Firmware Release Notes - October 2, 2007


XINCOM 502 ver 2.2 rel 0A Built Date: October 2, 2007 (ARM9 and ADMtek chipsets)
XINCOM 503 ver 3.3 rel 0A Built Date: October 2, 2007 (ARM9 and ADMtek chipsets)
XINCOM 603 ver 3.3 rel 0A Built Date: October 2, 2007 (ARM9 and ADMtek chipsets)
XINCOM X16-R ver 8.0 rel 1A Built Date: October 2, 2007.

Note: Following enhancements and fixes are based on the version built on Apr. 14, 2007.


General Fixes (Models 502, 503, 603, and X16-R)

  • IPSec passthru not working with clients without NATT enabled/feature.
  • WAN Status: percentage values would sometimes display incorrectly with values over 100%.
  • Failover mechanism fails for DHCP WAN port - The connection state for DHCP WAN port will alternate between connected and disconnected if "Connection Health Check" shows as fail.
  • Resolved PPPoE re-connection issue.
  • DNS Loopback query failure.
  • NAT timeout exception not working properly.
  • Issue with PPTP virtual server GREP packet not passing through
  • Static routing issue (Specify large Subnet mask).
  • PC's Traceroute from behind device issue (using UDP protocol).
  • The protocl binding settings would sometime affect other traffic not bound to a specific WAN port.
  • Host's traffic binding with DHCP server's turning off.
  • IPsec passthrough issue.

VPN Fixes (Models 503 and 603)

  • Issues regarding the establishement of tunnel between device and remote IPsec client which is behind a NAT device.
  • IPSec DPD failed to work properly.

Feature Enhancements (Models 502, 503, 603, and X16-R)

  • Add LAN Alias on LAN & DHCP web page.
  • Email Alert SMTP port number can be changed.
  • Add Session Persistency (Protocol, Port Range) on Advanced Feature web page.
  • URLs (Websites) visited log (by opening NAT log info level).
  • Enhance URL blocking entry capability by using ';' symbol to seperate each keyword e.g. yahoo.com;xincom.com;msn.
  • Add port conflict avoidence when in NAT (not NAPT) mode; useful for gaming type of traffic.
  • Add Alias local port range to support port translation for virtual server.
  • Add option to disable Local access to device setup web pages
  • Add priority on IPSec policy with same criteria (all same settings except interface). 503 and 603 models only

 


Firmware Release Notes - April 14, 2007


XINCOM 502 ver 2.2 rel 07 Built Date: Apr 14 2007 (ARM9 and ADMtek chipsets)
XINCOM 503 ver 3.3 rel 07 Built Date: Apr 14 2007 (ARM9 and ADMtek chipsets)
XINCOM 603 ver 3.3 rel 07 Built Date: Apr 14 2007 (ARM9 and ADMtek chipsets)
XINCOM X16-R ver 8.0 rel 16 Built Date: Apr 14 2007.


General Fixes (Models 502, 503, 603, and X16-R)

  • Active/Backup Wan interface smooth swap.
  • PPTP virtual server.
  • PPTP client passthru.
  • Failover on Bridge mode using DHCP (WAN interface).

VPN Fixes (Models 503 and 603)

  • Add IPSec deamon auto startup on backup interface.
  • Fix device rebooting/hung issue when Hex preshared key is applied.
  • Netbios thru tunnel.

Feature Enhancements (Models 502, 503, 603, and X16-R)

  • Add a simple network Diagnostic Tool, including ICMP, HTTP, DNS, ARP query.
  • Add HTTPS (443) port persistency (no more protocol & port binding rule for https access).
  • Add default routing support with NAT disabled.
  • QoS support with NAT disabled.
  • Adjustable sliding window size with NAT disabled.
  • Enhance H323 client passthru

 


5/9/2005: DPG503 Version 3.2 Release 2O

NOTE
The importance of each revision or bug fix is noted at the end of each description. The importance levels are denoted by:

Critical – This change drastically improves stability or usability of the router and it is urged that this update is applied before calling technical support for help with a problem.

Medium – This change improves the stability or usability of the router and it is recommended that you have this update installed if you are using the feature it applies to.

Low– This change is minor and is denoted next to corrections to text or minor interface improvements.


New Additions:

  1. A new flash section- TXT_SECTION- is created to store the configuration that will be reloaded while full firmware upgrading. (MEDIUM)
  2. VPN packets (ESP) apply to the QoS mechanism. (MEDIUM)
  3. Prompt dialog window to notify user when set to use DPD option (LOW)

Bug Fixes:

  1. PPPoE connection authentication and re-authentication issues. (CRITICAL)
  2. PPTP passthru time-outs. (MEDIUM)
  3. Fixed a bug with the PPPoE multi-sessions which are only available when the first one is connected. (LOW)
  4. User defined DNS server IP addresses are now available. (LOW)
  5. DNS loop back when using your own DNS server. (LOW)
  6. Fixed the bug on Protocol & Port Binding (LOW)
    • Overlapped rules checking now improved
    • Failure updating rules fixed
  7. Remove the function which checks the DMZ WAN IP Checking for DHCP and PPPoE connection types. (LOW)
  8. The port numbers 61440-65535 are reserved applications services running on the DPG Series device (example: DDNS), preventing conflicts with Virtual Servers or DMZ servers. (MEDIUM)
  9. Tracert problem: response from gateway of the WAN port skipped. (LOW)
  10. Fixed IP conflict when static interface set to use the same IP with DHCP interfaces. (LOW)
  11. Fixed the bug that the firmware of device with NULL MAC address can not be upgraded. (MEDIUM)
  12. Default PPTP MTU is changed from 1456 to 1460, and the user defined PPTP MTU can be configured via UI. (LOW)
  13. Fixed the bug on DDNS failover and recovery. (MEDIUM)
  14. Fixed IP conflict, add codes to avoid device's DHCP server offer the same IP (as the static host on its LAN, etc) to its DHCP clients. (LOW)
  15. Add codes to avoid device's DHCP interface to accept the IP used by another interface (static, etc) on its own. (LOW)
  16. Changed TCP_MSS (TCP Max. Segment Size) from 0x05b0(1456) to 0x05b4(1460). (LOW)
  17. Fixed the bug on Protocol & Port Binding (LOW)
    • Fixed the leak on Overlapped Rules Checking
    • Fixed the bug that the failure updated rule will be erased
  18. Fixed the bug on FTP in PASSIVE mode. (LOW)
  19. Remove PPP LCP Identification from PPPoE connection process. (LOW)
  20. Fixed the bug on PPP Identifier increment. (LOW)

VPN Bug Fixes:

  1. User initiated tunnel shutdown/restart over PPPoE connection could cause instability. (MEDIUM)
  2. When using DPD with the option Remove Tunnel, the remote side has trouble detecting a failure. (MEDIUM)
  3. Problem negotiating Phase 2 when both WAN links share the same IP segment. (MEDIUM)
  4. When two policies are pointing at the same Remote Security Gateway IP address, the router would not know which policy to use. (MEDIUM)
  5. After the first policy is added consecutive policies do not initialize properly when Manual Key is used. (MEDIUM)

3/7/2005: DPG503 Version 3.2 Release 2M


Revisions:

When one of the WAN ports is in the NORMAL state and the other one is in BACKUP, Bridge mode could only be set to strict binding. It is now possible to set the Bridge Mode to Loose Binding as well as Load Balancing. (LOW)

Bug Fixes:

  1. Transparent Bridge mode learns the MAC address of a machine and reacts (answers to the ARP request) incorrectly. (CRITICAL)
  2. Certain types and lengths of data would cause a system reboot when it’s coming out of a host system. (CRITICAL)
  3. In some cases the router will create an incorrect internal route. This happens when a dynamic link is disconnected and then reconnected. (MEDIUM)
  4. If a machine, which also happens to be the Gateway of the WAN1 and WAN2 connection and tries to access a Virtual Server behind the router through the WAN2 IP, the router would always send the packets back through WAN1 even if the Virtual Server is bound to both WAN ports. (MEDIUM)
  5. Previously PPPoE disconnect was not actually performed. When the now user presses the "Connect" button on "Advanced PPPoE", the page will successfully connect. (MEDIUM)
  6. When the device is used as a DNS proxy for LAN clients the selection method of DNS servers is now Round-Robin. (LOW)
  7. An empty page of DHCP clients could be displayed while an active DHCP client list could be reduced. (LOW)
  8. Multi-DMZ bug as follows is fixed. One host IP in LAN can only be mapped to one public IP address for WAN, but not multiple IP addresses. (LOW)

Known Issues:

Dynamic DNS client will not be able to update its DNS records with a range of ports in the Custom Virtual Server setting. EXAMPE: LAN port: 1024~1060 WAN port 1024~1060. (LOW)

VPN Revisions:

  1. Added Tunnel Status page to improve usability. (MEDIUM)
  2. Added View/Delete Group button on the status page. (LOW)

VPN Bug Fixes:

  1. User initiated tunnel shutdown/restart over PPPoE connection could cause instability. (MEDIUM)
  2. When using DPD with the option Remove Tunnel, the remote side has trouble detecting a failure. (MEDIUM)
  3. Problem negotiating Phase 2 when both WAN links share the same IP segment. (MEDIUM)
  4. When two policies are pointing at the same Remote Security Gateway IP address, the router would not know which policy to use. (MEDIUM)
  5. After the first policy is added consecutive policies do not initialize properly when Manual Key is used. (MEDIUM)

Known Issues:

When a VPN tunnel is established the remote web page of the VPN device is not able to be accessed from remote side even if the "remote admin" option is enabled. This will make the VPN box inaccessible by its local LAN temporarily. Seconds later this is restored. This bug is identified and is schedule to be fixed on next release. (LOW)


1/26/2005: DPG503 Version 3.2 Release 2L

Fixes and Additions:

  1. Fixed memory leak caused by ICMP dead peer detection.
  2. Fixed packet queue leak when one WAN port is disabled.
  3. Fixed VPN traffic through tunnel over PPPOE connection.
  4. Fixed VPN traffic problem using Distinguished Name as remote gateway.
  5. Fixed VPN policy options set/update problems (Loss of data would occur irregularly).
  6. Added exception handlers to take care of VPN reconnection.
  7. Added ICMP keepalive target host (Encrypted ICMP traffic through tunnel) feature for DPD.
  8. Fixed NAT Alias bug (Alias IP was not recognized by device).
  9. Fixed VPN LOG bug. With the Keep Sent flag enabled, the VPN log message would be deleted if the syslog server is enabled.
  10. Defaut health checking method for PPPoE is changed from Traffic I/O to none.
  11. Block URL is improved.
  12. DNS Loopback works without DNS server being enabled.
  13. SNMP system time reset period is extended from about 12 days to about 248 days.
 

12/27/2004: DPG503 Version 3.2 Release 2I

VPN Fixes :

  1. Fix fatal bug which  would  lead to VPN stability problems.
  2. Enhance  VPN Failover function alit.
  3. Improve  DPD  support as per R FC 3706.
  4. Error when adding VPN policy fixed.
  5. Improve NetBIOS over VPN  support.
  6. Changes to the NAT configuration menu.
  7. Typo corrected in the VPN Global Setting menu.
 

12/2/2004: DPG503 Version 3.2 Release 2F

VPN Fixes :
1. If Policy Traffic selector is changed from subnet to IP range or vice versa would cause the device to become unstable.
2. Policy's check ESP pad option is not working.
3. AES 256 bits not working.

Health Check enhancement:
1. Newly added Traffic I/O method and interval.
2. HTTP health check cause memory leak.

Port and Protocol binding fixes:
Entry with "ALL protocol" selected is not working 100%.

Entry editting problem:
1. Error occurried after QOS and DNS last entry's deletion.
2. VPN policy update from subnet to IP range log failure shown

Custom Vitrual server:
Remote IP ranges not working if IP values are not in order.

Device web server:
Web interface lockup after some accesse

 

10/26/2004: DPG503 Version 3.2 Release 27

New Additions

  • NAT 1-to-1 capability
  • Added tracert (Trace Route) functionality

Revisions:

  • Improved support for software VPN client by revising IP packet fragmentation
Copyright © 2007 XINCOM, LLC