Skip to main content

Documentation updates - July 3, 2026

Summary of documentation changes made on July 3, 2026.

  • Improved search ranking: Exact and whole-word page-title matches now rank at the top of the results, and full pages rank above section headings. Searching for a page's name (for example "Connectivity") now returns that page first, instead of unrelated headings that merely share a word stem ("Connecting", "Connections"). The MikroTik Connectivity page also gained search keywords so it surfaces for eSIM-related queries.

Documentation updates - July 2, 2026

Summary of documentation changes made on July 2, 2026.

Authentication & AAA

  • Certificates: Added a "Manual ACME renewal" section documenting the /certificate/acme-renew command with usage examples. Also clarified that PKCS12 export is encrypted using AES, and that PKCS12 import supports both AES and 3DES decryption.

System

  • Wake on LAN: Restructured the page — the property table was replaced by a link to the CLI reference, wording was tightened, and a WinBox screenshot of the Wake on LAN tool was added. The interface and mac arguments are now described in the CLI reference.

Diagnostics & Monitoring

  • Ping: Added a cross-link to the CLI reference, where every ping argument now has a description — address, interval, size, ttl, dscp, do-not-fragment, src-address, arp-ping, count, interface, and vrf, plus all read-only result fields such as packet-loss, min-rtt, avg-rtt, and max-rtt.

Documentation updates - July 1, 2026

Summary of documentation changes made on July 1, 2026.

Diagnostics & Monitoring

  • Netwatch: The probe-type list (Simple, ICMP, TCP-conn, HTTP-GET, HTTPS-GET, DNS) is now bolded for readability, and several spelling and wording issues were corrected. Every ICMP, TCP-conn, and HTTP/S-GET parameter in the CLI reference now links directly to the matching probe-type section on this page.

Network Management

  • Socksify: Added a cross-link to the CLI reference, and documented descriptions and defaults for all Socksify arguments — connection-timeout (60s), port (952), socks5-server (0.0.0.0, IPv4 only), socks5-port (1080), socks5-user, and socks5-password. The X flag is now noted as set by default.

CLI Reference

  • /app: Added descriptions for the container app flags (X, R, c, s) and for all arguments, including container-command-lines, auto-update, use-https, network, network-pvid, network-outgoing-access, firewall-redirects, yaml, and required-mounts.
  • /beep and /blink: Added command descriptions and argument details — frequency (Hz) and length for beep, duration for blink. Beep is noted as supported only on devices with a beeper.

Documentation updates - June 30, 2026

Summary of documentation changes made on June 30, 2026.

Bridging & Switching

  • Bridging & Switching: Reordered the section's sidebar into a more logical sequence — switch-chip feature pages (Marvell Prestera, Other Switch Chip Features, CRS1xx/2xx) grouped together, followed by L3 Hardware Offloading, Quality of Service, MACsec, MACVLAN, VXLAN, and VLAN. The "Switch Chip Features" page is now labelled "Other Switch Chip Features" in the navigation.

Documentation updates - June 29, 2026

Summary of documentation changes made on June 29, 2026.

Diagnostics & Monitoring

  • Netwatch: Complete rewrite of the Netwatch documentation. Reorganized by probe type (Simple, ICMP, TCP-conn, HTTP-GET, HTTPS-GET, DNS), each with a dedicated configuration example and WinBox screenshot. Consolidated general configuration notes into a single section covering script execution, permissions, and default values.

Documentation updates - June 26, 2026

Summary of documentation changes made on June 26, 2026.

Mobile Networking

  • LTE/5G Interface: Added the show-capabilities command documentation, which displays modem features such as supported bands, RAT modes, APN limits, and passthrough support.
  • LTE/5G Interface: Clarified that the network-mode parameter requires both lte and 5g to be selected for 5G NSA; selecting 5g alone only connects to 5G SA.
  • LTE/5G Interface: Rewrote the monitoring section with updated /interface/lte/monitor output example showing cell-level data and modem metadata.

Documentation updates - June 19, 2026

Summary of documentation changes made on June 19, 2026.

Management Tools

  • WebFig: Restructured the Enable HTTPS section around LAN-only use. It now leads with self-signed certificates (the default when reaching the router by its private LAN IP, since public CAs cannot issue for private addresses) and explains how to remove browser warnings by trusting the router's root CA. The Let's Encrypt/ACME path is now a clearly-scoped option for routers reached by a real public domain name, noting the private-IP, name-match, and split-DNS caveats and the no-WAN-port DNS-01 challenge.

Authentication & AAA

  • Certificates: Cleaned up the Let's Encrypt/ACME, CRL, and Settings sections. Command and parameter references (the a flag, crl-use, crl-download, /certificate/settings) are now formatted as inline code instead of broken italic/quoted markup, the IP Cloud DNS-01 sentence was clarified with a link to the IP Cloud DDNS page, and the first add-acme example uses a concrete domain.

Getting Started

  • First Time Configuration: Added a wireless setup video, now embedded as a proper <video> player sourcing the clip from static/videos/.

Documentation updates - June 18, 2026

Summary of documentation changes made on June 18, 2026.

Getting Started

  • First Time Configuration: Major streamlining of the guide. Consolidated the WAN/internet section with tabbed CLI and WinBox examples, clarified NAT vs. bridge behavior for users running the default configuration, merged the verification steps, and corrected several command errors. The wireless section was trimmed to the basics with a link to the Wireless section, a duplicate CLI section was removed, and broken step numbering plus Step 4 formatting (now proper headings) were fixed. The Getting Started sidebar was also reordered to follow the new-user flow.
  • Manual Network Setup: New page. The manual (no-default-config) setup procedure was split out of the First Time Configuration guide into its own dedicated page.
  • Securing Your Router: Moved the de-duplicated security and firewall content out of the First Time Configuration guide into this dedicated page.

Bridging & Switching

  • SwOS Troubleshooting: Cleaned up the page by removing the redundant "Applies To" and "See Also" sections and the broken external Confluence cross-references, and simplified the firmware download link. The CSS106 and CSS610 pages were updated to link to the internal Neighbor Discovery documentation instead of the old external help site.

Documentation updates - June 17, 2026

Summary of documentation changes made on June 17, 2026.

Authentication & AAA

  • Certificates: Added a dedicated CRL (Certificate Revocation List) section documenting how RouterOS verifies certificates against their CRL. Explains enabling crl-use=yes and crl-download=yes, and adding CRLs manually by URL or dynamically from a certificate's CRL Distribution Point. Includes a property table for the /certificate/crl menu (akid, cert, dynamic, expired, fingerprint, last-update, next-update, num, removed, signature, url).

Management Tools

  • WebFig: Rewrote and updated the WebFig page with clearer wording and fresh screenshots. The HTTPS setup steps were revised to use an end-entity certificate and the www-ssl service, the Terminal section was tidied, and the Design Skin section was restructured with clearer descriptions of each operation (hide menu/submenu/tabs, rename, notes, read-only, flags) plus examples for numeric-interval (1..10) and prefix (station$) field limits.

Documentation updates - June 16, 2026

Summary of documentation changes made on June 16, 2026.

Wireless

  • Wi-Fi 6 / 7 (802.11ax/be): Retitled the WiFi page from "Wi-Fi 6 / 6E" to "Wi-Fi 6 / 7 (802.11ax/be)" and restructured the "Is this the right section?" tip into a driver-package table, documenting the new wifi-qcom-be (Wi-Fi 7, e.g. hAP be3 media) and wifi-mediatek (e.g. hAP ax S, hAP be lite) packages alongside wifi-qcom. Updated the sidebar label and the cross-references pointing at the page to match.
  • Wireless overview: Added the upcoming Wi-Fi 7 driver types to the package-selection table — wifi-qcom-be and wifi-mediatek — and a WiFi 7 family entry, with hAP be lite added to the model-naming examples.
  • Wi-Fi 5 (802.11ac): Clarified that wifi-qcom-ac replaces the wireless package rather than being installed alongside it, and softened the driver-compatibility warning.
  • Wireless station modes: Added a wifi-qcom column to the station-mode applicability matrix and clarified that available station modes depend on the installed driver and wireless protocol.
  • 802.11 a/b/g/n: Review-pass corrections across the legacy /interface/wireless, CAPsMAN, W60G, and WiFi configuration guides — including the CAPsMAN upgrade-policy and rates.basic descriptions and certificate validity examples.

Internet of Things

  • ChirpStack: New guide covering how to register MikroTik LoRaWAN gateways with the open-source ChirpStack server.

Firewall & QoS

  • Connection tracking: Review-pass corrections across the section — expanded the untracked connection-state and RAW-rule explanation, documented loose-tcp-tracking and udp-timeout, plus clarifications across NAT, filter rules, queues (CAKE, HTB, FIFO), and the DDoS-protection and port-knocking case studies.

User Guides

  • Routing decision: Routing documentation review-pass corrections — clarified nexthop lookup and route redistribution via routing filters, plus fixes across BGP, OSPF, MPLS/VPLS, multicast, VRF, and the ROSv6→v7 migration pages.

Getting Started

  • Backup: Documented the backup encryption property (aes-sha256 / rc4) and password-encryption behavior, with further review-pass clarifications across the installation/upgrade, networking-fundamentals (IPv6), and securing-your-router pages.
  • First time configuration: Restructured the guide with updated content and new WinBox4 screenshots — clearer step-by-step flow (physical connection, downloading WinBox, finding the router via Neighbor Discovery, securing it, and user-password management) and a wireless setup split into three generations: legacy /interface wireless, modern /interface wifi, and advanced MLD / multi-radio / WiFi 6E-style setups.

Hardware

  • Disks: Review-pass corrections across hardware pages — added disk sharing properties (auto-media-sharing, SMB/NFS sharing) and supported formatting filesystems, plus wording fixes on grounding, LEDs, the LCD touchscreen, PoE-out, ports, product naming, and RouterBOOT.

Diagnostics & Monitoring

  • Detect Internet: Review-pass corrections — clarified WAN reachability checks (cloud.mikrotik.com over UDP port 30000, checked every 2 minutes), plus fixes across logging, Netwatch, SNMP, traffic-flow, torch, and other diagnostic tools.

High Availability Solutions

  • Bonding: Review-pass corrections to the bonding and load-balancing guides, including corrected EoIP tunnel examples.

Developer Guides

  • API: Review-pass corrections — clarified API protocol length encoding (four-byte lengths up to 0xFFFFFFFF), updated the Python 3 TLS example, and fixed the REST API and scripting pages.

CLI Reference

  • CLI Reference: Documented the m address flag (multicast address).

Other sections

  • Second documentation review pass: Spelling, grammar, wording, and factual corrections across the remaining sections — System (Fetch, e-mail, clock, device-mode, IP packing), Storage (clearer NVMe-over-TCP setup, BTRFS, RAID, SMB, encrypted storage), Network Management (DHCP, DNS, Cloud Back To Home / file share, web/reverse proxy, SOCKS), Mobile Networking (LTE/5G, GPS, dual-SIM, SMS), Management Tools (TR-069, CLI, Quick Set, SSH, WinBox), Internet of Things (MQTT, Bluetooth, LoRa, GPIO, Wiliot), Wired Connections (Ethernet, interface compatibility, PWR-Line), and VPN (IPsec, L2TP, SSTP, OpenVPN, WireGuard, PPPoE, and the tunnel guides).
  • Wireless: Formatting fixes — warning messages inside tables now render correctly, and hardware model names such as hAP ac² use proper superscripts.