Software-update: RouterOS 7.15.1
MikroTik heeft versie 7.15.1 van RouterOS uitgebracht, een besturingssysteem dat zich richt op het uitvoeren van routertaken. Denk daarbij natuurlijk aan het routeren van netwerkverkeer, maar ook aan bandbreedtemanagement, een firewall, het aansturen van draadloze accesspoints, een hotspotgateway en een vpn-server. Het kan zowel op de hardware van MikroTik als op x86- of virtuele machines zijn werk doen. Voor het gebruik is een licentie nodig, die bij de aankoop van MikroTik-hardware is inbegrepen. De changelog sinds versie 7.14.2 kan hieronder worden gevonden.
What's new in 7.15.1:bgp - fixed BGP sessions missing vpnv6 afibgp - fixed corrupted as-path when received update with empty AS_PATH attribute (introduced in v7.15)bgp - fixed vpnv6 safihealth - fixed board-temperature for KNOT device (introduced in v7.15)health - fixed missing health for CRS112-8G-4S device (introduced in v7.15)install - fixed ARM64 cdrom install (introduced in v7.15)lte - fixed cases where LTE interface would take long time to become ready after bootup for Chateau 5G and Chateau 5G R16 (introduced in v7.15)lte - fixed cases where modem could be handled by multiple dialer instancesmodem - fixed unresponsive PPP link recovery when TX bandwidth was exceeding link capacitypoe-out - fixed silent firmware upgrade fail on CRS112-8P-4S device (introduced in v7.15)ppp - fixed dynamic queue default name (introduced in v7.15)route - fixed memory leak (introduced in v7.15)route - fixed some missing route parameters when printing (introduced in v7.15)wifi - fixed signal strength reporting during association (introduced in v7.15)wifi - improved WPA3 PMKSA handling when access-lists with custom passphrases are usedwinbox - fixed issue with skin file appearing as unknown in user group menu (introduced in v7.15)winbox - fixed missing system note on login (introduced in v7.15)
bgp - fixed BGP sessions missing vpnv6 afibgp - fixed corrupted as-path when received update with empty AS_PATH attribute (introduced in v7.15)bgp - fixed vpnv6 safihealth - fixed board-temperature for KNOT device (introduced in v7.15)health - fixed missing health for CRS112-8G-4S device (introduced in v7.15)install - fixed ARM64 cdrom install (introduced in v7.15)lte - fixed cases where LTE interface would take long time to become ready after bootup for Chateau 5G and Chateau 5G R16 (introduced in v7.15)lte - fixed cases where modem could be handled by multiple dialer instancesmodem - fixed unresponsive PPP link recovery when TX bandwidth was exceeding link capacitypoe-out - fixed silent firmware upgrade fail on CRS112-8P-4S device (introduced in v7.15)ppp - fixed dynamic queue default name (introduced in v7.15)route - fixed memory leak (introduced in v7.15)route - fixed some missing route parameters when printing (introduced in v7.15)wifi - fixed signal strength reporting during association (introduced in v7.15)wifi - improved WPA3 PMKSA handling when access-lists with custom passphrases are usedwinbox - fixed issue with skin file appearing as unknown in user group menu (introduced in v7.15)winbox - fixed missing system note on login (introduced in v7.15)What's new in 7.15:system - added support for AMPERE (R) and ARM64 CHR installations (new ARM64 CHR image available)system - added support for AMPERE (R) hardware (new ARM64 ISO file, new ARM64 extra-nics.npk package)bgp - added initial vpnv6 supportbgp - correctly synchronize input.accept-nlri address listbgp - fixed prefix count when BGP sessions run with multiple AFIsbgp - fixed selecting local.default-address from wrong VRFbgp - use IPv6 as default address-family for IPv6 sessionsbgp-vpn - use VRF interface as gateway for leaked connected routesbranding - added option to hide default configuration promptbranding - added option to hide or replace default caps-mode-scriptbridge - added error message if MLAG peer-port is configured with "mlag-id"bridge - added MLAG peer-port events to logsbridge - added MVRP supportbridge - do not allow multiple bonds with same "mlag-id"bridge - improved protocol-mode STP, RSTP and MSTP stabilitybridge - rename monitor property "path-cost" to "actual-path-cost"bridge - reworked dynamic VLAN creationbridge - use default "edge=auto" for dynamically bridged interfaces (PPP, VPLS, WDS)certificate - added support for different ACME servers for ssl-certificate (CLI only)certificate - added support for importing pbes2 encrypted private keys with aes128certificate - added trusted parameter for certificate importcertificate - allow replacing certificate with internal importcertificate - delete certificate related files automatically from storage after importcertificate - improved RSA key signature processing speedchr - allow to "generate-new-id" only while CHR is running on level "free" licensechr - fixed bogus messages printed out while booting up the system (introduced in v7.14)chr - fixed Xen and Vultr missing ethernet (introduced in v7.14)console - added "byte-array" option to ":convert" commandconsole - added "proplist" parameter to interactive commandsconsole - added "rows" property for sniffer quick modeconsole - added "sanitize-names" property under "/console/settings" menu (option for replacing reserved characters with underscores for files, disabled by default)console - added "type" parameter to ":resolve" commandconsole - added "use-script-permissions" option when running scripts from CLIconsole - added hotkey "F8" to print entire multiline inputconsole - added link from "/iot/lora" to "/lora"console - added log for script execution failuresconsole - added multi-line print in "/file" menuconsole - added option to get "about" value (dynamically created text field by RouterOS services like CAPsMAN)console - added option to read and change file line endings in full-screen editorconsole - added warning log for modified filenames due to reserved charactersconsole - covert spaces, CR, LF in ":convert to=url" commandconsole - do not convert string to array in ":deserialize" commandconsole - fixed ":onerror" behavior when "do" block is missingconsole - fixed "export where" functionality in certain menusconsole - fixed console prompt when entering hot lock mode with "F7"console - fixed DHCP server "authoritative=no" configuration exportconsole - fixed do/while implementation not working with variables (introduced in v7.14)console - fixed filtering by "dhcp" flag in "/ip/arp" menuconsole - fixed multiple typos in helpconsole - improved stabilityconsole - optimized configuration export to prevent startup of processes without any configurationconsole - remove unnecessary serial ports for Alpine CPUsconsole - show system note before serial login if enabledconsole - use user permissions when running scripts from WinBox and WebFigcontainer - do not allow negative number for "ram-high" settingdefconf - do not override default DHCP server lease timedefconf - fixed 5ghz-ax channel width for L11, L22 devicesdefconf - fixed unknown topics in log messagesdefconf - minor configuration script updatesdhcpv4-relay - added VRF supportdiscovery - added LLDP MAC/PHY Configuration/Status TLV supportdiscovery - added LLDP Maximum Frame Size TLV supportdiscovery - added LLDP Port Description TLV supportdiscovery - advertise only physical interface name for LLDP PortID TLVdiscovery - always send LLDP MED Power TLV if MED was receiveddiscovery - fixed high CPU utilization when "tx-only" mode is setdiscovery - optimized LLDP information updatedisk - added option to auto configure media sharingdisk - added support for formatting exfat file-systemdisk - improved support for file systems with non-ascii characters in file namesdisk - improved support for formatting ext4 file-systemdisk - improved system stability when adding partition with no parentdisk - improved system stabilitydisk - the "scan" command will now detect and include USB drives that were previously ejecteddns - added support for "adlist"dns - added VRF supportdns - improved system stability when caching entrieseap - improved eap-peap, eap-mschap2 client authentication (dot1x/wireless/ipsec)ethernet - fixed default names for CRS310-8G+2S+ device (introduced in v7.14)ethernet - fixed interface disable for CRS326-4C+20G+2Qethernet - fixed management port disable/enable on CCR2004-1G-12S+2XS, CCR2004-1G-2XS-PCIe, CCR2216, CCR2116 devicesethernet - improved port speed downshift functionality for CRS326-4C+20G+2Qfetch - added "idle-timeout" parameterfetch - changed topic "info" to "error" for permission denied logsfetch - fixed slow throughput due to "raw" logging which occurred even when not listening to the topic (introduced in v7.13)file - allow adding and renaming files and directoriesfile - avoid refreshing whole file system during file modificationfile - improved external storage detectionhealth - added "cpu-temperature" for IPQ50xx deviceshealth - added log for fan state changes on CRS3xx, CRS5xx, CCR2xxx, CCR1016r2, CCR1036r2 deviceshealth - fixed fan behavior for CRS310-1G-5S-4S+ (introduced in v7.14)health - fixed rogue voltage on CRS510-8XS-2XQ-INinstall - cdrom and hdd install images contain additional packages that can be interactively selectedipv6 - properly initialize default ND "interface=all" entryleds - fixed LEDs for L22 devicelora - removed LoRa WinBox and console functionality duplication (moved to IoT package since v7.11)lte - added "at-chat" support for DELL T99W175 (PID: 0x05c6 VID: 0x90d5)lte - added support for concatenated AT commands in "modem-init" stringlte - added support to set "modem-init" string for "dialer-less" modemslte - apply the same configuration for Microsoft branded EM12-G modem (Surface Mobile Broadband) as for Quectel EM12-Glte - do not show persistent interfaces for multi-apn slave interfaceslte - dropped support for R11e-LTE-US FOTA firmware updatelte - fixed R11e-LTE-US modem dial-uplte - fixed situation where link is not restored after Quectel MBIM modem firmware updatelte - improved FG621-EA modem APN authenticationlte - make interface persistent (unused interface configs can be removed, allow to export and examine current configuration without the device present)lte - removed 2 APN restriction for RG520F-EU modemlte - use the correct network interface for multi-interface LTE modemsmedia - added support for DLNAmetarouter - removed supportmodem - send APN authentication for BG77 modem also if ppp-client interface created manuallynetinstall - improved stabilitynetinstall-cli - fixed incorrect server address assignment (introduced in v7.14)ovpn - fixed import ovpn config when remote port is missingovpn - fixed minor typo in error messagepoe-out - added LLDP power management support for devices with single PoE-out portpoe-out - fixed powering devices if input voltage is lower than 12V for hEX PoE (introduced in v7.9)poe-out - improved firmware upgrade stability for AF/AT controlled boardspoe-out - moved "PoE LLDP" property from "/interface/ethernet/poe" to "/ip/neighbor/discovery-settings" and enable it by defaultppp - added "enable-ipv6-accounting" option under PPP AAA menuppp - added log when disconnecting a client due to "WISPr-Session-Terminate-Time" RADIUS attributeppp - allow underscores in domain namesppp - enabled monitoring of registration state, RSRP, RSRQ, SINR, PCI, CellID for BG77 modemppp - fixed "Framed-IPv6-Pool" usage when received from RADIUSppp - fixed "on-down" script running even when tunnel was not upprofiler - added "neighbor-discovery" taskqos-hw - added "offline" tx-manager (CLI only)qos-hw - added "profile" and "map" support for CPU portqos-hw - added congestion avoidance support for 98DX8xxx, 98DX4xxx, 98DX325x switch chips (CLI only)qos-hw - added ECN marking support for compatible switchesqos-hw - added per-queue traffic shapers (CLI only)qos-hw - added Priority Flow Control for compatible switches (CLI only)qos-hw - added support for QoS profile assignment via ACL rulesqos-hw - added WRED support for compatible switchesqos-hw - fixed port "print stats/usage" when using "from" propertyqos-hw - replaced buffer with bytes in QoS monitorqueue - improved system stability (introduced in v7.6)quickset - only show LTE mode for devices without other wireless interfacesradius - added "require-message-auth" option that requires "Message-Authenticator" in received Access-Accept/Challenge/Reject messagesradius - include "Message-Authenticator" in any RADIUS communication messages besides accounting for all servicesroute - do not allow routes with empty "dst-address"route - do not redistribute loopback address as connected routeroute - fixed bgp-vpn prefix import with the same route distinguisher (RD)route - improved system stabilityroute - rework of route attributesroute - show route-distinguisher (RD) in route printroute-filter - allow setting different AFI gatewaysroute-filter - fixed ext community list matchersfp - added "100M-baseFX" link mode support for compatible devicessfp - added "sfp-ignore-rx-los" settingsfp - fixed "sfp-tx-fault" state indication for CRS510sfp - fixed link establishment with 100Mbps optical modules (requires "/interface ethernet reset" or adding "100M-baseFX" modes for advertise or speed properties)sfp - fixed missing Tx traffic at 10Gbps rate on CCR2004-16G-2S+ in rare casessfp - ignore SFP RX LOS signal for modules with bad EEPROMsfp - improved "sfp-tx-power" value monitoring in certain casessfp - improved auto-negotiation linking for some MikroTik cables and modulessfp - improved system stability for CR2004-1G-2XS-PCIe (introduced in v7.14)sfp - improved system stability with some GPON modules for CCR2004 and CCR2116 devicessmb - added logs for share connection requestssmb - do not allow setting empty "comment" or "domain" propertiessms - added option to select SMS storagesms - added SMS PDU to SMS inbox "print detail"sms - added workaround for modems which do not notify regarding new SMS arrival (missing URC)sms - improved SMS handlingsms - removed SMS for SMIPSsms - use "gsm" logging topic for serial modem SMS logssnmp - added missing PoE-out status codes to MIKROTIK-MIBsnmp - added new "mtxrOpticalVendorSerial" OID to MIKROTIK-MIBsocks - attempt to parse domain name as IP before resolvingssh - added support for user Ed25519 private keysssh - export host Ed25519 public keyssh - fixed bogus outputssh - fixed permissions to run ".auto.rsc" scriptsssh - require "policy" user policy when adding public keysstp - added SNI supportsstp - disconnect clients when server is disabledstorage - improved configuration storing process on first system boot after configuration resetswitch - added support for multiple ingress and egress port mirroring on 98DXxxxx switchesswitch - added support for RSPAN mirroring on 98DXxxxx switchesswitch - fixed L3HW and QoS monitor during switch resetsystem - added resource values (Product name, File name and File version) for Windows executable filessystem - general work on optimizing the size of RouterOS packagessystem - show "cpu-frequency" for Alpine CPUssystem - skip configuration upgrade from RouterOS v6 on configuration resetsystem - updated office address in RouterOS licensesystem - updated online manual links from "wiki" to the help documentationtimezone - updated timezone information from "tzdata2024a" releasetraffic-flow - detect IPv4 source address if not settraffic-flow - improved system stabilityuserman - added "require-message-auth" option that requires "Message-Authenticator" in received Access-Request messagesuserman - include "Message-Authenticator" in any RADIUS communication messages besides accounting for all servicesvlan - added MVRP (applicant) configuration optionvlan - ensure that VLAN MTU remains unchanged when adjustments are made to the parent interface MTU, only modifications to the L2MTU might impact VLAN MTUvlan - fixed MTU reset on bridge after rebootvlan - limit "vlan-id" range from 1-4095 to 1-4094vrf - fixed VRF interfaces being moved to main table after reboot (introduced in v7.14)webfig - allow pasting with ctrl+v into terminalwebfig - fixed column preferences for ordered tableswebfig - show inherited properties for wifi interfaceswifi - added "reselect-interval" supportwifi - changed interface default to "disabled=yes"wifi - do not report disabled state for CAPsMAN managed interfacewifi - fixed configuration export for "disabled" propertywifi - improve channel selection after radar detection eventswifi - improve regulatory compliance for L11, L22 deviceswifi - improved interface initialization reliability on DFS channelswifi - improved stability of DFS check in the 5GHz-A bandwifi - improved system stability when provisioning CAPs in certain caseswifi - rename "available-channels" parameter to "channel-priorities" and include desirability rating for each channelwifi - report current CAPsMAN address and identity on CAPwifi - show inherited properties with "print" command (replaces "actual-configuration") and added "print config" for showing only configured valueswifi-qcom - added configuration.distance setting to enable operation over multi-kilometer distanceswifi-qcom - updated driverwinbox - added "Download" and "Flush" buttons under "System/Certificates/CRL" menuwinbox - added "Flat Snoop" button under "WiFi" menuwinbox - added "FT Preserve VLAN ID" setting under "WiFi/Configuration/FT" menuwinbox - added "Request logout" button under "System/Users/Active Users" menuwinbox - added "Trusted" checkbox under "System/Certificates/Import" menuwinbox - added drop down menu for "User" property when importing SSH key under "System/User/SSH Keys" and "System/User/SSH Private Keys" menuswinbox - added invalid flag under "IP/DHCP Relay" menuwinbox - added key type and key length column for user SSH keyswinbox - added missing SFP monitoring properties under "Interface/SFP" menuwinbox - added passphrase option for SSH host key exportwinbox - added passphrase option for SSH host key importwinbox - allow specifying size and rtmpfs size with M, G units under "System/Disks" menuwinbox - allow to specify "M" or "G" postfix for download, upload or total limits under "User Manager/Limitations" menuwinbox - do not show "Host Key Size" when using ed25519 key under "IP/SSH" menuwinbox - fixed the issue where the skin file fails to appear in the user group menu after creationwinbox - renamed "Channel" column to "Current Channel" under "Wifi" menuwinbox - show "Valid Servers" and "Unknown Servers" column by default under "IP/DHCP Server/Alerts" menuwinbox - show inherited properties for wifi interfaceswinbox - show SIM settings for SXTR device under "Interfaces/LTE/Modem" menuwinbox - updated icons for certain menuswinbox - use correct values for "Jump Target" property under "IPv6/Firewall/Filter Rules" menuwireguard - added option to mark peer as responder onlywireguard - added peer "name" field and display it in logswireguard - do not attempt to connect to peer without specified endpoint-addresswireguard - fixed "auto" argument usage for "private-key" and "preshared-key" settingswireguard - fixed performance issues showing QR codewireless - perform shorter channel availability check for 5600-5650MHz if regulatory domain permits itx86 - fixed ixgbe Tx hang by disabling TSOx86 - fixed VLAN tagged packet transmit for ice driverx86 - ice driver update to v1.13.7x86 - improved stability for RTL8125 driverx86 - ixgbe driver update to 5.19.9x86/chr - improved panic saving (increased minimal RAM requirements to 256MB)
system - added support for AMPERE (R) and ARM64 CHR installations (new ARM64 CHR image available)system - added support for AMPERE (R) hardware (new ARM64 ISO file, new ARM64 extra-nics.npk package)bgp - added initial vpnv6 supportbgp - correctly synchronize input.accept-nlri address listbgp - fixed prefix count when BGP sessions run with multiple AFIsbgp - fixed selecting local.default-address from wrong VRFbgp - use IPv6 as default address-family for IPv6 sessionsbgp-vpn - use VRF interface as gateway for leaked connected routesbranding - added option to hide default configuration promptbranding - added option to hide or replace default caps-mode-scriptbridge - added error message if MLAG peer-port is configured with "mlag-id"bridge - added MLAG peer-port events to logsbridge - added MVRP supportbridge - do not allow multiple bonds with same "mlag-id"bridge - improved protocol-mode STP, RSTP and MSTP stabilitybridge - rename monitor property "path-cost" to "actual-path-cost"bridge - reworked dynamic VLAN creationbridge - use default "edge=auto" for dynamically bridged interfaces (PPP, VPLS, WDS)certificate - added support for different ACME servers for ssl-certificate (CLI only)certificate - added support for importing pbes2 encrypted private keys with aes128certificate - added trusted parameter for certificate importcertificate - allow replacing certificate with internal importcertificate - delete certificate related files automatically from storage after importcertificate - improved RSA key signature processing speedchr - allow to "generate-new-id" only while CHR is running on level "free" licensechr - fixed bogus messages printed out while booting up the system (introduced in v7.14)chr - fixed Xen and Vultr missing ethernet (introduced in v7.14)console - added "byte-array" option to ":convert" commandconsole - added "proplist" parameter to interactive commandsconsole - added "rows" property for sniffer quick modeconsole - added "sanitize-names" property under "/console/settings" menu (option for replacing reserved characters with underscores for files, disabled by default)console - added "type" parameter to ":resolve" commandconsole - added "use-script-permissions" option when running scripts from CLIconsole - added hotkey "F8" to print entire multiline inputconsole - added link from "/iot/lora" to "/lora"console - added log for script execution failuresconsole - added multi-line print in "/file" menuconsole - added option to get "about" value (dynamically created text field by RouterOS services like CAPsMAN)console - added option to read and change file line endings in full-screen editorconsole - added warning log for modified filenames due to reserved charactersconsole - covert spaces, CR, LF in ":convert to=url" commandconsole - do not convert string to array in ":deserialize" commandconsole - fixed ":onerror" behavior when "do" block is missingconsole - fixed "export where" functionality in certain menusconsole - fixed console prompt when entering hot lock mode with "F7"console - fixed DHCP server "authoritative=no" configuration exportconsole - fixed do/while implementation not working with variables (introduced in v7.14)console - fixed filtering by "dhcp" flag in "/ip/arp" menuconsole - fixed multiple typos in helpconsole - improved stabilityconsole - optimized configuration export to prevent startup of processes without any configurationconsole - remove unnecessary serial ports for Alpine CPUsconsole - show system note before serial login if enabledconsole - use user permissions when running scripts from WinBox and WebFigcontainer - do not allow negative number for "ram-high" settingdefconf - do not override default DHCP server lease timedefconf - fixed 5ghz-ax channel width for L11, L22 devicesdefconf - fixed unknown topics in log messagesdefconf - minor configuration script updatesdhcpv4-relay - added VRF supportdiscovery - added LLDP MAC/PHY Configuration/Status TLV supportdiscovery - added LLDP Maximum Frame Size TLV supportdiscovery - added LLDP Port Description TLV supportdiscovery - advertise only physical interface name for LLDP PortID TLVdiscovery - always send LLDP MED Power TLV if MED was receiveddiscovery - fixed high CPU utilization when "tx-only" mode is setdiscovery - optimized LLDP information updatedisk - added option to auto configure media sharingdisk - added support for formatting exfat file-systemdisk - improved support for file systems with non-ascii characters in file namesdisk - improved support for formatting ext4 file-systemdisk - improved system stability when adding partition with no parentdisk - improved system stabilitydisk - the "scan" command will now detect and include USB drives that were previously ejecteddns - added support for "adlist"dns - added VRF supportdns - improved system stability when caching entrieseap - improved eap-peap, eap-mschap2 client authentication (dot1x/wireless/ipsec)ethernet - fixed default names for CRS310-8G+2S+ device (introduced in v7.14)ethernet - fixed interface disable for CRS326-4C+20G+2Qethernet - fixed management port disable/enable on CCR2004-1G-12S+2XS, CCR2004-1G-2XS-PCIe, CCR2216, CCR2116 devicesethernet - improved port speed downshift functionality for CRS326-4C+20G+2Qfetch - added "idle-timeout" parameterfetch - changed topic "info" to "error" for permission denied logsfetch - fixed slow throughput due to "raw" logging which occurred even when not listening to the topic (introduced in v7.13)file - allow adding and renaming files and directoriesfile - avoid refreshing whole file system during file modificationfile - improved external storage detectionhealth - added "cpu-temperature" for IPQ50xx deviceshealth - added log for fan state changes on CRS3xx, CRS5xx, CCR2xxx, CCR1016r2, CCR1036r2 deviceshealth - fixed fan behavior for CRS310-1G-5S-4S+ (introduced in v7.14)health - fixed rogue voltage on CRS510-8XS-2XQ-INinstall - cdrom and hdd install images contain additional packages that can be interactively selectedipv6 - properly initialize default ND "interface=all" entryleds - fixed LEDs for L22 devicelora - removed LoRa WinBox and console functionality duplication (moved to IoT package since v7.11)lte - added "at-chat" support for DELL T99W175 (PID: 0x05c6 VID: 0x90d5)lte - added support for concatenated AT commands in "modem-init" stringlte - added support to set "modem-init" string for "dialer-less" modemslte - apply the same configuration for Microsoft branded EM12-G modem (Surface Mobile Broadband) as for Quectel EM12-Glte - do not show persistent interfaces for multi-apn slave interfaceslte - dropped support for R11e-LTE-US FOTA firmware updatelte - fixed R11e-LTE-US modem dial-uplte - fixed situation where link is not restored after Quectel MBIM modem firmware updatelte - improved FG621-EA modem APN authenticationlte - make interface persistent (unused interface configs can be removed, allow to export and examine current configuration without the device present)lte - removed 2 APN restriction for RG520F-EU modemlte - use the correct network interface for multi-interface LTE modemsmedia - added support for DLNAmetarouter - removed supportmodem - send APN authentication for BG77 modem also if ppp-client interface created manuallynetinstall - improved stabilitynetinstall-cli - fixed incorrect server address assignment (introduced in v7.14)ovpn - fixed import ovpn config when remote port is missingovpn - fixed minor typo in error messagepoe-out - added LLDP power management support for devices with single PoE-out portpoe-out - fixed powering devices if input voltage is lower than 12V for hEX PoE (introduced in v7.9)poe-out - improved firmware upgrade stability for AF/AT controlled boardspoe-out - moved "PoE LLDP" property from "/interface/ethernet/poe" to "/ip/neighbor/discovery-settings" and enable it by defaultppp - added "enable-ipv6-accounting" option under PPP AAA menuppp - added log when disconnecting a client due to "WISPr-Session-Terminate-Time" RADIUS attributeppp - allow underscores in domain namesppp - enabled monitoring of registration state, RSRP, RSRQ, SINR, PCI, CellID for BG77 modemppp - fixed "Framed-IPv6-Pool" usage when received from RADIUSppp - fixed "on-down" script running even when tunnel was not upprofiler - added "neighbor-discovery" taskqos-hw - added "offline" tx-manager (CLI only)qos-hw - added "profile" and "map" support for CPU portqos-hw - added congestion avoidance support for 98DX8xxx, 98DX4xxx, 98DX325x switch chips (CLI only)qos-hw - added ECN marking support for compatible switchesqos-hw - added per-queue traffic shapers (CLI only)qos-hw - added Priority Flow Control for compatible switches (CLI only)qos-hw - added support for QoS profile assignment via ACL rulesqos-hw - added WRED support for compatible switchesqos-hw - fixed port "print stats/usage" when using "from" propertyqos-hw - replaced buffer with bytes in QoS monitorqueue - improved system stability (introduced in v7.6)quickset - only show LTE mode for devices without other wireless interfacesradius - added "require-message-auth" option that requires "Message-Authenticator" in received Access-Accept/Challenge/Reject messagesradius - include "Message-Authenticator" in any RADIUS communication messages besides accounting for all servicesroute - do not allow routes with empty "dst-address"route - do not redistribute loopback address as connected routeroute - fixed bgp-vpn prefix import with the same route distinguisher (RD)route - improved system stabilityroute - rework of route attributesroute - show route-distinguisher (RD) in route printroute-filter - allow setting different AFI gatewaysroute-filter - fixed ext community list matchersfp - added "100M-baseFX" link mode support for compatible devicessfp - added "sfp-ignore-rx-los" settingsfp - fixed "sfp-tx-fault" state indication for CRS510sfp - fixed link establishment with 100Mbps optical modules (requires "/interface ethernet reset" or adding "100M-baseFX" modes for advertise or speed properties)sfp - fixed missing Tx traffic at 10Gbps rate on CCR2004-16G-2S+ in rare casessfp - ignore SFP RX LOS signal for modules with bad EEPROMsfp - improved "sfp-tx-power" value monitoring in certain casessfp - improved auto-negotiation linking for some MikroTik cables and modulessfp - improved system stability for CR2004-1G-2XS-PCIe (introduced in v7.14)sfp - improved system stability with some GPON modules for CCR2004 and CCR2116 devicessmb - added logs for share connection requestssmb - do not allow setting empty "comment" or "domain" propertiessms - added option to select SMS storagesms - added SMS PDU to SMS inbox "print detail"sms - added workaround for modems which do not notify regarding new SMS arrival (missing URC)sms - improved SMS handlingsms - removed SMS for SMIPSsms - use "gsm" logging topic for serial modem SMS logssnmp - added missing PoE-out status codes to MIKROTIK-MIBsnmp - added new "mtxrOpticalVendorSerial" OID to MIKROTIK-MIBsocks - attempt to parse domain name as IP before resolvingssh - added support for user Ed25519 private keysssh - export host Ed25519 public keyssh - fixed bogus outputssh - fixed permissions to run ".auto.rsc" scriptsssh - require "policy" user policy when adding public keysstp - added SNI supportsstp - disconnect clients when server is disabledstorage - improved configuration storing process on first system boot after configuration resetswitch - added support for multiple ingress and egress port mirroring on 98DXxxxx switchesswitch - added support for RSPAN mirroring on 98DXxxxx switchesswitch - fixed L3HW and QoS monitor during switch resetsystem - added resource values (Product name, File name and File version) for Windows executable filessystem - general work on optimizing the size of RouterOS packagessystem - show "cpu-frequency" for Alpine CPUssystem - skip configuration upgrade from RouterOS v6 on configuration resetsystem - updated office address in RouterOS licensesystem - updated online manual links from "wiki" to the help documentationtimezone - updated timezone information from "tzdata2024a" releasetraffic-flow - detect IPv4 source address if not settraffic-flow - improved system stabilityuserman - added "require-message-auth" option that requires "Message-Authenticator" in received Access-Request messagesuserman - include "Message-Authenticator" in any RADIUS communication messages besides accounting for all servicesvlan - added MVRP (applicant) configuration optionvlan - ensure that VLAN MTU remains unchanged when adjustments are made to the parent interface MTU, only modifications to the L2MTU might impact VLAN MTUvlan - fixed MTU reset on bridge after rebootvlan - limit "vlan-id" range from 1-4095 to 1-4094vrf - fixed VRF interfaces being moved to main table after reboot (introduced in v7.14)webfig - allow pasting with ctrl+v into terminalwebfig - fixed column preferences for ordered tableswebfig - show inherited properties for wifi interfaceswifi - added "reselect-interval" supportwifi - changed interface default to "disabled=yes"wifi - do not report disabled state for CAPsMAN managed interfacewifi - fixed configuration export for "disabled" propertywifi - improve channel selection after radar detection eventswifi - improve regulatory compliance for L11, L22 deviceswifi - improved interface initialization reliability on DFS channelswifi - improved stability of DFS check in the 5GHz-A bandwifi - improved system stability when provisioning CAPs in certain caseswifi - rename "available-channels" parameter to "channel-priorities" and include desirability rating for each channelwifi - report current CAPsMAN address and identity on CAPwifi - show inherited properties with "print" command (replaces "actual-configuration") and added "print config" for showing only configured valueswifi-qcom - added configuration.distance setting to enable operation over multi-kilometer distanceswifi-qcom - updated driverwinbox - added "Download" and "Flush" buttons under "System/Certificates/CRL" menuwinbox - added "Flat Snoop" button under "WiFi" menuwinbox - added "FT Preserve VLAN ID" setting under "WiFi/Configuration/FT" menuwinbox - added "Request logout" button under "System/Users/Active Users" menuwinbox - added "Trusted" checkbox under "System/Certificates/Import" menuwinbox - added drop down menu for "User" property when importing SSH key under "System/User/SSH Keys" and "System/User/SSH Private Keys" menuswinbox - added invalid flag under "IP/DHCP Relay" menuwinbox - added key type and key length column for user SSH keyswinbox - added missing SFP monitoring properties under "Interface/SFP" menuwinbox - added passphrase option for SSH host key exportwinbox - added passphrase option for SSH host key importwinbox - allow specifying size and rtmpfs size with M, G units under "System/Disks" menuwinbox - allow to specify "M" or "G" postfix for download, upload or total limits under "User Manager/Limitations" menuwinbox - do not show "Host Key Size" when using ed25519 key under "IP/SSH" menuwinbox - fixed the issue where the skin file fails to appear in the user group menu after creationwinbox - renamed "Channel" column to "Current Channel" under "Wifi" menuwinbox - show "Valid Servers" and "Unknown Servers" column by default under "IP/DHCP Server/Alerts" menuwinbox - show inherited properties for wifi interfaceswinbox - show SIM settings for SXTR device under "Interfaces/LTE/Modem" menuwinbox - updated icons for certain menuswinbox - use correct values for "Jump Target" property under "IPv6/Firewall/Filter Rules" menuwireguard - added option to mark peer as responder onlywireguard - added peer "name" field and display it in logswireguard - do not attempt to connect to peer without specified endpoint-addresswireguard - fixed "auto" argument usage for "private-key" and "preshared-key" settingswireguard - fixed performance issues showing QR codewireless - perform shorter channel availability check for 5600-5650MHz if regulatory domain permits itx86 - fixed ixgbe Tx hang by disabling TSOx86 - fixed VLAN tagged packet transmit for ice driverx86 - ice driver update to v1.13.7x86 - improved stability for RTL8125 driverx86 - ixgbe driver update to 5.19.9x86/chr - improved panic saving (increased minimal RAM requirements to 256MB)What's new in 7.14.3:bgp - correctly synchronize input.accept-nlri address listbridge - use default "edge=auto" for dynamically bridged interfaces (PPP, VPLS, WDS)disk - improved system stabilityfetch - fixed slow throughput due to "raw" logging which occurred even when not listening to the topic (introduced in v7.13)queue - improved system stability (introduced in v7.6)wifi-qcom - added configuration.distance setting to enable operation over multi-kilometer distances (CLI only)
bgp - correctly synchronize input.accept-nlri address listbridge - use default "edge=auto" for dynamically bridged interfaces (PPP, VPLS, WDS)disk - improved system stabilityfetch - fixed slow throughput due to "raw" logging which occurred even when not listening to the topic (introduced in v7.13)queue - improved system stability (introduced in v7.6)wifi-qcom - added configuration.distance setting to enable operation over multi-kilometer distances (CLI only)
Source:
Tweakers.net