# ESG320

## V1.2.95

#### \[New Features]

* Supports High Availability (Master/Backup) to ensure uninterrupted network service during device failures.
* Supports NAT Exceptions to allow specific traffic to bypass NAT for better application compatibility.
* Supports SNMP v1/v2c/v3 to enable secure and flexible network monitoring and management.
* Supports IPSec IKEv2 Client VPN (Passthrough) to ensure seamless remote access behind the gateway.
* Supports VPN event logging to simplify troubleshooting of Site-to-Site (non-EnGenius) connection failures.
* Supports WAN connectivity checks using WAN IP to improve connection status accuracy.
* Supports WAN DNS-based public IP detection to replace Google DNS, improving reliability in restricted network environments.

#### \[Issues Fixed]

* Fixes an issue where IKEv2 clients were not displayed in the client list.
* Fixes an issue where firewall functions failed under Multiple Bridge mode.
* Fixes incorrect firewall rule application when Dest. IP/FQDN is set to “Any” and a specific Dest. Port is defined.

## V1.2.91

#### \[Issues Fixed]

* Improve the Security Services stability.

## V1.2.90

#### \[New Features]

* Supports L7 bandwidth limiting to enable application-level traffic control and improve network efficiency.
* Supports configurable WAN monitor IPs to provide more accurate WAN status detection and reliable failover.

#### \[Issues Fixed]

* Fixed an issue where the IKEv2 Client VPN did not support custom RADIUS parameters.

## V1.2.85

#### \[New Features]

* Added support for IKEv2 Client VPN to provide more secure and reliable VPN connections.
* Added support for custom NTP server configuration to improve time synchronization flexibility.
* Added an Ethernet Port Status diagnostic tool to help quickly identify physical connection issues.
* Added event logs for failed VPN user connection attempts to improve troubleshooting and security visibility.
* Added support for MTU configuration on WAN connections to optimize network performance.

#### \[Issues Fixed]

* Disabled DNS bind check to improve DNS compatibility and avoid unnecessary connection restrictions.
* Resolved CloudBrink routing issues affecting Dual WAN, Policy Routing, and IPsec Client VPN to ensure stable traffic handling.
* Corrected v6plus-related wording on the LSP interface to improve terminology accuracy.
* Fixed an issue where load balancing did not function when both WAN connections shared the same upstream gateway, enabling proper traffic distribution.
* Resolved an issue that prevented multiple local clients from establishing simultaneous L2TP/IPsec VPN connections to the VPN server.

#### \[Known Issue]

* IKEv2 Client VPN does not currently support custom RADIUS parameters or passthrough mode.

Workaround:

* This limitation will be resolved in the next firmware version (v1.2.90).

## V1.2.82

#### \[Issues Fixed]

* Fixed the issue where port 53 was opened on the WAN side when the Captive Portal or L7 rule was enabled

## V1.2.81

#### \[New Features]

* Added support for Gateway v6plus/Xpass (Japan’s VNE) with IPv6 IPIP tunneling for optimized connectivity.
* Improved the rollback function event log title to make it more descriptive.

#### \[Issues Fixed]

* Fixed an issue where packet capture from WWAN failed or produced duplicate packets.
* Fixed an issue where incorrect WAN information was displayed on the Detail page when VLAN is enabled in the WAN settings.

## V1.2.80

#### \[New Features]

* Support CloudBrink service to offer ZTNA (Zero Trust Network Access) solution
* Adds MAP-E and DS-Lite support to enable IPv6 access in ISP networks using IPv4-based tunneling 
* Adds IPv6 Ping/ Traceroute support on WAN1 interface for troubleshooting purposes
* Optimize the performance of the Diag Tool: CPU Usage
* Allows Ping operations in Diag Tool to follow the active primary WAN interface instead of a fixed WAN1 interface.
* Enhanced WAN logs to clearly record status: active, inactive, and unstable

#### \[Issues Fixed]

* Fixed the issue where Client VPN did not follow the default routing rule when Default Route to Remote Hub was enabled in auto S2S VPN configuration
* Fixed the issue to reduce duplicated log entries when the WAN connection is unstable.
* Fixed incorrect rule policy order between 1:1 NAT and Port Forwarding
* Fixed the issue where only one SIP client can connect to SIP server if SIP client ‘s source port was not TCP/UDP 5060
* Fixed Symmetric NAT type detection failed.
* Fixed incorrect WAN2 IP address displayed after updating policy route rules
* Fixed fail to establish 3rd party S2S VPN connection with IKEv1 when Primary WAN public IP changed.
* Fixed an issue where full tunnel was restricted to Auto VPN mode. It now supports operation without Auto NAT Traversal enabled.

## V1.2.71

#### \[Issues Fixed]

* Fixed issue where Windows/macOS client cannot access ESG320 LSP (Local Status Page) when ESG320 is default configuration.

## V1.2.70

#### \[New Features]

* Support Static Route over VPN: Enables traffic control by manually defining routes over a VPN tunnel, optimizing network efficiency.
* Support Default Route to Remote Hub: allows routing all traffic through the remote hub for enhanced security and centralized traffic management
* Support to save device’s log to syslog server for centralized log management
* Support real-time log download to easy troubleshooting
* Changes ESG510/ESG610/ESG620 Ethernet LED definition to “Green is high speed; amber is lower speed”
* Add warning message for WAN/LAN IP conflicts to alert users of potential network issues
* Enhanced L7 firewall detection to improve accuracy in identifying Layer 7 packets

#### \[Issues Fixed]

* Fixed issue where only one L2TP connection from a LAN site could be established to an L2TP VPN server at the WAN site
* Fixed issue where clients failed to obtain an IP address when switching WAN2 and LAN via the Local Status Page (LSP) while the internet was unreachable.

## v1.2.68

* This f/w version is for the first release.
