Jump to content

RUT241 Firmware Downloads: Difference between revisions

no edit summary
No edit summary
No edit summary
Line 6: Line 6:


==Changelog==
==Changelog==
===<b><span class="plainlinks">[https://firmware.teltonika-networks.com/7.5/RUT2M/RUT2M_R_00.07.05_WEBUI.bin RUT2M_R_00.07.05]</span></b> | 2023.10.09===
* <b>New</b>
** <b>Network</b>
*** Added "shared.m2m.ch" APN for Swisscom IoT operator to APN database
*** Added "gamma" APN to auto-APN database
*** Added "soracom.io" APN for Soracom operator to APN database
*** Added "simbase" APN to auto-APN database
*** Added "pnd" APN for Pond IoT to auto-APN database
*** Added "spitfire1" APN for Spitfire operator to APN database
*** New argument in "gsmctl" CLI command for Carrier aggregation
*** Numeric mode support for modem AT commands
*** Enabled dynamic MTU configuration on mobile interfaces by default
*** WDS support for wireless bridging
** <b>Services</b>
*** DLMS Client package
*** 7zip package
*** TincVPN package
*** Added router uptime and mobile connection uptime data parameters to SNMP
*** Custom MQTT publisher/subscriber topics definition support
*** Alternative configuration file upload support for MQTT Broker service
*** Device Provisioning Service support for Azure IoT Hub service
*** Added more mobile usage parameters to SNMP
** <b>WebUI</b>
*** Firewall status page
*** Page search feature
*** Network Topology page
*** "Allow insecure connection" option for MQTT TLS protocol in Data to Server service
*** Package Restore feature Enable/Disable option
*** Hotspot client connection/disconnection trap option for SNMP service
*** Added Events log trap option for SNMP service
*** Confirm dialog when cancelling a verified package in Package Manager
*** "Bridge ALPN" option for Bridge configuration in MQTT Broker service
*** New subtypes of events that specify a specific port on "Events Reporting" and "SNMP Trap rules" pages
*** Specific firmware packages repository link in Package Manager page
*** Ability to enter decryption passphrase for encrypted private keys
*** "Reconnect" button in RMS page
*** New event  "Device startup completed" in Events Reporting service
*** Port status and configuration page
*** Wireless interface QR code generator
*** Channel analysis page Status -> Wireless -> Channel Analysis
*** Disabled direct network interface deletion when it is associated with a wireless interface
*** Limited to a single section configuration and added IP address field for Relayd service
*** "Fast roaming" configuration for Wireless service in Client mode
*** Updated Status->Network->Wireless page to display interfaces as cards and added ability to filter connected clients by selected interface
*** Modem Debug page
*** APN database management page added to package manager
*** Added "Message forwarding" option in SMS Rules page when rule type is "Execute custom script"
*** Ability to unblock SIM card and insert SIM PIN in Overview page
*** New SMS rules "Reset mobile connection" and "Reload config"
*** "SMS limit clear due" display in Overview page
*** Added modem temperature to System -> Status page
*** IP6 table configuration option for DHCPv6 protocol in Network -> WAN page
** <b>System</b>
*** Mechanism to rebrand WebUI using GPL
*** Possiblity to create web applications with closed-source GPL
* <b>Improvements</b>
** <b>Network</b>
*** Moved FRR VTYSH package to package manager
*** Made newly created Firewall Traffic, NAT rules and Port Forwards disabled by default
*** Improved Interfaces to enable IPv6 DHCP server when mobile v6 or v4v6 PDP type is set
*** Improved auto APN selection
*** SMS sending event is now logged into events log
*** Improved roaming control
*** Removed unused APN usernames and passwords from auto-APN database
*** Added connection to the operator when no mobile interfaces are active
*** Improved VoLTE management functions
*** Improved cases where Low Signal Reconnect sometimes executed prematurely
*** Improved wrong SIM PIN remove logic
*** Added automatic reconfiguration when switching between wireless interface modes
*** Added automatically generated name option for new network
*** WPA3/WPA2 (PSK/SAE) mixed mode is now default encryption standard
*** Improved operator information parsing logic on MeiG modem
** <b>Services</b>
*** New reworked Data to Server
*** UPNP moved to package manager
*** Added IPv6 support for Modbus TCP Server/Client services
*** Refactored Azure IoT Hub service
*** Improved resiliency to timeouts in Modbus Client service
*** Added PDU data type to Modbus read requests
*** Added new formatters for MQTT alarms in Modbus Client service
*** Added main section to make test functions independent in Modbus Client service
*** Improved WAN IP register reading time in Modbus service
*** Sped up default profile and profile template generation for Profiles functionality
*** Optimized profile change time for Profiles functionality
*** Added IPv6 support for Stunnel VPN
*** Added MAC blocking for client connections after set amount of failed login attempts in Hotspot service
*** Improved TCPdump by allowing to capture packets from any interface
*** Added OSPF support for DMVPN
*** Updated Hotspot password hashing to sha512
*** A single SMS message with multiple PDUs is sent instead of multiple SMS messages in Email to SMS service
*** Allowed connection to SMPP server using IPv6 address
*** Extended IP unblock action functionality in SMS Utilities
*** Increased allowed Email to SMS service message size to 61440 bytes
*** Added I/O pin name to trap notification message
** <b>WebUI</b>
*** Reorganized menu
*** Updated header design
*** Split Interfaces configuration in Advanced mode into two pages: WAN and LAN, identically as in Basic WebUI mode
*** Moved Interfaces IPv6 configuration into seperate tab
*** Added client/server status information in OpenVPN instance overview page
*** Added more IPv6 information to interface status in Interfaces page
*** Removed "Custom delegated IPv6-prefix" field from DHCPv6 configuration in Interfaces page
*** Disabled DHCPv6 interface editing while in basic mode
*** Refactored custom DHCP options into seperate modal
*** Added automatic start and end IP allocation for DHCP server configuration in Interfaces
*** Added client/server status information in L2TP VPN page
*** Added "MTU" field to L2TP client configuration page
*** Added CHAP, PAP and MSCHAP-v2 authentication fields to L2TP instance configuration
*** Added more detailed IPsec VPN status information
*** Encryption AES-256-CBC added as default in OpenVPN
*** Added "Authentication algorithm" support to OpenVPN configuration with static key mode
*** Added GRE (DMVPN) VPN tunnel source support to any instead of specific interface
*** Improved Hotspot landing page theme package removal
*** Added upload and download theme functionality to Hotspot Landing page
*** Improved ZeroTier VPN bridge configuration
*** Added ability to adjust order of rules in Firewall page
*** Added IPv6 RAW table to be displayed in Status -> Firewall
*** Improved file upload component"s visual appearance
*** Change "Allow anonymous" option default value to 0 in MQTT Broker
*** Added option to specify "Client ID" in MQTT Publisher
*** Added functionality to select specific interface in Web Filter service
*** Allowed to select  FTP server subfolder in Traffic Logging service
*** Renamed various service master/slave naming convention in config files, package names and webUI to client/server
*** Added "Create static" button in Status -> Network -> LAN which bind DHCP lease for device
*** Updated Status -> Network -> Mobile page layout
*** Added bandwidth, provider in Status -> Network -> Mobile page
*** Added colors for signal strength values in Status -> Network -> Mobile page
*** Added frequency, pcid, mcc, mnc and LAC values in Status->Network->Mobile page
*** Refactored network type selection in Network -> Mobile -> General page
*** Serving cell information is not returned anymore when SIM card is not inserted
*** Added button in a Scanned operators table which allows to add an operator to the operator list
*** Added search bar in Mobile Utilities -> SMS Utilities page
*** Added SMS sent and limit count to Network -> Mobile -> General page
*** Updated Mobile Signal graphs to show EC/IO and RSCP values when network type is 3G
*** Added DFS channel marking in Network -> Wireless
*** Show wireless MAC address even when interface is inactive in Status -> System page
*** Merged Multi AP configuration to wireless interface edit modal
*** Added automatic network switch to bridge if selected in Wireless configuration
*** Added default encryption for newly created wireless interfaces
*** Simplified "802.11r Fast Transition" configuration options in Wireless interface configuration
** <b>System</b>
*** Updated kernel version to 5.4.251
*** Updated UCI version to 2021-10-22
*** Updated SSHFS version to 3.7.1
*** Updated FRR suite to 8.4.2
*** Updated cURL version to 8.2.0
*** Updated TCPdump version to 4.99.4
*** Updated C-ares version to 1.19.1
*** Updated curl version to 7.88.0
*** Updated iproute2 version to 5.19.0
*** Updated libubox package version to 2021-08-19
*** Added CVE patch CVE-2023-2650
*** Added additional firmware information in CLI prompt banner
*** Connection mode LED now blinks on data transfer
*** Changed "routername" to "devicename" in system config file
*** Made all clients get disconnected out once dropbear service is disabled
*** Improved firmware downgrade restrictions for certain regions
*** Device name is now displayed in browser tab when in WebUI login page
*** Added NF conntrack information in generated troubleshoot archive
* <b>Fix</b>
** <b>Network</b>
*** Fixed UDP Broadcast Relay service crashing on start without physical network device
*** Fixed SMS limit period migration
*** Fixed SMS limit size breaking various functionality
*** Fixed custom IPv6 DNS option not overriding default DNS from operator
*** Fixed an issue with blacklist and whitelist connection
*** Fixed multipart SMS handling
*** Fixed wrong SIM state display when SIM is fully blocked
*** Fixed incorrect virginmobile APN MNC
*** Fixed mobile operator scanning fault when no mobile interfaces are active
*** Fixed mobile interfaces generating multiple events on mobile connection
*** Fixed PDU SMS parsing when operator provides user data header in single part SMS
*** Added scheduled data limit clear for inactive mobile interfaces
*** Fixed wrong or empty WAN state info
*** Fixed Wireless scanning issue with certain configuration
*** Fixed Wireless transmit power changing without user input after saving different country code
*** Fixed clients isolation functionality in Wireless
*** Fixed Wireless STA authentification failure in case of channel change
*** Fixed Multi AP startup when changing Multi AP configuration in Wireless
*** Fixed client connection to EAP Wireless network
*** Fixed LTE band 14 management with Quectel modems
*** Fixed Wireless disconnection issues
*** Fixed connection tracking for main interface in Failover
** <b>Services</b>
*** Fixed reconnecting to inactive connections for Modbus Server service
*** Fixed Modbus Client response after reboot write request
*** Fixed Modbus Server to show error when trying to get operator name without SIM
*** Updated Modbus Client to handle large numbers of schedule rules, when frequency is set to schedule (Daini
*** Fixed “Input” rule displaying incorrect and missing ports in Network -> Firewall -> Traffic Rules
*** Fixed WireGuard VPN endpoint resolving problem
*** Peer cache is no longer deleted when ZeroTier service is restarted
*** Fixed RMS data collection about the list of devices connected to WiFi
*** Fixed showing incorrect Internet state in RMS
*** Fixed WiFi client info display in RMS
*** Implemented error handling when device is blocked or unrecognized by RMS
*** Fixed L2TP client sometimes not adding routes on successful connection
*** Fixed NTP time sync with browser functionality in some edge cases
*** Fixed reinstalled packages" verification when device name is changed
*** Fixed an issue where signal query would return invalid value instead of error in case of no signal in MQTT Publisher service
*** Fixed OpenVPN firewall rule creation for both IPv4 and IPv6
*** Fixed OpenVPN server crash loop after changing authentification from TLS to Static Key
*** Fixed IPsec VPN connection problem with small lifetime values
*** Fixed IPsec "Default Route" not working when Flow Offloading is enabled
*** Fixed an issue where system directory could be used as a mount point in SSHFS service
*** Fixed IP block feature to unblock an OpenVPN IP address on successful authentification
*** Fixed package installation process bug when packages have different architecture names
*** Added "bearer token" authentication functionality in Dynamic DNS
*** Fixed MQTT Broker "local_port" option keep settings migration
*** Remove public keys when key-based authentication is disabled in Access Control
*** Fixed "Parity" field "Mark" and "Space" options being ignored in DNP3 Serial services
*** Corrected SNMP MIB file syntax according to standards
*** Fixed returned port count in SNMP
*** Fixed disabled CLI remote access taking up a session slot
*** Fixed received SMS messages" parsing with trailing whitespaces
*** Fixed VPN status rule message text in SMS Utilities
** <b>WebUI</b>
*** Fixed empty events cards in Overview page when no content is available
*** Fixed modal form inputs not clearing upon closing after nested modal is saved
*** Fixed select menu closing when selecting custom option
*** Fixed multi select expanding table row when adding new values
*** Fixed global section caching after deleting a section in a table
*** Fixed unpredictable search logic in tables
*** Fixed interfaces reordering by metrics in Failover page
*** Removed ability to select ports on ICMP and ESP protocol in Failover page
*** Fixed wrong status when interface is disabled in Failover page
*** Fixed firewall zone and rule creation/deletion on VPN configuration creation/deletion
*** Fixed STP enabling issue in Interfaces
*** Fixed EIGRP status info in Dynamic Routes
*** Fixed issue with custom DHCP options where you could not have multiple values per rule
*** Fixed Routing/NAT Offloading section display in Network -> Firewall -> General Settings when device is not supported
*** Fixed SSH/HTTP/HTTPS/ICMP setting in Network -> Firewall -> Attack Prevention page
*** Fixed failing Firewall rules with united protocol formats
*** Fixed zone select component not closing options menu when selecting an option in Firewall pages
*** Fixed memory leak when cancelling file uploads on Chromium-based browser
*** Fixed group settings saving by removing deprecated ":section" routes in Administration -> User Settings -> System Users
*** Fixed allowing IDs above 247 in Modbus Client service
*** Fixed selecting SIM in Modbus Client service Alarms
*** Fixed Modbus Alarm telephone number limit
*** Fixed to show available options for test requests on error in Modbus Client service
*** Fixed Modbus Alarm I/O pin display values
*** Fixed issue when creating instance named "gre" does not show in GRE VPN
*** Remote endpoint field now allows underscore character in IPsec VPN
*** Fixed ZeroTier wrong service status display in Status -> Services
*** Fixed problems with L2TP/PPTP VPN firewall rules automatic creation
*** Fixed problem related to the enable/disable toggle in OpenVPN instance overview page
*** Added fixes for key-direction missing problem when uploading OpenVPN config file
*** Fixed login page read-only inputs after custom user logout
*** Fixed issue when double clicking firmware upgrade cancel button returned error
*** Fixed Package Manager prompt message to appear when package requires network restart
*** Fixed showing in queue packages when they contained special symbols in the Package Manager page
*** Fixed various visual Side Widget bugs
*** Fixed Data to Server DNP3 filter from flash display
*** Fixed incorrect source data displayed in Realtime Data -> Connections table
*** Fixed memory expansion confirmation prompt title
*** Fixed incorrect configuration saving in Hotspot 2.0 service
*** Disabled password hashing for new user creation in Hotspot service
*** Fixed Hotspot landing page themes saving bug
*** Fixed test email sending to more than one recipient in Events Reporting page
*** Fixed VLAN OID values in SNMP service
*** Output proper error message in case of hardware not being supported in Firmware Upgrade
*** Fixed being able to open side widget when user does not have read access
*** Fixed profile creation when current configuration is not present
*** Fixed wrong protocol data display in "Access control" page
*** Fixed LAN interfaces not showing up before WAN interfaces in Status -> Realtime Data -> Traffic
*** Fixed carrier aggregation information when no connection is made or SIM card is not inserted
*** Changed representation of mobile cell ID from hexadecimal to integer type
*** Fixed Mobile Utilities "SMS forwarding to HTTP" URL generation
*** Fixed an issue where sometimes bands were not represented correctly on certain modems
*** Fixed provider information and IMSI value representation when SIM and modem cannot provide this information
*** Fixed mobile pages throwing 404 error when modem disconnects
*** Fixed WebUI showing mobile connection when no SIM card is inserted
*** Updated Network -> Wireless interface add and delete button visibility in basic mode
*** Fixed Wireless Multi AP incorrect SSID list after removal of an instance
*** Fixed MAC address filtering in Network -> Wireless page to list only connected WiFi devices
*** Fixed "Clear Collect Data" button logic to not clear overall mobile usage info
*** Fixed "Used data" showing large negative numbers for disabled mobile interfaces with Data Limit enabled
*** Fixed error when user has no write permissions in Speed Test page
** <b>System</b>
*** Patched CVE-2023-0386 vulnerability
*** Patched CVE-2023-0464 vulnerability
*** Patched CVE-2023-0465 vulnerability
*** Patched CVE-2023-2602 vulnerability
*** Patched CVE-2023-3772 vulnerability
*** Patched CVE-2023-4128 vulnerability
*** Patched CVE-2023-33476 vulnerability
*** Patched CVE-2023-28484 vulnerability
*** Patched CVE-2023-29469 vulnerability
*** Patched CVE-2023-31490 vulnerability
*** Patched CVE-2023-36369 vulnerability
*** Patched CVE-2023-48174 vulnerability
*** Delayed Custom Scripts execution on boot, after storage devices are mounted
*** Fixed Custom Scripts permissions after save
*** Fixed Y2K38 bug
*** Fixed downloading of certificates that have a space in their name in Administration -> Certificates -> Certificates Manager
*** Fixed Events Log database rotation to prevent log partition space exhaustion
*** Fixed duplication and sorting of all events IDs in Events Log
*** Fixed FOTA crash when current hours is with leading 0
*** Fixed crontab job removal after disabling FOTA
*** Changed Mosquitto build options to not include cJSON library
*** Fixed device name resetting to default upon refresh in Administration


===<b>[[Media:RUT2M_R_00.07.04.5_WEBUI.bin|RUT2M_R_00.07.04.5]]</b> | 2023.07.24===
===<b>[[Media:RUT2M_R_00.07.04.5_WEBUI.bin|RUT2M_R_00.07.04.5]]</b> | 2023.07.24===