DES-3010F/3010FL/3010G/DES-3016/3018/3026 Firmware Release Note Firmware: 4.20.B27 PROM:1.01.009 Hardware: A1/A2/A3G for DES-3000 series, B1 for DES-3010FL Date: Dec. 3, 2008 New features: 1. DHCP Relay. 2. DHCP relay option 60/61 3. For 802.1X Authentication, Dynamic VLAN Assignment and Guest VLAN can be enabled separately. 4. RFC2869 RADIUS extension standard for two attributes "Acct-Input-Gigawords & Acct-Output-Gigawords" 5. Support IMPB Time-based auto-recovery. 6. Support 64-bit counter. 7. Log support for 802.1X authentication. 8. Support configurable MDI/MDIX. 9. Support password encryption. 10. Add an OID to create static FDB entries. 11. Support Cable Diagnostics 12. Support SSH v2 . 13. Support VLAN Trunking. 14. Support IGMP Authentication. 15. 802.1X PDU packet pass through on 802.1X blocked state ports. 16. DES-3010FL HW re-version to B1, the embedded fiber transceiver is changed to 15km. 17. Support new model DES-3016 (Please reference to DES-3016 upgrade PROM code procedure) Fixed field issues: 1. Fixed the issue that user name is not displayed on system log when saving the configuration via SNMP. 2. Fixed the issue that, in some circumstances, when user logs in and enters an incorrect password which is longer than the correct password, user can still be allowed to login. 3. Fixed the issue when user changes the telnet port number and save it, the telnet port number will be change back to default port number 23 after switch reboots. 4. Fixed the issue when user sets the 802.1X RADIUS Timeout to 30 seconds, switch will only send the RADIUS request in the first 10 seconds and then times out. 5. Fixed the issue when the port speed was set fixed (e.g., 10_half, 100_half), the port cannot link up if using straight cable to connect two devices. 6. Fix the issue when using SNMP to get "ifHighSpeed", the display value is incorrect. 7. Fix the issue that DES-3000 series learns illegal SA MAC address (00-00-00-00-00-00) in the ARP table. 8. Fixed the issue when user creates static FDB at port1 and set port security max learning address 0 at port 1 at the same time, the switch’s log still displays Port Security Violation log at port1. 9. Fixed the issue when creating the CPU interface filter to permit IP1 and deny all, PC with IP1 can ping the switch; however, after the PC executes "arp -d", the PC cannot ping the switch anymore until the switch reboots. 10. Fixed the issue If 802.1X re-authentication were triggered in PC, the switch should reassign attribute according to policies in RADIUS server. 11. Fixed VLAN entry not displaying port information in the web GUI. 12. Fixed the firmware download problem that when using Linux Firefox, the firmware download process status cannot be displayed. 13. Fixed the display direction issue of VLAN portlist from left to right. 14. Fixed the firmware downgrade issue which all ports will go link down after downgrading. 15. Fixed the issue that users are unable to set the gateway IP address to 10.255.255.1 16. Fixed the issue that session table displays incorrectly after auto refresh in show session command. 17. Fixed the issue when login as administrator to execute the “save” command, the log will display user name as “Admin” instead of correct user name “manageadmin”. 18. Fixed the issue that IGMP v2 membership query packet will be blocked when 802.1X is enabled. 19. Fixed the issue that after configuring multicast filter mode "Forword_unregister_ groups", the multicast stream will flood to the port which has not yet been authenticated. 20. Fixed the issue that when running some test scripts like repeating telnet or uploading config test, sometimes device may not be manageable. ================================================================ Firmware: 4.00.018 (PROM:1.01.007) Hardware: A1/A2/A3G for DES-3000 series, D1/D2/D3G for DHS-3000 series Date: June 8, 2007 Modification & add-in new features: 1.Guest VLAN 2.Allow IP 0.0.0.0 on IP-MAC-Port binding 3.One more line in CLI to display tagged port 4.Set Terminal Line 5.Add an OID to show port utilization 6.Remove the limitation when browse MAC of MAC table in Web UI, user must key in MAC address with “-“, for example “12-23-34-45-56-67” 7.Remove all trust host by one command in CLI, Web 8.Enhanced LBD 9.Add an OID to clear FDB and ARP table, cannot clear FDB entry based on port or VLAN 10.Extend trust host number to 10 11.Ability to input not only one IP for trust host 12.Auto finish the commands which will pop up (Y/N) 13.Add ping command to user privilege 14.Send trap in SNMP/Add warning message in syslog while access violation happens for IP MAC Port binding and port security 15.Password Recovery v1.1 16.Port description extended from 32 bytes to 128 bytes 17.Remove the web UI log-in page 18.Management IP interface with 128bytes description 19.Rename “DLF” to “Unicast” in storm control feature 20.Enhancement for broadcast storm control logging Problems Resolved: 1.PI-447: HQ20070516000008 DES-3000 issue with configuring 802.1x Guest VLAN cause switch rebooting constantly 2.PI-449: HQ20070516000009 DES-3000 issue with downloading default configuration file – “config cos port_mapping class” 3.PI-439: HQ20070420000011 DES-3000 issue with using SIM – configuring DES3000 through SIM, two IE windows are displayed, and model is not correct. 4.PI-442: HQ20070503000006 DES-3000 issue with radius – when only authenticate one port (port 5) with radius server but there are port 1 to port 5 show auth_statistics on web 5.PI-423: HQ20070323000003 DES-3000 IP-MAC-Port Binding logging issue. Fix IP-MAC-Port binding's log message has the incorrect description. (always show port number 0) 6.PI-418: HQ20070314000002 DES-3000 and issue with configuring CPU Interface Filtering. Fix create ACL via CLI at all ports( port 1-24), but from web interface it can not display properly (only show port 1-3,6,10). 7.PI-416: HQ20070307000004 DES-3000 and issue while monitoring MAC address. Fix DES-3000 can not browse MAC address by VLAN name via WEB interface if the VLAN name is longer than 10 characters. ============================================================= Firmware: 3.00.053 (PROM:1.01.007) Hardware: A1/A2/A3G for DES-3000 series, D1/D2/D3G for DHS-3000 series Date: March. 22, 2007 Modification: 1.H/W version is changed to A3 (DES-3000), D3 (DHS-3000). 2. Expand port description from 32 bytes to 128 bytes. 3. Add IP interface description (128 bytes). 4. Modify maximum trunk group member ports from 8 to 4. 5. Remove Web-UI log-in page. Problems Resolved: 1.Fix warm start but the device send cold-star trap. 2. Fix use TFTP upload configuration will cause "allocate memory failure" 3. Fix slow display via CLI interface at "show fdb" when disable clipaging function. 4. Fix slow display via Telnet interface at "show fdb" when disable clipaging function. 5. Fix can not delete built-in SNMP group. 6. Fix can not enable SMTP via WEB interface. 7. Fix disabled port 9 of DES/DHS-3010G, port 10 is disabled as well. 8. Fix input Port description issue will cause that port can not forward traffic after switch restart. 9. Fix the check MAC Table function via WEB can not enter more than 10 characters. 10. Fix create ACL via web will lost port information of the ACL rule. ========================================================== Firmware: 3.00.036 (PROM:1.01.006) Hardware: A1/A2 for DES-3000 series, D1/D2 for DHS-3000 series Date: Sep. 27, 2006 Problems Resolved: 1. Fix dst (day light saving time) command not meet the CLI definition. 2. DES-3018 FW upgrade from 2.00B20 to 3.00B32 will lost configuration. =========================================================== Firmware: 3.00.032 (PROM:1.01.006) Hardware: A1/A2 for DES-3000 series, D1/D2 for DHS-3000 series Date: July. 10, 2006 Problems Resolved: 1.DES-3018 .BIN file write to DES-3010F, port link fail 2. PROM code upgrade to v1.01.006 for new BCM532x series P12 IC introduce, its hardware version is A2/D2. 3. PI-309 DES-3000 series IP-MAC issue. ============================================================ Firmware: 3.00.025 (PROM:1.01.005) Hardware: A1 for DES-3000 series, D1 for DHS-3000 series Date: Jun. 5, 2006 Add new features: 1.MAC notification 2.Cos based on MAC DA/TOS/DSCP 3.IP/MAC Binding 4.BPDU filtering per port 5.Multicast filtering mode 6. Add save log command. 7. Support new module: DEM-201FL 8. Support chip BCM532x series P12 IC Problems Resolved: 1.Fix: Incorrect SNMP value in Bridge MIB -dot1d STP Port Designated Bridge/Root 2.Fix: STP LBD function but CPU 100% periodically. 3. Fix: factory test issue: DES-3010FL MAC address error. 4. Fix: The source port of DES-3010F SNMP trap was = "0" 5. Fix IGMP Snooping issue - Stop a stream may also stop another stream play in the same port/PC. ============================================================= Firmware: 2.00.026 (PROM:1.01.005) Hardware: A1 for DES-3000 series, D1 for DHS-3000 series Date: Feb. 27, 2006 Fixed LED issue when reboot Led bright one times when DUT enter CLI (As R1). =============================================================== Firmware: 2.00.023 (PROM:1.01.005) Hardware: A1 for DES-3000 series, D1 for DHS-3000 series Date: Feb. 21, 2006 Add support new flash: S29GL032M90TFIR40 W19B320ABT7H AT49BV322D-70TU ============================================================== Firmware: 2.00.020 (PROM:1.01.003) Hardware: A1 for DES-3000 series, D1 for DHS-3000 series Date: Dec. 26, 2005 Problems Resolved: 1.Fix D-Link Russia reported security issue. Correction actions: * Remove super password * Change backdoor password to console access only. 2. Fix “trusted_host” IP works in telnet/web, but fails in SNMP problem. 3. Fix WinXP 802.1x client showing wrong message when running “local 802.1x” 4. Fix message error (IP=0.0.0.0) when sending “linkup/down” trap. 5. Fix static FDB table problem when co-working with port-security function. 6. Fix failed to configure “Unicast/Multicast static filtering table” from D-View SNMP tool. 7. Fix Web UI Java script security issue: If using user-level account login from Web UI (eg., Firefox) and then disable Java script of web, that user-level account can have admin-level access right. 8. Fix incorrectly sending “port security access violation trap” issue. Enhancements: 1. DHCP Auto-configuration 2. Web UI supports non-IE browser 3. STP loopback prevention 4. Bandwidth control GUI/CLI message remind 5. SMTP client Log enhancement 6. Log admin password/IP change activity enhancement 7. SIM commander 8. CPU interface filtering 9. Port Security Violation Trap/Log Notes: 1. For firmware upgrade from R1 to R2, please disable 802.1x state first. Then re-configure the 802.1x function in R2 firmware version. 2. After upgrade firmware from R1 to R2, user need re-configure the SIM and syslog function. Because these functions be upgraded. ============================================================ DES-30xx Firmware 1.01.021 (Released: June 15, 2005) First release version. For features, please check the Data Sheet.