Software-update: RouterOS 7.10
MikroTik heeft kort geleden versie 7.10 van RouterOS uitgebracht. RouterOS is een besturingssysteem dat zich richt op het uitvoeren van routertaken. Denk daarbij natuurlijk aan het routeren van netwerkverkeer, maar ook aan bandbreedtemanagement, een firewall, het aansturen van draadloze accesspoints, een hotspotgateway en een vpn-server. Het kan zowel op de hardware van MikroTik als op x86- of virtuele machines zijn werk doen. Voor het gebruik is een licentie nodig, die bij de aankoop van MikroTik-hardware is inbegrepen. De changelog voor deze uitgave kan hieronder worden gevonden.
What's new in 7.10:ipv6 - fixed DNS server processing by IPv6/ND services (CVE-2023-32154)route - added BFDbgp - allow to filter BGP sessions by AFIbgp - changed default VPNv4 import distance to iBGP value (200)bgp - do not check route distinguisher on importbgp - fixed "as-override" and rename to "output.as-override"bgp - fixed "remove-private-as" and rename to "output.remove-private.as"bgp - show address family in advertisementsbgp - show approximate received prefix count by the sessionbranding - fixed custom logo (introduced in v7.8 )bridge - fixed HW offloaded STP state on port disablebridge - fixed HW offloading for vlan-filtered bridge on devices with multiple switches (introduced in v7.8 )bridge - fixed incorrect host moving between ports with enabled FastPathcertificate - fixed displaying of certificate serial numbercertificate - improved error reporting for Let's Encrypt certificatecertificate - restore available "key-usage" property optionsconntrack - added read-only "active-ipv4" and "active-ipv6" fields to "/ip/firewall/connection/tracking" (CLI only)console - added timeout error for configuration exportconsole - changed time format according to ISO standardconsole - disable output when using "as-value" parameterconsole - fixed ":terminal inkey" input when resizing terminalconsole - fixed "print without-paging" output in some casesconsole - hide past commands with sensitive argumentsconsole - improved stability when using command completioncontainer - fixed "container pull" to support OCI manifest formatcontainer - fixed crash due to missing system directoriescontainer - improved default internal environment valuesdefconf - allow to use device factory preset credentials in Flashfig and Netinstall configuration filesdefconf - fixed default configuration for RBSXTLTE3-7dhcp-server - fixed accounting on RADIUS interim updatedhcpv4-server - added name for "IPv6-Only Preferred" option (108) in debug logsdoh - less verbose loggingfirewall - added "endpoint-independent-nat" supportfirewall - added "nth" option for IPv6 firewallgps - expose GPS port for Quectel RM520N-GLike2 - improved child SA delete request processingiot - added option to send Modbus function code commands directly from RouterOS (CLI only)ipsec - added hardware acceleration support for IPQ-5010 (hAP ax lite)ipsec - refactor public key authenticationipsec - removed "ec2n185" and "ec2n155" values from proposal configurationsipv6 - fixed IPv6 address removall3hw - added "autorestart" option to L3HW settingsl3hw - added advanced configuration options for fine-tuning the L3HW offload (l3hw-settings are cleared after upgrade or downgrade) (CLI only)l3hw - added error message and reset "l3-hw-offloading=no" if L3HW driver fails to startl3hw - added monitoring options for L3HW utilization (CLI only)l3hw - fixed /32 route deletionl3hw - fixed IPv6 ECMP route offloadingl3hw - fixed offloading of /32 IPv4 and /128 IPv6 routesl3hw - fixed route table offloading during large volume of route updatesl3hw - improved host and nexthop offloadingl3hw - improved offloading of IPv6 hosts after L3HW driver restartl3hw - improved performance of partial offloadingl3hw - improved route offloading after gateway changel3hw - improved system stability for partial routing table offloadleds - fixed modem RAT mode indication on hAP ac^3 LTE6 WPS mode button LEDslora - improved gateway card detection and upgrade logiclora - updated firmware version for LoRaWAN gateway (for R11e-LoRa8, R11e-LoRa9 cards)lte - added serving cell query for MBIM modems with necessary MBIM extensionlte - disable DHCP request filtering (UDP port 67) for Chateau 5Glte - fixed APN authentication for R11e-LTE6 modemlte - fixed Google Pixel 7 tethering supportlte - improved MBIM modem firmware reported error handling when settings RAT modeslte - improved modem firmware upgrade stability for MBIM modemslte - improved stability for Chateau 5G LTE modem firmware upgradelte - reduced SIM slot switchover time for MBIM modems with UUIC reset supportlte - stop "cell-monitor" on LTE interface configuration change for MBIM modemsmpls - added FastPath supportnetwatch - added warning about non-running probe due to "startup-delay" (CLI only)ovpn - added initial support for V2 data transfer protocolovpn - improved system stabilitypoe - fixed bogous "poe-in-voltage" values when using DC jack for RB5009pppoe - fixed PPPoE client scan when server is sending PADO messages without Service-Name tagqos-hw - added QoS marking support for 98DXxxxx switches (CLI only)qos-hw - renamed VLAN "priority" field to "pcp" to avoid confusionrose-storage - added support for multiple smb users and smb sharesroute - improved system stability when removing multicast forwarding entriesrouterboard - fixed memory test on CCR2116-12G-4S+ ("/system routerboard upgrade" required)routerboard - improved RouterBOOT stability for Alpine CPUs ("/system routerboard upgrade" required)routerboot - increased "preboot-etherboot" maximum value to 30 seconds ("/system routerboard upgrade" required)scheduler - fixed incorrectly started scheduler during reboot or shutdownsfp - fixed "rate" monitor value for SFP interface on L009UiGS series devicessfp - fixed combo-ether link monitor for CRS328-4C-20S-4S+ switchsfp - fixed combo-sfp linking at 1G rate for CRS312 switchsfp - improved 10G interface stability for 98DX8208, 98DX8212, 98DX8332, 98DX3257, 98DX4310, 98DX8525, 98DX3255, 98PX1012 based switchessfp - improved module compatibility with bad EEPROM data for RB4011, RB5009, CCR2xxx, CRS312 and CRS518 devicessfp - improved Q/SFP interface stability for 98DX8208, 98DX8212, 98DX8332, 98DX3257, 98DX4310, 98DX8525, 98DX3255, 98PX1012 switchessfp - improved SFP interface handling for RB4011, RB5009, CCR2xxx and CRS518 devicessfp - improved system stability with certain SFP modules for CCR2216 and CRS518 devicessfp - report EEPROM data even if "auto-init-failed" has occurredsmb - improved SMB v1 operationsniffer - fixed large .pcap file limitsnmp - added "engine-id-suffix" setting and display actual "engine-id" as read-only propertysnmp - added BGP peer table support IPv4 only (1.3.6.1.2.1.15.3.1)snmp - added new "mtxrInterfaceStatsTxRx1024ToMax" OID to MIKROTIK-MIBssh - added inline key "passphrase" propertyssh - fixed RouterOS SSH client login when using a key (introduced in v7.9)switch - added more precise "storm-rate" configuration options for 98DXxxxx switches (CLI only)switch - fixed storm rate on 10G links for 98DX8208, 98DX8216, 98DX8212, 98DX8332, 98DX3257, 98DX4310, 98DX8525, 98DX3255 switchessystem - improved watchdog reporting in log after reboots for several ARM and ARM64 devicessystem - reduced RAM usage for SMIPS devicestile - fixed support for microSD cardtr069 - added 5G SCC "SNR" parameter for modems that report itupgrade - do not run manual upgrade if some packages are missingups - fixed updating of "battery-voltage" propertyvrrp - added warning if "sync-connection-tracking=yes" while the global connection tracking is inactivevrrp - added warning if the VRRP group is misconfiguredvrrp - added warning if VRRP or its interface does not have an IP addressvrrp - do not start connection synchronization if the global connection tracking is inactivevrrp - fixed issue where disabled VRRP interface is affecting groupvrrp - fixed VRRP interface state on physical cable disconnectionvrrp - improved system stability on changing "group-authority" or "sync-connection-tracking"vrrp - renamed "group-master" to "group-authority" to avoid confusion with VRRP mastervrrp - send VRRP announcements only by "group-authority"w60g - improved interface stability for PTMP setupswebfig - added high-resolution faviconwebfig - allow limitless upper bounds for number rangewebfig - allow to set "0" second time for fields with default valueswebfig - changed time format according to ISO standardwebfig - display date and time in local time zonewebfig - fixed missing "WifiWave2" menuwebfig - fixed missing property names in "WifiWave2" menuwebfig - redesigned item configuration displaywebfig - redesigned top menu barwebfig - removed "Tools/Telnet" menuwebfig - removed auto-login with default credentials (admin without a password)wifiwave2 - avoid transmitting extra bytes at the end of the packet after stripping a VLAN tagwifiwave2 - do not show placeholder transmit power values on interface startupwifiwave2 - fixed CAP connection when provisioning "manager=capsman"wifiwave2 - fixed CAP interface name when using "name-format"wifiwave2 - fixed connectivity issues wheen access-list is usedwifiwave2 - fixed DFS channel availability warning (introduced in v7.9)wifiwave2 - fixed dynamic interface adding to bridge on CAP devicewifiwave2 - fixed inability to disable CAPsMAN when there are RADIUS-authenticated clients connectedwifiwave2 - fixed incorrect limits on number of interfaces in station modewifiwave2 - fixed interface name change when restoring backupwifiwave2 - fixed key handshake timeout with re-associating clientswifiwave2 - fixed OWE authentication compatibility with 802.11ax client deviceswifiwave2 - fixed OWE authentication compatibility with third-party client devices (introduced in v7.8 )wifiwave2 - fixed wireless throughput issues after 802.11r client roaming events on 802.11ac devicesw
Source: Tweakers.net