Release Notes

NOTE

1. Firmware software releases are stored on mfusion orchestrator. For on-premise mfusion, please contact RansNet support to request for offline copies to upload to your on-premise mfusion.

2. Each RansNet device needs to be provisioned and activated on mfusion (cloud or on-premise) to pull the upgrades. Each device must have a valid warranty support status to entitle for a valid activation token. Distributors will be given an account to mportal to generate activation token for each device. For resellers (or end customers), please contact your distributor to request activation tokens for your devices (if not given already).

3. The below version are read in below form, Version: XXXX [Year] XX [Month] XX [Day]. Please follow this guide to upgrade.

SD-WAN Orchestrator (mfusion)

  • Optimized tracking tools.
  • Added Ooredoo SMS integration.
  • Added topology map for mfusion
  • Added App Manager and route-group for static routes.
  • Added mfusion CLI import review manager.
  • Released RANOS12. System performance tuning.
  • Enhanced mfusion API
  • Added midtrans payment for captive portal.
  • Added hotspot tracking by icmp and tcp port.
  • Added dhcp-server tracking by icmp and tcp port with reverse option.
  • Bugfix for hotspot route-track
  • Fixed MAC issue due to disk clone.
  • Fixed mfusion monitoring template editing.

  • updated snmpd base file to support snmp trap
  • enhanced HA. updated hotspot GUI setting. mfusion updates
  • optimized object-group. Support application group filtering.
  • Allow setting WG port. enhanced HA. mfusion dashboard updates.
  • Enhanced CLI import (fully import CLI to GUI setting)
  • bugfix for database reset and force startup.
  • bugfix for RANOS10 running as SSLVPN client (bridge-group not working)
  • bugfix on uptime display
  • bugfix for wireguard. clear the variable before each iteration
  • bugfix for PBR policy config (avoid duplicated policy rule number)

  • Added BGP aggregate-route. Support WireGuard tunnel port double digit instances
  • Added PBR route metric. Fixed hotspot client-sticky issue. Fixed SQL unable to start issue
  • mfusion report listing speedup. Bufix on dashboard display. Added sorting and filtering functions.
  • Upgraded hotspot engine to fix time drifting issue.
  • Support HS-L3-IPSec (IPSec L2VPN) topology orchestration
  • Finalized CLI import and host entity relocation. kernel and DB performance tuning.
  • Added network module for local GUI. Added fix for disk space optimization.
  • Added IPv6 for DHCP, OSPF, BGP, BFD. Orchestrator updates.
  • Unified VPN orchestration
  • Optimized traffic-shaping (QoS). Enhanced PBR/route tracking.

  • Require activation token for future SD-WAN devices provisioning. For devices without valid activation token, disable push config, reboot, upgrade firmware
  • 41456 41457 change CLI sequence for firewall, ipsec commands
  • 41455 add src/dst Object-Group to Traffic steering
  • 41150 make “Template” compulsory when adding mfusion host
  • 41460 default config template for XE-300
  • 41040 update DHCP GUI
  • 40942 update “System” Menu
  • 40844 interface tracking feature for eth, vlan, bridge, bond, wwan, ath(wifi)
  • 40000 wwan support Multi-PDN
  • 40067 change Firewall Object to Object Group

  • 34321 RAPI Add ‘all’ option to hostCount.
  • 39262 Orchestrator UI enhancement, add Go to Other Devices, etc.
  • 38778 update default topology for HSA, remove UA-800X
  • 38776 add “speed test” in host menu
  • 38775 add RADIUS NASIP and Backup RADIUS to wifi radius settings
  • 38853 wwan add track rsrq and track host
  • 38120 allow vpn client_id be remote host name string for vpn profile download (some ssl and ipsec modes only)
  • 35865 When importing topology, remove vpn links and related auto interfaces.
  • 35865 Enhance delete topology when host used as backup gateway
  • Added autocomplete=”off” to each input of login page.

  • 33734 Fix SD-WAN topology chart no data error (no need in RC, due to db structure change)
  • 33734 Fix mfusion monitoring dashboard bugs (due to host status algorithm change).
  • 36918 allow customize OTP/2FA messages
  • 37144 add Route Metric for wwan and LTE.
  • 34321 RAPI add GPS data handling,
  • 36957 make bridge interface in IPsec VPN VXLAN mapping an optional input
    37005 improve band setting for wwan
  • 36626 speed up interface listing
  • 36688 update Object Group Labels
  • 36607 support rate-limiting for traffic shaping
  • 33734 upgrade scripts for affect library files for RC only
    • Enhance host drop down menu
  • 34321 simplify RAPI token, remove entity info
    • Update monitoring templates in db seed
  • 36158 Restructure IPsec VPN with L2VPN support
  • 36266 Add enable CLI to new interfaces (except for loopback)
  • 36925 traffic shaping add bandwidth control option (shared/single)
  • 33734 fix report graph data not accurate issue, due to wrong history value cut-off checks (pie chart etc)
    • Admin new host: auto format MAC address for host name when new/edit host.
    • Auto assign rule number when adding PBR, Firewall, MWAN, Traffic Shaping
  • Fix nested display error in previewCLI
  • Fix server_id bug in vpn client UI
  • 35377, 35865  Add L2VPN over IPsec (part 1 and part 2), fix IPsec VPN CLI for IPsec peer
  • Add validator policies for direction > interface
  • Bugfix apply config not working in global hotspot list
  • Enhance VPN instance counter display

  • 33652 Support new interfaces: loopback, GRE Tap, GRE Tunnel and VXLAN.
  • 34066 GRE over IPsec
    • 34911 IPsec use gateway as branch, and display read-only configs
    • Support bgp-prepend for SSLVPN and IPsec
    • List used instance id in entity, for IPsec, DMVPN and SSLVPN
  • 34976 add Firewall Objects
  • 34414 Auto assign firewall rule no. (for local firewall and firewall templates)
  • 34333 Download Config from History > Compare Config
  • 33048 Add/display user on operation logs
  • 33069 assign host directly from global templates (firewall, wireless, hotspot)
  • 35569 Disable device GUI Network Module

  • 33069 Allow link to hosts from global templates UI (for firewall/wifi/hotspot templates)
  • 32049 Add back show all status buttons for routing and hotspot
  • Add back ipsec status for branch 51f7188
  • Fix report config edit bug
  • Forgot/Reset Password now only support email otp 
  • Add MTU to interface mobiles (LTE and wwan)
  • Allow enter firmware version in mass update and host menu
  • Mass add/remove multiple ssl vpn instances to selected hosts
  • Add default UA template for new topology
  • Enhance traffic shaping feature, add bandwidth commands when no class is defined.

  • Increased firmware download timeout.
  • Improved orchestrator GUI row layout. Widen form input area
  • Fix resync config triggering extra downloaddiff que
  • Fix missing import-from-host when adding new topology, when host alias is not specified.
  • Unify handling of 3 types of vpnlinks
  • Select and Enter Firmware versions for upgrade in host menu or mass update
  • Mass update for add/remove vpn instances
  • Updated traffic steering feature.
  • BGP network bugfix. 
  • Hide IP settings for wifi AP Mode
  • Sort BGP neighbor and Advertised network when compiling CLI
  • Display advertised networks (for ssl/dm vpn) on SD-WAN topology
  • Fix vulnerability issue: check rmm api user access rights when get host data (30360)

  • Finalized firmware upgrade via local mfusion.
  • NHRP and GRE enhancement (pre-DMVPN)
  • Updated mbox daemon. auto track IPsec policy changes.
  • ping loss monitoring and BGP next-hop self update
  • Add DMVPN feature UI
  • Exclude selected interfaces from three vpn UIs
  • Add BGP weight option for SSL VPN (L3 VPN mode)
  • Make enable status clickable for SDWAN interface listings
  • Standardize Network/Prefix for SSLVPN and IPSec VPN
  • Enhance Preview CLI Change display with collapsable host panels
  • display version and uptime at orchestrator
  • add new filter options for “traffic steering”
  • add “Track RSRQ” option for wwan0 and wwan1
  • Added FullScreen mode and inline editing item description to dashboard.
  • Added Host Status Overview in Monitoring: Dashboard.
  • Adjusted inline label font size and fixed tab multiple words bug.

  • Added route track backup option. Auto add SNAT rules for IPSec tunnel.
  • added dhcp option 138 (assign wifi-controller IP)
  • Standardize operational log for all client response display
  • for Apply Config, Mass update, Host Menu, Host Status Buttons
  • bugfix for RTT monitoring.
  • Wi-Fi STA Mode additional features
  • add traffic shaping under “SD-WAN” menu 
  • add “Preempty-delay” option in track host
  • Added component/mechanism to display help/hint.
  • Added search box to search list in RnPopup.

  • Fix hostmenu display bugs
  • Add Download SSL VPN profile from Gateway UI (Mainly for Remote Access clients)
  • When importing topology, remove invalid vpn links (missing server/client or invalid instance_id).
  • Add WiFi UI for sta_mode 
  • Add Mass update functions for resync, reboot, upgrade firmware, import config, and update firewall/wifi/hotspot templates
  • Monitoring UI 
    • Trigger, action, graph, item menus now fully working
    • Allow remove selected items in UI setting
    • Allow trigger and item management across hosts (can apply trigger/item setting changes to all the hosts this user can manage)
    • Mass update trigger name
  • Fix Report issues
    • Check email sending with multiple attachments working, add unit test for this
    • Fix report config page issues

  • Revamp ipsec settings
  • In Host Menu, add link to Host Dashboard 
  • Add Export/Import SD-WAN Topology per host
  • Add RADIUS Settings UI under Security Tab
  • Enhance UI of Wi-Fi Radio Settings, VPN branch edit and listing
  • Add Config Templates for hosts, e.g. Firewall/ Wireless/ Hotspot Templates.
  • Add new buttons to interface list actions: Operating Status, ARP status, DHCP Status
  • Add preview CLI when click Apply Config
  • Bugfix SD-WAN Dashboard Display/Link errors
  • Bugfix and Improve Hostmenu functions
  • Bugfix saving Config Template into a wrong type, add type check when saving
  • Improve Apply Config display in Orchestrator > Configuration > Config Templates
  • Improve orchestrator CLI compiling (for VPN/mobile commands) and force compiling CLI before Resync
  • Vulnerability fix: Enforce form token check for read-only requests. Upgrade JS libraries to the latest version. 
  • Tighten Apache server security sessions, make backend calls using https

Hardware/VM Appliances (SD-WAN/SD-Branch)

Enhancements:

  • Added debug wwan cmd to view mobile setting and connection status.
  • Optimized tracking start-time (wait for fully bootup)
  • Optimized ezmesh backhaul threshold. added default auto SIM failover.
  • Updated module port no. to fix GPS data reporting issue.
  • Optimized ezmesh agent backhaul connectivity tracking
  • Added host tracking for hotspot service

Bug Fixes:

  • Bugfix for ezmesh agent.
  • Fixed WG source port for branch router.
  • Fixed wwan IP issue (some telcos give illegal mobile IP)

Enhancements:

  • Support WPA3 and 802.11r/v/w/k for 520 series.
  • Enhanced WifiWAN and updated default BSSID setting.
  • Fixed QoS issues for UA-800 series
  • Added object-group support for hotspot-access (hotspot firewall-access rules).
  • Enabled logging for tracking functions.
  • Optimized VRRP tracking
  • Added Wi-Fi mesh support (easymesh) for 520 series
  • Released support for UAP-520 new AP
  • Enhanced Wi-Fi client reporting and API

Bug Fixes:

  • Bugfix on recursive looping issues when hotspot is enabled.

Enhancements:

  • Added support for 5G redcap (UA-520X)
  • Added BGP aggregate-route. Support WG port double digit instances.
  • Added PBR route metric. Enhanced “ip host” tracking.
  • Optimized bootup process. Enhanced IPSec tunnel tracking.
  • Enhanced STP setting and status
  • Added LTE band setting option. Added “ip track” option for system availability tracking.
  • Updated wwan dialer to support remove/re-insert of SIM card (without reboot).
  • Finalized HSA-520 release
  • Updated snmpd default setting and monitoring process
  • Updated IPv6 DHCP, OSPF, BGP and Route filtering.

Bug Fixes:

  • Bugfix for hotspot speed issue on bridge interface
  • Bugfix for setting local clock
  • Bugfix for GPS location data.
  • Bugfix for object-group FQDN filtering

Enhancements:

  • Auto add PSK for IPSec remote-ip.
  • Added support for UA-800M. 
  • enhanced mfusion availability tracking after config change.
  • Added gpio monitoring. 
  • optimized routing daemon startup
  • increased HSA max dhcp lease to 2000 (from default 1000)
  • optimized SIM failover tracking.
  • kernel performance tuning
  • enhanced PBR features. Support FQDN/application based routing
  • fine-tune traffic shaping (disable kernel shortcut routing when QoS is enabled)
  • auto restart dhcp service upon config change
  • Added “ip host” redundancy.
  • optimized module detection method to support different 4G/5G modules

Bug Fixes:

  • Bugfix for UA Multi-WAN.
  • Bugfix for config auto backup.
  • Bugfix for parsing WireGuard network/prefix.

Enhancements:

  • Added firewall-disable cmd
  • Added WireGuard VPN.
  • tracking upstream host via ICMP or TCP port to disable/enable interface
  • updated VXLAN CLI,
    • eg. use “interface xvlan0” to replace “interface vxlan 0
  • Added option to track wwan status and auto switch nr-mode.
  • Added support for XE-300
  • Enhanced Dual-SIM (active/standby) failover

Bug Fixes:

  • bugfix for SNMP agent not started after reboot
  • bugfix for Wi-Fi HT settings.

Enhancements:

  • enhanced Wi-Fi RADIUS and BSSID settings.
  • Added NASIP for Wi-Fi/RADIUS connection
  • Added speedtest CLI. enhanced Wi-Fi as WAN.
  • Optimized SIM card active/standby failover (dual SIM, single module)
  • Support Wi-Fi backup RADIUS server for dot1x authentication
  • Added MPDN CLI (support multiple APN/DNN per SIM card)
  • Added object-group for FQDN/URL firewall filtering, QoS and traffic steering
  • Added CMD to disable NAT ALG for SIP. 

Bug Fixes:

  • bugfix for running dual 4G modules

Enhancements:

  • Added BGP support for L2VPN/VXLAN. Added firewall object FQDN auto update.
  • optimize ipsec setting to handle dynamic peers
  • enabled dhcp-server multi-threading
  • added support for non-directly connected IBGP peers
  • added interface bandwidth monitoring via CLI.

Bug Fixes:

  • bugfix for VRRP host tracking.
  • bugfix for QoS/traffic-shaping

Enhancements:

  • Added track host for add/remove BGP network cmd
  • For UA series, reset 5G module settings at bootup.
  • Simplified APN/DNN setting
  • Enable VLAN on GRE TAP (layer-2 GRE tunnel)
  • support dhcp-server on vlan interface
  • Added support for VXLAN.
  • disabled EBGP policy requirement.
  • added IPSec auto reconnect and track-host. updated clock and NTP setting.
  • support firewall object-group and FQDN as source/destination
  • enhanced VRRP multi-threading and status display

Bug Fixes:

  • bugfix for Wi-Fi setting (potential crash when both radios are turned on for multiple SSIDs).
  • bugfix for nr-xx cmd not applied at bootup

Enhancements:

  • Optimize CLI execution over orchestrator
  • Added route track backup option.
  • Auto add SNAT rules for established IPSec tunnel.
  • Added 4G/5G signal quality (RSRQ) tracking
  • Added support for NHRP
  • Added IPv6 support for wwan (4G/5G)
  • Track & alert SIM card removal on mfusion
  • NHRP and GRE enhancement (DMVPN)
  • Finalized firmware upgrade via mfusion.

Bug Fixes:

  • Bugfix for RTT monitoring (used by route tracking)
  • Bugfix for “ip dhcp-helper”

Enhancements:

  • added delay cmd for LTE/wwan reconnect
  • optimized IPSec tunnel config. Enhanced ping tracking SLA
  • added Wi-Fi client STA mode (Wi-Fi as WAN)
  • ping tracking optimization (faster failover)
  • optimized mfusion tracking (for config mistake auto recovery)
  • optimized SIM status tracking
  • fine tuned dialling method for dual SIM (Active/Standby) failover support
  • IPSec config tracking (auto apply config change, no need manual restart after ipsec config change)
  • disable IMS for 4G/5G modules for better performance
  • added dhcp option 138
  • enhanced traffic-shaping(qos) feature

Bug Fixes:

  • bugfix for advertising BGP networks.
  • bugfix for dhcp nondefault and Wi-Fi channel width settings.

Enhancements:

  • Added IPv6 support for Interface address
  • Bugfix for routing & config daemon startup (caused slow bootup or failed to load config).
  • Added static DHCP assignment (MAC-IP).
  • Optimized wwan module at boot. optimized APN and 5G NR mode setting
  • Enabled fast config pull at bootup

Bug Fixes:

  • Bugfix for wwan (ip address mobile nodefault). backward compatibility to legacy 5G firmware.
  • Updated GPS function. fixed wwan reconnect issue after signal loss.
  • Bugfix for MWAN dynamic route tracking, VPN error log, Wi-Fi channel setting.

Enhancements/new features:

  • For HSA/UA, enhanced APN setting for 4G/5G
  • Added BGP as SD-WAN control protocol.
  • Updated to use TLS1.2 for SD-WAN management connection between devices and mfusion orchestrator.
  • Added quickstart Command Line Interface menu.
  • Optimized clamp-mss-to-pmtu due to ISP link MTU issues

Bug Fixes:

  • Fixed hotspot bootup issue (when the LAN is a bridge interface).
  • Fixed snmpd issue due to IPv6 conflicts.

wpChatIcon
wpChatIcon