Note: This release is available through both online and offline firmware update mechanisms. Refer to the Installation Guide and User Manual for update methods and how to retrieve the package.
IMPORTANT:
Due to the nature of the SSL improvements in this release, users already using or planning on using the HTTPS scan functionality of the UTM should take the following into consideration:
- For environments where the HTTPS scanning function is enabled with the default UTM certificate already installed into every browser, after upgrading to this firmware version the UTM administrator will have to re-install the new certificate into every browser again to regain a transparent HTTPS browsing user experience. Otherwise, users will receive SSL certificate warnings from the browser when navigating to a HTTPS site.
- If the user has two or more different UTM models (e.g. one UTM50 and one UTM9S), the two UTMs will use the different certificates after upgrading to this firmware version. If the administrator wants all the UTMs to use the same certificate for HTTPS scan, the admin must import the same certificate to all UTMs as a custom certificate. The operation can be performed on the Application Security -> HTTP/HTTPS -> Certificate Management page in the web GUI.
- Factory default will now create another random HTTPS scan certificate. Administrators should re-install this newly generated certificate into every browser after every factory default.
- Restoring configuration before v1.3.15-44 will NOT restore the old default HTTPS scan certificate. Restoring configuration in firmware v1.3.15-44 and after will restore the random HTTPS scan certificate used when the backup configuration package was created.
New Features since the last release (v2.1.0-60):
- Support Vodafone dongle K3772-Z.
Resolved issues (Since v2.1.0-60):
- The 3G/4G settings page will now display country, ISP, APN and access number.
- Fixed issue where the CPU would spike to 100% when walking on certain MIB nodes.
- Fixed issue where the support tunnel status is displayed incorrectly in the GUI.
- Fixed issue where units with unregistered status cannot have their status retrieved after clicking on the "Retrieve Info" button when switching update servers manually.
- Fixed issue where the update progress percentage bar display is stuck at 42%.
- Fixed issue with the Vodafone K3772-Z dongle when the status is displayed as "deleting" prevents the page from being auto refreshed.
- Fixed issue with the Vodafone K3772-Z dongle where the PIN code cannot be unlocked.
- Fixed issue where the UTM9S cannot find the SIM card when inserting the Vodafone K3772-Z dongle with PIN code.
- Fixed issue where the UTM will re-download firmware that has already been successfully downloaded if there is a network error during the initial firmware download.
Known Issues:
- Not able to hear voice after a call is established from DMZ to LAN with server on the WAN and DMZ side.
- SSL VPN client cannot be installed in some PCs with 3G adapters.
- In WAN loading balancing, if one of the WAN connections drop, all the lines get dropped and reconnected automatically.
- VLAN on VDSL is not supported. (UTM9S).
- SNMP productid is still showing the UTM100 productid for the UTM150.
Caveats:
When installing SSLvpn, if there is a failure, a cache clean-up of the SSL-VPN adaptor is necessary. Use one of the following URLs to initiate the cleanup:
- For 32-bit PCs, select the following url:
https://<device IP>scgi-bin/users_portal/removeactivex?launch=true&is32bit=true - For 64-bit PCs, select the following url:
https://<device IP>/scgi-bin/users_portal/removeactivex?launch=true&is32bit=false
To Install
- Download the file, unzip it and follow the instructions provided in the user manual to upload the firmware.
This product includes software code developed by third parties, including software code subject to the GNU General Public License ("GPL") or GNU Lesser General Public License ("LGPL"). As applicable, the terms of the GPL and LGPL, and information on obtaining access to the GPL Code and LGPL Code used in this product, are available to you at NETGEAR's Open Source Code Web page