MikroTik RouterOS 6.43.x (Stable)

Материал из MikroTik Wiki
Перейти к навигации Перейти к поиску

Подробное описание изменений в MikroTik RouterOS 6.46.x (Stable). Официальный список исправленных ошибок, добавленного функционала и прочих доработок. Дата выхода первого набора изменений – 6 сентября 2018, дата выхода последнего набора изменений – 8 февраля 2019.

Чек-лист по настройке MikroTik
Проверьте свою конфигурацию по 28-ми пунктам

MikroTik RouterOS 6.43

Дата выхода: 6 сентября 2018

Важные изменения:

  • api - changed authentication process (https://wiki.mikrotik.com/wiki/Manual:API#Initial_login);
  • backup - do not encrypt backup file unless password is provided;
  • btest - requires at least v6.43 Bandwidth Test client when connecting to v6.43 or later version server except when authentication is not required;
  • cloud - added IPv6 support;
  • cloud - added support for licensed CHR instances (including trial);
  • cloud - reworked "/ip cloud ddns-enabled" implementation (suggested to disable service and re-enable after installation process);
  • radius - use MS-CHAPv2 for "login" service authentication;
  • romon - require at least v6.43 RoMON agent when connecting to v6.43 or later RoMON client device;
  • webfig - improved authentication process;
  • winbox - improved authentication process excluding man-in-the-middle possibility;
  • winbox - minimal required version is v3.15.


  • backup - added support for new backup file encryption (AES128-CTR) with signatures (SHA256);
  • backup - generate proper file name when devices identity is longer than 32 symbols;
  • bridge - add dynamic CAP interface to tagged ports if "vlan-mode=use-tag" is enabled;
  • bridge - added an option to manually specify ports that have a multicast router (CLI only);
  • bridge - added a warning when untrusted port receives a DHCP Server message when DCHP Snooping is enabled;
  • bridge - added ingress filtering options to bridge interface;
  • bridge - added initial Q-in-Q support;
  • bridge - added more options to fine-tune IGMP Snooping enabled bridges (CLI only);
  • bridge - added per-port based "tag-stacking" feature;
  • bridge - added support for BPDU Guard;
  • bridge - added support for DHCP Option 82;
  • bridge - added support for DHCP Snooping;
  • bridge - added support for IGMP Snooping fast-leave feature (CLI only);
  • bridge - fixed dynamic VLAN table entries when using ingress filtering;
  • bridge - fixed "ingress-filtering", "frame-types" and "tag-stacking" value storing;
  • bridge - forward LACPDUs when "protocol-mode=none";
  • bridge - ignore tagged BPDUs when bridge VLAN filtering is used;
  • bridge - improved packet handling;
  • bridge - improved packet processing when bridge port changes states;
  • bridge - improved performance when bridge VLAN filtering is used without hardware offloading;
  • bridge - renamed option "vlan-protocol" to "ether-type";
  • capsman - added ability to use chain 3 for "HT TX chains" and "HT RX chains" selections (CLI only);
  • capsman - allow to change "radio-name" (CLI only);
  • capsman - increase timeout for the CAP to CAPsMAN communication;
  • certificate - added "expires-after" parameter;
  • certificate - do not allow to perform "undo" on certificate changes;
  • certificate - fixed RA "server-url" setting;
  • check-installation - improved system integrity checking;
  • chr - added checksum offload support for Hyper-V installations;
  • chr - added large send offload support for Hyper-V installations;
  • chr - added multiqueue support on Xen installations;
  • chr - added support for multiqueue feature on "virtio-net";
  • chr - added virtual Receive Side Scaling support for Hyper-V installations (might require more RAM assigned than in previous versions);
  • chr - by default enable link state tracking for virtual drivers with "/interface ethernet disable-running-check=no";
  • chr - do not show IRQ entries from removed devices;
  • chr - fixed interface name assign process when running CHR on Hyper-V;
  • chr - fixed interface name order when "virtio-net is not being used on KVM installations;
  • chr - fixed MTU changing process when running CHR on Hyper-V;
  • chr - fixed NIC hotplug for "virtio-net";
  • chr - improved balooning process;
  • chr - improved boot time for Hyper-V installations;
  • chr - provide part of network interface GUID at the beginning of "bindstr2" value when running CHR on Hyper-V;
  • chr - reduced RAM memory required per interface;
  • cloud - added simultaneous IPv4/IPv6 support;
  • cloud - close local UDP port if no activity;
  • console - added "dont-require-permissions" parameter for scripts;
  • console - added error log message when netwatch tries to execute script with insufficient permissions;
  • console - added error log message when scheduler tries to execute script with insufficient permissions;
  • console - do not show spare parameters on ping command;
  • console - made "once" parameter mandatory when using "as-value" on "monitor" commands;
  • console - removed automatic swapping of "from=" and "to=" in "for" loops;
  • crs317 - fixed Ethernet inteface stuck on 100 Mbps speed;
  • crs326/crs328 - fixed packet forwarding when port changes states with IGMP Snooping enabled;
  • crs328 - fixed transmit on sfp-sfpplus1 and sfp-sfpplus2 interfaces;
  • crs3xx - added hardware support for DHCP Snooping and Option 82;
  • crs3xx - added Q-in-Q hardware offloading support;
  • crs3xx - do not report SFP interface as running when interface on opposite side is disabled;
  • crs3xx - fixed ACL rate rules (introduced in v6.41rc27);
  • crs3xx - fixed flow control;
  • crs3xx - fixed SwOS config import;
  • defconf - fixed default configuration for RBSXTsq5nD;
  • defconf - fixed missing bridge ports after configuration reset;
  • dhcp - added dynamic IPv4/IPv6 "dual-stack" simple queue support, based on client's MAC address;
  • dhcp - reduced resource usage of DHCP services;
  • dhcpv4-client - fixed DHCP client that was stuck on invalid state;
  • dhcpv4-client - fixed double ACK packet handling;
  • dhcpv4-server - added "allow-dual-stack-queue" implementation (CLI only);
  • dhcpv4-server - do not allow override lease "always-broadcast" value based on offer type;
  • dhcpv4-server - improved performance when "rate-limit" and/or "address-list" setting is present;
  • dhcpv6-client - added missing "Server identifier" parameter in release message;
  • dhcpv6-client - fixed "add-default-route" parameter;
  • dhcpv6-client - fixed option handling;
  • dhcpv6-client - improved dynamic IPv6 pool addition process;
  • dhcpv6-server - added additional RADIUS parameters for Prefix delegation, "rate-limit" and "life-time";
  • dhcpv6-server - added "allow-dual-stack-queue" implementation (CLI only);
  • dhcpv6-server - added initial dynamic simple queue support;
  • dhcpv6-server - do not allow to run DHCPv6 server on slave interface;
  • dhcpv6-server - fixed dynamic simple queue creation for RADIUS bindings;
  • dns - fixed DNS cache service becoming unresponsive when active Hotspot server is present on the router (introduced in 6.42);
  • dude - fixed client auto upgrade (broken since 6.43rc17);
  • ethernet - do not show "combo-state" field if interface is not SFP or copper;
  • ethernet - properly handle Ethernet interface default configuration;
  • export - do not show w60g password on "hide-sensitive" type of export;
  • fetch - added "as-value" output format;
  • fetch - fixed address and DNS verification in certificates;
  • filesystem - fixed NAND memory going into read-only mode (requires "factory-firmware" >= 3.41.1 and "current-firmware" >= 6.43);
  • filesystem - improved software crash handling on devices with FLASH type memory;
  • health - added missing parameters from export;
  • health - fixed voltage measurements for RB493G devices;
  • health - improved speed of health measurement readings;
  • hotspot - allow to properly configure Hotspot directory on external disk for devices that have flash type storage;
  • hotspot - fixed RADIUS CoA & PoD by allowing to accept "NAS-Port-Id";
  • ike1 - added unsafe configuration warning for main mode with pre-shared-key authentication;
  • ike1 - purge both SAs when timer expires;
  • ike1 - zero out reserved bytes in NAT-OA payload;
  • ike2 - fixed initiator first policy selection;
  • ike2 - fixed rekeyed child deletion during another exchange;
  • ike2 - improved basic exchange logging readability;
  • ike2 - use "/32" netmask by default on initiator if not provided by responder;
  • interface - improved interface "last-link-down-time" and "last-link-up-time" values;
  • interface - improved reliability on dynamic interface handling;
  • ippool - improved used address error message;
  • ipsec - added "responder" parameter for "mode-config" to allow multiple initiator configurations;
  • ipsec - added "src-address-list" parameter for "mode-config" that generates dynamic "src-nat" rule;
  • ipsec - added warning messages for incorrect peer configuration;
  • ipsec - do not allow removal of "proposal" and "mode-config" entries that are in use;
  • ipsec - fixed AES-192-CTR fallback to software AEAD on ARM devices with wireless and RB3011UiAS-RM;
  • ipsec - fixed AES-CTR and AES-GCM key size proposing as initiator;
  • ipsec - fixed "static-dns" value storing;
  • ipsec - improved invalid policy handling when a valid policy is uninstalled;
  • ipsec - improved reliability on generated policy addition when IKEv1 or IKEv2 used;
  • ipsec - improved stability when using IPsec with disabled route cache;
  • ipsec - install all DNS server addresses provided by "mode-config" server;
  • ipsec - separate phase1 proposal configuration from peer menu;
  • ipsec - separate phase1 proposal configuration from peer menu;
  • ipsec - use monotonic timer for SA lifetime check;
  • kidcontrol - allow to edit discovered devices;
  • l2tp - allow setting "max-mtu" and "max-mru" bigger than 1500;
  • led - improved w60g alignment trigger;
  • leds - fixed LED behaviour when bonding is configured on SFP+ interfaces;
  • log - fixed false log warnings about system status after power on for CRS328-4C-20S-4S+;
  • log - show interface name on OSPF "different MTU" info log messages;
  • lte - added additional D-Link PIDs;
  • lte - added additional ID support for SIM7600 modem;
  • lte - added additional low endpoint SIM7600 PIDs;
  • lte - added eNB ID to info command;
  • lte - added extended LTE signal info for SIM7600 modules;
  • lte - added extended signal information for Quectel LTE EC25 and EP06 modem;
  • lte - added ICCID reading for info command R11e-LTE and R11e-LTE-US;
  • lte - added "registration-status" parameter under "/interface lte info" command;
  • lte - added roaming status reading for info command;
  • lte - added "sector-id" to info command;
  • lte - added support for alternative SIM7600 PID;
  • lte - added support for Novatel USB730LN modem with new ID;
  • lte - added support for Quanta 1k6e modem;
  • lte - allow to execute concurrent internal AT commands;
  • lte - allow to use multiple PLS modems at the same time;
  • lte - do not allow to remove default APN profile;
  • lte - do not allow to send "at-chat" commands for configless modems;
  • lte - expose GPS channel for PLS modems;
  • lte - fixed LTE registration in 2G/3G mode;
  • lte - fixed SIM7600 registration info;
  • lte - fixed SIM7600 series module support with newer device IDs;
  • lte - ignore empty MAC addresses during Passthrough discovery phase;
  • lte - improved modem event processing;
  • lte - improved r11e-LTE and r11e-LTE-US dialling process;
  • lte - improved r11e-LTE configuration exchange process;
  • lte - improved reading of SMS message after entering running state;
  • lte - improved readings of info command results for the SXT LTE;
  • lte - improved stability of USB LTE interface detection process;
  • lte - properly detect interface state when running for IPv6 only connection for R11e-LTE modem;
  • lte - renamed LTE scan tool field "scan-code" to "mcc-mnc";
  • lte - show UICC in correct format for SXT LTE devices;
  • lte - use "/32" address for the Passthrough feature when R11e-LTE module is used;
  • lte - use alphanumeric operator format in info command;
  • mac-telnet - improved reliability when connecting from RouterOS versions prior 6.43;
  • multicast - allow to add more than one RP per IP address for PIM;
  • ntp - allow to specify link-local address for NTP server;
  • ospf - improved link-local LSA flooding;
  • ospf - improved stability when originating LSAs with OSPFv3;
  • package - renamed "current-version" to "installed-version" under "/system package install";
  • ppp - added support for additional ID for E3531 modem;
  • ppp - added support for Alfa Network U4G modem;
  • ppp - added support for Telit LM940 modem;
  • ppp - improved modem mode switching;
  • ppp - show comments from "/ppp secrets" menu within "/ppp active" menu when client is connected;
  • quickset - recognize 160 MHz channel as HomeAP mode;
  • rb1100ahx4 - added DES and 3DES hardware acceleration support;
  • romon - fixed RoMON services becoming unavailable after disabled once during active scanning process;
  • romon - properly classify RoMON sessions in log and active users list;
  • routerboard - allow to fill up to half of the RAM memory with files on devices with FLASH storage;
  • routerboard - fixed "protected-routerboot" feature (introduced in v6.42);
  • routerboard - fixed wrongly reported RAM size on ARM devices;
  • routerboot - removed RAM test from TILE devices (routerboot upgrade required);
  • sfp - fixed default advertised link speeds;
  • smb - fixed valid request handling when additional options are used;
  • sms - converted "keep-max-sms" feature to "auto-erase";
  • sms - do not require "port" and "interface" parameters when sending SMS if already present in configuration;
  • sms - improved reliability on SMS reader;
  • snmp - added CAPsMAN "remote-cap" table;
  • snmp - added EAP identity to CAPsMAN registration table;
  • snmp - added "phy-rate" reading for "station-bridge" mode;
  • snmp - added "temp-exception" trap;
  • snmp - fixed interface speed reporting for predefined rates;
  • snmp - fixed "remote-cap" peer MAC address format;
  • ssh - disconnect all active connections when device gets rebooted or turned off;
  • ssh - strengthen strong-crypto (add aes-128-ctr and disallow hmac sha1 and groups with sha1);
  • supout - added "files" section to supout file;
  • supout - added info log message when supout file is created;
  • supout - added monitored bridge VLAN table to supout file;
  • supout - added "w60g" section to supout file;
  • switch - added CPU Flow Control settings for devices with a Atheros8227, QCA8337, Atheros8327, Atheros7240 or Atheros8316 switch chip;
  • switch - added support for port isolation by switch chip;
  • switch - fixed possible switch chip hangs after initialization on MediaTek and Atheros8327 switch chips;
  • swos - implemented "/system swos" menu that allows to upgrade, reset, save or load configuration and change address for dual-boot CRS devices (CLI only);
  • tile - added DES and 3DES hardware acceleration support;
  • tile - fixed false HW offloading flag for MPLS;
  • tr069-client - allow editing of "provisioning-code" attribute;
  • tr069-client - fixed setting of "DeviceInfo.ProvisioningCode" parameter;
  • tr069-client - use SNI extension for HTTPS;
  • upgrade - fixed RouterOS upgrade process from RouterOS v5 on PowerPC;
  • ups - improved UPS serial parsing stability;
  • usb - fixed modem initialisation on LtAP mini;
  • usb - fixed power-reset for hAP ac^2 devices;
  • user - all passwords are now hashed and encrypted, plaintext passwords are kept for downgrade (will be removed in later upgrades);
  • userman - fixed "shared-secret" parameter requiring "sensitive" policy;
  • vrrp - improved reliability on VRRP interface configured as a bridge port when "use-ip-firewall" is enabled;
  • w60g - added "beamforming-event" stats counter;
  • w60g - fixed random disconnects;
  • w60g - general stability and performance improvements;
  • watchdog - added "ping-timeout" setting;
  • webfig - do not automatically re-log in after logging out;
  • webfig - fixed occasional authentication failure when logging in;
  • webfig - fixed www service becoming unresponsive;
  • webfig - properly display time interval within Kid Control menu;
  • webfig - properly handle double clicking when logging in or out;
  • webfig - properly show NTP clients "last-adjustment" value;
  • winbox - added bridge Fast Forward statistics counters;
  • winbox - added "poe-fault" LED trigger;
  • winbox - added "tag-stacking" option to "Bridge/Ports";
  • winbox - allow to specify LTE interface when sending SMS;
  • winbox - fixed arrow key handling within table filter fields;
  • winbox - fixed "bad-blocks" value presence under "System/Resources";
  • winbox - fixed bridge port MAC learning parameter values;
  • winbox - fixed "IP/IPsec/Peers" section sorting;
  • winbox - fixed "write-sect-since-reboot" value presence under "System/Resources";
  • winbox - properly close session when uploading multiple files to the device at the same time;
  • winbox - removed duplicate "20/40/80MHz" value from "channel-width" setting options;
  • winbox - renamed "VLAN Protocol" to "EtherType" under bridge interface "VLAN" tab;
  • winbox - show HT MCS tab when "5ghz-n/ac" band is used;
  • winbox - show "Switch" menu on hAP ac^2 devices;
  • winbox - show "System/RouterBOARD/Mode Button" on devices that has such feature;
  • wireless - accept only valid path for sniffer output file parameter;
  • wireless - accept only valid path for sniffer output file parameter;
  • wireless - added "czech republic 5.8" regulatory domain information;
  • wireless - added "etsi2" regulatory domain information;
  • wireless - added option for RADIUS "called-station-id" format selection;
  • wireless - added option to disable PMKID for WPA2;
  • wireless - do not disconnect clients when WDS master connects with MAC address "00:00:00:00:00:00";
  • wireless - fixed "/interface wireless sniffer packet print follow" output;
  • wireless - fixed wireless interface lockup after period of inactivity;
  • wireless - improved Nv2 reliability on ARM devices;
  • wireless - improved Nv2 stability for 802.11n interfaces on RB953, hAP ac and wAP ac devices;
  • wireless - require "sniff" policy for wireless sniffer;
  • wireless - updated "czech republic" regulatory domain information;
  • wireless - updated "germany 5.8 ap" and "germany 5.8 fixed p-p" regulatory domain information;
  • x86 - improved Ethernet driver for Davicom DM9x0x.

MikroTik RouterOS 6.43.1

Дата выхода: 17 сентября 2018


  • crs317 - fixed packet forwarding on bonded interfaces without hardware offloading;
  • defconf - properly clear global variables when generating default configuration after RouterOS upgrade;
  • dhcpv6-client - log only failed pool additions;
  • hotspot - properly update dynamic "walled-garden" entries when changing "dst-host";
  • ike2 - fixed rare authentication and encryption key mismatches after rekey with PFS enabled;
  • lte - fixed LTE interface not working properly after reboot on RBSXTLTE3-7;
  • rb3011 - added IPsec hardware acceleration support;
  • routerboard - fixed memory tester reporting false errors on IPQ4018 devices ("/system routerboard upgrade" required);
  • sniffer - made "connection", "host", "packet" and "protocol" sections read-only;
  • switch - fixed port mirroring on devices that do not support CPU Flow Control;
  • upnp - improved UPnP service stability when handling HTTP requests;
  • webfig - allow to change user name when creating a new system user (introduced in v6.43);
  • webfig - fixed time interval settings not applied properly under "IP/Kid Control/Kids" menu;
  • winbox - added "allow-dual-stack-queue" setting to "IP/DHCP Server/Leases" menu;
  • winbox - added "allow-dual-stack-queue" setting to "IPv6/DHCPv6 Server/Bindings" menu;
  • winbox - fixed corrupt user database after specifying allowed address range (introduced in v6.43);
  • winbox - make bridge port "untrusted" by default when creating new port;
  • winbox - show "IP/Cloud" menu on CHR;
  • winbox - show "System/RouterBOARD/Mode Button" on devices that have such feature;
  • wireless - removed "czech republic 5.8" regulatory domain information as it overlaps with "ETSI 5.7-5.8".

MikroTik RouterOS 6.43.2

Дата выхода: 18 сентября 2018


  • routerboot - fixed RouterOS booting on devices with particular NAND memory (introduced in v6.43).

MikroTik RouterOS 6.43.3

Дата выхода: 5 октября 2018

Релиз только для внутреннего использования компанией MikroTik.

MikroTik RouterOS 6.43.4

Дата выхода: 17 октября 2018


  • bridge - do not learn untagged frames when filtering only tagged packets;
  • bridge - fixed possible memory leak when VLAN filtering is used;
  • bridge - improved packet handling when hardware offloading is being disabled;
  • bridge - properly forward unicast DHCP messages when using DHCP Snooping with hardware offloading;
  • crs328 - improved link status update on disabled SFP+ interface when using DAC;
  • crs3xx - fixed possible memory leak when disabling bridge interface;
  • crs3xx - properly read "eeprom" data after different module inserted in disabled interface;
  • dhcpv4-server - use client MAC address for dual stack queue when "client-id" is not received;
  • dhcpv6-server - fixed dynamic binding addition on solicit when IA_PD does not contain prefix (introduced in v6.43);
  • dhcpv6-server - recreate DHCPv6 server binding if it is no longer within prefix pool when rebinding/renewing;
  • ipsec - allow multiple peers to the same address with different local-address (introduced in v6.43);
  • led - added "dark-mode" functionality for LHG and LDF series devices;
  • led - added "dark-mode" functionality for wsAP ac lite, RB951Ui-2nD, hAP and hAP ac lite devices;
  • led - fixed default LED configuration for SXT LTE kit devices;
  • led - fixed power LED turning on after reboot when "dark-mode" is used;
  • ntp - fixed possible NTP server stuck in "started" state;
  • romon - improved packet processing when MTU in path is lower than 1500;
  • routerboard - show "boot-os" option only on devices that have such feature;
  • traffic-flow - fixed post NAT port reporting;
  • w60g - added "frequency-list" setting;
  • w60g - added interface stats;
  • w60g - fixed interface LED status update on connection;
  • w60g - general stability and performance improvements;
  • w60g - improved stability for short distance links;
  • w60g - renamed "mcs" to "tx-mcs" and "phy-rate" to "tx-phy-rate".

MikroTik RouterOS 6.43.5

Дата выхода: 25 октября 2018

Релиз только для внутреннего использования компанией MikroTik.

MikroTik RouterOS 6.43.6

Дата выхода: 7 ноября 2018

Релиз только для внутреннего использования компанией MikroTik.

MikroTik RouterOS 6.43.7

Дата выхода: 30 ноября 2018

Важные изменения:

  • upgrade - release channels renamed - "bugfix" to "long-term", "current" to "stable" and "release candidate" to "testing";
  • upgrade - "testing" release channel now can contain "beta" together with "release-candidate" versions.


  • bridge - properly disable dynamic CAP interfaces;
  • certificate - fixed "expires-after" parameter calculation;
  • certificate - fixed time zone adjustment for SCEP requests;
  • certificate - properly flush old CRLs when changing store location;
  • chr - fixed possible memory allocation failure when using multiple CPUs or interfaces on Xen installations;
  • crs328 - fixed SFP ports not reporting auto-negotiation status;
  • crs328 - improved link status update on disabled SFP and SFP+ interfaces;
  • defconf - automatically accept default configuration if reset done by holding button;
  • defconf - fixed default configuration loading on RB4011iGS+5HacQ2HnD-IN;
  • discovery - fixed malformed neighbor information for routers that has incomplete IPv6 configuration;
  • discovery - fixed neighbor discovery for PPP interfaces;
  • discovery - properly use System ID for "software-id" value on CHR;
  • export - fixed "silent-boot" compact export;
  • health - fixed bad voltage readings on RB493G;
  • interface - improved system stability when including/excluding a list to itself;
  • ipsec - fixed hw-aead (H) flag presence under Installed SAs on startup;
  • ipsec - improved stability when uninstalling multiple SAs at once;
  • ipsec - properly handle peer profiles on downgrade;
  • ipsec - properly update warnings under peer menu;
  • kidcontrol - do not allow users with "read" policy to pause and resume kids;
  • log - properly handle long echo messages;
  • lte - added support for more ZTE MF90 modems;
  • ospf - improved stability while handling type-5 LSAs;
  • routerboard - renamed SIM slots to "a" and "b" on SXT LTE kit;
  • routerboard - show "boot-os" and "force-backup-booter" options only on devices that have such feature;
  • snmp - do not initialise interface traps on bootup if they are not enabled;
  • timezone - updated timezone information from tzdata2018g release;
  • traffic-flow - fixed post NAT port reporting;
  • traffic-flow - fixed "src-mac-address" and added "post-src-mac-address" fields;
  • tunnel - made "ipsec-secret" parameter sensitive;
  • usb - fixed power-reset for hAP ac^2 devices;
  • user - speed up first time login process after upgrade from version older than v6.43;
  • winbox - allow to specify SIM slot on LtAP mini;
  • winbox - enabled "fast-forward" by default when adding new bridge;
  • winbox - fixed neighbor discovery for IPv6 neighbors;
  • winbox - show "System/Health" only on boards that have health monitoring.

MikroTik RouterOS 6.43.8

Дата выхода: 21 декабря 2018

Важные изменения:

  • telnet - do not allow to set "tracefile" parameter.


  • bridge - fixed IPv6 link-local address generation when auto-mac=yes;
  • capsman - fixed "group-key-update" parameter not using correct units;
  • crs3xx - improved data transmission between 10G and 1G ports;
  • console - properly remove system note after configuration reset;
  • dhcpv4-server - fixed dynamic lease reuse after expiration;
  • dhcpv6-server - properly handle DHCP requests that include prefix hint;
  • ethernet - fixed VLAN1 forwarding on RB1100AHx4 and RB4011 devices;
  • gps - added "coordinate-format" parameter;
  • led - fixed default LED configuration for RBMetalG-52SHPacn;
  • led - fixed PWR-LINE AP ethernet led polarity ("/system routerboard upgrade" required);
  • lte - disallow setting LTE interface as passthrough target;
  • lte - fixed DHCP IP acquire (introduced in v6.43.7);
  • lte - fixed passthrough functionality when interface is removed;
  • lte - increased reported "rsrq" precision;
  • lte - reset USB when non-default slot is used;
  • package - use bundled package by default if standalone packages are installed as well;
  • resource - fixed "total-memory" reporting on ARM devices;
  • snmp - added "tx-ccq" ("mtxrWlStatTxCCQ") and "rx-ccq" ("mtxrWlStatRxCCQ") values;
  • switch - fixed MAC learning when disabling interfaces on devices with Atheros8327 and QCA8337 switch chips;
  • system - fixed situation when all configuration was not properly loaded on bootup;
  • timezone - fixed "Europe/Dublin" time zone;
  • upgrade - automatically uninstall standalone package if already installed in bundle;
  • webfig - do not show bogus VHT field in wireless interface advanced mode;
  • winbox - added "allow-roaming" parameter in "Interface/LTE" menu;
  • winbox - allow to change VHT rates when 5ghz-n/ac band is used;
  • winbox - renamed "Radius" to "RADIUS";
  • winbox - show "Switch" menu on RB4011iGS+5HacQ2HnD and RB4011iGS+;
  • wireless - added new "installation" parameter to specify router's location;
  • wireless - improved stability for 802.11ac;
  • wireless - improvements in wireless frequency selection.

MikroTik RouterOS 6.43.9

Дата выхода: 10 января 2019

Релиз только для внутреннего использования компанией MikroTik.

MikroTik RouterOS 6.43.10

Дата выхода: 24 января 2019

Релиз только для внутреннего использования компанией MikroTik.

MikroTik RouterOS 6.43.11

Дата выхода: 4 февраля 2019


  • ipsec - accept only valid path for "export-pub-key" parameter in "key" menu;
  • quickset - fixed "country" parameter not properly setting regulatory domain configuration;
  • smb - fixed possible buffer overflow;
  • w60g - fixed disconnection issues in PtMP setups;
  • wireless - improved antenna gain setting for devices with built in antennas;
  • wireless - show indoor/outdoor frequency limitations under "/interface wireless info country-info" command.

MikroTik RouterOS 6.43.12

Дата выхода: 8 февраля 2019

Важные изменения:

  • winbox - improvements in connection handling to router with open winbox service (CVE-2019–3924).
Чек-лист по настройке MikroTik
Проверьте свою конфигурацию по 28-ми пунктам