ER8411 V1_1.2.0 Build 20231214 Official Firmware (Released on Dec 27th, 2023)

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

ER8411 V1_1.2.0 Build 20231214 Official Firmware (Released on Dec 27th, 2023)

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
ER8411 V1_1.2.0 Build 20231214 Official Firmware (Released on Dec 27th, 2023)
ER8411 V1_1.2.0 Build 20231214 Official Firmware (Released on Dec 27th, 2023)
2023-12-27 06:24:30 - last edited 2023-12-27 06:33:18
Model: ER8411  
Hardware Version: V1
Firmware Version: 1.2.0 Build 20231214 (Official)

This Article Applies to:

 

ER8411 V1 1.2.0 Build 20231214 (Fully adapted to Omada SDN Controller v5.13)

 

Release Notes:

 

New Features & Enhancements:

 

1. Add ACL support for IPv6 data.
2. Add support for IPv6 RA (Router Advertisement) configuration for LAN.
3. Add support for configuring multiple IP addresses on the WAN port.
4. Add support for monitoring session limits in controller mode.
5. Add support for configuring the MSS (Maximum Segment Size) of WAN port.
6. Add support for Gateway Tools in Controller mode.

  • Ping.
  • Traceroute.
  • Terminal.

7. Add support for the ability to download device info of Gateway in Controller mode.
8. Add support for Location Group in Gateway ACL.
9. Add support for allow list of MAC filtering in Controller mode.
10. Add support for tagging same VLAN ID on different WAN port.
11. Increased security of communication between Gateway and Controller.
12. Add support for DNS cache, which can improve domain name resolution speed by handling recent address resolutions locally before sending request to Internet.
13. Add support for DH 14 and DH 15 for PFS.
14. Add support for 0.0.0.0/0 IP range of local network when using IPsec IKEv2 for Client-to Site VPN.
15. Add support for DDNS custom intervals (1~60 minutes).
16. Add support for link-local addresses of IPv6 DNS on the LAN side.
17. Log Enhancements.

  • Show the source IP address of TCP no-Flag /ping of death attacks.
  • Show the log of link backup switching.
  • Show the log of DDNS update.
  • Logs can be saved when the device is down. You need to short press the reset button within 5s, and after releasing the reset button, the sys light will be on for 3 seconds to indicate that the downtime log is saved successfully.

18. Add support GRE function in Standalone mode.
19. Add support for Deep Packet Inspection.
20. Add support for enable/disable Flow Control in Controller mode.
21. Add support to modify the rate and duplex of the Ethernet port in Controller mode.

22. Security Enhancements.

  • Block all IPv6 data in the WAN IN direction by default, and you can allow IPv6 data via ACLs.
  • The Standalone web page uses HTTPS by default, if you have disabled the HTTPS port, please enable the HTTPS port before upgrading the firmware.

23. Add RIP and OSPF dynamic routing function in Standalone mode..
24. Add LDAP Authentication for PPTP/L2TP/OpenVPN and Web Authentication. Web Authentication only support in Standalone mode.

 

Bug Fixed:

 

1. Fix the bug that ICMP type 13 packets cannot be intercepted
2. Fix the bug that VPN Client cannot access the other side through IPsec when the device act as a PPTP/L2TP/OpenVPN Server and also establishes IPsec VPN with other devices.
3. Fix the bug that VPN client cannot proxy Internet access when VPN IP Pool and LAN IP are in the same network segment.
4. Fix the bug of CPU abnormality caused by enabling more VLAN Interface.
5. Fix the bug of high latency in ISP Load in Controller mode.
6. Fix the bug of frequent reconnection with Omada Controller.
7. Fix the bug that the VLAN configuration of IPTV is affected by the VLAN configuration of WAN port in Controller mode.
8. Fix the bug that the device does not support proxy internet access as Wireguard VPN client.
9. Fix the bug that Port Forwarding does not take effect under multiple WAN ports.
10. Fix the bug that the port status display is abnormal in Controller mode.
11. Fix bugs related to OpenVPN:

  • OpenVPN clients cannot proxy Internet access through the device.
  • OpenVPN IP pool cannot be configured.
  • When the device is used as an OpenVPN Server and the option is Split mode, OpenVPN clients cannot access the Internet normally.
  • Remote IP error displayed in the OpenVPN Tunnel interface when the device connects successfully as an OpenVPN Client.
  • When the device acts as an OpenVPN Client, OpenVPN fails to start when there are unsupported fields in the OVPN file.

12. Fix the bug that cloud access could not connect successfully when PPPoE dialup was performed on the WAN port.
13. Fix the bug that after the device connects to the Server as a WireGuard VPN Client, the peer cannot access the device via WireGuard Interface IP.
14. Fix a bug that prevented successful login when an underscore was used for the login password.

 

Firmware Download:

 

  • Direct Download:

 

ER8411 V1_1.2.0 Build 20231214   Full Release Note >

Note:

1. For ER8411 V1.0 and V1.6.

2. Please make sure the firmware version before upgrading is ER8411(UN)_V1_1.1.0 Build 20230705, otherwise the firmware upgrade will fail.
3. If you have disabled the HTTPS port, please enable the HTTPS port before upgrading the firmware. Or you will NOT be able to log into the admin web.
4. Your device’s configuration won’t be lost after upgrading.

 

  • Download From TP-Link Global "EN" Website:

 

ER8411(UN)_V1_1.2.0 Build 20231214:

https://www.tp-link.com/en/support/download/er8411/#Firmware

 

 > Notes < 

 

(1) The official firmware is normally released to the Cloud ahead of the official website or the forum as it doesn't require further manual editing. Generally speaking, the official firmware will be pushed to the Cloud first, then the TP-Link global "EN" website, this global "EN" forum, and later the TP-Link local websites. In rare occasions, the new release will be published to the global "EN" website ahead of the Cloud, which will be announced in the global "EN" forum, like this.

 

(2) The firmware upgrades for the wired products including Omada Controller, Router and Switch are universal, so you can download the firmware files from the global "EN" website or this forum to enjoy the new release. For wireless products such as Omada EAP, due to the limitation of local wireless laws and regulations, the firmware may be divided into different versions such as EU/US/CA/... , it's suggested to upgrade firmware from the local TP-Link official website accordingly.

 

(3) At present, only the new firmware release for the Omada Controller and Router will be continuously updated in this global "EN" forum. To get notified with the new release of Omada SDN Controller, welcome to subscribe to Topic 245226To get notified with the new release of Omada Routers, welcome to subscribe to Topic 255644. For other product lines, please check for updates via the Cloud or from the TP-Link official websites.

 

Feedback:

 

Any further feedback on the new firmware, please feel free to start a new thread from HERE.

To get better assistance, you may check Tips For Efficiently Reporting an Issue In The Community.

 

When reporting an issue, especially it's about firmware upgrade, it's suggested to include the following info:

-- Management mode (Controller or Standalone)

-- Device Model(s) and Hardware

-- Device Firmware (previous and current)

 

Thank you in advance for your great cooperation and support. See you in the forums soon!

 

Related Threads:

 

Get the Latest Firmware Releases for Omada Routers Here - Subscribe for Updates

Current Available Solutions to Omada Router Related Issues [Actively Updated, Post for Subscription]

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  0      
  0      
#1
Options