X (CCR2004-16G-2S+) switch chips;
*) switch - improved packet forwarding with enabled “cpu-flow-control” setting between different rate interfaces for 88E6393X (RB5009) and 88E6191X (CCR2004-16G-2S+) switch chips;
*) tr069-client - added support for 5G band configuration;
*) tr069-client - added support for wireless “skip-DFS” configuration;
*) winbox - added missing “3GGP RAW” parameter under “Interface/Wireless/Interworking Profile” menu;
*) winbox - added missing “accounting”, “interim-update” and “radius-password” parameters under “IP/DHCP Server” menu;
*) winbox - allow adding more than 100 tagged/untagged interfaces under “Bridge/VLAN” menu;
*) winbox - allow configuring “VTEP” under “Interface/VXLAN” menu;
*) winbox - fixed “00:00:00” time printing;
*) winbox - fixed switch related settings for MT7621 switch chip (hEX, hEX S, RBM33G, RBM11G, LtAP);
*) winbox - moved IPv4 and IPv6 “Rules” menus under “Routing” menu;
*) winbox - properly show “v” flag instead of “y” under “IP/Route” menu;
*) winbox - properly update server list under “System/NTP Client/Servers” menu;
*) winbox - show “System/Health/Settings” only on boards that have configurable values;
*) www - fixed “tls-version” for SSL;
*) x86 - allow to select disk for install image;
*) x86 - fixed NVME partition path;
*) zerotier - fixed IPv6 support;

To upgrade, click “Check for updates” at /system package in your RouterOS configuration interface, or head to our download page: http://www.mikrotik.com/download

If you experience version related issues, then please send supout file from your router to support@mikrotik.com. File must be generated while router is not working as suspected or after some problem has appeared on device

Please keep this forum topic strictly related to this particular RouterOS release.

Thank you very much!

Thats a big changelog. THX for your hard work.

bgp - added BGP advertisements display (requires output.keep-sent-attributes to be set);
winbox - allow configuring “VTEP” under “Interface/VXLAN” menu;
ipv6 - fixed VLAN tagged PPPoE packet receiving on RB5009;
queue - fixed queued IPv6 traffic considered as “invalid” by Firewall;

thanks a ton finally

Yassssss! :slight_smile:


What's new in 7.2rc5 (2022-Mar-23 12:04):

*) bgp - added BGP advertisements display (requires output.keep-sent-attributes to be set);

Update on RB5009 from RC4 to RC5 (ROS and RouterBoard FW) without Issues.
I´ll now test the IPv6 Queues…keep your fingers crossed :wink:

I was about to ask why the container package is missing but then I noticed the changelog was updated.
Screen Shot 2022-03-23 at 11.12.44.png

@emils is a fix for SUP-74962 included in this release?

patrick7, if nobody has told you in this ticket, that fix was made, it means, it is not included

@normis Thanks. That means, someone from MikroTik will proactively inform me as soon as the bug has been fixed?

yes, we will let you know

A quick check looks promising, no errors found as in the other ROS7.X releases :slight_smile:
Btw: updates on CRS326-24S+2Q+, CRS328-24P-4S+ and CRS326-24G-2S+ went smooth without problems (ROS and FW)
Until now: Good job MT :smiley:

Do you also update the MT Apps in RC releases ( like missing allowed IP addresses in peer settings )?
*) ios app - text

RouterOS released have nothing to do with smartphone apps.
If you have a bug with smartphone app, email a bug report with pictures. Thanks.

Had a bit of a scare because Winbox closed directly on connecting. But soon it became clear that I was still using version 3.32, with version 3.35 it worked perfectly.

rb4011 - fixed jumbo frame processing on SFP+ port when using 1G module is the reason that I that soon updated from 7.1.5 to 7.2RC5 and the PPPoE is now showing a nice 1500 MTU instead of 1492 before.

It was a long wait but certainly worth it.

Many many data fields are not populated with the MT App under IOS on my iPhone … far too many to take pics … I do not think that MikroTik look at this frequently.

*) switch - improved packet forwarding with enabled “cpu-flow-control” setting between different rate interfaces for 88E6393X (RB5009) and 88E6191X (CCR2004-16G-2S+) switch chips;

Is it anticipated that this release will resolve the slower than expected transfer rate issues with the RB5009 2.5G interface forwarding traffic when 2.5G is being advertised on the interface?

I have noticed missing information in connections in Winbox regarding UDP/4500 (VPN tunnels)

I have several IKEv2 connections to an VPN provider and the tunnels are normally visible as UDP/4500. Now the displayed number of tunnels come and go like they are discontecting.

Then I also noticed if data is going trough the tunnels that traffic is not always shown shown. Does any one else also the same observation using 7.2RC5?

Update: I went back to 7.1.5 and there it also occurs. Tried it with Winbox 3.35 and, also with 3.32 which I used before.

Update 2: after running 7.1.5 for a while I still had no-connects to websites or time-out. So I went back to 7.1.1 which works fine for me. Next week I will upgrade first back to 7.1.5 and if that runs fine I will try again 7.2RC5.

Traffic is also not shown in connection tracking if is an IKEv2 tunnel but on the WireGuard traffic is show. This might be normal in v7 that traffic is not for IKEv2. On 7.1.1 tunnels also disappear and reappear.

openvpn server udp, windows client version 2.5.6
this is normal?
Screenshot 2022-03-23 132802.png

There’s still a bug in the IPv6 firewall forward chain:
If an interface belongs to a vrf and you specify the same interface as in-interface, packets are not matched against the rule. In my case the packet matched the deny-all rule at the end and devices couldn’t connect. in-interface parameter works if the interface is not part of a vrf. IPv4 firewall rule works correctly with in-interface set.


/ip vrf
add interfaces=0077.GUEST name=VRF-GUEST



#works
/ipv6 firewall filter
add action=accept chain=forward out-interface=WG.MULLVAD.V6 src-address=fc00:0:0:77::/64



#doesn't work
/ipv6 firewall filter
add action=accept chain=forward in-interface=0077.GUEST out-interface=WG.MULLVAD.V6 src-address=fc00:0:0:77::/64