RUTM08 Firmware Downloads: Difference between revisions
Appearance
Gytispieze (talk | contribs) No edit summary |
No edit summary |
||
| (37 intermediate revisions by 2 users not shown) | |||
| Line 7: | Line 7: | ||
==Changelog== | ==Changelog== | ||
<!--NEW_FW--> | <!--NEW_FW--> | ||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.15.1/RUTM/RUTM_R_00.07.15.1_WEBUI.bin RUTM_R_00.07.15.1]</span></b> | 2025.06.17=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Realtime Traffic: fixed data collection in rare cases | |||
** <b>Services</b> | |||
*** Event juggler: fixed the execution of user scripts | |||
*** Hotspot: fixed users scripts execution | |||
*** Hotspot: fixed user scripts migration after upgrade with keep settings | |||
** <b>System</b> | |||
*** Backup: fixed missing root and admin user restoration during backup apply | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.15/RUTM/RUTM_R_00.07.15_WEBUI.bin RUTM_R_00.07.15]</span></b> | 2025.06.06=== | |||
* <b>New</b> | |||
** <b>System</b> | |||
*** WebUI: added default HTTP redirect to HTTPS | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP server: included static leases to "Leased IPs" status that are outside of DHCP pool range but are inside interface subnet range | |||
*** Dynamic routes: improved mobile interface handling | |||
*** Dynamic routes: added support for selecting VPN interfaces | |||
*** Firewall: disabled Allow-ICMPv6-Forward rule | |||
*** IGMP Proxy: added VPN interface support | |||
*** Multi WAN: updated configuration interface | |||
*** Multi WAN: added manual member configuration | |||
*** Multi WAN: added expanded Multi WAN interface statuses | |||
*** Network: updated network interface statuses to be more detailed and easier to understand | |||
*** Network: improved 802.1p priority configuration fields | |||
*** iw: updated version to 6.9 | |||
*** mac80211: updated version to 6.12.6 | |||
*** mt76: updated version to 2025-01-22 | |||
** <b>Services</b> | |||
*** AWS IoT Core: updated "AWS provisioning" configuration parameter list | |||
*** BACnet: added support for devices with USB adapters and devices with no rs485 interface | |||
*** Data to Server: added support for receiving I/O data | |||
*** Data to Server: added FTP, SMTP, Socket, and Lua script support for data transmission | |||
*** Data to Server: updated "Collection configuration" edit, "Input configuration" edit, "Format string" and "Tag expansion" parameter lists | |||
*** Data to Server: added support for ISO 8601 date format | |||
*** DLMS: added API endpoints to get the current value of a configured group or group value | |||
*** DNP3 Client: added API endpoints to get the current value of a configured request | |||
*** Dynamic DNS: added DNS server field | |||
*** Dynamic DNS: reduced service restarts when mobile is used | |||
*** Event juggler: implemented a retry mechanism for actions in case of failure | |||
*** Event juggler: updated "Send email", "Send SMS", "MQTT", "Script" and "HTTP" action "Text message" parameter list | |||
*** Event juggler: added delete icon on "Remove action" button | |||
*** Event juggler: removed "Startup" event type from event configuration due to duplication | |||
*** Events Reporting: updated "Message text on event" parameter list | |||
*** I/O Juggler: updated "Send SMS", "MQTT" and "Script" action "Text message" parameter list | |||
*** Modbus Client: updated "Modbus TCP Client" and "Modbus Serial Client" configuration "MQTT message" and "Email" action "JSON format" parameter list | |||
*** OPC UA Client: added API endpoints to get the current value of a configured group, group value or server node | |||
*** Mosquitto: updated version to 2.0.21 | |||
*** ovpn-dco: updated version to 0.2.20241216 | |||
** <b>System</b> | |||
*** Access Control: added ability to specify WAN port | |||
*** Access Control: improved HTTPS certificate validation | |||
*** API Core: added preflight OPTIONS method support | |||
*** Certificates: changed certificate signing to use RSA-PSS padding scheme | |||
*** RutOS: moved the /mnt mount point to /usr/local for persistent storage | |||
*** Speed Test: added functionality to find any country servers by using search | |||
*** TCP dump: added suggestions for host and port filters | |||
*** Troubleshoot: separated troubleshooting into individual configuration tabs | |||
*** Troubleshoot: improved logging size configuration and log size limits | |||
*** WebUI: reduced size of the navigation menu and some form elements | |||
*** WebUI: updated table selected rows actions design | |||
*** WebUI: added HTTPS certificate expiration warning and renew functionality | |||
*** WebUI: unified styles of first login and renew expired password modals | |||
*** WebUI: updated Japanese translations | |||
*** Linux: updated version to 6.6.87 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** 802.1X Client: fixed warning message of different port configurations sometimes appearing when closing modal | |||
*** 802.1X Client: fixed 802.1X (client) page access not being controlled by the "Network > Ports" entry | |||
*** 802.1X Server: fixed 802.1X (server) page access not being controlled by the "Network > Ports" entry | |||
*** DHCP server: fixed DHCPv4 server shutdown when multiple LANs use the same interface and one of them disables DHCPv4 | |||
*** Firewall: fixed duplicate VPN zone creation | |||
*** Firewall: fixed HTTP and HTTPS ports migration for DMZ port forwards rules | |||
*** Firewall: removed redundant "Internal zone" field from port forward configuration | |||
*** Network: fixed incorrect network type shown for LAN with only WiFi interface | |||
*** Static Routes: fixed GRE tunnel name display when its name has special symbols | |||
*** Topology: fixed issue of duplicated WAN interface being displayed under certain configurations | |||
*** VLAN: fixed new port based VLAN creation when untagged ports are provided | |||
** <b>Services</b> | |||
*** DLMS: fixed COSEM attribute filtering | |||
*** DLNA: fixed option list of "Interfaces" | |||
*** DMVPN: fixed displaying NAT rules | |||
*** Dynamic DNS: fixed IPv6 support in bind-nsupdate | |||
*** Dynamic DNS: fixed logs showing IPv6 expansion errors when no IP is found | |||
*** Event juggler: fixed duplicated names validation | |||
*** Event juggler: fixed inability to select all available pins in the I/O condition configuration | |||
*** Event juggler: fixed HTTP action when secure connection is chosen | |||
*** Event juggler: fixed condition deletion not working in some edge cases | |||
*** Hotspot: fixed SSL certificates permissions | |||
*** IPsec: fixed connection issues with %any as identifier | |||
*** L2TP: fixed authentication credentials validation | |||
*** Modbus Client: fixed label for 'no_bracket' option in requests | |||
*** MQTT Broker: fixed incorrect "Local port" hint | |||
*** NTRIP: fixed latitude option name and description | |||
*** RMS: fixed 'Next connection after' timer display | |||
*** RMS: fixed transition from 'Standby' to 'Enabled' mode | |||
*** Stunnel: fixed issue of global settings sometimes not being displayed | |||
*** Stunnel: made "Certificate File" and "Private Key" fields required when server mode is configured | |||
*** Tailscale: fixed tailscale logging out after a reboot when using an authentication key | |||
*** Wireguard: fixed peer allowed IPs select dropdown to show IPv6 options and added the ability to include custom values | |||
*** Wireguard: fixed MTU issues when default route is used | |||
*** Wireguard: fixed tunnel not re-establishing when failover is used | |||
** <b>System</b> | |||
*** Access Control: fixed HTTPS certificates validation to not allow RSA key length less than 1024 bits and ECC key length less than 160 bits | |||
*** API Core: fixed session validation issues | |||
*** Certificates: fixed SCEP certificate enrollment compatibility issues with certain servers | |||
*** System Status: removed bootloader version information if it does not exist | |||
*** WebUI: fixed inconsistent spacing between page elements | |||
*** WebUI: fixed warnings still being displayed after removing uploaded certificates | |||
*** WebUI: fixed issues with SDK API path recognition | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.14.3/RUTM/RUTM_R_00.07.14.3_WEBUI.bin RUTM_R_00.07.14.3]</span></b> | 2025.05.26=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** L2TP: fixed a connection problem when using an L2TP over IPsec configuration | |||
** <b>System</b> | |||
*** Custom Scripts: fixed execution of custom scripts after upgrade | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.14.2/RUTM/RUTM_R_00.07.14.2_WEBUI.bin RUTM_R_00.07.14.2]</span></b> | 2025.05.09=== | |||
<b>Note:</b> If a system upgrade with keep settings is performed from <b>R_00.07.14</b> or <b>R_00.07.14.1</b> to this version, follow the instructions described under those firmware versions below to resolve Data Limit and traffic monitoring issues. | |||
---- | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: fixed HTTP and HTTPS ports migration for DMZ port forwards rules | |||
*** Network: fixed data limit database save when upgrading with keep settings | |||
** <b>System</b> | |||
*** Memory Expansion: fixed long ext4 formatting times on some usb drives | |||
---- | |||
===<b>RUTM_R_00.07.14.1</b> | 2025.05.06=== | |||
<b>Note:</b> This firmware version has been withdrawn due to a critical issue affecting the Data Limit, traffic monitoring functionalities. | |||
<b>Note:</b> If a system upgrade with keep settings was already performed from <b>R_00.07.14</b> to this version, previous Data Limit tracking and traffic monitoring information cannot be restored. However, to keep current traffic monitoring history after next update, the command found in the <b>Note</b> below must be executed in CLI. | |||
<b>Note:</b> If a system upgrade with keep settings is performed from this firmware version to newer and <b>R_00.07.14</b> was never used, following command must be executed in CLI <b>before</b> upgrade to resolve Data Limit and traffic monitoring issues. | |||
<pre>mkdir -p /usr/local/lib/upgrade/keep.d && echo /usr/local/usr/lib/mdcollectd/mdcollectd.db_new.gz > /usr/local/lib/upgrade/keep.d/mdcollect</pre> | |||
---- | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Memory Expansion: fixed long ext4 formatting times on some usb drives | |||
*** RutOS: fixed curl compilation in SDK | |||
* <b>CVE Patches</b> | |||
** CVE-2025-2704 | |||
---- | |||
===<b>RUTM_R_00.07.14</b> | 2025.04.24=== | |||
<b>Note:</b> This firmware version has been withdrawn due to a critical issue affecting the Data Limit, traffic monitoring functionalities. | |||
<b>Note:</b> If a system upgrade with keep settings is performed from this firmware version to newer, following command must be executed in CLI <b>before</b> upgrade to resolve Data Limit and traffic monitoring issues. | |||
<pre>mkdir -p /usr/local/lib/upgrade/keep.d && echo /usr/local/usr/lib/mdcollectd/mdcollectd.db_new.gz > /usr/local/lib/upgrade/keep.d/mdcollect</pre> | |||
---- | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** Network usage: added feature | |||
** <b>Services</b> | |||
*** AWS IoT Core: added Device Provisioning | |||
*** L2TP: added L2TP over IPv6 support | |||
*** MQTT Broker Bridge: added v5.0 bridge protocol support | |||
** <b>System</b> | |||
*** RutOS: enabled a read-only root filesystem to ensure system integrity and security | |||
*** WebUI: added Ukrainian language support | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP: added title for action column in custom DHCP option table | |||
*** DHCP: added a warning message when multiple interfaces share the same device and have DHCPv4 enabled | |||
*** DNS: updated the "Custom Redirect" option to support domain wildcard (*) pattern matching | |||
*** DNS: made the "DNS Server" field optional for the "Custom Redirect" option | |||
*** Firewall: improved "intra" zone column names for clarity | |||
*** Ports Settings: reordered network > ports sub-menu and made port settings page first | |||
*** SSHFS: updated mount point location | |||
*** SSHFS: added connection and mount point status | |||
*** Topology: improved network scanning | |||
*** Topology: added port number to topology scan results | |||
*** Topology: added IPv6 support | |||
*** VRF: added section name generation and changing ability | |||
*** Curl: updated version to 8.12.0 | |||
*** wireless-regdb: updated version to 2024.10.07 | |||
** <b>Services</b> | |||
*** Data to Server: changed new instance to be turned off by default | |||
*** Dynamic DNS: made WebUI show IP updates earlier than the configured DDNS service check interval | |||
*** EoIP: added improvements to avoid packet loops | |||
*** Events juggler: removed Reboot after Input/Output option | |||
*** Events juggler: changed new instance to be turned off by default | |||
*** Events juggler: removed Custom HTTP headers space validation | |||
*** IPsec: enabled dead peer detection by default | |||
*** Post/Get - I/O: removed package | |||
*** PPTP: added options for 'MPPE' configuration to WebUI | |||
*** PPTP: added 'Custom options' field to configure custom pppd options | |||
** <b>System</b> | |||
*** Events Log: added events log file export | |||
*** Profiles: improved table data UI | |||
*** Recipients: changed email maximum password length to 128 characters | |||
*** Setup Wizard: removed host, port options and proxy settings section from RMS setup wizard | |||
*** WebUI: removed default password icons on "Internet Explorer" and "Microsoft Edge" browsers | |||
*** Kernel: updated version to 5.10.234 | |||
*** Time Zone Database: updated version to 2025a | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Dynamic routes: fixed OSPF issues of not displaying instances of 'area' and 'networks' sections | |||
*** Firewall: fixed certain "Attack prevention" limits making device unreachable | |||
*** Firewall: fixed attack prevention page with missing traffic rules | |||
*** Multi WAN: fixed incorrect WAN state being displayed when using failover | |||
*** Ports Settings: fixed port status speed badge for Ethernet(10mbps) | |||
*** VXLAN: fixed package installation not starting service properly | |||
** <b>Services</b> | |||
*** Data to Server: disallowed enabling Azure plugin without required options | |||
*** Data to Server: fixed editing Azure plugin configuration when "Device Provisioning Service" option is selected | |||
*** DNP3 Client: fixed an issue where application would terminate on startup | |||
*** Email Relay: fixed service crash when server tls certificate is used | |||
*** Events juggler: fixed broken port link speed reporting | |||
*** Events juggler: fixed condition bug on some plugins | |||
*** Events juggler: fixed LUA condition script support to correctly handle return values | |||
*** RMS: fixed serial code copy button not being displayed | |||
*** SSTP: fixed the issue of the instance starting after upgrading the firmware | |||
*** Wireguard: fixed connection issues when peer is on the same network | |||
** <b>System</b> | |||
*** API Core: fixed file upload issue which sometimes made WebUI unresponsive | |||
*** NTP: fixed time servers limit validation | |||
*** Package Manager: fixed displaying multiple same functionality buttons when package update fails | |||
*** Password Policy: fixed special characters validation | |||
*** Profiles: fixed loading screen reappearing after profile change fails | |||
*** Recipients: fixed email address validation | |||
*** WebUI: fixed enabled button being removed in some cards on medium sized screens | |||
* <b>CVE Patches</b> | |||
** CVE-2022-42721 | |||
** CVE-2023-7104 | |||
** CVE-2023-31489 | |||
** CVE-2024-0938 | |||
** CVE-2024-9143 | |||
** CVE-2024-13176 | |||
** CVE-2025-0167 | |||
** CVE-2025-0665 | |||
** CVE-2025-0725 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.4/RUTM/RUTM_R_00.07.13.4_WEBUI.bin RUTM_R_00.07.13.4]</span></b> | 2025.04.04=== | |||
* <b>Improvements</b> | |||
** <b>System</b> | |||
*** RutOS: updated libubox | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** RutOS: fixed occasional ubus page fault after package install | |||
*** RutOS: fixed user group duplicate entries after applying backup | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.3/RUTM/RUTM_R_00.07.13.3_WEBUI.bin RUTM_R_00.07.13.3]</span></b> | 2025.03.21=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Multi WAN: fixed internet not being reachable from device when main WAN is down | |||
** <b>Services</b> | |||
*** RMS: fixed connection retry interval count | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.2/RUTM/RUTM_R_00.07.13.2_WEBUI.bin RUTM_R_00.07.13.2]</span></b> | 2025.03.18=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** 802.1X Client: fixed 802.1x client not working when upgrading from an older firmware | |||
*** Multi WAN: fixed occasional IPsec startup issue after reboot with Multi WAN enabled | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.1/RUTM/RUTM_R_00.07.13.1_WEBUI.bin RUTM_R_00.07.13.1]</span></b> | 2025.03.06=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Auto Reboot: fixed an issue causing the device to reboot immediately | |||
---- | |||
===<b>RUTM_R_00.07.13</b> | 2025.03.03=== | |||
<b>Note:</b> This firmware was removed due an issue with Auto Reboot functionality performing unnecessary device reboot. | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** BFD: added service | |||
** <b>Services</b> | |||
*** EoIP: added service | |||
*** Events juggler: added service | |||
*** OpenConnect: added service | |||
** <b>System</b> | |||
*** Update Firmware: added link to FW & SDK download page | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Dynamic routes: added validation for NHRP to prevent using same interface on multiple instances | |||
*** Firewall: added possibility to manually specify conntrack helper for a port forward rule | |||
*** Firewall: moved IPtables NAT extra to package manager | |||
*** Static Routes: improved descriptions for routing rules | |||
*** VRF: moved page from Network sub-menu to Network > Routing | |||
*** iperf3: updated version to 3.17.1 | |||
** <b>Services</b> | |||
*** Bluetooth: added status of scan availability | |||
*** Dynamic DNS: added support for using local openvpn interface ip address | |||
*** Hotspot: added support for multiple instances | |||
*** Hotspot: added MAC address delimiter and case setting for Radius MAC authentication | |||
*** Hotspot: improved API validations | |||
*** Input/Output: updated pin block naming | |||
*** IPsec: added ChaCha20-Poly1305 encryption algorithm | |||
*** IPsec: improved performance when using GCM encryption | |||
*** IPsec: added periodic connection check | |||
*** Modbus Client: added store on data change mode | |||
*** Modbus Client: added ability to choose where to save database | |||
*** MQTT Modbus Gateway: improved constant $$NAME that can be defined in system configuration | |||
*** OpenVPN: improved statuses for instances | |||
*** OpenVPN: removed 'persist-tun' and 'persist-key' options from default configuration | |||
*** OpenVPN: enabled DCO support for CHACHA20-POLY1305 cipher | |||
*** OpenVPN: improved performance when using DCO-supported ciphers | |||
*** SD & USB Tools: renamed "USB Tools" service to "SD & USB Tools" in WebUI for more accurate description | |||
*** Tailscale: optimized starting and stopping functions | |||
*** Zerotier: added ability to upload a custom planet file | |||
** <b>System</b> | |||
*** Access Control: improved UX when disabling HTTP and HTTPS local access settings | |||
*** Administration: added confirmation prompt when changing profiles | |||
*** Administration: updated hostname validation to allow numeric-only hostname | |||
*** Package Manager: added confirmation prompt when closing uploaded package modal | |||
*** Security: changed password policy to require at least one special character | |||
*** System Users: changed username validation to allow dots and underscores | |||
*** Update Firmware: added link to changelog page | |||
*** WebUI: removed basic/advanced mode | |||
*** WebUI: updated Teltonika logo | |||
*** Kernel: updated version to 5.10.233 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** 802.1X Server: fixed a segfault that sometimes occurs when port state changes to down | |||
*** Devices: fixed error handling for deleting non-existent bridge sections | |||
*** Firewall: fixed automatic conntrack helper not being assigned for port forward rules in some cases | |||
*** Firewall: fixed traffic rules "start_date" and "stop_date" option validations failing due to incorrect format | |||
*** Firewall: fixed incorrectly restricted AF23 value for traffic rule's DSCP option | |||
*** Multi WAN: fixed pings being lost for backup wired wan interfaces | |||
*** Network: fixed interfaces being displayed in the wrong page after updating with keep settings | |||
*** Network: fixed a name duplication validation error that occurred between the network interface and the VRF instance | |||
*** Network: fixed API failing to sort specific network interface configurations | |||
*** Network: fixed interface remove button disable state being shown only after status is loaded | |||
*** Network: fixed LAN interfaces sometimes not getting IPv6 prefix assigned on creation | |||
*** Static Routes: fixed missing route type validation for API | |||
*** VXLAN: made "Remote address" field required | |||
** <b>Services</b> | |||
*** Data to Server: fixed the OPC UA, DLMS, MBUS, and impulse counter inverted filtering logic | |||
*** Data to Server: fixed "Invert filter" option to be hidden when using "DLMS" type and "Data filtering" option is selected to "All" | |||
*** DLMS: fixed DLMS endpoint parameter validation | |||
*** DLMS: fixed device option data type validation for connections endpoints | |||
*** DLMS: fixed an issue where DLMS service could not read extended register type COSEM objects and display incorrect scaler value | |||
*** DLMS: fixed an issue where non-persistent connections did not close properly | |||
*** Hotspot: fixed bandwidth limits setting with "chilli_query" command | |||
*** Impulse Counter: fixed pin name display | |||
*** IPsec: fixed status display when compatibility mode is used | |||
*** IPsec: fixed connections not terminating if instance is disabled | |||
*** L2TP: fixed occasional device hangs when routing L2TP traffic with "Software flow offload" enabled | |||
*** Modbus Client: fixed API error when 'function' option is not present in alarms/requests configuration POST request | |||
*** Modbus Client: fixed reusing connection in Modbus client Modbus request alarm action | |||
*** Modbus Client: fixed email alarm action when TLS is enabled | |||
*** MQTT Modbus Gateway: fixed client ID validation | |||
*** Network Shares: fixed deleting of multiple users in one request | |||
*** NHRP: fixed missing dependencies | |||
*** OpenVPN: fixed issues related to warnings when using external services | |||
*** RMS: fixed the "Connection state" status displayed as JSON when device language was set to anything other than English | |||
*** SMPP: fixed the "TLS/SSL" option to be visible even when the configuration is not enabled | |||
*** Tailscale: fixed the issue of keeping the instance connection after a firmware upgrade | |||
** <b>System</b> | |||
*** Access Control: fixed "redirect_https" option reset after device reboot | |||
*** Access Control: fixed default HTTPS CA certificate generation | |||
*** Date & Time: fixed time synchronization with the browser when using Europe/Kyiv timezone | |||
*** Package Manager: fixed spinner position in package table | |||
*** Package Manager: fixed possible config migration issues for installed packages | |||
*** Update Firmware: fixed unnecessary FOTA requests when FOTA is disabled | |||
* <b>CVE Patches</b> | |||
** CVE-2022-49043 | |||
** CVE-2024-5290 | |||
** CVE-2024-9287 | |||
** CVE-2024-11053 | |||
** CVE-2024-34459 | |||
** CVE-2024-36618 | |||
** CVE-2024-53580 | |||
** CVE-2024-56171 | |||
** CVE-2025-24928 | |||
** CVE-2025-27113 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.12.3/RUTM/RUTM_R_00.07.12.3_WEBUI.bin RUTM_R_00.07.12.3]</span></b> | 2025.02.14=== | |||
* <b>New</b> | |||
** <b>Services</b> | |||
*** Modbus Client: added an endpoint that returns status for a single Modbus request | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Network: fixed occasional network hangs when using wired LAN with "Hardware flow offloading" enabled | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.12.2/RUTM/RUTM_R_00.07.12.2_WEBUI.bin RUTM_R_00.07.12.2]</span></b> | 2025.02.05=== | |||
* Firmware includes only manufacturing related changes | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.12.1/RUTM/RUTM_R_00.07.12.1_WEBUI.bin RUTM_R_00.07.12.1]</span></b> | 2025.01.27=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** IPsec: fixed kernel warnings when custom NAT rules are used with "IPsec Software Flow Offload" enabled | |||
*** OpenVPN: fixed an issue with config file parsing when carriage return characters were present | |||
*** OpenVPN: fixed parsing of the 'Protocol','Port' and 'LZO' options from the config file | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.12/RUTM/RUTM_R_00.07.12_WEBUI.bin RUTM_R_00.07.12]</span></b> | 2025.01.20=== | |||
* <b>New</b> | |||
** <b>Services</b> | |||
*** Dynamic DNS: added IPv6 support | |||
*** Tailscale: added removal of firewall rules when the package is deleted | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP: added leased IP status in DHCP server page | |||
*** DNS: added DNS strict order option | |||
*** Firewall: moved target field to the bottom of NAT rule edit and renamed it to "Action" to match traffic rules | |||
*** Firewall: moved all traffic rule fields related to action to be below action field | |||
*** Firewall: removed ability for any firewall rules to have port selection if protocol is set to "all" | |||
*** Firewall: separated zone and global firewall settings into different pages | |||
*** Firewall: improved "Conntrack helpers" field in zone edit by making it disabled with explanation instead of hiding it | |||
*** Network: fixed configuration viewing in the WAN page when user has only read permission | |||
*** UDP Relay: moved service menu item from Network > Other > UDP Relay to Network > UDP Relay | |||
*** VRF: added additional validations to address used device cases | |||
*** VXLAN: separated edit form options into general and advanced tabs | |||
*** Curl: updated version to 8.11.0 | |||
** <b>Services</b> | |||
*** DLMS: added ability to view COSEM objects for each scanned physical device in overview page | |||
*** IPsec: improved AES-CBC performance | |||
*** Modbus TCP over Serial Gateway: added option for serial device reply timeout | |||
*** Modbus TCP over Serial Gateway: improved performance | |||
*** Modbus TCP over Serial Gateway: added multiple connections support for up to 10 clients | |||
*** Overview: added IP type status to network interface cards | |||
*** azure-iot-sdk-c: updated version to LTS_08_2024 | |||
** <b>System</b> | |||
*** API Core: added query parameter for configuration GET endpoints to receive all options, even if unset | |||
*** Package Manager: removed "Installed Version" and "Available Version" columns from the package table | |||
*** Kernel: updated version to 5.10.229 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** 802.1X Server: updated radius secret back-end validation to match front-end validation | |||
*** Dynamic routes: fixed dynamic routes not starting after installation on rare occasions | |||
*** Firewall: deprecated invalid dest_local option in traffic rules API | |||
*** Firewall: fixed zone placement in NAT rule description | |||
*** Network: fixed missing PPPoE username and password validations | |||
*** Ports Settings: fixed incorrect warning message for identical port configurations | |||
*** Ports Settings: fixed an occasional infinite spinner issue when changing port settings | |||
*** QOS: fixed source and destination host field validation to allow subnet in CIDR notation | |||
*** QOS: fixed starting SQM after reboot when QoS package is installed | |||
*** Static Routes: fixed interface select not showing SSTP instances | |||
*** VLAN: fixed wrong error message when deleting a VLAN that does not exist | |||
*** VRF: fixed an issue that prevented saving the configuration when an inactive VLAN was selected | |||
** <b>Services</b> | |||
*** DLMS: fixed parameters table not always refreshing when selecting devices | |||
*** DLMS: fixed mismatched name validations between API and WebUI | |||
*** DLMS: fixed an issue where uptime becomes incorrect when system time changes | |||
*** DNP3 Client: fixed API error when non existent parent id is provided in requests endpoint URL | |||
*** DNP3 Client: fixed an issue where uptime becomes incorrect when system time changes | |||
*** DNP3 Outstation: fixed an issue where uptime becomes incorrect when system time changes | |||
*** IPsec: increased maximum length of local / remote identifiers and selector ID to 255 characters | |||
*** IPsec: fixed deleting global secrets when more than one ipsec instances are configured | |||
*** IPsec: fixed IPsec not reloading after DMVPN uninstall | |||
*** IPsec: fixed showing empty error messages after instance deletion | |||
*** IPsec: fixed excessive logging | |||
*** IPsec: fixed firewall rules migration and identifier setting when certificate authentication is used | |||
*** Modbus Client: fixed configuration files not being removed after package removal | |||
*** Modbus Client: fixed an issue where uptime becomes incorrect when system time changes | |||
*** Modbus Server: fixed configuration files not being removed after package removal | |||
*** Modbus Server: fixed an issue where uptime becomes incorrect when system time changes | |||
*** Modbus TCP over Serial Gateway: fixed gateway forwarding unrequested data from serial device | |||
*** MQTT Modbus Gateway: fixed configuration files not being removed after package removal | |||
*** MQTT Modbus Gateway: fixed an issue where uptime becomes incorrect when system time changes | |||
*** NTP Client: fixed Count of time synchronizations that was not working properly | |||
*** NTRIP: fixed an issue where uptime becomes incorrect when system time changes | |||
*** OPC UA Client: fixed URL validation | |||
*** OPC UA Client: fixed configuration files not being removed after package removal | |||
*** OPC UA Client: fixed API security mode option require validation | |||
*** OPC UA Client: fixed an issue where uptime becomes incorrect when system time changes | |||
*** OPC UA Client: fixed validation for prefix, midfix, postfix options | |||
*** OPC UA Server: fixed configuration files not being removed after package removal | |||
*** OPC UA Server: fixed API encryption option require validation | |||
*** OPC UA Server: fixed an issue where uptime becomes incorrect when system time changes | |||
*** OpenVPN: fixed the problem related to the 'netlink reports object not found' warning when using the DCO configuration | |||
*** Over IP: fixed an issue where uptime becomes incorrect when system time changes | |||
*** Over IP: fixed API error when incorrect device option value was sent | |||
*** Overview: fixed port display in LAN cards when there is configured port based VLAN or bridge via device page | |||
*** SNMP: fixed mwan3Ip to display 'N/A' if no IPs are present | |||
*** TR-069: fixed ConnectionRequestURL node to return VPN IP address if VPN is used | |||
*** Web Filter: fixed site blocking rules affecting router itself when selecting specific network interface | |||
*** Web Filter: added exception to FOTA server blocking | |||
*** Web Filter: fixed site blocking not working with Hotspot | |||
*** Web Filter: fixed whitelist not working with domains that have forwards to other domains | |||
** <b>System</b> | |||
*** Certificates: fixed issue where the API allowed the deletion of root certificate | |||
*** Certificates: fixed uploading of certificates that are 4096 bits or longer | |||
*** Package Manager: added protection against zip bombs when uploading a package | |||
*** PAM: fixed creating new instance | |||
*** WebUI: fixed SDK example app validation mismatch between UI and API | |||
*** WebUI: fixed default value display on instances for multiple services | |||
* <b>CVE Patches</b> | |||
** CVE-2024-5594 | |||
** CVE-2024-9681 | |||
** CVE-2024-29195 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.4/RUTM/RUTM_R_00.07.11.4_WEBUI.bin RUTM_R_00.07.11.4]</span></b> | 2024.12.19=== | |||
* Firmware includes no changes for this device | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.3/RUTM/RUTM_R_00.07.11.3_WEBUI.bin RUTM_R_00.07.11.3]</span></b> | 2024.12.17=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** Input/Output: fixed issues causing fault messages on service close | |||
*** Wireguard: fixed field validation after firmware upgrade | |||
*** OpenVPN: fixed the certificate file selection issue in the server configuration | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.2/RUTM/RUTM_R_00.07.11.2_WEBUI.bin RUTM_R_00.07.11.2]</span></b> | 2024.12.09=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** IPsec: fixed loading connections using AEAD algorithms | |||
*** IPsec: fixed connection status display | |||
*** IPsec: fixed Local source IP option | |||
*** IPsec: fixed issue with multiple global secrets of same type | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.1/RUTM/RUTM_R_00.07.11.1_WEBUI.bin RUTM_R_00.07.11.1]</span></b> | 2024.12.02=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** Ledman: fixed issue when network type LEDs are blinking when data connection is established | |||
*** Tailscale: fixed the segmentation fault that occurred after installing the package | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11/RUTM/RUTM_R_00.07.11_WEBUI.bin RUTM_R_00.07.11]</span></b> | 2024.11.25=== | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** 802.1X: added initial server support | |||
*** Devices: added network bridge status and configuration support | |||
*** Firewall: added "IPsec software flow offload" feature | |||
*** NAT64: added NAT64 WebUI configuration support | |||
** <b>Services</b> | |||
*** Data to Server: added LUA format support | |||
*** DLMS: added option to configure which COSEM class attributes to read from the meter | |||
*** Impulse Counter: added feature | |||
*** Wireguard: added QR code configuration generator | |||
** <b>System</b> | |||
*** Administration: added capability of displaying a configurable banner before login | |||
*** Password Policy: added ability to modify the password policy | |||
*** System Users: added sensitive option toggle for user groups | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Firewall: added TCPMSS action to traffic rules | |||
*** Topology: added sorting functionality for "IP address" and "MAC address" table columns | |||
** <b>Services</b> | |||
*** Data to Server: added scheduler support | |||
*** DLMS: added default values for table name columns | |||
*** IPsec: updated 'Custom option' field validation | |||
*** IPsec: migrated to swanctl | |||
*** Modbus Client: added phone group selection | |||
*** Modbus Client: added email alarm action | |||
*** OPC UA Client: changed validation, allowing to add certificates when channel encryption is not used | |||
*** OpenVPN: improved WebUI page for creating and modifying instances | |||
*** OpenVPN: added custom configuration file parsing | |||
*** OpenVPN: added option to configure virtual addressing topology and support for TLS clients | |||
*** OpenVPN: added 'adaptive' selection for the LZO parameter | |||
*** OpenVPN: added support for multiple remote network values | |||
*** OpenVPN: improved the selection of allowed data ciphers in the WebUI | |||
*** OpenVPN: improved private key decryption | |||
*** OpenVPN: removed dependency on the protocol value for configuring tunnel IPv6 addresses | |||
*** OpenVPN: added the possibility to use multiple remote host/IP address values | |||
*** OpenVPN: added support for exporting configuration | |||
*** Mosquitto: updated version to 2.0.20 | |||
** <b>System</b> | |||
*** Access Control: added ability to bind HTTP and HTTPS to specific IPs and ports | |||
*** Events Log: improved event log messages format | |||
*** Logging: added a log ID to each log entry for easier tracking and identification | |||
*** Setup Wizard: added SIM card and modem statuses in Mobile page | |||
*** WebUI: updated design of tables | |||
*** Kernel: updated version to 5.10.226 | |||
*** libffi: updated version to 3.4.6 | |||
*** readline: updated version to 8.2 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Network: fixed duplicate of "pps" APN for "Zain KW" operator in APN database | |||
*** Network: fixed MTU get from API | |||
*** Static Routes: fixed IPv6 route target validation to accept IPv6 subnet | |||
** <b>Services</b> | |||
*** Bluetooth: fixed service crash when trying to unpair devices | |||
*** DLMS: fixed name validation when adding physical devices | |||
*** IPsec: fixed incorrect status display when multiple instances are configured | |||
*** IPsec: fixed flushing of connection tracking table when compatibility mode is used | |||
*** L2TP: fixed disappearing default route when using mobile interface as the default WAN | |||
*** Ledman: fixed the LED animation during factory reset | |||
*** Modbus Client: fixed rpc crash when calling serial.test method | |||
*** Modbus Server: fixed firewall rule creation | |||
*** Python3: fixed out-of-tree package compilation issue with the SDK | |||
*** Zerotier: fixed saving configuration when LAN interface has no associated physical interface | |||
** <b>System</b> | |||
*** Access Control: fixed unauthorized errors on interface endpoints | |||
*** Access Control: fixed IP Block configuration when upgrading from previous firmware versions | |||
*** Package Manager: fixed VXLAN package not having link to configuration page | |||
*** Package Manager: fixed restoring packages after firmware upgrade | |||
*** Troubleshoot: fixed scenarios where TCPdump field was not displayed | |||
*** WebUI: fixed issue when sometimes hidden sections with created instances were not displayed | |||
* <b>CVE Patches</b> | |||
** CVE-2021-38291 | |||
** CVE-2024-6232 | |||
** CVE-2024-44070 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.10.3/RUTM/RUTM_R_00.07.10.3_WEBUI.bin RUTM_R_00.07.10.3]</span></b> | 2024.11.08=== | |||
* Firmware includes no changes for this device | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.10.2/RUTM/RUTM_R_00.07.10.2_WEBUI.bin RUTM_R_00.07.10.2]</span></b> | 2024.11.04=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: fixed bug in NAT rule migration script that would overwrite Port Forwarding rule options | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.10/RUTM/RUTM_R_00.07.10_WEBUI.bin RUTM_R_00.07.10]</span></b> | 2024.10.10=== | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** NAT64: added "jool" package for NAT64 support | |||
** <b>Services</b> | |||
*** AWS IoT Core: added service | |||
*** BACnet: added ability to configure several BIP interfaces, to set network numbers and preconfigure BDT entries for BBMD | |||
*** Console: added service status information display | |||
*** DLMS: added service status information display | |||
*** DNP3 Client: added service status information display | |||
*** DNP3 Outstation: added service status information display | |||
*** Modbus Client: added service status information display | |||
*** Modbus Server: added service status information display | |||
*** Modbus TCP over Serial Gateway: added service status information display | |||
*** MQTT Modbus Gateway: added service status information display | |||
*** NTRIP: added service status information display | |||
*** OPC UA Client: added service status information display | |||
*** OPC UA Server: added variable "rut_wan_type" which shows if WAN is on a wired or a mobile network | |||
*** OPC UA Server: added service status information display | |||
*** RMS: added SOCKS5 proxy support | |||
** <b>System</b> | |||
*** Certificates: added SCEP certificate generation method | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Curl: added unix socket support | |||
*** Firewall: added most options to basic mode for all firewall pages | |||
*** Firewall: added all firewall pages to basic mode | |||
*** Interfaces: increased interface metric maximum value from 10000 to 4294967295 | |||
*** Multi WAN: added rules table to basic mode | |||
*** Network: improved performance under stateless single-directional traffic (RFC2544) | |||
*** Network: improved throughput stability of "Hardware flow offloading" | |||
*** Static Routes: added page to basic mode | |||
*** VRRP: added page to basic mode | |||
** <b>Services</b> | |||
*** DLMS: added meter COSEM object scanning | |||
*** DNP3 Client: made menu names more consistent | |||
*** IPsec: improved 'Remote endpoint' validation to allow '%any', '%any4', '%any6' values and netmask | |||
*** IPsec: added ability to use certificates from Certificate Manager | |||
*** L2TPv3: added Tunnel ID and Session ID validation to avoid creating multiple tunnels with the same parameters | |||
*** Modbus Client: updated Modbus Client menu position | |||
*** Modbus Server: updated Modbus Server menu position | |||
*** Python3: changed python3-light package libraries | |||
*** Tailscale: improved status information by including health messages | |||
*** Tinc: added options to set the tunnel's IP address | |||
*** Tinc: added a port option to listen for incoming connections and the ability to specify a port for outgoing connections | |||
*** Wireguard: added tunnel source mode selection | |||
*** Python3: updated version to 3.11.7 | |||
*** Strongswan: updated version to 5.9.14 | |||
*** Tailscale: updated version to 1.70.0 | |||
** <b>System</b> | |||
*** Access Control: refactored 'General', 'Security' and 'PAM' Web pages | |||
*** Auto Reboot: added support for multiple hosts/URLs in Ping/Wget Reboot | |||
*** Backup: encrypting backup does not require 7zip package anymore | |||
*** Certificates: split "Let's Encrypt" certificates into multiple files | |||
*** Troubleshoot: added dynamic routes debugging information | |||
*** WebUI: added ability to open new page in new tab without entering user credentials | |||
*** WebUI: improved SDK example application | |||
*** Glib2: updated version to 2.80.5 | |||
*** Kernel: updated version to 5.10.224 | |||
*** Ncurses: updated version to 6.5 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: fixed automatic priority option change | |||
*** Network: fixed MTU change of WAN interface | |||
** <b>Services</b> | |||
*** BACnet: fixed communication issues between the ports | |||
*** BACnet: added all available default baud rates | |||
*** BGP: fixed AS field to allow duplicate values | |||
*** BGP: fixed Access list filters not applying fully | |||
*** DLMS: added all available default baud rates | |||
*** DMVPN: fixed DMVPN GRE instance disappearing when creating new IPsec instance | |||
*** DNP3 Client: removed unnecessary max length display for test response field | |||
*** DNP3 Client: renamed TCP Station to TCP Client in the API documentation | |||
*** DNP3 Client: added all available default baud rates | |||
*** DNP3 Outstation: added all available default baud rates | |||
*** GRE: fixed interface not showing up in OSPF and RIP selections if it is off | |||
*** IPsec: fixed IP rule not appearing after network restart | |||
*** IPsec: fixed duplicate port values in IPsec firewall rules | |||
*** Ledman: fixed issue when power LED turns off when rebooting device | |||
*** Modbus Client: added all available default baud rates | |||
*** Modbus Client: added missing API docs for Modbus test request | |||
*** Modbus Server: added all available default baud rates | |||
*** Modbus Server: fixed firewall rule staying enabled when app is disabled | |||
*** Modbus Server: fixed firewall rule creation | |||
*** NTRIP: added all available default baud rates | |||
*** OpenVPN: fixed the configuration after disabling the use of external services | |||
*** Over IP: added all available default baud rates | |||
*** SNMP: fixed Hotspot OIDs' hssID and hssUsername display | |||
*** Tinc: fixed adding routes to remote subnets | |||
*** Tinc: fixed configuration generation issues when creating multiple network and host instances | |||
*** Tinc: fixed issues with route creation when using IPv6 addresses in tunnel configuration | |||
*** Tinc: fixed validation for uploading key files | |||
** <b>System</b> | |||
*** Backup: fixed uploading backup with memory expansion enabled | |||
*** CLI: fixed some private IPs being incorrectly determined as public | |||
*** JSON-RPC: fixed login "Access Denied" error | |||
*** Memory Expansion: fixed input element alignment issues | |||
*** WebUI: added API required values validation when enabling BACnet, DLMS, DNP3, Modbus, MQTT, NTRIP services | |||
*** WebUI: fixed 'Memory' status card progress bars visuals | |||
*** WebUI: fixed search bar suggestions after removing packages | |||
*** WebUI: fixed showing data in modals for users with only read permissions | |||
*** WebUI: fixed custom SDK pages not loading correctly | |||
* <b>CVE Patches</b> | |||
** CVE-2021-3520 | |||
** CVE-2021-44540 | |||
** CVE-2021-44541 | |||
** CVE-2024-4032 | |||
** CVE-2024-6119 | |||
** CVE-2024-6232 | |||
** CVE-2024-6923 | |||
** CVE-2024-7264 | |||
** CVE-2024-42225 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.4/RUTM/RUTM_R_00.07.09.4_WEBUI.bin RUTM_R_00.07.09.4]</span></b> | 2024.10.02=== | |||
* <b>Improvements</b> | |||
** <b>Services</b> | |||
*** NTP Client: changed default NTP servers | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** NTP Client: fixed NTP server usage to work with next in line server if current server does not respond | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.3/RUTM/RUTM_R_00.07.09.3_WEBUI.bin RUTM_R_00.07.09.3]</span></b> | 2024.09.27=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Multi WAN: fixed ipsets not getting deleted correctly when Multi WAN gets restarted | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.2/RUTM/RUTM_R_00.07.09.2_WEBUI.bin RUTM_R_00.07.09.2]</span></b> | 2024.09.16=== | |||
* Changes only affect RUTM50 device | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.1/RUTM/RUTM_R_00.07.09.1_WEBUI.bin RUTM_R_00.07.09.1]</span></b> | 2024.09.13=== | |||
* <b>Improvements</b> | |||
** <b>Services</b> | |||
*** Python3: updated version to 3.11.7 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9/RUTM/RUTM_R_00.07.09_WEBUI.bin RUTM_R_00.07.09]</span></b> | 2024.09.03=== | ===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9/RUTM/RUTM_R_00.07.09_WEBUI.bin RUTM_R_00.07.09]</span></b> | 2024.09.03=== | ||
* <b>New</b> | * <b>New</b> | ||