Release Notes 93000442_C Digi PortServer CM Firmware Version 1.3.4 Product/Part numbers 800007024 rev. D 21-Nov-2002 1. INTRODUCTION Digi PortServer CM firmware release version 1.3.4 with enhancements. 2. SUPPORTED PRODUCTS Digi PortServer CM 32 and PortServer CM 16. 3. ENHANCEMENTS a. Alarm Generation (use of syslog-ng 1.5.17) b. PAM (Pluggable Authentication Modules), which will allow us to have: - a TACACS+ module - a RADIUS module - a local auth module c. Time stamp in data buffering configurable per port d. Multiple sniffing configurable per port e. Utility wizard for basic configuration (IP address, netmask, default gateway, domain and DNS server) f. Custom programing of stty g. Multiple syslog servers support h. Socket client cabable of working with raw data (configurable) i. Data buffering continues even when the connection with the serial port is established j. XML Generator for Creating Menus k. XML Generator for Keyword Filtering 4. IMPLEMENTATION CHANGES a. OpenSSH vulnerabilities (CA-2002-18) Open SSH version upgraded to 3.4p1 b. Open SSL vulnerabilities (CA-2002-23) c. 8769 Messages sent via the Web interface get sent as commands to the port connectio n causing a large security risk 5. KNOWN LIMITATIONS a. Discovery utility may produce inconsistent results on wireless lans (WLANs) due to packet loss from radio interference. b. Data throughput may decrease when accessing multiple ports simultaneously. c. Cannot assume a main session from a sniff session while data is moving. 6. Upgrading Firmware If you have an earlier version of the PortServer CM, and wish to upgrade it to the latest release, do the following: a. telnet b. cd /proc/flash c. ftp support.digi.com d. cd /support/released/firmware/pscm32/80007024_D e. binary f. hash g. get zImage h. quit i. cd /etc/ssh j. rm * (select y on all files) k. saveconf (ignore missing file warnings) l. reboot 7. History Aug - 2002 Release PortServer CM firmware version 1.3.2.1 a. Firmware supports PortServer CM 32 and PortServer CM 16 May - 2002 Released PortServer CM 32 version 1.3.2 a. Multi-level menu application using XML configuration files b. Keyword monitoring using XML configuration files with ability to email alerts c. Discovery utility applet: This applet can be downloaded from the Digi website at http://cm.digi.com d. OpenSSH upgraded to the latest version (3.1p1) e. zlib upgraded to the latest version (1.1.4) f. SNMP upgraded to the latest version (4.2.4pre1) g. pppd upgraded to the latest version (2.4.1) h. Inactivity timeout for CAS profile i. More options added to data buffering menu j. Extended RAM disk to increase port buffer size Jan - 2002 Released PortServer CM 32 version 1.3.1