Some internal changes to TCP stack which should have no impact on normal usage.
IP wizard now offers stealth config options even when 5 port option is installed
If subnets changed, or config loaded then DHCP client settings refresh immediately
Minor updates to stylesheet
Security notice in some circumstances ICMP traffic was being allowed in via other filters, e.g. GRE. Fixed.
2.02.412 (Daire) Beta
Slight change to DHCP server to set sname to text version of bootp address if used, and send as option 66 (SNAME) [may be removed later, not sure].
2.02.404 (Cael) Beta
Further fix to port mapping display as was not showing a range when a range of target ports was selected.
2.02.403 (Baiscne) Beta
If more than 10 lines selected for paging on user then showed an ipgroup and port group No. 11 by mistake. Fixed.
Showing "lane" column on sessions even shaping not installed.
On mappings, if target IP range, then was showing range of mapped to port instead of single port.
2.02.398 (Acco) Beta
The quick setup screen was showing a red not green background on "allowed in" filters that were selected, in some cases. The check box was correct though.
Fixed.
2.02.393 (Vassedo) Beta
Internal adjustment to ethernet flow control timing
2.02.390 (Uchtain) Beta
Editing filters caused change to general TOS value in 2.02.389 and not setting the filter tos value. Usually this severely affected VoIP as it made TOS 0 the setting for QO. 2.02.389 withdrawn.
2.02.389 (Taileach) Beta
Added new option to specific TOS value considered to be priority for QOS controls in traffic shaping and bonded tunnels. (set in log/filter options)
Changed name of protocol 41 to Encap/IP6
Changing ip/port groups causes speed lanes to be re-evaluated
2.02.385 (Saenu) Beta
Also now showing stealth on the subnet list when selected with 5 port option
Incorrect rate (min) shown in speed lane list, fixed.
2.02.383 (Reoda) Beta
Same minor routing change made to default gateway
Returned stealth tick box on subnets for 5 port option
2.02.381 (Regol) Beta
Subtle change in routing rules so that return routes to general interfaces work subnet based on subnet not originating subnet.
2.02.379 (Potitus) Beta
Allows default route to be set to tunnel with no IP address (as there is no need on a tunnel)
Some minor typos fixed
Change to description of Fast TOS. Now labeled QOS. Same action to set priority for traffic with TOS bits 7 or 4 set, typically for VoIP.
Add QOS option to tunnels when bonding un use. If set then packets with TOS bits 7 or 4 set are not reordered (forced down same tunnel).
2.02.375 (Ogarmach) Beta
Speed lanes were not allowing edit of flags for fast, fast ack, fast tos, fixed
Added Display of min and max rate on speed lanes
Lots more testing with VoIP over ADSL and speed lanes
Changed ifName in SNMP reporting to be "eth0", etc., as per MIB spec.
Changed ifDesc in SNMP reporting to return description as per MIB spec, with option to send just a number like hp switches do.
2.02.355 (Naoise) Beta
Further tidy of conversion from old configs.
Speed icon displayed interface now defaults to the interface selected as the default gateway interface.
Factory default example speed lanes for ADSL now set max as well as min
2.02.353 (Machar) Beta
Conversion from old configs before 2.02.352 was not quite right.
2.02.352 (Laegaire) Beta
Change to lane give/take feature - see manuals for more details
Basically simplified. Each lane/direction now has a min and a max setting and any spare capacity unused by the master to added to the currently used capacity on each subordinate lane. Setting the max to the same as the min stops this on any lane.
Older configs which did not have "take" specified on a lane will automatically have the "max" setting set to the same as the "min" to operate in the same way.
Slight change on maximum queue latency controls. TCP 500ms as before, but other protocols now 1s.
2.02.341 (Kentigern) Beta
OK, the SNMP oper status for filters was messed up. Fixed.
2.02.338 (Igalram) Beta
SNMP reports oper status as down on a filter that is marked suspended - avoids seeing stupid numbers of operational interfaces.
SNMP reports oper status as down on all lanes for to/from interfaces which are not in use - again, cuts down number of operational interaces.
SNMP reports admin status as down on all lanes for to/from interfaces which are not valid (feature not present).
2.02.333 (Heremon) Beta
SNMP walking no longer includes various fields we did not have data for.
New SNMP interface numbering. 1-5 is physical ports, 6 is core. 101-200 is filters. 201-250 is shaping to/from WAN. 301-350 is shaping to/from LAN ... up to 701-750 shaping to/from tunnel.
Corrected bug in SNMP where values 128 to 255 were returned incorrectly.
Added extended interface stats for interfaces 1-6 including in/out discards/errors/unicast, ifName and ifAlias.
2.02.297 (Garbhcronan) Beta
Corrected factory default on speed lanes to by right values in Kbits/s
Further minor changes to speed lane controls after testing
2.02.291 (Eathfaigh) Beta
Speed lanes now specified in Kbits/s not Kbytes/s. Existing configs scales by 8 automatically.
As per normal use for communications links, K in traffic rates now 1000 not 1024
Internal changes to speed lanes to make the control more accurate (previously higher speeds were somewhat approximate)
Speed figures on master speed lane now includes all subordinate speed lane traffic as well
Note that historical statistics (today, yesterday, this month, last month) on speed lanes will be reset on upgrade to this software
Speed lanes now allow control of rate TO and rate FROM each interface. For any traffic the src and destination interface speeds are both applied (effectely limiting to the lower speed).
Speed lanes now record usage of rate TO and rate FROM each interface.
Speed lane configuration page now operates on one selectable interface at a time (would be 2 cluttered with 12 separate entries per lane, and most people only want to control to/from WAN anyway).
2.02.276 (Daigre) Beta
Added option to allow speeds to be shown in Kbits/s rather than Kbytes/s
2.02.269 (Caedmac) Beta
Change to login screen when uploading UI
Changed factory default filters to be Any->LAN and LAN->Any rather than WAN->LAN and LAN->WAN
Corrected error introduced in 2.02.200 which causes tunnels not to work in some cases. If you are running 2.02.200 or 2.02.260 and use tunnels you should upgrade.
2.02.260 (Baethbarr) Beta
Much faster tunnel handling - to accomodate 3 x 2Mb ADSL bonded line handling
Firebrick web configuration pages now faster especially over remote links
General optimisations, and fix of packet delay issue when rejecting traffic
Current in/out KB/s per port now shown on status page
Counters on ports now show per second values as well
Was not able to set flags (fast ACK, etc) on "To tunnel" in speed lane controls
Renamed "monitoring" feature to "reporting" as people confused with ping scanning (profiles)
New improved purple
2.02.200 (Vallaunius) Beta
Killing a session with session number over 999 and commas in the UI options would not work, fixed
Support for /31 subnets (both IPs valid and not broadcast), RFC3021
Without extras, only 9 profiles where available, now 10 as per manuals
Ranges of IPs are displayed more clearly in some cases, e.g. 172.16-31.X.X with UI option to show ranges in full instead
UI Option to show ranges of IPs using netmask/CIDR notation where possible
UI Option to show netmasks in non CIDR notation
Default IP group RFC1918 block was incorrect, was 172.16.255.255-172.31.255.255 not 172.16-31.X.X
Change to default filters to remove general outgoing ICMP and add an incoming "Ping" specific filter
Factory reset as DHCP server on LAN was not working, fixed
Factory reset as WAN/LAN reverse on 5 port now does reverse WAN/LAN with LAN as port 1
DHCP client is quicker to pick up an address at startup now
Port mappings now have option of percentage chance (part of bonding feature) like routing does
In 5 port mode, where some interfaces were not being used, shaping rules listed wrong interfaces
Speed lanes now allow control of "To Tunnel" traffic. The tunnelled traffic (UDP port 1) is not affected by speed lanes, but does count in usage.
White, Black and Purple options added to user colour controls
Important change to weighted rule handling - see Manuals
IP wizard was removing routes to subnets, as well as not making all settings correctly.
Added some colour to log display
Deleting a user will immediately log them out.
2.02.160 (Uccus) Beta
New option on tunnels, MSS Fixup, which adjusts TCP MSS (if specified) on SYNs to the appropriate value for the specified MTU to avoid segmenting packets.
New feature on tunnels when bonding available to allow multiple tunnels to be bonded
Slight re-ordering of fields in Tunnel config pages
Change to subnet DHCP restrict feature allowing different restriction prefix from subnet name
Change to subnet DHCP restrict to also match MAC (hex) as well as name against prefix
Log output (and syslog, etc) for drop/accept/etc and end session now has more information in interface name (subnet/tunnel name)
End session log has additional information on NAT address/ports applied
Log/filter options controlling debug were not working correctly.
A configuration with no speed limit but "Take" set to take capacity from another speed lane could be limited in speed sometimes. Such a config was not sensbile anyway. Fixed
On end of routes the gateway route was badly laid out, fixed
Some DHCP debug logs were badly formatted - tidied up
2.02.128 (Tailc) Beta
IP Wizard to create bonded uplink was broken (backup routes were none->WAN not any->WAN), fixed
Speed lanes have new latency adding option for simulation of high latency links (e.g. satellite)
2.02.127 (Saenius) Beta
Internal changes for load handling and monitoring on ethernet device drivers, and added counters on diagnostics pages.
In some cases shortly after first getting a DHCP address a power cycle would lose the config, fixed
Added diagnostic log entries for connection/disconnection of ports
2.02.098 (Rascua) Beta
Speed lanes were not re-allocated when time profiles changed unless "re-route" also ticked on profile. Fixed
2.02.097 (Pisear) Beta
Changes "reroute" on profiles not to affect traffic destined for a tunnel, but obviously affects the UDP port 1 tunnel traffic itself still.
Minor change for ARPs when ARP on WAN stealth
2.02.094 (Odras) Beta
Slight change in TCP stack for RST response handling
2.02.091 (Nantua) Beta
Minor change to ARP stealth on units with 5port option
Fixed bug in ARP cache which could affect large sites
Log for "restored contact" showing junk if profile was 20 character name, fixed
DHCP client could get confused with replies to other firebricks on same LAN, fixed
Fixed diagnostic MAC report when using multiple interfaces (5 port option)
2.02.084 (Macer) Beta
Loading an old firebrick config would sometimes get the allowed interface list wrong on User settings. Fixed
Loading an old firebrick config could show misleading interface directions for subnets in the routing table. Fixed
IP Wizard was not setting ping profiles to ping 24/7. Fixed
Slight change to wording for ping profile lost/restored contact so truncated subnet shows currently if email->SMS.
Internal ATE change
2.02.082 (Keir) Beta
When editing any filter/route/etc which used the "IP of logged in user" IP group, this was not selected, so a save would then use "Any" IP.
Error in debug log message report for invalid VLANs tags, fixed
2.02.074 (Iehmarc) Beta
Changed speed lane operation so that master speed lane is selectable per speed lane
Changed factory default speed lanes
Added tool tips to lane setup
Mapping listing page had new ip/port mixed up - fixed
2.02.070 (Heber) Beta
Corrected summer time / winter time change to be 01:00 UTC, was 01:00 BST
Improved log to not say install key "expired" if actually "up to date"
Changed log to say "Install key" not "Auth" to be consistent
Link from speed lanes to sessions was broken
Setting Full duplex mode was not showing as set when going back to ports page
Status now shows DHCP allocations on LAN2/3/4 as well (e.g. 5 port mode)
Possible MAC cache problem with WAN/LAN reversal mode, corrected
Tidied up option to name interfaces - now available without 5 port option
5port option allows complete flexability of which ports are what interfaces
Check config after upgrade
Stealth now operates between WAN and LAN even in 5 port mode (providing WAN and LAN both have ports defined)
Factory reset for 5 port sets 5 separate interfaces, and stealth enabled
Corrected factory reset which set the gateway interface incorrectly by default
Change to try and ensure a logged in user stays logged in when loading new code or UI
Added warning if users change two interfaces to be the same name
IP wizard on new unit now wards that not all options may be listed until features are set up
2.02.016 (Garad) Beta
If number formatting set to use commas, then some flags in subnet settings operated incorrectly.
After WAN/LAN reversal, a second power cycle was sometimes necessary.
Internal change to slightly improve efficiency of routed traffic.
2.02.000 (Fais) Beta
First factory release of FireBrick 105
2.01.812 (Easal) Beta
Further internal changes
Release candidcate
2.01.810 (Daighre) Beta
Internal changes for port initialisation
Release candidate
2.01.808 (Cadwan) Beta
Still a broken link
2.01.807 (Badvoc) Beta
Broken link in wizard prompts
2.01.806 (Ablach) Beta
Further internal changes
2.01.801 (Weonard) Beta
Icons now match manual
Internal changes for ATE/labeling
The login/title section no longer shows the serial number and version unless you have status view access
2.01.788 (Vainche) Beta
Last release actually broke the IP wizard - new spells formulated
Internal change to startup code
Groups were actory reset security 3 and are now security 2
Additiona OEM releases
2.01.785 (Uar) Beta
IP/port groups default security level 2
Config loading was causing a factory reset
Added extra "magic" IP group for IP of any logged in user
Added default IP group for "RFC1918 Private IPs"
Added default Port Group "FB Tunnel Traffic"
Fixed wizard to order subnets Inside first
More typos
2.01.760 (Tah-Nu) Beta
Better handling of a reload on setup page after auto-logout.
Various typos
Loading old configs screwed up mapping interfaces
Mapping was not saving target source/target ports
Page handling on various screens was messed up
Traffic shaping was not right and was matching inactive and incorrect shaping rules
2.01.753 (Saccius) Beta
Icons re-done and new IP/Port grp icons - on non red backgrounds they look much prettier in mozilla than IE
Name and security on IP/port groups now saved when you click "Add"
Removed "Blank" wording - looks silly.
Fixed empty table cells not showing in IE
2.01.749 (Rascua) Beta
IP groups working (under setup menu at present, may have icon soon)
Port/protocol groups working (under setup menu at present, may have icon soon)
Where no name for an item it now shows
Blank
Portmaps now also allow specific subnet selection on mapped interface
Re-wording of feature installation screens on FireBrick and web site to be more consistent
Changed icon/title from "Ports" to "Mapping"
Background colours now colour behind icons at top - image files need a bit of tidying up
2.01.716 (Raigre) Beta
Added specific subnet/tunnel for default gateway and for ping destination
Tidy up of Setup menu
Tidy subnet menu with VLAN subnets
Major change to ARp handling for VLAN subnets
2.01.696 (Pesrut) Beta
Token/key input now one field not three to allow cut and paste.
Added MAC cache list loaded from switch
2.01.690 (Odhrain) Beta
Changes feature update requests
Changed name to "FireBrick 105"
Filter edit was not listing some check boxes correctly
Subtle internal error in tunnels fixed - could drop some tunnel packets incorrectly.
Better handling of tunnels restarting when from DHCP subnets.
Note that stealth is not available with 5Port feature, although the LAN1 stealth address still works on LAN1.
Port controls (Speed, duplex, MDI/X, etc)
2.01.638 (Mac-Da-Tho) Beta
Shapes & lane were not listing or editing correctly
Some UI fixes - subnets would not save, filters would not erase, etc.
Wizard prompts improved
IP wizard added - comments please
Left hand factory reset now makes DHCP client on WAN and LAN as well as
server
on LAN. If LAN gets an address it stops being a server.
DHCP server can have manual override on gateway issued
Routing should now allow subnets to be moved even without EXTRAs pack -
subnets inserted at route 5 by default.
Updates feature setup pages. Nearly ready for online feature installation.
2.01.584 (Lachlan) Beta
link to firebrick software web site goes to 1740 software not 1730
IMPORTANT NOTE - BETA TEST CUSTOMERS MUST CONTACT SUPPORT BEFORE LOADING THIS VERSION
Lots of changes in ATE support, etc.
New options for log display
Corrected spelling or authorize
Auto reload on cable test function
Switched time profiles show colour based on active or not, as possible to be switched on but inactive if conditional on another profile.
Updated UI for 5 port option
Started adding tool-tips to input boxes and links. All input boxes should eventually have them but IE does not show on selection boxes. Comments welcome.
Made port ranges on main screen check boxes a tool tip to reduce confusion and space taken.
Increased number of router/subnet/user when none EXTRAs to allow some of the other features to work.
Added ports and protocol to routing
Change to UI style for configuration/forms - making UI more consistent to allow for future features - comments please
This issue is an interim issue - some work still to be done on IP wizard, etc
2.01.448 (Keelta) Beta
Added more debug messages to tunnels
Corrected broken tunnel operation
Stealth operation was not working correctly
2.01.424 (Kea) Beta
Internal change to improve performance
It appears that moving filters, or routes, etc, left the firebrick in a state where a reboot would lose the config.
2.01.420 (Iduthin) Beta
Subnet VLAN support on DHCP server and client
Fixed tunnel name on session list
Added subnet name on session list
Fixed conversion from old (1730) configs for time profiles using "Not ...". Reload old config after updating to this version.
2.01.416 (Hanno) Beta
Loading old config was not correcting interfaces on PortMaps, and so they would be messed up. Reload old config after upgrading to this version.
2.01.413 (Gamal) Beta
ARP for subnet VLANs in place - there is no filtering on VLA - some more to do stillNs
Routes can now be optionally directed to specific subnets (affects MAC and VLAN)
2.01.398 (Fail-Inis) Beta
Feature table in setup screen. Note, not all features are available yet.
Low level discard of 802.3 ethernet headers as per old firebrick.
Transparrent 802.3ac tag handling of packets routed through the brick.
Cable tester in setup / port setup
2.01.381 (Eala) Beta
DHCP mirror. A DHCP client which gets a gateway will find the next later subnet in mirror mode on a different interface and update it.
Changed status - now uses text to describe interface type of connected ports
New counters page shows all stats from built in switch with per port counters
SNMP working for basic stats per port - not full RMON stats yet
Added MAC to status
Added ability to move subnets about.
Changed DHCP mirror so subnet to bne mirrored is set explicitely
2.01.365 (Daich) Beta
Tidy up ARP handling with multiple MACs
DHCP client and server now using multiple MAC (DHCP mirror disabled for now)
100 routes
100 tunnels
100 portmaps
50 speed lanes
1000 ARP entries
2.01.337 (Cacumattus) Beta
Config upload now works
Serial number now reported correctly
24/7 checkbox on profile time setting
Increased to 100 profiles
Increased number of DHCP server addresses to 1024
Increased number of sessions to 10000
2.01.284 (Abhean) Beta
Initial version for testing
Still needs quite a bit of work - but basic operation working