May 7th, 2012· A graphical dashboard (Vyatta Subscription Edition only)
· central point for managing single Vyatta system
· paneled overview of resource usage, system info, interfaces, routing, security, services, management
· A graphical statistics tab (Vyatta Subscription Edition only)
· real-time statistics for interfaces, memory, CPU
· Upgrade improvements for bare-metal and virtual installations (Vyatta Subscription Edition only)
· single command for system upgrade - "upgrade system image"
· command connects to software repo and fetches the right iso for your environment
· Pre-Packaged templates for VMware vSphere5 and XenServer 6.0 (Vyatta Subscription Edition only)
· Multi-queue support for VMXNET3 driver
· assign multiple cores to Vyatta VM for improved throughput in VMWare vSphere 5 environment
· Global stateful behavior for firewall
· single toggle to enable firewall statefulness eliminating need to configure stateful FW per rule-set
· Connection Tracking Enhancements
· advanced conntrack subsystem management
· per-entry connection deletion
· logging of connection creation and deletion
· global timeouts
· custom timeouts for connection based on source/destination criteria
· conntrack is no longer sub-branch of "firewall"
· Enhanced Connection Sync Functionality
· expect table sync enables seamless failover of FTP, SIP and H.323 connections
· NAT Enhancements
· more intuitive design of NAT significantly improves ease of use
· splits NAT into “source” and “destination” subtrees
· rule ordering is easier to define and troubleshoot
· NAT is no longer a sub-branch of “service”
· CLI Enhancements
· short unambiguous commands for better user efficiency
· op-mode example - 'sho ip ro' for 'show ip route‘
· config-mode example - ‘se int e eth0 fire in na allow' for
· ‘set interfaces ethernet eth0 firewall in name allow’
· config path helpers in configuration mode help text
· non-leaf nodes are indicated with a ‘>’ symbol
· multi non-leaf nodes are indicated with a ‘+>’ symbol
· multi leaf nodes are indicated with a ‘+’ symbol
· Operations Mode Enhancements
· improved intuitive command structure
· new monitor commands to simplify system management and ease debugging
August 24th, 2011· Integrated Broadcom Gigabit and 10Gigabit Ethernet Controller Drivers
· Pre-defined IPS policies -- "Connectivity", "Security", "Balanced"
· New configuration subdirectory structure to preserve state during Image Upgrade
· New CLI commands for simplifying file management tasks
· Optimizations to configuration backend performance, efficiency, and robustness
· Enhancements to IPsecVPN management, reliability, and
· interoperability, including X.509 digital certificate authentication for site-to-site VPN; Configurable IKE lifetime for remote access connections; Configurable protocol and port for IPsec VPN tunnels; Assign fixed IP to remote access clients
· Enhancements to OpenVPN usability and flexibility, including Reset individual clients; Reject access for individual clients; Reset a running OpenVPN process; Push domain names / DNS suffixes to connecting clients; Bridging across OpenVPN in client-server mode
· EXPERIMENTAL -- 64-bit Vyatta Core LiveCD and Virtualization ISO images (for release 6.3, only available in VC)
· Additionally, over 200 bugs were addressed and resolved in Release 6.3, delivering a new level of product stability and system integrity for enterprise-class deployments.
March 15th, 2011· Improved Configuration Management
· OpenVPN Enhancements
· IPv6 DNS Resolver
· Rebase to Debian Squeeze
Significant branch maintenance was done by the Vyatta engineering team, including the following package updates:
· iptables 1.4.9
· ipset 4.3
· pmacct 0.12.3
· net-snmp 5.6
· ntpd 4.2.6p2
· busybox 1.18.0
· open-vm-tools 8.4.2
· vbash 4.1
August 25th, 2010IPv6 Ready:
· Vyatta Version 6.1 has received IPv6 Ready Logo Phase 2 certification, verifying the implementation of IPv6 core routing protocols. The completion of the IPv6 Ready Logo Phase 2 tests ensures a smooth migration for Vyatta 6.1 customers to the enhanced network security, reliability and performance of IPv6. Vyatta 6.1 SE is the industry’s first software-based and virtual network OS to be certified IPv6 Phase 2 Ready, making Vyatta a future-proofed routing and security solution for physical, virtual and cloud computing environments.
Cloud Bridging:
· For cloud providers and enterprises moving applications or servers to the cloud, Layer 2 cloud bridging allows physically separate networks to securely communicate with each other over the internet as if they were on a single Ethernet network. This capability simplifies the migration of applications and physical servers between data centers, ensures continuity during a phased migration, and enables the moving of virtual machines between physical servers on physically separate networks.
Enhanced Security:
· Vyatta also continued its focused delivery on enterprise security advancements adding stateful firewall failover and enhanced intrusion prevention services through a partnership with Sourcefire.
March 31st, 2010· Netflow / sFlow logging and analysis
· 802.11 wireless LAN – (access point + base station)
· Binary image installation – (version mgmt)
· IPv6 readiness (core routing and firewall)
· Firewall enhancements
· IPv6 firewall
· P2P firewall
· time-based and zone-based firewall rules
· QoS Enhancements
· Vyatta Remote Access API
· TACACS+
· Simplified VPN Client Management
March 10th, 2009· New in this release: introduced the first phase of a redesigned web GUI interface for interacting with the Vyatta system. In this initial phase; added support for OpenVPN; implemented support for intrusion protection system (IPS) and traffic filtering based on inspection of traffic content; Vyatta can be now configured to act as a web proxy server for web caching and URL filtering; included support for DNS forwarding; introduced support for Dynamic DNS; included the open-vm-tools library to provide enhanced performance in VMware environments...