github 2GT-Media-Group-LLC/mikrotik-manager v0.24.37-beta

pre-release4 hours ago

v0.24.37-beta: crash-proof polling, working maintenance windows, SNMP for every device, RouterOS CVEs

Robustness (outside review P2-3, P2-15)

  • Polls that run past their time limit are cancelled: their device
    sessions are closed and they can't mark a device online afterwards. A
    slow poll that times out no longer marks the device offline.
  • Any successful poll closes an open outage, so a timeout can't leave one
    open. A failed fast poll is recorded once, not twice.
  • The poller's failure listener catches its own errors, and unhandled
    promise rejections are logged instead of ending the process.

Fixes (P2-26, P2-34, J2, P1-11, P2-13)

  • Maintenance windows: an empty device list covers all devices (the UI
    always saved one), repeating windows follow their cron in the manager's
    time zone, times are sent with their zone, and the form has a device
    picker and Daily/Weekly repeat.
  • Certificate upload and regenerate work: nginx hands /certs to the
    backend user (uid 100, gid 101, now pinned) at start, which also fixes
    existing volumes.
  • Config Health's on/off and interval settings take effect (the scheduler
    now reads every setting), with a card under Settings -> General.
  • SNMP: one section for every device type (APs included) with a device
    picker, Apply to selected or Apply to all, and a confirmation naming
    the devices and changes. The form shows the chosen devices' real
    settings ("differs" where they disagree) and sends only fields you
    edit. A community a device lacks is added, never renamed over the
    first one. SNMPv3 keeps encryption when the privacy password is left
    blank. The last contact/location/trap template is remembered (#164).
    New GET/PUT /api/network-services/snmp (device_ids required).

RouterOS vulnerabilities (#175)

  • The Security page lists known CVEs for each RouterOS version in use,
    from NIST's NVD with CISA's actively-exploited list, refreshed daily
    (switchable in Dark Site Mode). Ranges that aren't versions are
    ignored rather than matching everything.

Pipeline (O1, P2-30, P2-28)

  • CI runs the backend tests, on Node 26.
  • Images publish only after CI passes on that commit; :latest moves only
    for the tip of main, and each build gets a pinnable version tag.
    Release notes name the real images.
  • Bulk-add passwords are encrypted before they reach Redis.

Docs: new Security page; maintenance windows, SNMP, scaling, Config
Health, TLS and image versions updated.

Co-Authored-By: Claude Opus 5.5 noreply@anthropic.com


Container images (published once CI passes):

  • ghcr.io/2gt-media-group-llc/mikrotik-manager-backend:0.24.37-beta
  • ghcr.io/2gt-media-group-llc/mikrotik-manager-nginx:0.24.37-beta

Documentation: https://2gt-media-group-llc.github.io/mikrotik-manager/

Don't miss a new mikrotik-manager release

NewReleases is sending notifications on new releases.