Community discussions

 
msatter
Forum Veteran
Forum Veteran
Posts: 901
Joined: Tue Feb 18, 2014 12:56 am
Location: Netherlands / Nīderlande

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 12:48 pm

Remember that in MikroTik RouterOS, backup file is for restoring past configuration on the same device, not a safeguard against a lost or damaged device, for restoring on other devices, you should be using "export" config files.
Export config files is death for me. Tried everything what is mentioned in the wiki and forum but never succeeded to import a config file for years.

Restoring backup files on other devices with same or similar hardware goes fine and after restore also restore the MAC's of the new device.
RB760iGS (hEX S) with the SFP being cooled.
Running:
RouterOS 6.44Beta17 / Winbox 3.18 / MikroTik APP 0.69
Cooling a SFP module: viewtopic.php?f=3&t=132258&p=671105#p671105
 
strods
MikroTik Support
MikroTik Support
Posts: 1344
Joined: Wed Jul 16, 2014 7:22 am
Location: Riga, Latvia

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 1:49 pm

Without an example we can not comment why you are not being able to import .rsc file.

We recommend that you import file step-by-step if it is failing. Then you will see at which point configuration is not accepted and you can fix it or report a problem to support@mikrotik.com if there is one.

Export/import must work without any problems on the same model RouterBOARD if the same RouterOS version is installed on both devices and the same software packages are enabled.
 
und3ath
Frequent Visitor
Frequent Visitor
Posts: 54
Joined: Mon Mar 23, 2009 7:01 pm

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 4:56 pm

lhg 60 + 6.44 beta9 - interface wlan60-1 window in winbox, Status tab: only frequency is shown, anything else is empty. SNMP also stopped working for these values.

2nd problem - I see only 4 frequencies - there is no 66000 MHz option
 
User avatar
doneware
Trainer
Trainer
Posts: 435
Joined: Mon Oct 08, 2012 8:39 pm
Location: Hungary

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 5:57 pm

Why can't device-specific stuff like MAC-addresses simply be removed from the backup files?
i'd like to have something like '/sys backup load name="filename.backup" password="dragon" keep-mac-addresses=yes

or an ability to auto-run commands upon successful restore (like a cli command to restore original mac addresses)
#TR0359
 
User avatar
doneware
Trainer
Trainer
Posts: 435
Joined: Mon Oct 08, 2012 8:39 pm
Location: Hungary

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 6:05 pm

Without an example we can not comment why you are not being able to import .rsc file.
in case of big export files you can run into situations, when the next command is just not accepted. like you add an object as nameA, then try to set something on the same object by its name, and CLI responds as "not found". carefully tuned delay statements help with these issues.

but in general my biggest PITA is
- not having the users
- not having the ssh keys
- not having the certificates
in the export file. this renders the stuff unusable in many cases.

right now we have the user passwords as hashes, so i see no point why this "hash" could not be rendered as base64 or anything printable. the same goes for the keys and certificates. esp certificates are kind of hard to come by: the export file contains references at some services (like sstp client) to a certificate by its name, and the certificate is just not there. if you manually export the certs and re-import them, they lose their original names, so the references are broken.

with /system reset-config you can have the user accounts remain intact, so an 'import' of a previously exported rsc 'can' work. but i can't say the same for the certs and keys.
but in general, i'd like to have the same 'in-line' exports for users (along with their hashes) as well.
#TR0359
 
Sob
Forum Guru
Forum Guru
Posts: 3576
Joined: Mon Apr 20, 2009 9:11 pm

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 8:02 pm

I agree with @doneware, an export that exports everything would be dream come true. I don't even care if it can be imported at once.

Backup is just impractical binary mess for me. I don't break my configs in a way that I'd need to restore them. But I do need to know what was there, in case the router dies and I need to replace it. In most cases I won't have the same model available, at least initially, so restoring backup meant for same device is not exactly ideal.

Plus you can't see what's in backup, unless you restore it somewhere. I have set up automated exports and the output is saved in version control system, so I know what exactly changed and when. And it's perfect for me, but sadly incomplete. Luckily not every router has certificates and recreating users is bearable. But it would be better if export had everything.
 
amokkatmt
newbie
Posts: 30
Joined: Mon Oct 24, 2011 3:31 pm

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 10:03 pm

After updating to 6.44beta9 I can not get output of command execution over SSH, using putty's plink. What I mean:
plink.exe -v -ssh username@hostname -i .\mikrotik-priv.key.ppk -sshlog .\lkjlkj.log ":put 'hello';/quit"
What I got:
...........
Event Log: Opened main channel
Outgoing packet #0x9, type 98 / 0x62 (SSH2_MSG_CHANNEL_REQUEST)
  00000000  00 00 00 00 00 00 00 22 73 69 6d 70 6c 65 40 70  ......."simple@p
  00000010  75 74 74 79 2e 70 72 6f 6a 65 63 74 73 2e 74 61  utty.projects.ta
  00000020  72 74 61 72 75 73 2e 6f 72 67 00                 rtarus.org.
Outgoing packet #0xa, type 98 / 0x62 (SSH2_MSG_CHANNEL_REQUEST)
  00000000  00 00 00 00 00 00 00 04 65 78 65 63 01 00 00 00  ........exec....
  00000010  12 3a 70 75 74 20 27 68 65 6c 6c 6f 27 3b 2f 71  .:put 'hello';/q
  00000020  75 69 74                                         uit
Incoming packet #0x9, type 99 / 0x63 (SSH2_MSG_CHANNEL_SUCCESS)
  00000000  00 00 01 00                                      ....
Event Log: Started a shell/command
Incoming packet #0xa, type 98 / 0x62 (SSH2_MSG_CHANNEL_REQUEST)
  00000000  00 00 01 00 00 00 00 0b 65 78 69 74 2d 73 74 61  ........exit-sta
  00000010  74 75 73 00 00 00 00 00                          tus.....
Event Log: Server sent command exit status 0
Incoming packet #0xb, type 97 / 0x61 (SSH2_MSG_CHANNEL_CLOSE)
  00000000  00 00 01 00                                      ....
Outgoing packet #0xb, type 96 / 0x60 (SSH2_MSG_CHANNEL_EOF)
  00000000  00 00 00 00                                      ....
Outgoing packet #0xc, type 97 / 0x61 (SSH2_MSG_CHANNEL_CLOSE)
  00000000  00 00 00 00                                      ....
Event Log: Disconnected: All channels closed
But I expected command output. This was test command. What I run in my project is
:while (true) do={delay 300; :put "999 BEG";/ip firewall address-list print terse without-paging where list="china"; :put "999 END"}
Here I am exporting address-list "china" every 5 minutes via SSH for parsing etc. This command should run forever, thus keeping SSH connection forever too. But after updating from beta6 to beta9, ssh connection is closing immediately without giving me any output on plink's stdout.
Simple commands are executed actually, tried "/system ntp server set manycast=yes" and it worked.
 
raffav
Member Candidate
Member Candidate
Posts: 243
Joined: Wed Oct 24, 2012 4:40 am

Re: v6.44beta [testing] is released!

Tue Sep 18, 2018 10:11 pm

Without an example we can not comment why you are not being able to import .rsc file.

We recommend that you import file step-by-step if it is failing. Then you will see at which point configuration is not accepted and you can fix it or report a problem to support@mikrotik.com if there is one.

Export/import must work without any problems on the same model RouterBOARD if the same RouterOS version is installed on both devices and the same software packages are enabled.
Also can use that third tool that someone biuld that can read rsc file and remove unnecessary lines like mac address


Sent from my XT1580 using Tapatalk

 
Bobstonom
just joined
Posts: 7
Joined: Tue Sep 11, 2018 6:17 pm
Location: Tampa, Florida

Re: v6.44beta [testing] is released!

Wed Sep 19, 2018 9:50 am

"Because it is whole system backup."
Oh, that's why. Thanks for clearing it up.
 
pe1chl
Forum Guru
Forum Guru
Posts: 4811
Joined: Mon Jun 08, 2015 12:09 pm

Re: v6.44beta [testing] is released!

Wed Sep 19, 2018 10:12 am

*) chr - assign interface names based on underlying PCI device order on KVM;
Is this specificially for Linux KVM or is it also for other virtual environments?
I have an interface name issue under VMware ESXi 6.7 would that be fixed by this?
(I want the ether interfaces named in icreasing PCI bus number)
 
pe1chl
Forum Guru
Forum Guru
Posts: 4811
Joined: Mon Jun 08, 2015 12:09 pm

Re: v6.44beta [testing] is released!

Wed Sep 19, 2018 10:24 am

I have set up automated exports and the output is saved in version control system, so I know what exactly changed and when. And it's perfect for me, but sadly incomplete. Luckily not every router has certificates and recreating users is bearable. But it would be better if export had everything.
I am in the same boat, and for me the fact that certificates are not in /export is a showstopping reason not to use certificates, even when the router is putting "insecure configuration, suggest to use certificates" comments in some config items.
When it is really not wanted to put certificates in a normal export, there should be a certificate-only backup that you can restore on another device (even another type) without issue!
For example, we have 2 CCR1009-8G-1S-1S+ in the network. Should they fail, they are unobtanium so I should get something like CCR1009-7G-1C-1S+ instead, or maybe I would then choose a RB1100AHx4 or RB4011iGS+RM. It should then be possible to transfer the configuration, and while I understand that it is not so easy to make a backup file format that would simply restore on another type of router (although some other manufacturers sort of have that!) it should at least be possible to backup and restore those certificates, keys and users. The remainder of the config can then be transferred using a /export and some editing.

BTW, there are still issues in the /export. I tried the above yesterday to make a cold standby backup for a CCR1009-8G-1S-1S+ as a CHR under VMware ESXi and I encountered two /export issues (apart from the fact I was using 6.42.7 /export in a 6.43.1 CHR so the /ipsec peer config failed, but I understand that):

- /ipv6 dhcp-server is exported before /ipv6 pool but server refers to pool names
- /ip neighbor discovery-settings set discover-interface-list=!somelistname forgets to export the ! (not)
 
User avatar
Cha0s
Forum Veteran
Forum Veteran
Posts: 817
Joined: Tue Oct 11, 2005 4:53 pm

Re: v6.44beta [testing] is released!

Wed Sep 19, 2018 10:29 am

I have set up automated exports and the output is saved in version control system, so I know what exactly changed and when.
Can you give more info on your setup/workflow?
I am interested in implementing something similar.

Thanks.
 
mducharme
Trainer
Trainer
Posts: 619
Joined: Tue Jul 19, 2016 6:45 pm

Re: v6.44beta [testing] is released!

Wed Sep 19, 2018 8:05 pm

I have experienced occasional problems doing import of an rsc due to race conditions. If RSC is imported on boot, there needs to be a delay programmed in for the ethernet interfaces to initialize before the config begins to apply. If the RSC is imported at any other time (ex. booted router with "no default configuration"), I have seen it happen where some settings do not take effect the moment that the command is run, but instead are delayed a few seconds later. The import then fails partway through because it hits some other setting that depends on a previous one that hasn't applied yet, and again the solution is to add a delay of one or two seconds into the import rsc file to give enough time for the previous setting to activate before reaching the dependent setting. It would be really nice if this would happen automatically without needing to worry about this.
 
Sob
Forum Guru
Forum Guru
Posts: 3576
Joined: Mon Apr 20, 2009 9:11 pm

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 12:24 am

@Cha0s: What I currently use is a little old and messy (php + svn). Long-term plan is to write something nicer and share it here in the forum too, but it might take a while. But bare bones version can be:
for /F "tokens=*" %%A in (hosts.txt) do plink -ssh -i backup.ppk backup@%%A /export | grep "^[^#]" > %%A.rsc
git add *.rsc
git commit -m "automated backup"
File backup.ppk is PuTTY's private key and hosts.txt is text file with list of addresses or hostnames. Grep strips comments, to only record real changes. On router there's backup user (with ssh key):
/user group
add name=backup policy=ssh,read,sensitive,!local,!telnet,!ftp,!reboot,!write,!policy,!test,!winbox,!password,!web,!sniff,!api
/user
add group=backup name=backup
And that's it, just run it as often as needed, from scheduler or manually. There's a lot of room for improvements (logging, notifications on failure, ...), but even this is usable as quick'n'dirty solution. Or it could be done in reverse, with routers uploading their config to some central server and a script there could handle the rest. Now if only the export exported everything...
 
User avatar
Cha0s
Forum Veteran
Forum Veteran
Posts: 817
Joined: Tue Oct 11, 2005 4:53 pm

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 12:40 am

Thanks! :)
 
pe1chl
Forum Guru
Forum Guru
Posts: 4811
Joined: Mon Jun 08, 2015 12:09 pm

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 1:04 am

It can be a good idea to use "/export terse" as this tends to result in easier to identify changes e.g. when using gitweb or other colored-diff tools or when you want to grep your config collection for the occurrence of certain constructs (with meaningful output).
This was added in 6.40 and before that I used a simple perl script that converts a classic export to terse form.
 
jkarras
Member Candidate
Member Candidate
Posts: 224
Joined: Fri Sep 06, 2013 3:07 am
Location: Utah, USA

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 5:06 am

I have set up automated exports and the output is saved in version control system, so I know what exactly changed and when.
Can you give more info on your setup/workflow?
I am interested in implementing something similar.

Thanks.
RANCID works for this. There are runners for a lot of different NOS.

http://www.shrubbery.net/rancid/

Oxidized is a more modern replacement that also supports ROS.


https://github.com/ytti/oxidized/blob/m ... S-Types.md
 
server8
Member Candidate
Member Candidate
Posts: 275
Joined: Fri Apr 22, 2011 1:27 pm

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 1:29 pm

2nd problem - I see only 4 frequencies - there is no 66000 MHz option
Mikrotik 60 GHZ@66000 MHz ???
 
blingblouw
Member Candidate
Member Candidate
Posts: 241
Joined: Wed Aug 25, 2010 9:43 am

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 1:59 pm

2nd problem - I see only 4 frequencies - there is no 66000 MHz option
Mikrotik 60 GHZ@66000 MHz ???

CLI only. You will also need to add it to frequency-list of remote end.
 
server8
Member Candidate
Member Candidate
Posts: 275
Joined: Fri Apr 22, 2011 1:27 pm

Re: v6.44beta [testing] is released!

Thu Sep 20, 2018 5:27 pm

CLI only. You will also need to add it to frequency-list of remote end.
I miss it thank you for the info
 
Ivoshiee
Member
Member
Posts: 469
Joined: Sat May 06, 2006 4:11 pm

Re: v6.44beta [testing] is released!

Mon Sep 24, 2018 10:31 pm

The 6.44beta9 has no more information about wlan60 link status except "connected" and "link downs" count. Signal info and the rest of stuff is nowhere to be found.
 
User avatar
BartoszP
Forum Guru
Forum Guru
Posts: 1613
Joined: Mon Jun 16, 2014 1:13 pm
Location: Poland

Re: v6 44beta testing is released

Tue Sep 25, 2018 12:08 am

Id like to find out about helping with the Beta test on this...Ive used the big program for many years now, and have been on the Beta list for quite some time.

I just started using PE, as Ive changed employers, and my new job wont allow me to install anything on my computer there, but I can use USB U3 programs. Im already really liking this, and would be glad to assist with your testing

Thanks
-Chris
What are you talking about? What are USB U3 programs? Please stop posting such posts.
Real admins use real keyboards.
 
Sob
Forum Guru
Forum Guru
Posts: 3576
Joined: Mon Apr 20, 2009 9:11 pm

Re: v6.44beta [testing] is released!

Tue Sep 25, 2018 12:35 am

@BartoszP: It's probably someone preparing the ground for later, establish the presence and then add spammy link in signature or something. Has three posts so far and none of them makes any sense.
 
bigal488
just joined
Posts: 2
Joined: Mon Apr 02, 2012 3:39 pm

Re: v6.44beta [testing] is released!

Wed Sep 26, 2018 6:51 pm

After updating to 6.44beta9 I can not get output of command execution over SSH, using putty's plink. What I mean:
plink.exe -v -ssh username@hostname -i .\mikrotik-priv.key.ppk -sshlog .\lkjlkj.log ":put 'hello';/quit"

I'm seeing the same with beta9 - no output from commands run via ssh e.g.
ssh -i "mikrotik.key" admin@192.168.0.254 ":put \"hello\""

produces nothing...
 
tigro11
Frequent Visitor
Frequent Visitor
Posts: 51
Joined: Tue Feb 20, 2018 12:31 am

Re: v6.44beta [testing] is released!

Thu Sep 27, 2018 12:56 am

if I recover a backup, it gives me error 6.
the backup is NOT encrypted and not even the password.
 
nescafe2002
Member
Member
Posts: 393
Joined: Tue Aug 11, 2015 12:46 pm
Location: Netherlands

Re: v6.44beta [testing] is released!

Sun Sep 30, 2018 11:47 am

amokkatmt, bigal488, did you report the ssh output issue to support?
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 231
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.44beta [testing] is released!

Mon Oct 01, 2018 8:51 am

Thank you everyone, single line SSH command execution will be fixed in the next beta version.
 
bennyh
Frequent Visitor
Frequent Visitor
Posts: 69
Joined: Fri Mar 03, 2017 12:37 pm

Re: v6.44beta [testing] is released!

Tue Oct 02, 2018 12:10 pm

New beta out:
rb3011 - implemented multiple engine IPsec hardware acceleration support;
Cool :)
 
mikruser
Member
Member
Posts: 344
Joined: Wed Jan 16, 2013 6:28 pm

Re: v6.44beta [testing] is released!

Tue Oct 02, 2018 12:42 pm

what is "multiple engine"??
do not ask me why it is necessary.
 
nescafe2002
Member
Member
Posts: 393
Joined: Tue Aug 11, 2015 12:46 pm
Location: Netherlands

Re: v6.44beta [testing] is released!

Tue Oct 02, 2018 1:28 pm

Search for "ipsec" in this topic.

viewtopic.php?f=21&t=139057&p=686156#p686156
Currently the RB3011 IPsec performance is comparable with any of the IPQ4018 routers (like 450Gx4, hAP ac2), it actually shares the same driver, however there are 4 total crypto modules on RB3011 and as of now only 1 is enabled, meaning it has the potential to achieve even higher throughput. Anyway, we will continue to develop this driver, but in the mean time, 400Mbps over the 100Mbps which you were able to achieve with software crypto is a valuable gain in my opinion.
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 231
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.44beta [testing] is released!

Tue Oct 02, 2018 1:38 pm

Version 6.44beta14 has been released.

Before an upgrade:
1) Remember to make backup/export files before an upgrade and save them on another storage device;
2) Make sure the device will not lose power during upgrade process;
3) Device has enough free storage space for all RouterOS packages to be downloaded.

What's new in 6.44beta14 (2018-Oct-01 12:01):

MAJOR CHANGES IN v6.44:
----------------------
!) cloud - added command "/system backup cloud" for backup storing on cloud (CLI only);
!) upgrade - release channels renamed - "bugfix" to "long-term", "current" to "stable" and "release candidate" to "testing";
!) upgrade - "testing" release channel now can contain "beta" together with "release-candidate" versions;
----------------------

Changes in this release:

*) bridge - do not learn untagged frames when filtering only tagged packets;
*) bridge - fixed packet forwarding when changing MSTI VLAN mappings;
*) bridge - fixed possible memory leak when using MSTP;
*) bridge - improved packet processing when bridge port changes states;
*) bridge - properly forward unicast DHCP messages when using DHCP Snooping with hardware offloading;
*) cloud - improved DDNS service disabling;
*) dhcp - properly load DHCP configuration if options are configured;
*) dhcpv6-server - recreate DHCPv6 server binding if it is no longer within prefix pool when rebinding/renewing;
*) ethernet - fixed IPv6 packet forwarding on IPQ4018 devices;
*) ike2 - improved subsequent phase 2 initialization when no childs exist;
*) ipsec - added account log message when user is successfully authenticated;
*) ipsec - allow multiple peers to the same address with different local-address (introduced in v6.43);
*) ipsec - fixed stability issues after changing peer configuration (introduced in v6.43);
*) ipsec - improved invalid policy handling when a valid policy is uninstalled;
*) kidcontrol - added "reset-counters" command for "device" menu (CLI only);
*) kidcontrol - added "tur-fri", "tur-mon", "tur-sat", "tur-sun", "tur-thu", "tur-tue", "tur-wed" parameters (CLI only);
*) kidcontrol - dynamically discover devices from DNS activity;
*) kidcontrol - fixed validation checks for time intervals;
*) led - added "dark-mode" functionality for wsAP ac lite, RB951Ui-2nD, hAP and hAP ac lite devices;
*) lte - added additional ID support for Novatel USB730L modem;
*) lte - added "cell-monitor" command for R11e-LTE international modem (CLI only);
*) lte - added support for JioFi JMR1040 modem;
*) ntp - fixed possible NTP server stuck in "started" state;
*) rb3011 - implemented multiple engine IPsec hardware acceleration support;
*) romon - improved packet processing when MTU in path is lower than 1500;
*) snmp - fixed w60g station table;
*) snmp - report bridge ifSpeed as "0";
*) ssh - fixed single command execution (introduced in v6.44beta9);
*) traffic-flow - fixed post NAT port reporting;
*) w60g - added interface stats;
*) w60g - renamed "mcs" to "tx-mcs" and "phy-rate" to "tx-phy-rate";
*) wireless - improved stability for 802.11ac;

If you experience version related issues, then please send supout file from your router to support@mikrotik.com. File must be generated while router is not working as expected or after crash.

Note that beta and release-candidate versions are published strictly for testing purposes and should not be used on production routers.
 
User avatar
nz_monkey
Forum Guru
Forum Guru
Posts: 1767
Joined: Mon Jan 14, 2008 1:53 pm
Location: Straya
Contact:

Re: v6.44beta [testing] is released!

Tue Oct 02, 2018 4:33 pm


*) rb3011 - implemented multiple engine IPsec hardware acceleration support;

Thank you for finally getting the RB3011 IPSEC engine working, and for getting all crypto blocks operating. This breathes new life into this product for me.
http://thebrotherswisp.com/ | Mikrotik MTCNA, MTCRE, MTCINE | Fortinet FTCNA, FCNSP, FCT | Extreme Networks ENA
 
anuser
Member Candidate
Member Candidate
Posts: 258
Joined: Sat Nov 29, 2014 7:27 pm

Re: v6.44beta [testing] is released!

Tue Oct 02, 2018 11:05 pm

Version 6.44beta14 has been released.
*) wireless - improved stability for 802.11ac;
Hello, semester is starting, soon. So I´m asking myself what problems will our users will face without this patch? What stability problems exist? It would be great to have this in 6.43.3 aswell.
(Talking about wireless, could we please get a simple "reboot" button within capsman, so after a reboot a cap will connect to its master capsman controller(as it is saved on the cap itself)? I know wrong thread)
 
User avatar
honzam
Forum Guru
Forum Guru
Posts: 2129
Joined: Wed Feb 27, 2008 10:27 pm
Location: Czech Republic

Re: v6.44beta [testing] is released!

Wed Oct 03, 2018 8:49 pm


*) wireless - improved stability for 802.11ac;
Any description of improve? Thanks
LAN, FTTx, Wireless. ISP operator
 
server8
Member Candidate
Member Candidate
Posts: 275
Joined: Fri Apr 22, 2011 1:27 pm

Re: v6.44beta [testing] is released!

Thu Oct 04, 2018 10:34 am


*) wireless - improved stability for 802.11ac;
Any description of improve? Thanks
+1
 
mistry7
Forum Veteran
Forum Veteran
Posts: 853
Joined: Tue Oct 13, 2009 11:57 am
Location: Germany

Re: v6.44beta [testing] is released!

Thu Oct 04, 2018 11:53 am

Still no Support for QCA9984/9994 and QCA9888 hopefully we see support not only for ARM (RB4011)
It would be an option to use this Wave2 Modules on M11G (MMips)
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 231
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.44beta [testing] is released!

Fri Oct 05, 2018 2:51 pm

Version 6.44beta17 has been released.

Before an upgrade:
1) Remember to make backup/export files before an upgrade and save them on another storage device;
2) Make sure the device will not lose power during upgrade process;
3) Device has enough free storage space for all RouterOS packages to be downloaded.

What's new in 6.44beta17 (2018-Oct-04 09:42):

MAJOR CHANGES IN v6.44:
----------------------
!) cloud - added command "/system backup cloud" for backup storing on cloud (CLI only);
!) upgrade - release channels renamed - "bugfix" to "long-term", "current" to "stable" and "release candidate" to "testing";
!) upgrade - "testing" release channel now can contain "beta" together with "release-candidate" versions;
----------------------

Changes in this release:

*) bridge - fixed possible memory leak when VLAN filtering is used;
*) dhcpv4-server - use client MAC address for dual stack queue when "client-id" is not received;
*) ethernet - fixed IPv6 packet forwarding on IPQ4018 devices;
*) health - improved fan control stability on CRS328-24P-4S+RM;
*) led - fixed default LED configuration for SXT LTE kit devices;
*) led - fixed power LED turning on after reboot when "dark-mode" is used;
*) lte - added "firmware-upgrade" command for R11e-LTE international modems (CLI only);
*) wireless - improved signal strength at low TX power on LHG 5 ac, LHG 5 ac XL and LDF 5 ac ("/system routerboard upgrade" required);

If you experience version related issues, then please send supout file from your router to support@mikrotik.com. File must be generated while router is not working as expected or after crash.

Note that beta and release-candidate versions are published strictly for testing purposes and should not be used on production routers.
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 231
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.44beta [testing] is released!

Fri Oct 05, 2018 3:01 pm

A bug in v6.44beta17 prevents SFP+ interfaces from linking properly on CRS328-24P-4S+RM. We will resolve the issue in the next beta version. Please upgrade with caution.
 
antonsb
MikroTik Support
MikroTik Support
Posts: 141
Joined: Sun Jul 24, 2016 3:12 pm
Location: Riga, Latvia

Re: v6.44beta [testing] is released!

Fri Oct 05, 2018 4:05 pm


*) wireless - improved stability for 802.11ac;
Any description of improve? Thanks
This fix should provide better rate selection at higher rates and at higher load.
 
rogerkri
just joined
Posts: 3
Joined: Fri Mar 23, 2018 2:44 pm

Re: v6.44beta [testing] is released!

Fri Oct 05, 2018 5:12 pm

*) wireless - improved signal strength at low TX power on LHG 5 ac, LHG 5 ac XL and LDF 5 ac ("/system routerboard upgrade" required);
Will this be fixed for the RB922UAGS-5HPacD as well?
 
soomanyquestions
newbie
Posts: 31
Joined: Sat Aug 20, 2016 6:35 pm

Re: v6.44beta [testing] is released!

Sat Oct 06, 2018 1:38 am

Hi,

I'm getting the following on my devices after upgrading to beta17.
Image
This eventually leads to the routers management interfaces to be unresponsive. For example you can run /ip route print via ssh and it will just hang forever and wont output anything. Same with winbox if you open interfaces menu or ppp menu the lists are just empty. Also it seems that you can not connect to the wireless network of the device when this happens.
I do have a snmp server that periodically queries the routers. I have tested this on a mAp, hAP ac lite and a rb2011.
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 231
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.44beta [testing] is released!

Wed Oct 10, 2018 3:44 pm

Version 6.44beta20 has been released.

Before an upgrade:
1) Remember to make backup/export files before an upgrade and save them on another storage device;
2) Make sure the device will not lose power during upgrade process;
3) Device has enough free storage space for all RouterOS packages to be downloaded.

What's new in 6.44beta20 (2018-Oct-09 09:29):

MAJOR CHANGES IN v6.44:
----------------------
!) cloud - added command "/system backup cloud" for backup storing on cloud (CLI only);
!) upgrade - release channels renamed - "bugfix" to "long-term", "current" to "stable" and "release candidate" to "testing";
!) upgrade - "testing" release channel now can contain "beta" together with "release-candidate" versions;
----------------------

Changes in this release:

*) crs328 - fixed SFP+ interface linking on CRS328-24P-4S+RM (introduced in v6.44beta17);
*) crs328 - improved link status update on disabled SFP+ interface when using DAC;
*) crs3xx - properly read "eeprom" data after different module inserted in disabled interface;
*) dhcp - added "allow-dual-stack-queue" setting for IPv4/IPv6 DHCP servers to control dynamic lease/binding behaviour (CLI only);
*) dhcpv6-server - improved DHCPv6 server stability when using "print" command;
*) led - added "dark-mode" functionality for LHG and LDF series devices;
*) lte - added "firmware-upgrade" command for R11e-LTE international modems (CLI only);
*) lte - fixed connection issue when LTE modem was de-registered from network for more than 1 minute;
*) w60g - general stability and performance improvements;
*) w60g - improved stability for short distance links;

If you experience version related issues, then please send supout file from your router to support@mikrotik.com. File must be generated while router is not working as expected or after crash.

Note that beta and release-candidate versions are published strictly for testing purposes and should not be used on production routers.
 
User avatar
eworm
Member Candidate
Member Candidate
Posts: 158
Joined: Wed Oct 22, 2014 9:23 am
Location: Oberhausen, Germany
Contact:

Re: v6.44beta [testing] is released!

Wed Oct 10, 2018 4:13 pm

The fetch command behaves wired...
[admin@MikroTik] > :put ([ /tool fetch https://www.eworm.de/ip/index.shtml output=user as-value ]->"data")
91.16.17.160
[admin@MikroTik] > /file print where name="index.shtml"
 # NAME                     TYPE                    SIZE CREATION-TIME
 0 index.shtml              .shtml file                0 oct/10/2018 15:07:50
It does put empty files in storage where it should not. Fetching from urls ending with a slash is not possible at all, unless you give "dst-path=".
 
User avatar
TerminalAddict
just joined
Posts: 3
Joined: Wed May 25, 2016 6:46 am
Location: Hamilton, New Zealand
Contact:

Re: v6.44beta [testing] is released!

Thu Oct 11, 2018 2:51 am

@Cha0s: What I currently use is a little old and messy (php + svn). Long-term plan is to write something nicer and share it here in the forum too, but it might take a while. But bare bones version can be:
for /F "tokens=*" %%A in (hosts.txt) do plink -ssh -i backup.ppk backup@%%A /export | grep "^[^#]" > %%A.rsc
git add *.rsc
git commit -m "automated backup"
File backup.ppk is PuTTY's private key and hosts.txt is text file with list of addresses or hostnames. Grep strips comments, to only record real changes. On router there's backup user (with ssh key):
/user group
add name=backup policy=ssh,read,sensitive,!local,!telnet,!ftp,!reboot,!write,!policy,!test,!winbox,!password,!web,!sniff,!api
/user
add group=backup name=backup
And that's it, just run it as often as needed, from scheduler or manually. There's a lot of room for improvements (logging, notifications on failure, ...), but even this is usable as quick'n'dirty solution. Or it could be done in reverse, with routers uploading their config to some central server and a script there could handle the rest. Now if only the export exported everything...
I've just finished writing something to automate git commit backups
https://www.paulwillard.nz/snippet.php? ... ackup.html

I don't trim the comments as they might be there for a reason :)
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 231
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.44beta [testing] is released!

Thu Oct 11, 2018 2:20 pm

Thanks, eworm, both issues will be fixed in the next beta version.
 
soomanyquestions
newbie
Posts: 31
Joined: Sat Aug 20, 2016 6:35 pm

Re: v6.44beta [testing] is released!

Thu Oct 11, 2018 3:11 pm

Hi,

I'm getting the following on my devices after upgrading to beta17.
Image
This eventually leads to the routers management interfaces to be unresponsive. For example you can run /ip route print via ssh and it will just hang forever and wont output anything. Same with winbox if you open interfaces menu or ppp menu the lists are just empty. Also it seems that you can not connect to the wireless network of the device when this happens.
I do have a snmp server that periodically queries the routers. I have tested this on a mAp, hAP ac lite and a rb2011.
I updated to 6.44beta20 and this is still happening.
 
nescafe2002
Member
Member
Posts: 393
Joined: Tue Aug 11, 2015 12:46 pm
Location: Netherlands

Re: v6.44beta [testing] is released!

Thu Oct 11, 2018 3:22 pm

I updated to 6.44beta20 and this is still happening.

If you experience version related issues, then please send supout file from your router to support@mikrotik.com. File must be generated while router is not working as expected or after crash.
 
schrotn
just joined
Posts: 11
Joined: Sat Sep 13, 2014 8:23 am

Re: v6.44beta [testing] is released!

Fri Oct 12, 2018 6:32 am

I think I'm running into a config bug in 6.44 Beta 20

I've upgraded my testing router and saw the L2TP/IPSec unsafe config notice. So I was playing around with configs to fix that.

Once the L2TP peer is initially added, any attempt to edit the peer config errors out with "Couldn't change IPSec Peer <::/0> - certificate chain is supported only in IKEv2 (6)"
This seems to affect both manually and dynamically added peers.

Any truly valid peer config commits successfully when initially configured, but any attempt to change them results in the same error.

Also, since Mikrotik is warning against L2TP/IPSec PSK, is there any plans to expand the L2TP setup in PPP to be more secure?
 
User avatar
docmarius
Forum Guru
Forum Guru
Posts: 1192
Joined: Sat Nov 06, 2010 12:04 pm
Location: Timisoara, Romania
Contact:

Re: v6 44beta testing is released

Fri Oct 12, 2018 9:16 am

What are you talking about? What are USB U3 programs? Please stop posting such posts.
U3 is a portable execution medium developed some years ago, and pushed by Sandisk.
It allows the installation of a PE (Portable executable) on an USB stick which creates an automatic launch environment in Windows, so that those specific installed programs can be transferred completely, including their run environment to another machine, just by inserting the USB device in the other machine, without the need to install them on each machine.

https://en.wikipedia.org/wiki/U3_%28software%29

So Chris is really talking about a real thing, which actually works. The fact that not everybody has heard about it doesn't makes it idiotic by default.
Putty is one of the applications which has a PE variant available for download. So maybe you should refrain from characterizing posts without doing a basic google search first.

BTW, Winbox could also be such a candidate, if it would drop the saving of the login data in the users home folder in favor of a local folder access...
Torturing CCR1009-7G-1C-1S+, RB450G, RB750GL, RB951G-2HnD, RB960PGS, RB260GSP, OmniTIK 5HnD and NetMetal 922UAGS-5HPacD + R11e-5HnD in my home network.
 
User avatar
BartoszP
Forum Guru
Forum Guru
Posts: 1613
Joined: Mon Jun 16, 2014 1:13 pm
Location: Poland

Re: v6.44beta [testing] is released!

Fri Oct 12, 2018 10:26 am

Docmarius .. thank you for explanation but what USB U3 has common with ROS? What does he want to beta test with U3?
Real admins use real keyboards.

Who is online

Users browsing this forum: Spirch and 11 guests