ZyXEL GS-4024 V3.80(LL.4)C0 Release Note/Manual Supplement

ZyXEL GS-4024 V3.80(LL.4)C0
Release Note/Manual Supplement
Date: Oct. 06, 2008
This document describes the features in the GS-4024 product for its 3.80(LL.4)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.80(LL.4)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.80(LL.4) | 10/06/2008 17:34:59
Bootbase version: V3.1 | 03/08/2007 18:36:32
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.80(LL.4) | 10/06/2008 17:34:59
V3.1 | 03/08/2007 18:36:32
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
0019CB000001
FF
00
61
bfbd
6d31
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
1
802.1s MSTP
SNMPv3
enlarge syslog buffer
802.3ah OAM
Multilevel CLI
SNMP trap group
configurable multicast VLAN
independent IGMP snooping and MVR setting
enlarge concurrent telnet session
IP source guard(Static binding, DHCP snooping, ARP inspection)
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
Two rate three color marking
IP subnet VLAN
RADIUS MAC login
RADIUS accounting
TACACS+ authentication
TACACS+ accounting
IGMPv3
IGMPv3 snooping
IGMP port-based
Loop guard
Daylight saving
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test, packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule, but the same source MAC packet still be filtered.
4. Can’t support IP port move.
5. Flow control can not go across unit.
6. Dvmrp didn't support IGMPv3 source filtering & IGMP Port-based
Bug Fix:
1.
Fix the HTP test fail issue.
Limitation of Settings:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
VLAN 1Q static entry 1k
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
Management IP interface 64
IGMP Filtering entry 256
MVR entry 256
VRRP entry 14
OSPF area 4
DHCP Server 16
Syslog server entry 4
IP source guard entry 128
Subnetbased VLAN 16
Change History:
V3.80(LL.4)C0 (10/06/2008)
1.
Fix the HTP test fail issue
V3.80(LL.3)C0 (09/08/2008)
1.
2.
3.
4.
2
Change vlan member setting will effect the packet transferring.
Fix the bug that two policy rule with the same metering setting will get error behavior.
Fix the SSH Dos attack issue.
Fix several tacaus and account issue
5.
6.
Fix the bug that ARP inspection will block the client which use Vista OS
Fix the bug that IE7 with silverlight can’t access our device.
V3.80(LL.2)C0 (05/13/2008)
1.
2.
3.
4.
5.
Fix the bug that GS-4024 don't set corresponding direct broadcast interface on unit 2
Fix the memory leak problem under abnormal ssh connection.
Packets will send back to the original port when enabling port security.
Fix the bug that device can't set trunking feature when enabling port security.
Fix the bug that DUT can't disable mac authentication via WEB.
V3.80(LL.1)C0 (11/5/2007)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
Enable DVMRP will cause system hang-up.
Enable DVMRP will cause memory leak.
WEB for TACACS+ and MSTP can’t work
MAC authentication will cause device unreachable after a period of time.
Device will not response ARP under large amount ARP traffic.
Device will crash under TCP SYNC attack.
Classifier precedence will not follow longest prefix match.
SNMP management can't cross routing domain
Set authentication uses RADIUS, after login fail about 256 times, the DUT will pop out RADIUS:
identifier error, and after 556 times, the DUT will become unreachable.
DHCP relay doesn’t work in some cases.
Set an unreachable RADIUS accounting server, accounting event and authentication login uses
RADIUS. After a period of time, the DUT can't login and will pop out radiusLoginSendToAuthServer:
identifier error.
Large amount of L3 direct broadcast traffic will reduce device performance.
ARP entries related to trunk ports are not flush when trunk ports link down.
Unauthenticated SSH attacking will occupy telnet sessions.
Device will crash under TCP DOS attack
Device will crash under log in attack.
Dot1x feature with RSTP feature will get error port status.
Fix the bug that no mac-authentication command doesn’t work.
Fix the bug that port security feature work with mac authentication.
V3.80(LL.0)C0 (4/25/2007)
Support new features
V3.70(LL.0)C0 (9/18/2006)
Support new features
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
9.
3
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
10. revise ospf interface web page
11. Can’t use Cluster Management function with Telnet or SSH client to re-command members.
12. In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
13. DUT ’s RIPv2 multicast function did not work
14. Memory leak bug on stunnel. It will run out of memory when scan https many times.
15. When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
First Public version
4
ZyXEL GS-4024 V3.80(LL.3)C0
Release Note/Manual Supplement
Date: Sep. 08, 2008
This document describes the features in the GS-4024 product for its 3.80(LL.3)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.80(LL.3)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.80(LL.3) | 08/26/2008 16:07:39
Bootbase version: V3.1 | 03/08/2007 18:36:32
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.80(LL.3) | 08/26/2008 16:07:39
V3.1 | 03/08/2007 18:36:32
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
0019CB000001
FF
00
61
bfbd
a8b1
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
5
802.1s MSTP
SNMPv3
enlarge syslog buffer
802.3ah OAM
Multilevel CLI
SNMP trap group
configurable multicast VLAN
independent IGMP snooping and MVR setting
enlarge concurrent telnet session
IP source guard(Static binding, DHCP snooping, ARP inspection)
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
Two rate three color marking
IP subnet VLAN
RADIUS MAC login
RADIUS accounting
TACACS+ authentication
TACACS+ accounting
IGMPv3
IGMPv3 snooping
IGMP port-based
Loop guard
Daylight saving
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test, packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule, but the same source MAC packet still be filtered.
4. Can’t support IP port move.
5. Flow control can not go across unit.
6. Dvmrp didn't support IGMPv3 source filtering & IGMP Port-based
Bug Fix:
1.
2.
3.
4.
5.
6.
Change vlan member setting will effect the packet transferring.
Fix the bug that two policy rule with the same metering setting will get error behavior.
Fix the SSH Dos attack issue.
Fix several tacaus and account issue
Fix the bug that ARP inspection will block the client which use Vista OS.
Fix the bug that IE7 with silverlight can’t access our device.
Limitation of Settings:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
VLAN 1Q static entry 1k
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
Management IP interface 64
IGMP Filtering entry 256
MVR entry 256
VRRP entry 14
OSPF area 4
DHCP Server 16
Syslog server entry 4
IP source guard entry 128
Subnetbased VLAN 16
Change History:
V3.80(LL.3)C0 (09/08/2008)
1.
2.
3.
6
Change vlan member setting will effect the packet transferring.
Fix the bug that two policy rule with the same metering setting will get error behavior.
Fix the SSH Dos attack issue.
4.
5.
6.
Fix several tacaus and account issue
Fix the bug that ARP inspection will block the client which use Vista OS
Fix the bug that IE7 with silverlight can’t access our device.
V3.80(LL.2)C0 (05/13/2008)
1.
2.
3.
4.
5.
Fix the bug that GS-4024 don't set corresponding direct broadcast interface on unit 2
Fix the memory leak problem under abnormal ssh connection.
Packets will send back to the original port when enabling port security.
Fix the bug that device can't set trunking feature when enabling port security.
Fix the bug that DUT can't disable mac authentication via WEB.
V3.80(LL.1)C0 (11/5/2007)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
Enable DVMRP will cause system hang-up.
Enable DVMRP will cause memory leak.
WEB for TACACS+ and MSTP can’t work
MAC authentication will cause device unreachable after a period of time.
Device will not response ARP under large amount ARP traffic.
Device will crash under TCP SYNC attack.
Classifier precedence will not follow longest prefix match.
SNMP management can't cross routing domain
Set authentication uses RADIUS, after login fail about 256 times, the DUT will pop out RADIUS:
identifier error, and after 556 times, the DUT will become unreachable.
DHCP relay doesn’t work in some cases.
Set an unreachable RADIUS accounting server, accounting event and authentication login uses
RADIUS. After a period of time, the DUT can't login and will pop out radiusLoginSendToAuthServer:
identifier error.
Large amount of L3 direct broadcast traffic will reduce device performance.
ARP entries related to trunk ports are not flush when trunk ports link down.
Unauthenticated SSH attacking will occupy telnet sessions.
Device will crash under TCP DOS attack
Device will crash under log in attack.
Dot1x feature with RSTP feature will get error port status.
Fix the bug that no mac-authentication command doesn’t work.
Fix the bug that port security feature work with mac authentication.
V3.80(LL.0)C0 (4/25/2007)
Support new features
V3.70(LL.0)C0 (9/18/2006)
Support new features
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
7
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
9. Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
10. revise ospf interface web page
11. Can’t use Cluster Management function with Telnet or SSH client to re-command members.
12. In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
13. DUT ’s RIPv2 multicast function did not work
14. Memory leak bug on stunnel. It will run out of memory when scan https many times.
15. When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
First Public version
8
ZyXEL GS-4024 V3.80(LL.2)C0
Release Note/Manual Supplement
Date: May. 13, 2008
This document describes the features in the GS-4024 product for its 3.80(LL.2)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.80(LL.2)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.80(LL.2) | 05/05/2008 17:05:19
Bootbase version: V3.1 | 03/08/2007 18:36:32
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.80(LL.2) | 05/05/2008 17:05:19
V3.1 | 03/08/2007 18:36:32
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
0019CB000001
FF
00
61
bfbd
f50f
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
9
802.1s MSTP
SNMPv3
enlarge syslog buffer
802.3ah OAM
Multilevel CLI
SNMP trap group
configurable multicast VLAN
independent IGMP snooping and MVR setting
enlarge concurrent telnet session
IP source guard(Static binding, DHCP snooping, ARP inspection)
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
Two rate three color marking
IP subnet VLAN
RADIUS MAC login
RADIUS accounting
TACACS+ authentication
TACACS+ accounting
IGMPv3
IGMPv3 snooping
IGMP port-based
Loop guard
Daylight saving
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test, packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule, but the same source MAC packet still be filtered.
4. Can’t support IP port move.
5. Flow control can not go across unit.
6. Dvmrp didn't support IGMPv3 source filtering & IGMP Port-based
Bug Fix:
1.
2.
3.
4.
5.
Fix the bug that GS-4024 don't set corresponding direct broadcast interface on unit 2
Fix the memory leak problem under abnormal ssh connection.
Packets will send back to the original port when enabling port security.
Fix the bug that device can't set trunking feature when enabling port security.
Fix the bug that DUT can't disable mac authentication via WEB.
Limitation of Settings:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
VLAN 1Q static entry 1k
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
Management IP interface 64
IGMP Filtering entry 256
MVR entry 256
VRRP entry 14
OSPF area 4
DHCP Server 16
Syslog server entry 4
IP source guard entry 128
Subnetbased VLAN 16
Change History:
V3.80(LL.2)C0 (05/13/2008)
1.
2.
3.
4.
10
Fix the bug that GS-4024 don't set corresponding direct broadcast interface on unit 2
Fix the memory leak problem under abnormal ssh connection.
Packets will send back to the original port when enabling port security.
Fix the bug that device can't set trunking feature when enabling port security.
5.
Fix the bug that DUT can't disable mac authentication via WEB.
V3.80(LL.1)C0 (11/5/2007)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
Enable DVMRP will cause system hang-up.
Enable DVMRP will cause memory leak.
WEB for TACACS+ and MSTP can’t work
MAC authentication will cause device unreachable after a period of time.
Device will not response ARP under large amount ARP traffic.
Device will crash under TCP SYNC attack.
Classifier precedence will not follow longest prefix match.
SNMP management can't cross routing domain
Set authentication uses RADIUS, after login fail about 256 times, the DUT will pop out RADIUS:
identifier error, and after 556 times, the DUT will become unreachable.
DHCP relay doesn’t work in some cases.
Set an unreachable RADIUS accounting server, accounting event and authentication login uses
RADIUS. After a period of time, the DUT can't login and will pop out radiusLoginSendToAuthServer:
identifier error.
Large amount of L3 direct broadcast traffic will reduce device performance.
ARP entries related to trunk ports are not flush when trunk ports link down.
Unauthenticated SSH attacking will occupy telnet sessions.
Device will crash under TCP DOS attack
Device will crash under log in attack.
Dot1x feature with RSTP feature will get error port status.
Fix the bug that no mac-authentication command doesn’t work.
Fix the bug that port security feature work with mac authentication.
V3.80(LL.0)C0 (4/25/2007)
Support new features
V3.70(LL.0)C0 (9/18/2006)
Support new features
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
revise ospf interface web page
Can’t use Cluster Management function with Telnet or SSH client to re-command members.
In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
DUT ’s RIPv2 multicast function did not work
Memory leak bug on stunnel. It will run out of memory when scan https many times.
When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
11
First Public version
12
ZyXEL GS-4024 V3.80(LL.1)C0
Release Note/Manual Supplement
Date: Nov. 05, 2007
This document describes the features in the GS-4024 product for its 3.80(LL.1)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.80(LL.1)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.80(LL.1) | 11/05/2007 19:09:05
Bootbase version: V3.1 | 03/08/2007 18:36:32
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.80(LL.1) | 11/05/2007 19:09:05
V3.1 | 03/08/2007 18:36:32
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
0019CB000001
FF
00
61
bfbd
6a1e
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
13
802.1s MSTP
SNMPv3
enlarge syslog buffer
802.3ah OAM
Multilevel CLI
SNMP trap group
configurable multicast VLAN
independent IGMP snooping and MVR setting
enlarge concurrent telnet session
IP source guard(Static binding, DHCP snooping, ARP inspection)
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
Two rate three color marking
IP subnet VLAN
RADIUS MAC login
RADIUS accounting
TACACS+ authentication
TACACS+ accounting
IGMPv3
IGMPv3 snooping
IGMP port-based
Loop guard
Daylight saving
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test, packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule, but the same source MAC packet still be filtered.
4. Can’t support IP port move.
5. Flow control can not go across unit.
6. Dvmrp didn't support IGMPv3 source filtering & IGMP Port-based
Bug Fix:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
Enable DVMRP will cause system hang-up.
Enable DVMRP will cause memory leak.
WEB for TACACS+ and MSTP can’t work
MAC authentication will cause device unreachable after a period of time.
Device will not response ARP under large amount ARP traffic.
Device will crash under TCP SYNC attack.
Classifier precedence will not follow longest prefix match.
SNMP management can't cross routing domain
Set authentication uses RADIUS, after login fail about 256 times, the DUT will pop out RADIUS:
identifier error, and after 556 times, the DUT will become unreachable.
DHCP relay doesn’t work in some cases.
Set an unreachable RADIUS accounting server, accounting event and authentication login uses
RADIUS. After a period of time, the DUT can't login and will pop out radiusLoginSendToAuthServer:
identifier error.
Large amount of L3 direct broadcast traffic will reduce device performance.
ARP entries related to trunk ports are not flush when trunk ports link down.
Unauthenticated SSH attacking will occupy telnet sessions.
Device will crash under TCP DOS attack
Device will crash under log in attack.
Dot1x feature with RSTP feature will get error port status.
Fix the bug that no mac-authentication command doesn’t work.
Fix the bug that port security feature work with mac authentication.
Limitation of Settings:
1.
2.
3.
4.
5.
14
VLAN 1Q static entry 1k
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
Management IP interface 64
6.
7.
8.
9.
10.
11.
12.
13.
IGMP Filtering entry 256
MVR entry 256
VRRP entry 14
OSPF area 4
DHCP Server 16
Syslog server entry 4
IP source guard entry 128
Subnetbased VLAN 16
Change History:
V3.80(LL.1)C0 (11/5/2007)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
Enable DVMRP will cause system hang-up.
Enable DVMRP will cause memory leak.
WEB for TACACS+ and MSTP can’t work
MAC authentication will cause device unreachable after a period of time.
Device will not response ARP under large amount ARP traffic.
Device will crash under TCP SYNC attack.
Classifier precedence will not follow longest prefix match.
SNMP management can't cross routing domain
Set authentication uses RADIUS, after login fail about 256 times, the DUT will pop out RADIUS:
identifier error, and after 556 times, the DUT will become unreachable.
DHCP relay doesn’t work in some cases.
Set an unreachable RADIUS accounting server, accounting event and authentication login uses
RADIUS. After a period of time, the DUT can't login and will pop out radiusLoginSendToAuthServer:
identifier error.
Large amount of L3 direct broadcast traffic will reduce device performance.
ARP entries related to trunk ports are not flush when trunk ports link down.
Unauthenticated SSH attacking will occupy telnet sessions.
Device will crash under TCP DOS attack
Device will crash under log in attack.
Dot1x feature with RSTP feature will get error port status.
Fix the bug that no mac-authentication command doesn’t work.
Fix the bug that port security feature work with mac authentication.
V3.80(LL.0)C0 (4/25/2007)
Support new features
V3.70(LL.0)C0 (9/18/2006)
Support new features
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
9.
15
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
10. revise ospf interface web page
11. Can’t use Cluster Management function with Telnet or SSH client to re-command members.
12. In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
13. DUT ’s RIPv2 multicast function did not work
14. Memory leak bug on stunnel. It will run out of memory when scan https many times.
15. When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
First Public version
16
ZyXEL GS-4024 V3.80(LL.0)C0
Release Note/Manual Supplement
Date: Apr. 25, 2007
This document describes the features in the GS-4024 product for its 3.80(LL.0)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.80(LL.0)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.80(LL.0) | 04/25/2007 20:29:44
Bootbase version: V3.1 | 03/08/2007 18:36:32
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.80(LL.0) | 04/25/2007 20:29:44
V3.1 | 03/08/2007 18:36:32
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
0019CB000001
FF
00
61
bfbd
e026
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
17
802.1s MSTP
SNMPv3
enlarge syslog buffer
802.3ah OAM
Multilevel CLI
SNMP trap group
configurable multicast VLAN
independent IGMP snooping and MVR setting
enlarge concurrent telnet session
IP source guard(Static binding, DHCP snooping, ARP inspection)
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
Two rate three color marking
IP subnet VLAN
RADIUS MAC login
RADIUS accounting
TACACS+ authentication
TACACS+ accounting
IGMPv3
IGMPv3 snooping
IGMP port-based
Loop guard
Daylight saving
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test, packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule, but the same source MAC packet still be filtered.
4. Can’t support IP port move.
5. Flow control can not go across unit.
6. Dvmrp didn't support IGMPv3 source filtering & IGMP Port-based
Bug Fix:
1.
2.
3.
4.
5.
6.
7.
After running DVMRP and stopped for about 30 minutes, the traffic can’t come back again.
The dot1dTpFdbPort will return incorrect port number when the MAC is static assign.
When polling with net-snmp, it stopped with OID not increasing.
Can not restore configuration with space in classifier name.
The CLI command for port-based VLAN egress port cannot remove CPU port.
Can't show ARP table through SNMP when using default-management out-of-band
Support SFP information display command "sys sw sfp disp".
Limitation of Settings:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
VLAN 1Q static entry 1k
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
Management IP interface 64
IGMP Filtering entry 256
MVR entry 256
VRRP entry 14
OSPF area 4
DHCP Server 16
Syslog server entry 4
IP source guard entry 128
Subnetbased VLAN 16
Change History:
V3.80(LL.0)C0 (4/25/2007)
Support new features
V3.70(LL.0)C0 (9/18/2006)
18
Support new features
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
revise ospf interface web page
Can’t use Cluster Management function with Telnet or SSH client to re-command members.
In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
DUT ’s RIPv2 multicast function did not work
Memory leak bug on stunnel. It will run out of memory when scan https many times.
When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
First Public version
19
ZyXEL GS-4024 V3.70(LL.0)C0
Release Note/Manual Supplement
Date: Sep. 28, 2006
This document describes the features in the GS-4024 product for its 3.70(LL.0)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.70(LL.0)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.70(LL.0) | 09/28/2006 16:01:48
bootbase version: V3.0 | 04/06/2005 18:05:30
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.70(LL.0) | 09/28/2006 16:01:48
V3.0 | 04/06/2005 18:05:30
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
001349000001
FF
00
5A
67ef
d824
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
2.
3.
4.
5.
6.
7.
20
Syslog
Multiple RSTP
Multicast routing on MVR
RADIUS enhancement(for 802.1X enhancenment and multiple radius servers)
Administration user management
IGMP enhancement
Web enhancement (Select all, Clone)
8.
9.
Reserve multicast group support
OSPF enhancement (passive interface and interface priority)
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test , packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule , but the same source MAC packet still be filtered.
4. Can’t support ip port move.
5. Flow control can not go across unit.
Bug Fix:
1.
none
Limitation of Settings:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
VLAN 1Q static entry 256
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
IP routing domain 64
IGMP Filtering entry 256
MVR entry 256
Vrrp entry 14
OSPF area 4
DHCP Server 16
Syslog server entry 4
Change History:
V3.70(LL.0)C0 (9/18/2006)
Support new features
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
21
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
revise ospf interface web page
Can’t use Cluster Management function with Telnet or SSH client to re-command members.
In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
DUT ’s RIPv2 multicast function did not work
Memory leak bug on stunnel. It will run out of memory when scan https many times.
When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
First Public version
22
ZyXEL GS-4024 V3.60(LL.3)C0
Release Note/Manual Supplement
Date: May. 3, 2006
This document describes the features in the GS-4024 product for its 3.60(LL.3)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.60(LL.3)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.60(LL.3) | 05/03/2006 17:54:22
bootbase version: V3.0 | 04/06/2005 18:05:30
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.60(LL.3) | 05/03/2006 17:54:22
V3.0 | 04/06/2005 18:05:30
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
001349000001
FF
00
5A
67ef
864d
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Feature
1.
23
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
Known Issue:
1. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
2. For many to one test , packet loss 3 % on one receiving port.
3. Discard destination MAC on filter rule , but the same source MAC packet still be filtered.
4. Can’t support ip port move.
5. Flow control can not go across unit.
Limitation of Settings:
1.
2.
3.
4.
5.
6.
7.
8.
9.
VLAN 1Q static entry 256
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
IP routing domain 64
IGMP Filtering entry 256
MVR entry 256
Vrrp entry 14
OSPF area 4
Change History:
V3.60(LL.3)C0 (5/3/2006)
1.
Change temperature
MAC: 75 ~ -10, CPU: 65 ~ -10, PHY: 75 ~ -10
V3.60(LL.2)C0 (1/2/2006)
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
revise ospf interface web page
Can’t use Cluster Management function with Telnet or SSH client to re-command members.
In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
DUT ’s RIPv2 multicast function did not work
Memory leak bug on stunnel. It will run out of memory when scan https many times.
When fiber set to speed 1000, auto negotiation should be turn off.
V3.60(LL.1)C0 (6/27/2005)
V3.60(LL.0)C0 (3/24/2005)
First Public version
24
ZyXEL GS-4024 V3.60(LL.2)C0
Release Note/Manual Supplement
Date: Jan. 2, 2006
This document describes the features in the GS-4024 product for its 3.60(LL.2)C0 release.
Support Platforms:
ZyXEL GS-4024 V3.60(LL.2)C0 supports models: Dimension GS-4024
Version:
ZyNOS version: V3.60(LL.2) | 01/02/2006
bootbase version: V3.0 | 04/06/2005 18:05:30
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.60(LL.2) | 01/02/2006 10:34:36
V3.0 | 04/06/2005 18:05:30
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
001349000001
FF
00
5A
67ef
7711
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Enhanced Features:
1.
2.
3.
4.
5.
6.
7.
25
Multicast
MVR
IGMP Filtering
CIR & PIR
Mac Freeze
Intrusion Lock
MIB
Bug Fix:
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
Restore config with IP address fail because out-of-band and inband exchange IP addresses.
Remove “time” and “time date” in backup configuration
Timesync config can’t restore
Enable OSPF , send over 8K routing paths, system hang.
DUT trap VRRP packets into CPU when VRRP disable
Create more than 6 static routing entries, the switch will hang
The Vlan status does not recover to original status after change trunking group to none.
Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
revise ospf interface web page
Can’t use Cluster Management function with Telnet or SSH client to re-command members.
In filtering function set Filter Destination after SMB send unknow unicast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
DUT ’s RIPv2 multicast function did not work
Memory leak bug on stunnel. It will run out of memory when scan https many times.
When fiber set to speed 1000, auto negotiation should be turn off.
Known Issue:
6. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
7. For many to one test , packet loss 3 % on one receiving port.
8. Discard destination MAC on filter rule , but the same source MAC packet still be filtered.
9. Can’t support ip port move.
10. Flow control can not go across unit.
Limitation of Settings:
2.
3.
4.
5.
6.
7.
8.
9.
10.
VLAN 1Q static entry 256
Static MAC forwarding entry 256
MAC filtering entry 256
Cluster member 24
IP routing domain 64
IGMP Filtering entry 256
MVR entry 256
Vrrp entry 14
OSPF area 4
Change History:
1. Restore config with IP address fail because out-of-band and inband exchange IP addresses.
2. Remove “time” and “time date” in backup configuration
16. Timesync config can’t restore
17. Enable OSPF , send over 8K routing paths, system hang.
18. DUT trap VRRP packets into CPU when VRRP disable
19. Create more than 6 static routing entries, the switch will hang
20. The Vlan status does not recover to original status after change trunking group to none.
21. Create VLAN ID 000001 via CLI found VLAN ID 0 is be created
22. Enable IGMPsnooping, One port leave message effect on another received port losing
multicast packets, it should not effect on another received port.
26
23. revise ospf interface web page
24. Can’t use Cluster Management function with Telnet or SSH client to re-command members.
25. In filtering function set Filter Destination after SMB send unknow unticast CLI will
show ”sal_dma_alloc out of memory. size 9232 packet_alloc. ”
26. DUT ’s RIPv2 multicast function did not work
27. Memory leak bug on stunnel. It will run out of memory when scan https many times.
28. When fiber set to speed 1000, auto negotiation should be turn off.
27
ZyXEL GS-4024 V3.60(LL.1)C0
Release Note/Manual Supplement
Date: June 27, 2005
This document describes the features in the GS-4024 product for its 3.60(LL.1) release.
Support Platforms:
ZyXEL GS-4024 V3.60(LL.1) supports models: Dimension GS-4024
Version:
ZyNOS version: V3.60(LL.1) | 06/24/2005
bootbase version: V3.0 | 04/06/2005 18:05:30
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.60(LL.1) | 06/24/2005
V3.0 | 04/06/2005 18:05:30
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
001349000001
FF
00
DF
7bc3
f777
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Known Issue:
1. When restore configuration, the default VLAN and the default IP address will be implicitly
created.
2. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
28
ZyXEL GS-4024 V3.60(LL.0)C0
Release Note/Manual Supplement
Date: Mar 24, 2005
This document describes the features in the GS-4024 product for its 3.60(LL.0) release.
Support Platforms:
ZyXEL GS-4024 V3.60(LL.0) supports models: Dimension GS-4024
Version:
ZyNOS version: V3.60(LL.0) | 03/24/2005 13:49:28
bootbase version: V2.0 | 01/18/2005 00:04:33
Default Bootbase Setting:
ZyNOS Version
Bootbase Version
Vendor Name
Product Model
ZyNOS Code Model
HTP Code Model
ZyNOS ROM address
System Type
MAC Address
Default Country Code
Boot Module Debug Flag
RomFile Version
RomFile Checksum
ZyNOS Checksum
SNMP MIB level & OID
V3.60(LL.0) | 03/24/2005 13:49:28
V2.0 | 01/18/2005 00:04:33
ZyXEL Communications Corp.
GS-4024
GS-4024
Unknown
50080000
10
00A0C5012345
FF
00
F8
1236
147c
06010203040506070809101112131415161718192
0
C0
Main Feature Bits
Other Feature Bits
DB 00 00 00 00 00 00 00-00 00 00 00 00 00 00 00
00 00 00 00 00 00 00 00-00 4113 00 00 00
Features:
Features:
1. 24 ports Auto MDI/MDI-X 100/1000Mbps compliant with IEEE802.3u/x/ad
2. 4 ports Mini GBIC 1000Mbps compliant with IEEE802.3x/ab
3. 16K layer2 MAC addresses table
4. 8K IP address table
5. Support 1MB on-chip packet buffer.
6. 802.1D transparent bridging
7. Port-based VLAN
8. IEEE 802.1Q tag-based VLAN
29
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
IGMP snooping
MAC filtering
Management through console, telnet, SNMP or web management
Firmware upgrade by FTP
Configuration saving and retrieving
Overheat detection
LED indications for link status
External power backup for internal power module failure
9K jumbo frame
Filtering/Mirroring by L2/L3/L4 rules
Bandwidth control by L2/L3/L4 rules
Egress traffic shaping per port
Private VLAN for port isolation
SSH v1 and v2
SSL
Known Issue:
1. When restore configuration, the default VLAN and the default IP address will be implicitly
created.
2. In some circumstances, packets may route to blocking port of the other device when use
Spanning Tree Protocol for redundant purpose between two devices. Recommend using Link
Aggregation instead.
Change History:
V3.60(LL.0)C0 (03/24/2005) is First Public version
Firmware Upgrade:
The GS-4024 uses FTP to upgrade firmware in run-time through its built-in FTP server. You can
use any FTP client (for example, ftp.exe in Windows) to upgrade GS-4024. The upgrade
procedure is as follows:
Upgrade GS-4024 FW:
C:\> ftp <GS-4024 IP address>
User : admin
Password: 1234
230 Logged in
ftp> put 360LL0C0.bin ras
ftp> bye
Where
• User name : the management user name, admin by default
• Password : the management password, 1234 by default
• 360LL0C0.bin : the name of firmware file you want to upgrade
• ras : the internal firmware name in GS-4024
30
Configuration Upgrade:
The GS-4024 uses FTP to upgrade firmware in run-time through its built-in FTP server. You can
use any FTP client (for example, ftp.exe in Windows) to upgrade GS-4024. The upgrade
procedure is as follows:
Upgrade GS-4024 FW:
C:\> ftp <GS-4024 IP address>
User : admin
Password: 1234
230 Logged in
ftp> put 360LL0C0.rom rom-0
ftp> bye
Where
• User name : the management user name,admin by default
• Password : the management password, 1234 by default
• 360LL0C0.rom : the name of configuration file you want to upgrade
• rom-0 : the internal configuration name in GS-4024
31