MikroTik Changelog Tracker

Search changelog entries

6.37 Stable 2016-Sep-23 (9 years ago)
Component Change
capsman fixed kernel crash on cap while changing client-to-client forwarding;
capsman report radio-name in registration table;
certificate do not allow to remove certificate template while signing certificate;
console hotspot setup show wrong certificate name;
defconf fixed default configuration restore if virtual wireless interface were present;
defconf fixed default configuration when wireless package is used;
defconf using caps button now forces all wireless interfaces in caps mode;
dhcpv6 improved interface status tracking;
dhcpv6 reworked DHCP-PD server interface and route management;
dhcpv6 update DUID when system-id changes (solves problem when cloned VM retains the same DUID);
dns fixed crash when using regexp static dns entries;
ethernet added support for LAN9514 ethernet dongle;
ethernet allow to force mtu value when actual-mtu is already the same;
ethernet fixed loop-protect on bridged ports;
ethernet fixed never ending loop in CDP packet processing;
ethernet fixed rare kernel failure on non-switch ethernet reset;
ethernet rb44ge now have disabled-running-check=no by default;
firewall added additional matchers for firewall raw rules;
firewall fixed time based rules on time/timezone changes (again);
gps always check NMEA checksum if available;
health do not show psu and fan information for passive cooling devices;
hotspot show comments from user menu also in active menu;
ipsec fixed crash with enabled fragmentation;
ipsec fixed dynamic policy not deleted on disconnect for nat-t peers;
ipsec fixed fragmentation use negotiation;
ipsec fixed kernel crash when sha512 was used;
ipv6 fixed RA and RS processing on new interfaces after many interfaces have lost link during prolonged operation;
ipv6 improved system responsiveness when ipv6 routes are frequently modified;
ipv6 show multiple neighbors with the same address;
kvm fix add/remove of disabled interfaces;
kvm fixed guest crashing when using mtu bigger than 1504;
l2tp fixed kernel failure when fastpath handles l2tp packets;
leds added option to disable all leds on RBcAP2n;
lte added ability to send/receive sms using '/tool sms';
lte added dlink dwm-157 D, dwm-222 support;
lte added huawei me909s variant;
lte added initial deregistration only for bandrich modems;
lte added logging for usb config switching;
lte added Pantech UML295, Vodafone K4201-Z, ZTE MF823/MF831 support;
lte added rndis for ZTE MF8xx;
lte added support for more dlink dwm-222 configurations;
lte added switch for Huawei K5160;
lte added zte K5008-Z back;
lte adjusted usb config for dlink dwm-157 D;
lte fixed at chat condition storage;
lte fixed band setting for sxt lte;
lte fixed band unsetting;
lte fixed default channels for dlink dwm-157;
lte fixed ip activation when CREG (circuit switched) state remains in not registered state;
lte fixed setting correct lte band for sxt lte;
lte process initial state change to deregistred, when lockup occurs;
lte reset if sms storage set fails;
mpls fixed memory leak;
mpls fixed vpls throughput issues caused by out-of-order packets;
ntp fixed ntp server when local-clock used (like usb gps module);
partitions added ability to add comments;
ppp use default-route-distance when adding ipv6 default route;
ppp,lte pin is now converted to string argument;
pppoe fixed disconnects by idle timeout when fastpath is used;
quickset added 2GHz-g/n band support;
quickset fixed guest reporting in "home ap dual" mode;
quickset fixed wireless frequency fields in "home ap dual" mode;
rb3011 fixed rare occasions when router would hang while loading kernel;
routing improved kernel performance in setups with large routing tables;
sfp enabled eeprom printout in /interface ethernet monitor;
sfp fixed initial eeprom reading on CCR1036-8G-2S+ and CCR1072-1G-8S+;
sfp removed "sfp-rate-select" as command was not relevant to currently supported hardware;
sms moved incorrectly logged message from async to gsm topic;
sms report error when unsupported modem is being used;
snmp added script table which executes script and returns it's output on get request;
snmp require write permitions for script run table access;
snmp skip forbidden oids on getnext completion;
sstp allow to specify proxy by dns name;
sstp now supports TLS_ECDHE algorithms;
supout fixed bug that could cause enormous size supout.rif files;
supout improved crash report generation for tile architecture;
switch added comment field for CRS switch VLANs;
traffic-flow allow ipv6 src address to be optional;
traffic-flow fixed IPFIX packet timestamp;
traffic-flow fixed IPFIX wrong flow sequence;
trafficgen add per stream packet count setting;
trafficgen show out-of-order packet counters in stats printouts;
tunnel fixed communication via tunnel to router itself if fastpath was active;
tunnel fixed ipv6 link-local address adding for gre;
tunnel increased minimal MRRU to 1500 for PPP interfaces;
tunnel ipv6 link-local address is now generated from tunnel local-address;
usb added support for SMSC95XX USB Ethernet dongle on mipsbe;
usermanager fixed rare crash on paypal payment;
users fixed script policy checking against user policies when running scripts;
webfig do not crash if radius server does not give out encryption keys;
webfig fixed certificate signing;
winbox added auto refresh for BFD neighbors;
winbox added comment field support for switch vlan menu;
winbox added default-authentication parameter for wireless station modes;
winbox added src-address field for traffic-flow target;
winbox adjust on-event field dynamically depending on window size;
winbox adjusted allowed values for http-proxy field;
winbox disabled MRRU by default for PPP interfaces;
winbox display actual-mtu for tunnels in interfaces window;
winbox fixed disconnect when no windows were opened for a while in unsecure mode;
winbox fixed multiline read only fields not displaying new line characters;
winbox fixed raw firewall showing jump targets from filter chains;
winbox hide ethernet flow control settings for interfaces which does not support them;
winbox removed health menu from devices that do not support it;
winbox removed L2MTU field for PPP interfaces;
winbox removed L2MTU field from PPP server binding settings;
winbox removed unset button for L2MTU field;
winbox show firmware-type in routerboard window;
wireless display DFS flag in country info;
wireless improved driver support for RB953, hAP ac, wAP ac;
wireless send deauth to data frames in scan mode.
wireless updated brazil country settings;
6.36.3 Stable 2016-Sep-05 (9 years ago)
Component Change
arp fixed crash that caused Ethernet frames to go out via wrong interface;
fastpath fixed kernel crash on interface disable/remove;
fetch fixed bug with incomplete files in https mode;
ipsec don't log authtype mismatch as critical;
ipsec fixed xauth parameter printing in terminal;
pppoe fixed kernel crash caused by dial-on-demand when used with fastpath;
pppoe fixed master interface l2mtu check, could result in assumption that master interface can handle 14 byte bigger packet than it actually can (broken in 6.36);
simple queues fixed issue which caused additional/unnecessary CPU load;
tile fixed rare kernel crash when usb device is being attached;
vlan do not allow to add new vlan interface with mtu higher than l2mtu;
6.36.2 Stable 2016-Aug-22 (9 years ago)
Component Change
arm show cpu frequency under resources menu;
capsman fixed upgrade policy;
ccr/crs fixed SFP+ interface ddmi info reporting function. Info is now refreshed on regular intervals;
conntrack fixed ipv6 timeout display;
conntrack fixed removing icmpv6 connections;
dns avoid unnecessary dynamic server address saving in storage;
dns allow to set query-server-timeout and query-total-timeout only greater than 0s;
dns fixed lockup when dynamic dns server address 0.0.0.0 was received;
export updated default values in /system routerboard settings menu;
partitions fixed crash on repartition when there is not enough free space;
sstp fixed disconnects on transmit for multicore systems;
switch fixed configuration reload on CRS switches;
winbox make queue tree default queue type default-small;
6.36.1 Stable 2016-Aug-05 (9 years ago)
Component Change
address-list allow DNS names with "_" symbol;
address-list check for duplicates when domain name is used in address field;
bridge fixed kernel failure when set-priority action was used in bridge firewall;
dns avoid unnecessary static entry saving in storage;
email increased time which email tool can spend while sending message;
export removed unnecessary "log-prefix" on firewall export;
firewall fixed time based rules on time/timezone changes;
log logs loaded from disk after reboot didn't have correct topics;
lte fixed access technology update;
ovpn add special exception route for tunnel itself when using add-default-route;
ping fixed freezing on "not running" interfaces;
resource fixed free-memory reporting after disk eject;
snmp fixed packet corruption when multiple trap-targets were used;
tile fixed rare kernel crash when fastpath is being active;
traffic-flow fixed kernel failure when traffic-flow target uses small mtu;
upnp fixed nat rule dst-port by making it visible again;
upnp updated to make it work with more UPnP implementations (for example, latest Skype);
vrrp fixed transition to backup state when ipv6 mode and equal priorities are used;
webfig allowed user password changing (broken in v6.36);
x86 fixed crash when igmp-proxy interface becomes "not running" while passing traffic;
6.36 Stable 2016-Jul-20 (9 years ago)
Component Change
address allow multiple equal ip addresses to be added if neither or only one is enabled;
address-list make "dynamic=yes" as read-only option;
arm added Dude server support;
arm fixed kernel failure on low memory;
arp added arp-timeout option per interface;
bonding fixed 802.3ad load balancing mode over tunnels ;
bonding fixed bonding primary slave assignment for ovpn interfaces after startup;
bonding fixed crash on RoMON traffic transmit;
bonding implemented l2mtu value == smallest slave interfaces l2mtu;
capsman fixed crash when running over ovpn;
certificate added automatic scep renewal delay after startup to avoid all requests accessing CA at the same time;
certificate cancel pending renew when certificate becomes valid after date change;
certificate display issuer and subject on check failure;
certificate do not exit after card-verify;
certificate force scep renewal on system clock updates;
chr fixed CHR seeing its own system disk mounted as additional data disk;
clock fixed time keeping for SXT ac, 911L, cAP, mAP lite, wAP;
clock save current time to configuration once per day even if there are no time zone adjustments pending;
cloud fixed export order;
console fixed get false function;
console show message time in echo log messages;
defconf changed channel extension to 20/40/80mhz for all ac boards;
dhcp-pd correct server listing for commands;
dhcp-server fixed radius framed route addition after reboot on client renew;
dhcpv6-client fixed ia lifetime validation when it is set by dhcpv6 client;
dhcpv6-relay set packet link-address only when it is manually configured;
dhcpv6-server fixed binding last-seen update;
disk added support for Plextor PX-G128M6e(A) SSD on CCR1072;
dude (changes discussed here: http://forum.mikrotik.com/viewtopic.php?f=8&t=110428);
dude server package is now made smaller. client side content upgrade is now removed from it and is downloaded straight from our cloud. So workstations on which client is used will require access to wan. Alternatively upgrade must be done by reinstalling the client on each new release;
email fixed send from winbox;
email removed subject and body length limit;
ethernet fixed incorrect ether1 link speed after reboot on rb4xx series routers;
ethernet fixed memory leak when setting interface without changing configuration;
fastpath fixed kernel failure when fastpath handles packet with multicast dst-address;
fetch support tls host name extension;
firewall added "/interface list" menu which allows to create list of interfaces which can be used as in/out-interface-list matcher in firewall and use as a filter in traffic-flow;
firewall added pre-connection tracking filter - "raw" table, that allow to protect connection-tracking from unnecessary traffic;
firewall allow to add domain name to address-lists (dynamic entries for resolved addresses will be added to specified list);
firewall added udplite, dccp, sctp connection tracking helpers;
firewall do not show disabled=no in export;
firewall fixed spelling in built-in firewall commentary;
gps fixed longitude seconds part;
health fixed broken factory voltage calibration data for some hAP ac boards;
health fixed incorrect voltage after reboot on RB2011UAS;
icmp fixed kernel failure when icmp packet could not be processed on high load;
ippool6 fixed crash on acquire when prefix length is equal with pool prefix length;
ipsec add dead ph2 detection exception for windows msgid noncompliance with rfc;
ipsec added dead ph2 reply detection;
ipsec don't register temporary ph2 on dead list;
ipsec fix initiator modecfg dynamic dns;
ipsec fixed AH with SHA2;
ipsec fixed checks before accessing ph1 nat options;
ipsec fixed mode-config export;
ipsec fixed route cache overflow when using ipsec with route cache disabled;
ipsec fixed windows msgid check on x86 devices;
ipsec show remote peer address in error messages when possible;
ipsec store udp encapsulation type in proposal;
kernel fixed possible kernel deadlock when Sierra USB mode is being used;
l2tp fixed crash when rebooting or disabling l2tp while there are still active connections;
lcd reduced lowest backlight-timeout value from 5m to 30s;
license do not expire demo license right after fresh installation of x86;
log added whole scep certificate chain print;
log increase excessive multicast/broadcast warning threshold every time it is logged;
log make logging process less aggressive on startup;
lte added allow-roaming option for Huawei MU709, ME909s devices;
lte added cinterion pls8 support;
lte added support for Huawei E3531;
lte added support for ZTE ZM8620;
lte added use-peer-dns option (will work only combined with add-default-route);
lte changed driver loading for class 2 usb rndis devices;
lte display message in lte,error log if no response received;
lte display message in lte,error log when PIN is required;
lte fix crash on SXT LTE while resetting card while at high traffic;
lte fixed access technology logging;
lte fixed connection for Huawei without cell info;
lte fixed modem init when pin request present;
lte fixed modem network configuration version checks;
lte fixed network-mode support after downgrade;
lte Huawei MU609 must use latest firmware to work correctly;
lte improved multiple same model modems identification;
lte show uicc for Huawei modems;
lte use only creg result codes as network status indications;
mesh fixed crash when connection references a mesh network but it is not available any more;
modem added support for Alcatel OneTouch X600;
modem added support for Quectel EC21 and EC25;
modem added support for SpeedUP SU-900U modem;
nand improved nand refresh feature to enhance stored data integrity;
ovpn enable perfect forwarding secrecy support by default;
ovpn fixed compatibility with OpenVPN 2.3.11;
pppoe allow to set MTU and MRU higher than 1500 for PPPoE;
pppoe do not allow to send out bigger packets than l2mtu if mrru is provided;
proxy limit max ram usage to 80% for tile and x86 devices;
queue reset queue type on interfaces which default queue type changes to no-queue after upgrade;
rb2011 fixed ether6-ether10 flapping when two ports from both switch chips are in the same bridge;
rb3011 fixed port flapping on ether6-ether10;
rb3011 fixed reset button functionality;
rb3011 fixed usb driver load;
rb3011 fixed usb storage mounting;
rb3011 improved performance on high cpu usage;
route added suppport for more than 8 bits of options;
route fixed ospf by handling ipv6 encoded prefixes with stray bits;
sniffer fixed ipv6 address matching;
snmp fixed get function for snmp>=v2 when oid does not exist;
snmp fixed interface stats branch from MikroTik MIB;
snmp report current access technology and cell id for lte modems;
snmp report ram memory as ram instead of other;
ssh add rsa host key size parameter;
ssh-keygen add rsa key size parameter;
ssl do not exit while there still are active sessions;
ssl fixed memory leak on ssl connect/disconnect (fetch, ovpn, etc.);
sstp fixed dns name support in connect-to field if http-proxy is specified;
supout erase panic data properly on Netinstall;
switch fixed switch compact export;
timezone updated timezone information from tzdata2016e release;
traffic-flow added ipfix support (RFC5101 and RFC5102);
tunnel added option to auto detect tunnel local-address;
tunnel fixed rare crash by specifying minimal header length immediately at tunnel initialization;
upnp fixed nat rule dst-port by making it visible again;
usb I-tec U3GLAN3HUB usb hub/ethernet dongle now shows up correctly as ethernet interface;
usb implement possibility to recognize usb hubs/ethernet-dongles (if usb hubs/ethernet-dongles are not recognized with this version - send supout.rif file);
userman fixed crash on database upload;
userman use ipnpb.paypal.com for payment verification;
wap-ac fixed performance problems with 2.4GHz wireless (additional reboot after upgrade required);
webfig do not allow to press OK or Apply if current configuration values are not loaded yet;
webfig reduced refresh time for wireless registration table to 1 second;
winbox added 2ghz-g/n band for wireless-rep;
winbox added icons to bridge filter actions similar to ip firewall;
winbox added support for ipv6 dhcp relay;
winbox allow to reorder hotspot walled-garden & walled-garden-ip rules;
winbox do not allow to specify vlan-mode=no-tag in capsman datapath config;
winbox do not show filter for combined fields like bgp-vpn4 RD;
winbox do not show mode setting for WDS interfaces;
winbox fixed crash on disconnect in secure mode;
winbox fixed crash when using ctrl+d;
winbox fixed safe mode;
winbox improve filtering on list fields;
winbox report correctly dude users in active users list;
winbox set default sa-learning value to "yes" for CRS Ingress VLAN Translation rules;
winbox show action column as first in bridge firewall;
winbox show error when telnet is not allowed because of permissions;
wireless wireless-fp is discontinued, it needs to be uninstalled/disabled before upgrade;
wireless fixed multiple wireless packages enabled at the same time after upgrade;
wireless-rep added initial API support for snooper;
wireless-rep fixed crash on nv2 reconnect;
wireless-rep fixed scan-list unset;
wireless-rep treat missing SSID element as hidden SSID;