UniFi 5.5.20 Stable Candidate has been released

by Ubiquiti Employee ‎07-21-2017 03:11 AM - edited ‎08-01-2017 12:11 PM (41,594 Views)


  • As always, make a backup prior to upgrading.
  • Windows users must have x64 Java installed as we only support 64 bit webRTC library. Please see HERE and download the missing version (64bit offline Windows install package).
  • You cannot re-use a VLAN ID for dynamic VLAN if it is set as a static value for another SSID on the same AP. So, if I have a SSID set to use VLAN 10, I cannot use VLAN ID 10 for RADIUS controlled VLAN users as those users will not get an IP.
  • Smart Queue QoS is similar to the implementation as in EdgeOS (see HERE). Please note that DPI will not work when using QoS, as traffic will not be offloaded. It's also worth noting that maximum throughput will be affected when using QoS, as traffic is not offloaded. There are some rough guidelines in the article linked above.
  • DFS channels can not be used for wireless uplink in the US. Please use non-DFS channels if you need to use wireless uplink on dual band UAPs. 
  • Official UniFi MIBs can be downloaded from HERE and HERE (those are 2 different files).
  • We no longer support Java version 6, it needs to be 7 or later. We recommend Java version 8.
  • Features like airtime fairness, bandsteering, load balancing and minimum RSSI are default disabled. If you need them you need to go to Settings>Site and check Enable advanced features.
  • If you previously used Google Maps for a site map, then you have to enable this feature again by adding an API key. This is done under Settings>Controller. There is a linked guide with instructions.


Important Notes:

  • The initial database migration will take longer than normal. It is expected to see mongo using most, if not all, of the available CPU cycles during this process. Please be patient, this process could easily take 15+ minutes, depending on the amount of historical stats, as well as the system specs. As always, err on the side of caution, and make a backup before upgrading.


Known Issues

  • Manual site-to-site VPN status is not reflected on the UniFi dashboard widget. Currently it will look like it's offline, even when the tunnel is up.


Controller bugfixes/changes from 5.5.19:

  • Fix port mirroring range.
  • Fix app with Chinese translations.
  • Add Google to social transactions.
  • Do not display number of clients for site-to-site VPN.
  • Limit MAC ACL list to 512 per WLAN group.
  • Add VAP BSSID filter to devices page.
  • Fix the issue causing storm control settings to be provisioned, even when disabled.
  • Update bundled Tomcat to 7.0.79.
  • Always deploy WAN_OUT firewall rules and remove config.properties control.
  • Improve 802.1X provisioning on USW, so that switch does not get blocked.
  • Fix auto site-to-site connection status on VPN health widget.
  • Improvement to the broadcast/multicast filter.
  • Various security improvements.


Firmware changes from 3.8.2/4.3.41:

  • [UAPG3] Enable DFS on UAP-AC-SHD.
  • [UAPG2] Fix a STA connectivity issue, when a 2nd gen AP is the wireless downlink AP to a wired 3rd gen AP. 
  • [UAPG2] Fix an issue causing less than expected throughput in recent releases. 
  • [UAP] Fix a bug in uplink-monitor.
  • [USW] Add 802.1X MAC auth bypass support.*
  • [USL2] Add PSU fail detection support.*
  • [USG] Update numerous subsystems to the latest EdgeRouter 1.9.7. This includes a number of bug fixes made in EdgeRouter in the past 2-3 years, though largely not relevant to USG use cases. IPv6 related fixes the primary area where people have encountered relevant problems. 
    • UPnP, PPTP client, DHCP server, Quagga, PPPoE and PPP handling, DHCP client, conntrack, configuration subsystem, operational commands subsystem, IPv6 router advertisement service, keepalived, NAT configuration and handling, OpenVPN configuration subsystem
  • [USG] Increased maximum NDP and ARP cache table sizes, and added back end controls for ARP and NDP timeouts. 
  • [USG] Guest control improvements - added locking to improve reliability, and reworked some of the back end functions to improve performance.
  • [USG] Fix memory leak in VPN status reporting, eventually leading to disconnects of USG from controller. 
  • [USG] DPI improvements
    • Back end additions for DPI blocking.
    • Stats clearing fix
    • Signature update improvements
  • [USG] RADIUS server permissions fix for log files and accounting data.
  • [HW] Fix the issue preventing SSH login when the interface IP changed.

*controller support pending


Bundled Firmware: