
Download Download MikroTik RouterOS ARM64 Firmware 7.8 RC 1 for OS Independent Free

Download Free Download MikroTik RouterOS ARM64 Firmware 7.8 RC 1 for OS Independent
Changes in this release:
– Storage – Added new “rose-storage” package support (CLI only) for extended disk management and monitoring capabilities (ARM, ARM64, Tile and x86);
– Bridging – Fixed DHCP packet flow when using DHCP snooping, HW offload and “use-ip-firewall”;
– Bridging – Fixed possible DHCP packet corruption when using DHCP snooping;
– Certificates – fixed certificate import (introduced in v7.8beta2);
– Console – Added “as-string” parameter to “:execute” command;
– lte – improved R11e-LTE6 stability, skip connection reset when first EEMGINFO command times out;
– ovpn – improved server stability;
– ovpn – improved logging of errors related to TLS;
– Routing – shows hop limit and MTU properties under the “/routing route” menu for SLAAC routing;
– ssh – improved system stability when handling non-encrypted SSH connections;
– Switches – Improved 10G, 25G, 40G and 100G interface stability for 98DX8208, 98DX8212, 98DX8332, 98DX3257, 98DX4310, 98DX8525, 98DX3255, 98PX1012 switches;
– swos – Removed “/system swos” menu for CRS5xx series switches;
– vxlan – added “max-fdb-size” parameter;
– wifiwave2 – Fixed compatibility with 3rd party devices when using SAE hash-to-element authentication in DH groups 20 and 21;
– wifiwave2 – fixed SAE authentication for interfaces in station mode (introduced in RouterOS 7.4) when trying to connect to an AP that requires an anti-jamming token;
Other changes since v7.7:
– bgp – fixed setting of “default-prepend” parameter;
– Bridging – fixed adding disabled MSTI;
– Bridge – fixed PVID warning typo;
– Bridge – Improved hardware offload logic;
– certificates – fixed PBES2 certificate import;
– Certificates – improved certificate management, signing and storage procedures;
– Certificates – improved multi-certificate import process;
– conntrack – Improved system stability when changing connection tracking state;
– Containers – Added authentication option to registry (CLI only);
– container – fixed “.type” file ownership;
– Containers – fixed file ownership for containers running on internal disk after system upgrade;
– Containers – Fixed several containers starting automatically on boot;
– dhcpv4-client – when used, sends DHCPv4 unicast requests to a DHCPv4 relay instead of a server;
– disk – limit maximum TMPFS size;
– dns – Added configurable DoH concurrent query limit parameter;
– dns – do not cache the results of the “:resolve” command from a specific server;
– dns – fixed reading CNAME from cache;
– dns – limit “DoH max concurrent queries reached” log message to once per minute;
– dns – respond to DNS requests for static domain names with “NOERROR” when no record of the appropriate type is configured or found on the upstream server;
– Firewall – fixed bridge priority target;
– Firewall – fixed DSCP priority target for IPv6 Mangle;
– Firewall – Fixed IPv6 NAT’s network mapping range maximum address calculation;
– Drawing – Fixed hiding target queue when “Allow Target” is disabled;
– Drawings – fixed ordering of interface and queue diagrams;
– Drawings – properly handle disabled and statically bound interface diagrams;
– Drawing – Removed “Move” command for drawing rules;
– Health – Fixed “Temperature” and “Power Consumption” readouts for RB1100AHx4;
– Hotspot – fixed setting of the “Address” parameter for IP bindings;
– hotspot – resume cookie timeout on reboot;
– ike2 – Added support for ‘address’, ‘keyid’ and ‘dn’ for remote ID matching (CLI only);
– ike2 – fixed active SA refresh for responders after failed peer connection attempts;
– ipsec – added support for “Framed-Route” RADIUS attribute support;
– ipsec – does not match incoming IKE requests from peers with unresolved DNS names;
– ipsec – fixed peer matcher for incoming connections to unresolved DNS;
– ipv6 – added “pref64” option configuration for RA;
– ipv6 – improved handling of state changes for “advertised” IPv6 addresses;
– ipv6 – limit the “hop-limit” parameter value range to 255;
– ipv6 – make the distributed DNS life cycle conform to RFC8106 standard;
– l3hw – Add destination MAC address check for offloaded FastTrack connections;
– led – fixed signal readout for KNOT devices;
– lte – Added AT support for Telit LE910C4 in MBIM mode;
– lte – Fixed APN setting usage on initial connection attempts for AT-based Quectel and Neoway modems;
– LTE – Fixed automatic antenna selection on Chateau LTE12/LTE18;
– lte – Fibocom L850-GL module fixed dial;
– lte – fixed display “subscriber number”;
– lte – improved AT port matching for SIMCom, Huawei, WeLink, Cinterion, BandLuxe and Sierra modems;
– lte – improved modem detection speed in lower mini-PCIe slot on LtAP;
– lte – LtAP improved modem detection in lower mini-PCIe slot (requires “/system router board upgrade”);
– lte – parse USSD even if the encoding is not supported;
– mpls – Fixed handling of more than 9 VRFs;
– mpls – fixed LDP listen socket creation before IPv6 address is ready for use;
– mpls – improved stability on neighbor router reboots;
– ospf – fixed “ospf-type” parameter for OSPFv3 routing;
– ospf – fixed simple authentication for OSPFv3;
– ovpn – Added AES-GCM and multicore encryption support;
– pimsm – improve system stability;
– poe – Added LLDP power management support for 802.3at PSE;
– poe – Proper power off on hAP ax2 and hAP ax3 when no link detected;
– Port – fixed modem channel number on KNOT;
– pppoe – fixed PPPoE client scan showing only one server;
– Resources – displays file system related statistics on CCR2004;
– Routing – added hop limit and metric parameters for SLAAC routing;
– Routing – fixed IPv6 default route received from RA exists;
– Routing – fixed printing of “count only” parameter of routing table;
– routerboot – fixed format storage for RBM33G devices (requires “/system routerboard upgrade”);
– routerboot – fixed routerboot protected for RBM33G devices (requires “/system routerboard upgrade”);
– sfp – fixed false link detection for S+RJ10 on RB5009;
– sfp – fixed reading of SFP EEPROM on single SFP port devices;
– sfp – Improved optical module SFP compatibility on CCR2004-16G-2S+, CCR2004-1G-12S+2XS, CCR2116-12G-4S+ devices;
– SMS – improved reporting of SMS sending errors;
– SMS – record USSD response when sending USSD via MBIM;
– Sniffer – added additional filtering parameters;
– snmp – do not reveal identity in LLDP when branding is used with hidden SNMP data;
– snmp – fixed handling of disabled routes;
– snmp – fixed reporting of total route counters;
– ssh – hardcoded “localhost” address for forwarding requests;
– sstp – fixed TLS session establishment when “connect-to” is a DNS name;
– switch – fixed “switch-cpu” counter (introduced in 7.8beta2);
– Switch – fixed SFP rate selection for CRS354 devices;
– Switches – Improved system stability for 98DXxxxx switch chips;
– torch – allow Torch’s “no pagination” parameter;
– Traffic Generator – increased maximum allowed flow count;
– Upgrade – display error message when license prohibits upgrade;
– USB – Changed USB auto-detection behavior to default to external USB when internal USB device is not detected
– vxlan – added “dont-fragment” setting that allows managing fragments;
– vxlan – Added FastPath support;
– webfig – allow to set value in time interval field;
– webfig – Fixed access to WebFig when the “Interface” menu is disabled by skins;
– webfig – fixed multi-field parameter editing with “no” checkbox;
– webfig – fixed handling of empty skin files;
– webfig – improved navigation responsiveness;
– webfig – improved skin file parsing;
– webfig – improved terminal handling;
– webfig – properly escape all reserved URI characters;
– webfig – updated WebFig and figure web pages to HTML5;
– wifiwave2 – Added wifi sniffer tool to capture wireless transmissions (CLI only);
– wifiwave2 – Adjust monitoring of site interfaces to report when the interface is authorized, not just connected;
– wifiwave2 – Enables additional channels in the UNII-3 and UNII-4 bands for Europe and the US on hAP ax^2, hAP ax^3 and Chateau ax;
– wifiwave2 – fixed 802.11r fast transition when using wpa3-psk authentication (introduced in 7.8beta2);
– wifiwave2 – implements 802.11w management protection SA query procedure;
– wifiwave2 – improved protection against WPA3 denial of service attacks;
– winbox – Added “Connect” button under “WifiWave2/Scan” menu;
– winbox – Added “Disable/Enable” button under “WifiWave2” menu;
– winbox – Added “Match subdomain” parameter under “IP/DNS/Static” menu;
– winbox – Added “Provision” button under “WifiWave2” menu;
– winbox – Added “Start at boot” checkbox under Containers menu;
– winbox – Added “Tx Rate” and “Rx Rate” columns under “WifiWave2/Registration” menu;
– winbox – added missing property when setting “Use DoH server”;
– winbox – added missing WifiWave2 related parameters under “WifiWave2” menu;
– winbox – added support for manual RAM filesystem (TMPFS) creation under the System/Disks menu;
– winbox – add type “https-get” parameter under “Tools/Netwatch” menu;
– winbox – Allow bridge selection for static entries under Bridge/MDB menu;
– winbox – Fixed display of “Default Prefix” value under “Route/BGP/Session” menu;
– winbox – Fixed display of “Tx/Rx CCQ” value under “Wireless/Registration” menu;
– winbox – fixed the display of the logo under the “System/Console” menu;
– winbox – fixed display of multi-character flags;
– winbox – fixed use of IPv6 family addresses under “IP/Web Proxy/Access” menu;
– winbox – hide “TTL” value for static DNS entries of type FWD;
– winbox – hide unnecessary properties of virtual interface under “WifiWave2” menu;
– winbox – Improved mouseover hints for “Local” policies under the “System/Users/Groups” menu;
– winbox – Rename “Multicast Router” monitoring property to “Is Multicast Router” under “Bridge” menu;
– winbox – Show “Gateway” column by default under “IPv6/Routing” menu;
– x86 – Added support for TP-Link TG-3468;
– x86 – fixed SR-IOV support for Intel X710 series NICs;
– x86 – Improved support for Intel 500 series 10G SFP modules;
– x86 – improved stability for Intel X550 series NICs with SR-IOV;
– zeroter – Fixed routing after VRF changes;
About router firmware:
Before you consider downloading this firmware, go to your router’s system information page and make sure that the currently installed version is neither newer nor matches this version.
Due to the variety of router models and device upgrade methods, it is strongly recommended that you read and most importantly understand the installation steps before applying new firmware, even if you are an advanced user.
In theory, these steps shouldn’t be too much of a hassle for anyone, as manufacturers try to make them easy, even if they don’t always succeed. Basically, you have to upload new firmware to the router and allow it to upgrade via its admin page.
If you install the new version, you can expect a higher level of security, fixes for different vulnerabilities, improved overall performance and transfer speed, enhanced compatibility with other devices, added support for newly developed technologies, and several other changes.
If you’re looking for some measure of security, remember it’s best to perform uploads using an Ethernet cable rather than a wireless connection, which can easily be interrupted. Also, make sure not to power off the router or use its buttons during the installation process if you wish to avoid any glitches.
If this firmware meets your current needs, obtain the required version and apply it to your router unit; if not, please visit our website as often as possible so as not to miss updates that may improve your device.