DI-LB604VPN V1.02 Release Note (Dec 25th, 2008) General Fixes: ====================================================================== 02-08-2007 1. Dynamic DNS update issue. 2. L2TP over IPSec(with NATT) passthru issue. 3. Fix multiple H323 clients passthru issue. 03-**-2007 4. Active/Backup Wan interface smooth swap. 12-12-2007 5. PPTP/SSL over IPSec tunnel. 6. Nat timeout value change does not take effect after restart. 7. Nat Alias GUI & cgi program error. 8. UDP traceroute issue. 05-20-2008 9. URL Filter - White List issue (Enhanced). 10. Nat Alias config data issue. 11. GUI cosmetic issues under situations like single Wan, load balance disabled, device config change. 12. Wellknown DNS Virtual server issue (TCP couldn't pass through). 13. Host and DMZ conflicting issue (when both are set). 14. syslog issue when with PPPoE connection. 15. PPPoE connection issue with auto-dialup enabled. 16. PPTP client routing issue (when PPTP server is on different segment). 17. Dynamic DNS issue when with PPPoE connection. 18. Session persistence issue. 19. Port conflict avoidence in Non-port translation is not correctly working. 20. User's defined SNTP issue. 21. Dyndns failover fix. 22. Password encryption support when config file being output. 23. Routing (Wan segment) issue. 24. PPTP connection trigger (autodial set to "always connected") issue. 25. DHCP connection problem with invalid alive indicator (name cannot be resolved) when Health check is enabled. 08-21-2008 26. ICMP failed to respond when ping to wan (1 or 2) interface from LAN host under both WANs are on the same segment (occurred only on Dual wan models). 27. DNS Txt records resolution failed if deviceˇ¦s LAN IP is set as LAN hostsˇ¦ DNS server IP. 28. Failed to access HTTPS web site when either wan set as disabled. 29. Failed to send Email alert when connection type is PPTP. 30. Device lockup or reboot when two different virtual server entries point to the same LAN host (this created enormous Nat entries and would eventually (30 minutes or so) crash the device). 31. Device would reboot when Wan1 set as Static IP and is disabled. 32. DNS query priority issue when multiple IPs are input as device's DNS servers (would use 2nd server first always). 33. Change device behavior when LAN looping is detected from device restart by watchdog to wait (and WAN is still active) until looping situation disappears. 34. DynDNS update issue (would fail sometimes when IP changed). 10-27-2008 35. Added PPPoE service name option field. 36. Fixed Configuration file save issue. 37. Fixed NAT Alias routing issue. 38. Fixed DynDNS update issue (would fail sometimes when IP changed). 12-15-2008 39. New DNS entry input (Primary setup) set for PPPoE did not take effect immediately. 40. Fixed NAT Alias feature bug when ports mapping are not the same (would create edundant nat entries). 41. PPTP passthrough reconnection issue (slots get used up). 42. IP Address load balancing mode did not work properly when virtual server entries are set. 43. IPSec passthrough issue (did not handle soft expiry properly). 02-11-2009 44. Fix Nat Alias bug1 : NAT Alias policy can't be deleted). 45. Fix Nat Alias bug2 : Enable Allow Inbond function will cause NAT Alias not working properly 03-05-2009 46. Fix PPTP failover issue. VPN Specific Fixes/Add: ======================================================================== 02-08-2007 1. Fix Tuunel (phase 1&2) deletion on backup interface. 2. Add Wildcard support on IPSec policy setting (0.0.0.0/0.0.0.0 can be accpeted as Remote network). 3. Add IPSec deamon auto startup on backup interface. 4. Fix device rebooting/hung issue when Hex preshared key is applied. 08-21-2008 5. Incorrect IP response when ping through the tunnel to the remote LAN's host which is a NAT Alias host (would respond with it's associated Wan IP). 6. VPN routing issue : did not work correctly when packet is being forwarded using both IPSEC policy and static routing rule. 7. IPSEC client (Greenbow) connection issue : connection would not last long (disconnected during each phase 1 rekey) due to client's soft expiry on phase1 (fixed by increasing default timeout value on the wait time for phase2 completion). 10-27-2008 8. IPSec passthrough (using IPSEC client Greenbow etc.) issue (to support soft expiry). 9. Tunnel connection/rekey issue when multiple policies are set to the same remote gateway. Feature Enhancement : ======================================================================== 02-08-2007 1. Add default routing support with NAT disabled. 2. QOS support with NAT disabled. 3. Adjustable sliding window size with NAT disabled. 05-20-2008 4. Strict/Loose method added for Protocol binding rule. 08-21-2008 5. Encryption is done on each password field when setup page is being shown and on password entries when configuration file is being output. 10-27-2008 6. Add privilege access option for the Main/Branch office or remote mobile user scenario connected by IPSEC tunnel (this feature is under the IPSEC tunnel option, LAN/WAN segment access can be either granted or denied). 12-15-2008 7. NAT timeout exception port range suports either source or destination. 8. Virtual server entry to support TCP/UDP as one option (no need to set separate entry). 02-11-2009 9. Enhance DMZ feature to support strict/loose binding. 10.Enhance Nat Alias feature to support seperate inbound/outbound policy.