FireBrick Model: FB6000 | FB2500 | FB2700 | FB2900 | FB9000 | SoHo/Plus | FB105

OEM Version: Standard   Change to: (default is Standard)

Software Versions: Older versions | Factory releases | Factory and Beta | Factory, Beta & Alpha

Built 2004-03-01
Current factory release
1.18.009 (Madeline)

Release notes from Factory release 1.18.008 to Factory release 1.18.009

Slight change for delayed packets (error packets/responses) affected normal traffic
Built 2004-01-08
Older factory release
1.18.008 (Lester)

Release notes from Factory release 1.18.007 to Factory release 1.18.008

Speed lanes were not re-allocated when time profiles changed unless "re-route" also ticked on profile. Fixed
Built 2003-12-18
Older factory release
1.18.007 (Kay)

Release notes from Factory release 1.18.005 to Factory release 1.18.007

Slight change in TCP stack for RST responses
Built 2003-10-26
Older factory release
1.18.005 (Javier)

Release notes from Factory release 1.18.003 to Factory release 1.18.005

Corrected winter time / summer time change to be 01:00 UTC not 01:00 BST
Built 2003-10-15
Older factory release
1.18.003 (Isis)

Release notes from Factory release 1.18.002 to Factory release 1.18.003

Subtle internal error in tunnel handling fixed - could drop some tunnel packets incorrectly.
Built 2003-09-29
Older factory release
1.18.002 (Howard)

Release notes from Factory release 1.18.001 to Factory release 1.18.002

Changed URL for manuals and software on FireBrick website.
Built 2003-09-07
Older factory release
1.18.001 (Georgette)

Release notes from Factory release 1.18.000 to Factory release 1.18.001

Internal changes for factory build - no other changes
Built 2003-09-06
Older factory release
1.18.000 (Frank)

Release notes from Factory release 1.16.047 to Factory release 1.18.000

Added bootp server name (sname) and filename (file) options to subnets.
Changed behaviour of DHCP Restrict option - now means that if a name matches any resticted subnet then it can only have IPs from that subnet. Still means names that do not match cannot have IPs from restricted subnets, as before.
Fixed log of refused DHCP request to show IP requested not one being offer instead
Fixed DHCP removal existing IP if out of range IP requested (e.g. laptop moving between sites)
DHCP server now only fields requested in options in request. If no options requested then everything possible is sent.
DHCP server bootp options now server IP and file, not server name.
DHCP server sends lease time even if not in list of requested options as linux does not ask for it then assumes 0, duh!!
DHCP restrict only applies if restricted subnet is in enabled profile
Further tidy of DHCP server to avoid messy duplicate MACs in allocation in some obscure circumstances where previous entry is now invalid.
Added some extra debug logging to DHCP server for when IP allocations change.
Made DHCP server debug messages a bit more consistent.
DHCP status page now allows manual naming of clients which do not send a name - type name and press return.
Added low level interrupt load control for rare cases of stupidly high volume LAN/LAN traffic
Added Fast TOS to speed lanes - making packets with TOS 0x10 (low latency) are not delayed by that speed lane.
Changed tunnel code to preserve TOS of contained packet allowing Fast TOS to be used on tunnelled VoIP traffic.
Changed login slightly to avoid showing username/password in location bar on some broswers.
Fixed bug where LAN and WAN are both DHCP client, but no server on WAN, took ages for LAN to get address.
DHCP server will send SMTP server address if requested by client
TCP SYN+FIN or SYN+RST will now be put through default filter/logging
Slight change to "Fast/TOS" mode. TOS with it 4 or 7 are treated as "priority"
Summer/winter time control only applies if time is actualy set - was creating otherwise spurious log entries.
Changed default TTL from 64 to 100 as some people run tunnels over very strange internet links.
Changed source port for time setting to 1024 not 2 as low source ports caused problems on some firewalls, leased lines and even current linux releases.
Changed default time servers (for factory default)
Incorrect tunnel name for source tunnel traffic on session table, fixed
COrrect time zone on "last login" on users list, was UTC
New bonded uplink feature designed for ADSL line use. See manual for details.
No longer treating the "network" address as a broadcast on the LAN. Ideal as pseudo gateway for bonded uplink feature.
Slight change for ATE operation.
Interface swap option to setup screen so LAN on left and WAN on 4 port hub
Factory reset changed, using port 2 sets DHCP client/server and LAN/WAN reverse, port 3 sets non DHCP and LAN/WAN reverse.
Changed web log output to cater for <, >, and & in the log, e.g. from login attempts (shows as -)
Changes to live sessions talking to/from the FireBrick are dropped if the IP in use changes (for tunnels and DHCP)
Changes of IP on subnets now cause the FireBrick to send a self ARP query to help detect duplicate IPs
Changed email from FireBrick to include text of first email log line at end of subject (also included in body as before) - ideal for SMS'd subjects
Some tunnel and dhcp logging made "events" not "debug", and "debug" entries removed.
Basic SNMP (read only) operation, compatible with mrtg, allowing monitoring of WAN, LAN and speed lanes. Please advise any incompatibility issues.
Profiles can now be set to be dependant on another profile (or not a profile) being active. Ideal for multiple fallback routing.
Profiles can now be dependant on another profile (AND/OR)
Adjusted default master speed lane to 1250KB/s limit
Complete rewrite of SNMP. Now includes responses with correct types for all of the "interfaces" group. snmpwalk is happy. cfgmaker is happy. Please test and advise any problems.
Minor changes to improve speed of software upload on LAN
SNMP now reports interface speed for a speed lane as the highest of the rate *or* cap on a speed lane, as rate alone could be too low and so ignored by mrtg.
Changes to internal operation of user interface - please advise if any problems
Profiles were not being set in some options (e.g. subnet) in SoHo, fixed
Full protocol selection (e.g. GRE, IPSec) now available in SoHo
Bonded uplink now available on SoHo (but not ping scanning or fallback)
Load balanced routing now available in SoHo, but cannot put after subnets like the Plus
Bounce mode for filters now available on SoHo
Filter timeout control now available on SoHo
SYN, bypass and end-log filter options now available on SoHo
Changed UI to non frames, and stylesheets - now works from a P800 - please let me have comments
Added some colour selection to the UI settings allowing the main background to be selected (per user)
Changed so that re-route on profiles clears and FB initiated UDP sessions such as tunnels.
Changed portmap so that if there is a port, but no protocol specific, then the packet has to be TCP or UDP. Previously another protocol other than UDP or TCP would ignore the port and hence match the portmap.
Added second pseudo address to allow bonded uplink as well as load balanced NATing downlink. If using bonded uplink already, set the pseudo address the same as your gateway.
Reversed In/Out for speed lanes on SNMP to be a bit more logical overall.
Minor corrections to user interface - do not use Agatha
Fixed "Clear alert" on Setup.
Changed to link from login as this affected customers using other ports than port 80
Added tunnel source IP address option (useful when using multiple backup routes)
Default IMAP filter changed for IMAP4 (port 143)
It appears that moving filters, or routes, etc, left the firebrick in a state where a reboot would lose the config.
As 1.17.283 (Estelle)
Built 2003-08-29
Older Beta release
1.17.283 (Estelle)

Release notes from Beta release 1.17.281 to Beta release 1.17.283

Default IMAP filter changed for IMAP4 (port 143)
It appears that moving filters, or routes, etc, left the firebrick in a state where a reboot would lose the config.
Built 2003-08-07
Older Beta release
1.17.281 (Celia)

Release notes from Beta release 1.17.274 to Beta release 1.17.281

Fixed "Clear alert" on Setup.
Changed to link from login as this affected customers using other ports than port 80
Added tunnel source IP address option (useful when using multiple backup routes)
Built 2003-07-15
Older Beta release
1.17.274 (Blas)

Release notes from Beta release 1.17.273 to Beta release 1.17.274

Minor corrections to user interface - do not use Agatha
Built 2003-07-14
Older Beta release
1.17.273 (Agatha)

Release notes from Beta release 1.17.235 to Beta release 1.17.273

SNMP now reports interface speed for a speed lane as the highest of the rate *or* cap on a speed lane, as rate alone could be too low and so ignored by mrtg.
Changes to internal operation of user interface - please advise if any problems
Profiles were not being set in some options (e.g. subnet) in SoHo, fixed
Full protocol selection (e.g. GRE, IPSec) now available in SoHo
Bonded uplink now available on SoHo (but not ping scanning or fallback)
Load balanced routing now available in SoHo, but cannot put after subnets like the Plus
Bounce mode for filters now available on SoHo
Filter timeout control now available on SoHo
SYN, bypass and end-log filter options now available on SoHo
Changed UI to non frames, and stylesheets - now works from a P800 - please let me have comments
Added some colour selection to the UI settings allowing the main background to be selected (per user)
Changed so that re-route on profiles clears and FB initiated UDP sessions such as tunnels.
Changed portmap so that if there is a port, but no protocol specific, then the packet has to be TCP or UDP. Previously another protocol other than UDP or TCP would ignore the port and hence match the portmap.
Added second pseudo address to allow bonded uplink as well as load balanced NATing downlink. If using bonded uplink already, set the pseudo address the same as your gateway.
Reversed In/Out for speed lanes on SNMP to be a bit more logical overall.
Built 2003-06-21
Older Beta release
1.17.235 (Vivian)

Release notes from Beta release 1.17.190 to Beta release 1.17.235

Profiles can now be dependant on another profile (AND/OR)
Adjusted default master speed lane to 1250KB/s limit
Complete rewrite of SNMP. Now includes responses with correct types for all of the "interfaces" group. snmpwalk is happy. cfgmaker is happy. Please test and advise any problems.
Minor changes to improve speed of software upload on LAN
Built 2003-06-16
Older Beta release
1.17.190 (Terry)

Release notes from Beta release 1.17.084 to Beta release 1.17.190

Changed web log output to cater for <, >, and & in the log, e.g. from login attempts (shows as -)
Changes to live sessions talking to/from the FireBrick are dropped if the IP in use changes (for tunnels and DHCP)
Changes of IP on subnets now cause the FireBrick to send a self ARP query to help detect duplicate IPs
Changed email from FireBrick to include text of first email log line at end of subject (also included in body as before) - ideal for SMS'd subjects
Some tunnel and dhcp logging made "events" not "debug", and "debug" entries removed.
Basic SNMP (read only) operation, compatible with mrtg, allowing monitoring of WAN, LAN and speed lanes. Please advise any incompatibility issues.
Profiles can now be set to be dependant on another profile (or not a profile) being active. Ideal for multiple fallback routing.
Built 2003-05-22
Older Beta release
1.17.084 (Sandra)

Release notes from Beta release 1.17.066 to Beta release 1.17.084

Slight change for ATE operation.
Interface swap option to setup screen so LAN on left and WAN on 4 port hub
Factory reset changed, using port 2 sets DHCP client/server and LAN/WAN reverse, port 3 sets non DHCP and LAN/WAN reverse.
Built 2003-05-15
Older Beta release
1.17.066 (Rick)

Release notes from Beta release 1.17.060 to Beta release 1.17.066

New bonded uplink feature designed for ADSL line use. See manual for details.
No longer treating the "network" address as a broadcast on the LAN. Ideal as pseudo gateway for bonded uplink feature.
Built 2003-05-08
Older Beta release
1.17.060 (Patricia)

Release notes from Beta release 1.17.058 to Beta release 1.17.060

Incorrect tunnel name for source tunnel traffic on session table, fixed
COrrect time zone on "last login" on users list, was UTC
Built 2003-04-28
Older Beta release
1.17.058 (Olaf)

Release notes from Beta release 1.17.055 to Beta release 1.17.058

Changed source port for time setting to 1024 not 2 as low source ports caused problems on some firewalls, leased lines and even current linux releases.
Changed default time servers (for factory default)
Built 2003-04-28
Older Beta release
1.17.055 (Nora)

Release notes from Beta release 1.17.050 to Beta release 1.17.055

Slight change to "Fast/TOS" mode. TOS with it 4 or 7 are treated as "priority"
Summer/winter time control only applies if time is actualy set - was creating otherwise spurious log entries.
Changed default TTL from 64 to 100 as some people run tunnels over very strange internet links.
Built 2003-04-14
Older Beta release
1.17.050 (Marty)

Release notes from Beta release 1.17.044 to Beta release 1.17.050

DHCP server will send SMTP server address if requested by client
TCP SYN+FIN or SYN+RST will now be put through default filter/logging

Older versions | Factory releases | Factory and Beta | Factory, Beta & Alpha