Introducing Firmware 8.2.0!

Balance 20, HW Rev 6 here. Confused over whether 8.2.0 can/should be loaded onto this router. Here’s why:

  1. Release notes for FW 8.2.0 show this:


    Implies 8.2.0 is good for any Balance 20 (no HW limitation cited for this router, but HW limitations cited for at least one other router)

  2. Router itself suggests upgrading to 8.2.0:

  3. By contrast, Firmware Download site implies that 8.2.0 is only good for Balance 20s with HW rev of 7 or 8, and that for rev 6 or earlier, 8.1.3 is the most current firmware option.

Have I misunderstood something? Please clarify.

1 Like

Hi. In the screen cap you show one can see that 8.1.3 is the last FW rev available for HW1-6. The 8.2.0 release notes say:

2 Likes

Thanks for the clarification. With that explained, it does seem to me that there are two bugs:

  1. The “Devices Supported” table in the Release Notes for 8.2.0 is misleading in this regard (it should make it clear there that the support for Balance 20 does not apply to revs 6 or earlier); and

  2. The Firmware Upgrade function of firmware 8.1.1 does correctly identify 8.1.3 as the most current (supported) firmware version for this hardware. A device should never explicitly encourage a user to upgrade to unsupported firmware.

2 Likes

The Release Notes has been updated.

3 Likes

The Surf SOHO MK3 manual that is here:

contains nothing about DoH, either.

It seems the firmware update feature is indeed flawed. I tested a Balance 20 hardware version 1 (yes 1, used to belong to Abraham Lincoln) running firmware 6.something and it too said that version 8.2 was the latest and greatest. Obvious conclusion is that the router phones home with the model number but not with the hardware version, when checking for new firmware. Pretty surprising since hardware versions have been around for quite a while.

1 Like

The firmware checking function in devices is fixed.
The latest firmware version available for Balance 20 HW1-6 should be 8.1.3

5 Likes

Thanks for correcting the Release Notes so quickly!

Where can I read about the DoH implementation and configuration details please? (Surf SOHO MK3)

@uglyWombat ,

We will have the DoH configuration included in the manual as soon as possible.

For time being, you can refer to the DOH feature discussion here.

We have some screenshot on how to enable the DOH feature in the forum post above.

The easiest way to enable the DOH feature is to use the predefined DoH well known public server and you are ready to go ^^

2 Likes

We updated the Balance user manual. You can find the DoH over HTTPS function setting on page 24. Thanks~

3 Likes

Two of the predefined DoH services, Cloudflare and Quad9, each offer three different services.

Which of their services are pre-defined?

Cloudflare, for example, offers an unfiltered DNS service, a service that blocks malware and a service that blocks both malware and porn.

Each has a different DoH server name. Pretty sure they are:

Block malware https://security.cloudflare-dns.com/dns-query
block porn and malware https://family.cloudflare-dns.com/dns-query
block nothing https://cloudflare-dns.com/dns-query

Quad9 offers different services, but again, three distinct types.

1 Like

Agree, need separate options for each of those. We use the “block malware” in some cases and “block nothing” in others.

I’m experiencing significant problems with WAN over WiFi not connecting to a network with this firmware on a Max BR1 Mini.

Rolled back to the previous firmware and WAN over WiFi works reliably again.

Am I the only one experiencing this issue?

HI all. MAX Transit CAT 18 here . is it my imagination or did 8.2 fix an issue with broadcasting the local Wifi SSID when the device is under USB power? Whenever I powered my CAT 18 with USB power (both ports 20w total available power) I found that my devices could not see the local Wifi SSID. So this morning I installed 8.2 and voiila the SSID is now broadcast under USB power.

I didn’t actually test to see if the original problem was SSID broadcast or if the Wifi itself was actually inoperable, under USB power, but in any case its working now under 8.2.

Thanks for your comment, we updated the manual page 100 to your suggestion. :slight_smile:

This update looks wrong. There are two flavors of DNS: old insecure DNS (UDP port 53) and new secure DNS (DoH or DoT). Old DNS is specified with IP addresses, new DNS is always specified with a server/host name.

And, there is the arm wrestling between DoH and Local DNS records. When both are enabled, which is used?

Update: I tested with a NextDNS url and that was not enough. As shown here, the router wants an IP address too. Why? The server/host name/URL is all that NextDNS needs in any other environment.

We have started to roll this out to our test QA servers and would like to know where we can get access to the new DWB interface and its settings?

We have looked through the client web UI (MAX Transit Duo, MAX HD4 MBX, UBR LTE and 310 5G) and also on our FusionHub servers and cannot see where these settings are hiding.

We use DWB extensively and would really like to get these tested and provide feedback.

Reagrds,

Ozzie
SimpliWiFi

@Michael234, I have checked the updated user manual, it stated the DoH will take precedence if enabled.

On the DoH settings, if you select the predefined DoH server, the router will refer to the associated provider DNS server IP addresses (as per the description above) embedded in the firmware. While using the [Custom URL:], the router needs you to manually enter the provider secured DNS server IP addresses.

I see from this article, NextDNS server IP is 45.90.28.19 & 45.90.30.19.

2 Likes

DoH takes precedence over what? The description you highlighted is about DNS requests leaving a WAN port going out to the Internet. The second sentence says it will not send UDP port 53 out the WAN port. Fine. But, Local DNS requests do not leave the WAN port. Thus the question of whether Local DNS records are honored or ignored when using DoH.

Update: Testing whether Local DNS records are being processed or not is simple. I tested it and even when DoH is active, Local DNS records are processed and used.

NextDNS differs from other Secure DNS providers in that they do not have just two IPv4 addresses. They have a pool of them. You can see this yourself in this screen shot which shows the article you referred to overlayed on a brand new NextDNS account that I just created. The IPv4 addresses differ.

So again, why the need to specify an IPv4 address (or pair of them) for DoH? Every DoH and DoT DNS provider says to use a hostname.

1 Like