******************************************************************************************** Release Notes for Vigor2600 Router Firmware Firmware Version : v2.5.6 (Release) Released : 5th July 2005 Build Date : Wed Jun 22 11:41:59.77 20 Only for Models : Vigor2600, Vigor2600X, Vigor2600We, Vigor2600W ADSL Firmware : 41E2BE2C (Regular) / 43E2EAA1 (UK2) F/W Filenames : v2k6k910.all / v2k6k910.rst (UK Firmware) v2k60910.rst / v2k60910.all (UK2 Firmware) (Use the UK2 firmware ONLY when necessary - see below) Locale : UK / Annex A Only *************************************************************************************** Note : The RST file will clear out all existing router settings back to factory defaults. You must use the RST file if you are upgrading from firmware 2.1r or earlier, or experience unusual results after upgrading with the ALL file. The special 'UK2' version of the firmware is only for use where the standard firmware cannot sync. reliably on your ADSL line, for example on very long line with high attenuation. Use the standard firmware otherwise. Do not then attempt to restore old settings from a backup file made with from previous firmware or from another model. After upgrading, check that your web configurator shows the firmware version/build listed above. [Changes / New functions since firmware 2.5.5_UK] [1. New functions] 1. Add Cone NAT facility; this should provide greater compatibility for various multimedia apps through NAT. 2. Support defense Worm function and disable by default. 4. Support telnet command "show session" to see the session usage. [2. Fixed Issues ] 1. If the user doesn't assign DNS server in the router the DHCP server wasn't always assigning the router IP as the DNS server in order to use the DNS proxy facility by default. 2. Fixed a DNS proxy error whereby it returned the wrong source IP. 3. Fixed a MRU/MRRU negotiation issue. 4. Fail to change the WAN IP address from the Internet by using telent. 5. WAN using DHCP client. The IP address could sometimes become 0.0.0.0 after doing some telnet configuration. 6. When ISDN Bandwidth-on-demand (BOD) is used with Dual-ISP, transmission of packets may sometimes packet may cease. successfully send out. 7. Add ISDN Call_Bumping function, for out-going call from other ISDN phone on the same bus (does not include BT Highway POTS ports). 8. After PPPoE backup to ISDN, ISDN would not always drop when PPPoE resumes. 9. ISDN Layer 1 driver enhancement, to handle un-stable ISDN S-bus signal. [ 3. Improved Issues ] 1. Fixed eboot when handling malformed DNS/MX packet 3. DMZ host may crash the router under heavy load. 4. Improved the uPNP's issue for My Network Places. 5. Improved the L2TP performance. 6. Change CLI command "wan mtu" into "wan ppp_mss" 7. Vigor Router can pass the NetBIOS Broadcast packets through VPN Tunnel. 8. The Remote Dail in VPN pass through from the Nat Host. 9. If user doesn't assign DNS server in the router, the DHCP will assign router IP as the DNS server. 10. Corrected the DNS proxy error in wrong source IP. 11. Fail to change the WAN IP address from the Internet by using telent. 12. Fixed WAN IP from changing to 0.0.0.0 after telnet configuration. 13. When ISDN Bandwidth-on-demand (BOD) work with Dual-ISP, packet may not successfully send out. 14. Add ISDN Call_Bumping function, for out-going call from other ISDN phone on the same bus. 15. After PPPoE backup to ISDN, ISDN will not drop when PPPoE resume. 16. ISDN Layer 1 driver enhancement, to handle un-stable ISDN S-bus signal. 17. VPN IPSec Interoperability with Cisco. 18. Improve the VPN performance.(change VPN MTU to 1296). 19. Improve DMZ with "Wan IP Alias". ( Multi-DMZ issue) 20. Correct NAT loop-thru issue. 21. Correct DSL default settings for UK. 22. Correct ISDN 128k DNS issue. 23. Correct NAT session Table status 3 issue. 24. Correct ARP Mechanism / Non Class C subnets issue. 25. Correct buffer leakage while using PPTP passthrough. 26. Correct buffer leakage while using L2TP passthrough. 27. VPN cange default route will cause tunnel broken. 28. Correct UDP Fragment can't send from lan to internet when WAN is PPPoE. 29. Change PPPFSM timeout from 3 secs to 8 secs for some Radius server reply too slow. 30. Add "adsl psd W x" to set any x value to psdm0. 31. Correct 'asl ppp' command issue. [Changes / New functions since firmware 2.5.4_UK] 1. Fixed "IP Filter/Firewall" config setting didn't clear bug after upgrade v2k6xxxx.rst. [Changes / New functions since firmware 2.5.2_UK] 1. Addressed ISDN detection issue (V26600X/W only) 2. Fixed ARP request unicast problem. [Changes / New functions since firmware 2.5_UK] [1. Improvements] 1. Improve ADSL auto-detecting. - The router will set up pvc1 for PPPoE/PPPoA when detected it. - The router will set up pvc2 for MPoA when detected it; MPoA is not available in the UK, so this facility is not used. 2. Improve telnet command "adsl ppp ..." to support multi-pvc setting. - The router will set up pvc1 for internet access when got "adsl ppp 0 ...". - else, the router will enable that pvc only. 3. Correct ADSL interface values of MIB-II. Add ADSL-LINE-MIB ( RFC-2662 ). [2. Fixed Issues ] 1. Deny reply for unicast ARP request 2. Static route failure when some specific IP filter setting. 3. NAT failure on none directly connected subnet. 4. Fail to configure a static route for a host route. 5. Fail to configure the TCP/IP setting of LAN to LAN profile for the remote network. 6. Prot. redirection-function failure after a period of usage. 7. Fixed PPTP with CA pass through problem. 8. Fixed UDP fragment problem 9. Fixed problem with some WLAN clients losing connectivity occasionally [Changes / New functions since firmware 2.3.6UK] [Improvements] 1. New Features: 1.1 Aggressive mode for IPSec. 1.2 Remote dial-in (Teleworker to LAN) by using IPSec tunnel mode 1.3 AES (Advanced Encryption Standard) encryption in IPSec 1.4 802.1x in all of Wireless model - See FAQ on web site 1.5 Content filtering on URLs and blocking of http file download; see new menu on IP Filter/Firewall menu 1.6 VPN over Wireless - You can use IPSec encryption for WLAN clients, which is considered more secure than WEP 1.7 Phase 1 Selection adavanced options for IPSec VPNs 1.8 Second subnet IP can act as VPN server IP. > vpn 2ndsubnet on : Enable it. > vpn 2ndsubnet off : Disable it. 1.9 support multi-pvc setting on WUI (not used in UK) 1.10 support to use manual setting primary and secondary DNS for Vigor and dhcp client IP from Vigor. > srv dhcp frcdnsmanl on : Enable it. > srv dhcp frcdnsmanl off : Disable it. 2. Improvements/Changes : 2.1 Passthrough or Blocking a PPPoE connection which requires from internal LAN host by using a check button in WUI 2.2 Some improvements to the web user interface 2.3 New NAT mechanism 2.4 ARP attack defence in DoS protection 2.5 New handling for IP conflict resolution 2.6 MSN 6.0 passthrough 2.7 "2st http://192.168.2.1:80" of WUI of reboot will appear only when 2nd subnet was enabled. 2.8 "For Wireless LAN" of PPPoE Pass-through will appear only when it is a wireless router. 2.9 change WUI text "Remote Access User Setup (Host-to-LAN)" to "Remote User Profile Setup (Teleworker)". 2.10 Improvement wireless WEP128 unstable problem 2.11 Support MPPE for MS-CHAP v1 authentication 2.12 Allow to specify MPPE encryption type on server side 2.13 Allow to configure detailed parameters for IKE/IPSec from Web Configurator 2.14 Allow syslog information through VPN 2.15 DHCP relay agent for remote LAN(VPN) 2.16 VoIP(SIP base)passthrough improvement [3. Fixed Issues ] 3.1 WAN online time for DHCP client, DHCP client renew time do not replace existing default gateway, DHCP relay agent strategy. 3.2 PPPoE bug for change mss. 3.3 DNS proxy. 3.4 IKE event protect timeout situation. 3.5 syslog through VPN. 3.6 prevent IKE memory leakage. 3.7 VoIP passthrough. 3.8 ISDN backup for ppp shutdown. 3.9 Check arp correctness. 3.10 arp table flush. 3.11 PPTP fragment packets. 3.12 UPNP with MSN6.0. 3.13 Improved code for 128bit WEP which could cause dropouts ******************************************************************************************** Release Notes for Vigor2600 router series Firmware Firmware Version : v2.3.6UK (Formal Release) Released : 24/04/03 Only for Models : Vigor2600, Vigor2600X, Vigor2600WE, Vigor2600W Build Date : Thu Apr 24 10:34:24.8 2003 Locale : UK / Annex A Only ******************************************************************************************** [ Changes / New functions since firmware 2.3.3 ]: 1. Improve DHCP client compatibility for some regions/ISPs. 2. SmartStartResponse message add product and version messages. 3. Reject RIP port unicast packets to help protect against attacks. 4. Implement a new algorithm for DNS. 5. Add content_length (HTTP protocol). 6. add PPPoE pass through function. a. wired Lan: if it is enabled, it allows pass-through from PC's PPPoE Client. b. Wireless Lan: Same as Wired Lan, but it controls Wireless Clients. recommanded to disable it on Wireless Lan. 7. Show active Primary/Secondary DNS information on "Online Status" of WEB. 8. Improve DNS assignment policy 9. Support VPN connection from LAN interface 10. Support PPTP with MPPE remote access clients via RADIUS authentication 11. Add customer DNS setting for DYNDNS. 12. Improve H3.2.3 traffic pass-through NAT 13. Change "Disable Ping from the Internet" as default setting to increase the security 14. Support wireless LAN roaming. 15. DHCP server fills hostname for Solaris system. [Fixed problems] 1. Modify 2nd DHCP server bugs. 2. Modify routing problems in MPoA and PPPoA/PPPoE settings. 3. Modify receiving Unix mail server abnormal situations. 4. Fix wireless data corrupt problem. 5. Modify a tcp congestion bug. 6. Adapt DDNS for various ISPs. a. add customer DNS on DYNDNS. b. modify DDNS for HUAGAI ISP. 7. Modify VPN always on for ISDN problems. 10. Fixed connection failures on MS Exchange Server(5.5) from LAN (Port25/SMTP) 11. Fixed VPN always-on problems for multi-tunnel connections 12. Fixed VPN always-on failures when back-up ISDN is up(ISDN model) 13. Fixed connection failure on L2TP tunnel over ISDN 14. Fixed (firmware 2.3.x)MS Chap v1 authentication failures on VPN(as a client) 15. Fixed upload data corruption problem on wireless LAN with some clients ---------------------------------------------------------------- [Changes / New Functions Since Firmware 2.3]: 1. Add DoS function selection screen in firewall setup 2. Fix a Lan driver problem 3. "PPPoA" information is available from telnet command 'log -ct'. 4. Address a problem with MPoA static IP switching to DHCP or PPPoA/PPPoE 5. Wireless code supports Intersil chipset v1.4.9. 3. Fix problem with DHCP client release IP where source IP field fill 0. 4. Fix problem with DHCP Request IP packets omitting netbios options. 5. Fix a problem relating to VPN wherby internet access could be lost. 6. Fix a problem whereby WAN subnet for single IP was too large. 7. Increase PPPoA username storage from 50 to 80 characters [New Functions Since Firmware 2.2.5]: 1. Add MPPE VPN Encyption for VPN PPTP. 2. Enable VPN default route. 3. Add VPN always-on function. 4. Add VPN keep-alive function. 5. Support Windows 2000/XP UDP port 1701 file setting for L2TP/IPSec. 6. VPN Lan-to-Lan setting with more than two Remote Names. 7. Add Multi-NAT function in PPPoA mode. 8. 2nd DHCP Server for public IP pool, can set Mac address & IP relationship add/remove IP. 9. DHCP Relay Agent. 10. ISDN security feature with blocked numbers for Vigor2600X. 11. uPnp function added 12. Remote Firmware upgrade by using FTP. 13. ISDN remote activation: ISDN dial in to turn up broadband connection. 14. Allow user to modify WAN mac address on PPPoE/PPPoA and MPoA. 15. Support fix ip mode for PPPoE/PPPoA. [Improvements]: 1. L2TP compatible improvement. 2. VPN on-line status display ( 2 pages for more than 8 tunnels ). 3. VPN syslog information. 4. IP-filter syslog information. 4. DHCP client/server improvements. 5. RIP improvement. 6. syslog on-line status display, include Syslog Client Utility. 7. new Vigor Tools v2.3 with new Syslog Client. 8. Improve the Firewall Denial of Service functions. 9. DDNS improvements. 10. NTP improvements. [Fixed problems]: 1. on-line game half-life didn't work on PPPoE connections. 2. DHCP client problem with some cable system. 3. LAN-to-LAN Dial-in CLID field problem if last octet is "8", "9", may change to "(" and ")". 4. DNS problem with TTL = 0. 5. WUI compatible problem with Mac OS 9.x's IE 5.0. 6. DNS-Proxy problem that in Mac OS 10.2, ping to router IP may trigger WAN connection. 7. ISDN backup problem that broadband can not be access any more sometimes after power-up if enable ISDN backup. 8. Telent command "tftpd" can not work. 9. Syslog information in on-line status is not correct. 10. VPN connection is not stable in dynamic IP environment. 11. "more" option in "WUI>Advanced Setup> LAN-to-LAN Dialer Profile Setup" did not trigger VPN. 12. One direction of MSN 4.6 voice traffic does not work. 13. The problem that the POP3 authentication behind a Vigor router to a QMail server takes about 30 seconds ! 14. VPN led didn't light on V2600X. ***************************************************************** Release Notes for Vigor2600 router series Firmware Firmware Version : v2.2.5 (Formal Release) Released : 15/11/02 Only for Models : Vigor2600, Vigor2600X, Vigor2600WE, Vigor2600W Build Date : Thu Nov 7 13:37 ***************************************************************** [New Functions Since firmware 2.1r]: 1. syslog information for VPN, WAN log, call log, User access log, DNS request, TCP/IP connection and on-line status. 2. new Router Tools: 2.1 new version 2.0 of VTA client to add virtual-com port function in Win98/Me. 2.2 new syslog client utility. 3. LAN-to-LAN more subnet setting function. 4. DDNS improvement, added some other service providers. 5. ISDN LAN-to-LAN exclusive function. 6. DNS proxy improvement which request domian name via IP address. 7. Access PPTP server which in the local LAN via Port-redirection rather than DMZ. 8. DHCP srever's lease time setting via telnet command "srv dhcp leasetime xxx". 9. VPN connection always-on function. 10. IKE's IP fragment function for IKE pass through problem. 11. Ping's IP fragment function. 12. for Vigor2600 series, 12.1 Add auto-detect VPI/VCI functions. 12.2 add F4 (VP Level) OAM function on it. default, create two F4 VPI/VCI: (1)USER_VPI/03 to handle Segment to Segment. (2)USER_VPI/04 to handle End to End. 12.3 Add telnet command "adsl savecfg" to save adsl parameter. 12.4 add DSLAM Vendor on "adsl status" (ADI, ALCATEL, Globalspan, and TI) 12.5 "adsl status" now shows more information. 12.7 ADSL LINE led will flash every 0.5s when adsl line enter tranning mode. 12.8 add telnet command "adsl showbins" to show adsl bins(tones) allocated bits, SNR, and Gain. 12.9 "adsl ppp" can set username & password for PPPoA. 12.10 add "Allow incoming fragmented UDP packets" on "IP Filter/Firewall"->"General Setup" it should be set when play some games. (ex, CS). 12.11 add DMT Tones Information on web. ("Diagnostic Tools"->"ADSL Spectrum Analysis") (1)it will take 3-5 min to collect DMT Tones information. (2)it only can show Downstream information for annex B. 13. Check UDP checksum when UDP packet incoming and discard corrupt packets; this offers improvements for some games players who had problem with CS etc. 14. Support MPPE on VPN. 15. Support Fixed IP entry on PPPoA setup 16. Support Multi-NAT on PPPoA. Select "WAN IP Alias" to set it. [Fixed Issues]: 1. PPTP connection problem with Mac OS X. 2. Vigor2300, LPD driver improvement. 3. Port 1732 and 113 now stealthed 5. PPP/RADIUS problem if remote PPP ( dial-in ) request call-back option. 6. the PPP connection problem with ZyXEL's P304IH if use last assigned IP. 7. The SNMP contact information is incorrect( changed to info@draytek.com.tw ). 8. DHCP can not change gateway in the 2nd subnet 9. if we enter "" in the column of DDNS, the page would be crashed till back to the default value. 10. FTP didn't always work with port redirection 13. Telnet's ip ping command in Vigor router can not access the state routing subnet. 14. the problem that setting static/Dynamic IP or PPP, the router changed the ISDN Link type to BOD. 15. the field "Peer ISDN Number or Peer VPN server IP" in WUI's "LAN-to-LAN Dialer Profile Setup>Dial-In Settings" can not be stored the last digit if the length of stored string = 15. 16. packet trigger can not work while setting the more-route subnet. 17. DHCP server improved to allow subnet larger or smaller than CLASS-C 19. the problem that PPPoE connection is not robust sometimes, especially to establish a connection according to call scheduler. 20. some DHCP server fixed IP setting problems via telnet command. 22. the static routing problem while destination IP in routing table is not the subnet's boundary ( ex. 195.145.12.193, static route can not work, but 192.145.12.192 is ok ). 23. NAT major problem, some UTP port may not be translated. 24. the VPN 's authentication failed problem while establishing a Lan-to-Lan connection with L2TP over IPSec. 25. compatible problem with some ICQ2002a's functions. 26. Improved Netmeeting support 27. Rekey mechanism improvement with Netscreen. 28. improved L2TP disconnection phase with Win2000. 29. The VPN pass through function was improved on Vigor2300. 30. Sometimes users reported WUI and telnet were lost. 32. IKE pass through function can not work. 33. Fix DNS problem when its TTL=0 34. "Time Setup" update time is on time. 35. fix ISDN Dial Backup problem which sometimes prevented prompt dialling. 36. fix the order of DNS query. It will use the IP of DNS server from the PPP firstly. 37. Fix NAT user limit Firmware 2.2.1 Release Notes : ------------------------------ New Functions added : 1. Syslog information for VPN, WAN log, call log, User access log, DNS request, TCP/IP connection and on-line status. 2. new Router Tools: 2.1 new version 2.0 of VTA client to add virtual-com port function in Win98/Me. (VTA client applies to Vigor2600X only) 2.2 new syslog client utility (contained in router tools) 3. LAN-to-LAN setup allows more subnets to be set. 4. DDNS improvement, added some service providers. 5. ISDN LAN-to-LAN exclusive function. 6. DNS proxy improvement when requesting domian name via IP address. 7. Access PPTP server which in the local LAN via Port-redirection rather than DMZ. 8. Set DHCP server's lease time via telnet command "srv dhcp leasetime xxx". 9. VPN connection always-on function. 10. IKE's IP fragment function for IKE pass through problem. 11. Ping's IP fragment function. 12.1 add auto-detect VPI/VCI functions. 12.2 allow fragments when running Halflife but only allow port 27015. 12.4 add telnet command "adsl savecfg" to save adsl parameter. 12.5 Add DSLAM Chipset Vendor information on "adsl status". known Vendor: ADI, ACLCATEL, Globalspan, and TI. 12.6 Improved SAR rx queue that may be cause packets holding on queue. [Fixed Issues]: 1. PPTP connection problem with Mac OS X. 2. to Vigor2300, LPD driver improvement. 3. port 1732 could be found even PPTP connection is disabled. 4. port 113 could be found via WAN side. 5. PPP/RADIUS problem if remote PPP ( dial-in ) request call-back option. 6. the PPP connection problem with Pres304IH if use last assigned IP. 7. The SNMP contact information is incorrect 8. DHCP can not change gateway in the 2nd subnet 9. Allow entering (but pointless) blank string in DDNS setup. 10. FTP with port redirection didn't work, but ok with DMZ sometimes. 11. In Vigor2200USB, FTP can not work with port redirection since the port-map entry table could be reproduced to fill out. 12. Problem if sending a long URL to Vigor's WUI. 13. Telnet's ip ping command in Vigor router can not access the state routing subnet. 14. the problem that setting static/Dynamic IP or PPP, the router changed the ISDN Link type to BOD. 15. "Peer ISDN Number or Peer VPN server IP" in WUI's "LAN-to-LAN Dial Profile Setup>Dial-In Settings" can not be stored the last digit if the length of stored string = 15. 16. packet trigger can not work while setting the more-route subnet. 17. If subnet is larger or smaller than CLASS-C, DHCP server can not work properly. 20. DHCP server fixed IP setting problems via telnet command. 22. Static routing improved where destination IP in routing table is not the subnet's boundary ( ex. 195.145.12.193, static route can not work, but 192.145.12.192 is ok ). 23. NAT issue where some UTP port may not be translated. 24. VPN 's authentication failed problem while establishing a Lan-to-Lan connection with L2TP over IPSec. 25. Improved Compatibility with some ICQ2002a functions 26. the problem that Netmeeting connection can not be always successfully initialized. 27. Rekey mechanism improvement with Netscreen. 28. improved L2TP disconnection phase with Win2000. 29. the VPN pass through function can not work in Vigor2300. 30. sometimes, WUI and telnet can not be accessed any more. 32. Improved IKE pass through function Firmware 2.1r Release Notes : ----------------------------- This firmware is released with the following enhancements : 1. Auto-detect VPI/VCI function for users; for UK use you can enter them manually if you prefer (0/38). 2. Added Multi-NAT facility to allow one-to-one mapping for multiple external/public IP addresses. 3. Corrected an issue with DNS proxy function. 4. Syslog : Reduced the frequency of connection status messages. 5. Fixed a problem with OAM loopback 6. Improved connection reliability 7. Improved VPN reliability 8. Specific line tolerance for UK operation Please see http://www.draytek.co.uk for latest firmware/docs.