DSR-250 and DSR-250N FW Updates

Release Notes: World Wide Region
v1.09 B76 9/6/2016
Rev A1 models only!
Waiting for official release notes...
1. fix for ssl_error_weak_server_ephemeral_dh_key in browsers.

Get the FW update here:

v1.08B44 11/12/13
Security Vulnerabilities Addressed: Devices respond clients some
unnecessary information, and hence give hackers a chance to get a
non-persistent root shell.
Reference: (CVE-2013-5945, CVE-2013-5946)
Solution: Remove all unnecessary root user accounts

1. Including 1.08B31 all fixes for DSR-250N in this version
2. The MPPE function does not work in L2TP client mode
3. Restore configuration file to different HW version
4. WAN responses ARP packet
5. Add a message to inform user, who need to change 443 port number for
sslvpn or remote management once two features are enabled.
6. Can't work with any AP connected with network cable
7. Device time not synchronizing with default NTP servers after reboot.
8. Firewall rule disable is not work unless reboot device.
9. WIFI stability issue under heavy BT traffic

1. The OpenVPN Local Network page disappear when I used IE8 or IE9 to
manage the DSR.
2. USB sharing could not download/upload large file
3. DWM-156 A3, A6 compatility issue
4. Security Vulnerabilities Addressed: Persistent root access.
Solution: Removed CLI commands that could allow someone to overwrite
the super user password and gain root access to the device. Root user
account will be completely removed in the next firmware version.
5. Prevent to upload config file into different model
6. Unable to change the Wireless output power
7. Device stuck under BT download
8. X.509 certificate expired issue
9. Security Vulnerabilities Addressed: uPnP vulnerabilities identified in the
audit of libupnp code base.
Reference: CVE-2012-5958, CVE-2012-5959, CVE-2012-5961,
CVE-2012-5962, CVE-2012-5963, CVE-2012-5964, CVE-2012-5965
Solution: Patched Intel SDK libupnp v1.3.1 to add the following; 1) use
'snprintf' and 'strncpy' instead of 'sprintf' and 'strcpy', 2) While doing a 'strncpy', check if we are copying more bytes than the destination string
10. DNS query issue for L2TP WAN type

1. DSR-250 and 250N don’t show Logs for tunnel disconnect and Logout for
SSL VPN & port forwarding.
2. “LAN clients” page is not displaying the connected information.
3. CLI wan1 status does not show wan1 physical interface information when
device is in RU firmware dual PPPoE mode.
4. When server IP is configured with FQDN, Wan L2TP over DHCP connection
does not reconnect after device reboot.
5. Default VLAN is associated with all the wireless SSID after reboot.
6. "Block ICMP" is not work for a SSL VPN policy with permit permissions.
7. Traffic is not going from PPTP/L2TP client to device's LAN after changing
WAN ISP until disable and enable PPTP server again.
8. When the user login SSL portal with wrong credentials domain name in IE
browser address bar, the browser will not refresh back to 'SSL portal login'
9. Dyndns name provided in the SSL portal page will be changed into the
device WAN IP, if the user try to login SSL portal page with wrong
credentials in Firefox browsers.
10. Device's MAC address field in WDS page is blank in RU image.
11. Device is taking 40-50 seconds to apply the configuration in VLAN page of
RU image.
12. Wireless client status page is showing wrong Authentication and
Encryption types.
13. Device GUI is getting stuck after running bulk traffic over PPTP/L2TP
14. "Connect" button is not working for IPv6 gw-gw policy in Active VPNs page
when IPv6 WAN is radvd IP.
15. No information on WLAN Domain when country code is set to Japan.
16. Firewall rule with schedule is working correctly only for GMT time zone.
17. Device displaying critical error message when trying to upload certificates
to activate OpenVPN server/client.
18. Unable to access GUI after factory reset and power OFF/ON the device.
19. Wireless clients are not getting updated in Wireless Clients status page.
20. UPnP process is not running in Dual Stack IPv4/IPV6 mode.

1. IPv6 to IPv4 tunneling is not work.
2. Internet web surfing is very slow for WLAN client if SPPE enabled.
3. Remove CLI command which is not supported in DSR-250/250N.
4. PPTP client is getting disconnected while uploading and downloading files
using windows sharing.
5. Device shell is getting stuck after running bulk traffic over PPTP/L2TP
6. Bandwidth Usage and Used applications are not displayed in dashboard.
7. Default VLAN will be associated with all the wireless AP after reboot.
8. Fixing L2TP doesn’t reconnects to L2TP server after reboot.
9. Fixing wireless clients is not displayed on status page.

1. Improving link up time of WAN interface less than 1 minute after device
power on.
2. Fixing the printer shared port detection issue.
3. Fixing PPTP pass through is not working.
4. Fixing SSL tunnel is disconnected when user tries to download 200 MB file.

1. Improving link up time of WAN interface to 1~1.5 minutes after device
power on
2. Fixing PPPoE isn’t working in custom MAC address

Features Added:
v1.05B53 1. Support email address to be local ID in Ipsec policy.
2. Support SHA-1 in Phase 1.
3. Support DH group need support group 1, 2 and 5 for Phase 1.
4. Add PFS group 1, 2 and 5 for Phase 2.
5. Add a keyword with "." (dot) in Blocked Keywords text box.

1. Support 3G dongle DWM-152 A1/A2/A3, DWM-156 A1/A2/A3, Huawei
E1550, E173.
2. Pre-Share key can be configurable in wireless wizard.
3. Change design to disable auto refresh for Traffic Monitor by default.

v1.05B06 Support SSH remote management from WAN port

v1.01B46 It’s the first release.

Get here:
Select DSR and 250N

Select DSR and 250

Release Notes: World Wide Region
v2.11 5/2/2016
Rev A1 models only!
Problems Fixed:
133 items fixed. Please review the included release notes PDF for details.

New Features:
1. PPTP/L2TP VPN Client auto dial-in feature
2. User’s group and group’s privileges edit support
3. Updated max number of wireless clients
4. Wireless IGMP Snooping support
5. LAN IGMP Snooping support (DSR-250/250N only)
6. OSPF support on L2TP over IPsec
7. Category filters for device logging
8. Support configurable IPsec backup policy
9. Support WCF 3-month trial license
10. Support multiple OpenVPN clients with the same certificate
11. Alerts via SMS for WAN/IPsec/CPU/RAM events
12. Support source port configuration for custom services
13. Select verified DDNS services:
a. DynDNS
b. D-Link DDNS
c. FreeDNS
d. NO-IP
e. 3322.org
f. Oray (existing in M7)
g. Custom

Get the FW update here: D-Link Germany

Release Notes: World Wide Region
v3.11 08/03/2017
DSR-250 Rev A2/A3, 250N Rev B1/B2 models only!

Problems Fixed:
86 items fixed. Please review the included release notes PDF for details.

New Features:
1. Static route can be displayed in Route Information.
2. OmniSSL VPN support SSL Certification generation.
3. IPv6 VLAN support.
4. Support VLAN/IPSec base Radius Authentication.
5. Hostname display support for DHCP clients.
6. IPv6 stateful and prefix delegation support.
7. Device support 3G/4G dongle with pin code password.
8. DWM-221 & 222 LTE Dongle support.
9. DWM-156 A8, DWM-157 C1 and DWM-158 E1 dongle support.
10. Support PPTP/L2TP client mode auto re-connect
11. Support single IP or IP range to be Whitelist and Blacklist for URL filtering and Web Content Filtering.

Known Issues:
1. Unable to run FTP, HTTP traffics over SSL Port forwarding tunnel with wan type as PPPoE/PPTP/L2TP
2. PPTP and L2TP VPN Tunnels got disconnected after overnight long duration test.
3. Serial number key of GUI https certification is not changed after factory reset.
4. Device UDP 5353 port is able to reply port status “Closed”.

Get the FW update here:


DSR-250/250N Version 3.12 Released.

Release Notes/Upgrade Instructions - ftp://FTP2.DLINK.COM/PRODUCTS/DSR-250/REVA/DSR-SERIES_RELEASE_NOTES_v3.12_WW.pdf

DSR-250 RevA

Firmware - ftp://FTP2.DLINK.COM/PRODUCTS/DSR-250/REVA/DSR-250_REVA_FIRMWARE_v3.12_WW.zip

DSR-250N RevA


DSR-250N RevB


"The DSR-250 can now be used in a dual WAN scenario by simply converting port 8 to a WAN interface.  This is available starting with firmware release 3.12."


