Documentation updates - October 2, 2026
Summary of documentation changes made on October 2, 2026.
Diagnostics & Monitoring
- Log: Rewritten and tested on RouterOS 7.25 against syslog, TLS and SMTP servers. Both property tables moved to the CLI Reference. Corrected: entries always show the full date,
disk-lines-per-filedefaults to 1000, TCP and TLS work with every format, andcriticalentries print once at the next login, not at every login. New sections:- Read the log: filter by topic, message and time,
follow-only, extra fields withwith-extra-info, saving to a file, and finding out who changed the configuration. - Log debug messages for one feature into its own memory buffer, with a warning that SSH debug messages contain session keys and session content.
- Keep the log across reboots with the
diskaction: file rotation, folders on other disks, and reading older files. - Send the log to a syslog server: the
default,syslog(RFC 3164) andcefformats, UDP, TCP and TLS, the TCP buffer, why to use CEF over TCP and TLS, and TLS with a trusted CA (check-certificatedoes not check the certificate name). - Email log messages, and run a script on a log message (an example collects the source addresses of failed logins in an address list).
- How rules match entries (all listed topics must match,
!,regex,prefix), the topic list, troubleshooting, and the wire format of each remote format.
- Read the log: filter by topic, message and time,
- CEF with Elasticsearch, Syslog with Elasticsearch: Fixed links to the reworked Log page and wrapped the RouterOS commands. The CEF guide no longer adds the same rules twice. Kibana and JSON blocks are no longer marked as RouterOS code.
- Bandwidth test: Rewritten and tested between a hAP ax², a CCR2116 and a 64-core server. Property tables moved to the CLI Reference. New sections:
- Prerequisites: the server, device mode on both routers, a test user with the
testandwinboxpolicies, firewall ports, and why UDPreceivetests fail behind NAT. - Test a link at a fixed rate, measure the maximum throughput, check a link for packet loss with UDP at a fixed rate, and test wireless directions one at a time.
- Read the results: UDP counts whole IP packets and TCP only the data;
lost-packetscounts the last second, not a total; the CPU load fields. - Test a router's forwarding capacity through a chain of three routers, with packet sizes and when to use the traffic generator.
- Secure the server with
allowed-addresses4andallowed-addresses6instead of turning authentication off;max-sessionscounts tests. - Troubleshooting by status, and the ports and connections in Technical details.
- Prerequisites: the server, device mode on both routers, a test user with the
CLI Reference
/log,/system/logging,/system/logging/action,clear: Described every parameter. Defaults, ranges and behaviour were checked on a router. Thetopicsrow lists every topic.email-start-tlsis described as unused: the email action follows thetlssetting of/tool/e-mail./tool/bandwidth-test,/tool/bandwidth-server,session: Described every parameter and result field, for example defaults, the 52-byte minimum UDP size, the status values, and whatmax-sessionscounts./disk/btrfs/filesystem,/disk/btrfs/subvolume,/disk/btrfs/transfer: Filled the descriptions of the Btrfs commands and parameters./disk: Described thesshfs-address,sshfs-port,sshfs-user,sshfs-password,sshfs-pathandsshfs-local-userparameters./ip/smb,shares,users: Filled the SMB server, share and user descriptions./file/sync,/file/rsync-daemon: Described the sync entries (mode,local-path,remote-path,user, flags) and the rsync daemon.
Storage
- Storage package: The section index now calls the package by its current name, Storage package (
rose-storagein/system/package/print), instead of ROSE. - Btrfs, Btrfs RAID, Btrfs maintenance, Btrfs snapshots: Reworked. An overview of the three Btrfs menus, the default
<disk>-fsfile system label, and whatadd-deviceand the balance do when converting to RAID1. The RAID commands now find the file system bydevsinstead ofpresent-devs. Version notes removed. - SSHFS: New page. Mount a folder from an SSH server as a disk with
/disk/add type=sshfs, with the mount states and how to change or remove the mount. - SMB: The server, share and user property tables moved to the CLI Reference. The page explains that the server starts by itself when the first share is added.
- RAID, Hot spare, Moving an array: The RAID property table moved to the CLI Reference, the examples became top-level sections, and the hot spare page explains how the spare is configured.
- Encrypted storage, Self-encrypting drives: Rewritten intros and examples, with the property tables removed. Encrypted storage on a RAID1 array. Self-encrypting drives need an Opal-compliant drive attached directly (not through a USB bridge), with the
oandOflags explained. - iSCSI, NFS, NVMe over TCP, Rsync: Property tables removed, with improved intros and examples: the default ports (iSCSI TCP 3260, NFS TCP 2049, NVMe over TCP 4420), the default iSCSI IQN, and the NFS state when the port is blocked.
Hardware
- PoE-Out: Added the
no_valid_psu,lldp-power-off,low-voltage-pd-detectedandpower-limitingvalues ofpoe-out-status.