Component: hotspot
119 changelog entries across 67 version(s)
Releases by channel (stacked)
- rename totp-secret to otp-secret;
- added TOTP support for local hotspot users;
- improved system stability;
- prevent service from starting unnecessarily in the background on export/print commands;
- allow only "http:" and "https:" schemas in dst field;
- improvements to memory usage;
- properly escape all reserved URI characters;
- fixed an issue where extra "flash/" is added to html-directory for devices with flash folders (introduced in v7.17);
- fixed an issue where extra "flash/" is added to html-directory for devices with flash folders (introduced in v7.17);
- properly escape all reserved URI characters;
- fixed incorrect host moving to VLAN 0 when receiving packets through bridge;
- allow number as a first symbol in the Hotspot server DNS name;
- improved stability when receiving bogus packets;
- improved stability when receiving bogus packets;
- fixed setting of "address" parameter for IP binding;
- restore cookie timeout on reboot;
- added "install-hotspot-queue" parameter to control dynamic queue creation;
- fixed maximum allowed connections limitation;
- fixed minor memory leak after each successful login from WEB;
- improved limitation of maximum allowed connections;
- improved system stability when clients migrate between bridge ports or VLANs;
- fixed service initialization when HTML directory configured on an external disk;
- fixed SSL usage on all HotSpot pages;
- improved stability when receiving bogus packets;
- limit maximum allowed connections based on free RAM resources;
- removed "routerboard.com" URL from default HotSpot advertise;
- automatically reject all HTTPS requests passing through HotSpot server for unauthorized users;
- improved stability when receiving bogus packets;
- limit maximum allowed connections based on free RAM resources;
- removed "https-redirect" option;
- fixed ARP resolution for clients when address pool is specified on the server;
- fixed Walled Garden entries with action=deny;
- fixed login page over HTTPS;
- fixed memory leak on every web page loading;
- fixed web page loading using HTTPS;
- fixed web page loading using HTTPS;
- fixed "idle-timeout" usage with RADIUS authentication;
- fixed special character parsing in "target" variable (CVE-2021-3014);
- fixed "idle-timeout" usage with RADIUS authentication;
- fixed special character parsing in "target" variable (CVE-2021-3014);
- added "vlan-id" parameter support for hosts and HTML pages;
- added support for captive portal advertising using DHCP (RFC7710);
- fixed "html-directory" parameter export;
- improved management service stability when receiving bogus packets;
- do not verify Hotspot interface status when detecting if HTTP/HTTPS login method is allowed;
- ignore packets from host while MAC authentication is in progress;
- ignore packets from host while MAC authentication is in progress;