Good morning everyone,
we are pleased to announce the release of many updates for NethSecurity 8 with new features, fixes, and improvements affecting several areas of the firewall.
How to update?
Go to System → Updates section. and click Check for fixes button.
Firewalls with the automatic update option enabled have already received them last night or will receive them shortly, no action is required.
Main highlights of this update
Security and Protection
- #1158 - Flood firewall protection: More efficient management of flood protection against DDoS and flood attacks, now configured exclusively from the Threat Shield IP section.
- #1221 - Threat Shield DNS allowlist: Added local allowlist for URLs in the Threat Shield DNS user interface for more granular control.
DNS and Network Management
-
#1253 - DNS server configuration: Changed behavior when DNS servers are provided by DHCP/PPPoE. If DNS servers are manually entered via the UI, these always take priority.
-
#1287 - DHCP isolation : his improvement is related to the use with FlashStart. It is no longer necessary to specify the DNS server in the DHCP options when FlashStart is active. The behavior of the DHCP server and the passed DNS server is now always the same, with or without FlashStart.
Port Forward and Firewall
-
#1286 - Port forwards display: Improved the interface to show only user-defined rules, hiding the automatic rules created by the system.
-
#1312 - Portforward kebab menu: Fixed the issue with enabling/disabling through the kebab menu when a domain set object is configured.
-
#1363 - Port Forward validation: Port Forward validation: Corrected validation to prevent acceptance of invalid IPs when a destination port is set.
Zone Management
- #1291 - Zone creation automation: Introduced automatic configuration templates for GUEST and DMZ zones during creation.
Backup
- #1297 - Backup download options: It is now always possible to locally download unencrypted backups through a dedicated button.
Subscription View
Community View
VPNs
-
#1334 - IPSec DH Groups support: Added support for DH groups 19, 20, and 21 in the IPSec user interface.
-
#1357 - OpenVPN LZO compression: Fixed the issue preventing OpenVPN tunnels from starting when LZO compression was enabled.
Controller
-
#1301 - ns-plug VPN data transmission: Data and logs sent to the controller now pass through the VPN tunnel to ensure greater security.
-
#1302 - ns-plug unit descriptions: Added a description field for units in the Controller for better management (it will be visible when we release the controller updates, in the second decade of September).
-
#1310 - ns-plug MTU configuration: Implemented MTU configuration to resolve connectivity issues in limited-quality network environments.
For more details about the project, please refer to the Github board:




