MikroTik RouterOS 6.48betaX (Testing)
Подробное описание изменений в MikroTik RouterOS 6.48betaX (Testing). Официальный список исправленных ошибок, добавленного функционала и прочих доработок. Дата выхода первого набора изменений – 6 июля 2020, дата выхода последнего набора изменений – 24 ноября 2020.
Полезные материалы по MikroTik
Углубленный курс "Администрирование сетевых устройств MikroTik" Онлайн-курс по MikroTik с дипломом государственного образца РФ. Много лабораторных работ с проверкой официальным тренером MikroTik. С нуля и до уровня MTCNA.
На Telegram-канале Mikrotik сэнсей можно получить доступ к закрытой информации от официального тренера MikroTik. Подписывайтесь
MikroTik RouterOS 6.48beta58
Дата выхода: 24 ноября 2020
Изменения:
- arm - improved system stability;
- bgp - treat route target with AS 65535 as two byte AS;
- bonding - added LACP monitoring;
- branding - fixed imported skin presence;
- bridge - use "frame-types=admit-all" by default for extended bridge ports;
- certificate - fixed CRL URL length limit;
- certificate - generate CRL even when CRL URL not specified;
- certificate - properly flush expired SCEP OTP entries;
- chr - fixed SSH key import on Azure;
- crs3xx - fixed booting issues on CRS354 devices (introduced in v6.48beta48);
- crs3xx - fixed bridge port-extender for CRS318 devices;
- crs3xx - fixed switch-cpu VLAN membership removal (introduced in v6.48beta40);
- crs3xx - improved system stability on CRS354 devices;
- defconf - fixed default configuration loading on RBcAP-2nD and RBwAP-2nD;
- defconf - fixed static IP address setting in case default configuration loading fails;
- dhcp - fixed DHCP packet forwarding to IPsec policies;
- dhcpv6 server - added support for "Delegated-IPv6-Prefix" for PPP services;
- dhcpv6-server - added support for "option18" and "option37" for RADIUS managed clients;
- dhcpv6-server - allow loose static binding "pool" parameter (introduced in v6.46.8);
- dhcpv6-server - make sure that calling station ID always contains DUID;
- discovery - added "lldp-med-net-policy-vlan" property for assigning VLAN ID;
- discovery - allow choosing which discovery protocol is used;
- disk - fixed external EXT3 disk mounting on x86 systems;
- disk - improved disk management service stability when receiving bogus packets;
- dns - end ongoing queries when changing DoH configuration;
- dns - improved stability with large table of static records;
- dot1x - fixed reauthentication after server rejects a client into VLAN;
- dot1x - fixed unicast destination EAP packet receiving when a client is running on a bridge port;
- dude - fixed configuration menu presence on ARM64 devices;
- filesystem - improved long-term filesystem stability and data integrity;
- hotspot - fixed "html-directory" parameter export;
- ike2 - improved EAP message integrity checking;
- interface - fixed pwr-line running state (introduced in v6.45);
- lora - limited output power in RU region for range 868.7 MHz - 869.2 MHz according to regulations;
- lte - increased "at+cops" reply timeout to 1 minute;
- metarouter - allow creating RouterOS metarouter instances on devices with 16MB flash storage;
- metarouter - fixed directory entry reporting;
- metarouter - fixed memory leak when tearing down metarouter instance;
- ppp - added "bridge-learning" parameter support;
- ppp - store "last-caller-id" for PPP secrets;
- ppp - store "last-disconnect-reason" for PPP secrets;
- profile - fixed process classification on x86 systems (introduced in v6.47);
- quickset - fixed wireless client "uptime" counter in "Home Mesh" mode;
- sstp - fixed "idle-timeout" on TILE and CHR devices;
- supout - improved autosupout.rif file generation process;
- timezone - updated timezone information from "tzdata2020d" release;
- tr069-client - added branding package version parameter;
- upgrade - do not try installing packages if download was not completed;
- webfig - allow hiding and renaming inline buttons;
- webfig - allow hiding QuickSet mode selector;
- webfig - properly stop background processes when switching away from QuickSet tab;
- winbox - added "operator" parameter under "Interface/LTE" menu;
- winbox - added "reformat-hold-button-max" parameter under "System/RouterBOARD/Settings" menu;
- winbox - added "tls-mode" parameter under "CAPsMAN/Security Cfg." menu;
- winbox - added "tx-rx-1024-max" counter under "Interface/Overall-Stats" for CRS3xx devices;
- winbox - allow adding bonding interface with one slave interface;
- winbox - do not allow MAC address changes on LTE interfaces;
- winbox - do not show "network-mode" parameter for LTE interfaces that do not support it;
- winbox - fixed "interface" and "on-interface" parameter presence under "Bridge/Hosts" menu;
- winbox - provide sane default values for bridge "VLAN IDs" parameter;
- winbox - show "System/Health" only on boards that have health monitoring;
- winbox - show "System/RouterBOARD/Mode Button" on devices that have such feature;
- winbox - show "usb-bus" option on all boards that have it;
- winbox - show "usb-type" option on all boards that have it;
- winbox - sort IPv6 firewall "chain" parameter entries alphabetically;
- wireless - added U-NII-2 support for US and Canada country profiles for mANTBox series devices;
- wireless - increased "group-key-update" maximum value to 1 day.
Другие изменения относительно 6.47.7:
- arm64 - improved reboot reason reporting in log;
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved watchdog and kernel panic reporting in log after reboots on IPQ4018/IPQ4019 devices;
- bonding - added LACP monitoring (CLI only);
- bonding - removed "sys-id" and "sys-priority" from monitor-slaves command;
- bridge - added minor fixes and improvements for IGMP snooping with HW offloading;
- bridge - added warning message when port is disabled by the BPDU guard;
- bridge - allow to exclude interfaces from extended ports (CLI only);
- bridge - automatically remove extended interfaces when deleting PE device from CB;
- bridge - correctly remove dynamic VLAN assignment for bridge ports;
- bridge - fixed BPDU guard port disable/enable on HW offloaded interfaces;
- bridge - fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- bridge - fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- bridge - fixed link-local multicast forwarding when IGMP snooping and HW offloading is enabled;
- bridge - fixed local MAC address removal from host table when deleting bridge interface;
- bridge - fixed MDB entry removal when using bridge port "fast-leave" property;
- bridge - fixed multicast table printing;
- bridge - fixed packet forwarding for CAP and BCP controlled interfaces (introduced in v6.48beta12);
- bridge - improved BPDU guard logging;
- bridge - increased multicast table size to 4K entries;
- bridge - show error when switch do not support controlling bridge or port extension (CLI only);
- bridge - show "H" flag for extended bridge ports;
- cap - fixed L2MTU setting from CAPsMAN;
- certificate - clear challenge password on renew;
- certificate - fixed private key verification for CA certificate during signing process;
- chr - improved interface loading on startup on XEN;
- chr - improved system stability when changing flow control settings on e1000;
- cloud - improved backup generation process;
- conntrack - automatically reduce connection tracking timeouts when table is full;
- console - allow "once" parameter for bonding monitoring;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - added switch-cpu port VLAN filtering (switch-cpu port is now mapped with bridge interface VLAN membership when vlan-filtering is enabled);
- crs3xx - fixed CDP packet forwarding for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices;
- crs3xx - fixed "custom-drop-packet" and "not-learned" switch stats for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed duplicate host entries when creating static switch hosts;
- crs3xx - fixed "mirror-source" property on switch port disable for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port-isolation for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices (introduced in v6.48beta35);
- crs3xx - fixed port isolation for "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation removal for "switch-cpu" port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed "storm-rate" traffic limiting for switch-cpu port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed switch "copy-to-cpu" property for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices;
- crs3xx - fixed switch "not-learned" stats for CRS305, CRS326-24G-2S+, CRS328-24P-4S+, CRS328-4C-20S-4S+, CRS318 devices;
- crs3xx - fixed VLAN tagged packet forwarding on "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices (introduced in v6.48beta12);
- defconf - improved CAP interface bridging;
- defconf - improved default configuration generation on devices with non-default wireless interface names;
- detnet - fixed malformed dummy DHCP User Class option;
- detnet - use MAC address from bridge interface instead of slave port;
- dhcpv4-server - improved "client-id" value parsing;
- dhcpv6-server - added ability to generate binding on first request;
- discovery - added "lldp-med-net-policy-vlan" property for assigning VLAN ID (CLI only);
- discovery - allow choosing which discovery protocol is used (CLI only);
- discovery - fixed discovery on mesh ports;
- discovery - fixed discovery packet sending on newly bridged port with "protocol-mode=none";
- discovery - fixed discovery when enabled only on master port;
- discovery - fixed occasional wrong Chassis-ID for LLDP packets (introduced in v6.48beta35);
- discovery - send the same "Chassis ID" on all interfaces for LLDP packets;
- discovery - use interface MAC address when sending MNDP from slave port;
- dns - added IPv6 support for DoH;
- dns - do not use type "A" for static entries with unspecified type;
- dns - fixed listening for DNS queries when only dynamic static entries exist (introduced in v6.47);
- dot1x - accept priority tagged (VLAN 0) EAP packets on dot1x client;
- export - fixed RouterBOARD USB "type" parameter export;
- filesystem - fixed repartition on non-first partition;
- filesystem - fixed repartition on RB4011 series devices;
- filesystem - improved long-term filesystem stability and data integrity;
- gps - fixed "init-channel" release when not used;
- health - changed PSU state parameter type to read-only;
- health - removed unused "heater-control" and "heater-threshold" parameters;
- hotspot - added support for captive portal advertising using DHCP (RFC7710);
- hotspot - added "vlan-id" parameter support for hosts and HTML pages;
- hotspot - improved management service stability when receiving bogus packets;
- ike1 - fixed "my-id=address" parameter usage together with certificate authentication;
- ike1 - fixed policy update with and without mode configuration;
- ike1 - rekey phase 1 as responder for Windows initiators;
- ike2 - added "prf-algorithm" support for phase 1;
- ike2 - added support for IKEv2 Message Fragmentation (RFC7383);
- ike2 - fixed EAP MSK length validation;
- ike2 - fixed too small payload parsing;
- ike2 - improved child SA rekeying process;
- interface - added temperature warning and interface disable on overheat for SFP and SFP+ interfaces (CLI only);
- ipsec - added SHA384 hash algorithm support for phase 1 (CLI only);
- ipsec - do not kill connection when peer's "name" or "comment" is changed;
- ipsec - fixed client certificate usage when certificate is renewed with SCEP;
- ipsec - fixed multiple warning message display for peers;
- ipsec - inactivate peer's policy on disconnect;
- ipsec - refresh peer's DNS only when phase 1 is down;
- kidcontrol - allow creating static device entries without assigned user;
- led - fixed state persistence after device reboot on NetMetal 5 ac devices;
- lora - fixed device going into "ERROR" state caused by FSK modulated downlinks;
- lte - added "age" column and "max-age" parameter to "cell-monitor" (CLI only);
- lte - added "comment" parameter for APN profiles;
- lte - added support for Alcatel IK41VE1;
- lte - fixed "band" value reporting;
- m33g - added support for "/system gpio" menu (CLI only);
- ppp - added "ipv6-routes" parameter to "secrets" menu;
- ppp - added support for "Framed-IPv6-Route" RADIUS attribute;
- profile - improved idle process detection on x86 processors;
- profile - improved process classification on ARM devices;
- quickset - added "Port Mapping" to QuickSet;
- quickset - fixed local IP address setting on master interface;
- route - improved stability when 6to4 interface is configured with disabled IPv6 package;
- routerboard - fixed PCIe bus reset during power-on on MMIPS devices ("/system routerboard upgrade" required);
- routerboard - force power-down on PCIe bus during reboot on LHGR devices ("/system routerboard upgrade" required);
- script - added error message in the logs if startup script runtime limit was exceeded;
- snmp - added information from IPsec "active-peers" menu to MIKROTIK-MIB;
- snmp - added new LTE monitoring OID's to MIKROTIK-MIB;
- snmp - fixed value types for "dot1dStp";
- snmp - fixed value types for "dot1qPvid";
- ssh - fixed returned output saving to file when "output-to-file" parameter is used;
- ssh - skip interactive authentication when not running in interactive mode;
- supout - added bonding interface monitor information;
- system - replace "3" in superscript to "^3" on RBD53GR devices;
- tr069-client - added additional wireless registration table parameters;
- tr069-client - added LTE model and revision parameters;
- tr069-client - added wireless "noise-floor" and "overall-tx-ccq" information parameters;
- tr069-client - added "X_MIKROTIK_MimoRSRP" parameter for LTE RSRP value reporting;
- tr069-client - allow passing LTE firmware update URL as XML;
- tr069-client - fixed RouterOS downgrade procedure;
- tr069-client - send correct "ConnectionRequestURL" when using IPv6;
- traffic-flow - added NAT event logging support for IPFIX;
- traffic-flow - added "sys-init-time" parameter support;
- traffic-generator - fixed 32Gbps limitation;
- user-manager - do not allow creating limitation that crosses midnight;
- user-manager - updated PayPal's root certificate authorities;
- webfig - fixed default value presence when creating new entries under "IP->Kid Control";
- winbox - allow performing "USB Power Reset" on "0" bus on RBM33G;
- winbox - fixed "IP->Kid Control->Devices" table automatic refreshing;
- winbox - fixed minor typo in "Users" menu;
- winbox - fixed "receive-errors" setting persistence under "Wireless/Wireless Sniffer/Settings" menu;
- winbox - fixed "tls-version" parameter setting under "IP/Services" menu;
- winbox - use health values reported by gauges for "System/Health" menu;
- wireless - create "connect-list" rule when address specified for "setup-repeater";
- wireless - do not override MTU and ARP values from CAPsMAN with local forwarding;
- wireless - improved WPS process stability;
- wireless - updated "no_country_set" regulatory domain information.
MikroTik RouterOS 6.48beta48
Дата выхода: 14 октября 2020
Важные комментарии:
Using this version on CRS354-48G-4S+2Q+RM or CRS354-48P-4S+2Q+RM will cause booting issues and device may need to be reinstalled.
Изменения:
- bridge - automatically remove extended interfaces when deleting PE device from CB;
- cap - fixed L2MTU path discovery;
- cap - fixed L2MTU setting from CAPsMAN;
- certificate - fixed private key verification for CA certificate during signing process;
- cloud - improved backup generation process;
- crs3xx - fixed CDP packet forwarding for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices;
- crs3xx - fixed port-isolation for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices (introduced in v6.48beta35);
- defconf - fixed default configuration loading on RBmAP-2nD;
- dhcpv4-client - fixed DHCP offer packet parsing with overload option present;
- discovery - fixed occasional wrong Chassis-ID for LLDP packets (introduced in v6.48beta35);
- dot1x - accept priority tagged (VLAN 0) EAP packets on dot1x client;
- fetch - improved SSL handshake processing;
- filesystem - improved long-term filesystem stability and data integrity;
- ike1 - fixed "my-id=address" parameter usage together with certificate authentication;
- ike2 - added support for IKEv2 Message Fragmentation (RFC7383);
- ike2 - fixed EAP MSK length validation;
- ike2 - fixed too small payload parsing;
- interface - added temperature warning and interface disable on overheat for SFP and SFP+ interfaces (CLI only);
- led - fixed state persistence after device reboot on NetMetal 5 ac devices;
- lora - fixed device going into "ERROR" state caused by FSK modulated downlinks;
- lte - fixed "band" value reporting;
- lte - fixed multiple APN passthrough on R11e-4G;
- lte - improved EARFCN reporting in 3G and LTE modes on Sierra modems;
- lte - limit allowed APN count to 3 on R11e-LTE;
- m33g - added support for "/system gpio" menu (CLI only);
- mpls - fixed duplicate "LabelRelease" message sending;
- profile - improved idle process detection on x86 processors;
- profile - improved process classification on ARM devices;
- quickset - added "Port Mapping" to QuickSet;
- quickset - fixed local IP address setting on master interface;
- radius - added "Service-Type" attribute to Access-Request for IPv4 and IPv6 DHCP servers;
- routerboard - fixed PCIe bus reset during power-on on MMIPS devices ("/system routerboard upgrade" required);
- routerboard - force power-down on PCIe bus during reboot on LHGR devices ("/system routerboard upgrade" required);
- script - added error message in the logs if startup script runtime limit was exceeded;
- snmp - added information from IPsec "active-peers" menu to MIKROTIK-MIB;
- snmp - added new LTE monitoring OID's to MIKROTIK-MIB;
- switch - fixed Ethernet padding for small packets;
- tr069-client - fixed RouterOS downgrade procedure;
- traffic-flow - added NAT event logging support for IPFIX;
- traffic-generator - fixed 32Gbps limitation;
- user - improved WinBox and The Dude authenticated session handling;
- user-manager - do not allow creating limitation that crosses midnight;
- user-manager - updated PayPal's root certificate authorities;
- vrrp - made "password" parameter sensitive;
- w60g - general stability and performance improvements;
- wireless - added support for US FCC UNII-2 and Canada country profiles for NetMetal series devices;
- wireless - do not override MTU and ARP values from CAPsMAN with local forwarding;
- wireless - fixed incorrect wireless capability information in association response frames;
- wireless - updated "no_country_set" regulatory domain information.
Другие изменения относительно 6.47.4:
- arm64 - improved reboot reason reporting in log;
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved watchdog and kernel panic reporting in log after reboots on IPQ4018/IPQ4019 devices;
- bonding - added LACP monitoring (CLI only);
- bonding - removed "sys-id" and "sys-priority" from monitor-slaves command;
- bridge - added minor fixes and improvements for IGMP snooping with HW offloading;
- bridge - added warning message when port is disabled by the BPDU guard;
- bridge - allow to exclude interfaces from extended ports (CLI only);
- bridge - correctly remove dynamic VLAN assignment for bridge ports;
- bridge - fixed BPDU guard port disable/enable on HW offloaded interfaces;
- bridge - fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- bridge - fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- bridge - fixed link-local multicast forwarding when IGMP snooping and HW offloading is enabled;
- bridge - fixed local MAC address removal from host table when deleting bridge interface;
- bridge - fixed MDB entry removal when using bridge port "fast-leave" property;
- bridge - fixed multicast table printing;
- bridge - fixed packet forwarding for CAP and BCP controlled interfaces (introduced in v6.48beta12);
- bridge - improved BPDU guard logging;
- bridge - increased multicast table size to 4K entries;
- bridge - show error when switch do not support controlling bridge or port extension (CLI only);
- bridge - show "H" flag for extended bridge ports;
- certificate - clear challenge password on renew;
- chr - improved interface loading on startup on XEN;
- chr - improved system stability when changing flow control settings on e1000;
- conntrack - automatically reduce connection tracking timeouts when table is full;
- console - allow "once" parameter for bonding monitoring;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - added switch-cpu port VLAN filtering (switch-cpu port is now mapped with bridge interface VLAN membership when vlan-filtering is enabled);
- crs3xx - fixed "custom-drop-packet" and "not-learned" switch stats for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed duplicate host entries when creating static switch hosts;
- crs3xx - fixed "mirror-source" property on switch port disable for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation for "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation removal for "switch-cpu" port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed "storm-rate" traffic limiting for switch-cpu port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed switch "copy-to-cpu" property for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices;
- crs3xx - fixed switch "not-learned" stats for CRS305, CRS326-24G-2S+, CRS328-24P-4S+, CRS328-4C-20S-4S+, CRS318 devices;
- crs3xx - fixed VLAN tagged packet forwarding on "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices (introduced in v6.48beta12);
- defconf - improved CAP interface bridging;
- defconf - improved default configuration generation on devices with non-default wireless interface names;
- defconf - improved default configuration generation on devices without wireless package installed;
- detnet - fixed malformed dummy DHCP User Class option;
- detnet - use MAC address from bridge interface instead of slave port;
- dhcpv4-server - improved "client-id" value parsing;
- dhcpv6-server - added ability to generate binding on first request;
- discovery - added "lldp-med-net-policy-vlan" property for assigning VLAN ID (CLI only);
- discovery - allow choosing which discovery protocol is used (CLI only);
- discovery - fixed discovery on mesh ports;
- discovery - fixed discovery packet sending on newly bridged port with "protocol-mode=none";
- discovery - fixed discovery when enabled only on master port;
- discovery - send the same "Chassis ID" on all interfaces for LLDP packets;
- discovery - use interface MAC address when sending MNDP from slave port;
- dns - added IPv6 support for DoH;
- dns - do not use type "A" for static entries with unspecified type;
- dns - fixed listening for DNS queries when only dynamic static entries exist (introduced in v6.47);
- export - fixed RouterBOARD USB "type" parameter export;
- filesystem - fixed repartition on non-first partition;
- filesystem - fixed repartition on RB4011 series devices;
- gps - fixed "init-channel" release when not used;
- health - changed PSU state parameter type to read-only;
- health - removed unused "heater-control" and "heater-threshold" parameters;
- hotspot - added support for captive portal advertising using DHCP (RFC7710);
- hotspot - added "vlan-id" parameter support for hosts and HTML pages;
- hotspot - improved management service stability when receiving bogus packets;
- ike1 - allow using "my-id" parameter with XAuth;
- ike1 - fixed policy update with and without mode configuration;
- ike1 - rekey phase 1 as responder for Windows initiators;
- ike2 - added "prf-algorithm" support for phase 1;
- ike2 - improved child SA rekeying process;
- ipsec - added SHA384 hash algorithm support for phase 1 (CLI only);
- ipsec - do not kill connection when peer's "name" or "comment" is changed;
- ipsec - fixed client certificate usage when certificate is renewed with SCEP;
- ipsec - fixed multiple warning message display for peers;
- ipsec - inactivate peer's policy on disconnect;
- ipsec - refresh peer's DNS only when phase 1 is down;
- kidcontrol - allow creating static device entries without assigned user;
- leds - fixed LED type setting;
- lora - expose "joinEui" un "devEui" values in the log;
- lte - added "age" column and "max-age" parameter to "cell-monitor" (CLI only);
- lte - added "comment" parameter for APN profiles;
- lte - added support for Alcatel IK41VE1;
- ospf - optimized LSA printing for smaller message sizes;
- ppp - added "ipv6-routes" parameter to "secrets" menu;
- ppp - added support for "Framed-IPv6-Route" RADIUS attribute;
- route - improved stability when 6to4 interface is configured with disabled IPv6 package;
- snmp - added information from IPsec "active-peers" menu to MIKROTIK-MIB;
- snmp - fixed value types for "dot1dStp";
- snmp - fixed value types for "dot1qPvid";
- ssh - fixed returned output saving to file when "output-to-file" parameter is used;
- ssh - skip interactive authentication when not running in interactive mode;
- supout - added bonding interface monitor information;
- switch - fixed Ethernet padding for small packets;
- system - replace "3" in superscript to "^3" on RBD53GR devices;
- tr069-client - added additional wireless registration table parameters;
- tr069-client - added LTE model and revision parameters;
- tr069-client - added wireless "noise-floor" and "overall-tx-ccq" information parameters;
- tr069-client - added "X_MIKROTIK_MimoRSRP" parameter for LTE RSRP value reporting;
- tr069-client - allow passing LTE firmware update URL as XML;
- tr069-client - send correct "ConnectionRequestURL" when using IPv6;
- traffic-flow - added NAT event logging support for IPFIX;
- traffic-flow - added "sys-init-time" parameter support;
- user-manager - do not allow creating limitation that crosses midnight;
- webfig - fixed default value presence when creating new entries under "IP->Kid Control";
- winbox - allow performing "USB Power Reset" on "0" bus on RBM33G;
- winbox - fixed "IP->Kid Control->Devices" table automatic refreshing;
- winbox - fixed minor typo in "Users" menu;
- winbox - fixed "receive-errors" setting persistence under "Wireless/Wireless Sniffer/Settings" menu;
- winbox - fixed "tls-version" parameter setting under "IP/Services" menu;
- winbox - use health values reported by gauges for "System/Health" menu;
- wireless - create "connect-list" rule when address specified for "setup-repeater";
- wireless - improved WPS process stability;
- wireless - updated "no_country_set" regulatory domain information.
MikroTik RouterOS 6.48beta40
Дата выхода: 14 сентября 2020
Изменения:
- arm64 - improved reboot reason reporting in log;
- bridge - added minor fixes and improvements for IGMP snooping with HW offloading;
- bridge - fixed link-local multicast forwarding when IGMP snooping and HW offloading is enabled;
- bridge - fixed MDB entry removal when using bridge port "fast-leave" property;
- conntrack - automatically reduce connection tracking timeouts when table is full;
- console - allow "once" parameter for bonding monitoring;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - added switch-cpu port VLAN filtering (switch-cpu port is now mapped with bridge interface VLAN membership when vlan-filtering is enabled);
- crs3xx - fixed IGMP snooping for CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed switch "copy-to-cpu" property for CRS305, CRS318, CRS326-24G-2S+, CRS328 devices;
- detnet - fixed malformed dummy DHCP User Class option;
- detnet - use MAC address from bridge interface instead of slave port;
- dhcpv4-server - improved "client-id" value parsing;
- ipsec - refresh peer's DNS only when phase 1 is down;
- leds - fixed LED type setting;
- smb - fixed possible memory leak;
- sms - fixed SMS sending when both "interface" and "smsc" parameters are specified;
- snmp - added information from IPsec "active-peers" menu to MIKROTIK-MIB;
- snmp - fixed "/tool snmp-get" functionality (introduced in v 6.46beta43);
- snmp - fixed value types for "dot1qPvid";
- supout - added bonding interface monitor information;
- switch - fixed Ethernet padding for small packets;
- tr069-client - allow passing LTE firmware update URL as XML;
- user-manager - do not allow creating limitation that crosses midnight;
- user-manager - updated PayPal's root certificate authorities;
- wireless - improved WPS process stability.
Другие изменения относительно 6.47.3:
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved watchdog and kernel panic reporting in log after reboots on IPQ4018/IPQ4019 devices;
- bonding - added LACP monitoring (CLI only);
- bonding - removed "sys-id" and "sys-priority" from monitor-slaves command;
- bridge - added warning message when port is disabled by the BPDU guard;
- bridge - allow to exclude interfaces from extended ports (CLI only);
- bridge - correctly remove dynamic VLAN assignment for bridge ports;
- bridge - fixed BPDU guard port disable/enable on HW offloaded interfaces;
- bridge - fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- bridge - fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- bridge - fixed local MAC address removal from host table when deleting bridge interface;
- bridge - fixed multicast table printing;
- bridge - fixed packet forwarding for CAP and BCP controlled interfaces (introduced in v6.48beta12);
- bridge - fixed STP alternate and backup port states for devices with switch chip (introduced in v6.47);
- bridge - improved BPDU guard logging;
- bridge - increased multicast table size to 4K entries;
- bridge - show error when switch do not support controlling bridge or port extension (CLI only);
- bridge - show "H" flag for extended bridge ports;
- certificate - clear challenge password on renew;
- chr - improved interface loading on startup on XEN;
- chr - improved system stability when changing flow control settings on e1000;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - fixed "custom-drop-packet" and "not-learned" switch stats for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed duplicate host entries when creating static switch hosts;
- crs3xx - fixed "mirror-source" property on switch port disable for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation for "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation removal for "switch-cpu" port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed "storm-rate" traffic limiting for switch-cpu port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed switch "not-learned" stats for CRS305, CRS326-24G-2S+, CRS328-24P-4S+, CRS328-4C-20S-4S+, CRS318 devices;
- crs3xx - fixed switch port "egress-rate" removal for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed VLAN tagged packet forwarding on "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices (introduced in v6.48beta12);
- defconf - improved CAP interface bridging;
- defconf - improved default configuration generation on devices with non-default wireless interface names;
- defconf - improved default configuration generation on devices without wireless package installed;
- dhcpv6-server - added ability to generate binding on first request;
- discovery - added "lldp-med-net-policy-vlan" property for assigning VLAN ID (CLI only);
- discovery - allow choosing which discovery protocol is used (CLI only);
- discovery - fixed discovery on mesh ports;
- discovery - fixed discovery packet sending on newly bridged port with "protocol-mode=none";
- discovery - fixed discovery when enabled only on master port;
- discovery - send the same "Chassis ID" on all interfaces for LLDP packets;
- discovery - use interface MAC address when sending MNDP from slave port;
- dns - added IPv6 support for DoH;
- dns - do not use type "A" for static entries with unspecified type;
- dns - fixed listening for DNS queries when only dynamic static entries exist (introduced in v6.47);
- export - fixed RouterBOARD USB "type" parameter export;
- fetch - fixed "src-address" usage for SFTP;
- filesystem - fixed repartition on non-first partition;
- filesystem - fixed repartition on RB4011 series devices;
- filesystem - improved long-term filesystem stability and data integrity;
- gps - fixed "init-channel" release when not used;
- health - changed PSU state parameter type to read-only;
- health - removed unused "heater-control" and "heater-threshold" parameters;
- hotspot - added support for captive portal advertising using DHCP (RFC7710);
- hotspot - added "vlan-id" parameter support for hosts and HTML pages;
- hotspot - ignore packets from host while MAC authentication is in progress;
- hotspot - improved management service stability when receiving bogus packets;
- ike1 - allow using "my-id" parameter with XAuth;
- ike1 - fixed policy update with and without mode configuration;
- ike1 - rekey phase 1 as responder for Windows initiators;
- ike2 - added "prf-algorithm" support for phase 1;
- ike2 - improved child SA rekeying process;
- ipsec - added SHA384 hash algorithm support for phase 1 (CLI only);
- ipsec - do not kill connection when peer's "name" or "comment" is changed;
- ipsec - fixed client certificate usage when certificate is renewed with SCEP;
- ipsec - fixed multiple warning message display for peers;
- ipsec - inactivate peer's policy on disconnect;
- ipsec - refresh peer's DNS only when phase 1 is down;
- kidcontrol - allow creating static device entries without assigned user;
- kidcontrol - fixed "time-unlimited-rate" to engage in correct time;
- lora - expose "joinEui" un "devEui" values in the log;
- lte - added "age" column and "max-age" parameter to "cell-monitor" (CLI only);
- lte - added "comment" parameter for APN profiles;
- lte - added support for Alcatel IK41VE1;
- ospf - optimized LSA printing for smaller message sizes;
- ppp - added "ipv6-routes" parameter to "secrets" menu;
- ppp - added support for "Framed-IPv6-Route" RADIUS attribute;
- route - improved stability when 6to4 interface is configured with disabled IPv6 package;
- snmp - fixed value types for "dot1dStp";
- ssh - fixed returned output saving to file when "output-to-file" parameter is used;
- ssh - skip interactive authentication when not running in interactive mode;
- system - replace "3" in superscript to "^3" on RBD53GR devices;
- tr069-client - added additional wireless registration table parameters;
- tr069-client - added LTE model and revision parameters;
- tr069-client - added wireless "noise-floor" and "overall-tx-ccq" information parameters;
- tr069-client - added "X_MIKROTIK_MimoRSRP" parameter for LTE RSRP value reporting;
- tr069-client - allow passing LTE firmware update URL as XML;
- tr069-client - send correct "ConnectionRequestURL" when using IPv6;
- traffic-flow - added NAT event logging support for IPFIX;
- traffic-flow - added "sys-init-time" parameter support;
- webfig - fixed default value presence when creating new entries under "IP->Kid Control";
- winbox - allow performing "USB Power Reset" on "0" bus on RBM33G;
- winbox - fixed "IP->Kid Control->Devices" table automatic refreshing;
- winbox - fixed minor typo in "Users" menu;
- winbox - fixed "receive-errors" setting persistence under "Wireless/Wireless Sniffer/Settings" menu;
- winbox - fixed "tls-version" parameter setting under "IP/Services" menu;
- winbox - use health values reported by gauges for "System/Health" menu;
- wireless - added support for U-NII-2 for wAP ac;
- wireless - create "connect-list" rule when address specified for "setup-repeater";
- wireless - updated "canada" regulatory domain information;
- wireless - updated "no_country_set" regulatory domain information;
- wireless - updated "united states" regulatory domain information.
MikroTik RouterOS 6.48beta35
Дата выхода: 2 сентября 2020
Изменения:
- bonding - removed "sys-id" and "sys-priority" from monitor-slaves command;
- bridge - fixed BPDU guard port disable/enable on HW offloaded interfaces;
- bridge - fixed host table update on SNMP query;
- bridge - fixed multicast table printing;
- bridge - fixed packet forwarding for CAP and BCP controlled interfaces (introduced in v6.48beta12);
- bridge - fixed STP alternate and backup port states for devices with switch chip (introduced in v6.47);
- bridge - increased multicast table size to 4K entries;
- crs3xx - fixed "mirror-source" property on switch port disable for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation for "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed port isolation removal for "switch-cpu" port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed "storm-rate" traffic limiting for switch-cpu port on CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed switch ACL rules for CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed switch port "egress-rate" removal for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices;
- crs3xx - fixed VLAN tagged packet forwarding on "switch-cpu" port for CRS305, CRS326-24G-2S+, CRS328, CRS318 devices (introduced in v6.48beta12);
- defconf - improved CAP interface bridging;
- defconf - improved default configuration generation on devices without wireless package installed;
- discovery - added "lldp-med-net-policy-vlan" property for assigning VLAN ID (CLI only);
- discovery - allow choosing which discovery protocol is used (CLI only);
- discovery - fixed discovery on mesh ports;
- discovery - fixed discovery packet sending on newly bridged port with "protocol-mode=none";
- discovery - fixed discovery when enabled only on master port;
- discovery - use interface MAC address when sending MNDP from slave port;
- dns - added IPv6 support for DoH;
- dns - fixed multiple TXT string replies;
- dns - hide default static entry "type" from export;
- fetch - fixed "src-address" usage for SFTP;
- filesystem - improved long-term filesystem stability and data integrity;
- health - removed unused "heater-control" and "heater-threshold" parameters;
- hotspot - added support for captive portal advertising using DHCP (RFC7710);
- hotspot - improved management service stability when receiving bogus packets;
- ike2 - fixed local side NAT detection;
- ipsec - do not kill connection when peer's "name" or "comment" is changed;
- ipsec - refresh peer's DNS only when phase 1 is down;
- lte - added support for Alcatel IK41VE1;
- snmp - fixed value types for "dot1dStp";
- tr069-client - send correct "ConnectionRequestURL" when using IPv6;
- traffic-flow - added "sys-init-time" parameter support;
- wireless - allow setting "tx-power" up to 40.
Другие изменения относительно 6.47.2:
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved watchdog and kernel panic reporting in log after reboots on IPQ4018/IPQ4019 devices;
- bonding - added LACP monitoring (CLI only);
- bridge - added warning message when port is disabled by the BPDU guard;
- bridge - allow to exclude interfaces from extended ports (CLI only);
- bridge - correctly remove dynamic VLAN assignment for bridge ports;
- bridge - fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- bridge - fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- bridge - fixed host table update on SNMP query;
- bridge - fixed local MAC address removal from host table when deleting bridge interface;
- bridge - improved BPDU guard logging;
- bridge - show error when switch do not support controlling bridge or port extension (CLI only);
- bridge - show "H" flag for extended bridge ports;
- certificate - clear challenge password on renew;
- chr - improved interface loading on startup on XEN;
- chr - improved system stability when changing flow control settings on e1000;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - fixed "custom-drop-packet" and "not-learned" switch stats for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed duplicate host entries when creating static switch hosts;
- crs3xx - fixed hardware offloaded MPLS forwarding when using bonding interfaces;
- crs3xx - fixed switch "not-learned" stats for CRS305, CRS326-24G-2S+, CRS328-24P-4S+, CRS328-4C-20S-4S+, CRS318 devices;
- crs3xx - improved Ethernet port group traffic forwarding for CRS354 devices;
- crs3xx - improved system stability when using hardware offloaded MPLS;
- defconf - improved default configuration generation on devices with non-default wireless interface names;
- dhcpv6-server - added ability to generate binding on first request;
- discovery - send the same "Chassis ID" on all interfaces for LLDP packets;
- dns - do not use type "A" for static entries with unspecified type;
- dns - fixed listening for DNS queries when only dynamic static entries exist (introduced in v6.47);
- dot1x - fixed duplicate EAP request packets for server;
- dot1x - fixed EAP packet version numbering;
- export - fixed RouterBOARD USB "type" parameter export;
- filesystem - fixed repartition on non-first partition;
- filesystem - fixed repartition on RB4011 series devices;
- filesystem - improved long-term filesystem stability and data integrity;
- gps - fixed "init-channel" release when not used;
- health - changed PSU state parameter type to read-only;
- health - removed unused "heater-control" and "heater-threshold" parameters;
- hotspot - added "vlan-id" parameter support for hosts and HTML pages;
- hotspot - ignore packets from host while MAC authentication is in progress;
- ike1 - allow using "my-id" parameter with XAuth;
- ike1 - fixed policy update with and without mode configuration;
- ike1 - rekey phase 1 as responder for Windows initiators;
- ike2 - added "prf-algorithm" support for phase 1;
- ike2 - improved child SA rekeying process;
- ipsec - added SHA384 hash algorithm support for phase 1 (CLI only);
- ipsec - fixed client certificate usage when certificate is renewed with SCEP;
- ipsec - fixed multiple warning message display for peers;
- ipsec - inactivate peer's policy on disconnect;
- kidcontrol - allow creating static device entries without assigned user;
- kidcontrol - fixed "time-unlimited-rate" to engage in correct time;
- lora - expose "joinEui" un "devEui" values in the log;
- lte - added "age" column and "max-age" parameter to "cell-monitor" (CLI only);
- lte - added "comment" parameter for APN profiles;
- lte - added "comment" parameter for APN profiles (CLI only);
- lte - fixed multiple passthrough APN default route installation;
- lte - fixed RSCP value reporting;
- lte - validate interface existence on initiation;
- ospf - fixed disappearing NSSA default route;
- ospf - fixed processing of "unknown" LSA type;
- ospf - optimized LSA printing for smaller message sizes;
- poe - fixed "power-cycle" functionality on RB960GSP;
- ppp - added "ipv6-routes" parameter to "secrets" menu;
- ppp - added support for "Framed-IPv6-Route" RADIUS attribute;
- route - improved stability when 6to4 interface is configured with disabled IPv6 package;
- routerboot - fixed etherboot FCS errors with 100Mbps rate for CRS309, CRS317 devices ("/system routerboard upgrade" required);
- ssh - fixed returned output saving to file when "output-to-file" parameter is used;
- ssh - skip interactive authentication when not running in interactive mode;
- system - replace "3" in superscript to "^3" on RBD53GR devices;
- tr069-client - added additional wireless registration table parameters;
- tr069-client - added LTE model and revision parameters;
- tr069-client - added wireless "noise-floor" and "overall-tx-ccq" information parameters;
- tr069-client - added "X_MIKROTIK_MimoRSRP" parameter for LTE RSRP value reporting;
- tr069-client - allow passing LTE firmware update URL as XML;
- traffic-flow - added NAT event logging support for IPFIX;
- webfig - fixed default value presence when creating new entries under "IP->Kid Control";
- webfig - fixed negative value usage in "spoof-gps" parameter (introduced in v6.47.1);
- winbox - allow performing "USB Power Reset" on "0" bus on RBM33G;
- winbox - fixed "IP->Kid Control->Devices" table automatic refreshing;
- winbox - fixed minor typo in "Users" menu;
- winbox - fixed "receive-errors" setting persistence under "Wireless/Wireless Sniffer/Settings" menu;
- winbox - fixed "tls-version" parameter setting under "IP/Services" menu;
- winbox - use health values reported by gauges for "System/Health" menu;
- wireless - added support for U-NII-2 for wAP ac;
- wireless - create "connect-list" rule when address specified for "setup-repeater";
- wireless - updated "canada" regulatory domain information;
- wireless - updated "no_country_set" regulatory domain information;
- wireless - updated "united states" regulatory domain information.
MikroTik RouterOS 6.48beta27
Дата выхода: 18 августа 2020
Изменения:
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved stability when forcing 25G speed on unsupported interface;
- bridge - allow to exclude interfaces from extended ports (CLI only);
- bridge - fixed host table update on SNMP query;
- bridge - show error when switch do not support controlling bridge or port extension (CLI only);
- bridge - show "H" flag for extended bridge ports;
- certificate - clear challenge password on renew;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - fixed "custom-drop-packet" and "not-learned" switch stats for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices;
- crs3xx - fixed hardware offloaded MPLS forwarding when using bonding interfaces;
- crs3xx - fixed QSFP+ interface LEDs when using break-out cable for CRS326-24S+2Q+;
- crs3xx - fixed QSFP+ interface linking after reboot for CRS326-24S+2Q+ (introduced in v6.47);
- crs3xx - fixed switch "not-learned" stats for CRS305, CRS326-24G-2S+, CRS328-24P-4S+, CRS328-4C-20S-4S+, CRS318 devices;
- crs3xx - improved Ethernet port group traffic forwarding for CRS354 devices;
- crs3xx - improved system stability when using hardware offloaded MPLS;
- defconf - improved default configuration generation on devices with non-default wireless interface names;
- discovery - send the same "Chassis ID" on all interfaces for LLDP packets;
- discovery - use "static" interface list by default instead of "!dynamic";
- dot1x - fixed duplicate EAP request packets for server;
- dot1x - fixed EAP packet version numbering;
- fetch - show status "uploaded" instead of "downloaded" when uploading a file;
- filesystem - fixed repartition on non-first partition;
- filesystem - fixed repartition on RB4011 series devices;
- filesystem - improved long-term filesystem stability and data integrity;
- gps - fixed "init-channel" release when not used;
- health - changed PSU state parameter type to read-only;
- health - removed unused "heater-control" and "heater-threshold" parameters;
- hotspot - added "vlan-id" parameter support for hosts and HTML pages;
- hotspot - do not verify Hotspot interface status when detecting if HTTP/HTTPS login method is allowed;
- hotspot - ignore packets from host while MAC authentication is in progress;
- interface - added new builtin "static" interface list;
- ipsec - fixed client certificate usage when certificate is renewed with SCEP;
- kidcontrol - fixed "time-unlimited-rate" to engage in correct time;
- l2tp - fixed multiple tunnel establishment from the same remote IP address (introduced in v6.47);
- lora - expose "joinEui" un "devEui" values in the log;
- lora - fixed "spoof-gps" parameter padding (introduced in v6.47.1);
- lte - added "comment" parameter for APN profiles;
- lte - fixed dynamic DHCP client creation when editing APN profile;
- lte - fixed multiple passthrough APN default route installation;
- lte - fixed RSCP value reporting;
- lte - validate interface existence on initiation;
- ospf - fixed case when changing one distribution metric changed metrics for other distribution options;
- ospf - fixed disappearing NSSA default route;
- ospf - fixed processing of "unknown" LSA type;
- ospf - optimized LSA printing for smaller message sizes;
- poe - fixed "power-cycle" functionality on RB960GSP;
- ppp - fixed PPP interface editing for the first time after reboot or after 20 seconds;
- routerboot - fixed etherboot FCS errors with 100Mbps rate for CRS309, CRS317 devices ("/system routerboard upgrade" required);
- routerboot - fixed memory test on CCR2004-1G-12S+2XS ("/system routerboard upgrade" required);
- sfp - stabilized CRS212 SFP port functionality and improved monitoring of optical modules;
- sftp - fixed "flash" directory access (introduced in v6.46);
- smb - fixed file path validation (introduced in v6.46);
- snmp - fixed "current" value reporting on CCR series devices;
- snmp - fixed "fan-speed" value reporting on CCR series devices;
- ssh - skip interactive authentication when not running in interactive mode;
- tr069-client - added additional wireless registration table parameters;
- tr069-client - added wireless "noise-floor" and "overall-tx-ccq" information parameters;
- traffic-flow - added NAT event logging support for IPFIX;
- webfig - fixed default value presence when creating new entries under "IP->Kid Control";
- webfig - fixed negative value usage in "spoof-gps" parameter (introduced in v6.47.1);
- wireless - added support for U-NII-2 for cAP ac;
- wireless - added support for U-NII-2 for wAP ac;
- wireless - updated "canada" regulatory domain information;
- wireless - updated "indonesia5" regulatory domain information;
- wireless - updated "no_country_set" regulatory domain information;
- wireless - updated "united states" regulatory domain information;
- www - improved WWW service stability when receiving bogus packets.
Другие изменения относительно 6.47.1:
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved watchdog and kernel panic reporting in log after reboots on IPQ4018/IPQ4019 devices;
- bonding - added LACP monitoring (CLI only);
- bridge - added warning message when port is disabled by the BPDU guard;
- bridge - correctly remove dynamic VLAN assignment for bridge ports;
- bridge - fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- bridge - fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- bridge - fixed local MAC address removal from host table when deleting bridge interface;
- bridge - improved BPDU guard logging;
- chr - improved interface loading on startup on XEN;
- chr - improved system stability when changing flow control settings on e1000;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - fixed duplicate host entries when creating static switch hosts;
- dhcpv6-server - added ability to generate binding on first request;
- dns - do not use type "A" for static entries with unspecified type;
- dns - fixed listening for DNS queries when only dynamic static entries exist (introduced in v6.47);
- export - fixed RouterBOARD USB "type" parameter export;
- fetch - show status "uploaded" instead of "downloaded" when uploading a file;
- filesystem - improved long-term filesystem stability and data integrity;
- ike1 - allow using "my-id" parameter with XAuth;
- ike1 - fixed policy update with and without mode configuration;
- ike1 - rekey phase 1 as responder for Windows initiators;
- ike2 - added "prf-algorithm" support for phase 1;
- ike2 - improved child SA rekeying process;
- ipsec - added SHA384 hash algorithm support for phase 1 (CLI only);
- ipsec - fixed multiple warning message display for peers;
- ipsec - inactivate peer's policy on disconnect;
- kidcontrol - allow creating static device entries without assigned user;
- lte - added "age" column and "max-age" parameter to "cell-monitor" (CLI only);
- lte - added "comment" parameter for APN profiles (CLI only);
- ppp - added "ipv6-routes" parameter to "secrets" menu;
- ppp - added support for "Framed-IPv6-Route" RADIUS attribute;
- qsfp - fixed break-out cable linking after reboot (introduced in v6.47);
- route - improved stability when 6to4 interface is configured with disabled IPv6 package;
- smb - fixed possible memory leak;
- smb - fixed SMB server (introduced in v6.47);
- smb - limit active session count to 5 per connection;
- ssh - fixed returned output saving to file when "output-to-file" parameter is used;
- system - replace "3" in superscript to "^3" on RBD53GR devices;
- tr069-client - added LTE model and revision parameters;
- tr069-client - added "X_MIKROTIK_MimoRSRP" parameter for LTE RSRP value reporting;
- tr069-client - allow passing LTE firmware update URL as XML;
- winbox - allow performing "USB Power Reset" on "0" bus on RBM33G;
- winbox - fixed "IP->Kid Control->Devices" table automatic refreshing;
- winbox - fixed minor typo in "Users" menu;
- winbox - fixed "receive-errors" setting persistence under "Wireless/Wireless Sniffer/Settings" menu;
- winbox - fixed "tls-version" parameter setting under "IP/Services" menu;
- winbox - use health values reported by gauges for "System/Health" menu;
- wireless - create "connect-list" rule when address specified for "setup-repeater".
MikroTik RouterOS 6.48beta12
Дата выхода: 6 июля 2019
Изменения:
- arm - added support for automatic CPU frequency stepping for IPQ4018/IPQ4019 devices;
- arm - improved watchdog and kernel panic reporting in log after reboots on IPQ4018/IPQ4019 devices;
- bonding - added LACP monitoring (CLI only);
- bridge - added warning message when port is disabled by the BPDU guard;
- bridge - correctly remove dynamic VLAN assignment for bridge ports;
- bridge - fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- bridge - fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- bridge - fixed local MAC address removal from host table when deleting bridge interface;
- bridge - improved BPDU guard logging;
- chr - improved interface loading on startup on XEN;
- chr - improved system stability when changing flow control settings on e1000;
- crs3xx - added initial Bridge Port Extender support (CLI only);
- crs3xx - added initial Controlling Bridge support for CRS317, CRS309, CRS312, CRS326-24S+2Q+ and CRS354 devices (CLI only);
- crs3xx - fixed duplicate host entries when creating static switch hosts;
- crs3xx - fixed HW offloading for netPower 15FR and netPower 16P devices (introduced in v6.47);
- crs3xx - fixed increased CPU temperature for CRS354-48G-4S+2Q+ device (introduced in v6.47);
- crs3xx - improved Ethernet port group traffic forwarding for CRS354 devices;
- defconf - fixed default configuration loading on RBmAPL-2nD;
- defconf - improved default configuration generation on devices with changed wireless interface names;
- dhcpv6-server - added ability to generate binding on first request;
- dhcpv6-server - disallow changing binding's "prefix-pool";
- dhcpv6-server - improved stability when changing server for static bindings;
- dns - do not allow setting "forward-to" same as "name" or "regex";
- dns - do not allow setting zero value IP addresses for "A" and "AAAA" records;
- dns - do not use DoH for local queries when a server is specified;
- dns - do not use type "A" for static entries with unspecified type;
- dns - fixed listening for DNS queries when only dynamic static entries exist (introduced in v6.47);
- export - fixed HotSpot "address-per-mac" parameter export;
- export - fixed RouterBOARD USB "type" parameter export;
- fetch - show status "uploaded" instead of "downloaded" when uploading a file;
- filesystem - fixed increased "sector writes" reporting (introduced in v6.47);
- filesystem - improved long-term filesystem stability and data integrity;
- ftp - fixed possible buffer overflow;
- ike1 - allow using "my-id" parameter with XAuth;
- ike1 - fixed policy update with and without mode configuration;
- ike1 - rekey phase 1 as responder for Windows initiators;
- ike2 - added "prf-algorithm" support for phase 1;
- ike2 - fixed initiator child SA init without policy;
- ike2 - fixed policy reference for pending acquire;
- ike2 - improved child SA rekeying process;
- ike2 - retry RSA signature validation with deduced digest from certificate;
- ipsec - added SHA384 hash algorithm support for phase 1 (CLI only);
- ipsec - do not update peer endpoints for generated policy entries (introduced in v6.47);
- ipsec - fixed multiple warning message display for peers;
- ipsec - inactivate peer's policy on disconnect;
- kidcontrol - allow creating static device entries without assigned user;
- lora - added "spoof-gps" parameter for fake GPS coordinate sending;
- lora - fixed JSON statistics inaccuracies;
- lte - added "age" column and "max-age" parameter to "cell-monitor" (CLI only);
- lte - added "comment" parameter for APN profiles (CLI only);
- lte - added support for MTS 8810FT;
- lte - fixed modem initialization when multiple modems are used simultaneously;
- lte - fixed PDP authentication configuration for SIM7600;
- metarouter - fixed image importing (introduced in v6.46);
- ospf - improved route tag processing for OSPFv3;
- ppp - added "ipv6-routes" parameter to "secrets" menu;
- ppp - added support for "Framed-IPv6-Route" RADIUS attribute;
- ppp - allow specifying pool name for "remote-ipv6-prefix-pool" parameter;
- profile - fixed "unclassified" load reporting on PowerPC devices (introduced in v6.47);
- qsfp - fixed auto-negotiation status;
- qsfp - fixed break-out cable linking after reboot (introduced in v6.47);
- qsfp - ignore FEC mode when set to fec91, only fec74 mode is supported (introduced in v6.47);
- route - improved stability when 6to4 interface is configured with disabled IPv6 package;
- routerboard - fixed "mode-button" support on SMIPS devices (introduced in v6.47);
- routerboard - fixed "reset-button" menu presence on all devices;
- smb - fixed possible memory leak;
- smb - fixed SMB server (introduced in v6.47);
- smb - limit active session count to 5 per connection;
- ssh - fixed returned output saving to file when "output-to-file" parameter is used;
- supout - added "LoRa" section to supout file;
- switch - fixed MAC address learning on switch-cpu port for Atheros8316, Atheros8227 and Atheros7240 switch chips;
- system - replace "3" in superscript to "^3" on RBD53GR devices;
- tr069-client - added LTE model and revision parameters;
- tr069-client - added "X_MIKROTIK_MimoRSRP" parameter for LTE RSRP value reporting;
- tr069-client - allow passing LTE firmware update URL as XML;
- w60g - added "mdmg-fix" parameter for RBwAP60Gx3 (CLI only);
- winbox - allow performing "USB Power Reset" on "0" bus on RBM33G;
- winbox - fixed flag displaying under "IP/DNS/Static" table;
- winbox - fixed "IP->Kid Control->Devices" table automatic refreshing;
- winbox - fixed minor typo in "BGP/Peer" menu;
- winbox - fixed minor typo in "Users" menu;
- winbox - fixed "receive-errors" setting persistence under "Wireless/Wireless Sniffer/Settings" menu;
- winbox - fixed "tls-version" parameter setting under "IP/Services" menu;
- winbox - hide irrelevant switch port parameters;
- winbox - use health values reported by gauges for "System/Health" menu;
- wireless - changed "station-roaming" default setting from "enabled" to "disabled";
- wireless - create "connect-list" rule when address specified for "setup-repeater";
- wireless - updated "bangladesh" regulatory domain information;
- wireless - updated "egypt" regulatory domain information.
Полезные материалы по MikroTik
Углубленный курс "Администрирование сетевых устройств MikroTik" Онлайн-курс по MikroTik с дипломом государственного образца РФ. Много лабораторных работ с проверкой официальным тренером MikroTik. С нуля и до уровня MTCNA.
На Telegram-канале Mikrotik сэнсей можно получить доступ к закрытой информации от официального тренера MikroTik. Подписывайтесь