Component: bridge
357 changelog entries across 77 version(s)
Releases by channel (stacked)
- fixed HW offloaded STP state on port disable;
- fixed HW offloading for vlan-filtered bridge on devices with multiple switches (introduced in v7.8);
- fixed incorrect host moving between ports with enabled FastPath;
- added warning log when "ageing-time" exceeds supported hardware limit for 98DX224S, 98DX226S, and 98DX3236 switch chips;
- fixed FastPath when setting "use-ip-firewall-for-vlan" or "use-ip-firewall-for-pppoe" without enabled "use-ip-firewall";
- fixed adding disabled MSTI;
- fixed DHCP packet flow when using DHCP snooping, HW offloading and "use-ip-firewall";
- fixed possible DHCP packet corruption when using DHCP snooping;
- fixed PVID warning typo;
- improved HW offloading logic;
- fixed master port conversion;
- fixed mst-override port priority for MSTP;
- fixed port priority for STP and RSTP;
- improved port-controller system stability;
- improved system stability when using MSTP and many VLAN mappings;
- removed "age" monitoring property from the host table;
- added support for static MDB entries;
- disallow port-controller while the bridge has MSTP enabled;
- fixed "edge=yes" setting for MSTP;
- fixed MSTP compatibility with STP;
- fixed R/M/STP bridge identifier on protocol-mode change;
- fixed RSTP BCP with bridged PPP interfaces;
- fixed STP blocking state on port-controller;
- fixed host moving with fast-path;
- fixed incorrect root port blocking for MSTP;
- fixed "new-priority" value validation for NAT rules;
- properly process IPsec decapsulated packets through the firewall when the "use-ip-firewall" option is enabled;
- added more details for loop detection warning;
- do not set VLAN on inactive port with a "set" command;
- fixed TCP, UDP port parsing for loop detect warning;
- fixed packet marking for IP/IPv6 firewall;
- ignore VLAN tagged BPDU;
- fixed filter and NAT "set-priority" on ARM64 devices;
- fixed filter rules when using interface lists;
- fixed firewall "ingress-priority" matcher and "new-priority=from-ingress" action settings from VLAN tagged frames;
- fixed priority tagged frame forwarding when using "frame-types=admit-only-untagged-and-priority-tagged" setting;
- added fast-path and inter-VLAN routing FastTrack support when vlan-filtering is enabled;
- fixed FastPath when using "frame-types=admit-only-untagged-and-priority-tagged" setting;
- fixed PPPoE packet forwarding when using "use-ip-firewall-for-pppoe" setting;
- fixed bridge filter and NAT rules on ARM64 and TILE devices;
- fixed destination NAT when using "use-ip-firewall" setting;
- fixed filter and NAT "set-priority" action;
- fixed destination NAT when using "use-ip-firewall" setting;
- fixed filter rules when using interface lists;
- fixed priority tagged frame forwarding when using "frame-types=admit-only-untagged-and-priority-tagged" setting;
- fixed PPPoE packet forwarding when using "use-ip-firewall-for-pppoe" setting;
- fixed bridge filter and NAT rules on ARM64 and TILE devices;
- fixed filter and NAT "set-priority" action;
- improved system stability when initialising bridge interface
- added IGMP and MLD querier monitoring;
- added IGMP snooping log when multicast table gets full;
- fixed external flag in the host table for wireless clients;
- improved controller bridge stability when adding RouterOS v7 port extender;
- improved port extender stability when creating bond interfaces on excluded ports;
- improved stability when quickly adding and removing bridge interface;
- added MAC and IP source addresses information for DHCP snooping log;
- fixed "vlan-encap" setting for filter and NAT rules;
- improved system stability when using IGMP snooping and changing bridge MAC address;
- improved bridge stability when host changes port (introduced in v6.47);
- added "multicast-router" monitoring value for bridge interface;
- added fixes and improvements for IGMP and MLD snooping;
- added minor fixes and improvements for IGMP snooping with HW offloading;
- added warning message when port is disabled by the BPDU guard;
- allow to exclude interfaces from extended ports;
- automatically remove extended interfaces when deleting PE device from CB;
- correctly filter packets by L2MTU size;
- correctly remove dynamic VLAN assignment for bridge ports;
- fixed "multicast-router" setting on bridge enable;
- fixed MDB entry removal when using bridge port "fast-leave" property;
- fixed dynamic VLAN assignment when changing port "frame-type" property (introduced in v6.46);
- fixed dynamic VLAN assignment when changing port to tagged VLAN member;
- fixed link-local multicast forwarding when IGMP snooping and HW offloading is enabled;
- fixed local MAC address removal from host table when deleting bridge interface;
- fixed multicast table printing;
- improved BPDU guard logging;
- increased multicast table size to 4K entries;
- show "H" flag for extended bridge ports;
- show error when switch do not support controlling bridge or port extension;
- use "frame-types=admit-all" by default for extended bridge ports;
- fixed BPDU guard port disable/enable on HW offloaded interfaces;
- fixed STP alternate and backup port states for devices with switch chip (introduced in v6.47);
- fixed host table update on SNMP query;
- fixed STP alternate and backup port states for devices with switch chip;
- fixed host table update on SNMP query;
- added logging debug message when a host MAC address is learned on a different bridge port;
- added warning message when a bridge port gets dynamically added to VLAN range;
- correctly remove disabled MSTI;
- improved hardware offloading enabling/disabling;
- disable/enable bridge port when setting bpdu-guard;
- do not add bridge as untagged VLAN member when frame-types=admit-only-vlan-tagged;
- do not add dynamically VLAN entry when changing "pvid" property for non-vlan aware bridge;
- include whole VLAN-id in DHCP Option 82 message;
- correctly handle bridge host table;
- correctly display bridge FastPath status when vlan-filtering or dhcp-snooping is used;
- correctly handle bridge host table;
- fixed log message when hardware offloading is being enabled;
- improved stability when receiving traffic over USB modem with bridge firewall enabled;
- fixed possible memory leak when using "ingress-filtering=yes" on bridge interface;
- count routed FastPath packets between bridge ports under FastPath bridge statistics;
- fixed BOOTP packet forwarding when DHCP Snooping is enabled;
- fixed packet forwarding with enabled DHCP Snooping and Option 82;
- fixed possible memory leak when using "ingress-filtering=yes" on bridge interface;
- fixed system's identity change when DHCP Snooping is enabled (introduced in v6.43);