Note: This release is available through both online and offline firmware update mechanisms. Refer to the Installation Guide and User Manual for update methods and how to retrieve the package.
UTM9S 3G dongle support is not included in this release. For 3G support, please use v2.1.0-67.
New Features since the last release (UTM9S v2.0.1-16) :
- Added Advanced Application Control/Firewall engine.
Note: You will need to register the application license after upgrade so the service can be enabled. More info here - Added Multiple SSID support (UTM9S).
- Added more flexible firewall rules, to allow the user to configure multiple allowed or blocked time slots with a firewall rule for each slot.
- Added TCP/UDP active connections counter to the Monitoring -> System Status page.
- Added PPTP and L2TP VPN Server functionality.
- Added improved IPS engine. The UTM should see significantly increased throughput when IPS is enabled.
Issues Fixed:
- Resolved the issue where the UTM would not email rotated logs to the administrator once the maximum log size had been reached. For example, if the UTM is scheduled to email logs once a day, if the maximum log size is reached, the rotated logs would not be sent and will be lost. The UTM will now properly email logs every 10000 log entries, ensuring that the administrator receives all logs. If the maximum log size is not reached within a scheduled interval, the email containing logs will be sent out according to the schedule..
Known Issues and Limitations:
- Settings cannot be retained if downgraded to previous version. If you need to downgrade please factory default after downgrade.
- Not able to hear voice after a call is established from DMZ to LAN with server on the WAN and DMZ side.
- SNMP productid is still showing the UTM100 productid for the UTM150.
- SSL VPN client cannot be installed in some PCs with 3G adapters.
- In WAN loading balancing, if one of the WAN connections drop, all the lines get dropped and reconnected automatically.
- Application control and firewall is now available for IPSec traffic. With this new feature the IPSec performance is up to 12% lower than the previous release.
Caveats:
When installing SSLvpn, if there is a failure, a cache clean-up of the SSL-VPN adaptor is necessary. Use one of the following URLs to initiate the cleanup:
- For 32-bit PCs, select the following url:
https://<device IP>scgi-bin/users_portal/removeactivex?launch=true&is32bit=true - For 64-bit PCs, select the following url:
https://<device IP>/scgi-bin/users_portal/removeactivex?launch=true&is32bit=false
To Install
Firmware upgrade from update server:
================================
- Installed firmware versions older than 1.3.7:
If your firmware is older than 1.3.7 (<1.3.7) it cannot be updated directly to firmware newer than 1.3.7. Only firmware images older than 1.3.7 will be displayed when you query the update server (Application=>System Update=>Firmware). To upgrade to firmware newer than 1.3.7 you must first upgrade your system to 1.3.7. You can then perform the firmware update query again to display the newer firmware images (Application=>System Update=>Firmware). - Installed firmware versions 1.3.7 and above:
If your firmware is version 1.3.7 or above, when you query the update server all firmware versions will be displayed.
- Download the file, unzip it and follow the instructions provided in the user manual to upload the firmware.
This product includes software code developed by third parties, including software code subject to the GNU General Public License ("GPL") or GNU Lesser General Public License ("LGPL"). As applicable, the terms of the GPL and LGPL, and information on obtaining access to the GPL Code and LGPL Code used in this product, are available to you at NETGEAR's Open Source Code Web page