RV082 Firmware v1.3.9.8-tm Release Note

7/2/2008

Changes:

1. Support Trend Micro ProtectLink Gateway service, which requires the purchase of 
a license key (i.e. LBATMPG05 or LBATMPG25).
2. Fixed a UDP Port 0 DoS vulnerability issue.
3. Upgraded the OpenSSL library from version 0.9.6d to 0.9.6e to address some 
vulnerability issues. 
4. When remote management and HTTPS are both enabled on the Firewall page, the 
HTTP-based remote management is no longer available. Users have to use 
https://<Router WAN IP>:[port number] or https://<Router WAN IP> for remote management.   
5. Administrator's username and password can both be changed on the Setup>Password page.
6. Support 50 QuickVPN users.

Known Issues:

1. QuickVPN Client v1.2.8 on Windows Vista cannot work properly when the Vista PC uses 
a wireless adapter to connect to the network. The issue was fixed by QuickVPN Client v1.2.11.

2. Windows Firewall needs to be enabled on Windows Vista in order for QuickVPN Client 
to function properly. This is due to the fact that IPSec service on Vista is disabled 
when Windows Firewall is disabled.   

3. QuickVPN Client v1.2.6 on Vista does not work properly when the Server Address is 
a DDNS domain name. This issue was fixed by QuickVPN Client v1.2.8. 

4. There is a known issue with Windows XP SP2 Firewall - ICMP packets are always dropped 
by the Firewall when the Firewall is enabled. The issue will cause the QuickVPN Client 
not being able to establish a tunnel with the remote QuickVPN Server successfully. 
Microsoft has released a patch to fix this issue. Once you install the patch, the issue 
should be resolved. 
http://support.microsoft.com/kb/889527/en-us


-----------------------------------------------------------------------------------------------------------
RV082 Firmware v1.3.7 Release Note

9/15/2007 (beta testing)

1. Fixed an IPSec NAT-T issue that the main mode initiator does not change UDP port to 4500 in the 5th packet as required by RFC 3947.
2. Fixed an issue with QuickVPN Client showing incorrect tunnel status. RV082 will present its LAN IP to QuickVPN Client so the Client can use it to detect whether the tunnel is truly established by ICMP ping.
3. Fixed a problem that users in the LAN cannot access a non-standard FTP service, e.g. http://220.246.5.41/test.asp.
4. Fixed a problem that occasionally users in the LAN cannot completely download a large file from the internet using PPPoE DSL.


-----------------------------------------------------------------------------------------------------------
RV082 Firmware v1.3.6 Release Note

10/11/2007

The firmware revision is to support the change of the CPU from IXP425BD to IXP425ABD. There is no change to the supported features.


-----------------------------------------------------------------------------------------------------------
RV082 Firmware v1.3.5 Release Note

2/15/2007

There are two firmware systems used by RV082. One is firmware v1.3.x which uses the newer Intel CSR1.2.2. The other is firmware v1.1.x which uses the original Intel CSR1.1. The look and feeling are quite similar, however, the v1.3.x firmware provides more features and better performance than v1.1.x. For example, the NAT firewall throughput has reached 200Mbps (bi-directional wire speed) and the IPSec throughput (3DES) has a maximum over 90Mbps. You can upgrade or downgrade the firmware on your RV082 device whenever you want. But be warned that downgrading firmware will restore the configuration to factory default. Users have to manually configure the router after firmware downgrade. 
***Importing configuration file exported from firmware 1.3.x into firmware 1.1.x will damage the router.***

Issues Fixed:

1. Fixed a bug in the Network Address Translation (NAT) that may prevent computers in the LAN from accessing the internet. This problem occurred to firmware v1.3.4 only.

-----------------------------------------------------------------------------------------------------------
RV082 Firmware v1.3.4 Release Note

2/05/2007

ENHANCEMENTS:

1. Enhanced the security of QuickVPN by supporting self-generated certificate on the router. Several functions (buttons) were added to the Certificate Management section on the VPN Client Access page. Administrator can generate new certificate, export certificate for admin backup, export certificate for QuickVPN clients, and import certificate for admin. The router's certificate needs to be delivered to all QuickVPN users and placed in the install directory of QuickVPN Client, e.g. C:\Program Files\Linksys\Linksys VPN Client\. This way the QuickVPN client will only trust these certificates placed in its local directory and will not be deceived by a hacker in the middle to connect to a hostile computer. With QuickVPN Client v1.1.0 or newer, when the client encounters a certificate that is not trusted, the client will pop up an warning message, suggesting the user quit the connection attempt. The export and import functions can be used when the admin wants to reset the router to factory default, but does not want to re-distribute the certificate to all of the QuickVPN users.
2. Added the support for Windows Workgroup (NetBIOS broadcast) over a QuickVPN (VPN Client Access) tunnel.
3. The maximum number of Static IP entries on DHCP->Setup page was increased from 100 to 253.
4. Added the support for the SNMP link-up/link-down traps on all of the WAN and LAN ports. In the previous firmware, the link-up/link-down traps were supported on WAN ports only. In a snmp-trap frame, the port number is indicated in the field "specified trap type" which was defined as the following.

Specified Trap Type           Specified Port				
1                             LAN port 1			
2                             LAN port 2			
3                             LAN port 3			
4                             LAN port 4			
5                             LAN port 5		
6                             LAN port 6			
7                             LAN port 7			
8                             LAN port 8			
129 (0x81)                    WAN port 1			
130 (0x82)                    WAN port 2 /DMZ	

ISSUES FIXED:

1. Fixed the "TCP Window Scaling" issue with Windows Vista.
2. The help page of the DHCP->Setup page has been updated to include the instructions to enable "MAC Filtering" using the DHCP->Static IP list.
3. Added the support for the new PeanutHull DDNS service. On the DDNS configuration page, the option, PeanutHull, was renamed as Oray.netPeanutHullDDNS. (Note: In China, the specification of PeanutHull DDNS service was changed on Oct. 1st, 2006. Old PeanutHull DDNS client will no longer work after Oct. 1st.)
4. Fixed the issue that the local DNS Server's IP address does not get passed to DHCP clients.
5. Added a pop-up message on the Dual-WAN page to inform the administrator to change the NSD host to IP address if the host field was configured with a domain name rather than an IP address.
6. The description about maximum number of the protocol-binding entries on the help page was changed from 30 to 100.
7. Fixed an issue (firmware v1.3.3.8 only) with firmware upgrade, which requires a power reset for https to function properly.
