Mi pare ci siano diversi aspetti significativi.
Accanto ad alcuni fix che non so valutare, ora app center aggiornerà automaticamente le app installate sul nostro Qnap.
Inoltre QTS aggiornerà automaticamente i firmware raccomandati.
A pensar male, si direbbe che i recentissimi problemi di sicurezza siano considerati da Qnap una leggerezza dei propri clienti che non aggiornano le macchine. Mah ....
Di seguito il changelog (ho tagliato il paragrafo "important notes" che mi pare sempre identico ormai da diverse versioni)
[Security Updates]
- Fixed a DOM-based cross-site scripting vulnerability (CVE-2021-28806).
- Fixed a command injection vulnerability (CVE-2021-28800).
[New Features]
SNMP
- Added support for using SNMP with IPv6.
[Enhancements]
App Center
- App Center now automatically installs required updates by default.
- App Center now checks for available updates every day and automatically installs required updates by default.
Control Panel
- QTS now removes user-defined processes from autorun.sh when users reinitialize the NAS or restore factory default settings.
- Users can now specify the community name when using UPS with SNMP connection.
- QTS now automatically installs recommended firmware updates by default. Administrators can specify a schedule to check for and perform updates.
- Modified various HTTP header default configurations to enhance device security, including X-Content-Type-Options, X-XSS-Protection, and HTTP Strict-Transport-Security (HSTS).
- Added support for customizing the HTTP response header "Server".
- Web Server service is now disabled by default.
- To enhance device security, QTS now automatically checks SQL Server password and disables the service if users still use the default password.
Web Initialization
- Improved the user interface design for QTS web installation.
Storage
- QTS now supports a maximum of 4TB SSD cache on ARM 64-bit models.
File Station
- Users in the administrator group can now manage all shared links.
- Added various usability enhancements for File Station.
- QTS now supports up to 100,000 shared links for files or folders.
Domain Controller
- QTS now reminds users to enable Advanced Folder Permissions when enabling Domain Controller.
Network and Virtual Switch
- Updated dnsmasq to fix some security vulnerabilities.
[Fixed Issues]
- QTS would remove files stored in the @Recently-Snapshot folder after a file system check.
- Snapshot replica jobs would disappear from the source NAS when users enabled "force secure connection" on both the source NAS and the destination NAS.
- Guest users would still need to specify their username and password when accessing an SMB shared folder that granted anonymous access permissions.
- After users migrated a shared folder to a snapshot shared folder, QTS would automatically enable Recycle Bin for the shared folder.
- Users could not access the home folder created on an encrypted volume after restarting the NAS and unlocking the volume.
- Users could not connect to the network when the jumbo frame of a 2.5 GbE network adapter was not set to 1500 bytes.
- Users could not query the system volume status via SNMP.
- Changing the ownership of a shared folder would not change the ownership of its subfolders, and consequently QTS would not recalculate user space quota.
- Users could not connect to the ARM NAS models via WebDAV after users updated QTS to 4.5.2.1630.
- HybridMount would occasionally display downloaded files as "downloading" and would display blank file names for deleted files.
- QTS could not send a test email to a specified Outlook email address after users edited the email settings.
- The NAS would sometimes automatically restart when users migrated virtual machines to the VMware iSCSI datastore on the NAS.
- The TS-x53B could not detect disks and would restart unexpectedly after users updated QTS and the embedded controller firmware.
- QTS could not display the IPv6 address of a network adapter after users added the adapter to a virtual switch.
[Other Changes]
- Removed support for Fibre Channel HBA and iSER on the TS-x63 models. (Affected models: TS-563, TS-963N, TS-963X, TVS-463, TVS-663, TVS-863, TS-1263U-RP, TS-463U-RP, TS-863U-RP, TS-463U, TS-863U, TS-1263U, TS-1263XU-RP, TS-463XU-RP, TS-863XU-RP, TS-463XU, TS-863XU, TS-1263XU)
Storage
- Moved Remote Disk settings to Storage & Snapshots.
- The fan speeds on the TL SAS JBOD enclosures are now managed by the embedded controller, instead of QTS.