Jump to content

RUTX08 Firmware Downloads: Difference between revisions

no edit summary
No edit summary
No edit summary
(15 intermediate revisions by 2 users not shown)
Line 6: Line 6:


==Changelog==
==Changelog==
<!--NEW_FW-->
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.6.8/RUTX/RUTX_R_00.07.06.8_WEBUI.bin RUTX_R_00.07.06.8]</span></b> | 2024.03.25===
----
* Global changelog for <b>R_00.07.06.8</b> - [[Global RUTOS changelog#R_00.07.06.8|LINK]]
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.6.6/RUTX/RUTX_R_00.07.06.6_WEBUI.bin RUTX_R_00.07.06.6]</span></b> | 2024.03.04===
----
* Global changelog for <b>R_00.07.06.6</b> - [[Global RUTOS changelog#R_00.07.06.6|LINK]]
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.6.5/RUTX/RUTX_R_00.07.06.5_WEBUI.bin RUTX_R_00.07.06.5]</span></b> | 2024.02.21===
----
* Global changelog for <b>R_00.07.06.5</b> - [[Global RUTOS changelog#R_00.07.06.5|LINK]]
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.6.3/RUTX/RUTX_R_00.07.06.3_WEBUI.bin RUTX_R_00.07.06.3]</span></b> | 2024.01.17===
----
* Global changelog for <b>R_00.07.06.3</b> - [[Global RUTOS changelog#R_00.07.06.3|LINK]]
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.6.1/RUTX/RUTX_R_00.07.06.1_WEBUI.bin RUTX_R_00.07.06.1]</span></b> | 2024.01.04===
* <b>Fix</b>
** <b>Services</b>
*** Fixed issue with NTPclient zombie processes
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.6/RUTX/RUTX_R_00.07.06_WEBUI.bin RUTX_R_00.07.06]</span></b> | 2023.12.20===
* <b>New</b>
** <b>Services</b>
*** Added OPC UA Server
*** Added the ability to set port for TACACS+ in PAM service
*** Added switch to enable using root certificate authority for MQTT alarms in Modbus Client services
*** Added new alarm action "Ubus event" in Modbus Client services
*** Added new input "Modbus alarms" in Data to Server service
*** Added wget ping subtype support in Events Reporting service
*** Added new I/O SNMP OID that returns numeric I/O state
*** Added TLS support for OverIP serial functionality
** <b>WebUI</b>
*** Added Tailscale VPN support
*** Renewed user interface design
*** Added network interface name change functionality
*** Added last resort configuration option for multiwan policy rules
** <b>System</b>
*** Added ability to enable/disable SSH access for specific users in System Users
*** API support
* <b>Improvements</b>
** <b>Services</b>
*** Expanded GRE VPN keep alive functionality to disable routes from unreachable tunnel
*** Added PKCS#12 certificate container authentication method in IPsec VPN
*** Added TLV message_payload support for SNMP service
*** Added Purple.ai configuration profile
*** Replaced option "No leading zeros" with "Remove all zeros" in Over IP serial functionality
*** Added reboot on storage device disappearance and re-appearance
** <b>WebUI</b>
*** Improved Events Log page loading by adding asynchronous pagination
*** Removed requirement for Diffie-Hellman parameters in OpenVPN service
*** Added improvements for creating OpenVPN IPv6 configurations
*** Added auto redirect after changing router's IP address or port
*** Added "Interface" dropdown for interfaces selection in Wake on LAN service
*** Increased Data to Server service MQTT topic length limit to 65535 characters
*** Added OSPF external routes section to Status page
*** Moved device menu entry “Reboot” to header menu
** <b>System</b>
*** Added Mosquitto CVE patch 2023-28366
*** Added Mosquitto CVE patch 2023-3592
*** Updated hostapd version to 2023-09-08
*** Updated cURL version to 8.4.0
*** Updated kernel version to 5.10.199
*** Updated Mac80211 version to 6.1.24
*** Added RMS data display to generated troubleshoot
*** Added downloaded Package Manager packages list to generated troubleshoot
*** Added process activity load list to generated troubleshoot
*** Changed default OPKG feed to use Teltonika's URL
* <b>Fix</b>
** <b>Network</b>
*** Fixed DMVPN firewall rule creation issues
*** Fixed RUTX VLAN keep settings issue when WAN port configuration are overwritten with 1st vlan
*** Fixed Failover missing active rules when using multiple source and destination IP addresses
** <b>Services</b>
*** Fixed SSH module enable in PAM service
*** Added minimum free space check when saving logs to flash in Logging service
*** Fixed "Set multiple coils" function sending too many bytes in Modbus Client services
*** Fixed multiple Events Reporting messages being sent when Firewall configuration is changed
*** Fixed VRRP instances advertising wrong virtual IPs
*** Added Hotspot information in SNMP MIB file
*** Fixed registered Hotspot Local Users showing random username
*** Fixed selection of MAC Auth for LAN interfaces in Hotspot service
*** Fixed inconsistent Hotspot login behaviour when using MAC Auth with Password
*** fixed instance shutdown after last local user deletion
*** Fixed RMS Hotspot data display for devices without WiFi support
*** Fixed serial timeout not working in Over IP serial functionality
*** Removed "Echo" option in Modbus TCP over Serial functionality
*** Fixed CRC verification failing when CRC is correct in Modbus TCP over Serial functionality
*** Fixed crash when getting unexpected messages from RTU in Modbus TCP over Serial functionality
** <b>WebUI</b>
*** Fixed side menu style issues when Japanese language is used
*** Fixed displaying of vendor names in Topology page
*** Fixed language packs being selectable when still in Package Manager queue
*** Added ability to configure IPv6 BGP peer
*** Fixed realtime graphs responsive design issues
*** Fixed Network Shares users deletion
*** Fixed not all LAN interfaces shown in dropdown in Hotspot service page
** <b>System</b>
*** Patched FRR CVE-2023-38406
*** Patched FRR CVE-2023-38407
*** Patched FRR CVE-2023-41358
*** Patched FRR CVE-2023-41360
*** Patched FRR CVE-2023-41909
*** Patched FRR CVE-2023-47234
*** Patched FRR CVE-2023-47235
*** Patched OpenSSL CVE-2023-3446
*** Patched OpenSSL CVE-2023-3817
*** Patched LibXML2 CVE-2023-39615
*** Patched LibXML2 CVE-2023-45322
*** Patched FFMPEG CVE-2021-28429
*** Patched FFMPEG CVE-2022-48434
*** Patched dnsmasq CVE-2023-28450
*** Fixed running out of space when SSHFS is mounted in /tmp while generating troubleshoot
*** Fixed WebUI access after upgrading from legacy RutOS version
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.5.4/RUTX/RUTX_R_00.07.05.4_WEBUI.bin RUTX_R_00.07.05.4]</span></b> | 2023.11.09===
* <b>Improvements</b>
** <b>WebUI</b>
*** Improved asynchronous pagination in events log pages
*** Optimized Overview page load
*** Added resource loading cancellation after switching to different page
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.5.3/RUTX/RUTX_R_00.07.05.3_WEBUI.bin RUTX_R_00.07.05.3]</span></b> | 2023.10.30===
* <b>New</b>
** <b>System</b>
*** Added support for GD5F2GM7 and GD5F2GQ5 GigaDevice NAND flashes
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.5/RUTX/RUTX_R_00.07.05_WEBUI.bin RUTX_R_00.07.05]</span></b> | 2023.10.19===
* <b>New</b>
** <b>Network</b>
*** Added "shared.m2m.ch" APN for Swisscom IoT operator to APN database
*** Added "gamma" APN to auto-APN database
*** Added "soracom.io" APN for Soracom operator to APN database
*** Added "simbase" APN to auto-APN database
*** Added "pnd" APN for Pond IoT to auto-APN database
*** Added "spitfire1" APN for Spitfire operator to APN database
** <b>Services</b>
*** DLMS Client package
*** 7zip package
*** TincVPN package
*** Added router uptime and mobile connection uptime data parameters to SNMP
*** Custom MQTT publisher/subscriber topics definition support
*** Alternative configuration file upload support for MQTT Broker service
*** Device Provisioning Service support for Azure IoT Hub service
** <b>WebUI</b>
*** Firewall status page
*** Page search feature
*** Network Topology page
*** "Allow insecure connection" option for MQTT TLS protocol in Data to Server service
*** Package Restore feature Enable/Disable option
*** Hotspot client connection/disconnection trap option for SNMP service
*** Added Events log trap option for SNMP service
*** Confirm dialog when cancelling a verified package in Package Manager
*** "Bridge ALPN" option for Bridge configuration in MQTT Broker service
*** New subtypes of events that specify a specific port on "Events Reporting" and "SNMP Trap rules" pages
*** Specific firmware packages repository link in Package Manager page
*** Ability to enter decryption passphrase for encrypted private keys
*** "Reconnect" button in RMS page
*** New event "Device startup completed" in Events Reporting service
*** Port status and configuration page
*** IP6 table configuration option for DHCPv6 protocol in Network -> WAN page
** <b>System</b>
*** Mechanism to rebrand WebUI using GPL
*** Possiblity to create web applications with closed-source GPL
* <b>Improvements</b>
** <b>Network</b>
*** Moved FRR VTYSH package to package manager
*** Made newly created Firewall Traffic, NAT rules and Port Forwards disabled by default
*** Improved Interfaces to enable IPv6 DHCP server when mobile v6 or v4v6 PDP type is set
*** Improved IPSec performance throughput
** <b>Services</b>
*** New reworked Data to Server
*** UPNP moved to package manager
*** Added IPv6 support for Modbus TCP Server/Client services
*** Refactored Azure IoT Hub service
*** Improved resiliency to timeouts in Modbus Client service
*** Added PDU data type to Modbus read requests
*** Added new formatters for MQTT alarms in Modbus Client service
*** Added main section to make test functions independent in Modbus Client service
*** Improved WAN IP register reading time in Modbus service
*** Sped up default profile and profile template generation for Profiles functionality
*** Optimized profile change time for Profiles functionality
*** Added IPv6 support for Stunnel VPN
*** Added MAC blocking for client connections after set amount of failed login attempts in Hotspot service
*** Improved TCPdump by allowing to capture packets from any interface
*** Added OSPF support for DMVPN
*** Updated Hotspot password hashing to sha512
*** Added I/O pin name to trap notification message
** <b>WebUI</b>
*** Reorganized menu
*** Updated header design
*** Split Interfaces configuration in Advanced mode into two pages: WAN and LAN, identically as in Basic WebUI mode
*** Moved Interfaces IPv6 configuration into seperate tab
*** Added client/server status information in OpenVPN instance overview page
*** Added more IPv6 information to interface status in Interfaces page
*** Removed "Custom delegated IPv6-prefix" field from DHCPv6 configuration in Interfaces page
*** Disabled DHCPv6 interface editing while in basic mode
*** Refactored custom DHCP options into seperate modal
*** Added automatic start and end IP allocation for DHCP server configuration in Interfaces
*** Added client/server status information in L2TP VPN page
*** Added "MTU" field to L2TP client configuration page
*** Added CHAP, PAP and MSCHAP-v2 authentication fields to L2TP instance configuration
*** Added more detailed IPsec VPN status information
*** Encryption AES-256-CBC added as default in OpenVPN
*** Added "Authentication algorithm" support to OpenVPN configuration with static key mode
*** Added GRE (DMVPN) VPN tunnel source support to any instead of specific interface
*** Improved Hotspot landing page theme package removal
*** Added upload and download theme functionality to Hotspot Landing page
*** Improved ZeroTier VPN bridge configuration
*** Added ability to adjust order of rules in Firewall page
*** Added IPv6 RAW table to be displayed in Status -> Firewall
*** Improved file upload component's visual appearance
*** Change "Allow anonymous" option default value to 0 in MQTT Broker
*** Added option to specify "Client ID" in MQTT Publisher
*** Added functionality to select specific interface in Web Filter service
*** Allowed to select  FTP server subfolder in Traffic Logging service
*** Renamed various service master/slave naming convention in config files, package names and webUI to client/server
*** Added "Create static" button in Status -> Network -> LAN which bind DHCP lease for device
*** Removed redundant "Action" option in Periodic Reboot
** <b>System</b>
*** Updated kernel version to 5.10.188
*** Updated UCI version to 2021-10-22
*** Updated SSHFS version to 3.7.1
*** Updated FRR suite to 8.4.2
*** Updated cURL version to 8.2.0
*** Updated TCPdump version to 4.99.4
*** Updated C-ares version to 1.19.1
*** Updated iproute2 version to 5.19.0
*** Updated libubox package version to 2021-08-19
*** Added CVE patch CVE-2023-2650
*** Added additional firmware information in CLI prompt banner
*** Connection mode LED now blinks on data transfer
*** Changed "routername" to "devicename" in system config file
*** Made all clients get disconnected out once dropbear service is disabled
*** Improved firmware downgrade restrictions for certain regions
*** Device name is now displayed in browser tab when in WebUI login page
*** Added NF conntrack information in generated troubleshoot archive
* <b>Fix</b>
** <b>Network</b>
*** Fixed UDP Broadcast Relay service crashing on start without physical network device
*** Fixed wrong or empty WAN state info
*** Fixed connection tracking for main interface in Failover
** <b>Services</b>
*** Fixed reconnecting to inactive connections for Modbus Server service
*** Fixed Modbus Client response after reboot write request
*** Fixed Modbus Server to show error when trying to get operator name without SIM
*** Updated Modbus Client to handle large numbers of schedule rules, when frequency is set to schedule (Daini
*** Fixed “Input” rule displaying incorrect and missing ports in Network -> Firewall -> Traffic Rules
*** Fixed WireGuard VPN endpoint resolving problem
*** Peer cache is no longer deleted when ZeroTier service is restarted
*** Fixed RMS data collection about the list of devices connected to WiFi
*** Fixed showing incorrect Internet state in RMS
*** Fixed WiFi client info display in RMS
*** Implemented error handling when device is blocked or unrecognized by RMS
*** Fixed L2TP client sometimes not adding routes on successful connection
*** Fixed NTP time sync with browser functionality in some edge cases
*** Fixed reinstalled packages" verification when device name is changed
*** Fixed an issue where signal query would return invalid value instead of error in case of no signal in MQTT Publisher service
*** Fixed OpenVPN firewall rule creation for both IPv4 and IPv6
*** Fixed OpenVPN server crash loop after changing authentification from TLS to Static Key
*** Fixed IPsec VPN connection problem with small lifetime values
*** Fixed IPsec "Default Route" not working when Flow Offloading is enabled
*** Fixed an issue where system directory could be used as a mount point in SSHFS service
*** Fixed IP block feature to unblock an OpenVPN IP address on successful authentification
*** Fixed package installation process bug when packages have different architecture names
*** Added "bearer token" authentication functionality in Dynamic DNS
*** Fixed MQTT Broker "local_port" option keep settings migration
*** Remove public keys when key-based authentication is disabled in Access Control
*** Fixed "Parity" field "Mark" and "Space" options being ignored in DNP3 Serial services
*** Corrected SNMP MIB file syntax according to standards
*** Fixed returned port count in SNMP
*** Fixed disabled CLI remote access taking up a session slot
*** Fixed user deletion in Network Shares service
*** Fixed router reboot inconsistencies after Storage Memory Expansion
** <b>WebUI</b>
*** Fixed empty events cards in Overview page when no content is available
*** Fixed modal form inputs not clearing upon closing after nested modal is saved
*** Fixed select menu closing when selecting custom option
*** Fixed multi select expanding table row when adding new values
*** Fixed global section caching after deleting a section in a table
*** Fixed unpredictable search logic in tables
*** Fixed interfaces reordering by metrics in Failover page
*** Removed ability to select ports on ICMP and ESP protocol in Failover page
*** Fixed wrong status when interface is disabled in Failover page
*** Fixed firewall zone and rule creation/deletion on VPN configuration creation/deletion
*** Fixed STP enabling issue in Interfaces
*** Fixed EIGRP status info in Dynamic Routes
*** Fixed issue with custom DHCP options where you could not have multiple values per rule
*** Fixed Routing/NAT Offloading section display in Network -> Firewall -> General Settings when device is not supported
*** Fixed SSH/HTTP/HTTPS/ICMP setting in Network -> Firewall -> Attack Prevention page
*** Fixed failing Firewall rules with united protocol formats
*** Fixed zone select component not closing options menu when selecting an option in Firewall pages
*** Fixed memory leak when cancelling file uploads on Chromium-based browser
*** Fixed group settings saving by removing deprecated ":section" routes in Administration -> User Settings -> System Users
*** Fixed allowing IDs above 247 in Modbus Client service
*** Fixed selecting SIM in Modbus Client service Alarms
*** Fixed Modbus Alarm telephone number limit
*** Fixed to show available options for test requests on error in Modbus Client service
*** Fixed Modbus Alarm I/O pin display values
*** Fixed issue when creating instance named "gre" does not show in GRE VPN
*** Remote endpoint field now allows underscore character in IPsec VPN
*** Fixed ZeroTier wrong service status display in Status -> Services
*** Fixed problems with L2TP/PPTP VPN firewall rules automatic creation
*** Fixed problem related to the enable/disable toggle in OpenVPN instance overview page
*** Added fixes for key-direction missing problem when uploading OpenVPN config file
*** Fixed login page read-only inputs after custom user logout
*** Fixed issue when double clicking firmware upgrade cancel button returned error
*** Fixed Package Manager prompt message to appear when package requires network restart
*** Fixed showing in queue packages when they contained special symbols in the Package Manager page
*** Fixed various visual Side Widget bugs
*** Fixed Data to Server DNP3 filter from flash display
*** Fixed incorrect source data displayed in Realtime Data -> Connections table
*** Fixed memory expansion confirmation prompt title
*** Fixed incorrect configuration saving in Hotspot 2.0 service
*** Disabled password hashing for new user creation in Hotspot service
*** Fixed Hotspot landing page themes saving bug
*** Fixed test email sending to more than one recipient in Events Reporting page
*** Fixed VLAN OID values in SNMP service
*** Output proper error message in case of hardware not being supported in Firmware Upgrade
*** Fixed being able to open side widget when user does not have read access
*** Fixed profile creation when current configuration is not present
*** Fixed wrong protocol data display in "Access control" page
*** Fixed LAN interfaces not showing up before WAN interfaces in Status -> Realtime Data -> Traffic
*** Fixed incorrect Bluetooth details modal size
*** Updated to display "MAC address" on device details page
*** Fixed disabling DLNA service when USB drive is removed
*** Fixed error when user has no write permissions in Speed Test page
** <b>System</b>
*** Patched CVE-2023-0386 vulnerability
*** Patched CVE-2023-0464 vulnerability
*** Patched CVE-2023-0465 vulnerability
*** Patched CVE-2023-2602 vulnerability
*** Patched CVE-2023-3772 vulnerability
*** Patched CVE-2023-3773 vulnerability
*** Patched CVE-2023-4128 vulnerability
*** Patched CVE-2023-33476 vulnerability
*** Patched CVE-2023-28484 vulnerability
*** Patched CVE-2023-29469 vulnerability
*** Patched CVE-2023-31490 vulnerability
*** Patched CVE-2023-36369 vulnerability
*** Patched CVE-2023-40283 vulnerability
*** Patched CVE-2023-48174 vulnerability
*** Delayed Custom Scripts execution on boot, after storage devices are mounted
*** Fixed Custom Scripts permissions after save
*** Changed certificate expiry calculation mechanism to fix Y2K38 bug
*** Fixed downloading of certificates that have a space in their name in Administration -> Certificates -> Certificates Manager
*** Fixed Events Log database rotation to prevent log partition space exhaustion
*** Fixed duplication and sorting of all events IDs in Events Log
*** Fixed FOTA crash when current hours is with leading 0
*** Fixed crontab job removal after disabling FOTA
*** Changed Mosquitto build options to not include cJSON library
*** Fixed device name resetting to default upon refresh in Administration
*** Fixed backup upload validation with memory expansion
===<b>[[Media:RUTX_R_00.07.04.5_WEBUI.bin|RUTX_R_00.07.04.5]]</b> | 2023.07.24===
* <b>Improvements</b>
** <b>Network</b>
*** Added metric field support in BGP Route-maps page


===<b>[[Media:RUTX_R_00.07.04.4_WEBUI.bin|RUTX_R_00.07.04.4]]</b> | 2023.06.26===
===<b>[[Media:RUTX_R_00.07.04.4_WEBUI.bin|RUTX_R_00.07.04.4]]</b> | 2023.06.26===