- updated ipfilter to 4.1.33
- inbound NAT rules can now be added on the LAN interface with the WAN address as a target; this helps with accessing servers on an optional interface from the LAN interface by using m0n0wall's WAN IP address
- replaced if_re driver by Realtek customized version to support RTL8111C (among others)
- IPv6 improvements by Andrew White:
- initial support for LAN IPv6 prefix assignment using DHCP-PD
- added AICCU to interface status page
- added IPv6 support for syslog destination
- added IPv6 support for Diagnostics:Firewall States
- added error handling to interface status page for AICCU being down
- fixed DHCPv6 server setup when target interface is configured in 6to4 mode (reported by Brian Lloyd)
- added support for user-customizable captive portal logout and status page, as well as a password change option for local CP users (contributed by Stephane Billiart)
- added 'Bind to LAN' option for syslog, so you can syslog over a VPN tunnel
- fixed dnswatch to deal with changed resolv.conf (for IPsec tunnels to dynamic endpoints)
- fixed various XSS vulnerabilities in webGUI
- added option on advanced setup page to defend against DNS rebinding attacks
- fixed extra slash in captive portal redirect
- added support for (manually updated) CRLs for IPsec VPN (contributed by Sebastian Lemke)
- prevent /ext directory from being listed through webGUI (reported by Bernd Strehhuber)
- fixed typo in system_do_extensions() that broke extensions support (reported by Bernd Strehhuber)
- added check for DHCP reservation entries for the same MAC address
- change EDNS to 4096 from default of 1280 for dnsmasq, should help with DNSSEC
- don't let missing DNS server information keep DHCPD from starting
A bejelentés elolvasható itt.
- A hozzászóláshoz be kell jelentkezni
- 2404 megtekintés