Plain API off, post-upgrade commands, client address lists, DHCP pool usage, list editors (v0.40.0)
#201: Turn off plain API once a device is on API-SSL, per device
(Security tab), fleet-wide (Common Findings) or right after switching to
API-SSL ("Then turn off plain API on each"). Refused unless a fresh
API-SSL login works; skipped while anything else is connected to plain
API (the addresses are named); runs under Change Guard.
#163: post-upgrade commands. "Then run" on a rollout picks a command
template, copied into the rollout at creation. It runs over SSH under
Change Guard on each device that actually upgraded, after its version is
verified; output and errors are kept per device. A failure leaves the
upgrade standing but counts toward halt-on-failure.
#145: firewall address lists from the Clients page and a client's page:
the router's lists, ticked where the client's address is a member; tick,
untick or add a new list. Entries a rule added are read-only; lists a
rule matches on are marked; every change goes through Change Guard; a
dynamic DHCP lease gets a warning.
#156: the log-derived WiFi Connectivity Success card (it counted
ordinary disconnects as failures) is replaced by DHCP pool usage on
Wireless and DHCP: every pool's use from the slow poll, yellow from 80%,
red from 95%, and a dashboard item for a nearly full pool. Uses RouterOS
7's own pool totals, the used-address list on older releases.
#207: DNS upstream servers, NTP servers and a device's DNS servers use
the list editor (one entry at a time, validated).
Tested: plain API refused while in use, turned off under Change Guard
and restored on a CRS309; a template's commands run (and a bad one
failing) on the CRS309, and a rollout skipping an up-to-date device
without running them; a client added to and removed from an address list
on a CCR2216, with a rule-referenced list marked; a wAP ax's real pool
collected. Test devices restored; test template and rollout removed.
Docs: security.md, firmware.md, commands.md, clients.md, wireless.md,
network-services.md.
Co-Authored-By: Claude Opus 5.5 noreply@anthropic.com
Container images (published once CI passes):
ghcr.io/2gt-media-group-llc/mikrotik-manager-backend:0.40.0-betaghcr.io/2gt-media-group-llc/mikrotik-manager-nginx:0.40.0-beta
Documentation: https://2gt-media-group-llc.github.io/mikrotik-manager/