It will automatically scan all devices within specified subnets, draw and layout a map of your networks, monitor services of your devices and alert you in case some service has problems.

Features

  • The Dude is free of charge
  • Auto network discovery and layout
  • Discovers any type or brand of device
  • Device, Link monitoring, and notifications
  • Includes SVG icons for devices, and supports custom icons and backgrounds
  • Easy installation and usage
  • Allows you to draw your own maps and add custom devices
  • Supports SNMP, ICMP, DNS and TCP monitoring for devices that support it
  • Individual Link usage monitoring and graphs
  • Direct access to remote control tools for device management
  • Supports remote Dude server and local client
  • Runs in Linux Wine enviroment, MacOS Darwine, and Windows
  • Best price/value ratio compared to other products (free of charge)

What's New

  • Device-mode - after upgrade, mode "Enterprise" is renamed to "Advanced" and traffic-gen, partition (command "Repartition"), routerboard and install-any-version features will be disabled;
  • Webfig - redesigned html, styling and functionality;
  • 6to4 - fixed issue where 6to4 relay would not forward traffic unless destination address is set;
  • Adlist - improved logging;
  • Adlist - improved system stability;
  • Adlist - optimized import on system with low disk space;
  • Api - fixed rest api serialization of binary data;
  • Arm64 - fixed for bare-metal servers to be able to access more than 2gb ram;
  • Arm64 - show cpu frequency on bare-metal installations;
  • Arm64/x86 - added missing pci id for mlx4 driver;
  • Bonding - hide mlag-id property on non-compatible devices;
  • Bridge - add hw offload support for active-backup bonds on 98dxxxxx, 88e6393x, 88e6191x and88e6190 switches;
  • Bridge - added interface-list support for vlans;
  • Bridge - added message for inactive port reason;
  • Bridge - added priority setting to manually elect primary mlag peer;
  • Bridge - correctly display ppp interfaces in vlan menu;
  • Bridge - disallow duplicate static vlan entries;
  • Bridge - disallow multicast mac address as admin-mac;
  • Bridge - enable faster hw offloading when detect-internet is disabled;
  • Bridge - fixed first host table response for snmp;
  • Bridge - fixed incorrect hw offloaded port state in certain cases on msti add;
  • Bridge - fixed missing slave flag on port in certain cases;
  • Bridge - fixed mvrp registrar and applicant port options;
  • Bridge - fixed port monitor with interface-lists;
  • Bridge - fixed port move command;
  • Bridge - fixed setting bridge mtu to l2mtu value;
  • Bridge - fixed vlan overlap check;
  • Bridge - ignore disabled interfaces when calculating bridge l2mtu;
  • Bridge - improved port handling;
  • Bridge - improved stability;
  • Bridge - prioritize mac selection from ethernet interfaces when using auto-mac feature;
  • Bridge - re-synchronize mlag system-id when bridge mac changes;
  • Bridge - removed support for master port config conversion (used before version 6.41);
  • Bridge - update dynamic msti priority value when changing configuration;
  • Bth - improved stability on system time change;
  • Certificate - do not download crl if there is not enough free ram;
  • Certificate - do not show not relevant values for certificate template (cli only);
  • Certificate - fixed handling of capsman-cap certificates (introduced in v7.16);
  • Certificate - removed unstructured address field support;
  • Chr - added chelsio vf driver for pciid 5803;
  • Chr/arm64 - fixed kernel crypto use without crypto extensions for rpi cm4;
  • Cloud - changed ddns-enabled setting from "No" to "Auto" (service is enabled when bth is enabled);
  • Cloud - improved ddns and vpn state stability;
  • Console - added :range command;
  • Console - added group-by property for print command;
  • Console - added json.No-string-conversion to :serialize;
  • Console - added lf/crlf options to :convert transform;
  • Console - added more argument definitions for mac-protocol property;
  • Console - added password property to "/system/ssh-exec" command;
  • Console - added to/from=num option for :convert command;
  • Console - allow clearing history for a specific user;
  • Console - allow setting width to supout.Rif output;
  • Console - clear history when removing user;
  • Console - disallow autocomplete hints for user without read policy;
  • Console - execute :return command without error;
  • Console - fixed endless loop when closing input prompt;
  • Console - fixed missing arguments in wifi menu in certain cases;
  • Console - force print paging when output does not fit terminal width;
  • Console - improved printing output in some menus;
  • Console - improved scripting system stability;
  • Console - increased w60g scan-list size to 6;
  • Console - print warning in cli after enabling protected bootloader;
  • Console - removed "Chain" names from print parameter list and show all print parameters in "/ipv6/firewall/filter" directory;
  • Console - show system-id in export for chr;
  • Console - updated copyright notice;
  • Container - allow import from .Tar.Gz file;
  • Container - do not log start, end events unless logging is enabled;
  • Container - fixed user and group id range;
  • Container - improved "Start-on-boot" stability;
  • Container - improved container shell;
  • Crypto - improve crypto speeds;
  • Crypto - use hardware accelerator for gcm cipher in tls connection on alpine cpus;
  • Defconf - changed wireless installation from "Indoor" to "Any";
  • Defconf - disable 5ghz secondary channel on rb4011;
  • Defconf - do not add default password for cap mode configuration on older audience devices without a password;
  • Defconf - fixed new port name recognition;
  • Detnet - remove dynamic dhcp client creation;
  • Device-mode - added "Allowed-versions" list which are allowed to be installed without "Install-any-version" mode enabled;
  • Device-mode - added "Basic" mode;
  • Device-mode - added routerboard, install-any-version and partitions features;
  • Device-mode - allow feature and mode update on x86 via power button and reboot/shutdown from aws;
  • Device-mode - fixed feature and mode update on arm64 hetzner;
  • Device-mode - fixed feature and mode update via power-reset on mipsbe devices;
  • Device-mode - limit "/tool/ping-speed" and "/tool/flood-ping" under "Traffic-gen" feature;
  • Device-mode - limit device-mode update maximum allowed attempt count which can be reset only with reboot or button press;
  • Device-mode - provide more precise device-mode update action printout;
  • Device-mode - show all features and active restrictions with "Print" command;
  • Dhcp-relay - added "Local-address-as-src-ip" property;
  • Dhcp-server - use interface id for nas-port and added interface name to nas-port-id attribute in radius requests;
  • Dhcp-server - use single radius accounting session for ipv4 and ipv6 when dual stack is used;
  • Dhcpv4-client - correctly handle adding/setting emtpy dhcp-options;
  • Dhcpv4-client - fixed crash when releasing disabled dhcp client;
  • Dhcpv4-client - respect renewal-time (58) and rebinding-time (59) options;
  • Dhcpv4-server - do not remove options set config when dhcp network is changed;
  • Dhcpv4-server - properly detect dhcp server address when underlying interface has multiple ip addresses configured;
  • Dhcpv4-server/relay - added additional error messages for dhcp servers and relays;
  • Dhcpv4/v6-server - added address-list parameter to which address will be added if the lease is bound;
  • Dhcpv6-client - added prefix-address-list parameter;
  • Dhcpv6-client - improved system stability when dhcpv6 client is enabled on non-existing interface;
  • Dhcpv6-client - log message when response with invalid transaction-id received;
  • Dhcpv6-client/server - added support for dhcpv6 reconfigure messages;
  • Dhcpv6-server - added ipv6 address delegation support;
  • Dhcpv6-server - do not require "Prefix-pool" to be specified;
  • Dhcpv6-server - fixed dhcpv6 server "Address-pool" property showing in command line as "Unknown" when real value is "Static-only";
  • Dhcpv6-server - improved system stability when removing actively used dhcpv6 server;
  • Dhcpv6-server - include all existing prefixes (with lifetime 0) in renew reply and new prefix if radius returns different prefix;
  • Dhcpv6-server - properly display "Static-pool" value in server print output for "Prefix-pool" argument;
  • Discovery - added support for lldp dcbx;
  • Discovery - use lldp description field to populate platform, version and board-name;
  • Disk - added "Type=file" for file-based block devices, useful for using file as a swap, or when having file-based filesystem images (cli only);
  • Disk - added btrfs filesystems list (cli only);
  • Disk - added mount-read-only and mount-filesystem options to allow read-only mounts and prevent mounting device at all (cli only);
  • Disk - added sshfs client to "/disk" menu (cli only);
  • Disk - added support for swap, currently allowed on any block device with "Set x swap=yes" when container package is installed (cli only);
  • Disk - allow to configure global and per disk mountpoint template - [slot],[model],[serial],[fw-version],[fs-label],[fs-uuid],[fs] Variables supported;
  • Disk - auto mount iso and squashfs images;
  • Disk - fixed managing and cleaning up mount points;
  • Disk - fixed raid role auto selection for up to 64 drives;
  • Disk - improve slot naming and improvements for visualizing complex hardware topology;
  • Disk - improve test to report zero byte iops;
  • Disk - improved system stability;
  • Disk - read/show exfat filesystem label;
  • Disk - recognize virtual sd* interfaces;
  • Disk - remove 32 character slot name limit;
  • Disk - save raid superblock and raid bitmap superblock on member devices in 1.2 format/location;
  • Disk - show detailed mountpoint users when unable to unmount;
  • Disk - show usage as percentage (cli only);
  • Disk - try all nfs versions (4.2,4.1,4.0,3,2) when mounting nfs in that order;
  • Disk,nvme - show nvme namespaces if configured more than one on a nvme drive;
  • Dns - added option to create named dns servers that can be used as forward-to servers;
  • Dns - do not look up local cache when executing ":resolve" command with specified "Server" parameter (introduced in v7.16);
  • Dns - doh whitelist support for adlist using static fwd entries;
  • Dns - refactored dns service internal processes;
  • Dns - whitelist support for adlist using static fwd entries;
  • Ethernet - improved interface stability for rb4011 devices;
  • Ethernet - improved linking after reboot for hap ax lite devices ("/system routerboard upgrade" required);
  • Ethernet - improved stability after reboot for chateau pro ax;
  • Ethernet - improved system stability for ccr2004-1g-2xs-pcie device;
  • Ethernet - log warning only about excessive broadcast (do not include multicast) and reduced log count;
  • Fetch - fixed certificate check when provided hostname is ip address;
  • Fetch - fixed large file (over 4gb) fetch in http/https mode;
  • File - correctly identify mounted disks;
  • File - do not needlessly scan large filesystems, could prevent unmounting;
  • File - improved handling of changes to the file system;
  • File - improved service stability when accessing files list from other system services;
  • File - support files over 4gb size;
  • File - update file size before trying to request content;
  • Firewall - added none-dynamic and none-static arguments for ipv6 address-list-timout settings;
  • Firewall - added support for random external port allocation;
  • Firewall - added warning log for tcp syn flood;
  • Firewall - fixed "Dst-limit" and "Limit" mathers when using zero value for burst argument;
  • Firewall - improved matching from deeply nested interface-lists;
  • Firewall - removed default mangle passthrough=yes configuration from export;
  • Ftp - added vrf support;
  • Gps - changed default gps antenna setting for ltap mini with internal lte/gps combo antenna;
  • Graphing - fixed graphing rule removal;
  • Graphing - fixed queue graph storing on disk;
  • Health - added cpu-overtemp-check on arm, arm64 devices (cli only);
  • Health - changed psu state from "No-ac" to "No-input";
  • Health - hide settings in cli if there is nothing to show;
  • Health - removed board-temperature on rb5009upr+s+in device;
  • Igmp-proxy - refactored igmp querier;
  • Ike2 - improved performance by balancing multicore cpu usage for key exchange calculation also for initiator;
  • Iot - added additional debug for lora logging;
  • Iot - added an option to print out lora traffic in cli (not gui-only option anymore);
  • Iot - added new lora traffic fcnt packet counter parameter;
  • Iot - added support for usb bluetooth dongles (le 4.0+) which enables bluetooth functionality;
  • Iot - bluetooth peripheral device menu now displays correct ibeacon major/minor values;
  • Iot - fixed duplicate lora payloads in the traffic tab;
  • Iot - fixed incorrect lora joineui filter export behavior;
  • Iot - fixed lora behavior, where join eui or dev eui could be incorrectly converted during forwarding;
  • Iot - improved system stability for lora;
  • Iot - improvements to lora device's stats tab;
  • Iot - lora lns improvement;
  • Iot - lora traffic tab rssi now shows proper values for arm architecture;
  • Iot - modbus rework which improves tx rx switching behavior;
  • Iot - mqtt improvement to support large payloads and gracefully discard payloads above size limit;
  • Iot - removed crc-disabled and crc-error options from the lora forwarding;
  • Iot - removed lora pause traffic option/setting;
  • Iot - removed some lora radio related parameters (e.G. Rssi-off and tx-enabled) that were not meant to be changed;
  • Ippool - removed maximum "63 bit" prefix length limitation;
  • Ipsec - ike2 improved process for policies;
  • Ipv6 - added comment property to "/ipv6/nd/prefix" menu;
  • Ipv6 - added ipv6 settings related to stale ipv6 neighbor cleanup;
  • Ipv6 - added support for manual link-local address configuration;
  • Isis - do not disable fast-path when isis is enabled on an interface;
  • Isis - fixed console flags;
  • Isis - fixed invalid l2 lsp type;
  • Isis - make it work when mtu is larger than 1500;
  • Isis - update interface mac address on change (caused neighbor to stuck in init state);
  • Kid-control - use time format according to iso standard;
  • L3hw - improved system stability;
  • L3hw - rate limit error logging;
  • Leds - fixed issue where interface leds might not properly disable in some cases;
  • Log - added basic validation for "Disk-file-name" property;
  • Log - added hostname support to remote logging action;
  • Log - added regex parameter for log filtering in rules;
  • Log - fixed e-mail logging (introduced in v7.16);
  • Log - use time format according to iso standard;
  • Lte - added option to check/install modem firmware from early-access/testing channel (cli only);
  • Lte - added provider specific firmware update (fota) for cosmote gr networks on chateau 5g;
  • Lte - disabled ims service for chateau 5g on operator "3 at" network (plmn id 23205);
  • Lte - drop operator selection support for r11e-4g modem as it is unreliable;
  • Lte - fixed "Default-name" property in export when multiple lte interfaces are used;
  • Lte - fixed "Lte monitor" signal reporting for rg520f-eu modem when connected to 5g sa network;
  • Lte - fixed "Operator" setting for ec200a-eu modem;
  • Lte - fixed long "Plmn search in progress" for sxt 3-7;
  • Lte - fixed lte band setting for sxt lte 3-7;
  • Lte - fixed roaming barring (allow-roaming=no) for ec200a-eu modem;
  • Lte - fixed signal info reporting for fg621-ea modem in umts network;
  • Lte - fixed sms sender parsing;
  • Lte - improved modem fw upgrade for chateau 5g;
  • Lte - improved r11el-ec200a-eu modem firmware upgrade procedure;
  • Lte - improved recovery after unexpected modem reboot for chateau's 5g and 5g r16 series devices;
  • Lte - improvements to modem "Firmware-upgrade" command;
  • Lte - mbim increased assignable apn profile count up to 8 then modem firmware allows it;
  • Lte - modem firmware update (fota), added support to install provider specific version;
  • Lte - removed trailing "F" symbol from uicc;
  • Lte - set "Sms-read=no" and "Sms-protocol=auto" as default values;
  • Lte - set ipv6 address reporting format in modem init for at modems and mbim modems with at channel;
  • Mac-server - allow mac-telnet access through any bridged port when bridge interface is allowed;
  • Mac-telnet - use ascii del as erase/backspace char instead of bs (fixes mac-telnet backspace for winbox4);
  • Macvlan - improved error when trying to create new interface on already busy parent interface;
  • Macvlan - updated driver;
  • Modem - knot bg77 modem, improved handling of modem unexpected restarts;
  • Mpls - added fast-path support for vpls;
  • Mpls - added mpls mangle support;
  • Mpls - added support for "Icmp fragmentation needed";
  • Mpls - do no drop ldp peering session on pw deactivation;
  • Mpls - do not reconnect vpls on name or comment changes;
  • Netinstall - removed unused "Get key" button;
  • Netinstall - save and restore device-mode configuration on format;
  • Netinstall-cli - added "-o" option to install devices only once per netinstall run;
  • Netinstall-cli - fixed x86 detection;
  • Netwatch - added "Ignore-initial-up" and "Ignore-initial-down" properties;
  • Netwatch - fixed multiple variables;
  • Netwatch - fixed probe toggle when adding a comment;
  • Ospf - fixed memory corruption;
  • Ospf - improved stability on configuration update;
  • Ovpn - added vrf support to ovpn server (server menu now supports multiple entries and previous server configuration is automatically imported);
  • Ovpn - improved system stability;
  • Ovpn-client - added tls-crypt, tls-crypt-v2 support;
  • Ovpn-server - added "User-auth-method" property and allow mschap2 for radius authentication;
  • Pimsm - improved system stability after interface disable;
  • Poe-out - added low-voltage-too-low status;
  • Poe-out - improved poe-out configuration handling when doing reset-configuration command;
  • Poe-out - upgraded firmware for crs354-48p-4s+2q+ device (the update will cause brief power interruption to poe-out interfaces);
  • Poe-out - upgraded firmware for pse (bt) controlled boards (the update will cause brief power interruption to poe-out interfaces);
  • Port - display a warning when using invalid log-file with the "Remote-access" feature;
  • Port - more detailed print command output, include in "Used-by" property channel number(s);
  • Ppp - add routes in matching vrf;
  • Ppp - added support for bridge-port-pvid configuration via ppp profile;
  • Ppp - added support for bridge-port-trusted configuration via ppp profile;
  • Ppp - do not print local/remote pool related errors in log when configuration does not require pool usage;
  • Ppp - fixed typos in log message;
  • Ppp - reuse link-local ipv6 address for static bindings when possible;
  • Ppp - set apn/pdn type "Ipv4/v6" according assigned ppp profile protocol setting;
  • Pppoe - added support for pppoe server over 802.1q vlans;
  • Profiler - classify ppp processing;
  • Profiler - improved process classification;
  • Profiler - renamed radv process to radvd;
  • Ptp - added dynamic switch acl rules in order to trap ptp packets to cpu instead of forwarding;
  • Ptp - added option to configure l2 transport with forwardable and non-forwardable mac destination;
  • Ptp - added ptp support for crs320-8p-8b-4s+ and crs326-4c+20g+2q+ devices;
  • Ptp - display warning when none of the ptp ports has a link;
  • Ptp - fixed dscp values for ipv4 packets;
  • Ptp - fixed packet receive with enabled igmp-snooping;
  • Ptp - fixed packet tx/rx when enabling ptp on 1/2.5/100gbps links for 98cx8410, 98dx8525, 98dx4310 switches (introduced in v7.16);
  • Ptp - fixed synchronization on qsfp28 interfaces;
  • Ptp - make ptp process more stable and deterministic when applying configuration;
  • Ptp - restrict configuring g8275 profile with ipv4 transport;
  • Qos-hw - allow to disable/enable profiles, disabled or removed profile gets replaced with the default;
  • Qos-hw - enabling pfc on port also requires setting egress-rate-queuen;
  • Qos-hw - fixed export when changing default tx manager;
  • Qos-hw - fixed incorrect port byte-use counter;
  • Qos-hw - improved pfc behavior;
  • Qos-hw - improved system stability when enabling qos;
  • Qos-hw - improved wred and ecn behavior;
  • Qos-hw - rename pfcn-pause and pfcn-resume to pfcn-pause-threshold and pfcn-resume-threshold;
  • Qos-hw - reworked pcp and dscp mapping (now supports single, multiple and range values, previous configuration with minimal value mapping is converted to a single value);
  • Qos-hw - switch-cpu port trust settings are forced to "Keep";
  • Queue - improved system stability when too many simple queues are added;
  • Quickset - added "Lte ap" quickset profile with one wifi interface;
  • Rip - improved stability when changing metric;
  • Romon - added dynamic switch rules on devices supporting it when enabling the service;
  • Romon - added interface-list support;
  • Romon - send uptime in discovery;
  • Rose-storage - allow to set iscsi-iqn only when type=iscsi and allow nvme-tcp-name only when type=nvme-tcp;
  • Rose-storage - do not allow to format exported disks;
  • Rose-storage - enable autocomplete for local-path property in "/file/sync" menu;
  • Rose-storage - enable more threads for faster raid sync;
  • Rose-storage - ensure unique nvme-tcp-names for nvme-tcp clients;
  • Rose-storage - improved error messages;
  • Rose-storage - improved system stability;
  • Rose-storage,raid - improved stability of degraded arrays on startup;
  • Rose-storage,raid - store superblock in 1.2 format, show raid super block info when detected to help with reassembling arrays;
  • Route - fixed discourse attribute print;
  • Route - fixed minor typo in failure message;
  • Route - fixed possible issue with inactive routes after reboot (introduced in v7.16);
  • Route - improved stability;
  • Route - improved stability with static route configuration;
  • Route - increased interface name length limit in log messages;
  • Route - removed possibility for ipv6 routes to specify interface in the dst-address;
  • Routerboot - fixed boot mac for devices with alpine cpu ("/system routerboard upgrade" required);
  • Routerboot - fixed boot mac for mipsbe crs3xx and crs5xx switches ("/system routerboard upgrade" required);
  • Routerboot - improved stability for ipq8072 and ipq6010 when flash-boot is used ("/system routerboard upgrade" required);
  • Routing-filter - fixed subtract and add for numerical values (+x, -x);
  • Rsync - fixed when used over ssh and spaces in directory names;
  • Sfp - fixed 1gbps supported rate for rb960 and rb962 devices;
  • Sfp - fixed linking with 1gbps optical modules with "Combo-mode=sfp" configuration for crs312 device;
  • Sfp - improved initialization and linking for some sfp modules;
  • Sfp - improved initialization for certain sfp modules on crs309 and crs317 devices ("/system routerboard upgrade" required);
  • Sfp - improved power control configuration for qsfp optical modules according to the eeprom field;
  • Sfp - improved sfp auto-negotiation for l22, l23 devices;
  • Sfp - improved sfp28, qsfp28 interface stability using dac cable for crs520 switch;
  • Smb - stability improvements for client/server;
  • Snmp - added wifi fields to mikrotik-mib;
  • Socks - fixed comment property for access configuration;
  • Ssh - added option to configure ssh ciphers (replaced allow-none-crypto parameter);
  • Ssh - do not regenerate host key after update from routeros version older than 7.9;
  • Ssh - improved logging;
  • Ssh - improved speed;
  • Ssh - prefer gcm ciphers for arm64 and x86 devices when ciphers=auto;
  • Ssl/tls - improved performance;
  • Sstp - added pfs=required option to allow only ecdhe during tls handshake;
  • Storage - preserve permissions,owners,attributes when syncing under "/file/sync";
  • Storage,rsync - fixed to work with clients passing "-a" option;
  • Supout - added bgp advertisements section;
  • Supout - added device-mode section;
  • Supout - do not create autosupout.Rif for second time after system reboot;
  • Supout - print non bgp and osfp routes if route list is too large;
  • Supout - reduce minimal ram required for export to be included;
  • Supout - use separate lte section;
  • Switch - added "All" argument for "New-dst-ports" switch rule property for crs3xx, crs5xx, ccr2116 and ccr2216 devices;
  • Switch - added ipv6 flow label matching in switch rules for crs3xx, crs5xx, ccr2116 and ccr2216 devices;
  • Switch - allow bond interfaces in switch rules for crs3xx, crs5xx, ccr2116 and ccr2216 devices;
  • Switch - allow matching network bitmask for ipv4 and ipv6 dst/src-address properties in switch rule;
  • Switch - disallow switch-cpu in "Ports" and "New-dst-ports" rule properties for crs3xx, crs5xx, ccr2116, ccr2216 and rb5009 devices;
  • Switch - fixed a potential issue with packet corruption caused by incorrect switch initialization on crs3xx/5xx devices;
  • Switch - fixed l2mtu for 25gbps ports;
  • Switch - fixed rspan error message when using mirror-target=cpu;
  • Switch - fixed rule disable in certain cases for 98dx224s, 98dx226s, and 98dx3236 switch chips;
  • Switch - fixed storm-rate accuracy on 98dx224s, 98dx226s, and 98dx3236 switch chips;
  • Switch - force "Mac-protocol" when matching ipv4 or ipv6 specific properties;
  • Switch - improved cpu performance for crs328-24p-4s+ switch;
  • Switch - improved system stability for rb5009 and ccr2004-16g-2s+ devices;
  • Switch - make switch rule "Ports" property not required and unsettable (allows matching packets on all switch ports);
  • Switch - updated dynamic switch rules when using hw bridge with igmp snooping (224.0.0.0/24 and ff02::/16 destination addresses are forwarded and copied to cpu);
  • System - improved ipv6 maximum routing table size based on total memory;
  • System - make icmp error source address selection configurable (icmp-errors-use-inbound-interface-address parameter in ip settings);
  • System - make tcp timestamp handling configurable (tcp-timestamps parameter in ip settings);
  • System - moved "/system/upgrade" to "/system/package/local-update";
  • Tftp - improved stability;
  • Upnp - rename service description file from gateway_description.Xml back to gateway.Xml;
  • User-manager - improved stability;
  • Vpls - added support for bridge-pvid configuration;
  • Vrf - fixed packet handling with enabled queues;
  • Vxlan - fixed issue causing to loose ipv6 vtep address setting;
  • Webfig - added search option for settings;
  • Webfig - allow download from file details;
  • Webfig - allow style.Css and script.Js in branding packages;
  • Webfig - fixed uploading files with windows style newlines;
  • Webfig - hide inherited wifi password;
  • Webfig - improved keyboard navigation;
  • Webfig - improved screen reader support;
  • Webfig - improved system stability when used over many simultaneous sessions;
  • Webfig - redirect "/help/license.Html" to "/license.Txt" for backwards compatibility;
  • Webfig - reduce flickering when table is sorted by column with duplicate values;
  • Webfig - skin designer moved to centralized page;
  • Webfig - status page is deprecated, old status page config will work, but can't be updated or created;
  • Webfig - support unicode strings;
  • Wifi - add information to each interface, showing which capsman manages it or which cap hosts it when applicable;
  • Wifi - added a debug log entry when switching channel;
  • Wifi - added ability to set security.Owe-transition-interface to "Auto";
  • Wifi - added access-list stats (cli only);
  • Wifi - added configuration.Installation property to limit use of indoor-only channels;
  • Wifi - added debug log messages on station authentication mismatch;
  • Wifi - added extra info to capsman about message;
  • Wifi - added last-activity property in registration table;
  • Wifi - added multi-passphrase (ppsk) support (cli only);
  • Wifi - added option to reset mac address (cli only);
  • Wifi - added station-roaming support;
  • Wifi - allow ipv6 ll address in caps-man-addresses;
  • Wifi - disabled 802.11h on 2.4ghz station;
  • Wifi - fixed "Disabled" property in certain cases;
  • Wifi - fixed failure to resume operation after dfs non-occupancy period has elapsed;
  • Wifi - fixed failure with "Auto" peer update on the owe interface;
  • Wifi - fixed occasional failure to bring up management frame protection and channel switch capabilities;
  • Wifi - fixed the "No available channels" message still being displayed after a setting change has made some channels available;
  • Wifi - improved ft roaming with wpa3 for some apple devices;
  • Wifi - indicate radios' ability to perform a channel switch in their "Hw-caps" attribute;
  • Wifi - indicate which channels are subject to dfs, or are indoor-only in output of "Monitor" command;
  • Wifi - re-word the "Sa query timeout" log message to "Not responding";
  • Wifi - show authentication type and wireless standard used by each client in registration table;
  • Wifi - show regulatory limits on maximum bandwidth in output of radio/reg-info command;
  • Wifi - when operating in station mode, log more information when ap switches to an unsupported channel;
  • Wifi-qcom - added superchannel country profile;
  • Wifi-qcom - updated regulatory info for ukraine, australia and united states;
  • Wifi-qcom-ac - allow use of channel 144 under "Japan" regulatory domain;
  • Wifi-qcom-ac - fix possible conflict between radio and usb initialization on hap ac2;
  • Wifi-qcom-ac - improved cpu load balancing and system stability;
  • Winbox - added "Copy to access list" option under "Wifi/registration" menu;
  • Winbox - added "Max entries" and "Total entries" properties under "Ip/firewall/connections/tracking" menu;
  • Winbox - added "Scan" and "Test disks" features under "System/disks" menu;
  • Winbox - added enable/disable buttons under "Tools/graphing" menus;
  • Winbox - added mac address support for "Group" property under "Bridge/mdb" menu;
  • Winbox - added missing "Bus" option for compatible devices under "System/routerboard/usb power reset" menu;
  • Winbox - added missing properties under "Ip/neighbors" menu;
  • Winbox - allow to edit ethernet mac address;
  • Winbox - clear "Value" field when unset under "Ip/dns/static" menu;
  • Winbox - fixed duplicate timezone names;
  • Winbox - fixed typo in "System/reset configuration" menu;
  • Winbox - hide lcd menu for devices without display;
  • Winbox - hide lte "External antenna" menu for devices without switchable antenna option;
  • Winbox - improved stability;
  • Winbox - minimal required version is v3.41;
  • Winbox - refresh values under "Bridge/vlans/mvrp attributes" menu;
  • Winbox - renamed and moved "System/auto upgrade" to "System/packages" menu;
  • Winbox - renamed wrong invalid interface flag to inactive;
  • Winbox - show "Fec" property on status tab for interfaces that use it;
  • Winbox - show mlag settings for crs326-4c+20g+2q+ device;
  • Winbox - updated properties and behavior under "Switch/qos" menu;
  • Wireguard - do not initiate handshake when peer is configured as responder;
  • Wireless - added option to reset mac address (cli only);
  • Wireless - added vlan-id to registration-table;
  • Wireless - allow to set canada2 country profile when locked with us lock package for cubeg device;
  • Wireless - enable all chains by default for rb911 and rb922 series devices;
  • Wireless - fixed antenna gain for sxt5ac device;
  • Wireless - preserve configured country while using setup-repeater, added "Country" argument (cli only);
  • X86 - realtek r8169 updated driver;
  • Zerotier - added debug logging;
  • Zerotier - do not show default settings in export;
  • Zerotier - upgraded to version 1.14.0;

Alternatively you can download the latest beta version of this software.