NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Firmware
185 TopicsConfusing typos in HTTPS certificate upload page
The MS510TXUP Smart Switch has some confusing typos on the page used to upload HTTPS certificates whilst on the latest firmware version 1.1.0.9 (and all versions before it). The user is presented with the following options: "SSL Trusted Root Certificate PEM File" should be used for the X.509 Public Certificate PEM File, and "SSL Server Certificate PEM File" should be used for the X.509 Certificate Private Key PEM File. As my device is out of warranty, I could not find any way to make Netgear aware of this issue. If anyone from Netgear sees this, please the typo be resolved? Also, TFTP is insecure and should not be used to transfer private key files. Please could a secure alternative be implemented?240Views0likes2CommentsM4300 Stack (GSM4253PB) - Firmware upgrade causing PABX failure ?
Hi. We have a stack of 4 GSM4253PB switches with firmware version 12.0.11.15 and yesterday we planned an upgrade to version 12.0.19.4, going through the versions : 12.0.11.15 -> 12.0.13.8 12.0.13.8 -> 12.0.15.7 12.0.15.7 -> 12.0.17.6 12.0.17.6 -> 12.0.19.4 At each version upgrade, we carried out a complete stack update (simultaneous restart of the stack). The firmware was copied to the stack via the web console (http upgrade) on the inactive image with Stack Firmware Auto Upgrade enabled. On two occasions, the firmware copy had to be restarted because it was frozen. After the last reboot of the stack, the master changed and the LAG of 2 cables uplinking toward the core stack was unstable (one member had been changed from 1/0/51 to 3/0/51, a port on which there was no cable...). After correcting these two incidents, I realised that the VLAN configurations of switches 1 (master) and 4 (member) had been lost, causing a network loop. This was quickly corrected. Subsequently, the OmniPCX PBX connected directly to this stack failed: the CPU card was blinking orange and the LAN ports were unreachable. According to Alcatel-Lucent technical support, a ‘network anomaly’ caused the CPU card to flash its firmware (!!!) and rendered the PBX inoperable. This card controls power-up and the other ports are no longer powered => no diag possible. Do you think this can really happen ? Is this a plausible cause of the failure ? Can you imagine what had possibily went so wrong that this PABX stopped functionning because of a switching stack firmware upgrade ? Any help or insight would be appreciated. I hope this case is clear enough. Regards.154Views0likes0CommentsM4300-24X - multiple sudden restarts
Hi, Has anyone got confirmation that heat is the cause of restarting the switch ? Did replacing a factory installed PSU help ? I`m having restarts quite often - twice a day or one restart in 2-3 days. The restarting unit is the backup one, (the restarting unit is allways the warmer one). It becomes unstable when reaching 64-65C. The fans duty levels are constant and I haven`t seen it changing above 27%,(mboard about 5200 rpm, PSU 4600 rpm), but the switch is burning up. I`m running the latest firmware 12.0.17.12 upgraded from 12.0.17.9. (the restarts were also before the upgrade) Similar cases: https://community.netgear.com/t5/Managed-Switches/M4300-24X-sudden-restarts/m-p/1862083 https://community.netgear.com/t5/Managed-Switches/M4300-24x-spontaneous-reboots-dispite-latest-firmware/m-p/1641688#M6574 Regards,1.8KViews0likes6CommentsCan't log in to switch after firmware update
Hello, An hour ago I updated my GS728TPv2 switch from 6.0.0.31 to 6.0.10.22. The switch has come back online, it can be pinged and anything connected as the correct connection however I can no longer log into the admin page for it. When I enter the password and click 'Go' nothing happens at all, I don't even get an error or a red bit of text saying password incorrect, login failed etc. Any ideas?Solved1.1KViews0likes2CommentsGS728TPv2 - What is the Latest BOOT Version (NOT Software Version)?
Greetings, I've been updating the firmware on my GS728TPv2 from time to time for several years. Currently I have 6.0.10.17 loaded. That said, I've never seen an update for the BOOT version. Its always been 1.0.0.5. Is this the latest? Also, if there was an update to it, HOW do you update the boot software? Is the boot software a part of the firmware and it just gets updated automatically every time one does the firmware? Thanks.977Views0likes2Comments12.0.17.9 - Release notes
Hello, Does anyone know where I can find the release notes for firmware version 12.0.17.9 For some reason there are KBs out there with other versions but this one. I recently found (on a completely off topic article) someone posted a URL that appears to be where the actual release notes were (https://kb.netgear.com/000065245/M4300-Firmware-Version-12-0-17-9?_ga=2.116205830.1824562860.1690820292-940811563.1690820292) but the link is broken. Not sure where else to look. Thanks,1.2KViews0likes4CommentsStuck after bootup - unable to login - M4300-52G
After installing new configuration file using web portal and booting the managed switch M4300-52G, the switch got stuck. Connected the serial console and can see the prompt for "User:", but doesn't accept the username or not responding to keyboard. What should I do to recover this managed switch?696Views0likes1CommentWeb UI responds with "404 Bad Request" after firmware update
FYI : After upgrading your NETGEAR device's firmware, you may see the response "400 Bad Request" when connecting to it with Microsoft Edge Browser. In such a case, you can still use device UI (Web UI) with another browser such as Firefox, Chrome and so on probably. Cheers!869Views0likes2CommentsGSM7224v2h2 Vulnerabilities
We've had a vulnerability scan done and our GSM7224v2h2 (M4100-26G) switches are reporting the following vulnerabilities: ICMP Timestamp Reply Information Disclosure TCP timestamps Weak Host Key Algorithm(s) (SSH) Weak Key Exchange (KEX) Algorithm(s) Supported (SSH) Weak MAC Algorithm(s) Supported (SSH) jQuery < 1.6.3 XSS Vulnerability jQuery < 1.9.0 XSS Vulnerability We're on the latest advertised firmware (10.0.2.35), but this doesn't seem to address any of these issues. For TCP Timestamps, these need to be disabled, we can't just create overrides for compliance. I can't locate anywhere to disable these within either SSH or the web interface. For the SSH keys, I've tried deleting and generating nex keys, but they are still weak algorithms For jQuery, I can't find any way to update past the version of this firmware. Does anyone have any recommendation to remediate these vulnerabilities?528Views0likes0CommentsM4300-52G VLAN Setup with 12.0.17.10
I have acquired a new switch and after downloading and installing the latest FW (12.0.17.10) the directions I located for creating VLANs apparently are for previous FW versions (https://kb.netgear.com/31026/How-to-configure-a-VLAN-on-a-NETGEAR-managed-switch). I located the user manual for the M4300 and its for FW version 12.0.15 and earlier. Is there any updated documentation or other resources that can help create VLANs with the latest FW version? Thanks.1.4KViews0likes5Comments