DAP142 Firmware Downloads
This page contains firmware files for DAP142 devices. Look to the table below or the changelog to find download links.
Stable firmware - this version has been tested through both internal QA processes and large-scale user deployments. All known issues have been resolved based on user reports and testing feedback. Stable firmware is currently used as the default for updates and is also deployed in mass production. To upgrade firmware using WebUI, follow the instructions in DAP142 Firmware.
Latest firmware - this is the most recent firmware release, featuring the latest updates, features, and fixes. While it has passed internal testing, it has not yet undergone widespread deployment or user validation. It may still contain undiscovered issues. We recommend testing on a small number of devices before considering broader updates.
Note: packages for Package Manager are independent from firmware and can be downloaded in the Package Downloads page.
| File | Type | Release date | Size | MD5 | Links |
|---|---|---|---|---|---|
| DAP14X_R_00.07.18.3_WEBUI.bin | Stable FW |
2025.10.30 | 11 MB | 939e74e83b89f6d4d383e5537daed8b0 | Changelog API |
| DAP14X_R_00.07.19.4_WEBUI.bin | Latest FW |
2025.12.05 | 11 MB | 2eddf8debdb03e1d9b511251e9b3cacb | Changelog API |
| DAP14X_R_SDK_00.07.19.4.tar.gz | SDK | 2025.12.05 | 23 MB | 38feb6a6236398208098b09426383fa1 |
FW checksums
Checksums for firmware files can be found here.
Changelog
DAP14X_R_00.07.19.4 | 2025.12.05
- Firmware includes no changes for this device
DAP14X_R_00.07.19.2 | 2025.11.26
- Fix
- System
- Update Firmware: fixed firmware download cancellation
- System
DAP14X_R_00.07.19.1 | 2025.11.12
- Fix
- System
- WebUI: fixed unresponsive navigation after password change
- System
DAP14X_R_00.07.19 | 2025.11.06
- Improvements
- Network
- DHCP server: added message to Events Log when there are no available DHCP addresses
- Firewall: added status to Traffic Rule page
- Firewall: added status to Port Forwards page
- Firewall: added status to NAT page
- Firewall: added status to DMZ page
- Firewall: updated status page to have chain and rule tables for better searchability
- Firewall: added shortcuts from firewall rules in status page to firewall configurations that created them
- HTTPS DNS Proxy: disabled field requirements when service is disabled
- Network: improved DHCP client and server related fields
- VLAN: improved VLAN configuration save and apply speed in some cases
- Services
- Cloud of Things: changed communication from HTTP to MQTT
- Cumulocity: changed communication from HTTP to MQTT
- EoIP: added IPv6 support
- Event juggler: added `io_reset` option
- Events reporting: moved Events reporting service to Package manager
- GRE: added IPv6 support
- MQTT Modbus Gateway: added validation to discard responses with invalid ID or function code
- NTRIP: added IPv6 support
- OpenVPN: improved page load speed by removing duplicate data request
- OpenVPN: moved OpenVPN DCO kernel module to package manager
- SNMP: added SET support for universal gateway tag value table
- Stunnel: added support for using IPv6 addresses in the connect IPs field
- Wireguard: added wireguard watchdog support
- cURL: updated version to 8.16.0
- OpenVPN: updated version to 2.6.14
- System
- Custom Scripts: added page loading spinner
- Speed Test: added support for custom server url
- Update Firmware: improved FOTA communication and caching logic
- WebUI: improved usability on small screens
- Kernel: updated version to 5.15.193
- PAM: updated version to 1.7.1
- Network
- Fix
- Network
- DHCP server: fixed DHCPv6 server reload when changing VLAN
- DNS: fixed "Static addresses" and "Custom redirect" field required validation
- Dynamic routes: fixed services other than EIGRP restarting on network change
- Firewall: added IPsec and OpenConnect configurations as possible networks
- Firewall: fixed NAT extra custom rules not applying after FW upgrade
- HTTPS DNS Proxy: fixed DNS requests failing after obtaining new IP
- Multi WAN: fixed Multi WAN interface creation
- Ports Settings: fixed ports re-enabling themselves after changing certain settings
- Wireless: fixed invalid mesh interface encryption data reporting
- Wireless: fixed excessive Wi-Fi service log file creation due to service restarts
- Wireless: fixed "Allow legacy 802.11b rates" option not working properly
- Wireless: fixed missing background scan data in learn mode
- Services
- DLMS: fixed access error when reading an empty sort object attribute on a generic profile object
- DLMS: fixed "Entries" not being clamped for "Profile generic" COSEM type
- DMVPN: fixed custom changes in IPsec, GRE and NHRP pages being reverted when saving DMVPN instance
- DNP3 Client: fixed dnp3 test function printing analog values in wrong format
- DNP3 Client: fixed always shown warning notification by displaying status hints for affected requests
- Dynamic DNS: fixed "Check interval" and "Force interval" validation issues
- IPsec: fixed an issue where connections could be re-initiated even while being active
- IPsec: fixed authentication issue when using multiple instances with the PSK authentication method
- IPsec: fixed Xauth connections not establishing when identifiers are set
- IPsec: fixed wrong active client information when using certificates
- IPsec: fixed incorrect uptime display when using multiple responder instances
- L2TP: fixed L2TP over IPsec connection issue
- L2TPv3: fixed parameter validation for IPv6 addresses in configuration
- Modbus Client: fixed email and MQTT alarm actions running longer than intended
- Modbus Client: fixed always shown warning notification by displaying status hints for affected requests
- Modbus Client: fixed test request endpoints failing if 'broadcast' option is not provided
- MQTT Broker: fixed TLSv1.1 configuration
- OpenVPN: fixed parsing uploaded custom OpenVPN configuration
- OpenVPN: fixed issues with parsed fields being displayed after config deletion
- OpenVPN: fixed configuration parsing issues related to security options
- Wireguard: fixed creation of routes to endpoint host when default route is not set
- System
- Access Control: fixed displaying certificates in "HTTPS" edit modal after page refresh
- Administration: fixed incorrect creation date of user's default configuration
- API Core: fixed API error on 'DELETE' request with bad payload structure
- Events Log: fixed sorting reset functionality of table columns and "Event group" column issues
- Setup Wizard: fixed redirect of "RMS" step
- System Users: fixed multiple network pages working improperly with non-root users
- WebUI: fixed "visible columns" button to be clickable for users without "write" permissions
- WebUI: removed bell notifications from modals
- WebUI: fixed length validation for custom input values in select lists
- WebUI: fixed active state of filters on tables
- Network
- CVE Patches
- CVE-2025-4373 - 4.8 (MEDIUM)
- CVE-2025-6020 - 7.8 (HIGH)
- CVE-2025-6052 - 7.5 (HIGH)
DAP14X_R_00.07.18.3 | 2025.10.30
- Improvements
- System
- ubus: updated version to 2025-10-19
- System
- Fix
- System
- Backup: fixed issues uploading older backup files
- System
DAP14X_R_00.07.18.2 | 2025.10.22
- Fix
- Services
- IPsec: fixed issue where IPsec connections failed during WAN failover
- OpenVPN: fixed status issue after firmware upgrade
- Services
DAP14X_R_00.07.18 | 2025.10.01
Note: This firmware version has been withdrawn due to an issue with incorrect mobile operator selection under specific conditions.
- Improvements
- Network
- Channel Analysis: removed low contrast color from possible figure colors
- Channel Analysis: added diamond decoration showing primary channel position
- DHCP server: added option 82 support to DHCP relay
- SSHFS: updated mount point location
- Dnsmasq: updated version to 2.90
- Iperf3: updated version to 3.19.1
- Services
- DLMS: improved COSEM value reading speed
- DNP3 Client: added DNP3 client support for universal gateway
- DNP3 Outstation: increased status report responsiveness
- IPsec: added requirement for local certificate and key fields when X.509 authentication method is selected
- IPsec: added improvements for IPv6 support
- Modbus Client: increased test button and status report responsiveness
- Modbus Client: made number zero as valid server ID
- Modbus Client: added broadcast support
- Modbus Server: increased status report responsiveness
- Modbus Server: added broadcast support
- MQTT Modbus Gateway: added broadcast support
- OpenVPN: removed disabled state from "logs" and "active clients" when user has no write permissions
- OpenVPN: improved error messages
- OpenVPN: added user and password options for export client configuration
- System
- Access Control: added JSON-RPC enable toggle
- JSON-RPC: moved to Package Manager
- WebUI: added indicators when a form input inside an inactive tab was changed or invalid
- WebUI: added "Skip to main content" accessibility feature
- WebUI: improved multi select design
- WebUI: improved styles of drag hint on smaller screens
- WebUI: improved consistent formatting across all hints
- Network
- Fix
- Network
- Channel Analysis: fixed 20 and 160 MHz width parsing
- Channel Analysis: fixed inconsistent figure widths between same width channels
- Channel Analysis: centered figures using center channels instead of primary ones
- Channel Analysis: fixed chart display when signal goes below -100 dBm
- Multi WAN: fixed incorrect log trigger
- Services
- Data to Server: fixed Modbus input raw data sending when data type is Modbus PDU
- Hotspot: fixed console errors that occurred in certain scenarios when enabling or disabling an instance
- Hotspot 2.0: removed OSU provider
- IPsec: fixed field validation to support % in custom options
- Modbus Client: fixed PDU data type data collection
- OpenVPN: fixed permissions for using IP Block
- RMS: fixed RMS authentication under poor internet conditions
- Stunnel: fixed disabled state of "enable" switch in overview page
- Zerotier: fixed excessive ARP flooding on Zerotier interfaces
- System
- Administration: fixed "User group" input validation
- API Core: fixed double quoted boundary parsing
- Kernel: fixed compilation of 'fs-cifs' kernel module package
- Profiles: fixed endpoint response when calling from internal API
- UI Core: fixed 'Save & Apply' button reachability on mobile devices
- Update Firmware: fixed incorrect FOTA address in SDK
- WebUI: fixed text-area width issues on small screen devices
- Network
- CVE Patches
- CVE-2025-6021
- CVE-2025-32415
- CVE-2025-49794
- CVE-2025-49796
DAP14X_R_00.07.17.6 | 2025.10.15
- Fix
- System
- RutOS: fixed incorrect LED indications
- System
DAP14X_R_00.07.17.5 | 2025.09.30
- Firmware includes no changes for this device
DAP14X_R_00.07.17.4 | 2025.09.17
- Fix
- System
- Profiles: fixed keep-settings execution for older profiles
- System
DAP14X_R_00.07.17.3 | 2025.09.05
- Fix
- Services
- Web Filter: fixed host blocking with hotspot interfaces
- Services
DAP14X_R_00.07.17.2 | 2025.09.02
- Improvements
- Network
- iwinfo: updated version to 2025-02-06
- Network
- Fix
- Network
- DNS: fixed saving of DNS server IPs
- System
- Backup: fixed keep-settings execution for older backups
- Network
DAP14X_R_00.07.17.1 | 2025.08.19
- Fix
- Network
- Multi WAN: fixed failover startup after reboot
- Network
DAP14X_R_00.07.17 | 2025.08.12
Note: This firmware was removed due an issue with Failover functionality.
- New
- System
- RutOS: added instructions for creating a simple package using the SDK
- System
- Improvements
- Network
- Multi WAN: added drag & drop operation for the "Failover" mode
- Realtime Traffic: added ability to see up to 1 hour of live data
- VRF: added VPN selection support in the WebUI
- hostapd: updated version to 2025-05-23
- Iperf3: updated version to 3.19
- Services
- Email Relay: simplified new instance creation
- Event juggler: added call action functionality to hang up the call after a specified time
- Event juggler: increased SMS text length from 3 to 8 messages
- Event juggler: added live character counter for SMS messages
- Hotspot 2.0: deprecated OSU provider
- Package Manager: added confirmation modal when removing multiple packages
- Traffic Logging: improved Hotspot data stream retrieval
- System
- Administration: added notifications and alerts display toggles
- Administration: updated certificates page
- Package Manager: added WebUI notifications for successful and failed package installations
- UI Core: changed all chart styles
- WebUI: updated brand color palette
- WebUI: added sensitive information hiding feature for 'IMSI', 'ICCID' and 'IP address' fields for lower privilege users
- WebUI: added truncation and hover tooltips for long side widget card titles
- WebUI: unified the "Change Password" page title
- Kernel: updated version to 5.15.186
- Network
- Fix
- Network
- DHCP server: fixed DHCPv6 server reload when changing VLAN
- DHCP server: fixed wrong DHCPv4 server conflict message being displayed when both interfaces have no device assigned
- HTTPS DNS Proxy: fixed typo in the configuration page
- VLAN: fixed a missing validation message in the WebUI when VLAN migration is restricted
- Wireless: fixed default cipher not being returned from the API
- Wireless: fixed an API error that occurred when joining a mesh network while a client network was present
- Wireless: fixed wireless radio page loading incorrectly when user has limited permissions
- Services
- Data to Server: fixed configuration clearing when plugin packages are deleted
- DLMS: fixed missing API validation message for 'server_addr' option
- DLMS: fixed service crashing when using "Register activation", "Activity calendar" and "Profile generic" COSEM types
- DNP3 Client: fixed 'index' option API error in the 'requests' endpoints
- Event juggler: fixed issue with enabling/disabling the WiFi interfaces
- Hotspot: fixed redirect to custom success url with the same domain as landing page
- Hotspot: fixed 'reset' button functionality and template input styles in 'Landing pages' page
- IPsec: fixed intermittent errors when checking IPsec status
- Modbus Client: fixed timeout behavior to not include serial device acquisition time
- Modbus Server: fixed custom register block not working if count is more than 128 registers
- NTRIP: fixed ntrip hangup on modem restart or on error conditions
- Over IP: fixed API error when 'address_connect' option is missing
- Over IP: fixed 'echo_enabled' option not being set
- Wireguard: fixed incorrect route towards other peer being added
- Wireguard: fixed Wireguard not re-adding default routes after deleting instance
- System
- Access Control: fixed duplicate query parameter validation
- Access Control: fixed HTTP WAN remote switch is shown as disabled after the "WAN to LAN" action
- Administration: fixed device usage duplicate query parameter validation
- Administration: fixed issue of "delete" button not being disabled on "System users" page when user has no write permissions
- Events Log: fixed duplicate query parameter validation
- IP Block: fixed MAC blocking interface validation
- Package Manager: updated "View packages repository" link
- Profiles: fixed issue that allowed deletion of profiles in use by the scheduler
- Setup Wizard: fixed "Setup Wizard" access issues with lower privilege users
- WebUI: fixed notifications disappearing on page navigation
- WebUI: fixed validation for fields using "url" rule
- Network
- CVE Patches
- CVE-2023-53154
- CVE-2024-31578
- CVE-2024-52533
DAP14X_R_00.07.16.6 | 2025.09.17
- Fix
- System
- Profiles: fixed keep-settings execution for older profiles
- System
DAP14X_R_00.07.16.3 | 2025.07.28
- Firmware includes no changes for this device
DAP14X_R_00.07.16.2 | 2025.07.24
- New
- Services
- SNMP: added wireless interfaces' clients' table OID
- SNMP: added LAN clients' table OID
- Services
- Fix
- Services
- OpenVPN: fixed connectivity issues when using WAN failover
- Services
DAP14X_R_00.07.16.1 | 2025.07.17
- New
- Services
- DNP3 Outstation: added support for data conversion from other industrial protocols
- SNMP: added Universal Gateway support for Modbus and M-Bus protocols
- Services
- Improvements
- Network
- DHCP server: added excluded address count to Leased IPs status
- Firewall: added attack prevention option to log detected flood events
- Wireless: improved FT roaming performance in STA mode
- libpcap: updated version to 1.10.5
- tcpdump: updated version to 4.99.5
- Services
- SNMP: added access points' and meshes' clients' count OID
- Data to Server: updated collection and input card design
- Data to Server: added support for specifying multiple minute values in one row for the "Scheduler"
- Data to Server: added support for Base64 data encoding
- Data to Server: added warning message for Lua format example script
- Data to Server: improved example format Lua script
- DLMS: added filtering query parameters to database API endpoint
- DNP3 Client: added filtering query parameters to database API endpoint
- Event juggler: updated event and action card design
- Event juggler: updated modem selection to include external modems
- Event juggler: updated "Key-value arguments" to allow duplicates in "Script" and "HTTP" actions
- Event juggler: increased maximum "Key-value arguments" count in "Script" and "HTTP" actions
- Event juggler: improved configuration creation in WebUI
- L2TP: added support for custom ports
- L2TPv3: improved validation for multiple fields
- Modbus Client: added filtering query parameters to database API endpoint
- Modbus Server: added multi value support in data source selection
- OPC UA Client: added filtering query parameters to database API endpoint
- Stunnel: added TPM2.0 key support
- System
- Troubleshoot: added support for capturing packets via the NFLOG interface
- WebUI: updated icon sizes
- WebUI: added long hold to drag on mobile for draggable cards
- WebUI: improved layout and functionality of log modals
- WebUI: added information about 'Branch' to 'System' page
- dropbear: updated version to 2025.88
- Kernel: updated version to 5.15.184
- Serial: updated version to 2.0
- tpm2-openssl: updated version to 1.3.0
- Network
- Fix
- Network
- DHCP server: fixed calculating DHCP address range when changing subnet mask
- DHCP server: fixed the incorrectly displayed error for server status
- Network: fixed incorrect IP address netmask validation
- Network: removed LAN to WAN action
- Network: fixed interface statistics when software flow offloading is enabled
- Ports Settings: fixed page refresh button
- Ports Settings: fixed advertisement not required when auto-negotiation is enabled in API
- Realtime Traffic: fixed data usage show for interfaces with PPPoE protocol
- RelayD: fixed API wrongly suggesting and accepting "lan_mark" as an internal network
- RelayD: fixed page not functioning for users with limited access
- Topology: fixed issue where scan buttons were not clickable on mobile devices
- Wireless: fixed LAN network interface being removed after related WiFi interface is deleted
- Wireless: fixed noise value calculation
- Wireless: fixed incorrect CSA handling in STA+AP mode
- Services
- Data to Server: fixed dnp3 package offline installation bug
- Data to Server: fixed GPS data formatting
- DLMS: fixed COSEM attribute filtering
- DMVPN: fixed DMVPN routes not showing up in Static Routes
- DNP3 Client: fixed requests API error when incorrect 'index' option value was provided
- Dynamic DNS: fixed Cloudflare authentication type, username saving errors
- Event juggler: added missing I/O pins for "Copy pin state" option
- Event juggler: fixed minor I/O validation bugs
- Hotspot: added SNMP Hotspot trap removal when Hotspot package is removed
- Hotspot: fixed some LAN traffic being forwarded to Hotspot interface when using VLANs
- Hotspot: fixed purple.ai configuration profile
- IPsec: fixed incorrect IPsec restarts when used with Multi WAN
- Modbus Server: fixed issue where data sources with write permission would not work
- Modbus Server: fixed regfile uniqueness validation between instances
- Modbus Server: fixed regression of writing single coil/register always failing
- OpenVPN: fixed connection checking when using IPv6
- TR-069: fixed device name generation
- Wifi Scanner: fixed some wireless interfaces not getting added or removed from scanning list
- System
- Kernel: fixed serial port flow control management
- Network
DAP14X_R_00.07.15.4 | 2025.07.11
- Fix
- System
- Backup: fixed internal firmware metadata not updating after applying backup
- System
DAP14X_R_00.07.15.2 | 2025.06.27
- Improvements
- System
- Update Firmware: optimized firmware validation through caching
- System
- Fix
- Network
- Wireless: fixed WPA3-SAE fast transition configuration
- Services
- Data to Server: fixed MBus database path bug
- Hotspot: fixed segmentation fault
- L2TP: fixed memory leak issue with invalid packets
- System
- Package Manager: fixed possible config migration issues on the PM installed packages
- System Status: fixed display of MAC address
- WebUI: fixed subscribe processes not exiting when UHTTPD is killed
- Network
DAP14X_R_00.07.15.1 | 2025.06.17
- Fix
- Network
- Realtime Traffic: fixed data collection in rare cases
- Services
- Event juggler: fixed the execution of user scripts
- Hotspot: fixed users scripts execution
- Hotspot: fixed user scripts migration after upgrade with keep settings
- System
- Backup: fixed missing root and admin user restoration during backup apply
- Network
DAP14X_R_00.07.15 | 2025.06.06
- New
- System
- WebUI: added default HTTP redirect to HTTPS
- System
- Improvements
- Network
- DHCP server: included static leases to "Leased IPs" status that are outside of DHCP pool range but are inside interface subnet range
- Dynamic routes: improved mobile interface handling
- Dynamic routes: added support for selecting VPN interfaces
- Firewall: disabled Allow-ICMPv6-Forward rule
- IGMP Proxy: added VPN interface support
- Multi WAN: updated configuration interface
- Multi WAN: added manual member configuration
- Multi WAN: added expanded Multi WAN interface statuses
- Network: updated network interface statuses to be more detailed and easier to understand
- Network: improved 802.1p priority configuration fields
- Wireless: updated wireless client status with new "Obtaining IP" state
- Wireless: simplified radio transmit power selection
- Wireless: added status for current radio transmit power
- Services
- AWS IoT Core: updated "AWS provisioning" configuration parameter list
- BACnet: added support for devices with USB adapters and devices with no rs485 interface
- Data to Server: added FTP, SMTP, Socket, and Lua script support for data transmission
- Data to Server: updated "Collection configuration" edit, "Input configuration" edit, "Format string" and "Tag expansion" parameter lists
- Data to Server: added support for ISO 8601 date format
- DLMS: added API endpoints to get the current value of a configured group or group value
- DNP3 Client: added API endpoints to get the current value of a configured request
- Dynamic DNS: added DNS server field
- Dynamic DNS: reduced service restarts when mobile is used
- Event juggler: implemented a retry mechanism for actions in case of failure
- Event juggler: updated "Send email", "Send SMS", "MQTT", "Script" and "HTTP" action "Text message" parameter list
- Event juggler: added delete icon on "Remove action" button
- Event juggler: removed "Startup" event type from event configuration due to duplication
- Events Reporting: updated "Message text on event" parameter list
- Modbus Client: updated "Modbus TCP Client" and "Modbus Serial Client" configuration "MQTT message" and "Email" action "JSON format" parameter list
- OPC UA Client: added API endpoints to get the current value of a configured group, group value or server node
- Mosquitto: updated version to 2.0.21
- ovpn-dco: updated version to 0.2.20241216
- System
- Access Control: added ability to specify WAN port
- Access Control: improved HTTPS certificate validation
- API Core: added preflight OPTIONS method support
- Certificates: changed certificate signing to use RSA-PSS padding scheme
- Speed Test: added functionality to find any country servers by using search
- TCP dump: added suggestions for host and port filters
- Troubleshoot: separated troubleshooting into individual configuration tabs
- Troubleshoot: improved logging size configuration and log size limits
- WebUI: reduced size of the navigation menu and some form elements
- WebUI: updated table selected rows actions design
- WebUI: added HTTPS certificate expiration warning and renew functionality
- WebUI: unified styles of first login and renew expired password modals
- WebUI: updated Japanese translations
- Kernel: updated version to 5.15
- Network
- Fix
- Network
- 802.1X Client: fixed warning message of different port configurations sometimes appearing when closing modal
- 802.1X Client: fixed 802.1X (client) page access not being controlled by the "Network > Ports" entry
- DHCP server: fixed DHCPv4 server shutdown when multiple LANs use the same interface and one of them disables DHCPv4
- Firewall: fixed duplicate VPN zone creation
- Firewall: fixed HTTP and HTTPS ports migration for DMZ port forwards rules
- Firewall: removed redundant "Internal zone" field from port forward configuration
- Multi WAN: fixed missing parameters for the "DHCP" interface
- Network: fixed incorrect network type shown for LAN with only WiFi interface
- Static Routes: fixed GRE tunnel name display when its name has special symbols
- Topology: fixed issue of duplicated WAN interface being displayed under certain configurations
- VLAN: fixed WebUI port names not matching names written on the casing
- Wireless: fixed trailing whitespace being ignored in SSID or password
- Wireless: fixed enterprise client configuration not showing all certificates and keys generated with SCEP
- Wireless: fixed enterprise client configuration requiring password for unencrypted certificate key
- Services
- DLMS: fixed COSEM attribute filtering
- DLNA: fixed option list of "Interfaces"
- DMVPN: fixed displaying NAT rules
- Dynamic DNS: fixed IPv6 support in bind-nsupdate
- Dynamic DNS: fixed logs showing IPv6 expansion errors when no IP is found
- Event juggler: fixed duplicated names validation
- Event juggler: fixed HTTP action when secure connection is chosen
- Event juggler: fixed condition deletion not working in some edge cases
- Hotspot: fixed SSL certificates permissions
- IPsec: fixed connection issues with %any as identifier
- L2TP: fixed authentication credentials validation
- Modbus Client: fixed label for 'no_bracket' option in requests
- MQTT Broker: fixed incorrect "Local port" hint
- NTRIP: fixed latitude option name and description
- RMS: fixed 'Next connection after' timer display
- RMS: fixed transition from 'Standby' to 'Enabled' mode
- Stunnel: fixed issue of global settings sometimes not being displayed
- Stunnel: made "Certificate File" and "Private Key" fields required when server mode is configured
- Wireguard: fixed peer allowed IPs select dropdown to show IPv6 options and added the ability to include custom values
- Wireguard: fixed MTU issues when default route is used
- Wireguard: fixed tunnel not re-establishing when failover is used
- System
- Access Control: fixed HTTPS certificates validation to not allow RSA key length less than 1024 bits and ECC key length less than 160 bits
- API Core: fixed session validation issues
- Certificates: fixed SCEP certificate enrollment compatibility issues with certain servers
- Certificates: fixed SCEP certificate generation
- System Status: removed bootloader version information if it does not exist
- WebUI: fixed inconsistent spacing between page elements
- WebUI: fixed warnings still being displayed after removing uploaded certificates
- WebUI: fixed issues with SDK API path recognition
- Network
DAP14X_R_00.07.14.3 | 2025.05.26
- Fix
- Services
- L2TP: fixed a connection problem when using an L2TP over IPsec configuration
- System
- Custom Scripts: fixed execution of custom scripts after upgrade
- Services
DAP14X_R_00.07.14.2 | 2025.05.09
Note: If a system upgrade with keep settings is performed from R_00.07.14 or R_00.07.14.1 to this version, follow the instructions described under those firmware versions below to resolve Data Limit and traffic monitoring issues.
- Fix
- Network
- Firewall: fixed HTTP and HTTPS ports migration for DMZ port forwards rules
- Network: fixed data limit database save when upgrading with keep settings
- Network
DAP14X_R_00.07.14.1 | 2025.05.06
Note: This firmware version has been withdrawn due to an issue affecting the Data Limit, traffic monitoring functionalities.
Note: If a system upgrade with keep settings was already performed from R_00.07.14 to this version, previous Data Limit tracking and traffic monitoring information cannot be restored. However, to keep current traffic monitoring history after next update, the command found in the Note below must be executed in CLI.
Note: If a system upgrade with keep settings is performed from this firmware version to newer and R_00.07.14 was never used, following command must be executed in CLI before upgrade to resolve Data Limit and traffic monitoring issues.
mkdir -p /usr/local/lib/upgrade/keep.d && echo /usr/local/usr/lib/mdcollectd/mdcollectd.db_new.gz > /usr/local/lib/upgrade/keep.d/mdcollect
- Fix
- System
- RutOS: fixed curl compilation in SDK
- System
- CVE Patches
- CVE-2025-2704
DAP14X_R_00.07.14 | 2025.04.24
Note: This firmware version has been withdrawn due to an issue affecting the Data Limit, traffic monitoring functionalities.
Note: If a system upgrade with keep settings is performed from this firmware version to newer, following command must be executed in CLI before upgrade to resolve Data Limit and traffic monitoring issues.
mkdir -p /usr/local/lib/upgrade/keep.d && echo /usr/local/usr/lib/mdcollectd/mdcollectd.db_new.gz > /usr/local/lib/upgrade/keep.d/mdcollect
- New
- Services
- AWS IoT Core: added Device Provisioning
- L2TP: added L2TP over IPv6 support
- MQTT Broker Bridge: added v5.0 bridge protocol support
- System
- RutOS: enabled a read-only root filesystem to ensure system integrity and security
- WebUI: added Ukrainian language support
- Services
- Improvements
- Network
- DHCP: added title for action column in custom DHCP option table
- DHCP: added a warning message when multiple interfaces share the same device and have DHCPv4 enabled
- DNS: updated the "Custom Redirect" option to support domain wildcard (*) pattern matching
- DNS: made the "DNS Server" field optional for the "Custom Redirect" option
- Firewall: improved "intra" zone column names for clarity
- Ports Settings: reordered network > ports sub-menu and made port settings page first
- SSHFS: updated mount point location
- SSHFS: added connection and mount point status
- Topology: improved network scanning
- Topology: added port number to topology scan results
- Topology: added IPv6 support
- VRF: added section name generation and changing ability
- Wireless: added warning to a radio channel option when client is configured on same radio indicating that this option can be ignored
- Wireless: added WiFi standard used by the connected client
- Curl: updated version to 8.12.0
- wireless-regdb: updated version to 2024.10.07
- Services
- Data to Server: changed new instance to be turned off by default
- Dynamic DNS: made WebUI show IP updates earlier than the configured DDNS service check interval
- EoIP: added improvements to avoid packet loops
- Events juggler: removed Reboot after Input/Output option
- Events juggler: changed new instance to be turned off by default
- Events juggler: removed Custom HTTP headers space validation
- IPsec: enabled dead peer detection by default
- PPTP: added options for 'MPPE' configuration to WebUI
- PPTP: added 'Custom options' field to configure custom pppd options
- System
- Events Log: added events log file export
- Profiles: improved table data UI
- Recipients: changed email maximum password length to 128 characters
- Setup Wizard: removed host, port options and proxy settings section from RMS setup wizard
- WebUI: removed default password icons on "Internet Explorer" and "Microsoft Edge" browsers
- Kernel: updated version to 5.15.178
- Time Zone Database: updated version to 2025a
- Network
- Fix
- Network
- Dynamic routes: fixed OSPF issues of not displaying instances of 'area' and 'networks' sections
- Firewall: fixed certain "Attack prevention" limits making device unreachable
- Firewall: fixed attack prevention page with missing traffic rules
- Multi WAN: fixed incorrect WAN state being displayed when using failover
- Ports Settings: fixed port status speed badge for Ethernet(10mbps)
- Ports Settings: fixed port disable not working in port settings
- VXLAN: fixed package installation not starting service properly
- Wireless: fixed hover hint always being shown on delete button
- Services
- Data to Server: disallowed enabling Azure plugin without required options
- Data to Server: fixed editing Azure plugin configuration when "Device Provisioning Service" option is selected
- DNP3 Client: fixed an issue where application would terminate on startup
- Email Relay: fixed service crash when server tls certificate is used
- Events juggler: fixed broken port link speed reporting
- Events juggler: fixed condition bug on some plugins
- Events juggler: fixed LUA condition script support to correctly handle return values
- RMS: fixed serial code copy button not being displayed
- SSTP: fixed the issue of the instance starting after upgrading the firmware
- Wireguard: fixed connection issues when peer is on the same network
- System
- API Core: fixed file upload issue which sometimes made WebUI unresponsive
- NTP: fixed time servers limit validation
- Package Manager: fixed displaying multiple same functionality buttons when package update fails
- Password Policy: fixed special characters validation
- Profiles: fixed loading screen reappearing after profile change fails
- Recipients: fixed email address validation
- WebUI: fixed enabled button being removed in some cards on medium sized screens
- Network
- CVE Patches
- CVE-2022-42721
- CVE-2023-7104
- CVE-2023-31489
- CVE-2024-9143
- CVE-2024-13176
- CVE-2025-0167
- CVE-2025-0665
- CVE-2025-0725
DAP14X_R_00.07.13.4 | 2025.04.04
- Improvements
- System
- RutOS: updated libubox
- System
- Fix
- System
- RutOS: fixed occasional ubus page fault after package install
- RutOS: fixed user group duplicate entries after applying backup
- System
DAP14X_R_00.07.13.3 | 2025.03.21
- Fix
- Network
- Multi WAN: fixed internet not being reachable from device when main WAN is down
- Services
- RMS: fixed connection retry interval count
- Network
DAP14X_R_00.07.13.2 | 2025.03.18
- Fix
- Network
- 802.1X Client: fixed 802.1x client not working when upgrading from an older firmware
- Multi WAN: fixed occasional IPsec startup issue after reboot with Multi WAN enabled
- Network
DAP14X_R_00.07.13.1 | 2025.03.06
- Fix
- System
- Auto Reboot: fixed an issue causing the device to reboot immediately
- System
DAP14X_R_00.07.13 | 2025.03.03
- New
- Network
- BFD: added service
- Realtime Traffic: added historical data support for wireless devices
- Services
- EoIP: added service
- Events juggler: added service
- System
- Update Firmware: added link to FW & SDK download page
- Network
- Improvements
- Network
- Dynamic routes: added validation for NHRP to prevent using same interface on multiple instances
- Firewall: added possibility to manually specify conntrack helper for a port forward rule
- Firewall: moved IPtables NAT extra to package manager
- Static Routes: improved descriptions for routing rules
- Topology: moved to package manager
- VRF: moved page from Network sub-menu to Network > Routing
- Wireless: added rotating log files for wireless services
- iperf3: updated version to 3.17.1
- Services
- Dynamic DNS: added support for using local openvpn interface ip address
- Hotspot: added MAC address delimiter and case setting for Radius MAC authentication
- Hotspot: improved API validations
- IPsec: added ChaCha20-Poly1305 encryption algorithm
- IPsec: added periodic connection check
- Modbus Client: added store on data change mode
- Modbus Client: added ability to choose where to save database
- MQTT Modbus Gateway: improved constant $$NAME that can be defined in system configuration
- OpenVPN: improved statuses for instances
- OpenVPN: removed 'persist-tun' and 'persist-key' options from default configuration
- OpenVPN: enabled DCO support for CHACHA20-POLY1305 cipher
- Zerotier: added ability to upload a custom planet file
- System
- Access Control: improved UX when disabling HTTP and HTTPS local access settings
- Administration: added confirmation prompt when changing profiles
- Administration: updated hostname validation to allow numeric-only hostname
- Package Manager: added confirmation prompt when closing uploaded package modal
- Security: changed password policy to require at least one special character
- System Users: changed username validation to allow dots and underscores
- Update Firmware: added link to changelog page
- WebUI: removed basic/advanced mode
- WebUI: updated Teltonika logo
- Kernel: updated version to 5.15.176
- Network
- Fix
- Network
- Devices: fixed error handling for deleting non-existent bridge sections
- Firewall: fixed automatic conntrack helper not being assigned for port forward rules in some cases
- Firewall: fixed traffic rules "start_date" and "stop_date" option validations failing due to incorrect format
- Firewall: fixed incorrectly restricted AF23 value for traffic rule's DSCP option
- Multi WAN: fixed pings being lost for backup wired wan interfaces
- Network: fixed interfaces being displayed in the wrong page after updating with keep settings
- Network: fixed a name duplication validation error that occurred between the network interface and the VRF instance
- Network: fixed API failing to sort specific network interface configurations
- Network: fixed interface remove button disable state being shown only after status is loaded
- Network: fixed LAN interfaces sometimes not getting IPv6 prefix assigned on creation
- Static Routes: fixed missing route type validation for API
- VXLAN: made "Remote address" field required
- Wireless: fixed new network edit not opening after network with same name deleted
- Wireless: fixed automatic channel selection failing in Japan regulatory domain
- Wireless: fixed the missing firewall zone assignment for the created Wi-Fi interface
- Wireless: fixed memory leak in wireless service caused by AP configuration reloads
- Wireless: fixed inaccurate Hotspot error when saving SSIDs page
- Services
- Data to Server: fixed the OPC UA, DLMS, MBUS, and impulse counter inverted filtering logic
- Data to Server: fixed "Invert filter" option to be hidden when using "DLMS" type and "Data filtering" option is selected to "All"
- DLMS: fixed DLMS endpoint parameter validation
- DLMS: fixed device option data type validation for connections endpoints
- DLMS: fixed an issue where DLMS service could not read extended register type COSEM objects and display incorrect scaler value
- DLMS: fixed an issue where non-persistent connections did not close properly
- DMVPN: fixed NHRP multicast NFLOG group option not setting
- Hotspot: fixed bandwidth limits setting with "chilli_query" command
- Hotspot: fixed preserving Hotspot users between firmware upgrades
- IPsec: fixed status display when compatibility mode is used
- IPsec: fixed connections not terminating if instance is disabled
- IPsec: fixed route based ipsec mode
- L2TP: fixed occasional device hangs when routing L2TP traffic with "Software flow offload" enabled
- Modbus Client: fixed API error when 'function' option is not present in alarms/requests configuration POST request
- Modbus Client: fixed reusing connection in Modbus client Modbus request alarm action
- Modbus Client: fixed email alarm action when TLS is enabled
- MQTT Modbus Gateway: fixed client ID validation
- NHRP: fixed missing dependencies
- OpenVPN: fixed issues related to warnings when using external services
- RMS: fixed the "Connection state" status displayed as JSON when device language was set to anything other than English
- SMPP: fixed the "TLS/SSL" option to be visible even when the configuration is not enabled
- SNMP: fixed validation to prevent creating or editing analog_type trap instances in devices that do not support this functionality
- System
- Access Control: fixed "redirect_https" option reset after device reboot
- Access Control: fixed default HTTPS CA certificate generation
- Date & Time: fixed time synchronization with the browser when using Europe/Kyiv timezone
- Package Manager: fixed spinner position in package table
- Package Manager: fixed possible config migration issues for installed packages
- Update Firmware: fixed unnecessary FOTA requests when FOTA is disabled
- Network
- CVE Patches
- CVE-2022-49043
- CVE-2024-5290
- CVE-2024-9287
- CVE-2024-11053
- CVE-2024-34459
- CVE-2024-53580
- CVE-2024-56171
- CVE-2025-24928
- CVE-2025-27113
DAP14X_R_00.07.12.3 | 2025.02.14
- New
- Services
- Modbus Client: added an endpoint that returns status for a single Modbus request
- Services
- Fix
- Services
- IPsec: fixed kernel warnings when custom NAT rules are used with "IPsec Software Flow Offload" enabled
- OpenVPN: fixed an issue with config file parsing when carriage return characters were present
- OpenVPN: fixed parsing of the 'Protocol','Port' and 'LZO' options from the config file
- Services
DAP14X_R_00.07.12 | 2025.01.20
- Initial firmware release