RUTX10 Firmware Downloads: Difference between revisions
Appearance
Gytispieze (talk | contribs) m Text replacement - "2023-36369" to "2021-36369" |
No edit summary |
||
| (63 intermediate revisions by 2 users not shown) | |||
| Line 7: | Line 7: | ||
==Changelog== | ==Changelog== | ||
<!--NEW_FW--> | <!--NEW_FW--> | ||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.20/RUTX/RUTX_R_00.07.20_WEBUI.bin RUTX_R_00.07.20]</span></b> | 2025.12.16=== | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** Wireless: added support for a global installation type option for radio devices | |||
** <b>Services</b> | |||
*** Data to Server: added IEC 60870-5 Client as an input | |||
*** IEC 60870-5 Client: added IEC 60870-5-104 Client | |||
*** IEC 60870-5 Server: added IEC101 and IEC104 support | |||
** <b>System</b> | |||
*** Package Manager: added CIFS/SMBFS filesystem support | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** 802.1X Client: updated 802.1x validation so that 802.1x client can no longer be enabled on a port that is disabled | |||
*** DHCP server: improved "DHCPv6-Mode" field's option names and hints | |||
*** Multi WAN: added IPv4 and IPv6 WAN interface coexistence warning | |||
*** Network: improved interface creation and deletion speed in some situations | |||
*** Network: improved "Force link" field hint | |||
*** Network: fixed "Force link" field to respect default value when changing interface protocol | |||
*** SSHFS: updated setting fields to be shown when service is disabled | |||
*** SSHFS: added directory as prefix to "Mount point" field | |||
*** ethtool: updated version to 6.10 | |||
** <b>Services</b> | |||
*** AWS IoT Core: updated orange error status to be red | |||
*** Azure IoT Hub: updated status columns to use text badges instead of circle icons | |||
*** Data to Server: updated input sections to be toggleable | |||
*** Data to Server: added certificates to global certificate manager | |||
*** Data to Server: increased the limit for Modbus data filtering entries | |||
*** Event juggler: added certificates to global certificate manager | |||
*** I/O Juggler: added certificates to global certificate manager | |||
*** I/O Status: moved all custom I/O configuration from table to the edit | |||
*** I/O Status: updated all I/O pinout and Power pinout icons | |||
*** L2TP: improved adding custom options to the configuration | |||
*** MQTT Broker: added certificates to global certificate manager | |||
*** MQTT Broker Bridge: added certificates to global certificate manager | |||
*** MQTT Publisher: added certificates to global certificate manager | |||
*** SD & USB Tools: added additional mounting behavior options | |||
*** SMPP: added certificates to global certificate manager | |||
*** SNMP: added additional info to Trap message | |||
** <b>System</b> | |||
*** Certificates: changed SCEP enrollment to try AES first and fall back to 3DES | |||
*** RutOS: updated login banner to include internal API usage | |||
*** Kernel: updated version to 6.6.115 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: removed low contrast zone colors | |||
*** Network: fixed PPPoE client options not being removed after switching to other protocol | |||
*** Network: fixed routing table rules not matching interface metric order | |||
*** Realtime Traffic: fixed traffic history not showing up in some cases | |||
*** Realtime Traffic: fixed plot background rendering when switching between plots | |||
*** Realtime Traffic: fixed plot popover position on Firefox 143 and later | |||
*** Wireless: fixed authentication timeout during fast transition | |||
*** Wireless: fixed retrieving empty cached wireless scan results | |||
** <b>Services</b> | |||
*** Azure IoT Hub: fixed empty status hint | |||
*** DNP3 Client: fixed display issues with long request names | |||
*** DNP3 Outstation: fixed display issues with long request names | |||
*** Dynamic DNS: fixed bind-nsupdate method not working on multi-level subdomains | |||
*** Event juggler: fixed HTTP action request type | |||
*** Hotspot: fixed session data delete when deleting user | |||
*** L2TP: fixed log display in WebUI | |||
*** Modbus Client: fixed duplicate query parameters validation in database entries endpoint | |||
*** Modbus Client: fixed display issues with long request names | |||
*** Modbus Server: fixed display issues with long request names | |||
*** MQTT Broker: fixed 'Allow persistence' option | |||
*** OPC UA Client: fixed duplicate query parameters validation in database entries endpoint | |||
*** OPC UA Client: fixed API error when 'server_node' option had an incorrect type in group values test endpoint | |||
*** OpenVPN: fixed status in Static Key Authentication mode | |||
*** OpenVPN: fixed handling of 'user' and 'group' parameters | |||
*** RMS: fixed connection status jumping between "Connecting" and "Connected" states | |||
*** SD & USB Tools: fixed API error when 'fs' option was not provided for safe_remove, format endpoints | |||
** <b>System</b> | |||
*** Certificates: fixed importing DER keys to TPM | |||
*** RutOS: fixed rare UCI deadlock causing system hangs | |||
*** Speed Test: fixed selecting WAN interface when using servers with IPv6 support | |||
*** System Users: fixed redundant /etc/group member creation | |||
*** WebUI: fixed target area that triggers hint text | |||
* <b>CVE Patches</b> | |||
** CVE-2025-46394 - 3.3 (LOW) | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.19.4/RUTX/RUTX_R_00.07.19.4_WEBUI.bin RUTX_R_00.07.19.4]</span></b> | 2025.12.05=== | |||
* Firmware includes no changes for this device | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.19.2/RUTX/RUTX_R_00.07.19.2_WEBUI.bin RUTX_R_00.07.19.2]</span></b> | 2025.11.26=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Update Firmware: fixed firmware download cancellation | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.19.1/RUTX/RUTX_R_00.07.19.1_WEBUI.bin RUTX_R_00.07.19.1]</span></b> | 2025.11.12=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** WebUI: fixed unresponsive navigation after password change | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.19/RUTX/RUTX_R_00.07.19_WEBUI.bin RUTX_R_00.07.19]</span></b> | 2025.11.06=== | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP server: added message to Events Log when there are no available DHCP addresses | |||
*** Firewall: added status to Traffic Rule page | |||
*** Firewall: added status to Port Forwards page | |||
*** Firewall: added status to NAT page | |||
*** Firewall: added status to DMZ page | |||
*** Firewall: updated status page to have chain and rule tables for better searchability | |||
*** Firewall: added shortcuts from firewall rules in status page to firewall configurations that created them | |||
*** HTTPS DNS Proxy: disabled field requirements when service is disabled | |||
*** NAT64: added status to NAT64 page | |||
*** Network: improved DHCP client and server related fields | |||
*** VLAN: improved VLAN configuration save and apply speed in some cases | |||
** <b>Services</b> | |||
*** Cloud of Things: changed communication from HTTP to MQTT | |||
*** Cumulocity: changed communication from HTTP to MQTT | |||
*** Data to Server: added new parameters (Custom name and pin value) in I/O input plugin | |||
*** EoIP: added IPv6 support | |||
*** Event juggler: added `io_reset` option | |||
*** GRE: added IPv6 support | |||
*** Impulse Counter: increased status loading speed | |||
*** MQTT Modbus Gateway: added validation to discard responses with invalid ID or function code | |||
*** NTRIP: added IPv6 support | |||
*** OpenVPN: improved page load speed by removing duplicate data request | |||
*** SNMP: added SET support for universal gateway tag value table | |||
*** Stunnel: added support for using IPv6 addresses in the connect IPs field | |||
*** Wireguard: added wireguard watchdog support | |||
*** cURL: updated version to 8.16.0 | |||
*** OpenVPN: updated version to 2.6.14 | |||
** <b>System</b> | |||
*** Custom Scripts: added page loading spinner | |||
*** Speed Test: added support for custom server url | |||
*** Update Firmware: improved FOTA communication and caching logic | |||
*** WebUI: improved usability on small screens | |||
*** Kernel: updated version to 6.6.108 | |||
*** PAM: updated version to 1.7.1 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** DHCP server: fixed DHCPv6 server reload when changing VLAN | |||
*** DNS: fixed "Static addresses" and "Custom redirect" field required validation | |||
*** Dynamic routes: fixed services other than EIGRP restarting on network change | |||
*** Firewall: added IPsec and OpenConnect configurations as possible networks | |||
*** Firewall: fixed NAT extra custom rules not applying after FW upgrade | |||
*** HTTPS DNS Proxy: fixed DNS requests failing after obtaining new IP | |||
*** Multi WAN: fixed Multi WAN interface creation | |||
*** Ports Settings: fixed ports re-enabling themselves after changing certain settings | |||
*** Wireless: fixed invalid mesh interface encryption data reporting | |||
*** Wireless: fixed excessive Wi-Fi service log file creation due to service restarts | |||
*** Wireless: fixed "Allow legacy 802.11b rates" option not working properly | |||
*** Wireless: fixed missing background scan data in learn mode | |||
** <b>Services</b> | |||
*** DLMS: fixed access error when reading an empty sort object attribute on a generic profile object | |||
*** DLMS: fixed "Entries" not being clamped for "Profile generic" COSEM type | |||
*** DMVPN: fixed custom changes in IPsec, GRE and NHRP pages being reverted when saving DMVPN instance | |||
*** DNP3 Client: fixed dnp3 test function printing analog values in wrong format | |||
*** DNP3 Client: fixed always shown warning notification by displaying status hints for affected requests | |||
*** Dynamic DNS: fixed "Check interval" and "Force interval" validation issues | |||
*** Impulse Counter: fixed duplicate values in 'GPIO pin' dropdown | |||
*** Impulse Counter: fixed deleting impulse counter data records | |||
*** IPsec: fixed an issue where connections could be re-initiated even while being active | |||
*** IPsec: fixed authentication issue when using multiple instances with the PSK authentication method | |||
*** IPsec: fixed Xauth connections not establishing when identifiers are set | |||
*** IPsec: fixed wrong active client information when using certificates | |||
*** IPsec: fixed incorrect uptime display when using multiple responder instances | |||
*** L2TP: fixed L2TP over IPsec connection issue | |||
*** L2TPv3: fixed parameter validation for IPv6 addresses in configuration | |||
*** Modbus Client: fixed email and MQTT alarm actions running longer than intended | |||
*** Modbus Client: fixed always shown warning notification by displaying status hints for affected requests | |||
*** Modbus Client: fixed test request endpoints failing if 'broadcast' option is not provided | |||
*** MQTT Broker: fixed TLSv1.1 configuration | |||
*** OpenConnect: fixed 'Get server fingerprint' feature on IPv6 servers | |||
*** OpenConnect: fixed displaying IPv6 address under Tunnel IP address | |||
*** OpenVPN: fixed parsing uploaded custom OpenVPN configuration | |||
*** OpenVPN: fixed issues with parsed fields being displayed after config deletion | |||
*** OpenVPN: fixed configuration parsing issues related to security options | |||
*** Wireguard: fixed creation of routes to endpoint host when default route is not set | |||
** <b>System</b> | |||
*** Access Control: fixed displaying certificates in "HTTPS" edit modal after page refresh | |||
*** Administration: fixed incorrect creation date of user's default configuration | |||
*** API Core: fixed API error on 'DELETE' request with bad payload structure | |||
*** Events Log: fixed sorting reset functionality of table columns and "Event group" column issues | |||
*** Setup Wizard: fixed redirect of "RMS" step | |||
*** System Users: fixed multiple network pages working improperly with non-root users | |||
*** WebUI: fixed "visible columns" button to be clickable for users without "write" permissions | |||
*** WebUI: removed bell notifications from modals | |||
*** WebUI: fixed length validation for custom input values in select lists | |||
*** WebUI: fixed active state of filters on tables | |||
* <b>CVE Patches</b> | |||
** CVE-2025-4373 - 4.8 (MEDIUM) | |||
** CVE-2025-6020 - 7.8 (HIGH) | |||
** CVE-2025-6052 - 7.5 (HIGH) | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.18.3/RUTX/RUTX_R_00.07.18.3_WEBUI.bin RUTX_R_00.07.18.3]</span></b> | 2025.10.30=== | |||
* <b>Improvements</b> | |||
** <b>System</b> | |||
*** ubus: updated version to 2025-10-19 | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Backup: fixed issues uploading older backup files | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.18.2/RUTX/RUTX_R_00.07.18.2_WEBUI.bin RUTX_R_00.07.18.2]</span></b> | 2025.10.22=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** IPsec: fixed issue where IPsec connections failed during WAN failover | |||
*** OpenVPN: fixed status issue after firmware upgrade | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.18.1/RUTX/RUTX_R_00.07.18.1_WEBUI.bin RUTX_R_00.07.18.1]</span></b> | 2025.10.13=== | |||
* Firmware includes no changes for this device | |||
---- | |||
===<b>RUTX_R_00.07.18</b> | 2025.10.01=== | |||
<b>Note:</b> This firmware version has been withdrawn due to an issue with incorrect mobile operator selection under specific conditions. | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** Starlink: added Starlink management support | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Channel Analysis: aligned X axis ticks to 5GHz channels | |||
*** Channel Analysis: removed low contrast color from possible figure colors | |||
*** Channel Analysis: added diamond decoration showing primary channel position | |||
*** DHCP server: added option 82 support to DHCP relay | |||
*** SSHFS: updated mount point location | |||
*** Wireless: enabled direct software flow offload path for bridged wireless interfaces | |||
*** Dnsmasq: updated version to 2.90 | |||
*** Iperf3: updated version to 3.19.1 | |||
** <b>Services</b> | |||
*** DLMS: improved COSEM value reading speed | |||
*** DNP3 Client: added DNP3 client support for universal gateway | |||
*** DNP3 Outstation: increased status report responsiveness | |||
*** Input/Output: added "time" and "delay" options to I/O state change API endpoint | |||
*** IPsec: added requirement for local certificate and key fields when X.509 authentication method is selected | |||
*** IPsec: added improvements for IPv6 support | |||
*** Modbus Client: increased test button and status report responsiveness | |||
*** Modbus Client: made number zero as valid server ID | |||
*** Modbus Client: added broadcast support | |||
*** Modbus Server: increased status report responsiveness | |||
*** Modbus Server: added broadcast support | |||
*** MQTT Modbus Gateway: added broadcast support | |||
*** OpenVPN: removed disabled state from "logs" and "active clients" when user has no write permissions | |||
*** OpenVPN: improved error messages | |||
*** OpenVPN: added user and password options for export client configuration | |||
** <b>System</b> | |||
*** Access Control: added JSON-RPC enable toggle | |||
*** JSON-RPC: moved to Package Manager | |||
*** WebUI: added indicators when a form input inside an inactive tab was changed or invalid | |||
*** WebUI: added "Skip to main content" accessibility feature | |||
*** WebUI: improved multi select design | |||
*** WebUI: improved styles of drag hint on smaller screens | |||
*** WebUI: improved consistent formatting across all hints | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Channel Analysis: fixed 20 and 160 MHz width parsing | |||
*** Channel Analysis: fixed inconsistent figure widths between same width channels | |||
*** Channel Analysis: centered figures using center channels instead of primary ones | |||
*** Channel Analysis: fixed chart display when signal goes below -100 dBm | |||
*** Multi WAN: fixed incorrect log trigger | |||
*** Network usage: fixed table columns visual bugs | |||
*** Wireless: fixed VHT operation IE values for 20MHz channel width to be the same regardless static/automatic channel configuration | |||
** <b>Services</b> | |||
*** Data to Server: fixed Modbus input raw data sending when data type is Modbus PDU | |||
*** Hotspot: fixed console errors that occurred in certain scenarios when enabling or disabling an instance | |||
*** Hotspot 2.0: removed OSU provider | |||
*** IPsec: fixed field validation to support % in custom options | |||
*** Modbus Client: fixed PDU data type data collection | |||
*** OpenVPN: fixed permissions for using IP Block | |||
*** RMS: fixed RMS authentication under poor internet conditions | |||
*** Stunnel: fixed disabled state of "enable" switch in overview page | |||
*** Zerotier: fixed excessive ARP flooding on Zerotier interfaces | |||
** <b>System</b> | |||
*** Administration: fixed "User group" input validation | |||
*** API Core: fixed double quoted boundary parsing | |||
*** Kernel: fixed compilation of 'fs-cifs' kernel module package | |||
*** Profiles: fixed endpoint response when calling from internal API | |||
*** UI Core: fixed 'Save & Apply' button reachability on mobile devices | |||
*** Update Firmware: fixed incorrect FOTA address in SDK | |||
*** WebUI: fixed text-area width issues on small screen devices | |||
* <b>CVE Patches</b> | |||
** CVE-2025-6021 | |||
** CVE-2025-6069 | |||
** CVE-2025-8194 | |||
** CVE-2025-32415 | |||
** CVE-2025-49794 | |||
** CVE-2025-49796 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.17.5/RUTX/RUTX_R_00.07.17.5_WEBUI.bin RUTX_R_00.07.17.5]</span></b> | 2025.09.30=== | |||
* Firmware includes no changes for this device | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.17.4/RUTX/RUTX_R_00.07.17.4_WEBUI.bin RUTX_R_00.07.17.4]</span></b> | 2025.09.17=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Profiles: fixed keep-settings execution for older profiles | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.17.3/RUTX/RUTX_R_00.07.17.3_WEBUI.bin RUTX_R_00.07.17.3]</span></b> | 2025.09.05=== | |||
* <b>Improvements</b> | |||
** <b>Services</b> | |||
*** Tailscale: updated version to 1.86.2 | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** Bluetooth: fixed Bluetooth sensor values not updating on some devices | |||
*** Web Filter: fixed host blocking with hotspot interfaces | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.17.2/RUTX/RUTX_R_00.07.17.2_WEBUI.bin RUTX_R_00.07.17.2]</span></b> | 2025.09.02=== | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** iwinfo: updated version to 2025-02-06 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** DNS: fixed saving of DNS server IPs | |||
** <b>Services</b> | |||
*** Tailscale: fixed dns resolution errors caused by enabling MagicDNS | |||
** <b>System</b> | |||
*** Backup: fixed keep-settings execution for older backups | |||
*** WebUI: fixed missing "Port Mirroring" page | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.17.1/RUTX/RUTX_R_00.07.17.1_WEBUI.bin RUTX_R_00.07.17.1]</span></b> | 2025.08.19=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Multi WAN: fixed failover startup after reboot | |||
---- | |||
===<b>RUTX_R_00.07.17</b> | 2025.08.12=== | |||
<b>Note:</b> This firmware was removed due an issue with Failover functionality. | |||
* <b>New</b> | |||
** <b>System</b> | |||
*** RutOS: added instructions for creating a simple package using the SDK | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Multi WAN: added drag & drop operation for the "Failover" mode | |||
*** Realtime Traffic: added ability to see up to 1 hour of live data | |||
*** VRF: added VPN selection support in the WebUI | |||
*** hostapd: updated version to 2025-05-23 | |||
*** Iperf3: updated version to 3.19 | |||
** <b>Services</b> | |||
*** Email Relay: simplified new instance creation | |||
*** Event juggler: added call action functionality to hang up the call after a specified time | |||
*** Event juggler: increased SMS text length from 3 to 8 messages | |||
*** Event juggler: added live character counter for SMS messages | |||
*** Hotspot 2.0: deprecated OSU provider | |||
*** Package Manager: added confirmation modal when removing multiple packages | |||
*** Traffic Logging: improved Hotspot data stream retrieval | |||
** <b>System</b> | |||
*** Administration: added notifications and alerts display toggles | |||
*** Administration: updated certificates page | |||
*** Package Manager: added WebUI notifications for successful and failed package installations | |||
*** UI Core: changed all chart styles | |||
*** WebUI: updated brand color palette | |||
*** WebUI: added sensitive information hiding feature for 'IMSI', 'ICCID' and 'IP address' fields for lower privilege users | |||
*** WebUI: added truncation and hover tooltips for long side widget card titles | |||
*** WebUI: unified the "Change Password" page title | |||
*** Kernel: updated version to 6.6.96 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** DHCP server: fixed DHCPv6 server reload when changing VLAN | |||
*** DHCP server: fixed wrong DHCPv4 server conflict message being displayed when both interfaces have no device assigned | |||
*** HTTPS DNS Proxy: fixed typo in the configuration page | |||
*** VLAN: fixed a missing validation message in the WebUI when VLAN migration is restricted | |||
*** Wireless: fixed default cipher not being returned from the API | |||
*** Wireless: fixed an API error that occurred when joining a mesh network while a client network was present | |||
*** Wireless: fixed wireless radio page loading incorrectly when user has limited permissions | |||
** <b>Services</b> | |||
*** Bluetooth: fixed incorrect sensor data documentation | |||
*** Data to Server: fixed configuration clearing when plugin packages are deleted | |||
*** DLMS: fixed missing API validation message for 'server_addr' option | |||
*** DLMS: fixed service crashing when using "Register activation", "Activity calendar" and "Profile generic" COSEM types | |||
*** DNP3 Client: fixed 'index' option API error in the 'requests' endpoints | |||
*** Event juggler: fixed issue with enabling/disabling the WiFi interfaces | |||
*** Hotspot: fixed redirect to custom success url with the same domain as landing page | |||
*** Hotspot: fixed 'reset' button functionality and template input styles in 'Landing pages' page | |||
*** I/O Juggler: fixed minor validation bugs | |||
*** I/O Juggler: fixed log generation on reboot action | |||
*** Impulse Counter: fixed duplicate query parameter validation | |||
*** Impulse Counter: fixed input re-initiation | |||
*** Input/Output: fixed incorrect assigning of input/output pins | |||
*** IPsec: fixed intermittent errors when checking IPsec status | |||
*** Modbus Client: fixed timeout behavior to not include serial device acquisition time | |||
*** Modbus Server: fixed custom register block not working if count is more than 128 registers | |||
*** NTRIP: fixed ntrip hangup on modem restart or on error conditions | |||
*** Over IP: fixed API error when 'address_connect' option is missing | |||
*** Over IP: fixed 'echo_enabled' option not being set | |||
*** Tailscale: fixed routing issue with failover enabled | |||
*** Wireguard: fixed incorrect route towards other peer being added | |||
*** Wireguard: fixed Wireguard not re-adding default routes after deleting instance | |||
** <b>System</b> | |||
*** Access Control: fixed duplicate query parameter validation | |||
*** Access Control: fixed HTTP WAN remote switch is shown as disabled after the "WAN to LAN" action | |||
*** Administration: fixed device usage duplicate query parameter validation | |||
*** Administration: fixed issue of "delete" button not being disabled on "System users" page when user has no write permissions | |||
*** Events Log: fixed duplicate query parameter validation | |||
*** IP Block: fixed MAC blocking interface validation | |||
*** Package Manager: updated "View packages repository" link | |||
*** Profiles: fixed issue that allowed deletion of profiles in use by the scheduler | |||
*** Setup Wizard: fixed "Setup Wizard" access issues with lower privilege users | |||
*** WebUI: fixed notifications disappearing on page navigation | |||
*** WebUI: fixed validation for fields using "url" rule | |||
* <b>CVE Patches</b> | |||
** CVE-2023-53154 | |||
** CVE-2024-12718 | |||
** CVE-2024-31578 | |||
** CVE-2024-52533 | |||
** CVE-2025-4138 | |||
** CVE-2025-4330 | |||
** CVE-2025-4516 | |||
** CVE-2025-4517 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.16.6/RUTX/RUTX_R_00.07.16.6_WEBUI.bin RUTX_R_00.07.16.6]</span></b> | 2025.09.17=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Profiles: fixed keep-settings execution for older profiles | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.16.3/RUTX/RUTX_R_00.07.16.3_WEBUI.bin RUTX_R_00.07.16.3]</span></b> | 2025.07.28=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** System Status: fixed SIM 1 and SIM 2 LEDs not working | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.16.2/RUTX/RUTX_R_00.07.16.2_WEBUI.bin RUTX_R_00.07.16.2]</span></b> | 2025.07.24=== | |||
* <b>New</b> | |||
** <b>Services</b> | |||
*** SNMP: added wireless interfaces' clients' table OID | |||
*** SNMP: added LAN clients' table OID | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** OpenVPN: fixed connectivity issues when using WAN failover | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.16.1/RUTX/RUTX_R_00.07.16.1_WEBUI.bin RUTX_R_00.07.16.1]</span></b> | 2025.07.17=== | |||
* <b>New</b> | |||
** <b>Services</b> | |||
*** DNP3 Outstation: added support for data conversion from other industrial protocols | |||
*** FreeRADIUS: added package | |||
*** SNMP: added Universal Gateway support for Modbus and M-Bus protocols | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP server: added excluded address count to Leased IPs status | |||
*** Firewall: added attack prevention option to log detected flood events | |||
*** Wireless: improved FT roaming performance in STA mode | |||
*** libpcap: updated version to 1.10.5 | |||
*** tcpdump: updated version to 4.99.5 | |||
** <b>Services</b> | |||
*** SNMP: added access points' and meshes' clients' count OID | |||
*** Bluetooth: added filtering query parameters to database API endpoint | |||
*** Data to Server: updated collection and input card design | |||
*** Data to Server: added support for specifying multiple minute values in one row for the "Scheduler" | |||
*** Data to Server: added support for Base64 data encoding | |||
*** Data to Server: added warning message for Lua format example script | |||
*** Data to Server: improved example format Lua script | |||
*** DLMS: added filtering query parameters to database API endpoint | |||
*** DNP3 Client: added filtering query parameters to database API endpoint | |||
*** Event juggler: updated event and action card design | |||
*** Event juggler: updated modem selection to include external modems | |||
*** Event juggler: updated "Key-value arguments" to allow duplicates in "Script" and "HTTP" actions | |||
*** Event juggler: increased maximum "Key-value arguments" count in "Script" and "HTTP" actions | |||
*** Event juggler: improved configuration creation in WebUI | |||
*** L2TP: added support for custom ports | |||
*** L2TPv3: improved validation for multiple fields | |||
*** Modbus Client: added filtering query parameters to database API endpoint | |||
*** Modbus Server: added multi value support in data source selection | |||
*** OPC UA Client: added filtering query parameters to database API endpoint | |||
*** OpenConnect: added certificate authentication support | |||
*** OpenConnect: added support for storing keys in TPM2.0 | |||
*** Stunnel: added TPM2.0 key support | |||
*** libtasn1: updated version to 4.20.0 | |||
** <b>System</b> | |||
*** Troubleshoot: added support for capturing packets via the NFLOG interface | |||
*** WebUI: updated icon sizes | |||
*** WebUI: added long hold to drag on mobile for draggable cards | |||
*** WebUI: improved layout and functionality of log modals | |||
*** WebUI: added information about 'Branch' to 'System' page | |||
*** dropbear: updated version to 2025.88 | |||
*** Kernel: updated version to 6.6.92 | |||
*** tpm2-openssl: updated version to 1.3.0 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** DHCP server: fixed calculating DHCP address range when changing subnet mask | |||
*** DHCP server: fixed the incorrectly displayed error for server status | |||
*** Network: fixed incorrect IP address netmask validation | |||
*** Ports Settings: fixed page refresh button | |||
*** Ports Settings: fixed advertisement not required when auto-negotiation is enabled in API | |||
*** Realtime Traffic: fixed data usage show for interfaces with PPPoE protocol | |||
*** RelayD: fixed API wrongly suggesting and accepting "lan_mark" as an internal network | |||
*** RelayD: fixed page not functioning for users with limited access | |||
*** Topology: fixed issue where scan buttons were not clickable on mobile devices | |||
*** Wireless: fixed LAN network interface being removed after related WiFi interface is deleted | |||
*** Wireless: fixed filtering of sporadic invalid noise values | |||
*** Wireless: fixed excessive RAM usage when radios are enabled but idle | |||
** <b>Services</b> | |||
*** Data to Server: fixed dnp3 package offline installation bug | |||
*** Data to Server: fixed GPS data formatting | |||
*** DLMS: fixed COSEM attribute filtering | |||
*** DMVPN: fixed DMVPN routes not showing up in Static Routes | |||
*** DNP3 Client: fixed requests API error when incorrect 'index' option value was provided | |||
*** Dynamic DNS: fixed Cloudflare authentication type, username saving errors | |||
*** Event juggler: added missing I/O pins for "Copy pin state" option | |||
*** Event juggler: fixed minor I/O validation bugs | |||
*** Hotspot: added SNMP Hotspot trap removal when Hotspot package is removed | |||
*** Hotspot: fixed some LAN traffic being forwarded to Hotspot interface when using VLANs | |||
*** Hotspot: fixed purple.ai configuration profile | |||
*** IPsec: fixed incorrect IPsec restarts when used with Multi WAN | |||
*** Modbus Server: fixed issue where data sources with write permission would not work | |||
*** Modbus Server: fixed regfile uniqueness validation between instances | |||
*** Modbus Server: fixed regression of writing single coil/register always failing | |||
*** OpenVPN: fixed connection checking when using IPv6 | |||
*** Tailscale: fixed DNS configuration acceptance from the Tailscale console | |||
*** TR-069: fixed device name generation | |||
*** Wifi Scanner: fixed some wireless interfaces not getting added or removed from scanning list | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.15.4/RUTX/RUTX_R_00.07.15.4_WEBUI.bin RUTX_R_00.07.15.4]</span></b> | 2025.07.11=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Backup: fixed internal firmware metadata not updating after applying backup | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.15.2/RUTX/RUTX_R_00.07.15.2_WEBUI.bin RUTX_R_00.07.15.2]</span></b> | 2025.06.27=== | |||
* <b>Improvements</b> | |||
** <b>System</b> | |||
*** Update Firmware: optimized firmware validation through caching | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Wireless: fixed WPA3-SAE fast transition configuration | |||
** <b>Services</b> | |||
*** Data to Server: fixed MBus database path bug | |||
*** L2TP: fixed memory leak issue with invalid packets | |||
** <b>System</b> | |||
*** Package Manager: fixed possible config migration issues on the PM installed packages | |||
*** System Status: fixed display of MAC address | |||
*** WebUI: fixed subscribe processes not exiting when UHTTPD is killed | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.15.1/RUTX/RUTX_R_00.07.15.1_WEBUI.bin RUTX_R_00.07.15.1]</span></b> | 2025.06.17=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Realtime Traffic: fixed data collection in rare cases | |||
** <b>Services</b> | |||
*** Event juggler: fixed the execution of user scripts | |||
*** Hotspot: fixed users scripts execution | |||
*** Hotspot: fixed user scripts migration after upgrade with keep settings | |||
** <b>System</b> | |||
*** Backup: fixed missing root and admin user restoration during backup apply | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.15/RUTX/RUTX_R_00.07.15_WEBUI.bin RUTX_R_00.07.15]</span></b> | 2025.06.06=== | |||
* <b>New</b> | |||
** <b>System</b> | |||
*** WebUI: added default HTTP redirect to HTTPS | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP server: included static leases to "Leased IPs" status that are outside of DHCP pool range but are inside interface subnet range | |||
*** Dynamic routes: improved mobile interface handling | |||
*** Dynamic routes: added support for selecting VPN interfaces | |||
*** Firewall: removed "Hardware flow offloading" feature due to configuration issues. Performance in most scenarios is unaffected if using "Software flow offloading" | |||
*** Firewall: disabled Allow-ICMPv6-Forward rule | |||
*** IGMP Proxy: added VPN interface support | |||
*** Multi WAN: updated configuration interface | |||
*** Multi WAN: added manual member configuration | |||
*** Multi WAN: added expanded Multi WAN interface statuses | |||
*** Network: updated network interface statuses to be more detailed and easier to understand | |||
*** Network: improved 802.1p priority configuration fields | |||
*** Wireless: updated wireless client status with new "Obtaining IP" state | |||
*** Wireless: simplified radio transmit power selection | |||
*** Wireless: added status for current radio transmit power | |||
*** iw: updated version to 6.9 | |||
*** mac80211: updated version to 6.12.6 | |||
** <b>Services</b> | |||
*** AWS IoT Core: updated "AWS provisioning" configuration parameter list | |||
*** BACnet: added support for devices with USB adapters and devices with no rs485 interface | |||
*** Data to Server: added support for receiving I/O data | |||
*** Data to Server: added FTP, SMTP, Socket, and Lua script support for data transmission | |||
*** Data to Server: updated "Collection configuration" edit, "Input configuration" edit, "Format string" and "Tag expansion" parameter lists | |||
*** Data to Server: added support for ISO 8601 date format | |||
*** DLMS: added API endpoints to get the current value of a configured group or group value | |||
*** DNP3 Client: added API endpoints to get the current value of a configured request | |||
*** Dynamic DNS: added DNS server field | |||
*** Dynamic DNS: reduced service restarts when mobile is used | |||
*** Event juggler: implemented a retry mechanism for actions in case of failure | |||
*** Event juggler: updated "Send email", "Send SMS", "MQTT", "Script" and "HTTP" action "Text message" parameter list | |||
*** Event juggler: added delete icon on "Remove action" button | |||
*** Event juggler: removed "Startup" event type from event configuration due to duplication | |||
*** Events Reporting: updated "Message text on event" parameter list | |||
*** I/O Juggler: updated "Send SMS", "MQTT" and "Script" action "Text message" parameter list | |||
*** Modbus Client: updated "Modbus TCP Client" and "Modbus Serial Client" configuration "MQTT message" and "Email" action "JSON format" parameter list | |||
*** OPC UA Client: added API endpoints to get the current value of a configured group, group value or server node | |||
*** Mosquitto: updated version to 2.0.21 | |||
*** ovpn-dco: updated version to 0.2.20241216 | |||
** <b>System</b> | |||
*** Access Control: added ability to specify WAN port | |||
*** Access Control: improved HTTPS certificate validation | |||
*** API Core: added preflight OPTIONS method support | |||
*** Certificates: changed certificate signing to use RSA-PSS padding scheme | |||
*** RutOS: moved the /mnt mount point to /usr/local for persistent storage | |||
*** Speed Test: added functionality to find any country servers by using search | |||
*** TCP dump: added suggestions for host and port filters | |||
*** Troubleshoot: separated troubleshooting into individual configuration tabs | |||
*** Troubleshoot: improved logging size configuration and log size limits | |||
*** WebUI: reduced size of the navigation menu and some form elements | |||
*** WebUI: updated table selected rows actions design | |||
*** WebUI: added HTTPS certificate expiration warning and renew functionality | |||
*** WebUI: unified styles of first login and renew expired password modals | |||
*** WebUI: updated Japanese translations | |||
*** Linux: updated version to 6.6.87 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** 802.1X Client: fixed warning message of different port configurations sometimes appearing when closing modal | |||
*** 802.1X Client: fixed 802.1X (client) page access not being controlled by the "Network > Ports" entry | |||
*** DHCP server: fixed DHCPv4 server shutdown when multiple LANs use the same interface and one of them disables DHCPv4 | |||
*** Firewall: fixed duplicate VPN zone creation | |||
*** Firewall: fixed HTTP and HTTPS ports migration for DMZ port forwards rules | |||
*** Firewall: removed redundant "Internal zone" field from port forward configuration | |||
*** Network: fixed incorrect network type shown for LAN with only WiFi interface | |||
*** Static Routes: fixed GRE tunnel name display when its name has special symbols | |||
*** Topology: fixed issue of duplicated WAN interface being displayed under certain configurations | |||
*** Wireless: fixed trailing whitespace being ignored in SSID or password | |||
*** Wireless: fixed enterprise client configuration not showing all certificates and keys generated with SCEP | |||
*** Wireless: fixed enterprise client configuration requiring password for unencrypted certificate key | |||
*** Wireless: fixed an error when radio (5GHz or 2GHz) gets duplicated on default interfaces (Wireless SSIDs) or some custom interfaces | |||
** <b>Services</b> | |||
*** Bluetooth: fixed eye sensor negative temperature handling | |||
*** DLMS: fixed COSEM attribute filtering | |||
*** DLNA: fixed option list of "Interfaces" | |||
*** DMVPN: fixed displaying NAT rules | |||
*** Dynamic DNS: fixed IPv6 support in bind-nsupdate | |||
*** Dynamic DNS: fixed logs showing IPv6 expansion errors when no IP is found | |||
*** Event juggler: fixed duplicated names validation | |||
*** Event juggler: fixed inability to select all available pins in the I/O condition configuration | |||
*** Event juggler: fixed HTTP action when secure connection is chosen | |||
*** Event juggler: fixed condition deletion not working in some edge cases | |||
*** Hotspot: fixed SSL certificates permissions | |||
*** IPsec: fixed connection issues with %any as identifier | |||
*** L2TP: fixed authentication credentials validation | |||
*** Modbus Client: fixed label for 'no_bracket' option in requests | |||
*** MQTT Broker: fixed incorrect "Local port" hint | |||
*** NTRIP: fixed latitude option name and description | |||
*** RMS: fixed 'Next connection after' timer display | |||
*** RMS: fixed transition from 'Standby' to 'Enabled' mode | |||
*** Stunnel: fixed issue of global settings sometimes not being displayed | |||
*** Stunnel: made "Certificate File" and "Private Key" fields required when server mode is configured | |||
*** Tailscale: fixed tailscale logging out after a reboot when using an authentication key | |||
*** Wireguard: fixed peer allowed IPs select dropdown to show IPv6 options and added the ability to include custom values | |||
*** Wireguard: fixed MTU issues when default route is used | |||
*** Wireguard: fixed tunnel not re-establishing when failover is used | |||
** <b>System</b> | |||
*** Access Control: fixed HTTPS certificates validation to not allow RSA key length less than 1024 bits and ECC key length less than 160 bits | |||
*** API Core: fixed session validation issues | |||
*** Certificates: fixed SCEP certificate enrollment compatibility issues with certain servers | |||
*** Kernel: fixed integrated watchdog functionality issues | |||
*** System Status: removed bootloader version information if it does not exist | |||
*** WebUI: fixed inconsistent spacing between page elements | |||
*** WebUI: fixed warnings still being displayed after removing uploaded certificates | |||
*** WebUI: fixed issues with SDK API path recognition | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.14.3/RUTX/RUTX_R_00.07.14.3_WEBUI.bin RUTX_R_00.07.14.3]</span></b> | 2025.05.26=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** L2TP: fixed a connection problem when using an L2TP over IPsec configuration | |||
** <b>System</b> | |||
*** Custom Scripts: fixed execution of custom scripts after upgrade | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.14.2/RUTX/RUTX_R_00.07.14.2_WEBUI.bin RUTX_R_00.07.14.2]</span></b> | 2025.05.09=== | |||
<b>Note:</b> If a system upgrade with keep settings is performed from <b>R_00.07.14</b> or <b>R_00.07.14.1</b> to this version, follow the instructions described under those firmware versions below to resolve Data Limit and traffic monitoring issues. | |||
---- | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: fixed HTTP and HTTPS ports migration for DMZ port forwards rules | |||
*** Network: fixed data limit database save when upgrading with keep settings | |||
** <b>System</b> | |||
*** Memory Expansion: fixed long ext4 formatting times on some usb drives | |||
---- | |||
===<b>RUTX_R_00.07.14.1</b> | 2025.05.06=== | |||
<b>Note:</b> This firmware version has been withdrawn due to an issue affecting the Data Limit, traffic monitoring functionalities. | |||
<b>Note:</b> If a system upgrade with keep settings was already performed from <b>R_00.07.14</b> to this version, previous Data Limit tracking and traffic monitoring information cannot be restored. However, to keep current traffic monitoring history after next update, the command found in the <b>Note</b> below must be executed in CLI. | |||
<b>Note:</b> If a system upgrade with keep settings is performed from this firmware version to newer and <b>R_00.07.14</b> was never used, following command must be executed in CLI <b>before</b> upgrade to resolve Data Limit and traffic monitoring issues. | |||
<pre>mkdir -p /usr/local/lib/upgrade/keep.d && echo /usr/local/usr/lib/mdcollectd/mdcollectd.db_new.gz > /usr/local/lib/upgrade/keep.d/mdcollect</pre> | |||
---- | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Memory Expansion: fixed long ext4 formatting times on some usb drives | |||
*** RutOS: fixed curl compilation in SDK | |||
* <b>CVE Patches</b> | |||
** CVE-2025-2704 | |||
---- | |||
===<b>RUTX_R_00.07.14</b> | 2025.04.24=== | |||
<b>Note:</b> This firmware version has been withdrawn due to an issue affecting the Data Limit, traffic monitoring functionalities. | |||
<b>Note:</b> If a system upgrade with keep settings is performed from this firmware version to newer, following command must be executed in CLI <b>before</b> upgrade to resolve Data Limit and traffic monitoring issues. | |||
<pre>mkdir -p /usr/local/lib/upgrade/keep.d && echo /usr/local/usr/lib/mdcollectd/mdcollectd.db_new.gz > /usr/local/lib/upgrade/keep.d/mdcollect</pre> | |||
---- | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** Network usage: added feature | |||
** <b>Services</b> | |||
*** AWS IoT Core: added Device Provisioning | |||
*** L2TP: added L2TP over IPv6 support | |||
*** MQTT Broker Bridge: added v5.0 bridge protocol support | |||
** <b>System</b> | |||
*** RutOS: enabled a read-only root filesystem to ensure system integrity and security | |||
*** WebUI: added Ukrainian language support | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP: added title for action column in custom DHCP option table | |||
*** DHCP: added a warning message when multiple interfaces share the same device and have DHCPv4 enabled | |||
*** DNS: updated the "Custom Redirect" option to support domain wildcard (*) pattern matching | |||
*** DNS: made the "DNS Server" field optional for the "Custom Redirect" option | |||
*** Firewall: improved "intra" zone column names for clarity | |||
*** Ports Settings: reordered network > ports sub-menu and made port settings page first | |||
*** SSHFS: updated mount point location | |||
*** SSHFS: added connection and mount point status | |||
*** Topology: improved network scanning | |||
*** Topology: added port number to topology scan results | |||
*** Topology: added IPv6 support | |||
*** VRF: added section name generation and changing ability | |||
*** Wireless: added warning to a radio channel option when client is configured on same radio indicating that this option can be ignored | |||
*** Wireless: added WiFi standard used by the connected client | |||
*** Curl: updated version to 8.12.0 | |||
*** wireless-regdb: updated version to 2024.10.07 | |||
** <b>Services</b> | |||
*** Bluetooth: added API endpoint to list entries in database | |||
*** Data to Server: changed new instance to be turned off by default | |||
*** Dynamic DNS: made WebUI show IP updates earlier than the configured DDNS service check interval | |||
*** EoIP: added improvements to avoid packet loops | |||
*** Events juggler: removed Reboot after Input/Output option | |||
*** Events juggler: changed new instance to be turned off by default | |||
*** Events juggler: removed Custom HTTP headers space validation | |||
*** GreenGrass: removed package | |||
*** IPsec: enabled dead peer detection by default | |||
*** Post/Get - I/O: removed package | |||
*** PPTP: added options for 'MPPE' configuration to WebUI | |||
*** PPTP: added 'Custom options' field to configure custom pppd options | |||
** <b>System</b> | |||
*** Events Log: added events log file export | |||
*** Profiles: improved table data UI | |||
*** Recipients: changed email maximum password length to 128 characters | |||
*** Setup Wizard: removed host, port options and proxy settings section from RMS setup wizard | |||
*** WebUI: removed default password icons on "Internet Explorer" and "Microsoft Edge" browsers | |||
*** Kernel: updated version to 5.10.234 | |||
*** Time Zone Database: updated version to 2025a | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Dynamic routes: fixed OSPF issues of not displaying instances of 'area' and 'networks' sections | |||
*** Firewall: fixed certain "Attack prevention" limits making device unreachable | |||
*** Firewall: fixed attack prevention page with missing traffic rules | |||
*** Multi WAN: fixed incorrect WAN state being displayed when using failover | |||
*** Network: fixed Ethernet interfaces incorrectly accepting packets with invalid checksum on protocols other than IPv4/IPv6+TCP/UDP | |||
*** Ports Settings: fixed port status speed badge for Ethernet(10mbps) | |||
*** VXLAN: fixed package installation not starting service properly | |||
*** Wireless: fixed hover hint always being shown on delete button | |||
** <b>Services</b> | |||
*** Data to Server: disallowed enabling Azure plugin without required options | |||
*** Data to Server: fixed editing Azure plugin configuration when "Device Provisioning Service" option is selected | |||
*** DNP3 Client: fixed an issue where application would terminate on startup | |||
*** Email Relay: fixed service crash when server tls certificate is used | |||
*** Events juggler: fixed broken port link speed reporting | |||
*** Events juggler: fixed condition bug on some plugins | |||
*** Events juggler: fixed LUA condition script support to correctly handle return values | |||
*** RMS: fixed serial code copy button not being displayed | |||
*** SSTP: fixed the issue of the instance starting after upgrading the firmware | |||
*** Wireguard: fixed connection issues when peer is on the same network | |||
** <b>System</b> | |||
*** API Core: fixed file upload issue which sometimes made WebUI unresponsive | |||
*** NTP: fixed time servers limit validation | |||
*** Package Manager: fixed displaying multiple same functionality buttons when package update fails | |||
*** Password Policy: fixed special characters validation | |||
*** Profiles: fixed loading screen reappearing after profile change fails | |||
*** Recipients: fixed email address validation | |||
*** WebUI: fixed enabled button being removed in some cards on medium sized screens | |||
* <b>CVE Patches</b> | |||
** CVE-2022-42721 | |||
** CVE-2023-7104 | |||
** CVE-2023-31489 | |||
** CVE-2024-0938 | |||
** CVE-2024-9143 | |||
** CVE-2024-13176 | |||
** CVE-2025-0167 | |||
** CVE-2025-0665 | |||
** CVE-2025-0725 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.4/RUTX/RUTX_R_00.07.13.4_WEBUI.bin RUTX_R_00.07.13.4]</span></b> | 2025.04.04=== | |||
* <b>Improvements</b> | |||
** <b>System</b> | |||
*** RutOS: updated libubox | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Network: fixed Ethernet lockups when sending certain malformed IPv4/IPv6 packets | |||
** <b>System</b> | |||
*** RutOS: fixed occasional ubus page fault after package install | |||
*** RutOS: fixed user group duplicate entries after applying backup | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.3/RUTX/RUTX_R_00.07.13.3_WEBUI.bin RUTX_R_00.07.13.3]</span></b> | 2025.03.21=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Multi WAN: fixed internet not being reachable from device when main WAN is down | |||
** <b>Services</b> | |||
*** RMS: fixed connection retry interval count | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.2/RUTX/RUTX_R_00.07.13.2_WEBUI.bin RUTX_R_00.07.13.2]</span></b> | 2025.03.18=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** 802.1X Client: fixed 802.1x client not working when upgrading from an older firmware | |||
*** Multi WAN: fixed occasional IPsec startup issue after reboot with Multi WAN enabled | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.13.1/RUTX/RUTX_R_00.07.13.1_WEBUI.bin RUTX_R_00.07.13.1]</span></b> | 2025.03.06=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Auto Reboot: fixed an issue causing the device to reboot immediately | |||
---- | |||
===<b>RUTX_R_00.07.13</b> | 2025.03.03=== | |||
<b>Note:</b> This firmware was removed due an issue with Auto Reboot functionality performing unnecessary device reboot. | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** BFD: added service | |||
*** Realtime Traffic: added historical data support for wireless devices | |||
** <b>Services</b> | |||
*** EoIP: added service | |||
*** Events juggler: added service | |||
*** OpenConnect: added service | |||
** <b>System</b> | |||
*** Update Firmware: added link to FW & SDK download page | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Dynamic routes: added validation for NHRP to prevent using same interface on multiple instances | |||
*** Firewall: added possibility to manually specify conntrack helper for a port forward rule | |||
*** Firewall: moved IPtables NAT extra to package manager | |||
*** Static Routes: improved descriptions for routing rules | |||
*** VRF: moved page from Network sub-menu to Network > Routing | |||
*** Wireless: added rotating log files for wireless services | |||
*** iperf3: updated version to 3.17.1 | |||
** <b>Services</b> | |||
*** Bluetooth: added status of scan availability | |||
*** Dynamic DNS: added support for using local openvpn interface ip address | |||
*** Hotspot: added support for multiple instances | |||
*** Hotspot: added MAC address delimiter and case setting for Radius MAC authentication | |||
*** Hotspot: improved API validations | |||
*** Input/Output: updated pin block naming | |||
*** IPsec: added ChaCha20-Poly1305 encryption algorithm | |||
*** IPsec: improved performance | |||
*** IPsec: added periodic connection check | |||
*** Modbus Client: added store on data change mode | |||
*** Modbus Client: added ability to choose where to save database | |||
*** MQTT Modbus Gateway: improved constant $$NAME that can be defined in system configuration | |||
*** OpenVPN: improved statuses for instances | |||
*** OpenVPN: removed 'persist-tun' and 'persist-key' options from default configuration | |||
*** OpenVPN: enabled DCO support for CHACHA20-POLY1305 cipher | |||
*** OpenVPN: improved performance when using DCO-supported ciphers | |||
*** SD & USB Tools: renamed "USB Tools" service to "SD & USB Tools" in WebUI for more accurate description | |||
*** Tailscale: optimized starting and stopping functions | |||
*** Zerotier: added ability to upload a custom planet file | |||
** <b>System</b> | |||
*** Access Control: improved UX when disabling HTTP and HTTPS local access settings | |||
*** Administration: added confirmation prompt when changing profiles | |||
*** Administration: updated hostname validation to allow numeric-only hostname | |||
*** Package Manager: added confirmation prompt when closing uploaded package modal | |||
*** Security: changed password policy to require at least one special character | |||
*** System Users: changed username validation to allow dots and underscores | |||
*** Update Firmware: added link to changelog page | |||
*** WebUI: removed basic/advanced mode | |||
*** WebUI: updated Teltonika logo | |||
*** Kernel: updated version to 5.10.233 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Devices: fixed error handling for deleting non-existent bridge sections | |||
*** Firewall: fixed automatic conntrack helper not being assigned for port forward rules in some cases | |||
*** Firewall: fixed traffic rules "start_date" and "stop_date" option validations failing due to incorrect format | |||
*** Firewall: fixed incorrectly restricted AF23 value for traffic rule's DSCP option | |||
*** Multi WAN: fixed pings being lost for backup wired wan interfaces | |||
*** Network: fixed interfaces being displayed in the wrong page after updating with keep settings | |||
*** Network: fixed a name duplication validation error that occurred between the network interface and the VRF instance | |||
*** Network: fixed API failing to sort specific network interface configurations | |||
*** Network: fixed possible Ethernet port hang after network reload | |||
*** Network: fixed interface remove button disable state being shown only after status is loaded | |||
*** Network: fixed LAN interfaces sometimes not getting IPv6 prefix assigned on creation | |||
*** Static Routes: fixed missing route type validation for API | |||
*** VXLAN: made "Remote address" field required | |||
*** Wireless: fixed new network edit not opening after network with same name deleted | |||
*** Wireless: fixed WiFi services setup failures with AP+STA configuration on 2.4 GHz and 5 GHz radios simultaneously | |||
*** Wireless: fixed 2.4 GHz radio channel configuration error on WiFi setup | |||
*** Wireless: fixed automatic channel selection failing in Japan regulatory domain | |||
*** Wireless: fixed the missing firewall zone assignment for the created Wi-Fi interface | |||
*** Wireless: fixed memory leak in wireless service caused by AP configuration reloads | |||
*** Wireless: fixed inaccurate Hotspot error when saving SSIDs page | |||
** <b>Services</b> | |||
*** Data to Server: fixed the OPC UA, DLMS, MBUS, and impulse counter inverted filtering logic | |||
*** Data to Server: fixed "Invert filter" option to be hidden when using "DLMS" type and "Data filtering" option is selected to "All" | |||
*** DLMS: fixed DLMS endpoint parameter validation | |||
*** DLMS: fixed device option data type validation for connections endpoints | |||
*** DLMS: fixed an issue where DLMS service could not read extended register type COSEM objects and display incorrect scaler value | |||
*** DLMS: fixed an issue where non-persistent connections did not close properly | |||
*** Hotspot: fixed bandwidth limits setting with "chilli_query" command | |||
*** Impulse Counter: fixed pin name display | |||
*** IPsec: fixed status display when compatibility mode is used | |||
*** IPsec: fixed connections not terminating if instance is disabled | |||
*** L2TP: fixed occasional device hangs when routing L2TP traffic with "Software flow offload" enabled | |||
*** Modbus Client: fixed API error when 'function' option is not present in alarms/requests configuration POST request | |||
*** Modbus Client: fixed reusing connection in Modbus client Modbus request alarm action | |||
*** Modbus Client: fixed email alarm action when TLS is enabled | |||
*** MQTT Modbus Gateway: fixed client ID validation | |||
*** Network Shares: fixed deleting of multiple users in one request | |||
*** NHRP: fixed missing dependencies | |||
*** OpenVPN: fixed issues related to warnings when using external services | |||
*** RMS: fixed the "Connection state" status displayed as JSON when device language was set to anything other than English | |||
*** RMS: fixed the display of connected Hotspot clients when the radios of the Hotspot interface are modified | |||
*** SMPP: fixed the "TLS/SSL" option to be visible even when the configuration is not enabled | |||
*** Tailscale: fixed the issue of keeping the instance connection after a firmware upgrade | |||
** <b>System</b> | |||
*** Access Control: fixed "redirect_https" option reset after device reboot | |||
*** Access Control: fixed default HTTPS CA certificate generation | |||
*** Date & Time: fixed time synchronization with the browser when using Europe/Kyiv timezone | |||
*** Package Manager: fixed spinner position in package table | |||
*** Package Manager: fixed possible config migration issues for installed packages | |||
*** Update Firmware: fixed unnecessary FOTA requests when FOTA is disabled | |||
* <b>CVE Patches</b> | |||
** CVE-2022-49043 | |||
** CVE-2024-5290 | |||
** CVE-2024-9287 | |||
** CVE-2024-11053 | |||
** CVE-2024-34459 | |||
** CVE-2024-36618 | |||
** CVE-2024-53580 | |||
** CVE-2024-56171 | |||
** CVE-2025-24928 | |||
** CVE-2025-27113 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.12.3/RUTX/RUTX_R_00.07.12.3_WEBUI.bin RUTX_R_00.07.12.3]</span></b> | 2025.02.14=== | |||
* <b>New</b> | |||
** <b>Services</b> | |||
*** Modbus Client: added an endpoint that returns status for a single Modbus request | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** IPsec: fixed kernel warnings when custom NAT rules are used with "IPsec Software Flow Offload" enabled | |||
*** OpenVPN: fixed an issue with config file parsing when carriage return characters were present | |||
*** OpenVPN: fixed parsing of the 'Protocol','Port' and 'LZO' options from the config file | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.12/RUTX/RUTX_R_00.07.12_WEBUI.bin RUTX_R_00.07.12]</span></b> | 2025.01.20=== | |||
* <b>New</b> | |||
** <b>Services</b> | |||
*** Dynamic DNS: added IPv6 support | |||
*** Tailscale: added removal of firewall rules when the package is deleted | |||
** <b>System</b> | |||
*** WebUI: added default HTTP redirect to HTTPS | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** DHCP: added leased IP status in DHCP server page | |||
*** DNS: added DNS strict order option | |||
*** Firewall: moved target field to the bottom of NAT rule edit and renamed it to "Action" to match traffic rules | |||
*** Firewall: moved all traffic rule fields related to action to be below action field | |||
*** Firewall: removed ability for any firewall rules to have port selection if protocol is set to "all" | |||
*** Firewall: separated zone and global firewall settings into different pages | |||
*** Firewall: improved "Conntrack helpers" field in zone edit by making it disabled with explanation instead of hiding it | |||
*** Network: fixed configuration viewing in the WAN page when user has only read permission | |||
*** UDP Relay: moved service menu item from Network > Other > UDP Relay to Network > UDP Relay | |||
*** VRF: added additional validations to address used device cases | |||
*** VXLAN: separated edit form options into general and advanced tabs | |||
*** Wireless: sorted scan results by signal strength by default | |||
*** Wireless: renamed password field in join modal to be called same as in edit modal | |||
*** Wireless: improved wireless join action performance | |||
*** Curl: updated version to 8.11.0 | |||
** <b>Services</b> | |||
*** DLMS: added ability to view COSEM objects for each scanned physical device in overview page | |||
*** Modbus TCP over Serial Gateway: added option for serial device reply timeout | |||
*** Modbus TCP over Serial Gateway: improved performance | |||
*** Modbus TCP over Serial Gateway: added multiple connections support for up to 10 clients | |||
*** Overview: added IP type status to network interface cards | |||
*** azure-iot-sdk-c: updated version to LTS_08_2024 | |||
** <b>System</b> | |||
*** API Core: added query parameter for configuration GET endpoints to receive all options, even if unset | |||
*** Package Manager: removed "Installed Version" and "Available Version" columns from the package table | |||
*** Kernel: updated version to 5.10.229 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Dynamic routes: fixed dynamic routes not starting after installation on rare occasions | |||
*** Firewall: deprecated invalid dest_local option in traffic rules API | |||
*** Firewall: fixed zone placement in NAT rule description | |||
*** Network: fixed missing PPPoE username and password validations | |||
*** Ports Settings: fixed incorrect warning message for identical port configurations | |||
*** Ports Settings: fixed an occasional infinite spinner issue when changing port settings | |||
*** Ports Settings: fixed an issue where incorrect port index was used | |||
*** QOS: fixed source and destination host field validation to allow subnet in CIDR notation | |||
*** QOS: fixed starting SQM after reboot when QoS package is installed | |||
*** Static Routes: fixed interface select not showing SSTP instances | |||
*** VRF: fixed an issue that prevented saving the configuration when an inactive VLAN was selected | |||
*** Wireless: fixed displayed client status when WPA supplicant does not have status | |||
*** Wireless: fixed transmit power getting adjusted incorrectly when changing regulatory country | |||
*** Wireless: fixed required password validation in join modal | |||
*** Wireless: fixed API "htmode" option format validation | |||
*** Wireless: fixed API allowing empty "country" value | |||
*** Wireless: fixed 2.4 GHz radio sometimes being inactive after configuration | |||
** <b>Services</b> | |||
*** DLMS: fixed parameters table not always refreshing when selecting devices | |||
*** DLMS: fixed mismatched name validations between API and WebUI | |||
*** DLMS: fixed an issue where uptime becomes incorrect when system time changes | |||
*** DNP3 Client: fixed API error when non existent parent id is provided in requests endpoint URL | |||
*** DNP3 Client: fixed an issue where uptime becomes incorrect when system time changes | |||
*** DNP3 Outstation: fixed an issue where uptime becomes incorrect when system time changes | |||
*** IPsec: increased maximum length of local / remote identifiers and selector ID to 255 characters | |||
*** IPsec: fixed deleting global secrets when more than one ipsec instances are configured | |||
*** IPsec: fixed IPsec not reloading after DMVPN uninstall | |||
*** IPsec: fixed showing empty error messages after instance deletion | |||
*** IPsec: fixed excessive logging | |||
*** IPsec: fixed firewall rules migration and identifier setting when certificate authentication is used | |||
*** Modbus Client: fixed configuration files not being removed after package removal | |||
*** Modbus Client: fixed an issue where uptime becomes incorrect when system time changes | |||
*** Modbus Server: fixed configuration files not being removed after package removal | |||
*** Modbus Server: fixed an issue where uptime becomes incorrect when system time changes | |||
*** Modbus TCP over Serial Gateway: fixed gateway forwarding unrequested data from serial device | |||
*** MQTT Modbus Gateway: fixed configuration files not being removed after package removal | |||
*** MQTT Modbus Gateway: fixed an issue where uptime becomes incorrect when system time changes | |||
*** NTP Client: fixed Count of time synchronizations that was not working properly | |||
*** NTRIP: fixed an issue where uptime becomes incorrect when system time changes | |||
*** OPC UA Client: fixed URL validation | |||
*** OPC UA Client: fixed configuration files not being removed after package removal | |||
*** OPC UA Client: fixed API security mode option require validation | |||
*** OPC UA Client: fixed an issue where uptime becomes incorrect when system time changes | |||
*** OPC UA Client: fixed validation for prefix, midfix, postfix options | |||
*** OPC UA Server: fixed configuration files not being removed after package removal | |||
*** OPC UA Server: fixed API encryption option require validation | |||
*** OPC UA Server: fixed an issue where uptime becomes incorrect when system time changes | |||
*** OpenVPN: fixed the problem related to the 'netlink reports object not found' warning when using the DCO configuration | |||
*** Over IP: fixed an issue where uptime becomes incorrect when system time changes | |||
*** Over IP: fixed API error when incorrect device option value was sent | |||
*** SNMP: fixed mwan3Ip to display 'N/A' if no IPs are present | |||
*** TR-069: fixed ConnectionRequestURL node to return VPN IP address if VPN is used | |||
*** Web Filter: fixed site blocking rules affecting router itself when selecting specific network interface | |||
*** Web Filter: added exception to FOTA server blocking | |||
*** Web Filter: fixed site blocking not working with Hotspot | |||
*** Web Filter: fixed whitelist not working with domains that have forwards to other domains | |||
*** Wifi Scanner: fixed service not working when initially Wireless radio is disabled | |||
** <b>System</b> | |||
*** Certificates: fixed issue where the API allowed the deletion of root certificate | |||
*** Certificates: fixed uploading of certificates that are 4096 bits or longer | |||
*** Package Manager: added protection against zip bombs when uploading a package | |||
*** PAM: fixed creating new instance | |||
*** WebUI: fixed SDK example app validation mismatch between UI and API | |||
*** WebUI: fixed default value display on instances for multiple services | |||
* <b>CVE Patches</b> | |||
** CVE-2024-5594 | |||
** CVE-2024-9681 | |||
** CVE-2024-29195 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.3/RUTX/RUTX_R_00.07.11.3_WEBUI.bin RUTX_R_00.07.11.3]</span></b> | 2024.12.17=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** Input/Output: fixed issues causing fault messages on service close | |||
*** Wireguard: fixed field validation after firmware upgrade | |||
*** OpenVPN: fixed the certificate file selection issue in the server configuration | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.2/RUTX/RUTX_R_00.07.11.2_WEBUI.bin RUTX_R_00.07.11.2]</span></b> | 2024.12.09=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** IPsec: fixed loading connections using AEAD algorithms | |||
*** IPsec: fixed connection status display | |||
*** IPsec: fixed Local source IP option | |||
*** IPsec: fixed issue with multiple global secrets of same type | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11.1/RUTX/RUTX_R_00.07.11.1_WEBUI.bin RUTX_R_00.07.11.1]</span></b> | 2024.12.02=== | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** Hotspot: fixed limits not working for "MAC authentication", "Single sign-on" and "SMS OTP" modes | |||
*** Ledman: fixed issue when network type LEDs are blinking when data connection is established | |||
*** Tailscale: fixed the segmentation fault that occurred after installing the package | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.11/RUTX/RUTX_R_00.07.11_WEBUI.bin RUTX_R_00.07.11]</span></b> | 2024.11.25=== | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** Firewall: added "IPsec software flow offload" feature | |||
*** NAT64: added NAT64 WebUI configuration support | |||
** <b>Services</b> | |||
*** Data to Server: added LUA format support | |||
*** DLMS: added option to configure which COSEM class attributes to read from the meter | |||
*** Impulse Counter: added feature | |||
*** Wireguard: added QR code configuration generator | |||
** <b>System</b> | |||
*** Administration: added capability of displaying a configurable banner before login | |||
*** Password Policy: added ability to modify the password policy | |||
*** System Users: added sensitive option toggle for user groups | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Firewall: added TCPMSS action to traffic rules | |||
*** Multi AP: improved switching time between APs | |||
*** RelayD: added ability to configure multiple Relayd configurations | |||
*** Topology: added sorting functionality for "IP address" and "MAC address" table columns | |||
*** Wireless: changed radio status to show channel frequency in MHz instead of GHz | |||
** <b>Services</b> | |||
*** Bluetooth: added support for ELA Blue Puck DI devices | |||
*** Data to Server: added scheduler support | |||
*** DLMS: added default values for table name columns | |||
*** Hotspot: added DOH and DOT addresses to default blocklist | |||
*** IPsec: updated 'Custom option' field validation | |||
*** IPsec: migrated to swanctl | |||
*** Modbus Client: added phone group selection | |||
*** Modbus Client: added email alarm action | |||
*** OPC UA Client: changed validation, allowing to add certificates when channel encryption is not used | |||
*** OpenVPN: improved WebUI page for creating and modifying instances | |||
*** OpenVPN: added custom configuration file parsing | |||
*** OpenVPN: added option to configure virtual addressing topology and support for TLS clients | |||
*** OpenVPN: added 'adaptive' selection for the LZO parameter | |||
*** OpenVPN: added support for multiple remote network values | |||
*** OpenVPN: improved the selection of allowed data ciphers in the WebUI | |||
*** OpenVPN: improved private key decryption | |||
*** OpenVPN: removed dependency on the protocol value for configuring tunnel IPv6 addresses | |||
*** OpenVPN: added the possibility to use multiple remote host/IP address values | |||
*** OpenVPN: added support for exporting configuration | |||
*** Mosquitto: updated version to 2.0.20 | |||
** <b>System</b> | |||
*** Access Control: added ability to bind HTTP and HTTPS to specific IPs and ports | |||
*** Events Log: improved event log messages format | |||
*** Logging: added a log ID to each log entry for easier tracking and identification | |||
*** Security: enabled ASLR and PIE security hardening features for improved memory protection | |||
*** Setup Wizard: added SIM card and modem statuses in Mobile page | |||
*** WebUI: updated design of tables | |||
*** Kernel: updated version to 5.10.226 | |||
*** libffi: updated version to 3.4.6 | |||
*** readline: updated version to 8.2 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Network: fixed duplicate of "pps" APN for "Zain KW" operator in APN database | |||
*** Network: fixed MTU get from API | |||
*** Ports Settings: fixed devices sometimes becoming unreachable after network reload | |||
*** Static Routes: fixed IPv6 route target validation to accept IPv6 subnet | |||
*** Wireless: fixed wireless not being reloaded after its interface's physical device was changed | |||
** <b>Services</b> | |||
*** Bluetooth: fixed service crash when trying to unpair devices | |||
*** Bluetooth: fixed sections collapse not hiding buttons | |||
*** DLMS: fixed name validation when adding physical devices | |||
*** Hotspot: fixed Hotspot themes installation without first installing Hotspot package | |||
*** IPsec: fixed incorrect status display when multiple instances are configured | |||
*** IPsec: fixed flushing of connection tracking table when compatibility mode is used | |||
*** L2TP: fixed disappearing default route when using mobile interface as the default WAN | |||
*** Ledman: fixed the LED animation during factory reset | |||
*** Modbus Client: fixed rpc crash when calling serial.test method | |||
*** Modbus Server: fixed firewall rule creation | |||
*** Python3: fixed out-of-tree package compilation issue with the SDK | |||
*** Zerotier: fixed saving configuration when LAN interface has no associated physical interface | |||
** <b>System</b> | |||
*** Access Control: fixed unauthorized errors on interface endpoints | |||
*** Access Control: fixed IP Block configuration when upgrading from previous firmware versions | |||
*** Package Manager: fixed VXLAN package not having link to configuration page | |||
*** Package Manager: fixed restoring packages after firmware upgrade | |||
*** Troubleshoot: fixed scenarios where TCPdump field was not displayed | |||
*** WebUI: fixed issue when sometimes hidden sections with created instances were not displayed | |||
* <b>CVE Patches</b> | |||
** CVE-2021-38291 | |||
** CVE-2024-6232 | |||
** CVE-2024-44070 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.10.2/RUTX/RUTX_R_00.07.10.2_WEBUI.bin RUTX_R_00.07.10.2]</span></b> | 2024.11.04=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: fixed bug in NAT rule migration script that would overwrite Port Forwarding rule options | |||
*** Network: fixed unnecessary RX packet drop in Ethernet driver | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.10/RUTX/RUTX_R_00.07.10_WEBUI.bin RUTX_R_00.07.10]</span></b> | 2024.10.10=== | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** NAT64: added "jool" package for NAT64 support | |||
** <b>Services</b> | |||
*** AWS IoT Core: added service | |||
*** BACnet: added ability to configure several BIP interfaces, to set network numbers and preconfigure BDT entries for BBMD | |||
*** Console: added service status information display | |||
*** DLMS: added service status information display | |||
*** DNP3 Client: added service status information display | |||
*** DNP3 Outstation: added service status information display | |||
*** Modbus Client: added service status information display | |||
*** Modbus Server: added service status information display | |||
*** Modbus TCP over Serial Gateway: added service status information display | |||
*** MQTT Modbus Gateway: added service status information display | |||
*** NTRIP: added service status information display | |||
*** OPC UA Client: added service status information display | |||
*** OPC UA Server: added variable "rut_wan_type" which shows if WAN is on a wired or a mobile network | |||
*** OPC UA Server: added service status information display | |||
*** RMS: added SOCKS5 proxy support | |||
** <b>System</b> | |||
*** Certificates: added SCEP certificate generation method | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Curl: added unix socket support | |||
*** Firewall: added most options to basic mode for all firewall pages | |||
*** Firewall: added all firewall pages to basic mode | |||
*** Interfaces: increased interface metric maximum value from 10000 to 4294967295 | |||
*** Multi WAN: added rules table to basic mode | |||
*** Network: improved performance under stateless single-directional traffic (RFC2544) | |||
*** Network: improved throughput stability of "Hardware flow offloading" | |||
*** Static Routes: added page to basic mode | |||
*** VRRP: added page to basic mode | |||
*** Wireless: added interface status message when DFS CAC is in progress | |||
*** Wireless: added most options to basic mode | |||
*** Wireless: added SSID creation and deletion to basic mode | |||
*** Wireless: moved Travelmate from Package Manager to base Firmware | |||
** <b>Services</b> | |||
*** DLMS: added meter COSEM object scanning | |||
*** DNP3 Client: made menu names more consistent | |||
*** Hotspot: added "Coova-Chilli-SSID" (28) Vendor Specific Attribute for Radius | |||
*** IPsec: improved 'Remote endpoint' validation to allow '%any', '%any4', '%any6' values and netmask | |||
*** IPsec: added ability to use certificates from Certificate Manager | |||
*** L2TPv3: added Tunnel ID and Session ID validation to avoid creating multiple tunnels with the same parameters | |||
*** Modbus Client: updated Modbus Client menu position | |||
*** Modbus Server: updated Modbus Server menu position | |||
*** Python3: changed python3-light package libraries | |||
*** Tailscale: improved status information by including health messages | |||
*** Tinc: added options to set the tunnel's IP address | |||
*** Tinc: added a port option to listen for incoming connections and the ability to specify a port for outgoing connections | |||
*** Wireguard: added tunnel source mode selection | |||
*** Python3: updated version to 3.11.7 | |||
*** Strongswan: updated version to 5.9.14 | |||
*** Tailscale: updated version to 1.70.0 | |||
** <b>System</b> | |||
*** Access Control: refactored 'General', 'Security' and 'PAM' Web pages | |||
*** Auto Reboot: added support for multiple hosts/URLs in Ping/Wget Reboot | |||
*** Backup: encrypting backup does not require 7zip package anymore | |||
*** Certificates: split "Let's Encrypt" certificates into multiple files | |||
*** Troubleshoot: added dynamic routes debugging information | |||
*** WebUI: added ability to open new page in new tab without entering user credentials | |||
*** WebUI: improved SDK example application | |||
*** Glib2: updated version to 2.80.5 | |||
*** Kernel: updated version to 5.10.224 | |||
*** Ncurses: updated version to 6.5 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Firewall: fixed automatic priority option change | |||
*** Wireless: fixed BSSID show for interface in Client mode | |||
*** Wireless: fixed hostapd ubus call timeout after wireless configuration change | |||
*** Wireless: fixed reporting disconnection from external AP when device in STA+AP mode | |||
*** Wireless: fixed missing rx frame types needed for wifi scanner | |||
** <b>Services</b> | |||
*** BACnet: fixed communication issues between the ports | |||
*** BACnet: added all available default baud rates | |||
*** BGP: fixed AS field to allow duplicate values | |||
*** BGP: fixed Access list filters not applying fully | |||
*** DLMS: added all available default baud rates | |||
*** DMVPN: fixed DMVPN GRE instance disappearing when creating new IPsec instance | |||
*** DNP3 Client: removed unnecessary max length display for test response field | |||
*** DNP3 Client: renamed TCP Station to TCP Client in the API documentation | |||
*** DNP3 Client: added all available default baud rates | |||
*** DNP3 Outstation: added all available default baud rates | |||
*** GRE: fixed interface not showing up in OSPF and RIP selections if it is off | |||
*** Hotspot: fixed blocklist not working when no addresses are provided | |||
*** Hotspot: fixed uploaded custom landing page file permissions | |||
*** Hotspot: fixed certificates to be required to enable https redirect | |||
*** IPsec: fixed IP rule not appearing after network restart | |||
*** IPsec: fixed duplicate port values in IPsec firewall rules | |||
*** Ledman: fixed issue when power LED turns off when rebooting device | |||
*** Modbus Client: added all available default baud rates | |||
*** Modbus Client: added missing API docs for Modbus test request | |||
*** Modbus Server: added all available default baud rates | |||
*** Modbus Server: fixed firewall rule staying enabled when app is disabled | |||
*** Modbus Server: fixed firewall rule creation | |||
*** NTRIP: added all available default baud rates | |||
*** OpenVPN: fixed the configuration after disabling the use of external services | |||
*** Over IP: added all available default baud rates | |||
*** SNMP: fixed Hotspot OIDs' hssID and hssUsername display | |||
*** Tinc: fixed adding routes to remote subnets | |||
*** Tinc: fixed configuration generation issues when creating multiple network and host instances | |||
*** Tinc: fixed issues with route creation when using IPv6 addresses in tunnel configuration | |||
*** Tinc: fixed validation for uploading key files | |||
** <b>System</b> | |||
*** Backup: fixed uploading backup with memory expansion enabled | |||
*** CLI: fixed some private IPs being incorrectly determined as public | |||
*** JSON-RPC: fixed login "Access Denied" error | |||
*** Memory Expansion: fixed input element alignment issues | |||
*** WebUI: added API required values validation when enabling BACnet, DLMS, DNP3, Modbus, MQTT, NTRIP services | |||
*** WebUI: fixed 'Memory' status card progress bars visuals | |||
*** WebUI: fixed search bar suggestions after removing packages | |||
*** WebUI: fixed showing data in modals for users with only read permissions | |||
*** WebUI: fixed custom SDK pages not loading correctly | |||
* <b>CVE Patches</b> | |||
** CVE-2021-3520 | |||
** CVE-2021-44540 | |||
** CVE-2021-44541 | |||
** CVE-2024-4032 | |||
** CVE-2024-6119 | |||
** CVE-2024-6232 | |||
** CVE-2024-6923 | |||
** CVE-2024-7264 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.4/RUTX/RUTX_R_00.07.09.4_WEBUI.bin RUTX_R_00.07.09.4]</span></b> | 2024.10.02=== | |||
* <b>Improvements</b> | |||
** <b>Services</b> | |||
*** NTP Client: changed default NTP servers | |||
* <b>Fix</b> | |||
** <b>Services</b> | |||
*** NTP Client: fixed NTP server usage to work with next in line server if current server does not respond | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.3/RUTX/RUTX_R_00.07.09.3_WEBUI.bin RUTX_R_00.07.09.3]</span></b> | 2024.09.27=== | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Multi WAN: fixed ipsets not getting deleted correctly when Multi WAN gets restarted | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9.1/RUTX/RUTX_R_00.07.09.1_WEBUI.bin RUTX_R_00.07.09.1]</span></b> | 2024.09.13=== | |||
* <b>Improvements</b> | |||
** <b>Services</b> | |||
*** Python3: updated version to 3.11.7 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.9/RUTX/RUTX_R_00.07.09_WEBUI.bin RUTX_R_00.07.09]</span></b> | 2024.09.03=== | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** Devices: added VXLAN support | |||
*** Firewall: added ability to configure NAT rule action | |||
*** Firewall: added additional TTL target for firewall rules | |||
*** Realtime Traffic: added historical traffic charts | |||
*** Realtime Traffic: added overall quality measurement to wireless signal charts | |||
*** Wireless: added option to enable 802.11w Management frame protection when using non-WPA3 encryption | |||
** <b>Services</b> | |||
*** Events Reporting: added new firmware version notification event | |||
*** SNMP: added Multiwan data module | |||
** <b>System</b> | |||
*** WebUI: added notifications menu | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Ports Settings: added more PoE state symbols, colored disabled port differently and improved port status hint | |||
*** Realtime Traffic: improved chart styles | |||
*** Wireless: increased EAP authentication logging | |||
*** Wireless: added various validations for network that is being used by wireless interface | |||
*** Wireless: added insecure configuration warnings when configuring SSIDs | |||
*** Wireless: updated wireless cards to display each radio device's signal quality and band data | |||
*** Wireless: reduced time required for Fast Transition in STA mode | |||
** <b>Services</b> | |||
*** Data to Server: added warning messages about insecure certificates for http_certfile and mqtt_certfile options in API and WebUI | |||
*** DLMS: added SHA256 authentication | |||
*** DLMS: improved COSEM group enable validation | |||
*** GRE: reduced GRE keepalive packet buffer size | |||
*** Hotspot: increased throughput performance | |||
*** Hotspot: increased maximum length of 'Local users' username to 255 characters | |||
*** Hotspot: added walled garden allowlist and blocklist | |||
*** IPsec: added support for route based tunnel | |||
*** L2TP: added field for custom options | |||
*** SMPP: added timeout option | |||
*** Web Filter: added hostname count message after successful file upload | |||
** <b>System</b> | |||
*** Access Control: improved system user's access control rules logic | |||
*** Access Control: added option to disable password auth for the root user | |||
*** Administration: improved write/read access control options display to match meniu path style | |||
*** Backup: improved backup page by splitting it into backup and reset settings page | |||
*** Side Widget: added port status widget | |||
*** Update Firmware: changed firmware update log to include firmware version | |||
*** WebUI: updated firmware and backup verification pages design | |||
*** WebUI: improved global alerts display | |||
*** WebUI: added confirmation prompt for disabling service in side widget | |||
*** Kernel: updated version to 5.10.221 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Devices: fixed configured VLAN 0 device cannot be selected in interface physical settings configuration | |||
*** Network: fixed switch hardware MTU being set incorrectly when changing MTU on any network interface | |||
*** RelayD: fixed relayd assigning wrong interface to zone | |||
*** Wireless: fixed station mode connection issues for 2.4 GHz radio in STA+AP mode | |||
*** Wireless: fixed wireless status API response to contain separate interface information for multiple radio configurations | |||
*** Wireless: fixed excessive log spam during 5 GHz ACS | |||
** <b>Services</b> | |||
*** Azure IoT Hub: fixed the Azure IoT Hub deprecated endpoint to create Data to Server sections | |||
*** Azure IoT Hub: fixed the Azure IoT Hub deprecated endpoint so that it does not create sections in GET request | |||
*** Azure IoT Hub: fixed the deletion of Data to Server sections when an Azure IoT Hub section is deleted through the deprecated endpoint | |||
*** DLMS: fixed OBIS code validation | |||
*** Hotspot: fixed 'Hotspot network' input validation to only allow network mask from 16 to 30 | |||
*** Input/Output: added I/O juggler reload when I/O pin direction is changed | |||
*** OPC UA Client: fixed TCL file upload | |||
*** OPC UA Server: fixed TCL file upload | |||
*** OPC UA Server: fixed configuration migration | |||
*** OpenVPN: fixed default firewall zone for tap interfaces | |||
*** SNMP: fixed TELTONIKA-MIB wireless module crash | |||
*** SNMP: fixed mobile network state display | |||
*** SNMP: fixed default hssDwLimit, hssUpLimit, hssDwBandwidth and hssUpBandwidth values | |||
** <b>System</b> | |||
*** API Core: fixed file deletion | |||
*** Package Restore: fixed automatic package re-installation after firmware upgrade | |||
*** Troubleshoot: fixed troubleshoot not including all the log files when log to flash is enabled | |||
*** User Settings: fixed page to show groups and users if the user has been granted access | |||
*** WebUI: fixed overview page to display active wireless (WLAN) clients | |||
* <b>CVE Patches</b> | |||
** CVE-2021-32292 | |||
** CVE-2022-40617 | |||
** CVE-2023-49441 | |||
** CVE-2024-0397 | |||
** CVE-2024-3596 | |||
** CVE-2024-5535 | |||
** CVE-2024-8088 | |||
** CVE-2024-26669 | |||
** CVE-2024-26739 | |||
** CVE-2024-26740 | |||
** CVE-2024-36901 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.8.3/RUTX/RUTX_R_00.07.08.3_WEBUI.bin RUTX_R_00.07.08.3]</span></b> | 2024.08.23=== | |||
* Changes only affect other RUTX devices | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.8.2/RUTX/RUTX_R_00.07.08.2_WEBUI.bin RUTX_R_00.07.08.2]</span></b> | 2024.08.12=== | |||
* <b>Fix</b> | |||
** <b>System</b> | |||
*** Update Firmware: fixed inconsistent firmware download from FOTA | |||
---- | |||
===<b>RUTX_R_00.07.08.1</b> | 2024.08.06=== | |||
<b>Note:</b> This firmware version was removed due to an issue with FOTA firmware download. | |||
* <b>Improvements</b> | |||
** <b>Services</b> | |||
*** Zerotier: updated version to 1.14.0 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Network: fixed default route not being added for PPPoE connections | |||
** <b>Services</b> | |||
*** Modbus TCP over Serial Gateway: fixed serial connection not working after reboot | |||
*** OPC UA Client: fixed connections not being closed after using testing functionality | |||
** <b>System</b> | |||
*** WebUI: fixed SDK WebUI package compilation | |||
---- | |||
===<b>RUTX_R_00.07.08</b> | 2024.07.18=== | |||
<b>Note:</b> This firmware version was removed due to an issue with FOTA firmware download. | |||
* <b>New</b> | |||
** <b>Network</b> | |||
*** 802.1X: added client support | |||
*** DNS: added inherited server status to configuration page | |||
*** HTTPS DNS Proxy: added new HTTPS DNS Proxy package to package manager | |||
** <b>Services</b> | |||
*** Data to Server: added 'Lua script' data input | |||
*** Hotspot: added Single Sign-on (OIDC) authentication mode | |||
*** Hotspot: added Walled Garden blocklist functionality | |||
*** Input/Output: added ability to configure gpio debounce timer and changed default gpio debounce timer value from 200 ms to 10 ms | |||
*** IPsec: added initial XFRM support | |||
*** MQTT Modbus Gateway: added JSON message type format | |||
*** OpenVPN: added DCO support | |||
** <b>System</b> | |||
*** API Core: added option to configure api session timeout | |||
*** Certificates: added "Let's encrypt" certificate generation | |||
*** PAM: added RADIUS external user support | |||
*** UI Core: added data analytics support | |||
*** Update Firmware: added warning message about device being temporarily unreachable on firmware update | |||
* <b>Improvements</b> | |||
** <b>Network</b> | |||
*** Channel Analysis: added scan error message when a DFS channel and FCC country are selected | |||
*** DNS: separated field "DNS forwardings" into two: one for simple server forwarding other for domain-specific | |||
*** DNS: moved "DNS Forwardings", "Listen interfaces", "Exclude interfaces", "Local service only", options to advanced tab | |||
*** Firewall: improved protocol field in all firewall pages by making that "All" value would be mutually exclusive with any other value | |||
*** Multi WAN: improved interface status representation when using load balancing | |||
*** Network: added more options for "IPv6 assignment length" field | |||
*** Wireless: added warning when user configures mesh on radio with automatic frequency channel | |||
*** Wireless: added support for wireless MAC-filter MAC ranges | |||
*** Wireless: updated wireless firmware | |||
*** Wireless: changed Radius Accounting port is not required when configuring access point with enterprise encryption | |||
*** Wireless: enabled ACS(automatic channel selection) for 5 GHz radios by default | |||
*** Wireless: refactored radio configuration page layout | |||
*** Wireless: refactored assignment of wireless interfaces MAC addresses, STA interface will always use fixed address | |||
** <b>Services</b> | |||
*** Azure IoT Hub: added DPS symmetric key attestation support | |||
*** Azure IoT Hub: added Direct Method support | |||
*** Azure IoT Hub: added Plug and Play integration | |||
*** Azure IoT Hub: added link to "Data to Server" page | |||
*** Data to Server: added support for multiple filters | |||
*** Data to Server: improved HTTP output hostname definition with automatic protocol specification in URL | |||
*** Data to Server: improved MQTT input connection handling | |||
*** DNP3 Client: added option to enable/disable service | |||
*** GRE: increased Inbound and Outbound key limit to 4294967295 | |||
*** Hotspot: adjusted hotspot user manager page to display active and inactive user sessions | |||
*** Hotspot: changed local users to be stored with other types of users | |||
*** Hotspot: added 'noc2c' option for enabling client isolation, option is enabled by default | |||
*** Input/Output: added custom name support in I/O status page | |||
*** IPsec: added certificate warning message | |||
*** Modbus Server: added mobile last month and last week usage registers | |||
*** Mosquitto: added large package size check for MQTT clients | |||
*** MQTT Modbus Gateway: improved mosquitto reconnect time and service will try to recover few times before exiting | |||
*** MQTT Publisher: improved MQTT connection handling | |||
*** OPC UA Client: added security modes | |||
*** OPC UA Server: added security modes | |||
*** OPC UA Server: added service status display | |||
*** OpenVPN: added support for decrypting private key when uploading a configuration file | |||
*** OpenVPN: improved instance status state | |||
*** OpenVPN: added options to specify an IP address pool for dynamic assignment to clients | |||
*** Over IP: added label to show how many servers a client is connected to | |||
*** Over IP: connect on data feature will not disconnect immediately after data transfer but wait for inactivity timeout | |||
*** Over IP: increased TLS handshake timeout to 10 seconds | |||
*** SMPP: added brute-force prevention | |||
*** SMPP: added TLS/SSL support | |||
*** SNMP: changed interface module OID structure | |||
*** SNMP: improved User-based Security Model (USM) brute force attack prevention measures | |||
*** Stunnel: improved global instance settings dependencies | |||
*** emailrelay: updated version to 2.4.1 | |||
*** OpenVPN: updated version to 2.6.9 | |||
*** stunnel: updated version to 5.72 | |||
*** Tailscale: updated version to 1.68.1 | |||
** <b>System</b> | |||
*** Access Control: added certificate key length warnings | |||
*** Access Control: adjusted access control when all pages are blocked | |||
*** Access Control: added certificate file download for CLI to work on all browsers | |||
*** API Core: implemented functionality to include warning messages for vulnerable certificates | |||
*** Package Manager: added multi package actions | |||
*** Package Manager: added status filter | |||
*** Package Manager: moved package upload action to main page | |||
*** Package Manager: added links to installed packages pages | |||
*** Package Manager: refactored "Packages" page | |||
*** Package Manager: updated opkg repository link to use https | |||
*** RutOS: improved GPL example page to align with new software architecture | |||
*** Troubleshoot: added support for multiple syslog servers | |||
*** UI Core: added additional message with IP address to loading screen for scenarios when redirect to different IP address happens | |||
*** UI Core: added toast message hiding when text is too long | |||
*** Update Firmware: added 'Firmware version' data in screen after firmware upload | |||
*** WebUI: added functionality to cancel loading screen if it takes 30 or more seconds | |||
*** WebUI: removed all ubus method calls from webui | |||
*** WebUI: improved language caching | |||
*** WebUI: added password generator for first login modal | |||
*** WebUI: added sticky position to side menu | |||
*** WebUI: added default password hint to login error message | |||
*** WebUI: added warning messages for low-security certificates | |||
*** Kernel: updated version to 5.10.217 | |||
*** libexpat: updated version to 2.6.2 | |||
*** SSL/TLS: updated version to 3.0.14 | |||
*** vue: updated version to 3.4 | |||
* <b>Fix</b> | |||
** <b>Network</b> | |||
*** Channel Analysis: fixed network list not being updated if a single scan fails | |||
*** Devices: fixed missing API devices status endpoint permission | |||
*** DHCP: fixed "DHCP option" allow empty input value | |||
*** DHCP: fixed IPv4 leases being not correctly shown when NTP synchronizes time | |||
*** DHCP: fixed DHCP error that occurred after changing the subnet of the LAN IP address in the setup wizard | |||
*** Dynamic routes: fixed duplicated external routes cards | |||
*** Firewall: fixed firewall zone validation when adding interfaces | |||
*** Multi AP: fixed Multi AP not working with fast roaming | |||
*** Multi AP: fixed switching to Multi AP mode fails due to encryption | |||
*** Multi AP: fixed Multi AP configuration being deleted when switching mode on the same radio device | |||
*** Network: fixed overriding MAC address for interfaces that are bridged | |||
*** Network: fixed instances of device dropping packets when configured with masquerading disabled and 'Hardware flow offload' enabled | |||
*** RelayD: fixed API error when "network" and "lan_mark" options are not present in a PUT request | |||
*** Wireless: fixed wireless scan results sometimes not being returned | |||
*** Wireless: fixed 5 GHz Wi-Fi scanning is prohibited when a DFS channel and ETSI regulatory domain is selected | |||
*** Wireless: fixed Wi-Fi 5 GHz unsupported channel selection issue on specific widths | |||
*** Wireless: fixed wireless status page not updating wireless SSID status after page is opened | |||
*** Wireless: removed the ability to have different countries in radio configurations | |||
*** Wireless: fixed interface delete when it's unassigned from the wireless interface in access point mode | |||
*** Wireless: fixed backticks for WiFi SSID are not allowed in WebUI | |||
** <b>Services</b> | |||
*** BACnet: fixed incorrect BACnet IP port used for sending responses | |||
*** BGP: fixed route map sequence going out of range | |||
*** BGP: fixed listen range field allowing multiple entries | |||
*** DLMS: fixed DLMS test response format | |||
*** DLMS: fixed COSEM group validation | |||
*** DLMS: fixed API POST error for /dlms/devices/config endpoint | |||
*** DLMS: fixed serial connection not working after reboot | |||
*** DNP3 Client: fixed to allow reading objects past 255 index | |||
*** DNP3 Client: fixed incorrect hints | |||
*** DNP3 Outstation: fixed serial outstation starting issues | |||
*** Hotspot: fixed uploading more than one custom theme | |||
*** Hotspot: fixed creating Hotspot to SSID that is disabled | |||
*** Hotspot 2.0: fixed Venue name and Operator's name field validations | |||
*** I/O Juggler: fixed improper dout action config handling | |||
*** I/O Juggler: updated profile change action | |||
*** Input/Output: allow unselecting all Post/Get access methods | |||
*** IPsec: fixed connectivity issues when using WAN failover | |||
*** IPsec: fixed the instance status when the local firewall option is disabled | |||
*** Modbus Client: fixed test request option validation | |||
*** Modbus Client: fixed alarm output action display values | |||
*** Modbus Client: fixed incorrect period hint | |||
*** Modbus Server: fixed APN register not clearing APN | |||
*** Modbus Server: fixed 148 and 164 modbus registers | |||
*** Modbus Server: fixed incorrect hints | |||
*** NTRIP: fixed NTRIP NMEA generation timestamp and coordinates errors | |||
*** NTRIP: fixed configuration reading with several instances added | |||
*** OPC UA Server: fixed not starting while modem is down | |||
*** OpenVPN: fixed displaying imported files from device | |||
*** OpenVPN: fixed the private key decryption for cases when a password is used | |||
*** OpenVPN: fixed data cipher migration | |||
*** Over IP: fixed connect on data initiating TCP connection after few data transfers | |||
*** SMPP: fixed username bypass problem | |||
*** SMPP: fixed password validation | |||
*** SNMP: fixed GSM mSignal OID value type | |||
*** SNMP: fixed GSM module memory leaks | |||
*** SSTP: fixed functionality when the default route option is not enabled | |||
*** Web Filter: fixed whitelist not working for some hosts when using IPv6 | |||
** <b>System</b> | |||
*** Administration: fixed repeated validation on cleared inputs and added validation when new password matches the old one | |||
*** API Core: fixed API method validation during upload action | |||
*** API Core: fixed error messages for POST method | |||
*** API Core: fixed option list validation | |||
*** Boot: fixed factory settings restore (firstboot) not deleting hidden files | |||
*** Events Log: fixed refresh button in event log table | |||
*** IP Block: fixed adding MAC addresses back to whitelist when unblocking all of them | |||
*** Memory Expansion: fixed enable validation | |||
*** Recipients: made phone number field required | |||
*** Setup Wizard: fixed lan ip step not changing ip address | |||
*** Troubleshoot: fixed system log and kernel log buttons to be enabled with read only rights | |||
*** Update Firmware: fixed misleading "Firmware version" status of "N/A" to "FOTA service is disabled" when FOTA is disabled | |||
*** Update Firmware: fixed issue when infinite spinner appears after updating device firmware from server without having internet connection | |||
* <b>CVE Patches</b> | |||
** Patched CVE-2023-52425 | |||
** Patched CVE-2023-52530 | |||
** Patched CVE-2024-25629 | |||
** Patched CVE-2024-28757 | |||
---- | |||
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.7.3/RUTX/RUTX_R_00.07.07.3_WEBUI.bin RUTX_R_00.07.07.3]</span></b> | 2024.06.25=== | ===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.7.3/RUTX/RUTX_R_00.07.07.3_WEBUI.bin RUTX_R_00.07.07.3]</span></b> | 2024.06.25=== | ||
* <b>Fix</b> | * <b>Fix</b> | ||