T

T

Anonymous

What's new in 6.43rc64 (2018-Aug-23 08:02):
MAJOR CHANGES IN v6.43:
!) api: changed authentication process (https://wiki.mikrotik.com/wiki/Manual:API#Initial_login)
!) backup: do not encrypt backup file unless password is provided
!) btest: requires at least v6.43 Bandwidth Test client when connecting to v6.43 or later version server except when authentication is not required
!) cloud: added IPv6 support
!) cloud: added support for licensed CHR instances (including trial)
!) cloud: reworked "/ip cloud ddns-enabled" implementation (suggested to disable service and re-enable after installation process)
!) mac-telnet: require at least v6.43 MAC Telnet client when connecting to v6.43 or later version server
!) radius: use MS-CHAPv2 for "login" service authentication
!) romon: require at least v6.43 RoMON agent when connecting to v6.43 or later RoMON client device
!) security: fixed vulnerabilities CVE-2018-1156, CVE-2018-1157, CVE-2018-1158, CVE-2018-1159
!) webfig: improved authentication process
!) winbox: improved authentication process excluding man-in-the-middle possibility
!) winbox: minimal required version is v3.15
Changes in this release:
- bridge: added an option to manually specify ports that have a multicast router (CLI only)
- bridge: added a warning when untrusted port receives a DHCP Server message when DCHP Snooping is enabled
- bridge: added more options to fine-tune IGMP Snooping enabled bridges (CLI only)
- bridge: added support for DHCP Option 82 (CLI only)
- bridge: added support for DHCP Snooping (CLI only)
- bridge: added support for IGMP Snooping fast-leave feature (CLI only)
- cloud: close local UDP port if no activity
- console: made "once" parameter mandatory when using "as-value" on "monitor" commands
- console: removed automatic swapping of "from=" and "to=" in "for" loops
- crs326/crs328: fixed packet forwarding when port changes states with IGMP Snooping enabled
- crs3xx: added hardware support for DHCP Snooping and Option 82
- crs3xx: fixed packet forwarding when "frame-type" is changed (introduced in v6.43rc51)
- crs3xx: fixed SwOS config import
- defconf: fixed default configuration for RBSXTsq5nD
- dhcpv6-client: fixed false invalid flag (introduced in v6.43rc56)
- fetch: added "as-value" output format
- fetch: fixed address and DNS verification in certificates
- health: added missing parameters from export
- ipsec: added warning messages for incorrect peer configuration
- ipsec: improved stability when using IPsec with disabled route cache
- leds: fixed LED behaviour when bonding is configured on SFP interfaces
- lte: added "sector-id" to info command
- lte: fixed SIM7600 series module support with newer device IDs
- ppp: added support for Alfa Network U4G modem
- rb3011: added IPsec hardware acceleration support
- snmp: added EAP identity to CAPsMAN registration table
- supout: added monitored bridge VLAN table to supout file