NTS-6000 Series Firmware Updates

NTS-6000 Series Firmware Updates

Updated the favicon in the web interface.
Optimized services for faster boot.

Firmware 12#10
Kernel updated to 5.10.164
OpenSSL updated to 1.1.1s
PHP updated to 8.0.27
Nginx updated to 1.20.2
Leap seconds updated to the latest (expires June 2023)

Firmware 12#9
Kernel updated to 5.10.129
Resolved QID 38628 - TLSv1.1 can be disabled completely
Leap seconds updated to the latest (expires December 2022)

Firmware 12#8
Nginx updated to 1.20.2
Kernel updated to 5.10.109
OpenSSH updated to 8.9p1
OpenSSL updated to 1.1.1n
PHP updated to 8.0.17
Leap seconds updated to the latest (expires 2022)

Firmware 12#7 
Fixed an issue were changing the bonding mode in the web interface sometimes did not apply.
Fixed an issue in the certificate model where it was removing dashes from the Alternate Name.
Added TLSv1.3 support.
Updated bug allowing the change in settings for TLSV1.3 to be saved.
Fixed issues with bonding to use Active-Backup as default.
Fixed DNS backup bug, allowing the DNS to be moved from primary to secondary when one is unavailable.
Updated DHCP settings to be changed using the keyboard. 
Updated Configuration Options on the Configure SSL page in the web interface.
Updated Nginx to 1.18.1
Updated OpenSSH to 8.0p1
Updated OpenSSL to 1.1.1d
Updated NETSNMP to 5.9
Updated PHP to 7.3.11
Updated NTP Service to 4.2.8p15@1.3728-o

Firmware 12#6
Internal Testing Version

Firmware 12#5
Fixed an issue where changing the bonding mode in the web interface sometimes did not apply.
Fixed an issue in the certificate model where it was removing dashes from the Alternate Name.
Removed the ability to configure a Hostname on both network cards (the Hostname relates to the device itself and is independent of the network cards).
Added TLSv1.3 support.
Fixed issues with bonding to use Active-Backup as default.
Updated DHCP settings to be changed using the keyboard. 
Updated Configuration Options on the Configure SSL page in the web interface.
Updated leap-seconds.list with the latest version (Expires 28 June 2020)
Updated the Linux kernel to 5.2.21
Updated Nginx to 1.16.3
Updated PHP to 7.4.1
Updated OpenSSH to 7.8p1
Updated OpenSSL to 1.1.0d

Firmware 12#4
Fixed an issue where changing the bonding mode in the web interface sometimes did not apply.
Fixed an issue in the certificate model where it was removing dashes from the Alternate Name.
Removed the ability to configure a Hostname on both network cards (the Hostname relates to the device itself and is independent of the network cards).
Added TLSv1.3 support.
Updated Configuration Options on the Configure SSL page in the web interface.
Updated leap-seconds list with the latest version (Expires 28 June 2020)
Updated the Linux kernel to 5.2.21
Updated Nginx to 1.16.1
Updated PHP to 7.3.11
NTP has been updated to 4.2.8p13 which has the following security fixes:

Sec 3565:
Crafted null deference attack from a trusted source with an authenticated mode 6 packet a crafted malicious authenticated mode 6 (ntpq) packet from a permitted network address can trigger a NULL pointer deference, crashing ntpd. Note that for this attack to work, the sending system must be at an address that the target's ntpd accepts mode 6 packets from, and must properly authenticate the packet with a private key that is specifically listed as being used for mode 6 authorization.

This NTP version provides 17 bug fixes and 1 other improvement. 

Firmware 12#3
Fixed an issue with Teaming where the web interface would prevent the user from changing the bond mode.
Fixed an issue with the Teaming page not reflecting the current Teaming settings.
Resolved a bug where GPS/Radio debugging would not output to the screen due to a bad Mime type.
Updated the certificate model to add the CN to the subject alternate names to prevent certificate errors.
Fixed an issue where, upon logging in via FQDN, the system would redirect from FQDN to IP address.
Fixed an issue with the NMEA Log not displaying errors correctly.
Added a Configure SSL page under Administration that will allow users to choose from Secure SSL Configuration and Compatibility Configuration. Secure SSL Configuration will support the TLSv1.2 protocols and modern cipher suites. Compatibility configuration supports the TLSv1.2, TLSv1.1 and TLSv1 protocols along with older SSL cipher suites for compatibility with older clients.
Applied mitigations against the Meltdown vulnerability (CVE-2017-5754).
Added secure flag to Cookies.
Updated Nginx to 1.12.1
Updated OpenSSH to 7.6p1
Updated OpenSSL to 1.0.2m
Updated PHP to 7.1.11
Updated CodeIgniter to 3.1.7

Firmware 12#2
Internal Testing Version

Firmware 12#1
XSS headers added to Ngnix
Software update available notification added to Dashboard header
Incorrect logins recorded under Authentication Log now show in red
Updated the leap-seconds list file to account for the upcoming leap second
Updated the Linux kernel to 4.10.9
Updated Nginx to 1.10.3
Updated OpenSSH to 7.5p1
Updated OpenSSL to 1.0.2k
Updated NetSNMP to 5.7.3
Updated PHP to 7.1.3
Updated CodeIgniter to 3.1.4
NTP has been updated to 4.2.8p10@1.3728-o

Firmware 12#0
Internal Testing Version