Version: v25.07.31
hiCLOUDS SDWAN Platform Release Notes
Release Date: 10th Jan 2026
Deployment Locations
- Shanghai Region: https://cn-prod.hiclouds.com.cn
- Hongkong Region: https://prod.hi-clouds.com
New Firmware Version: 24.10.1-b32 for CE/PE
CE/PE Firmware 24.10.1-b32: To update to the latest firmware version, please contact technical support to receive the update package.
New Features
-
Add support for SNMP config [565]
Full SNMP configuration capabilities have been added to allow devices to be monitored by external network management systems. This provides better visibility and alerting across the entire deployment.Documentation For SNMP Config for CE
Documentation For SNMP Config For PE
-
Bulk firmware upgrade for CE and PE devices [569]
Firmware upgrades can now be performed simultaneously on multiple CE and PE devices with a single click. This streamlines maintenance for large networks, simplifies large-scale deployments, and improves update consistency.Documentation For Bulk firmware upgrade for CE
Documentation For Bulk firmware upgrade for PE
-
Add probing tools support with tasks and templates [753]
Network probing tools have been introduced, including reusable templates to simplify setup. The ability to schedule probing tasks for automated diagnostics and performance checks has also been added.Documentation For Probing tools
-
Add BGP and static routing for PE device [857]
PE devices are given the ability to configure BGP (Border Gateway Protocol) and static routes. This increases routing flexibility and supports more advanced network topologies.Documentation For BGP routing for PE device
Documentation For Static routing for PE device
-
Real-time firmware upgrade status in the platform [861]
The management UI will now display the immediate status of the firmware upgrade (such as in progress, successful, or failed). This will provide clear visibility into the process and help you take immediate action if issues arise.Documentation For CE Firmware config
Documentation For PE Firmware config
-
Add export function to Organization, User, CE, PE [869]
The ability to export data for key entities has been added. This allows data to be downloaded for reporting, auditing, or backup purposes, making administrative workflows more efficient.Documentation For Export Organization Data
Documentation For User Export Data
Documentation For CE Device Export Data
Documentation For PE Device Export Data
-
Persistent Syslog support in firmware [880]
Volatile in-memory logging has now been migrated to persistent file-based logging, which will be saved forever, even when the device is turned off.Documentation For Persistent Syslog support in firmware
-
Support eBGP configuration [885]
The ability to configure External BGP (eBGP) sessions has been added, which is useful for interconnecting with external networks or upstream providers. This improves routing scalability and supports complex network designs.Documentation For Support eBGP configuration
-
Daily Rsyslog file rotation [890]
Automatic log file rotation has been implemented on a daily basis. This will improve log management, make troubleshooting easier, and prevent the creation of excessively large log files.Documentation For Daily Rsyslog file rotation
-
Auto-Extend Unused Disk Space into Log Partition [892]
A mechanism has been created to utilize unused storage by creating a dedicated log section for increased log storage. This helps in retaining logs for a longer period of time and preventing log loss due to space limitations.Documentation For Auto-Extend Unused Disk Space into Log Partition
-
Add support to download config and backup [893]
Users can now directly download device configuration and backup files, simplifying troubleshooting, migration, and recovery workflows.Documentation For Download config and backup for CE
Documentation For Download config and backup for CE
-
Separate Syslog file for forwarding traffic logs [896]
Connection-level logging for IP tuples (src/dst IPs and ports) has been added to a separate syslog file. This will help with traffic flow analysis, security auditing, and troubleshooting.Documentation For Separate Syslog file for forwarding traffic logs
-
Add real-time and historical log viewer for CE/PE [950]
A centralized log viewer has been introduced for CE and PE devices, supporting live streaming logs as well as historical log access. This significantly improves debugging and operational visibility.Documentation For Live Log for CE
Documentation For Past Log for CE
Documentation For Live Log for PE
Documentation For Past Log for PE
-
Implement diagnostics feature [953]
A built-in diagnostics module has been added to help detect connectivity issues, configuration problems, and device health anomalies. This helps operators resolve issues quickly.Documentation For Implement diagnostics feature
-
Add probing tool support for CE/PE [957]
The probing tool features have been extended to both CE and PE devices, ensuring consistent troubleshooting tools across all device types.Documentation For Task for CE
Documentation For Task Report for CE
Documentation For Task For PE
Documentation For Task Report For PE
-
Add MFA support with email-based OTP [985]
Multi-factor authentication is implemented by sending a one-time passcode (OTP) via email. This increases account security without the need for additional hardware or apps.Documentation For MFA support with email-based OTP
-
Add timezone support in CE/PE [1020]
Allows the device timezone to be configured independently, ensuring accurate timestamps for logs, schedules, and monitoring tools.Documentation For Timezone support For CE
Documentation For Timezone support For PE
-
Add configSync flag support [1022]
A flag has been introduced to track whether device configurations are synchronized or not. This helps operators understand sync states and maintain configuration consistency.Documentation For configSync flag support For CE
Documentation For configSync flag support For PE
Improvements
-
CE Firmware Upgraded to OpenWrt 23.05.3 [64]
The firmware has been upgraded to OpenWrt 23.05.3, providing enhanced kernel support, improved security patches, and updated packages. -
Add WebSocket support [449]
WebSocket functionality has been added to enable real-time communication between system components. This improves the responsiveness of live dashboards and status updates. -
CE firmware upgraded to OpenWrt 24.10.1 [853]
The base firmware has been further upgraded to OpenWrt 24.10.1, offering enhanced hardware compatibility, improved stability, and better performance. -
Add URL validation in the global settings [855]
Validation logic has been enhanced to ensure that only valid and secure URLs are saved in global settings. This reduces misconfiguration. -
Handle firmware upgrade status for CE/PE [859]
Tracking of firmware upgrade processes has been improved, giving operators clear visibility into upgrade progress and failure status. -
CI/CD: Preserve Docker Tags in SD-WAN Cloud [860]
Fixed an issue where Docker tags were accidentally overwritten during CI/CD runs. Version checking has been implemented to ensure consistent deployment artifacts. -
Allow case-insensitive backbone PE name search [864]
Search for Backbone PE names has been made case-insensitive, which improves usability and search accuracy. -
Add /0 prefix in PBR src/dst [898]
Expanded PBR (Policy-Based Routing) prefix options to allow /0 masks (for broad routing/matching rules) for source and destination fields. -
Separate jump host for China mainland and global [901]
Region-specific jump hosts have been introduced to improve performance and meet regulatory requirements -
Migrate Bing Maps to Azure Maps [942]
Mapping services have been switched from Bing Maps to Azure Maps for improved accuracy and reliability. -
Remove lo interface and add any IPs in VPN Server dropdown [978]
VPN server selection has been simplified by removing the loopback interface and allowing any valid IP to be selected.
Bug Fixes
-
Index 0 Out of Bound" in Get Spoke API [840]
Fixed an exception that occurred when retrieving spoke device data without a default LAN subnet, ensuring reliable API data retrieval. -
Fix build dependencies in CI pipeline [841]
CI builds failing due to missing or outdated dependencies have been resolved, ensuring a stable and consistent build pipeline. -
Global Settings URL field is missing validation [855]
Proper frontend validation has been added to the Global Settings URL field to prevent invalid or malicious entries that could break platform functionality. -
Revision ID Reset on Firmware Upgrade [859]
Fixed an issue where revision IDs were inadvertently deleted during firmware upgrades. This ensures that configuration history and versions remain intact for auditing and rollback. -
Save Button Not Enabled When Subnet Removed in CGW [862]
Fixed UI behavior where the Save button in CGW (Cloud Gateway) was not responding properly. Users can now reliably save settings without repeated attempts. -
SOCKS Proxy Not Working on OpenWrt PE [863]
Fixed a bug where SOCKS proxy would silently fail on PE devices running OpenWrt. It now works reliably on all supported PE variants. -
Search Fails on Capitalized Backbone PE Names [864]
Improved search functionality to be case-insensitive, enabling device searches regardless of name capitalization. -
LDAP Filter Input Validation Broken [877]
The flawed validation logic for the ldalFilter field has been fixed, preventing incorrect rejection of valid filters. This ensures correct filtering behavior and easy configuration. -
Missing "Save Config" button in VPN Authentication tab [878]
Fixed a UI bug that incorrectly disabled the Save button in VPN server configuration despite valid inputs. This restores normal functionality for configuring VPN servers. -
Fix the organizations’ devices tab to list devices [897]
Restores the correct device list in the Organization Devices tab, corrects missing or empty results, ensuring that administrators can view and manage device inventories. -
PBR Fails with 0.0.0.0/0 Prefix [898]
Incorrect error logs have been removed for policy-based routing (PBR) rules using the 0.0.0.0/0 prefix, which is a common and now supported configuration. -
PBR Rules with Src/Dst Ports Not Working [903]
Fixed an issue where port-based PBR rules were being ignored. The rules now operate independently of the IP address, allowing for more effective policy-based routing. -
CGW Ignored Domain Whitelist/Blacklist Traffic [909]
Patched a firmware issue where DNS-based domain whitelisting/blacklisting was not applied properly in Cloud Gateway (CGW). Domain-based traffic filtering now works as intended. -
Fix user status label in Edit User modal [918]
Corrected incorrect user status display in the edit model, ensuring that administrators see accurate status information when making changes to accounts. -
Fix bulk firmware update on firmware settings [921]
Bugs in the bulk firmware update process have been fixed, ensuring that updates are applied consistently, which improves reliability for large deployments. -
Fix default policy to disable input validation [934]
Fixed an issue where input validation was behaving incorrectly under default policies, ensuring that policies are applied correctly without unwanted restrictions. -
Fix spacing and save-config VPN issue [981]
The gap and formatting errors that caused VPN configuration save failures have been fixed, allowing users to successfully update VPN settings without errors.
Need Help or Have Questions?
For further assistance, please contact our support team via any of the following channels:
- Email: servicedesk@hiclouds.io
- Documentation & Setup Guides: Visit our Knowledge Base at hiCLOUDS Documentation
We value your input to shape a strong final release. Thank you for your participation in our pre-release program!