Community discussions

MikroTik App

Search found 18 matches

bygsbiz
Wed Dec 22, 2021 12:17 pm
Forum:General
Topic:RouterOS 7.1 quirks???
Replies:0
Views:2920

RouterOS 7.1 quirks???

Hi All, I'm just creating this in general, because I couldn't think of a better place, so please steer me the right way if inappropriate. I just updated to Routeros 7.1 (yes I am moving to 7.1.1) and I noticed a couple of things that may be an issue? 1) when I created a Wireguard interface and set i...
bygsbiz
Wed Dec 15, 2021 5:16 pm
Forum:General
Topic:Log4J Exploit firewall filter
Replies:1
Views:1201

Log4J Exploit firewall filter

Hey everybody, Just wondering if in the interests of the community to mitigate Log4J2 exploits if anyone has any Firewall filters (Layer7 or otherwise) to stop LDAP & LDAPS protocols outbound that they would be willing to share? or any inbound filtering for the log4J exploit attempts? I don't ne...
bygsbiz
Wed Sep 22, 2021 6:38 pm
Forum:General
Topic:Has the DoH memory leak been fixed?
Replies:4
Views:796

Re: Has the DoH memory leak been fixed?

Thanks rextended. Hopefully we won't be too far away from the release of 7.x. I'll wait for that and try again.
bygsbiz
Wed Sep 22, 2021 5:59 pm
Forum:General
Topic:Has the DoH memory leak been fixed?
Replies:4
Views:796

Re: Has the DoH memory leak been fixed?

Thanks for the feedback, but I don't have a test unit and it would take a couple of days for it to fail in any case. So I just thought I would see if anyone else knew off hand before I ventured into finding out myself.
bygsbiz
9月22日,2021年结婚4:54点
Forum:General
Topic:Has the DoH memory leak been fixed?
Replies:4
Views:796

Has the DoH memory leak been fixed?

Hi All, I'm just trying to find out if the DoH memory leak/Cache corruption issue has been fixed. I've not found any mention of it being fixed in the RouterOS change logs since DoH was implemented, But I am keen to start using it again. Just wondering anyone knows if it got fixed on the quiet? I kno...
bygsbiz
2021年我的2月22日下午2:34分
Forum:Announcements
Topic:v6.49beta [testing] is released!
Replies:171
Views:80225

Re: v6.49beta [testing] is released!

No fix for DoH memory leak yet? I agree, I was also waiting for a DoH memory leak fix. +1 on the DoH memory leak. The reality is that should be called as a CVE. Mikrotik RouterOS v6.47+ "DNS Request flood causes cache overflow and DNS server failure, if DoH is enabled" Status=Current.
bygsbiz
Fri Feb 05, 2021 9:13 pm
Forum:Announcements
Topic:v6.48.1 [stable] is released!
Replies:103
Views:54471

Re: v6.48.1 [stable] is released!

Again, the DoH memory leak isn't fixed. Sigh.
bygsbiz
Sat Oct 10, 2020 5:37 pm
Forum:Scripting
Topic:Importing IP List from file
Replies:57
Views:19814

Re: Importing IP List from file

Try these 5 lines. just add your own TLD's, it will add an address list for each TLD. Run it again to update them. You will need to create a firewall rule to drop the TLD lists. Beware the lists are huge (who woulda guessed) and if you load them into memory they will take it all, so select your TLD'...
bygsbiz
Wed Oct 07, 2020 3:23 pm
Forum:Scripting
Topic:最佳方式触发DYNDNS脚本和为什么没有事件Triggers for Scripts?
Replies:2
Views:797

Re: Best way to trigger DYNDNS Script and why no Event Triggers for Scripts?

Hi, Sorry I don't believe there is, well I couldn't find any event driven anything in my research. Perhaps someone more enlightened can inform us both? But I agree with you event driven scripting and scheduling would be a welcome addition to RouterOS. I know it's not what you are after but it may he...
bygsbiz
Tue Aug 04, 2020 6:21 pm
Forum:General
Topic:DoH corrupting DNS cache? DNS cache full with invalid data?
Replies:27
Views:7297

Re: DoH corrupting DNS cache? DNS cache full with invalid data?

Hi All,
I reported this problem to Mikrotik Support, I have just had this response:
Hello,

We are seeing similar reports, currently we are trying to reproduce the issue. We are looking forward to fixing it as soon as possible.

Best regards,
bygsbiz
Tue Jul 28, 2020 5:39 pm
Forum:Scripting
Topic:Useful scripts
Replies:106
Views:260323

Re: Useful scripts

Hi All, OK not really a script, but I thought it may be in the same flavour. I created this Dynamic Blacklist firewall rule set that counts excessive connection attempts from the same IP within a given time frame and eventually blocks them for X number of days. I was initially going to put in a geo-...
bygsbiz
Tue Jul 28, 2020 5:32 pm
Forum:Scripting
Topic:Useful scripts
Replies:106
Views:260323

Re: Useful scripts

Hi All, A small script to download and update Geofilters into an IP address list (with the name of the TLD). you will need to create the firewall rule to drop (or whatever) the list(s). Change your TLD's & download locations to suit. foreach i in={ "NL"; "CN"; "RU";...
bygsbiz
Tue Jul 28, 2020 5:20 pm
Forum:Scripting
Topic:Useful scripts
Replies:106
Views:260323

Re: Useful scripts

Hi All, A script to automatically check and update HE.net Dynamic DNS, schedule it to run every 15 mins & on reboot. Fill in your ddns host, WAN interface and the associated key. :local currentIP :local newIP :local ddnshost "" :local key "" :local...
bygsbiz
Tue Jul 28, 2020 5:04 pm
Forum:Scripting
Topic:Useful scripts
Replies:106
Views:260323

Re: Useful scripts

Hi All, This is a little script set I wrote to check the IP of visitors to your service against DNS RBL's. Handy to block known botnets and/or bad IP's. This filter is a little complex but simply put it, will record the IP's of any system connecting to the firewall on port 22 (or any other service p...
bygsbiz
Mon Jul 27, 2020 3:26 pm
Forum:General
Topic:DoH corrupting DNS cache? DNS cache full with invalid data?
Replies:27
Views:7297

Re: DoH corrupting DNS cache? DNS cache full with invalid data?

I stumbled on this this morning in 6.47.1, Once the cache is full you can see it constantly refreshing current entries and reloading the static entries. All DNS requests time out. > pbs.twimg.com Server: [192.168.1.1] Address: 192.168.1.1 DNS request timed out. timeout was 2 seconds. Is there a way ...
bygsbiz
Tue Apr 28, 2020 8:24 pm
Forum:RouterOS beta and rc versions
Topic:Feature Request - Wireguard Protocol
Replies:167
Views:78277

Re: Feature Request - Wireguard Protocol

+1 for Wireguard
bygsbiz
Tue Apr 28, 2020 8:11 pm
Forum:RouterOS beta and rc versions
Topic:IPv6 dhcp finally in v7 ?
Replies:9
Views:5391

Re: IPv6 dhcp finally in v7 ?

I'm a client and I'm asking for it.
bygsbiz
Tue Aug 20, 2019 12:39 am
Forum:Scripting
Topic:Quick way to load an address list into an array?
Replies:0
Views:2061

Quick way to load an address list into an array?

Hi Guys, I have a script that loads and address list into an array for further processing on the array rather than trying to muck with the address list directly. This is the code: # for each IP in the unchecked list load it into an array :set i (0); :foreach fwlist in=[/ip firewall address-list find...