ER-X更新ER-e50.v2.0.0固件后,秒获公网、内网IPv6地址

讨论

#1

ER-X更新ER-e50.v2.0.0固件后,秒获公网、内网IPv6地址,以前要等12-24小时才能获得,今天楼下发v2.0.0固件,更新了一下[DHCPv6] - Fix bug when DHCPv6 client stops (or restarts) when admin logs out of terminal. Discussed。四川电信可以秒获(拨号连接成功后就下发,进入路由器刷新一下就有了IPv6地址了)公网、内网IPv6地址。
官网英文官网、中文官网还没更新,
下载地址ER-X, ER-X-SFP and EP-R6:
https://dl.ubnt.com/firmwares/edgemax/v2.0.x/ER-e50.v2.0.0.5155111.tar
(SHA256:d2ca21c45ca6ffff06ddc5babb28d96cc3d2f0f81071c131995c57d2ade8c07d)
2.png
1.png


erx 2.0.1降级1.10.9变砖求助
#2

V6的DNS是运营商的还是路路由器地址??
用了一天,问题多多,
1、拨号后第一次IPV6使用很正常,可以定义无DNS通告,Wan口断线重拨后局域网获取的V6-PD竟然不变,竟然不变,试过好几下重新拨号,V4地址都变了几次了,IPV6都还是第一次拨号获取的V6PD地址,等于断线后IPV6就废了,重启过也没正常。
2、无法通告路由器本身地址为DNS服务器。

第一个问题的关系没法用,又刷回OPENWRT了。


#3

是beta还是正式版?


#4

IPV6需要配置吗?


#5

正式稳定版!


#6

我用的是我以前的配置,这个需要配置不只有你自己测试了。


#7

补充一下更新日志:[Release Notes v2.0.0]Changelog
Changes since v1.10.8
New features:
[PlatformOS] - Upgraded underlying Debian distribution from Wheezy to Stretch. NOTE: You will need to manually update “system package repository xxx distribution stretch” if you wish to install 3rd party packages from Debian repository
[IPSec] - Add new “vpn ipsec gobal-config” CLI command that allows overriding any strongswan config option. For instance following commands reconfigures bypass-lan plugin by excluding eth0 from bypass list:
set vpn ipsec global-config “charon.plugins.bypass-lan.load := yes”
set vpn ipsec global-config “charon.plugins.bypass-lan.interfaces_ignore := eth0”
Syntax of “vpn ipsec gobal-config” should be compliant with format-options.py utility from strongswan suite as defined here
[IPSec] - Add new CLI command allow-access-to-local-interface that configures firewall to accept traffic destined to local interfaces of EdgeRouter:
set vpn ipsec allow-access-to-local-interface enable
Previously hosts from remote IPSec networks were not able to access ER, but now, if allow-access-to-local-interface is enabled, then hosts from remote IPSec networks can reach ER local interface and access management interface (SSH or WebGUI). Discussed here
[UNMS] - Add CLI command to enable/disable LLDP in UNMS. When UNMS is configured then it uses LLDP to discover neighbor routers. This functionality is enabled by default but it can be disabled via CLI like so:
set service unms lldp disable
Enhancements and bug fixes:
[SSH] - Remove deprecated SSHv1. Discussed here
[BGP] - Fix bug when rib process was constantly consuming 60% CPU time if “maximum-paths” was set. Discussed here
[BGP] - Fix “Commit failed” error when setting BGP neighbour configuration. Discussed here
[OSPF] - Fix bug when OSPF hello-timer for point-to-multipoint interfaces was ignored. Discussed here
[OSPF] - Fix Fletcher16 checksum calculation bug that caused OSPF session timeout with Cisco IOS routers. See description here
[OSPF] - Fix bug when ospfd randomly crashed after changing OSPF interface network type
[DHCP] - Enable DHCP on eth1 in factory default configuration
[DHCP] - Fix bug when ubnt-util daemon randomly crashed when reconfiguring DHCP server
[DHCP] - Fix bug when default gateway was not set when DHCP server assigned /32 address. Discussed here
[H/W] - Optimize fan control logic for ER-Infinity to make sure that CPU does not overheat. Discussed here
[Interface] - Fix bug when ethernet interfaces randomly failed to send/receive all packets after changing interface speed.
[Interface] - Fixed bug when eth0 speed/duplex could not be changed on ER-Infinity
[Offload] - Add offloading support for bonding interfaces for Cavium-based routers with “system offload ipv4 bonding enable” config settings
[Offload] - Fix bug when “show ubnt offload flows” caused router to crash if offloading was disabled
[IPSec] - Add logrotation for “/var/log/charon.log”
[PPPoE] - Fix bug when PPPoE client did not reconnect after server restart
[Routing] - Fixed bug when nsm daemon randomly crashed when removing bridge/switch/bond interfaces causing short-term routing outage
[Routing] - ECMP route selection method is switched from round-robin to hash-based, This became possible after migrating to 4.x linux kernel. Discussed here
[Dnsmasq] - Removed 1K DHCP max lease limit in dnsmasq. Prior to this dnsmasq would stop leasing additional IPs after reaching 1000 active leases. Removing this limit has minimal impact on memory usage and solves issue when dnsmasq would suddenly stop leasing new IP addresses.
[DHCPv6] - Fix bug when DHCPv6 client stops (or restarts) when admin logs out of terminal. Discussed here
Known issues:
[LoadBalancing] - LoadBalancing randomly fails if hwnat offloading is enabled on ER-X and ER-X-SFP models. LoadBalancing watchdog randomly reports false-positive interface-failure events and switches to backup link when it should not. Workaround is to disable hwnat offloading.
[PPPoE] - PPPoE client interface randomly fails to reconnect with PPPoE server when hwnat offloading is enabled on ER-X and ER-X-SFP router models. This issue was noticed only when in LoadBalancing or ECMP setups. Workaround is to disable hwnat offloading.
[Offloading] - IPSec offloading does not work on ER-X and ER-X-SFP
Updated software components:
Bash (4.4-5)
Perl (5.24.1-3+deb9u4)
NTP (1:4.2.8p10+dfsg-3+deb9u2)
OpenSSH (7.4p1-10+deb9u3)
OpenSSL (1.1.0f-3+deb9u2)
OpenVPN (2.4.0-6+deb9u2)
SNMP(5.7.3+dfsg-3)
Strongswan(5.6.3-1)
Systemd (232-25+deb9u4 )
Dnsmasq (2.79)
Upgraded linux kernel to v4.9.79 for Octeon-based routers (ER, ER-pro, ER-lite, ER-PoE, ER-Infinity)
Upgraded linux kernel to v4.14.54 for Mediatek-based routers (ER-X, ER-X-SFP)
Bootloader enhancements and fixes:

ER-X and ER-X-SFP必须关闭硬件加速


#8

意思是开启IPV6要关闭硬件加速?????


#9

嗯,升级固件前最好关闭硬件加速,不然负载平衡、pppoE、IPSec随机出错,v2.0版本属于大版本更新。


#10

升级V2.0后还原出厂了····不知道怎么设置负载平衡,IPSEC和NAT···还不太会设置!!!


#11

请教下:那升级结束后,开启IPV6,是不是可以开启硬件加速呢?


#12

官网上没有放出来啊
我们的是ER lite


#13

v2.0版本无法使用硬件加速目前,不然系统会随机出错,v2.0版本是大版本更新,最好不用使用原来的配置文件,重置默认,重新配置上网参数。没看硬件加速可以带动300m宽带,我200m宽带,cpu占用率75%。


#14

v2.0版本无法使用硬件加速目前,不然系统会随机出错(已经实地验证过了),v2.0版本是大版本更新,最好不用使用原来的配置文件,重置默认,重新配置上网参数。


#15

UBNT社区有连接,自己去下吧。https://community.ubnt.com/t5/Ed … v2-0-0/ba-p/2622317


#16

不用硬件加速那不是废了一半?????要不要刷回去啊!!!


#17

后续版本应该会更新支持硬件加速,主要是升级新版本,


#18

那我还是等支持才刷吧····刚弄好IPTV不想折腾了


#19

你的IPv6配置不正确,所以一直无法正常获得,我的配置好了以后,获得ipv6 pd,重启路由器,等三分钟宽带拨号成功就获得了ipv6 pd,指配置ipv4拨号连接成功只要2分钟,上图TIM截图20190125132502.png
TIM截图20190125132705.png