Unified Services Router Release Notes ============================================================== Important Notes: 1. Russian firmware version doesn’t support over 56bit encrypted algorithm according to regulatory restriction. 2. Automatic factory reset when image upgrade detects a firmware region mismatch between RU and WW images. Such as firmware upgrade from RU->WW or WW->RU image. 3. Before plug DWM-152/156 3G USB dongle in DSR-1000/1000N, please make sure the SIM Card is NOT set PIN code. 4. Microsoft Windows XP has some well-known limitation to access USB storage of DSR router, D-Link provides a Registry Script file named: WinXP.reg which can solve limitation of Windows XP environment. Without applying this script file, it cannot copy file from Windows XP to USB storage. (This issue will not happen when copy file from USB storage to Windows XP). ============================================================== Firmware version: 1.08B51_RU New Features: 1. Support more external Authentication server types for Captive Portal/ IPSec user authentication. Available external authentication server types: NT domain, RADIUS, LDAP, AD and POP3. 2. Support L2TP Client Mode: DSR can establish site-to-site L2TP tunnels to another DSR. 3. Bandwidth Control enhancement: DSR can accept IP subnet for source IP addresses when configuring bandwidth management profiles 4. Support GRE tunnels. Supported GRE tunnel numbers varies in different models - DSR-1000 series: 20; DSR-500 series: 15 ; DSR-250 series: 10; and DSR-150 series: 5. 5. Support Layer 2 Bridge Mode: DSR can bridge DMZ (WAN2) with LAN port 1 in the Layer 2 level together. Note: Only DSR-500 and DSR-1000 series support Layer 2 bridge mode. 6. Expand maximal IP-MAC binding (DHCP IP reserved) restrictions. Maximal numbers varies in different models - DSR-1000 series: 128; DSR-500 series: 96; DSR-250 series: 64; and DSR-150 series: 32. 7. Support CAPWAP pass-through: DSR can recognize CAPWAP tunnel packets and allow them passing through LAN sides. 8. Support D-Link DWM-157 A1 3G USB modem. 9. Increase IPSec pre-shared key length to 64 characters. 10. IGMP enhancement: allow IGMP packets traversing DSR without specifying source IP addresses. 11. Reduce Boot-up spent time. 12. L2TP performance enhancement. Problems Fixed: 1. IPSec passthrough is not working for wireless clients. 2. Multiple LAN users are able to access Internet using single captive portal account at the same time. 3. Unable to play counter strike online from wireless clients. 4. L2TP dialup can’t allow pure numbers using in password and username. 5. Unable to enable DMZ via CLI. 6. PPTP/L2TP clients can’t ping LAN clients under VLAN ID that is greater 10. 7. Unable to add SSL VPN policy via CLI. 8. Unable to check the status of SSL VPN tunnels via CLI. 9. PPTP ALG is not working 10. Device don’t send DHCP-request messages after the end of T1 lease time (0.5*lease time). 11. DWM-156 A3 is not working properly. 12. When using management tools, traceroute, the first hop shows destination IP rather than router IP. 13. Authenticated clients are redirected to the captive portal logout page while authenticated clients are trying to access Internet. 14. Device allows LAN DHCP server range to overlap with sslvpn client address range. 15. Unable to configure the “date and time” filed in the date and time page from CLI. 16. Unable to configure IPSec policy in transport mode from CLI. 17. While users copy a file over 600MB from Windows 7 LAN host to the USB drive, error messages will be popout. 18. LAN clients information don’t show correctly in the ‘LAN clients’ page. 19. EPSON Stylus Photo 830 printer shows different model names in GUI and Back-end. 20. Device doesn't synchronize with correct time in different time zones. Also, device' time is still persisting after factory default. 21. After firmware upgrade, configured IPSec policy has be changed. 22. Device doesn't accept '0.0.0.0' in the IP address and subnet mask field in SNMP access control list page. 23. Device displays the error messages, 'i18nhtmlmissing', in the GUI while users try to disable "enable redundant policy" option in the primary policy. 24. DWM-156 A6 dongle is not working as 3rd/backup WAN. 25. DWM 156 A3 3G dongle is not mounted properly in some cases. 26. Security Vulnerabilities Addressed: Persistent root access. Removed CLI commands that could allow someone to overwrite the super user password and gain root access to the device. Root user account will be completely removed in the next firmware version. Reference: http://packetstormsecurity.com/files/118355/D-Link-DSR-250N-Backdoor.html 27. In some rare cases, device displays the error messages, 'i18nhtmlmissing', in the GUI while users try to disable "DHCP under VLAN”. 28. Device shows miss-match authentication and encryption methods in the IPSec backup policy. 29. Device shows some meaningless messages in the logs. 30. Device can’t accept remote IPSec endpoint as FQDN 0.0.0.0. 31. PPTP clients can access LAN networks but fail to access other VLAN networks. 32. "DNS request timeout" is observed in windows lan host while doing nslookup when iIPS/IDP is enabled in the device. 33. Clients' LAN-to-WAN traffics are redirected to http server on the lan side when inbound (WAN-to LAN) HTTP rules are added on WAN3. 34. Device doesn't show the WiFi current channel in the "Radio Settings" page and "WLAN Status" page when the default AP is disabled. 35. Removing some RD debug/meaningless logs. 36. CLI issues: 1. there is no commands to select VLAN,DMZ and WAN3 interfaces for packet capturing. 2. Fail to change the file name saving the captured packets. 37. DDNS is not updating the WAN IP address after disabling and enabling the DDNS functionality from the WAN status page. 38. The 26th PPTP user in the database can't establish the PPTP tunnel to DSR even if the PPTP tunnel limitation is not reached. 39. Unable to establish PPTP/L2TP tunnels if PPTP/L2TP clients' username or password includes "#" character. 40. X.509 Cert for SSL VPN Tunnels is expired. 41. There is no 3G information available in the dashboard page to show statics. 42. DSR-1000(N) is unable to show 1600 log entries in the view logs page. 43. The Captive Portal Setup page shows the default profile as "In Use" without adding any captive portal policy. 44. Device can't connect to ISP using L2TP if the username or password of a L2TP accounts starts with 0, e.g. 01234. 45. Active sessions page doesn’t show any entry for active sessions. ============================================================== Firmware version: 1.06B53_RU New Features: 1. From firmware v1.06B53 and later, DSR-1000N, DSR-1000, DSR-500N and DSR-500 can support USB 3G modem which including D-Link DWM-152 A1/A2/A3, DWM-156 A1/A2/A3/A5/A6, Huawei E1550, E173 and EC306. Note: Only DSR-1000N and DSR-1000 can support to configure 3G USB modem as the 3 WAN interface.  2. Support VLAN functionalities on WAN interfaces. 3. Support multilingual Web GUI through Package Manager. This solution is firmware independent which can easily check available language list through Internet by one click. After that, it can dynamically install/uninstall language pack. Note: only one language pack can be installed at a time in order to prevent consuming much Flash memory. Please remove the installed language before add any other language pack.   4. USB 3G modem driver can be dynamically uninstalled/install through Package Manager. Note: Following 3G modem driver has already been built into firmware v1.06B53. D-Link DWM-152 A1/A2/A3, DWM-156 A1/A2/A3/A5/A6, Huawei E1550, E173 and EC306. Problems Fixed: 1. Some 3G dongles are displayed incorrect device model name in the USB setting page. 2. PPTP client mode fails to support the MPPE 40bits encryption method. 3. WiFi channel list shows incorrect wireless channels. Known Issues: 1. DSR routers don't support IPv6 Firewall and VPN current. Following CLI still doesn't work at all. security firewall ipv6 default_outbound_policy security firewall ipv6 configure/edit security firewall ipv6 delete security firewall ipv6 disable security firewall ipv6 enable 2. There is an issue where the router is not able to transfer files > 250MB from Windows XP to USB storage after apply WinXP.reg script file. 3. Voice at LAN side client is not heard when the SIP Proxy resides in LAN. 4. Daylight saving with manual settings is not working properly for Newfoundland and Greenland time zones. 5. It's able to configure the same MAC address to WAN1 and WAN2 ports by selecting the 'Clone your PC's MAC Address' option. 6. After editing the WEP profile (wep-64), another WEP profile (wep-128) wireless client is not reconnecting until disable/enable the corresponding SSID. 7. Blank field for "data to supply to CA" when click view button in Self certificates requests page. 8. VLAN dropped in and dropped out packet entries are incorrect in dashboard page. 9. User cannot enable UPnP on LAN and VLAN simultaneously. 10. Bandwidth rules over IPSec VPN tunnel are not being followed. 11. Device keeps sending syslogs to syslog server after removing the earlier configured syslog server IP address. 12. USB storage is not working perfectly with windows XP. It's not able to open files without copying them locally and it has issue to copy larger files from Network Storage share on to the Windows XP host. (Note: 1. Copy files from Windows XP to Network Storage works fine. 2. This issue doesn't affect Windows Vista, Windows 7 and Linuc based operating systems) 13. IPSEC tunnel is not getting established after importing the exported file at the remote device until disable then enabling policy 14. snmpwalk takes long time to display ipsec details. 15. Spillover threshold value doesn’t work. 16. IPSec failover only works for specific scenarios, e.g. in site-to-site tunnel mode, IPSec failover will only happen in one of end points. ============================================================== Firmware version: 1.06B43_RU New Features: 1. Support basic OSPFv3 functionality on IPv4. 2. New USB 3G dongles support: D-Link DWM-156 A5/A6, Huawei E1550, E173 and EC306. (DSR-1000N/1000 only) 3. Support VLAN-based access control for USB Printer sharing and Storage Sharing. 4. Support Russia dual access PPPoE. 5. Support Wireless Distribution System (WDS). This feature is Only guaranteed to work between DSR routers of same model. For example, between two DSR-1000N, or between two DSR-500N. A max of 4 WDS peers can be specified, more detail please refer to the DSR user manual v1.05. Note: Using same firmware version between two DSR routers for WDS feature is strongly recommended.  6. Firewall rules enhancement: support IPv6 firewall rules, allow users to select designate ports other than a sequent IP range, and allow users to select both TCP and UDP in one firewall rule. 7. Support IGMP control package forwarding from WAN to LAN. 8. Reduce WAN failover time to 1 minute. 9. Support IPv4 DHCP relay through IPSec VPN tunnels. 10. Support Captive Portal authentication through external RADIUS server. 11. Allow both HTTP and HTTPS connections to the Captive Portal Login page. 12. Support bandwidth management on the “inbound” traffic. 13. Add a new option, threshold configuration, in the Block UDP flood settings. 14. VPN failover. (DSR-500/500N/1000/1000N ONLY) 15. Improve PPTP/L2TP performance. 16. Allow to change MTU size for 3G connections. 17. Extend IPSec Mode Config support to the following VPN clients: Netgear Prosafe VPN client (v5.02.001 or later), Greenbow VPN client (v4.65.003 or later) and Shrew Soft VPN client (v2.1.6 or later). 18. WLAN scheduling improvement: Add a drop-menu called "Schedule control" with Turn-on and Turn-off options to control DSR WLAN ON/OFF. Problems Fixed: 1. Reserved IP should be outside of the DHCP IP pool range: a user will not be allowed assign a static IP that is in the DHCP IP pool. 2. Spillover is not working between PPPoE. 3. PPTP compatibility issues with Android phones in the encryption mode. 4. Need to remove "ANY" Service from Bandwidth traffic selectors services options: to avoid users’ confusion when configuring bandwidth control. 5. Dash board show blank page after running heavy traffic. 6. LAN side VLC Receiver does not receive multicast traffic from VLC sender. 7. Firewall has the highest priority than content filtering ->approved URL: Now white/black list owns the highest priority. 8. Unable to send the Email logs to the SMTP server present in LAN side of the device. 9. DSR web GUI can’t be accessed remotely through tunnel. 10. Device is still using old certificates to access the web GUI after uploading new VeriSign-signed certificates. 11. Unable to do NetBIOS from PPTP and L2TP Clients. 12. LAN reserved IP's page got missed in I.E browsers if we set IE’s languages to French. 13. PPTP connection is using MAC of WAN PHYs as gateway. 14. Fail to save and configure IP addresses via CLI. 15. When Inter-VLAN is disabled, clients still can access the WEB GUI and USB disk by using IP addresses in another VLAN. 17. Support User-FQDN in IPSec policies. 18. IP Aliasing causes error in Firewall rules without specifying host range. 19. IP/MAC binding is not associated with DHCP reserved IP addresses. 20. Skype can’t login through WIFI. 21. Fail to auto-rollover to 3G dongle when it is configured as WAN2. 22. IGMP control packet forwarding issue: LAN side VLC Receiver does not receive multicast traffic from VLC sender when DUT is behind NAT router. 23. Compatibility issue between DSR devices and Android PPTP clients when enable encryption' is enabled in Both devices. 24. Firewall has the higher priority than approved URL specified in content filtering. 25. Fail to PING DNS server after fail-over to backup WAN2. 26. During failover period, private LAN IP addresses will appear on the WAN side. 27. DSR never reconnects to L2TP server after soft-reboot. 28. In Windows environments, Google mail/Thunderbird client can't attach file size over 4MB. 29. User can’t configure static routes VLAN interface through CLI. 30. There are some incorrect statements in DSR WAN mode help. 31. Unable to register sip client in android phone to the sip server over internet through the device. 32. Device displays ""1i8nHTML missing"" messages while users try to configure the optional port to DMZ. 33. LAN ports may be shut off when users import some special configuration files. Known Issues:  1. DSR routers don't support IPv6 Firewall and VPN current. Following CLI still doesn't work at all. security firewall ipv6 default_outbound_policy security firewall ipv6 configure/edit security firewall ipv6 delete security firewall ipv6 disable security firewall ipv6 enable 2. There is an issue where the router is not able to transfer files > 250MB from Windows XP to USB storage after apply WinXP.reg script file. 3. Voice at LAN side client is not heard when the SIP Proxy resides in LAN. 4. Device is not displaying correct MTU size for PPP interfaces. 5. Daylight saving with manual settings is not working properly for Newfoundland and Greenland time zones. 6. Device is allowing XAUTH users to login to CLI. 7. Not exchanging routes with RIP-2B that have 'Metric' value as 4/5/6. 8. It's able to configure the same MAC address to WAN1 and WAN2 ports by selecting the 'Clone your PC's MAC Address' option. 9. After editing the WEP profile (wep-64), another WEP profile (wep-128) wireless client is not reconnecting until disable/enable the corresponding SSID. 10. Blank field for "data to supply to CA" when click view button in Self certificates requests page. 11. VLAN dropped in and dropped out packet entries are incorrect in dashboard page. 12. User cannot enable UPnP on LAN and VLAN simultaneously. 13. Bandwidth rules over IPSec VPN tunnel are not being followed. 14. Device keeps sending syslogs to syslog server after removing the earlier configured syslog server IP address. 15. USB storage is not working perfectly with windows XP. It's not able to open files without copying them locally and it has issue to copy larger files from Network Storage share on to the Windows XP host. (Note: 1. Copy files from Windows XP to Network Storage works fine. 2. This issue doesn't affect Windows Vista, Windows 7 and Linux based operating systems) 16. Device should show only 50 users per page and there should be a link to next page in bottom of the user table. 17. IPSEC tunnel is not getting established after importing the exported file at the remote device until disable then enabling policy 18. In snmp ErrorMessage is not returned to user if something fails. 19. snmpwalk takes long time to display ipsec details. 20. Spillover threshold value doesn’t work. ============================================================== Firmware version: 1.06B11_RU New Features: 1. Support basic OSPFv3 functionality on IPv4. 2. New USB 3G dongles support: Huawei E1550 and E173. (DSR-1000N/1000 only) 3. Support VLAN-based access control on USB shared point. 4. Support Russia dual access PPPoE. 5. Support Wireless Distribution System (WDS). This feature is Only guaranteed to work between DSR routers of same model. For example, between two DSR-1000N, or between two DSR-500N. A max of 4 WDS peers can be specified, more detail please refer to the DSR user manual v1.05. Note: Using same firmware version between two DSR routers for WDS feature is strongly recommended.  6. Firewall rules enhancement: support IPv6 firewall rules, allow users to select designate ports other than a sequent IP range, and allow users to select both TCP and UDP in one firewall rule. 7. Support IGMP control package forwarding from WAN to LAN. 8. Reduce WAN failover time to 1 minute. 9. Support IPv4 DHCP relay through VPN tunnels. 10. Support Captive Portal authentication through external RADIUS server. 11. Allow both HTTP and HTTPS connections to the Captive Portal Login page. 12. Support bandwidth management on the “inbound” traffic. 13. Add a new option, threshold configuration, in the Block UDP flood settings. Problems Fixed: 1. Reserved IP should be outside of the DHCP IP pool range: a user will not be allowed assign a static IP that is in the DHCP IP pool. 2. Spillover is not working between PPPoE. 3. PPTP compatibility issues with Android phones in the encryption mode. 4. Need to remove "ANY" Service from Bandwidth traffic selectors services options: to avoid users’ confusion when configuring bandwidth control. 5. Dash board show blank page after running heavy traffic. 6. LAN side VLC Receiver does not receive multicast traffic from VLC sender. 7. Firewall has the highest priority than content filtering ->approved URL: Now white/black list owns the highest priority. 8. Unable to send the Email logs to the SMTP server present in LAN side of the device. 9. DSR web GUI can’t be accessed remotely through tunnel. 10. Device is still using old certificates to access the web GUI after uploading new verisign-signed certificates. 11. Unable to do Netbios from PPTP and L2TP Clients. 12. LAN reserved ip's page got missed in I.E browsers if we set IE’s languages to French. 13. PPTP connection is using MAC of WAN PHYs as gateway. ============================================================== Firmware version: 1.04B58_RU New Features: 1. New IPv6 features include IPv6 over PPPoE and IPv6 prefix delegation. 2. IPv6 web management enhancement. 3. Support DHCPv6 leased-clients pages. 4. User database management enhancement. 5. Support policy based user database. 6. Support policy based captive portal. 7. Support PPTP VPN client mode: DSR could be a VPN client connecting to a PPTP server and share this PPTP tunnel with users behind DSR. 8. Add new Internet settings, WAN3 setting: WAN3 interface is designated to 3G connections via USB dongles. (Available on DSR-1000/1000N only) 9. Support SMS (Short Message Service) features. This feature is available when a USB 3G modem is connected to DSR router and 3G WAN interface is Not configured as dedicated WAN mode or load balancing mode. Also, please make sure your service provider allow your SIM card to send/receive SMS through 3G network. (Available on DSR-1000/1000N only) 10. Update CLI commands including VPN utilities CLI support. 11. Enable classical and NAT routing option in PPTP server configuration. 12. Support Firewall rules over VLAN. 13. IPSec VPN enhancement: allowing users selecting multiple integrity, authentication and encryption method for phase1 & phase2 negotiations. 14. Support a check box to block all URLs for Web site filtering feature. If users add some approved URLs, these URLs will be allowed. 15. It's able to show logging message through CLI. Problems Fixed: 1. User not able to add static route for sit0 tunnel with 6 to 4 gateway address from CLI. 2. Unable to add custom services from CLI. 3. Unable to login in MSN messengers (windows live messenger-2011) from PPTP client (windows-7) through PPTP server is enable in DSR-1000N. 4. Device giving critical error when user tries to delete the added user. 5. IPv6 gateway has address restrictions, i.e. sit interface first octet with > 25 and < 100. 6. String can be input "space" letter in SSL VPN custom portal layout name, title and banner field. 7. Improved WAN failover time. 8. DHCP reserved IP addresses doesn't work. 9. Dashboard page would show a blank page. 10. Sometimes, the DNS resolving would stop around 1 minute. 11. Compatible issues with the native PPTP client in Android 2.2. 12. IGMP proxy only works on one direction (WAN-to-LAN). 13. PPPoE performance is limited below 50Mbps. 14. Login policies are not working for Admin and Guest users. 15. When trying to delete a new created user immediately, DSR would pop out an error message: A critical error encountered while loading web page. 16. Fix DSR router is hard to get IP address from D-Link DSL-320LB modem. 17. Fix Ping and DNS WAN failure detection method not following configured intervals. 18. Fix Rollover feature doesn't work when the WAN2 is configured to 3G networks. 19. Fix file name will be garbled if naming is Chinese Traditional in USB Disk. 20. While accessing PDF files or picture files via DSR-500N USB sharing in Windows 7 64-bit machines, Windows 7 is crashed and blue screen is coming. 21. PPPoE performance improvement. ================================================================ Firmware version: 1.03B43_RU New Features: 1. Support SMTP ALG. 2. Support IPSec MIBs. Problems Fixed: 1. Fix WPS paring issues with DCS-930L camera. 2. Fix PPTP tunnel issues – PPTP server would keep the same IP when LAN and PPTP server are in the same subnet. 3. VPN setting enhancement – remove character length limitation for SA identifier. 4. Fix incorrect responses when typing CLI commands “show security firewall ipv6 setup” 5. Fix captive portal login page cannot show correctly on the iPhone/iPad. 6. Fix LED incorrect behavior when configuring 5GHz band for DSR-1000N. Known Issues: 1. DSR routers don't support IPv6 Firewall and VPN current. Following CLI still doesn't work at all. security firewall ipv6 default_outbound_policy security firewall ipv6 configure/edit security firewall ipv6 delete security firewall ipv6 disable security firewall ipv6 enable 2. There is an issue where the router is not able to transfer files > 250MB from Windows XP to USB storage after apply WinXP.reg script file. 3. Unable to connect with Yahoo Widget to the router. 4. IPSec, SMTP and DNS ALG are not working correctly (IPSec pass-through is OK). 5. Transparent mode, observe ARP flooding on eth2. 6. SNMP system alarm traps are not supported. 7. Voice at LAN side client is not heard when the SIP Proxy resides in LAN. 8. VLAN uptime counter not being displayed. 9. Voices between LAN side SIP clients are not clear when Ixia traffic is running between LAN to LAN. 10. WAN port duplex settings issue. 11. LAN side VLC Receiver does not receive multicast traffic from VLC sender when DUT is behind NAT router. 12. GUI dropdown does not contain these pre-defined services: AOL, DHCP-Relay, Syslog, SQN-netv1, SQN-netv2, TCP-ANY, NetMeeting, H.323, L2TP, NTP, LDAP, Real video, Real Media Firewall. 13. Device is not displaying correct MTU size for PPP interfaces. 14. Secondary PPPoE profile is not coming up automatically once it goes down for Japanese Multiple PPPoE. 15. Daylight saving with manual settings is not working properly for Newfoundland and Greenland time zones. 16. Observed "Critical error" in GUI when user trying with wrong URL "https://192.168.10.1/scgi-bin/platform.cgi/page=page". 17. PPTP pass-through is not taking highest priority than PPTP firewall service. 18. IPSec pass-through is not taking highest priority than IKE outbound. 19. Dashboard is not displaying recently browsed websites. 20. Device is allowing XAUTH users to login to CLI. 21. Not exchanging routes with RIP-2B that have 'Metric' value as 4/5/6. 22. It's able to configure the same MAC address to WAN1 and WAN2 ports by selecting the 'Clone your PC's MAC Address' option. 23. When IPv6 WAN is configured as static, router is not configuring IP using prefix advertisement. 24. After editing the WEP profile(wep-64), another WEP profile (wep-128) wireless client is not reconnecting until disable/enable the corresponding AP. 25. Device taking long time to open the status -> Lan clients page. 26. PPTP connection using MAC of WAN PHYs as gateway, it isn't correct behavior. 27. Firewall has the highest priority than content filtering ->approved URL. 28. Blank field for "data to supply to CA" when click view button in Self certificates requests page. 29. VLAN dropped in and dropped out packet entries are incorrect in dashboard page. 30. WLAN PC can't play multicast stream. 31. User cannot enable UPnP on LAN and VLAN simultaneously. 32. With the D-Link DWA-160 Xtream N Dual Band USB adapter, the WPS status displays 'Failed' in the device WPS page, even though client is connected successfully. 33. Bandwidth rules over IPSec VPN tunnel are not being followed. 34. Need to fine tune BPDU and 802.1X according to the D-Link standard. 35. The progress bar in firmware page is not always consistent with the image upload process. 36. Device keep on sending syslogs to syslog server after removing the earlier configured syslog server IP address. 37. Mismatch between configured and transmit power shown. 38. Need to update help content regarding system name without dot(.) information in Admin Settings page. 39. Transparent mode functionality is not working on WAN2. 40. USB LED is taking 20 seconds to glow for DWM-152/156 with firmware v1.03. 41. In CLI, options should also be shown depending upon the access specifications. 42. Dash board GUI issues in different browsers with multiple applications when we select different interfaces. 43. External Authentication support in Captive Portal is not available. 44. USB storage is not working perfectly with windows XP. It's not able to open files without copying them locally and it has issue to copy larger files from Network Storage share on to the Windows XP host. (Note: 1. Copy files from Windows XP to Network Storage works fine. 2. This issue doesn't affect Windows Vista, Windows 7 and Linuc based operating systems) 45. Device should show only 50 users per page and there should be a link to next page in bottom of the user table. 46. IPSEC tunnel is not getting established after importing the exported file at the remote device until disable then enabling policy 47. Through snmp the parameters ipsecVPNPolicyAutoPolicyType and ipsecVPNPolicyStatus are read-only. 48. Repeated SNMP get over long duration can result in SNMP daemon. 49. Enable/Disable through snmp not supported for IPsec. 50. In snmp ErrorMessage is not returned to user if something fails. 51. snmpwalk is taking time to display ipsec details. ================================================================ Firmware version: 1.03B36_RU New Features: 1. Intel AMT enhancements include Policy-based VPN configuration export for remote DSR router, AMT reflector modification, support DNS options for DHCP and DNS static host name mapping capability. 2. Russia dual access PPTP/L2TP improvement. 3. Support URL wildcard. 4. Support to import/export a text or CSV file for keyword blocking. Keywords prevent access to websites that contain the specified characters in the URLs or the page contents. 5. Built-in D-Link own certificate for SSL VPN code signing. Problems Fixed: 1. Intel AMT cannot get default route from the built-in DHCP Server. 2. PPTP SYN packet is going with DHCP server MAC address. 3. Fix the interface IP address should be 172.17.100.254/24 by default when WAN2 port is configured as DMZ. 4. It's not able access the Intel AMT client located at LAN side from Intel AMT server at WAN side after turned off the Intel AMT. 5. It's not able to send FTP and HTTP traffic through IPSEC VPN tunnel between DSR-1000N and DSR-500N. Known Issues: 1. DSR routers don't support IPv6 Firewall and VPN current. Following CLI still doesn't work at all. security firewall ipv6 default_outbound_policy security firewall ipv6 configure/edit security firewall ipv6 delete security firewall ipv6 disable security firewall ipv6 enable 2. There is an issue where the router is not able to transfer files > 250MB from Windows XP to USB storage after apply WinXP.reg script file. 3. Unable to connect with Yahoo Widget to the router. 4. IPSec, SMTP and DNS ALG are not working correctly (IPSec pass-through is OK). 5. Transparent mode, observe ARP flooding on eth2. 6. SNMP system alarm traps are not supported. 7. Voice at LAN side client is not heard when the SIP Proxy resides in LAN. 8. VLAN uptime counter not being displayed. 9. Voice between LAN side SIP clients are not clear when Ixia traffic is running between LAN to LAN. 10. WAN port duplex settings issue. 11. LAN side VLC Receiver does not receive multicast traffic from VLC sender when DUT is behind NAT router. 12. GUI dropdown does not contain these pre-defined services: AOL, DHCP-Relay, Syslog, SQN-netv1, SQN-netv2, TCP-ANY, NetMeeting, H.323, L2TP, NTP, LDAP, Real video, Real Media Firewall. 13. Device is not displaying correct MTU size for PPP interfaces. 14. Secondary PPPoE profile is not coming up automatically once it goes down for Japanese Multiple PPPoE. 15. Daylight saving with manual settings is not working properly for Newfoundland and Greenland time zones. 16. Observed "Critical error" in GUI when user trying with wrong URL "https://192.168.10.1/scgi-bin/platform.cgi/page=page". 17. PPTP pass-through is not taking highest priority than PPTP firewall service. 18. IPSec pass-through is not taking highest priority than IKE outbound. 19. Dashboard is not displaying recently browsed websites. 20. Device is allowing XAUTH users to login to CLI. 21. Not exchanging routes with RIP-2B that have 'Metric' value as 4/5/6. 22. It's able to configure the same MAC address to WAN1 and WAN2 ports by selecting the 'Clone your PC's MAC Address' option. 23. When IPv6 WAN is configured as static, router is not configuring IP using prefix advertisement. 24. After editing the WEP profile(wep-64), another WEP profile (wep-128) wireless client is not reconnecting until disable/enable the corresponding AP. 25. Device taking long time to open the status -> Lan clients page. 26. PPTP connection using MAC of WAN PHYs as gateway, it isn't correct behavior. 27. Firewall has the highest priority than content filtering ->approved URL. 28. Blank field for "data to supply to CA" when click view button in Self certificates requests page. 29. VLAN dropped in and dropped out packet entries are incorrect in dashboard page. 30. WLAN PC can't play multicast stream. 31. User cannot enable UPnP on LAN and VLAN simultaneously. 32. With the D-Link DWA-160 Xtream N Dual Band USB adapter, the WPS status displays 'Failed' in the device WPS page, even though client is connected successfully. 33. Bandwidth rules over IPSec VPN tunnel are not being followed. 34. Need to fine tune BPDU and 802.1X according to the D-Link standard. 35. The progress bar in firmware page is not always consistent with the image upload process. 36. Device keep on sending syslogs to syslog server after removing the earlier configured syslog server IP address. 37. Mismatch between configured and transmit power shown. 38. Need to update help content regarding system name without dot(.) information in Admin Settings page. 39. Transparent mode functionality is not working on WAN2. 40. USB LED is taking 20 seconds to glow for DWM-152/156 with firmware v1.03. 41. In CLI, options should also be shown depending upon the access specifications. 42. External Authentication support in CaptivePortal is not available. 43. USB storage is not working perfectly with windows XP. It's not able to open files without copying them locally and it has issue to copy larger files from Network Storage share on to the Windows XP host. (Note: 1. Copy files from Windows XP to Network Storage works fine. 2. This issue doesn't affect Windows Vista, Windows 7 and Linuc based operating systems) 44. Device should show only 50 users per page and there should be a link to next page in bottom of the user table. ================================================================ Firmware version: 1.03B27_RU New Features: 1. Support WMM (Wi-Fi Multimedia) for DSR-500N and DSR-1000N. 2. Support OpenVPN. 3. Authentication and encryption method is modified in PPTP and L2TP. 4. Support customized login page for captive portal. 5. Captive portal can be triggered by individual VLANs. 6. Support private MIB for LED indicators of front panel. Problems Fixed: 1. Fix USB Storage sharing is accessible from WAN. 2. Device blocking DMZ to WAN traffic when captive portal authentication is enabled on default VLAN(LAN). 3. Captive Portal feature will block users accessing internet through IPSEC VPN and SSL VPN tunnel. 4. CLI is prompting for prefix in ipv4 static routing configuration. 5. User is unable to set the exchange mode as Aggressive using CLI while adding IPSec VPN policy. 6. User able to add group based SSL VPN policy for not existed group from CLI. 7. Device is accepting the SSL VPN Client IP address range which is in the LAN subnet from CLI. 8. IKEv2 is unable to establish the tunnel when WAN cable unplug and plug it back. 9. It's not able to establish VPN tunnel with Extended Authentication as Edge device using Easy-Setup VPN import file. 10. After delete same self certificate and reboot, device is not showing error message while deleting CA cert. 11. The Java console of SSL VPN client is showing DES as cipher suite for SSL VPN tunnel. 12. Observed critical error in browser login page when user entered URL "https:///scgi-bin/platform.cgi/". 13. Need to update User Policy By Client Browser with IE, Firefox, Opera and Chrome" only. 14. Device is not throwing correct error message when user login wrong portal name. 15. Need to restrict the WebUI access using remote management port from LAN side. 16. It's able to change the default domain, group and user configuration through CLI. 17. Current Web GUI session of logged in user is not terminating after changing password through CLI. 18. IKEv2 Traffic Selector Type: Range is not supporting. 19. PPTP Server has no option to disable MPPE encryption. 20. Need to change help content in DMZ page. 21. Device is not showing portal layout URL IP address as "0.0.0.0". ================================================================ Firmware version: 1.03B23_RU New Features: 1. Support IKEv2. 2. Support L2TP over IPSec. 3. Support configuration auto-backup/auto-restore while a USB drive is inserted. Please refer to the implementation note for more detail of this document on page 2. 4. Support SSL VPN CLI. 5. Support Easy-Setup VPN feature. The benefit of this feature is that HQ IT/MIS can manually write a specific format file then deliver to non-IT background users of remote office. When the user imported this specific file in remote DSR router, all necessary VPN setting would be finished and ready for VPN tunnel establishment between HQ central site and remote offices. 6. Support Intel AMT reflector. Problems Fixed: 1. Problem routing TCP traffic in VPN tunnel. 2. USB printer sharing will not work after manually reboot. 3. Inbound Intel AMT feature is not working in load balancing mode. 4. It's not able to block ICMP traffic using SSL VPN policy. 5. CLI is not working in the RU image. Known Issues: 1. There is an issue where the router is not able to transfer files > 250MB from Windows XP to USB storage after apply WinXP.reg script file. 2. IPSec, SMTP and DNS ALG are not working correctly (IPSec pass-through is OK). 3. Transparent mode, observe ARP flooding on eth2. 4. SNMP system alarm traps are not supported. 5. Voice at LAN side client is not heard when the SIP Proxy resides in LAN. 6. VLAN uptime counter not being displayed. 7. Voice between LAN side SIP clients are not clear when Ixia traffic is running between LAN to LAN. 8. WAN port duplex settings issue. 9. LAN side VLC Receiver does not receive multicast traffic from VLC sender when DUT is behind NAT router. 10. GUI dropdown does not contain these pre-defined services: AOL, DHCP-Relay, Syslog, SQN-netv1, SQN-netv2, TCP-ANY, NetMeeting, H.323, L2TP, NTP, LDAP, Real video, Real Media Firewall. 11. Device is not displaying correct MTU size for PPP interfaces. 12. Secondary PPPoE profile is not coming up automatically once it goes down for Japanese Multiple PPPoE. 13. Daylight saving with manual settings is not working properly for Newfoundland and Greenland time zones. 14. Observed "Critical error" in GUI when user trying with wrong URL "https://192.168.10.1/scgi-bin/platform.cgi/page=page". 15. PPTP pass-through is not taking highest priority than PPTP firewall service. 16. IPSec pass-through is not taking highest priority than IKE outbound firewall service. 17. Device is allowing XAUTH users to login to CLI. 18. Not exchanging routes with RIP-2B that have 'Metric' value as 4/5/6. 19. It's able to configure the same MAC address to WAN1 and WAN2 ports by selecting the 'Clone your PC's MAC Address' option. 20. When IPv6 WAN is configured as static, router is not configuring IP using prefix advertisement. 21. After editing the WEP profile(wep-64), another WEP profile (wep-128) wireless client is not reconnecting until disable/enable the corresponding AP. 22. PPTP connection using MAC of WAN PHYs as gateway, it isn't correct behavior. 23. Firewall has the highest priority than content filtering ->approved URL. 24. Blank field for "data to supply to CA" when click view button in Self certificates requests page. 25. VLAN dropped in and dropped out packet entries are incorrect in dashboard page. 26. WLAN PC can't play multicast stream. 27. User cannot enable UPnP on LAN and VLAN simultaneously. 28. With the D-Link DWA-160 Xtream N Dual Band USB adapter, the WPS status displays 'Failed' in the device WPS page, even though client is connected successfully. 29. Bandwidth rules over IPSec VPN tunnel are not being followed. 30. Need to fine tune BPDU and 802.1X according to the D-Link standard. 31. The progress bar in firmware page is not always consistent with the image upload process. 32. Device keep on sending syslogs to syslog server after removing the earlier configured syslog server IP address. 33. Mismatch between configured and transmit power shown. 34. Need to update help content regarding system name without dot(.) information in Admin Settings page. 35. Transparent mode functionality is not working on WAN2. 36. USB LED is taking 20 seconds to glow for DWM-152/156 with firmware v1.03. 37. External Authentication support in Captive Portal is not available. 38. USB storage is not working perfectly with windows XP. It's not able to open files without copying them locally and it has issue to copy larger files from Network Storage share on to the Windows XP host. (Note: 1. Copy files from Windows XP to Network Storage works fine. 2. This issue doesn't affect Windows Vista, Windows 7 and Linux based operating systems) 39. It's Not able access the Intel AMT client located at LAN side from Intel AMT server at WAN side after turned off the Intel AMT. 40. Device should show only 50 users per page and there should be a link to next page in bottom of the user table. ================================================================ Firmware version: 1.03B12_RU New Features: 1. Support Non-Split tunnel for IPSec VPN. 2. Support USB storage and printer sharing. 3. Improve WAN configuration page based on drop-down menu. 4. Support logging for SSL VPN activity. 5. Support Interoperability with Cisco VPN client in iPhone OS4. 6. Support NAT hair-pinning. 7. Reverse the logs display, so that the latest logs are shown at the top of the viewer. 8. Support DWM-152/156 A3 3G USB dongle. (This only affects in DSR-1000/1000N) 9. Support for enable / disable Jumbo frames. 10. Support for add / edit / delete routing table of secondary PPPoE tunnel. 11. Spill over mode improvements - configurable maximum WAN bandwidth and load tolerance. 12. Support captive portal. 13. Support Blowfish and CAST-128 encryption-authentication algorithms in IKE Policy Configuration page. 14. Support for IPSec policy option for AH alone (without ESP) 15. Support for temporary blocking of user login for brute password attack. 16. Available to choose the local traffic selector in VPN Wizard page. Problems Fixed: 22. Device displaying local server ip in GUI after changing the firewall rules from allow always to block always. 23. Device not displaying "Local1-UTM" option at SysLog Facility options in remote logging configuration page. 24. Improve Japanese Multiple PPPoE usability issue. 25. Manually Configured 'Use These DNS Server', DNS are not updating for PPPoE/Japanese multiple PPPoE ISPs. 26. Block user access to Captive Portal login page, when Captive Portal is disabled. 27. Adding USB storage and Printer help pages. 28. USB1 status not being updated dynamically. 29. Print jobs are not being deleted after the print is done. 30. User is able to upload more than one active self cert in Authentication page causing "critical error" in linux firefox and blank page in "opera". 31. USB storage does not work after reboot. 32. Fixed firewall dependencies on USB storage and Printer. 33. Able to access the data from Linux host even after clicking 'Safely Removed' button for USB storage. 34. Increase range for retry interval of WAN failover between 5 to 999 seconds. 35. Observed kernel dump due to unaligned memory access while removing the 3G USB dongle (unmounted incorrectly) 36. WEP key doesn't support ASCII. (This only affects wireless models) 37. Duplicate domain names are showing in domain drop down if users add custom group in group pages. 38. Device does not send DHCP release to DHCP server (after soft reboot). 39. Error message displayed and redirected to add VLAN page on checking the Inter VLAN Routing button in default VLAN. 40. Device is not accepting more than 15 characters in 'Server address' field in WAN1 setup page. 41. SSL VPN performance optimizations. 42. It's not able to establish Gateway-to-Gateway IPSec VPN with Phase 2 encryption algorithm as "None". 43. 'Default admin user' session is getting terminated after login to the DUT with 'custom admin user' from LAN/WAN side. 44. It fails to import CSV file of DOS format. 45. Sometimes 3G network is not connecting when plug-out & plug-in the card multiple times. 46. Update Help Pages for WAN configuration pages. 47. Changing user details is not reflected in existing runtime users in Russia image Known Issues: 1. IPSec, SMTP and DNS ALG are not working correctly (IPSec pass-through is OK). 2. SNMP system alarm traps are not supported. 3. Voice at LAN side client is not heard when the SIP Proxy resides in LAN. 4. VLAN uptime counter not being displayed. 5. Voice between LAN side SIP clients are not clear when Ixia traffic is running between LAN to LAN. 6. WAN port duplex settings issue. 7. LAN side VLC Receiver does not receive multicast traffic from VLC sender when DUT is behind NAT router. 8. GUI dropdown does not contain these pre-defined services: AOL, DHCP-Relay, Syslog, SQN-netv1, SQN-netv2, TCP-ANY, NetMeeting, H.323, L2TP, NTP, LDAP, Real video, Real Media Firewall. 9. Device is not displaying correct MTU size for PPP interfaces. 10. Secondary PPPoE profile is not coming up automatically once it goes down for Japanese Multiple PPPoE. 11. Daylight saving with manual settings is not working properly for Newfoundland and Greenland time zones. 12. Observed "Critical error" in GUI when user trying with wrong URL "https://192.168.10.1/scgi-bin/platform.cgi/page=page". 13. PPTP pass-through is not taking highest priority than PPTP firewall service. 14. IPSec pass-through is not taking highest priority than IKE outbound firewall service. 15. Device is allowing XAUTH users to login to CLI. 16. Not exchanging routes with RIP-2B that have 'Metric' value as 4/5/6. 17. It's able to configure the same MAC address to WAN1 and WAN2 ports by selecting the 'Clone your PC's MAC Address' option. 18. When IPv6 WAN is configured as static, router is not configuring IP using prefix advertisement. 19. After editing the WEP profile(wep-64), another WEP profile (wep-128) wireless client is not reconnecting until disable/enable the corresponding AP. 20. PPTP connection using MAC of WAN PHYs as gateway, it isn't correct behavior. 21. Firewall has the highest priority than content filtering ->approved URL. 22. Blank field for "data to supply to CA" when click view button in Selfcertificates requests page. 23. VLAN dropped in and dropped out packet entries are incorrect in dashboard page. 24. Problem routing TCP traffic in VPN. 25. WLAN PC can't play multicast stream. 26. User cannot enable UPnP on LAN and VLAN simultaneously. 27. With the D-Link DWA-160 Xtream N Dual Band USB adapter, the WPS status displays 'Failed' in the device WPS page, even though client is connected successfully. 28. Bandwidth rules over IPSec VPN tunnel are not being followed. 29. Need to fine tune BPDU and 802.1X according to the D-Link standard. 30. The progress bar in firmware page is not always consistent with the image upload process. 31. Device keep on sending syslogs to syslog server after removing the earlier configured syslog server IP address. 32. Mismatch between configured and transmit power shown. 33. Need to update help content regarding system name without dot(.) information in Admin Settings page. 34. Transparent mode functionality is not working on WAN2. 35. USB LED is taking 20 seconds to glow for DWM-152/156 with firmware v1.03. 36. USB storage is not working perfectly with windows XP. It's not able to open files without copying them locally and it has issue to copy larger files from Network Storage share on to the Windows XP host. (Note: 1. Copy files from Windows XP to Network Storage works fine. 2. This issue doesn't affect Windows Vista, Windows 7 and Linuc based operating systems)