Security Advisory


Vigor3900 / Vigor2960 / Vigor300B Stack-based buffer overflow Vulnerability (CVE-2020-10823 ~ CVE-2020-10828)

This is a critical upgrade. You should upgrade affected VigorRouters as soon as possible to firmware v1.5.1 or later to improve the functions and services security, it only affects the Vigor3900 / 2960 / 300B and is not known to affect any other DrayTek products.

Click here for more details and firmware download links.


Latest Application Notes


LAN

How to switch WAN2 into LAN port

This application note shows how to configure the Vigor2862 WAN 2 port so that it becomes a LAN port.

Click here to read the application note.


VPN

L2TP over IPsec from Smart VPN to Vigor Router

This application note shows how to set up Vigor Router as a VPN server for L2TP over IPsec, as well as how to use Smart VPN built-in VPN feature to establish a VPN to Vigor Router and access the Vigor Router’s LAN network.

Click here to read the application note.


Firewall

Why UDP services like IPsec, DNS, VoIP disturbed by Vigor Router?

This application note explains how enabling UDP Flood Defense in the DoS settings can affect some UDP services such as IPsec, DNS and VoIP.

Click here to read the application note.


Latest Firmware


Vigor2862 / 2862 LTE V3.9.3
Improvements

  • Allow long username with 63 characters, for WAN>>Internet Access>>LTE.
  • Add a restriction for welcome message, on System Maintenance >> Login Page Greeting.
  • Support ACL for remote management when a 0.0.0.0 remote network VPN established.

Click here to download firmware.


Vigor2926 / 2926 LTE V3.9.3.1
Improvement

  •  Remove SSL Web VPN tunnel function.
  • Allow long username with 63 characters, for WAN>>Internet Access>>LTE .
  • Support IPsec Xauth and IKEv2 EAP authentication by RADIUS/LDAP/AD.
  • Add a restriction for welcome message, on System Maintenance >> Login Page Greeting.
  • Support ACL for remote management when a 0.0.0.0 remote network VPN established.
  • Fixed: An issue of router reboots due to firmware upgrade.
  • Fixed: An issue of SNMPv3 being authenticated with an incorrect password.

Click here to download firmware.


VigorAP 912C V1.3.4.1
Improvements

  • Fixed: An issue of display error on the page of Diagnostics>>System Log.

Click here to download firmware.


VigorAP 918R/ 920R/ 1000C V1.3.3
Improvements

  • Improvement for SNMP function.
  • Improve the WebUI of Mesh >> Mesh Setup for Mesh Root.
  • Modify Draytek AP A-Band Channel List for Australia and Thailand.
  • Display SSID for 5GHz wireless station on Station List>>Clients List.
  • Fixed: An issue of wireless security 802.1x.
  • Fixed: A security issue of DHCP server.
  • Fixed: An issue of Access Control not working when wireless security was WPA3-Personal.

Click here to download firmware.


Vigor3220  V3.9.2.2

Improvements

  • Improved WebGUI security.
  • Add a restriction for welcome message, on System Maintenance >> Login Page Greeting.
  • Fixed: A display error for the login page after enabling the function of Login Page Greeting.

Click here to download firmware.


VigorSwitch G2280x/P2280x  V2.6.1

New Features

  • IP Conflict Detection.
  • VLAN interface for ONVIF (ONVIF Surveillance>>Topology).
  • DHCP server (Switch LAN >> DHCP Server >> DHCP Server Settings).

Improvement

  • Compatibility with VigorACS 2

Click here to download firmware.


VigoAP 710/ 810/ 902/ 910C  V1.3.2

Improvements

  • Improved SNMP function.
  • Improved Web GUI security.

Click here to download firmware.


VigoAP 912C V1.3.4
Improvements

  • Improved SNMP function.
  • Improved Web GUI security.

Click here to download firmware.


Latest Software


VigorACS 2 V2.5.4

New Feature

  • Support to manage Vigor3910, VigorAP918R, VigorAP918RPD and VigorAP912C.

Improvements

  • Make a record when testing the RESTful API.
  •  Allows opening several router pages in different tabs using any browser.
  • Add the column, Last inform time, on NETWORK MENU >> Monitoring >> Device.
  • Add a message to notify users to restart ACS after changing System Parameters.
  • Fixed: An issue of floor plan upload.
  • Fixed:  An issue of PoE statistics display.
  • Fixed: An issue of authentication via Radius server.
  • Fixed: An issue of displaying the traffic / client graph.
  • Fixed: An issue of incorrect time stamp on user login log.
  • Fixed: An issue of browsing the router pages in different tabs.
  • Fixed: An issue of displaying connection time on NETWORK MENU>>Statistics.
  • Fixed: An issue of searching device(s) by MAC address on NETWORK MENU >> Monitoring >> Clients.
  • Fixed: An issue of displaying the IP object on DEVICE MENU >> Configuration >> Objects Setting.

Known Issue

  • Database (with MariaDB version 10.3.12) is only available for the user who installs VigorACS 2 for the first time. If your computer has installed MariaDB, do not upgrade the database version to prevent data loss.

Click here for more details.


VigorConnect  V1.4.0

New Feature

  • Support the mesh network management (NETWORK MENU>>Configuration>>Mesh).

Improvements

  • The time setting parameter (CheckLatestSoftwareVersionTime) is adjustable and is effective when “Auto check and download…” is selected as Upgrade Method on SYSTEM MENU>>About>>Update.
  • Add Last 10 SNMP events and TX/RX monitor items on the Dashboard.
  • Modification for the software installation.
    • Add SNMP configuration setup.
    • Allow VigorConnect to passing through Windows Firewall.

Click here to download software.