TP-Link DR3650v-4G(EU) Firmware Release Notes v1.1.0
Version Info
Adapted Model: DR3650v-4G(EU) 1.0.
Controller Compatibility: Fully adapted to Omada Controller V5.15.20.
RED Certification Note: This is a transitional firmware for RED certification compliance. It is not fully compliant to RED certification. To fully comply with RED certification, it is recommended to upgrade to version 1.1.1 afterwards.
Downgrade Advisory: Once upgraded to version 1.1.0, you will not be able to downgrade to previous versions. Contact TP-Link technical support if downgrade is required.
Modifications
- Remediated two Portal-related security vulnerabilities.
- RED certification - addressed four findings:
- Enforced strong passwords for web login.
- Replaced software signing algorithm.
- Disabled production-test services in factory mode.
- Logged any change to privacy assets stored on the device.
- First-round security feedback - resolved two issues:
- Injection flaw in DNS proxy security.
- Injection flaw in sysauth.
- Second-round security feedback:
- Injection flaw in WireGuard VPN.
- Removed hidden root-SSH capability in CLI_server binary.
- Eliminated legacy ecsp v1 code.
- Added hash validation for device-controller exchanges.
- Prevented TLS hijacking via local-controller certificate.
- Did not pre-fill the default Wi-Fi passphrase “wpapass1” in SSID configuration.
New Features
- SD-WAN
- Domain name supported for OpenVPN and Wireguard VPN
- Virtual WAN
- Disable NAT
- Google LDAP
- LAN DNS
- FQDN/Wildcards WAN DHCP Option
Enhancements
- Optimized CPU utilization.
- Optimized the time to enable backup link.
- Optimized booting time.
- Optimized the time to dial up the WAN link.
- Optimized the time to upgrade FW.
- Optimized the time to generate OpenVPN profile.
Bug Fixed
- Fixed the HTTPS redirection exception in standalone mode.
- Fixed the issue where the static route for L2TP VPN doesn't take effect after re-enabling L2TP VPN.
- Fixed the WOL exception when dropping some unknown unicast packets.
- Fixed the issue where the PPTP VPN would occasionally disconnect.
- Fixed the issue of DNS abnormal in specific scenarios causing adoption failure.