Skip to main content

Documentation updates - July 1, 2026

Summary of documentation changes made on July 1, 2026.

Diagnostics & Monitoring

  • Netwatch: The probe-type list (Simple, ICMP, TCP-conn, HTTP-GET, HTTPS-GET, DNS) is now bolded for readability, and several spelling and wording issues were corrected. Every ICMP, TCP-conn, and HTTP/S-GET parameter in the CLI reference now links directly to the matching probe-type section on this page.

Network Management

  • Socksify: Added a cross-link to the CLI reference, and documented descriptions and defaults for all Socksify arguments — connection-timeout (60s), port (952), socks5-server (0.0.0.0, IPv4 only), socks5-port (1080), socks5-user, and socks5-password. The X flag is now noted as set by default.

CLI Reference

  • /app: Added descriptions for the container app flags (X, R, c, s) and for all arguments, including container-command-lines, auto-update, use-https, network, network-pvid, network-outgoing-access, firewall-redirects, yaml, and required-mounts.
  • /beep and /blink: Added command descriptions and argument details — frequency (Hz) and length for beep, duration for blink. Beep is noted as supported only on devices with a beeper.

Documentation updates - June 30, 2026

Summary of documentation changes made on June 30, 2026.

Bridging & Switching

  • Bridging & Switching: Reordered the section's sidebar into a more logical sequence — switch-chip feature pages (Marvell Prestera, Other Switch Chip Features, CRS1xx/2xx) grouped together, followed by L3 Hardware Offloading, Quality of Service, MACsec, MACVLAN, VXLAN, and VLAN. The "Switch Chip Features" page is now labelled "Other Switch Chip Features" in the navigation.

Documentation updates - June 29, 2026

Summary of documentation changes made on June 29, 2026.

Diagnostics & Monitoring

  • Netwatch: Complete rewrite of the Netwatch documentation. Reorganized by probe type (Simple, ICMP, TCP-conn, HTTP-GET, HTTPS-GET, DNS), each with a dedicated configuration example and WinBox screenshot. Consolidated general configuration notes into a single section covering script execution, permissions, and default values.

Documentation updates - June 26, 2026

Summary of documentation changes made on June 26, 2026.

Mobile Networking

  • LTE/5G Interface: Added the show-capabilities command documentation, which displays modem features such as supported bands, RAT modes, APN limits, and passthrough support.
  • LTE/5G Interface: Clarified that the network-mode parameter requires both lte and 5g to be selected for 5G NSA; selecting 5g alone only connects to 5G SA.
  • LTE/5G Interface: Rewrote the monitoring section with updated /interface/lte/monitor output example showing cell-level data and modem metadata.

Documentation updates - June 19, 2026

Summary of documentation changes made on June 19, 2026.

Management Tools

  • WebFig: Restructured the Enable HTTPS section around LAN-only use. It now leads with self-signed certificates (the default when reaching the router by its private LAN IP, since public CAs cannot issue for private addresses) and explains how to remove browser warnings by trusting the router's root CA. The Let's Encrypt/ACME path is now a clearly-scoped option for routers reached by a real public domain name, noting the private-IP, name-match, and split-DNS caveats and the no-WAN-port DNS-01 challenge.

Authentication & AAA

  • Certificates: Cleaned up the Let's Encrypt/ACME, CRL, and Settings sections. Command and parameter references (the a flag, crl-use, crl-download, /certificate/settings) are now formatted as inline code instead of broken italic/quoted markup, the IP Cloud DNS-01 sentence was clarified with a link to the IP Cloud DDNS page, and the first add-acme example uses a concrete domain.

Getting Started

  • First Time Configuration: Added a wireless setup video, now embedded as a proper <video> player sourcing the clip from static/videos/.

Documentation updates - June 18, 2026

Summary of documentation changes made on June 18, 2026.

Getting Started

  • First Time Configuration: Major streamlining of the guide. Consolidated the WAN/internet section with tabbed CLI and WinBox examples, clarified NAT vs. bridge behavior for users running the default configuration, merged the verification steps, and corrected several command errors. The wireless section was trimmed to the basics with a link to the Wireless section, a duplicate CLI section was removed, and broken step numbering plus Step 4 formatting (now proper headings) were fixed. The Getting Started sidebar was also reordered to follow the new-user flow.
  • Manual Network Setup: New page. The manual (no-default-config) setup procedure was split out of the First Time Configuration guide into its own dedicated page.
  • Securing Your Router: Moved the de-duplicated security and firewall content out of the First Time Configuration guide into this dedicated page.

Bridging & Switching

  • SwOS Troubleshooting: Cleaned up the page by removing the redundant "Applies To" and "See Also" sections and the broken external Confluence cross-references, and simplified the firmware download link. The CSS106 and CSS610 pages were updated to link to the internal Neighbor Discovery documentation instead of the old external help site.

Documentation updates - June 17, 2026

Summary of documentation changes made on June 17, 2026.

Authentication & AAA

  • Certificates: Added a dedicated CRL (Certificate Revocation List) section documenting how RouterOS verifies certificates against their CRL. Explains enabling crl-use=yes and crl-download=yes, and adding CRLs manually by URL or dynamically from a certificate's CRL Distribution Point. Includes a property table for the /certificate/crl menu (akid, cert, dynamic, expired, fingerprint, last-update, next-update, num, removed, signature, url).

Management Tools

  • WebFig: Rewrote and updated the WebFig page with clearer wording and fresh screenshots. The HTTPS setup steps were revised to use an end-entity certificate and the www-ssl service, the Terminal section was tidied, and the Design Skin section was restructured with clearer descriptions of each operation (hide menu/submenu/tabs, rename, notes, read-only, flags) plus examples for numeric-interval (1..10) and prefix (station$) field limits.

Documentation updates - June 16, 2026

Summary of documentation changes made on June 16, 2026.

Wireless

  • Wi-Fi 6 / 7 (802.11ax/be): Retitled the WiFi page from "Wi-Fi 6 / 6E" to "Wi-Fi 6 / 7 (802.11ax/be)" and restructured the "Is this the right section?" tip into a driver-package table, documenting the new wifi-qcom-be (Wi-Fi 7, e.g. hAP be3 media) and wifi-mediatek (e.g. hAP ax S, hAP be lite) packages alongside wifi-qcom. Updated the sidebar label and the cross-references pointing at the page to match.
  • Wireless overview: Added the upcoming Wi-Fi 7 driver types to the package-selection table — wifi-qcom-be and wifi-mediatek — and a WiFi 7 family entry, with hAP be lite added to the model-naming examples.
  • Wi-Fi 5 (802.11ac): Clarified that wifi-qcom-ac replaces the wireless package rather than being installed alongside it, and softened the driver-compatibility warning.
  • Wireless station modes: Added a wifi-qcom column to the station-mode applicability matrix and clarified that available station modes depend on the installed driver and wireless protocol.
  • 802.11 a/b/g/n: Review-pass corrections across the legacy /interface/wireless, CAPsMAN, W60G, and WiFi configuration guides — including the CAPsMAN upgrade-policy and rates.basic descriptions and certificate validity examples.

Internet of Things

  • ChirpStack: New guide covering how to register MikroTik LoRaWAN gateways with the open-source ChirpStack server.

Firewall & QoS

  • Connection tracking: Review-pass corrections across the section — expanded the untracked connection-state and RAW-rule explanation, documented loose-tcp-tracking and udp-timeout, plus clarifications across NAT, filter rules, queues (CAKE, HTB, FIFO), and the DDoS-protection and port-knocking case studies.

User Guides

  • Routing decision: Routing documentation review-pass corrections — clarified nexthop lookup and route redistribution via routing filters, plus fixes across BGP, OSPF, MPLS/VPLS, multicast, VRF, and the ROSv6→v7 migration pages.

Getting Started

  • Backup: Documented the backup encryption property (aes-sha256 / rc4) and password-encryption behavior, with further review-pass clarifications across the installation/upgrade, networking-fundamentals (IPv6), and securing-your-router pages.
  • First time configuration: Restructured the guide with updated content and new WinBox4 screenshots — clearer step-by-step flow (physical connection, downloading WinBox, finding the router via Neighbor Discovery, securing it, and user-password management) and a wireless setup split into three generations: legacy /interface wireless, modern /interface wifi, and advanced MLD / multi-radio / WiFi 6E-style setups.

Hardware

  • Disks: Review-pass corrections across hardware pages — added disk sharing properties (auto-media-sharing, SMB/NFS sharing) and supported formatting filesystems, plus wording fixes on grounding, LEDs, the LCD touchscreen, PoE-out, ports, product naming, and RouterBOOT.

Diagnostics & Monitoring

  • Detect Internet: Review-pass corrections — clarified WAN reachability checks (cloud.mikrotik.com over UDP port 30000, checked every 2 minutes), plus fixes across logging, Netwatch, SNMP, traffic-flow, torch, and other diagnostic tools.

High Availability Solutions

  • Bonding: Review-pass corrections to the bonding and load-balancing guides, including corrected EoIP tunnel examples.

Developer Guides

  • API: Review-pass corrections — clarified API protocol length encoding (four-byte lengths up to 0xFFFFFFFF), updated the Python 3 TLS example, and fixed the REST API and scripting pages.

CLI Reference

  • CLI Reference: Documented the m address flag (multicast address).

Other sections

  • Second documentation review pass: Spelling, grammar, wording, and factual corrections across the remaining sections — System (Fetch, e-mail, clock, device-mode, IP packing), Storage (clearer NVMe-over-TCP setup, BTRFS, RAID, SMB, encrypted storage), Network Management (DHCP, DNS, Cloud Back To Home / file share, web/reverse proxy, SOCKS), Mobile Networking (LTE/5G, GPS, dual-SIM, SMS), Management Tools (TR-069, CLI, Quick Set, SSH, WinBox), Internet of Things (MQTT, Bluetooth, LoRa, GPIO, Wiliot), Wired Connections (Ethernet, interface compatibility, PWR-Line), and VPN (IPsec, L2TP, SSTP, OpenVPN, WireGuard, PPPoE, and the tunnel guides).
  • Wireless: Formatting fixes — warning messages inside tables now render correctly, and hardware model names such as hAP ac² use proper superscripts.

Documentation updates - June 15, 2026

Summary of documentation changes made on June 15, 2026.

Authentication & AAA

  • Certificates: Clarified certificate property descriptions — digest-algorithm is now described as the hash algorithm used to sign the certificate, and invalid-before/invalid-after as the validity start and expiration dates; also corrected key-usage value formatting. Part of broader wording fixes across the dot1x, PPP AAA, RADIUS, and User Manager pages.
  • HotSpot Customisation: Minor corrections to the HotSpot customization guide.

Bridging & Switching

  • Cannot upgrade SwOS: Added a new troubleshooting guide covering SwOS upgrade failure recovery. Includes step-by-step procedures for SwOS-only devices (CSS106, CSS326, CSS610) using hardware reset to boot into backup firmware, and dual-boot devices (CRS3xx) with serial console recovery, RouterOS CLI upgrade via /system swos upgrade, and device-mode restrictions in RouterOS 7.17+.
  • CRS1xx/2xx series switches: Corrected the unicast FDB capacity wording (up to 16k MAC entries) and jumbo-frame figures. Related fixes on the L3 Hardware Offloading (default values, lpm-usage wording), MACsec example, and VLAN (disabled property description) pages.
  • Bridging & Switching Case Studies: Expanded the SDVoE acronym (Software Defined Video over Ethernet) and corrected VLAN priority values in the IGMP/MLD snooping and related case-study examples.

Containers

  • Container Apps: Corrected several app descriptions in the available apps list (conduit, mediamanager, prowlarr, webtop) and clarified the network-outgoing-access parameter — when set to no, a mangle drop rule is created. Minor formatting fixes across the HAProxy, Home Assistant, Matrix Synapse, Mosquitto, ThingsBoard, and FreeRADIUS examples.
  • Mosquitto MQTT Server: Fixed a broken Firewall documentation link.

Internet of Things

  • The Things Stack: Added gateway registration steps for both the legacy UDP scenario and the modern LNS/CUPS (LoRa Basics Station) scenario, including the matching RouterOS configuration and notes on using the built-in trust store for the lora service.

Wireless

  • Wireless: Reorganized the Wireless section by product/technology family — separate Wi-Fi 6/6E (802.11ax), Wi-Fi 5 (802.11ac), and 802.11 a/b/g/n areas — with a device-routing guide on the overview page, consistent section intros, getting-started links, reciprocal CAPsMAN cross-references, and removal of outdated version notes.
  • Wi-Fi 5 (802.11ac): Added a warning that wifi-qcom-ac drivers are resource-heavy, recommending the original lightweight wireless drivers for 802.11ac devices.

Documentation updates - June 12, 2026

Summary of documentation changes made on June 12, 2026.

Content Improvements

  • Enhanced reset procedure documentation: Improved reset procedure instructions with detailed pictures. Added images showing jumper settings and reset button locations.
  • Updated WiFi documentation: Added descriptions for mld-static, slaves-datapath, mld-datapath properties. Fixed formatting inconsistencies in WiFi index page.

Getting Started

  • Improved search experience: Added per-result breadcrumbs instead of version label.