Skip to content
Sep 23 / Greg

Mikrotik Changelog 6.37

What’s new in 6.37 (2016-Sep-23 08:20):

— IMPORTANT! WIRELESS PACKAGE CHANGES:

There will be only one “wireless” package starting from RouterOS v6.37.

— IMPORTANT! DFS CHANGES:

DFS configuration in RouterOS has been redesigned, now device looks at specified country settings (/interface wireless info country-info), and applies corresponding DFS mode for each frequency range automatically, making dfs-mode setting unnecessary.

Please, check that your frequencies work with corresponding DFS settings before upgrade.

*as you can see above they are making things far more clear these days.

!) console – dfs-mode setting does not exist any more and all scripts with such setting will not be executed;
!) dude – (changes discussed here: http://forum.mikrotik.com/viewtopic.php?f=8&t=110424); – *Thrift reports some good things about the new version
!) dude – from now on dude will use winbox port and it will be changed automatically both in client loader and agent configuration;
!) ethernet – added new loop-protect feature for ethernet, vlan, eoip, eoipv6 interfaces, http://wiki.mikrotik.com/wiki/Manual:Loop_Protect ; – *Need to do a little testing. Looks like”If I see my mac come back on the port, shut it down”
!) wireless – “wireless” package included in bundle “routeros” package;
!) wireless – “wireless-cm2” discontinued;
!) wireless – “wireless-rep” renamed to “wireless”; – *Everything has collapsed into a single package, very nice!
!) wireless – DFS option is removed, corresponding DFS mode for each frequency range applies automatically;
*) capsman – fixed kernel crash on cap while changing client-to-client forwarding;
*) capsman – report radio-name in registration table;
*) certificate – do not allow to remove certificate template while signing certificate;
*) console – hotspot setup show wrong certificate name;
*) defconf – fixed default configuration restore if virtual wireless interface were present;
*) defconf – fixed default configuration when wireless package is used;
*) defconf – using caps button now forces all wireless interfaces in caps mode;
*) dhcpv6 – improved interface status tracking;
*) dhcpv6 – reworked DHCP-PD server interface and route management;
*) dhcpv6 – update DUID when system-id changes (solves problem when cloned VM retains the same DUID);
*) dns – fixed crash when using regexp static dns entries; – *I didn’t realize you could use regex in DNS entries, need to look into it.
*) ethernet – added support for LAN9514 ethernet dongle;
*) ethernet – allow to force mtu value when actual-mtu is already the same;
*) ethernet – fixed loop-protect on bridged ports;
*) ethernet – fixed never ending loop in CDP packet processing;
*) ethernet – fixed rare kernel failure on non-switch ethernet reset;
*) ethernet – rb44ge now have disabled-running-check=no by default;
*) firewall – added additional matchers for firewall raw rules;
*) firewall – fixed time based rules on time/timezone changes (again);
*) gps – always check NMEA checksum if available;
*) health – do not show psu and fan information for passive cooling devices;
*) hotspot – show comments from user menu also in active menu;
*) ipsec – fixed crash with enabled fragmentation;
*) ipsec – fixed dynamic policy not deleted on disconnect for nat-t peers;
*) ipsec – fixed fragmentation use negotiation;
*) ipsec – fixed kernel crash when sha512 was used;
*) ipv6 – fixed RA and RS processing on new interfaces after many interfaces have lost link during prolonged operation;
*) ipv6 – improved system responsiveness when ipv6 routes are frequently modified;
*) ipv6 – show multiple neighbors with the same address;
*) kvm – fix add/remove of disabled interfaces;
*) kvm – fixed guest crashing when using mtu bigger than 1504;
*) l2tp – fixed kernel failure when fastpath handles l2tp packets;
*) leds – added option to disable all leds on RBcAP2n;
*) lte – added ability to send/receive sms using ‘/tool sms’;
*) lte – added dlink dwm-157 D, dwm-222 support;
*) lte – added huawei me909s variant;
*) lte – added initial deregistration only for bandrich modems;
*) lte – added logging for usb config switching;
*) lte – added Pantech UML295, Vodafone K4201-Z, ZTE MF823/MF831 support;
*) lte – added rndis for ZTE MF8xx;
*) lte – added support for more dlink dwm-222 configurations;
*) lte – added switch for Huawei K5160;
*) lte – added zte K5008-Z back; – *a lot of new devices added.
*) lte – adjusted usb config for dlink dwm-157 D;
*) lte – fixed at chat condition storage;
*) lte – fixed band setting for sxt lte;
*) lte – fixed band unsetting;
*) lte – fixed default channels for dlink dwm-157;
*) lte – fixed ip activation when CREG (circuit switched) state remains in not registered state;
*) lte – fixed setting correct lte band for sxt lte;
*) lte – process initial state change to deregistred, when lockup occurs;
*) lte – reset if sms storage set fails;
*) mpls – fixed memory leak;
*) mpls – fixed vpls throughput issues caused by out-of-order packets;
*) ntp – fixed ntp server when local-clock used (like usb gps module);
*) partitions – added ability to add comments;
*) ppp – use default-route-distance when adding ipv6 default route;
*) ppp,lte – pin is now converted to string argument;
*) pppoe – fixed disconnects by idle timeout when fastpath is used;
*) quickset – added 2GHz-g/n band support;
*) quickset – fixed guest reporting in “home ap dual” mode;
*) quickset – fixed wireless frequency fields in “home ap dual” mode;
*) rb3011 – fixed rare occasions when router would hang while loading kernel;
*) routing – improved kernel performance in setups with large routing tables;
*) sfp – enabled eeprom printout in /interface ethernet monitor;
*) sfp – fixed initial eeprom reading on CCR1036-8G-2S+ and CCR1072-1G-8S+;
*) sfp – removed “sfp-rate-select” as command was not relevant to currently supported hardware;
*) sms – moved incorrectly logged message from async to gsm topic;
*) sms – report error when unsupported modem is being used;
*) snmp – added script table which executes script and returns it’s output on get request; – *Wait…does this mean I can create a system script, and when I SNMP poll it, it will run the script, and return the result? That would be killer, but I can’t find any info on it; doesn’t seem to be anything under system script or ip snmp.
*) snmp – require write permitions for script run table access;
*) snmp – skip forbidden oids on getnext completion;
*) sstp – allow to specify proxy by dns name;
*) sstp – now supports TLS_ECDHE algorithms;
*) supout – fixed bug that could cause enormous size supout.rif files;
*) supout – improved crash report generation for tile architecture;
*) switch – added comment field for CRS switch VLANs;
*) traffic-flow – allow ipv6 src address to be optional;
*) traffic-flow – fixed IPFIX packet timestamp;
*) traffic-flow – fixed IPFIX wrong flow sequence;
*) trafficgen – add per stream packet count setting;
*) trafficgen – show out-of-order packet counters in stats printouts;
*) tunnel – fixed communication via tunnel to router itself if fastpath was active;
*) tunnel – fixed ipv6 link-local address adding for gre;
*) tunnel – increased minimal MRRU to 1500 for PPP interfaces;
*) tunnel – ipv6 link-local address is now generated from tunnel local-address;
*) usb – added support for SMSC95XX USB Ethernet dongle on mipsbe;
*) usermanager – fixed rare crash on paypal payment;
*) users – fixed script policy checking against user policies when running scripts;
*) webfig – do not crash if radius server does not give out encryption keys;
*) webfig – fixed certificate signing;
*) winbox – added auto refresh for BFD neighbors;
*) winbox – added comment field support for switch vlan menu;
*) winbox – added default-authentication parameter for wireless station modes;
*) winbox – added src-address field for traffic-flow target;
*) winbox – adjust on-event field dynamically depending on window size;
*) winbox – adjusted allowed values for http-proxy field;
*) winbox – disabled MRRU by default for PPP interfaces;
*) winbox – display actual-mtu for tunnels in interfaces window;
*) winbox – fixed disconnect when no windows were opened for a while in unsecure mode;
*) winbox – fixed multiline read only fields not displaying new line characters;
*) winbox – fixed raw firewall showing jump targets from filter chains;
*) winbox – hide ethernet flow control settings for interfaces which does not support them;
*) winbox – removed health menu from devices that do not support it;
*) winbox – removed L2MTU field for PPP interfaces;
*) winbox – removed L2MTU field from PPP server binding settings;
*) winbox – removed unset button for L2MTU field;
*) winbox – show firmware-type in routerboard window;
*) wireless – display DFS flag in country info;
*) wireless – improved driver support for RB953, hAP ac, wAP ac;
*) wireless – send deauth to data frames in scan mode.
*) wireless – updated brazil country settings;

7 Comments

leave a comment
  1. Wayne Hancock / Sep 26 2016

    I too saw the SNMP script table snippet, I haven’t looked into it yet but it sounded pretty slick… please do keep us posted!

  2. Greg / Sep 26 2016

    @wayne – looks like alex already did a proof of concept, and has it working successfully. I’ll likely pop something up for it soon.

  3. C D Tavares / Sep 27 2016

    Do you have an actual URL to find these changelogs? MikroTIk downloads page will no longer deliver them when clicked. I need to track down how they described the firewall change that allowed DNS names in address lists, because I have a problem to report.

  4. Greg / Sep 28 2016

    Hmmm…I usually just click the link at the bottom by changelog, but for some reason the link is broken right now….? I’m assuming it will be back up at some point…

  5. Greg / Oct 11 2016

    Thanks for the tip Mac 😉

  6. Wayne Hancock / Oct 11 2016

    Nice!

Leave a Comment

 

*