Sure. No big issue...I feel your pain but hope MT guys will fix more serious things first.
Sure. No big issue...I feel your pain but hope MT guys will fix more serious things first.
Reinstall RouterOS via Netinstall.Any suggestions?
You must carefully read the instructions on how long to press the button.I've tried that but, as I said, holding down reset button does nothing except flashing SFP led a few times and then reset again.
You said you tried to reset your device, not using Netinstall. Anyways, when some device does not boot, your set of options is rather limited:I've tried that but, as I said, holding down reset button does nothing
I did. I've tried to hold it until SFP starts flashing fast (this is the only LED that shows something actullay is happening). Nothing.You must carefully read the instructions on how long to press the button.I've tried that but, as I said, holding down reset button does nothing except flashing SFP led a few times and then reset again.
Well, thank you very much for that but, since it is clear that this is not my fault, I am not going to throw 100 eur in the garbage. I just clicked "Upgrade" button and nothing else.[*] Go buy another device.[/list]
Well, I did actually read everything I could find before coming here. Reset button does not help in any way.Check this wiki page out to learn what backup bootloader is, and how reset button works (hint- it does different things depending on when it is pressed and how long it is being hold).
Meaning: you should try steps above before buying a replacement. Nothing else.Well, thank you very much for that but, since it is clear that this is not my fault, I am not going to throw 100 eur in the garbage. I just clicked "Upgrade" button and nothing else.[*] Go buy another device.[/list]
/system logging action
add memory-lines=100 name=ipsec target=memory
/system logging
add action=ipsec topics=ipsec,!debug
15:11:37 ipsec <IP A> notify: R_U_THERE_ACK
15:11:37 ipsec sendto Information notify.
15:11:37 ipsec receive Information.
15:11:37 ipsec <IP B> notify: R_U_THERE_ACK
15:11:38 ipsec receive Information.
15:11:38 ipsec <IP C> notify: R_U_THERE
15:11:38 ipsec sendto Information notify.
15:11:38 ipsec sendto Information notify.
15:11:38 ipsec receive Information.
15:11:38 ipsec <IP C> notify: R_U_THERE
15:11:38 ipsec sendto Information notify.
15:11:38 ipsec receive Information.
15:11:38 ipsec <IP C> notify: R_U_THERE_ACK
15:11:39 ipsec sendto Information notify.
15:11:39 ipsec receive Information.
15:11:39 ipsec <IP C> notify: R_U_THERE_ACK
15:11:57 ipsec receive Information.
15:11:57 ipsec <IP A> notify: R_U_THERE
15:11:57 ipsec sendto Information notify.
15:11:57 ipsec sendto Information notify.
15:11:57 ipsec sendto Information notify.
15:11:57 ipsec receive Information.
15:11:57 ipsec <IP A> notify: R_U_THERE_ACK
15:11:57 ipsec receive Information.
15:11:57 ipsec <IP B> notify: R_U_THERE_ACK
15:11:58 ipsec receive Information.
15:11:58 ipsec <IP C> notify: R_U_THERE
15:11:58 ipsec sendto Information notify.
15:11:58 ipsec receive Information.
15:11:58 ipsec <IP C> notify: R_U_THERE
15:11:58 ipsec sendto Information notify.
15:11:58 ipsec sendto Information notify.
15:11:58 ipsec receive Information.
15:11:58 ipsec <IP C> notify: R_U_THERE_ACK
15:11:59 ipsec sendto Information notify.
15:11:59 ipsec receive Information.
15:11:59 ipsec <IP C> notify: R_U_THERE_ACK
15:12:17 ipsec receive Information.
15:12:17 ipsec <IP A> notify: R_U_THERE
15:12:17 ipsec sendto Information notify.
15:12:17 ipsec sendto Information notify.
15:12:17 ipsec sendto Information notify.
15:12:17 ipsec receive Information.
15:12:17 ipsec <IP B> notify: R_U_THERE_ACK
15:12:17 ipsec receive Information.
15:12:17 ipsec <IP A> notify: R_U_THERE_ACK
15:12:18 ipsec receive Information.
15:12:18 ipsec <IP C> notify: R_U_THERE
15:12:18 ipsec sendto Information notify.
15:12:18 ipsec sendto Information notify.
15:12:18 ipsec receive Information.
15:12:18 ipsec <IP C> notify: R_U_THERE
15:12:18 ipsec sendto Information notify.
15:12:18 ipsec receive Information.
15:12:18 ipsec <IP C> notify: R_U_THERE_ACK
15:12:19 ipsec sendto Information notify.
15:12:19 ipsec receive Information.
15:12:19 ipsec <IP C> notify: R_U_THERE_ACK
15:12:37 ipsec receive Information.
15:12:37 ipsec <IP A> notify: R_U_THERE
15:12:37 ipsec sendto Information notify.
15:12:37 ipsec sendto Information notify.
15:12:37 ipsec sendto Information notify.
15:12:37 ipsec receive Information.
15:12:37 ipsec <IP B> notify: R_U_THERE_ACK
15:12:37 ipsec receive Information.
15:12:37 ipsec <IP A> notify: R_U_THERE_ACK
15:12:38 ipsec receive Information.
15:12:38 ipsec <IP C> notify: R_U_THERE
15:12:38 ipsec sendto Information notify.
15:12:38 ipsec sendto Information notify.
15:12:38 ipsec receive Information.
15:12:38 ipsec <IP C> notify: R_U_THERE
15:12:38 ipsec sendto Information notify.
15:12:38 ipsec receive Information.
15:12:38 ipsec <IP C> notify: R_U_THERE_ACK
15:12:39 ipsec sendto Information notify.
15:12:39 ipsec receive Information.
15:12:39 ipsec <IP C> notify: R_U_THERE_ACK
15:12:57 ipsec receive Information.
15:12:57 ipsec <IP A> notify: R_U_THERE
15:12:57 ipsec sendto Information notify.
15:12:57 ipsec sendto Information notify.
15:12:57 ipsec sendto Information notify.
15:12:57 ipsec receive Information.
15:12:57 ipsec <IP B> notify: R_U_THERE_ACK
15:12:57 ipsec receive Information.
15:12:57 ipsec <IP A> notify: R_U_THERE_ACK
15:12:58 ipsec receive Information.
15:12:58 ipsec <IP C> notify: R_U_THERE
15:12:58 ipsec sendto Information notify.
15:12:58 ipsec sendto Information notify.
15:12:58 ipsec receive Information.
15:12:58 ipsec <IP C> notify: R_U_THERE
15:12:58 ipsec sendto Information notify.
15:12:58 ipsec receive Information.
15:12:58 ipsec <IP C> notify: R_U_THERE_ACK
15:12:59 ipsec sendto Information notify.
15:12:59 ipsec receive Information.
15:12:59 ipsec <IP C> notify: R_U_THERE_ACK
Well I can understand that he wants to have ipsec logs in a separate logging action. I also sometimes make separateNot really sure where is the problem, if you do not want to see ispec logs, then remove/disable this entry
add action=ipsec topics=ipsec,!debug
That would leave the logging action unused.Not really sure where is the problem, if you do not want to see ispec logs, then remove/disable this entry
add action=ipsec topics=ipsec,!debug
I would be surprised if they have a topic that isn't listed in the log, but sure I will try it out tomorrow.Maybe they are in the "notice" level? Try adding "!notice".
14:59:20 ipsec sendto Information notify.
14:59:20 ipsec receive Information.
14:59:20 ipsec <IP A> notify: R_U_THERE_ACK
14:59:39 ipsec receive Information.
14:59:39 ipsec <IP A> notify: R_U_THERE
14:59:39 ipsec sendto Information notify.
14:59:40 ipsec sendto Information notify.
14:59:40 ipsec receive Information.
14:59:40 ipsec <IP A> notify: R_U_THERE_ACK
14:59:59 ipsec receive Information.
14:59:59 ipsec <IP A> notify: R_U_THERE
14:59:59 ipsec sendto Information notify.
15:00:00 ipsec sendto Information notify.
15:00:00 ipsec receive Information.
15:00:00 ipsec <IP A> notify: R_U_THERE_ACK
15:00:20 ipsec sendto Information notify.
15:00:21 ipsec <IP A> DPD: remote (ISAKMP-SA <IP B>[500]<=><IP A>[500] spi=4ab151a42b54a0c4:9a01fa76c1e10987) seems to be dead.
15:00:21 ipsec purged IPsec-SA spi=0x9805042
15:00:21 ipsec purged IPsec-SA spi=0xd7a4b4
15:00:21 ipsec purged IPsec-SA spi=0xe9fbe69
15:00:21 ipsec purged IPsec-SA spi=0x73063ec
15:00:21 ipsec purged ISAKMP-SA <IP B>[500]<=><IP A>[500] spi=4ab151a42b54a0c4:9a01fa76c1e10987.
15:00:27 ipsec sent phase1 packet <IP B>[500]<=><IP A>[500] b3f71d77b6b5680e:0000000000000000
15:00:27 ipsec received Vendor ID: CISCO-UNITY
15:00:27 ipsec received Vendor ID: DPD
15:00:28 ipsec sent phase1 packet <IP B>[500]<=><IP A>[500] b3f71d77b6b5680e:0ee9cf89d80c8924
15:00:28 ipsec sent phase1 packet <IP B>[500]<=><IP A>[500] b3f71d77b6b5680e:0ee9cf89d80c8924
15:00:28 ipsec ph2 possible after ph1 creation
15:00:28 ipsec initiate new phase 2 negotiation: <IP B>[500]<=><IP A>[500]
15:00:28 ipsec sent phase2 packet <IP B>[500]<=><IP A>[500] b3f71d77b6b5680e:0ee9cf89d80c8924:bdb16d2f
15:00:28 ipsec IPsec-SA established: ESP/Tunnel <IP A>[500]-><IP B>[500] spi=0x4a17936
15:00:28 ipsec IPsec-SA established: ESP/Tunnel <IP B>[500]-><IP A>[500] spi=0x8d8c73c
15:00:28 ipsec ph2 possible after ph1 creation
15:00:28 ipsec initiate new phase 2 negotiation: <IP B>[500]<=><IP A>[500]
15:00:28 ipsec sent phase2 packet <IP B>[500]<=><IP A>[500] b3f71d77b6b5680e:0ee9cf89d80c8924:8a4f2dc1
15:00:28 ipsec IPsec-SA established: ESP/Tunnel <IP A>[500]-><IP B>[500] spi=0xe3f85b5
15:00:28 ipsec IPsec-SA established: ESP/Tunnel <IP B>[500]-><IP A>[500] spi=0x975fad7
15:00:48 ipsec receive Information.
15:00:48 ipsec <IP A> notify: R_U_THERE
15:00:48 ipsec sendto Information notify.
15:00:48 ipsec sendto Information notify.
15:00:48 ipsec receive Information.
15:00:48 ipsec <IP A> notify: R_U_THERE_ACK
15:01:08 ipsec sendto Information notify.
15:01:08 ipsec receive Information.
15:01:08 ipsec <IP A> notify: R_U_THERE
15:01:08 ipsec sendto Information notify.
15:01:08 ipsec receive Information.
15:01:08 ipsec <IP A> notify: R_U_THERE_ACK
That's awesome to read. Thank you very much, 'tik! Looking forward to v6.40 coming out of RC!Problem already solved in v6.40rc now DPD logs have ipsec,debug topics.
Ah awesome, thank you. I guess I haven't tried the newest version of the release candidates.Problem already solved in v6.40rc now DPD logs have ipsec,debug topics.
Good link, thank you, but the news is not that nice, if the routing behavior changed between bugfix and current branches. Will wait for comments!The way load balancing was configured in 6.37 doesn't work in 6.39.2.
Using https://mum.mikrotik.com/presentations/US12/steve.pdf leads to the same issue.