Community discussions

 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 282
Joined: Thu Dec 11, 2014 8:53 am

v6.43 [current] is released!

Mon Sep 10, 2018 9:52 am

RouterOS version 6.43 has been released in public "current" channel!

Before an upgrade:
1) Remember to make backup/export files before an upgrade and save them on another storage device;
2) Make sure the device will not lose power during upgrade process;
3) Device has enough free storage space for all RouterOS packages to be downloaded.

What's new in 6.43 (2018-Sep-06 12:44):

MAJOR CHANGES IN v6.43:
----------------------
!) api - changed authentication process (https://wiki.mikrotik.com/wiki/Manual:API#Initial_login);
!) backup - do not encrypt backup file unless password is provided;
!) btest - requires at least v6.43 Bandwidth Test client when connecting to v6.43 or later version server except when authentication is not required;
!) cloud - added IPv6 support;
!) cloud - added support for licensed CHR instances (including trial);
!) cloud - reworked "/ip cloud ddns-enabled" implementation (suggested to disable service and re-enable after installation process);
!) radius - use MS-CHAPv2 for "login" service authentication;
!) romon - require at least v6.43 RoMON agent when connecting to v6.43 or later RoMON client device;
!) webfig - improved authentication process;
!) winbox - improved authentication process excluding man-in-the-middle possibility;
!) winbox - minimal required version is v3.15;
----------------------

Changes in this release:

*) backup - added support for new backup file encryption (AES128-CTR) with signatures (SHA256);
*) backup - generate proper file name when devices identity is longer than 32 symbols;
*) bridge - add dynamic CAP interface to tagged ports if "vlan-mode=use-tag" is enabled;
*) bridge - added an option to manually specify ports that have a multicast router (CLI only);
*) bridge - added a warning when untrusted port receives a DHCP Server message when DCHP Snooping is enabled;
*) bridge - added ingress filtering options to bridge interface;
*) bridge - added initial Q-in-Q support;
*) bridge - added more options to fine-tune IGMP Snooping enabled bridges (CLI only);
*) bridge - added per-port based "tag-stacking" feature;
*) bridge - added support for BPDU Guard;
*) bridge - added support for DHCP Option 82;
*) bridge - added support for DHCP Snooping;
*) bridge - added support for IGMP Snooping fast-leave feature (CLI only);
*) bridge - fixed dynamic VLAN table entries when using ingress filtering;
*) bridge - fixed "ingress-filtering", "frame-types" and "tag-stacking" value storing;
*) bridge - forward LACPDUs when "protocol-mode=none";
*) bridge - ignore tagged BPDUs when bridge VLAN filtering is used;
*) bridge - improved packet handling;
*) bridge - improved packet processing when bridge port changes states;
*) bridge - improved performance when bridge VLAN filtering is used without hardware offloading;
*) bridge - renamed option "vlan-protocol" to "ether-type";
*) capsman - added ability to use chain 3 for "HT TX chains" and "HT RX chains" selections (CLI only);
*) capsman - allow to change "radio-name" (CLI only);
*) capsman - increase timeout for the CAP to CAPsMAN communication;
*) certificate - added "expires-after" parameter;
*) certificate - do not allow to perform "undo" on certificate changes;
*) certificate - fixed RA "server-url" setting;
*) check-installation - improved system integrity checking;
*) chr - added checksum offload support for Hyper-V installations;
*) chr - added large send offload support for Hyper-V installations;
*) chr - added multiqueue support on Xen installations;
*) chr - added support for multiqueue feature on "virtio-net";
*) chr - added virtual Receive Side Scaling support for Hyper-V installations (might require more RAM assigned than in previous versions);
*) chr - by default enable link state tracking for virtual drivers with "/interface ethernet disable-running-check=no";
*) chr - do not show IRQ entries from removed devices;
*) chr - fixed interface name assign process when running CHR on Hyper-V;
*) chr - fixed interface name order when "virtio-net is not being used on KVM installations;
*) chr - fixed MTU changing process when running CHR on Hyper-V;
*) chr - fixed NIC hotplug for "virtio-net";
*) chr - improved balooning process;
*) chr - improved boot time for Hyper-V installations;
*) chr - provide part of network interface GUID at the beginning of "bindstr2" value when running CHR on Hyper-V;
*) chr - reduced RAM memory required per interface;
*) cloud - added simultaneous IPv4/IPv6 support;
*) cloud - close local UDP port if no activity;
*) console - added "dont-require-permissions" parameter for scripts;
*) console - added error log message when netwatch tries to execute script with insufficient permissions;
*) console - added error log message when scheduler tries to execute script with insufficient permissions;
*) console - do not show spare parameters on ping command;
*) console - made "once" parameter mandatory when using "as-value" on "monitor" commands;
*) console - removed automatic swapping of "from=" and "to=" in "for" loops;
*) crs317 - fixed Ethernet inteface stuck on 100 Mbps speed;
*) crs326/crs328 - fixed packet forwarding when port changes states with IGMP Snooping enabled;
*) crs328 - fixed transmit on sfp-sfpplus1 and sfp-sfpplus2 interfaces;
*) crs3xx - added hardware support for DHCP Snooping and Option 82;
*) crs3xx - added Q-in-Q hardware offloading support;
*) crs3xx - do not report SFP interface as running when interface on opposite side is disabled;
*) crs3xx - fixed ACL rate rules (introduced in v6.41rc27);
*) crs3xx - fixed flow control;
*) crs3xx - fixed SwOS config import;
*) defconf - fixed default configuration for RBSXTsq5nD;
*) defconf - fixed missing bridge ports after configuration reset;
*) dhcp - added dynamic IPv4/IPv6 "dual-stack" simple queue support, based on client's MAC address;
*) dhcp - reduced resource usage of DHCP services;
*) dhcpv4-client - fixed DHCP client that was stuck on invalid state;
*) dhcpv4-client - fixed double ACK packet handling;
*) dhcpv4-server - added "allow-dual-stack-queue" implementation (CLI only);
*) dhcpv4-server - do not allow override lease "always-broadcast" value based on offer type;
*) dhcpv4-server - improved performance when "rate-limit" and/or "address-list" setting is present;
*) dhcpv6-client - added missing "Server identifier" parameter in release message;
*) dhcpv6-client - fixed "add-default-route" parameter;
*) dhcpv6-client - fixed option handling;
*) dhcpv6-client - improved dynamic IPv6 pool addition process;
*) dhcpv6-server - added additional RADIUS parameters for Prefix delegation, "rate-limit" and "life-time";
*) dhcpv6-server - added "allow-dual-stack-queue" implementation (CLI only);
*) dhcpv6-server - added initial dynamic simple queue support;
*) dhcpv6-server - do not allow to run DHCPv6 server on slave interface;
*) dhcpv6-server - fixed dynamic simple queue creation for RADIUS bindings;
*) dns - fixed DNS cache service becoming unresponsive when active Hotspot server is present on the router (introduced in 6.42);
*) dude - fixed client auto upgrade (broken since 6.43rc17);
*) ethernet - do not show "combo-state" field if interface is not SFP or copper;
*) ethernet - properly handle Ethernet interface default configuration;
*) export - do not show w60g password on "hide-sensitive" type of export;
*) fetch - added "as-value" output format;
*) fetch - fixed address and DNS verification in certificates;
*) filesystem - fixed NAND memory going into read-only mode (requires "factory-firmware" >= 3.41.1 and "current-firmware" >= 6.43);
*) filesystem - improved software crash handling on devices with FLASH type memory;
*) health - added missing parameters from export;
*) health - fixed voltage measurements for RB493G devices;
*) health - improved speed of health measurement readings;
*) hotspot - allow to properly configure Hotspot directory on external disk for devices that have flash type storage;
*) hotspot - fixed RADIUS CoA & PoD by allowing to accept "NAS-Port-Id";
*) ike1 - added unsafe configuration warning for main mode with pre-shared-key authentication;
*) ike1 - purge both SAs when timer expires;
*) ike1 - zero out reserved bytes in NAT-OA payload;
*) ike2 - fixed initiator first policy selection;
*) ike2 - fixed rekeyed child deletion during another exchange;
*) ike2 - improved basic exchange logging readability;
*) ike2 - use "/32" netmask by default on initiator if not provided by responder;
*) interface - improved interface "last-link-down-time" and "last-link-up-time" values;
*) interface - improved reliability on dynamic interface handling;
*) ippool - improved used address error message;
*) ipsec - added "responder" parameter for "mode-config" to allow multiple initiator configurations;
*) ipsec - added "src-address-list" parameter for "mode-config" that generates dynamic "src-nat" rule;
*) ipsec - added warning messages for incorrect peer configuration;
*) ipsec - do not allow removal of "proposal" and "mode-config" entries that are in use;
*) ipsec - fixed AES-192-CTR fallback to software AEAD on ARM devices with wireless and RB3011UiAS-RM;
*) ipsec - fixed AES-CTR and AES-GCM key size proposing as initiator;
*) ipsec - fixed "static-dns" value storing;
*) ipsec - improved invalid policy handling when a valid policy is uninstalled;
*) ipsec - improved reliability on generated policy addition when IKEv1 or IKEv2 used;
*) ipsec - improved stability when using IPsec with disabled route cache;
*) ipsec - install all DNS server addresses provided by "mode-config" server;
*) ipsec - separate phase1 proposal configuration from peer menu;
*) ipsec - separate phase1 proposal configuration from peer menu;
*) ipsec - use monotonic timer for SA lifetime check;
*) kidcontrol - allow to edit discovered devices;
*) l2tp - allow setting "max-mtu" and "max-mru" bigger than 1500;
*) led - improved w60g alignment trigger;
*) leds - fixed LED behaviour when bonding is configured on SFP+ interfaces;
*) log - fixed false log warnings about system status after power on for CRS328-4C-20S-4S+;
*) log - show interface name on OSPF "different MTU" info log messages;
*) lte - added additional D-Link PIDs;
*) lte - added additional ID support for SIM7600 modem;
*) lte - added additional low endpoint SIM7600 PIDs;
*) lte - added eNB ID to info command;
*) lte - added extended LTE signal info for SIM7600 modules;
*) lte - added extended signal information for Quectel LTE EC25 and EP06 modem;
*) lte - added ICCID reading for info command R11e-LTE and R11e-LTE-US;
*) lte - added "registration-status" parameter under "/interface lte info" command;
*) lte - added roaming status reading for info command;
*) lte - added "sector-id" to info command;
*) lte - added support for alternative SIM7600 PID;
*) lte - added support for Novatel USB730LN modem with new ID;
*) lte - added support for Quanta 1k6e modem;
*) lte - allow to execute concurrent internal AT commands;
*) lte - allow to use multiple PLS modems at the same time;
*) lte - do not allow to remove default APN profile;
*) lte - do not allow to send "at-chat" commands for configless modems;
*) lte - expose GPS channel for PLS modems;
*) lte - fixed LTE registration in 2G/3G mode;
*) lte - fixed SIM7600 registration info;
*) lte - fixed SIM7600 series module support with newer device IDs;
*) lte - ignore empty MAC addresses during Passthrough discovery phase;
*) lte - improved modem event processing;
*) lte - improved r11e-LTE and r11e-LTE-US dialling process;
*) lte - improved r11e-LTE configuration exchange process;
*) lte - improved reading of SMS message after entering running state;
*) lte - improved readings of info command results for the SXT LTE;
*) lte - improved stability of USB LTE interface detection process;
*) lte - properly detect interface state when running for IPv6 only connection for R11e-LTE modem;
*) lte - renamed LTE scan tool field "scan-code" to "mcc-mnc";
*) lte - show UICC in correct format for SXT LTE devices;
*) lte - use "/32" address for the Passthrough feature when R11e-LTE module is used;
*) lte - use alphanumeric operator format in info command;
*) mac-telnet - improved reliability when connecting from RouterOS versions prior 6.43;
*) multicast - allow to add more than one RP per IP address for PIM;
*) ntp - allow to specify link-local address for NTP server;
*) ospf - improved link-local LSA flooding;
*) ospf - improved stability when originating LSAs with OSPFv3;
*) package - renamed "current-version" to "installed-version" under "/system package install";
*) ppp - added support for additional ID for E3531 modem;
*) ppp - added support for Alfa Network U4G modem;
*) ppp - added support for Telit LM940 modem;
*) ppp - improved modem mode switching;
*) ppp - show comments from "/ppp secrets" menu within "/ppp active" menu when client is connected;
*) quickset - recognize 160 MHz channel as HomeAP mode;
*) rb1100ahx4 - added DES and 3DES hardware acceleration support;
*) romon - fixed RoMON services becoming unavailable after disabled once during active scanning process;
*) romon - properly classify RoMON sessions in log and active users list;
*) routerboard - allow to fill up to half of the RAM memory with files on devices with FLASH storage;
*) routerboard - fixed "protected-routerboot" feature (introduced in v6.42);
*) routerboard - fixed wrongly reported RAM size on ARM devices;
*) routerboot - removed RAM test from TILE devices (routerboot upgrade required);
*) sfp - fixed default advertised link speeds;
*) smb - fixed valid request handling when additional options are used;
*) sms - converted "keep-max-sms" feature to "auto-erase";
*) sms - do not require "port" and "interface" parameters when sending SMS if already present in configuration;
*) sms - improved reliability on SMS reader;
*) snmp - added CAPsMAN "remote-cap" table;
*) snmp - added EAP identity to CAPsMAN registration table;
*) snmp - added "phy-rate" reading for "station-bridge" mode;
*) snmp - added "temp-exception" trap;
*) snmp - fixed interface speed reporting for predefined rates;
*) snmp - fixed "remote-cap" peer MAC address format;
*) ssh - disconnect all active connections when device gets rebooted or turned off;
*) ssh - strengthen strong-crypto (add aes-128-ctr and disallow hmac sha1 and groups with sha1);
*) supout - added "files" section to supout file;
*) supout - added info log message when supout file is created;
*) supout - added monitored bridge VLAN table to supout file;
*) supout - added "w60g" section to supout file;
*) switch - added CPU Flow Control settings for devices with a Atheros8227, QCA8337, Atheros8327, Atheros7240 or Atheros8316 switch chip;
*) switch - added support for port isolation by switch chip;
*) switch - fixed possible switch chip hangs after initialization on MediaTek and Atheros8327 switch chips;
*) swos - implemented "/system swos" menu that allows to upgrade, reset, save or load configuration and change address for dual-boot CRS devices (CLI only);
*) tile - added DES and 3DES hardware acceleration support;
*) tile - fixed false HW offloading flag for MPLS;
*) tr069-client - allow editing of "provisioning-code" attribute;
*) tr069-client - fixed setting of "DeviceInfo.ProvisioningCode" parameter;
*) tr069-client - use SNI extension for HTTPS;
*) upgrade - fixed RouterOS upgrade process from RouterOS v5 on PowerPC;
*) ups - improved UPS serial parsing stability;
*) usb - fixed modem initialisation on LtAP mini;
*) usb - fixed power-reset for hAP ac^2 devices;
*) user - all passwords are now hashed and encrypted, plaintext passwords are kept for downgrade (will be removed in later upgrades);
*) userman - fixed "shared-secret" parameter requiring "sensitive" policy;
*) vrrp - improved reliability on VRRP interface configured as a bridge port when "use-ip-firewall" is enabled;
*) w60g - added "beamforming-event" stats counter;
*) w60g - fixed random disconnects;
*) w60g - general stability and performance improvements;
*) watchdog - added "ping-timeout" setting;
*) webfig - do not automatically re-log in after logging out;
*) webfig - fixed occasional authentication failure when logging in;
*) webfig - fixed www service becoming unresponsive;
*) webfig - properly display time interval within Kid Control menu;
*) webfig - properly handle double clicking when logging in or out;
*) webfig - properly show NTP clients "last-adjustment" value;
*) winbox - added bridge Fast Forward statistics counters;
*) winbox - added "poe-fault" LED trigger;
*) winbox - added "tag-stacking" option to "Bridge/Ports";
*) winbox - allow to specify LTE interface when sending SMS;
*) winbox - fixed arrow key handling within table filter fields;
*) winbox - fixed "bad-blocks" value presence under "System/Resources";
*) winbox - fixed bridge port MAC learning parameter values;
*) winbox - fixed "IP/IPsec/Peers" section sorting;
*) winbox - fixed "write-sect-since-reboot" value presence under "System/Resources";
*) winbox - properly close session when uploading multiple files to the device at the same time;
*) winbox - removed duplicate "20/40/80MHz" value from "channel-width" setting options;
*) winbox - renamed "VLAN Protocol" to "EtherType" under bridge interface "VLAN" tab;
*) winbox - show HT MCS tab when "5ghz-n/ac" band is used;
*) winbox - show "Switch" menu on hAP ac^2 devices;
*) winbox - show "System/RouterBOARD/Mode Button" on devices that has such feature;
*) wireless - accept only valid path for sniffer output file parameter;
*) wireless - accept only valid path for sniffer output file parameter;
*) wireless - added "czech republic 5.8" regulatory domain information;
*) wireless - added "etsi2" regulatory domain information;
*) wireless - added option for RADIUS "called-station-id" format selection;
*) wireless - added option to disable PMKID for WPA2;
*) wireless - do not disconnect clients when WDS master connects with MAC address "00:00:00:00:00:00";
*) wireless - fixed "/interface wireless sniffer packet print follow" output;
*) wireless - fixed wireless interface lockup after period of inactivity;
*) wireless - improved Nv2 reliability on ARM devices;
*) wireless - improved Nv2 stability for 802.11n interfaces on RB953, hAP ac and wAP ac devices;
*) wireless - require "sniff" policy for wireless sniffer;
*) wireless - updated "czech republic" regulatory domain information;
*) wireless - updated "germany 5.8 ap" and "germany 5.8 fixed p-p" regulatory domain information;
*) x86 - improved Ethernet driver for Davicom DM9x0x;

To upgrade, click "Check for updates" at /system package in your RouterOS configuration interface, or head to our download page: http://www.mikrotik.com/download

If you experience version related issues, then please send supout file from your router to support@mikrotik.com. File must be generated while router is not working as suspected or after some problem has appeared on device

Please keep this forum topic strictly related to this concrete RouterOS release.
 
freemannnn
Long time Member
Long time Member
Posts: 620
Joined: Sun Oct 13, 2013 7:29 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 10:01 am

wow. nice start of week!!!
ip cloud service and winbox connection so fast now.
dhcp snooping....love u guys!
Last edited by freemannnn on Mon Sep 10, 2018 11:07 am, edited 2 times in total.
 
User avatar
rushlife
Frequent Visitor
Frequent Visitor
Posts: 77
Joined: Thu Nov 05, 2015 12:30 pm
Location: czech republic

Re: v6.43 [current] is released!

Mon Sep 10, 2018 10:43 am

super news, I will test it at soon as possible...
btw. It's a quite list of changes, you are doing great job, thx guys...
 
bennyh
Frequent Visitor
Frequent Visitor
Posts: 69
Joined: Fri Mar 03, 2017 12:37 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 10:48 am

What about 3011 hardware IPSec acceleration, what introduced in RC?
 
User avatar
emils
MikroTik Support
MikroTik Support
Topic Author
Posts: 282
Joined: Thu Dec 11, 2014 8:53 am

Re: v6.43 [current] is released!

Mon Sep 10, 2018 10:53 am

Hardware accelerated IPsec for 3011 is not included in this release. Unfortunately, we could not get it working stable enough in time. It will be available in 6.44.
 
petern
just joined
Posts: 15
Joined: Wed Dec 13, 2017 5:58 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 11:03 am

Sad to see this still here which is not good for anyone using radius to provide 2FA.
!) radius - use MS-CHAPv2 for "login" service authentication;
 
bjornr
just joined
Posts: 23
Joined: Thu Apr 16, 2015 11:00 am

Re: v6.43 [current] is released!

Mon Sep 10, 2018 11:35 am

Interface speeds seem to be set explicitly after upgrading, is this related to the SNMP speed report changelog entry? I haven't tried connecting an interface at other speeds yet, but can I assume that this setting, while a part of /export, will change accordingly?
  /interface ethernet
- set [ find default-name=ether1 ] l2mtu=1582 name=ether1-gateway
- set [ find default-name=ether2 ] comment=node2
- set [ find default-name=ether3 ] comment=node3
- set [ find default-name=ether4 ] comment=node4
- set [ find default-name=ether5 ] comment=node5
+ set [ find default-name=ether1 ] l2mtu=1582 name=ether1-gateway speed=100Mbps
+ set [ find default-name=ether2 ] comment=node2 speed=100Mbps
+ set [ find default-name=ether3 ] comment=node3 speed=100Mbps
+ set [ find default-name=ether4 ] comment=node4 speed=100Mbps
+ set [ find default-name=ether5 ] comment=node5 speed=100Mbps
 
vpithart
just joined
Posts: 1
Joined: Mon Oct 20, 2014 11:46 pm

can't login with password on 6.43

Mon Sep 10, 2018 11:37 am

After `6.42.7` -> `6.43` and `/system routerboard upgrade`, login into the box doesn't accept the password anymore. Winbox: `wrong username or password`, ssh: keeps asking for password again and again. Lucky me having a ssh-key there.

It's `RB SXT G-5HPacD`, firmware-type: qca9550, factory-firmware: 3.14, current-firmware: 6.43, upgrade-firmware: 6.43. Using winbox 3.16.

Should anyone want supout.rif, email me.

Edit: Running `/ip ssh set always-allow-password-login=yes` after upgrade to 6.43 restores SSH password login. Winbox password login fails still.

Edit2:
Set the password to the same as before (/user set admin password=password1) -> winbox: `wrong username or password`
Set new password (/user set admin password=password2) -> winbox: login works again
Reset to the original pre-upgrade password (/user set admin password=password1) -> winbox: login still works.
Last edited by vpithart on Mon Sep 10, 2018 11:57 am, edited 3 times in total.
 
WirelessRudy
Forum Guru
Forum Guru
Posts: 2989
Joined: Tue Aug 08, 2006 5:54 pm
Location: Spain

Re: v6.43 [current] is released!

Mon Sep 10, 2018 11:43 am

Now that's a list!

Question; is this list now mentioning everything changed/corrected since 6.42.7 or is it compared to 6.42?
Are any or all of these changes/corrections already available in previous v6.42.x versions?

If this is all new I might wait with installing this huge upgrade on my 6.42.6 and 6.42.7 devices. Experience learned me a new number version sometimes gives new issues as well, 'current' or not....
A long list like this one is prone to have some code errors in it that will only emerge if many other guinea pigs have installed this...

See how empty this tread stays the next days....
Show your appreciation of this post by giving me Karma! Thanks.

Rudy R. Puister

WISP operator based on MT routerboard & ROS.
 
Kindis
Member Candidate
Member Candidate
Posts: 207
Joined: Tue Nov 01, 2011 6:54 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 11:56 am

Just upgraded two CHR instances to 6.43 and all worked great but I cannot see Cloud under IP

!) cloud - added support for licensed CHR instances (including trial);

I do not see it in WinBox or via Webfig. Cleared cache and all that and does not appear. I can see it via console or SSH so I have managed to activate it but I still cannot see this via Winbox or Webfig.
 
osmoticzest
just joined
Posts: 8
Joined: Wed Jan 03, 2018 2:55 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:10 pm

*) fetch - added "as-value" output format;
Assuming this is still the same functionality as described at https://wiki.mikrotik.com/wiki/Manual:T ... a_variable , I am surprised to find that when I do this:
/tool fetch mode=https host="mikrotik.com" url="https://mikrotik.com/aboutus" output=user as-value
I still receive a log line which reads
info fetch: file "aboutus" downloaded
even though no file appears to have been downloaded (and of course, I don't want it to be). Is this correct?
 
djdrastic
Member Candidate
Member Candidate
Posts: 288
Joined: Wed Aug 01, 2012 2:14 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:27 pm

Wow that's a lot of changes

Some great features being added have to say.
 
User avatar
mrz
MikroTik Support
MikroTik Support
Posts: 5702
Joined: Wed Feb 07, 2007 12:45 pm
Location: Latvia
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:29 pm

Of course it will show "file downloaded", because to output something you need to download it first.
 
bennyh
Frequent Visitor
Frequent Visitor
Posts: 69
Joined: Fri Mar 03, 2017 12:37 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:46 pm

Hardware accelerated IPsec for 3011 is not included in this release. Unfortunately, we could not get it working stable enough in time. It will be available in 6.44.
Cserkészbecsszó?
In english: Is it scout's honor to will be hw accel in 6.44? :)
 
OndrejHolas
just joined
Posts: 13
Joined: Mon Jul 30, 2018 5:54 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:47 pm

Interface speeds seem to be set explicitly after upgrading, is this related to the SNMP speed report changelog entry? I haven't tried connecting an interface at other speeds yet, but can I assume that this setting, while a part of /export, will change accordingly?

I also have exactly the same in diff (RB750Gr3 6.42.7->6.43). In fact, nothing in configuration has changed, if you issue "/int eth exp verb" before upgrade, "speed=100Mbps" is also there, but in non-verbose export it is hidden as default. In 6.43, it is not hidden, probably default value is changed in 6.43. Nevertheless, when "auto-negotiation" is set to "yes" (default setting and thus hidden in non-verbose export in both versions), the "speed" setting has no effect, the port succesfully negotiates at best speed/duplex:

[admin@rb750gr3] > int eth exp
...
/interface ethernet
...
set [ find default-name=ether2 ] speed=100Mbps
...
[admin@rb750gr3] > int eth mon 1 once
name: ether2
status: link-ok
auto-negotiation: done
rate: 1Gbps
full-duplex: yes

tx-flow-control: no
rx-flow-control: no
advertising: 10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
link-partner-advertising: 10M-half,10M-full,100M-half,100M-full,1000M-full



Ondrej
 
nightcom
newbie
Posts: 34
Joined: Wed Aug 30, 2017 12:47 am
Location: NL

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:47 pm

RB3011, CRS326-24G-2S and RB750Gr3 upgraded with no problems
RB3011UiAS-RM / RB2011UiAS-in / RB750Gr3 + Dude / CRS326-24G-2S+RM
 
meesuk
just joined
Posts: 1
Joined: Thu Jun 07, 2018 4:58 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:47 pm

Nice Job!

Thank you for your update about these.
*) bridge - add dynamic CAP interface to tagged ports if "vlan-mode=use-tag" is enabled;
*) bridge - improved performance when bridge VLAN filtering is used without hardware offloading;
 
bennyh
Frequent Visitor
Frequent Visitor
Posts: 69
Joined: Fri Mar 03, 2017 12:37 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 12:48 pm

Hardware accelerated IPsec for 3011 is not included in this release. Unfortunately, we could not get it working stable enough in time. It will be available in 6.44.
Cserkészbecsszó?
In english: Is it scout's honor to will be hw accel in 6.44? :)

Nowadays I am too sceptic :)
 
User avatar
eworm
Member Candidate
Member Candidate
Posts: 194
Joined: Wed Oct 22, 2014 9:23 am
Location: Oberhausen, Germany
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 1:05 pm

*) fetch - added "as-value" output format;
Assuming this is still the same functionality as described at https://wiki.mikrotik.com/wiki/Manual:T ... a_variable , I am surprised to find that when I do this:
/tool fetch mode=https host="mikrotik.com" url="https://mikrotik.com/aboutus" output=user as-value
I still receive a log line which reads
info fetch: file "aboutus" downloaded
even though no file appears to have been downloaded (and of course, I don't want it to be). Is this correct?
The about-us site is a bad example, as it gives a lot of html output. See this example:
:put ([ /tool fetch url="https://www.eworm.de/ip/" output=user as-value ]->"data")
Or to put it into a variable:
:global result;
:set result ([ /tool fetch url="https://www.eworm.de/ip/" output=user as-value ]->"data");
:put $result;
Manage RouterOS scripts and extend your devices' functionality: RouterOS Scripts
 
User avatar
alexvdbaan
Trainer
Trainer
Posts: 35
Joined: Sun Feb 22, 2015 12:12 pm
Location: Amsterdam, Netherlands
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 1:22 pm

bridge - add dynamic CAP interface to tagged ports if "vlan-mode=use-tag" is enabled;

Great work MT team!

I was wondering if you could elaborate on the dynamic vlan function? I can see that the Caps interfaces are included in the bridge and that the active interfaces are tagged in the dynamic vlan entry for PVID 1. I would expect that the dynamic caps interfaces are dynamically added to all the bridge vlan entries. I have also tried to add the Capsman interfaces in their own interface list. However the newly created interface list woith all the dynamic caps interfaces can not be selected in the bridge vlan entry.

Below the config for my test setup on 6.43
/interface bridge
add fast-forward=no name=Lo0 protocol-mode=none
add fast-forward=no name=bridge protocol-mode=none vlan-filtering=yes
/interface bridge port
add bridge=bridge interface=ether1
add bridge=bridge interface=ether2 pvid=666
add bridge=bridge interface=ether3
add bridge=bridge interface=ether4
add bridge=bridge interface=ether5
/interface bridge settings
set allow-fast-path=no
/interface bridge vlan
add bridge=bridge tagged=bridge,ether1 untagged=ether2 vlan-ids=666
add bridge=bridge tagged=bridge,ether1 vlan-ids=200
add bridge=bridge tagged=bridge,ether4,ether5 vlan-ids=10,20,30,667

/caps-man datapath
add bridge=bridge client-to-client-forwarding=yes local-forwarding=no name=vl10-data vlan-id=10 vlan-mode=use-tag
add bridge=bridge client-to-client-forwarding=yes local-forwarding=no name=vl20-data vlan-id=20 vlan-mode=use-tag
add bridge=bridge client-to-client-forwarding=yes local-forwarding=no name=vl30-data vlan-id=30 vlan-mode=use-tag
add bridge=bridge client-to-client-forwarding=yes local-forwarding=no name=radius-data vlan-mode=use-tag
/caps-man security
add authentication-types=wpa2-eap disable-pmkid=yes eap-methods=passthrough encryption=aes-ccm group-encryption=aes-ccm group-key-update=1h name=Radius-Sec
/caps-man configuration
add country=netherlands datapath=radius-data distance=indoors hide-ssid=no mode=ap name=DynVlan security=Radius-Sec ssid=AllVlan
/caps-man manager
set ca-certificate=auto certificate=auto enabled=yes package-path=/upgrade upgrade-policy=require-same-version
/caps-man manager interface
set [ find default=yes ] forbid=yes
add disabled=no interface=vl667
/caps-man provisioning
add action=create-dynamic-enabled hw-supported-modes=ac master-configuration=DynVlan name-format=prefix-identity name-prefix=5Ghz-
add action=create-dynamic-enabled hw-supported-modes=gn master-configuration=DynVlan name-format=prefix-identity name-prefix=2.4Ghz-
 
colinardo
just joined
Posts: 8
Joined: Sun Jan 08, 2017 9:02 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 1:48 pm

Nice work!

Found a LOG problem with an IPv6 DHCP-CLIENT. The log says there was an error adding the dynamic prefix pool, but it actually is created correctly. Cosmetic problem?
dhcp,error failed to add ipv6 pool MYPOOL: ok
Confused :-).

Best regards
@colinardo
 
User avatar
mozerd
Member Candidate
Member Candidate
Posts: 136
Joined: Thu Oct 05, 2017 3:39 pm
Location: Canada
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 2:07 pm

Found a LOG problem with an IPv6 DHCP-CLIENT. The log says there was an error adding the dynamic prefix pool, but it actually is created correctly. Cosmetic problem?
dhcp,error failed to add ipv6 pool MYPOOL: ok
.....
.......
Yes, I have a similar issue:with the current release 6.43
dhcp,error failed to add ipv6 pool rogers-ipv6: ok
but it actually is created correctly.
 
JanezFord
Member Candidate
Member Candidate
Posts: 258
Joined: Wed May 23, 2012 10:58 am

Re: v6.43 [current] is released!

Mon Sep 10, 2018 2:44 pm

Upgraded about 7 devices but stopped further upgrading because I can't connect to my hEX any more - user/pass for admin not accepted any more... I can login by ssh-key. I see vptihart also had issues with winbox connectivity.

So be very careful with this upgrade, you may lock yourself out of your device !! :)

JF.
 
User avatar
Steveocee
Forum Veteran
Forum Veteran
Posts: 904
Joined: Tue Jul 21, 2015 10:09 pm
Location: UK
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 2:52 pm

Have just moved my CHR up and cannot see any Winbox entry for IP>Cloud however terminal I can access it and apply it.
Steve "Steveocee" Carter
PC Gamer, Airsofter, MikroTik Nerd
My Website - My MikroTik Tutorials
 
strods
MikroTik Support
MikroTik Support
Posts: 1369
Joined: Wed Jul 16, 2014 7:22 am
Location: Riga, Latvia

Re: v6.43 [current] is released!

Mon Sep 10, 2018 2:57 pm

IP/Cloud feature will be added to Winbox interface for CHR in upcoming versions.

DHCPv6 error log message is a cosmetic issue which also will be fixed soon. This error actually tells that there is no error.
 
becs
MikroTik Support
MikroTik Support
Posts: 468
Joined: Thu Jul 07, 2011 8:26 am

Re: v6.43 [current] is released!

Mon Sep 10, 2018 3:08 pm

Interface speeds seem to be set explicitly after upgrading, is this related to the SNMP speed report changelog entry? I haven't tried connecting an interface at other speeds yet, but can I assume that this setting, while a part of /export, will change accordingly?
  /interface ethernet
- set [ find default-name=ether1 ] l2mtu=1582 name=ether1-gateway
- set [ find default-name=ether2 ] comment=node2
- set [ find default-name=ether3 ] comment=node3
- set [ find default-name=ether4 ] comment=node4
- set [ find default-name=ether5 ] comment=node5
+ set [ find default-name=ether1 ] l2mtu=1582 name=ether1-gateway speed=100Mbps
+ set [ find default-name=ether2 ] comment=node2 speed=100Mbps
+ set [ find default-name=ether3 ] comment=node3 speed=100Mbps
+ set [ find default-name=ether4 ] comment=node4 speed=100Mbps
+ set [ find default-name=ether5 ] comment=node5 speed=100Mbps
Hello,
Interface ethernet speed appearing in the v6.43 configuration export is a cosmetic thing because of speed setting default value changes.
Since the speed setting does not take effect when "auto-negotiation=yes", it will not affect most configurations and to avoid breaking user modified values, the defaults are not updated during RouterOS upgrade, it is done only after configuration reset.

This cosmetic issue can be manually fixed by setting new values of "speed" according to v6.43 defaults:
/interface ethernet print default-config detail
 
User avatar
eworm
Member Candidate
Member Candidate
Posts: 194
Joined: Wed Oct 22, 2014 9:23 am
Location: Oberhausen, Germany
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 3:22 pm

[...] Since the speed setting does not take effect when "auto-negotiation=yes", [...]
Are you sure? I have a CRS where one port negotiates at 100M-full - probably due to bad wiring. If I set speed=1Gbps the port is flapping at 1000M-full.
This cosmetic issue can be manually fixed by setting new values of "speed" according to v6.43 defaults:
/interface ethernet print default-config detail
[admin@MikroTik] > /interface ethernet print default-config detail
expected end of command (line 1 column 27)
Manage RouterOS scripts and extend your devices' functionality: RouterOS Scripts
 
becs
MikroTik Support
MikroTik Support
Posts: 468
Joined: Thu Jul 07, 2011 8:26 am

Re: v6.43 [current] is released!

Mon Sep 10, 2018 3:32 pm

eworm, changing speed setting no matter of its value initiates restart of ethernet port and if autonegotiation advertises 1000M-half,1000M-full, the CRS will try to negotiatiate 1Gbps link first before dropping to lower speed.
 
bbs2web
Member Candidate
Member Candidate
Posts: 170
Joined: Sun Apr 22, 2012 6:25 pm
Location: Johannesburg, South Africa
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 4:08 pm

I'm pleasantly surprised to see that we were unaffected by the authentication changes. We use centralised RADIUS authentication to Active Directory and associate AD security group membership to RouterOS user group permissions. Winbox, SSH and local authentication continues to work...

VirtIO IRQ mapping is however incorrect in that input and output pairs are not bound to the same core.

6.43:
[davidh@router1] > sys resource irq print 
Flags: ro - read-only 
 #    IRQ USERS                                         CPU ACTIVE-CPU         COUNT
 0      1 i8042                                        auto          0            99
 1      6 floppy                                       auto          1             2
 2      9 acpi                                         auto          0             0
 3     11 usb1                                         auto          1            32
 4     12 i8042                                        auto          0             3
 5     14 ide0                                         auto          1         4 718
 6     15 ide1                                         auto          0             0
 7     40 virtio1-config                               auto          1             0
 8     41 virtio1-input.0                              auto          0       882 432
 9     42 virtio1-output.0                             auto          1             1
10     43 virtio1-input.1                              auto          0       586 986
11     44 virtio1-output.1                             auto          1             1
6.43rc12:
[davidh@router2] > sys resource irq print
Flags: ro - read-only 
 #    IRQ USERS                                                    CPU ACTIVE-CPU         COUNT
 0      1 i8042                                                   auto          0           703
 1      6 floppy                                                  auto          1             2
 2      9 acpi                                                    auto          2             0
 3     11 usb1                                                    auto          3     5 083 834
          virtio0                                          
 4     12 i8042                                                   auto          4         1 677
 5     14 ata_piix                                                auto          5             0
 6     15 ata_piix                                                auto          6             3
 7     40 virtio1-config                                          auto          7             0
 8     41 virtio1-requests                                        auto          0       281 478
 9     42 virtio2-config                                          auto          1            30
10 ro  43 virtio2-input.0                                         auto          0 3 251 566 126
11 ro  44 virtio2-output.0                                        auto          0     1 428 823
12 ro  45 virtio2-input.1                                         auto          1 2 303 315 949
13 ro  46 virtio2-output.1                                        auto          1     1 325 156
14 ro  47 virtio2-input.2                                         auto          2 1 446 390 462
15 ro  48 virtio2-output.2                                        auto          2     2 318 597
16 ro  49 virtio2-input.3                                         auto          3 1 738 920 888
17 ro  50 virtio2-output.3                                        auto          3       725 384
18 ro  51 virtio2-input.4                                         auto          4     8 744 012
19 ro  52 virtio2-output.4                                        auto          4     1 913 455
20 ro  53 virtio2-input.5                                         auto          5 1 095 525 257
21 ro  54 virtio2-output.5                                        auto          5     2 561 306
22 ro  55 virtio2-input.6                                         auto          6 4 161 506 922
23 ro  56 virtio2-output.6                                        auto          6       941 292
24 ro  57 virtio2-input.7                                         auto          7    46 834 723
25 ro  58 virtio2-output.7                                        auto          7       947 725

6.43rc12 appears to have gotten this right, 6.43 alternates the CPU assignments so that input for both queues is tied to the same processor...

PS: Yes, we disabled RPS on both routers:
[davidh@router1] > sys resource irq rps print 
Flags: X - disabled 
 #   NAME                                                                        
 0 X ether1
 
edcore
just joined
Posts: 2
Joined: Thu Jun 21, 2018 5:11 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 6:05 pm

*) winbox - show "System/RouterBOARD/Mode Button" on devices that has such feature;

No Mode Button for hEX?

Image
Image


https://ibb.co/fAzp79
https://ibb.co/kok1LU
 
User avatar
ErfanDL
Member Candidate
Member Candidate
Posts: 235
Joined: Thu Sep 29, 2016 9:13 am
Location: IRAN
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 6:05 pm

WoW the speed of winbox windows loading now is very fast.
installed on RB2011UiAS2hND - hAP Lite - RB951Ui without any problem.

Sent from my C6833 using Tapatalk

 
eddieb
Frequent Visitor
Frequent Visitor
Posts: 93
Joined: Thu Aug 28, 2014 10:53 am
Location: Netherlands

Re: v6.43 [current] is released!

Mon Sep 10, 2018 6:31 pm

Upgraded without any issues
RB2011UAS
RB1100
RB750GL
CCR1009
CRS125
RB962UIGS (10x)
CHR
CHR-DUDE
 
User avatar
DimaFIX
just joined
Posts: 5
Joined: Wed Apr 18, 2018 7:46 pm
Location: Ukraine

Re: v6.43 [current] is released!

Mon Sep 10, 2018 6:35 pm

Where can I download btest.exe?
 
bbs2web
Member Candidate
Member Candidate
Posts: 170
Joined: Sun Apr 22, 2012 6:25 pm
Location: Johannesburg, South Africa
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 6:56 pm

Upgrade a hEX (RB750Gr3) yields the following changes when upgrading from 6.42.7 to 6.43:
/system resource irq rps
set ether1 disabled=no
set ether2 disabled=no
set ether3 disabled=no
set ether4 disabled=no
set ether5 disabled=no
Has this default been changed?
 
R1CH
Forum Veteran
Forum Veteran
Posts: 725
Joined: Sun Oct 01, 2006 11:44 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 7:46 pm

-nm was a winbox issue-
 
DummyPLUG
Frequent Visitor
Frequent Visitor
Posts: 50
Joined: Wed Jan 03, 2018 10:17 am

Re: v6.43 [current] is released!

Mon Sep 10, 2018 8:48 pm

10G on CCR1009 ethernet port? cosmetic issue?
Image
 
User avatar
honzam
Forum Guru
Forum Guru
Posts: 2176
Joined: Wed Feb 27, 2008 10:27 pm
Location: Czech Republic

Re: v6.43 [current] is released!

Mon Sep 10, 2018 9:02 pm

Upgraded about 7 devices but stopped further upgrading because I can't connect to my hEX any more - user/pass for admin not accepted any more... I can login by ssh-key. I see vptihart also had issues with winbox connectivity.

So be very careful with this upgrade, you may lock yourself out of your device !!
I have similar problem. After upgrade wAP-AC to 6.43 I can´t connet to router wia winbox 3.17 (wrong username or password)
But with the same name and password from neighbour router with mac-telnet it works , webfig also works. :shock:
Reported: Ticket#2018091022006001
Last edited by honzam on Mon Sep 10, 2018 9:23 pm, edited 3 times in total.
LAN, FTTx, Wireless. ISP operator
 
mkx
Forum Guru
Forum Guru
Posts: 1038
Joined: Thu Mar 03, 2016 10:23 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 9:14 pm

This cosmetic issue can be manually fixed by setting new values of "speed" according to v6.43 defaults:
/interface ethernet print default-config detail
[admin@MikroTik] > /interface ethernet print default-config detail
expected end of command (line 1 column 27)
While command written by @becs, does not work neither in 6.42.7 nor in 6.43, the above issue is cosmetics only. The default value for speed attribute was 100Mbps on 6.42.7 (and earlier) and is 1Gbps since 6.43.

6.42.7:
/interface ethernet 
 /interface ethernet>export
# sep/10/2018 17:58:41 by RouterOS 6.42.7
# software id = TX5S-MT3T
#
# model = RouterBOARD 952Ui-5ac2nD
# serial number = XYZWXYZWXYZW
/interface ethernet
set [ find default-name=ether5 ] poe-out=off

 /interface ethernet> set [ find default-name=ether1 ] speed=
1Gbps  10Gbps  10Mbps  100Mbps

 /interface ethernet> print detail
Flags: X - disabled, R - running, S - slave
 0 R  name="ether1" default-name="ether1" mtu=1500 l2mtu=1598
      mac-address=6C:3B:6B:97:25:6F orig-mac-address=6C:3B:6B:97:25:6F
      arp=enabled arp-timeout=auto loop-protect=default
      loop-protect-status=off loop-protect-send-interval=5s
      loop-protect-disable-time=5m auto-negotiation=yes
      advertise=10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
      full-duplex=yes tx-flow-control=off rx-flow-control=off speed=100Mbps
      bandwidth=unlimited/unlimited switch=switch1
      
 /interface ethernet> set [ find default-name=ether1 ] speed=1Gbps
 /interface ethernet> export
# sep/10/2018 18:00:21 by RouterOS 6.42.7
# software id = TX5S-MT3T
#
# model = RouterBOARD 952Ui-5ac2nD
# serial number = XYZWXYZWXYZW
/interface ethernet
set [ find default-name=ether1 ] speed=1Gbps
set [ find default-name=ether5 ] poe-out=off

 /interface ethernet> print detail
Flags: X - disabled, R - running, S - slave
 0 R  name="ether1" default-name="ether1" mtu=1500 l2mtu=1598
      mac-address=6C:3B:6B:97:25:6F orig-mac-address=6C:3B:6B:97:25:6F
      arp=enabled arp-timeout=auto loop-protect=default
      loop-protect-status=off loop-protect-send-interval=5s
      loop-protect-disable-time=5m auto-negotiation=yes
      advertise=10M-half,10M-full,100M-half,100M-full,1000M-half,1000M-full
      full-duplex=yes tx-flow-control=off rx-flow-control=off speed=1Gbps
      bandwidth=unlimited/unlimited switch=switch1
.
Needless to say that running speed of the port did not change, it was 100Mbps all the time (which is HW limitation of hAP ac).
On 6.43 is just the opposite: if I set speed to 1Gbps, this attribute disappears from exported configuration.
BR,
Metod
 
John39
just joined
Posts: 21
Joined: Mon Aug 08, 2016 11:17 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 9:20 pm

After updating on all my devices I see such a picture.
download/file.php?mode=view&id=33580 download/file.php?mode=view&id=33579
You do not have the required permissions to view the files attached to this post.
 
ivanfm
newbie
Posts: 37
Joined: Sun May 20, 2012 5:07 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 9:27 pm

After updating on all my devices I see such a picture.
download/file.php?mode=view&id=33580 download/file.php?mode=view&id=33579
I have found this "setW60Gap" variable in one of my upgraded devices (751G-2HnD).

I have not found any new variables in other 4 devices upgraded (different models).
 
DenisPDA
just joined
Posts: 2
Joined: Tue Sep 04, 2018 5:42 pm

Re: v6.43 [current] is released!

Mon Sep 10, 2018 11:08 pm

After updating on all my devices I see such a picture.
download/file.php?mode=view&id=33580 download/file.php?mode=view&id=33579
Similar problem + broken default script
hAP AC 6.42.7 > 6.43
MT_6.43.jpg
default_script_6.43_bad.txt
script_environment.txt
You do not have the required permissions to view the files attached to this post.
 
User avatar
hknet
Frequent Visitor
Frequent Visitor
Posts: 86
Joined: Sun Jul 17, 2016 6:05 pm
Location: Vienna, Austria
Contact:

Re: v6.43 [current] is released!

Mon Sep 10, 2018 11:44 pm

Do I read this correctly as _no_ routerboard-firmware upgrade is usually required coming from 6.43rc or 6.42.7?

thx
hk
 
User avatar
hknet
Frequent Visitor
Frequent Visitor
Posts: 86
Joined: Sun Jul 17, 2016 6:05 pm
Location: Vienna, Austria
Contact:

Re: v6.43 [current] is released!

Tue Sep 11, 2018 12:01 am

*bridge - added per-port based "tag-stacking" feature

trying to wrap my head around this vs the (previous) QinQ support by using ethertype=0x88a8

if I'm not mistaken this is now the more common support for QinQ using 0x8100 frames packing another 0x8100 frame into it (aka stacking).

my question here: if I set the bridge ethertype to 0x88a8 and then use per port stacking are still 0x8100 frames stacked or is this setup simply mutually exclusive to each other?

thx
hk
 
poggs
just joined
Posts: 1
Joined: Mon May 07, 2018 5:33 pm

Re: v6.43 [current] is released!

Tue Sep 11, 2018 12:39 am

Serious problems here upgrading a 2011UiAS from the final -rc: it failed to load the new kernel image and went in to Ether Boot mode almost straight away. I NetInstall'd 6.43 on to it, rebooted and all was fine until I power-cycled, at which time we were back to the same problem as before.

The only way around this I've found is to force backup-booter loading, so I'm on RouterBOOT-3.41, and the router will survive a power-cycle.

Has anyone else seen this issue, or can anyone recommend a better fix?
 
rmccracken
just joined
Posts: 3
Joined: Tue Sep 11, 2018 12:41 am

Re: can't login with password on 6.43

Tue Sep 11, 2018 12:47 am

After `6.42.7` -> `6.43` and `/system routerboard upgrade`, login into the box doesn't accept the password anymore. Winbox: `wrong username or password`, ssh: keeps asking for password again and again. Lucky me having a ssh-key there.

It's `RB SXT G-5HPacD`, firmware-type: qca9550, factory-firmware: 3.14, current-firmware: 6.43, upgrade-firmware: 6.43. Using winbox 3.16.

Should anyone want supout.rif, email me.

Edit: Running `/ip ssh set always-allow-password-login=yes` after upgrade to 6.43 restores SSH password login. Winbox password login fails still.

Edit2:
Set the password to the same as before (/user set admin password=password1) -> winbox: `wrong username or password`
Set new password (/user set admin password=password2) -> winbox: login works again
Reset to the original pre-upgrade password (/user set admin password=password1) -> winbox: login still works.


Seeing exact same issue on CCR-1016. Is there a fix or work around? Our only backup file is currently on device, will hard resetting device remove backup file?
 
eider
newbie
Posts: 27
Joined: Thu Nov 30, 2017 10:14 pm

Re: v6.43 [current] is released!

Tue Sep 11, 2018 1:23 am

Since updating RouterBOOT to 6.43 I can now see "Boot OS" option under Routerboard->Settings for cAP lite. I'm pretty sure that cAP lite does not support SwOS.

Image
 
mducharme
Trainer
Trainer
Posts: 678
Joined: Tue Jul 19, 2016 6:45 pm

Re: v6.43 [current] is released!

Tue Sep 11, 2018 1:30 am

10G on CCR1009 ethernet port? cosmetic issue?
I'm getting the same thing on my hAP ac gig ethernet ports.

Also, like a previous poster, since the upgrade, Winbox is now opening up incredibly quickly. Why is it so fast now compared to earlier versions?
 
UpRunTech
Frequent Visitor
Frequent Visitor
Posts: 58
Joined: Fri Jul 27, 2012 12:11 pm

Re: v6.43 [current] is released!

Tue Sep 11, 2018 3:18 am

Hardware accelerated IPsec for 3011 is not included in this release. Unfortunately, we could not get it working stable enough in time. It will be available in 6.44.
Is this a driver you guys had to wrote from scratch? I am surprised it's taken so long but I still appreciate that it's coming.

I don't think you should release that summer intern from the basement until they have it working properly.

I too noticed Winbox loads my pile of open windows much faster too.
 
Paternot
Member
Member
Posts: 444
Joined: Thu Jun 02, 2016 4:01 am
Location: Niterói / Brazil

Re: v6.43 [current] is released!

Tue Sep 11, 2018 4:18 am

I don't think you should release that summer intern from the basement until they have it working properly.
Yeah. Throw him in the basement, and make him work! To get faster results, lock the door. :D
 
mducharme
Trainer
Trainer
Posts: 678
Joined: Tue Jul 19, 2016 6:45 pm

Re: v6.43 [current] is released!

Tue Sep 11, 2018 6:42 am

Hi,

I have found an issue with v6.43, when it comes to upgrade space on hAP lite.

hAP lite is unable to upgrade from 6.42.7 to 6.43 if both the main package and TR-069 package are installed. I have to remove the TR-069 package to get enough free space to upgrade the hAP lite. No other files on router. I was able to reinstall the TR-069 package afterwards.

Other device models seem to be fine.

Who is online

Users browsing this forum: NEOhidra, Neski and 7 guests