MikroTik Changelog Tracker

Search changelog entries

6.33 Stable 2015-Nov-06 (10 years ago)
Component Change
CCR1072 improve ether1 performance under heavy load
auto-upgrade fixed auto upgrade for smipsbe;
auto-upgrade added ability to select which versions to select when upgrading;
capsman limit number of simultaneous DTLS handshakes;
capsman fixed memory leak on CAP joining CAPsMAN when ssld is used;
cerm added option to disable crl download in '/certificate settings';
cerm fix key description for signed certificates;
cerm also accept downloaded CRLs in PEM format;
cerm fix scep server certificate-reply degenerate PKCS#7 signed-data content;
cerm use certificate file name for imported cert name;
cerm rebuild crl for local ca if crl file does not exist;
cerm show crl nextupdate time;
defconf fixed rare situation where configuration was only partially loaded;
defconf fix for boards that had bridge with only wlan ports;
dhcpv6 various improvement and fixes for dhcp-pd client and ippool6;
dns initial fix for situation when dynamic dns servers could disappear;
dns do not create duplicate entries for same dynamic dns server addresses;
email allow server to be specified as fqdn which is resolved on each send;
fastpath eoip,gre,ipip tunnels support fastpath (new per tunnel setting "allow-fast-path");
fastpath active mac-winbox or mac-telnet session no longer suspends fastpath;
fastpath added per interface fastpath counters;
fastpath added trafflow support in basic ipv4 and fasttrack ipv4 fastpath;
fetch fixed error message when error code 200 was received;
general l2tp: implemented PPPoE over L2TP in LNS mode, RFC3817;
general ovpn: support OpenWRT ovpn clients (or any other with enable-small option enabled);
general upnp: automatically adjust mappings to new external ip change;
health fix voltage for CRS109, CRS112 and CRS210 if powered from external adapter;
hotspot add mac-auth-mode setting for mac-as-passwd option;
hotspot add login-timeout setting to force login for unauth hosts;
ip pool6 try to acquire the same prefix if info matches recently freed;
ipsec force flow cache validation once in 1h;
ipsec fix set on multiple policies which could result in adding non existent dynamic policies to the list;
ipsec fix transport mode ph2 ID ports when policy selects specific ip protocol on initiator;
ipsec use local-address for phase 1 matching and initiation;
ipsec fix replay window, was accidentally disabled since version 6.30;
log make default disk file name to reside in flash dir if it exists;
lte improved modem identification to better support multiple identical modems;
mpls properly use mpls mtu for routes;
net fix possible never ending loop when bad CDP discovery packet is received;
package added version tag and show everywhere alongside of version number;
packages allow to reinstall from bundle to separate packages & vice versa;
packages prefer out of bundle packages when both of them are installed;
packages fix a problem of upgrading bundle package to non bundled ones;
ppp handle properly case were ppp client is given same address for local & remote end;
ppp added on-up & on-down scripts to ppp profile;
ppp added ppp interface to upnp internals/externals if requested;
ppp when adding ipv6 default route use user provided distance;
ppp added CoA support to PPPoE, PPTP & L2TP (Mikrotik-Recv-Limit, Mikrotik-Xmit-Limit, Mikrotik-Rate-Limit, Ascend-Data-Rate, Ascend-XMit-Rate, Session-Timeout);
ppp added new option under "ppp aaa" - "use-circuit-id-in-nas-port-id";
ppp, pptp, l2tp, pppoe fix ppp compression related crashes;
ppp-client added default channels for Alcatel OneTouch L100V;
pppoe added support for MTU > 1492 on PPPoE;
pptp & l2tp fixed problem where android client could not connect if both dns names were not provided (was broken since v6.30);
proxy error.html parsing enhancement to improve performance
quickset fixed HomeAP mode;
romon change port list to be not ordered in export;
route fixed crash on removing route that was aggregated;
routerboard indicate RouterBOOT type in /system routerboard print;
snmp fix system scripts table;
ssh allow host key import/export;
ssh use 2048bit RSA host key when strong-crypto enabled;
ssh support RSA keys for user authentication;
trafflow report flow addresses in v1 and v5 without NAT awareness;
tunnels eoip,eoipv6,gre,gre6,ipip,ipipv6,6to4 tunnels now support dns name as remote address;
userman fix report generation problem which could result in some users being skipped from it;
userman added 'history clear' to allow flushing undo history, which may take up significant amount of memory for huge databases with hundreds of users;
userman added phone number support to signup form;
userman allow to correctly enable CoA on router;
userman refresh active sessions/users view dynamically;
webfig some of the setting were shifted to the right;
webfig make "Copy to Access List" work in CAPsMAN Registration Table;
winbox dropped support for winbox v3.0beta and v3.0rc (use winbox v3.0);
winbox added allow-fast-path to eoip, gre & ipip;
winbox do not show power-cycle properties on non poe ports;
winbox make sure that all setting names get shown in full;
winbox added poe power-cycle-ping settings to ethernet interfaces;
winbox added vlan-mode & vlan-id to virtual-ap interface;
winbox added timeout column to ipv6 address lists;
winbox show SFP Tx/Rx Power properly;
winbox added min-links to bonding interface;
winbox do not show health menu on RB951Ui-2HnD;
winbox added support for Login-Timeout & MAC-Auth-Mode in hotspot;
winbox make user ssh key import work again;
winbox fix to allow cpu-port as mirror-target
winbox allow to specify dns name in all the tunnels;
winbox make directed broadcasts work for neighbor discovery;
wlan improved WMM-PowerSave support in wireless-cm2 package;
wlan improved 802.11 protocol single connection TCP performance for ac chipset with cm2 package.
6.32.3 Long-term 2015-Oct-19 (10 years ago)
Component Change
bgp specific BGP networks were changed to different ones;
cerm fix scep server certificate-reply degenerate PKCS#7 signed-data content;
cerm allow export for all types except templates;
firewall fixed connection-rate matcher;
general ppp, pptp, l2tp, pppoe: fixed router dead locked if compression was enabled on link;
general pptp,l 2tp, sstp, pppoe: do not send data packets before we have negotiated connection with other
ippool6 optimize same prefix acquisition;
lcd fix slideshow for CCR1072, and possible sign issues for temperatures;
netinstall include missing RB1200 drivers;
nv2 fixed kernel failure with frame size accounting;
ovpn client fixed crash when ovpn didn't receive it's ip address;
pptp, l2tp, sstp make it work when add-default-route & dial-on-demand both are enabled;
pptp, l2tp, sstp, pppoe clients fixed problem where they failed to connect
quickset create proper firewall rules when PPPoE is used for address acquisition;
ssh allow to specify pass as argument for private key import;
sstp fixed kernel crash when other party started to fragment ppp packets in the middle;
switch fixed CRS settings set back to defaults after a reboot;
tunnel fix loopback keepalives on gre and ipip;
ups fix console oid print;
winbox Shift+Ins & Shift+Del did not work in multi entry fields;
winbox allow to specify ipv6 address in traffic flow target;
winbox allow to specify eap-radius-accounting in CAPsMAN;
winbox allow to enter dns name in email server;
winbox make console notice correct screen size;
winbox refetch hotspot walled garden hit counter;
winbox added client-connections & server-connections to web proxy status;
winbox fixed context menu actions to apply to all selected items;
wlan update brazil-anatel country;
6.32.2 Stable 2015-Sep-17 (10 years ago)
Component Change
CAPsMAN fix 100% CPU usage when trying to upgrade RouterOS on CAP;
RB532/RB564 fixed no link after ethernet disable/enable;
cerm guard template from parallel use
email resolve server address;
ethernet added support for new ASIX USB Ethernet dongles;
health show correct voltage for CRS109,CRS112,CRS210 when powered through PSU and show voltage up to 27V when powered through PoE;
ipsec fixed kernel failure when packets were not ordered on first call;
ipsec fix sockaddr buf size on id generation for ipv6 address;
mesh fix router lock-up when interface is added/removed;
mipsle fixed missing second level menu in CLI;
ppp fixed ppp interface stuck in not running state;
pptp encryption better handling for out-of-order packets;
romon fixed default configuration export;
snmp show firmware upgrade info;
sstp avoid routing loops on client when adding default route;
sstp fixed problem where sometimes sstp ip addresses were invalid;
switch fixed bogus log messages about excessive broadcasts/multicasts on master-port;
tftp fix request file name reading from packet
tile fixed occasional deadlock on module unload;
upgrade fixed default configuration export;
upgrade report status in check-for-updates.
upnp randomize action urls to fix "filet-o-firewall" vulnerability;
6.32.1 Stable 2015-Sep-07 (10 years ago)
Component Change
RB493G fixed reboot loop;
RB911/912 fixed lock-up;
defconf fix default configuration for routers without wireless package.
firewall do not lose firewall mangle rules on start-up;
6.32 Stable 2015-Aug-31 (10 years ago)
Component Change
RB911/RB912 fix SPI bus lock after fast led blink;
bonding add min_links property for 802.3ad mode;
bridge fixed use-ip-firewall-for-vlan in setups with multiple bridges;
bridge firewall add ipv6 src/dst addr, ip protocol, src/dst port matching to bridge firewall;
bridge firewall vlan matchers support service tag - 0x88a8;
chr add hotspot,btest,traffgen support;
crs switch allow to unset port learn-limit, new default is unset to allow more than 1023 hosts per port;
firewall fixed limit and dst-limit options.
flash fix kernel failure (exposed by 6.31);
general revised change that caused reboot by watchdog problems introduced in v6.31;
general certificates -fixed bug where crl stopped working after a while;
hotspot ignore PoD remote requests if no HotSpot configured;
hotspot fix kernel failure when www plugin aborts on broken html source;
hotspot fix html-directory path on small flash devices;
ip accounting fixed kernel crash;
ippool6 try to acquire the same prefix if info matches recently freed;
ipsec added compatibility option skip-peer-id-check;
ipsec fix potential memory leak;
ipsec use local-address for phase 1 matching and initiation;
ipsec fix transport mode ph2 ID ports when policy selects specific ip protocol on initiator;
ipv6 fixed DHCP-PD client skips some steps when renewing lease;
lcd fixed parallel port LCD display support on multi-cpu x86;
mipsbe make system shutdown work again;
simple queues restrict all changes in dynamic simple queues
snmp fix system scripts get;
snmp get vlan speed from master interface;
switch fixed port flapping on switch ports of RB750, RB750UP, RB751U-2HnD and RB951-2N (introduced in 6.31)
torch add invert filter for src/dst/src6/dst6 addresses ;
trafflow added support for IPv6 targets;
upnp fixed protocol port selection for upnp protocol comunications;
winbox fixed wireless interface l2mtu (VirtualAP and WDS interface creation in winbox)
winbox fixed multiple firewall rule moving in Winbox 2
x86 fixed 32bit multi-cpu kernel support;