Emblematize current and agile development of a software

Continuous development of the LANCOM Management Cloud

On this page we show you what we mean by continuous development by presenting the latest highlights from our cloud development. At regular intervals we incorporate new features and functions into the LANCOM Management Cloud to make your work even more efficient. To use all the functions of the LANCOM Management Cloud, we recommend using the latest LCOS release version. Find more information on features of the LANCOM Management Cloud in our Release Notes.


Always stay up to date:

The RSS feed of the LANCOM Management Cloud informs you directly about new LMC features.

Feedback button in the Public Cloud

Improve the LANCOM Management Cloud with your feedback

Your opinion counts – as you know best what enriches your everyday work and what does not (yet): Which features of the LANCOM Management Cloud (LMC) are particularly helpful and understandable? Which ones can we optimize further? We ask questions like these not only to ourselves, but from now on to you as well: By clicking on a feedback button, you can participate anonymously in a survey on a specific function and contribute directly to improving the LMC. The blue buttons can currently be found, for example, at the menu item "Security" or in the hotspot portal. We are looking forward to your feedback!

Improved usabilty with filtering in log tables

Faster finding of logging entries

With transparent and complete logging, administrators always have a full overview of who made which change and when. Under Management > Log, you can therefore view the log messages and can filter them. Using the drop-down menu, you can either select from a list of predefined events and types or enter your individual search term to find them more quickly. For example, you can view when a license was assigned to which device and by whom. A click on the log entry will then give you further information.

Central management of your network security

New menu entry "Security" in the LANCOM Management Cloud

With the new menu entry "Security" you can now keep an eye on your security settings in one place. A security profile is automatically created for each network in your LMC project, or your existing settings and rules are migrated there. With just a few clicks, you can create rules such as those for Application Management, Content Filter, and Packet Filter globally for all networks and assign them to the corresponding security profiles. Under Security > Profiles you can clearly see which security properties are effective in the respective network. Learn more about the cloud-managed security concept in our tech paper.

Blocking websites harmful to minors for LCOS and LCOS FX devices

Protection of minors with extended Content Filter

Reliable and effective youth protection is a top priority, especially in schools and youth facilities. Therefore, the officially recommended website filter of the German Federal Review Board (BPjM) blocks content that is classified as harmful to minors in Germany. Continuous updates and extensions are guaranteed. You can activate the BPjM filter for all LANCOM R&S®Unified Firewalls with LCOS FX 10.8 onwards and now also for all LCOS devices with LCOS 10.70 under Networks > Content Filter.

Wi-Fi 6E – The LMC is ready for the Wi-Fi VIP experience

Fast, stable, and interference-free thanks to 6 GHz Wi-Fi

Wi-Fi 6E uses the 6 GHz frequency band reserved exclusively for Wi-Fi and plays out its advantages to the full, especially in high-density environments. The LANCOM Management Cloud is perfectly prepared for this and provides a 6 GHz view in the Wi-Fi / LAN dashboard. Under Project specifications > SDN > SD-WLAN > 6 GHz band, you can make configuration settings for the entire project and customize them in the Wi-Fi settings at site and device level. With the Wi-Fi 6E-capable access point LANCOM LX-6500, you also benefit from 6 GHz Wi-Fi on the hardware side. Find out more on our Wi-Fi 6(E) technology page!

Sorting and filtering in tables

Structured overview of location, user, and project tables

Do you manage large projects with a high number of devices and still want to have a clear overview? Sorting and filtering location, user, and project tables helps you find what you're looking for much faster. Click on the arrows in the table header to sort alphabetically in ascending or descending order. You can activate the filter feature by clicking on the filter icon and entering your search term. For example, you can quickly identify the users of a particular access point in long Wi-Fi user tables under "AP name".

Search function in the LMC

Faster to your destination thanks to a project-wide search function

Find networks, devices, locations, and LMC functions even faster: With the new search engine, you can search your entire project in a quick and easy way with just a few clicks – or, if you prefer, even without any clicks at all. Just use the magnifier icon in the top navigation bar or alternatively the keyboard shortcut "ctrl + K“ (Windows) oder "cmd + K" (macOS). For your given search term, a language-independent search is performed on project level. You can also narrow down the results list with three selectable filters in advance. Try it out right away!

Application Steering of the Unified Firewalls

Decide for yourself which applications you trust

Increase the overall performance of your network by steering specific data traffic (Application Steering): Applications classified as trusted for your network, such as Microsoft 365, can be routed directly to the Internet via a Local Internet Breakout. With just a few clicks, central Application Management configurations of the LANCOM Management Cloud (LMC) are automated and securely applied to all sites. Create your own rules under Networks > Application Management > "Steer traffic" now also with "LCOS FX" marked applications and extend the benefits of the Unified Firewalls in combination with the LMC.

Note: The RSS feed is now available via a new subscription link.

Cloud-managed hotspot vouchers

Your ticket to simplified hotspot management

In the new hotspot portal of the LANCOM Management Cloud (LMC), you can create any number of vouchers for WLAN access in no time at all and set individual device and time limits for them. You can access the hotspot portal when creating a cloud-managed hotspot under Networks > Add network > Hotspot Network > Authentication > Voucher or even more easily using the newLMC role "Hotspot Operator". With the help of a simple user interface, for example, receptionists can also export vouchers for their hotel guests quickly and easily in CSV or PDF format. Learn more about the vouchers and their design customizations in this Knowledge Base article.

Firmware updates and device replacement of Unified Firewalls via the LMC

Simplified management of your firewalls in the LANCOM Management Cloud

LANCOM Management Cloud (LMC) and LANCOM R&S®Unified Firewalls grow further together: From now on, you can manage firmware updates for your firewalls as of LCOS FX 10.8 centrally via the LMC and conveniently keep an eye on the firmware status in the device table. And there is even more: You can also easily replace your firewalls, including the complete configuration. Simply select the device to be replaced in the device table and enter the serial number of the replacement device under Menu > Transfer – done!

Protection of minors according to German BPjM filter

Extension of content filter by blocking websites harmful to minors

With the recommended website filter of the German Federal Review Board (BPjM), you can now protect children and adolescents even more reliably: For example, schools or youth facilities benefit from a constantly updated list of blocked URLs that are classified as harmful to minors in Germany. You can activate the BPjM filter as an extension of the Content Filter for your LANCOM R&S®Unified Firewalls with Full License and LCOS FX 10.8 under Networks > Content Filter.

LAG support for stackable switches

Setup of link aggregation groups in the LANCOM Management Cloud

Setting up LAGs (Link Aggregation Groups) for stackable switches of the GS-4500 and XS series is easy with the LMC. LAGs are used to realize link aggregation and load balancing: As soon as one active link fails, all other links of the group remain active and share the load of the data traffic among each other. You can set this up conveniently using the graphical interface in the device overview. Further information is available in the tech paper LANCOM fail-safe stacking.

Notification of active WAN backup connections

Alert for router in backup state

More transparency of your WAN connectivity: If a router switches to a backup connection, you are directly notified via an alert. In the device table, you can see at a glance whether and which routers are in backup status. This allows you to take early action through targeted troubleshooting and possibly avoid high costs or the consumption of a limited data contingent. Best of all: this feature is now enabled for all LCOS-based routers under Project specifications > Alerts & Notifications.

Cloud-managed switch stacking

Convenient management and monitoring of stack units

Flexible, scalable, highly available: Stacking maximizes reliability and switch capacity in your LAN. Via the management switch ("Management Unit") and just one device license, the entire preconfigured stack can be conveniently paired with the LANCOM Management Cloud. The cloud independently detects which and how many switches belong to the stack. Further management and monitoring of the switch units can then be done in the device overview of the corresponding switches. For professional network integration and configuration, a design guide is also available in the help portal.

Custom fields at organisational level

Administration of multiple projects with individual fields

Organization administrators can now manage multiple projects more easily with custom fields: Additional data can be added, edited, sorted, and filtered for each project to keep workflows efficient as the number of projects grows. To do this, add custom fields in the project overview under Project > Configure columns > Add new column. Learn more about the user roles and rights system in the LANCOM Management Cloud in this infopaper.

Due to recent events: Information concerning the Log4j security vulnerability

The LANCOM Management Cloud is not affected by the Log4j security vulnerability!

The media is currently reporting a security vulnerability in the logging library "Log4j", which may allow an attacker to execute own program code on the target system (see CVE-2021-44228). After a thorough analysis we can inform you that LANCOM products and operating systems are not affected by the security vulnerability. If you have any questions, please contact LANCOM Support.

Custom redirection of the Cloud-managed hotspot

Individually managed Wi-Fi hotspots

Customize your Cloud-managed Wi-Fi hotspots: After successfully logging into the Wi-Fi hotspot, an immediate redirection to a website of your choice is now possible. To do this, simply add the desired URL directly when setting up the hotspot network under Networks > Add Network > Hotspot Network > Advanced Settings.

Link to external syslog servers

Simple transmission of log messages

More overview in larger projects: You can now define an external syslog server for each project. After a configuration rollout, devices managed in the project report relevant system information to this server for central processing and storage (current exception: LANCOM R&S®Unified Firewalls). You activate the desired syslog server via Project defaults > External services > Syslog.

Anti-Virus for secure e-mail traffic

Anti-Virus engine of the LANCOM R&S®Unified Firewalls

Even more cloud-managed Security: Thanks to advanced setting options in the LANCOM Management Cloud, this enables the use of the Anti-Virus engine of the LANCOM R&S®Unified Firewalls to scan e-mail traffic for malware. With the Anti-Virus engine enabled, the LANCOM R&S®Unified Firewall automatically analyzes unencrypted e-mail protocols (SMTP, IMAP, POP3). In addition, enabling SSL Inspection ensures maximum security even for encrypted data. Under Networks > Security you will find an overview of the current security settings of your gateways as well as buttons for activating the Anti-Virus engine and SSL Inspection.

Cloud-managed Firewalls and SD-WAN

Maximum protection. Minimum effort.

Use LANCOM R&S®Unified Firewalls as fully-fledged SD-WAN gateways: The LANCOM Management Cloud takes over the time-consuming, manual firewall configuration as well as the automatic setup of VPN connections between all sites (Auto-VPN). Configurations of the content filter, anti-virus functionality, SSL inspection, and application management are performed centrally and applied automatically to all desired sites. Discover the new possibilities on our website on Cloud-managed Security.

Vimium support for practical and efficient keyboard control

Faster navigation and control with Google Chrome Vimium

The LANCOM Management Cloud supports the browser extension Vimium for Google Chrome, which enables keyboard control of web pages. Vimium allows experienced users a significantly faster navigation and control, fits seamlessly into the workflow, especially for power users, and thus offers enormous time savings when operating the LMC. In terms of barrier freedom, operation without a mouse is also made possible. Learn more about setting up and using Vimium in this Knowledge Base article.

Dynamic DNS Service for upstream provider routers

Extension of the DynDNS Service

With the Dynamic DNS function, you simply assign a fixed, self-selected subdomain ( to the gateways used there in the site settings. This practical function can now also be used on connections with an upstream provider router. To do this, select the option "Externally detected public WAN IP" under Sites > WAN Connections > IP Source, and the LANCOM gateway (from LCOS 10.50) uses the usually dynamic WAN IP address of the provider router for the DNS update.

Secure Terminal Access in a separate browser window

Direct access to the command line interface

Secure Terminal Access allows direct access to the command line interface of LANCOM devices ("CLI tunneling") ? securely encrypted and directly from the LMC interface. A new feature is that the terminal now opens in its own uncoupled browser window. The user can continue working in the LMC window in parallel. In this way, several terminal windows can be used in parallel, individually scaled, and moved.

Convenient development environment for add-ins

Practical functions and improved overview

Using add-ins in the LANCOM Management Cloud is now much easier: The new add-in editor offers context-based suggestions for code completion with existing functions and OIDs. In addition, you benefit from practical support for code formatting as well as for synchronizing variables used in the script and assigned to the add-in. A full-screen view is now available for a better overview when working with add-ins.

For more information see the add-ins manual.

Open Notification Interface

Open Notification Interface

Based on Webhook technology

To be able to react early, administrators need to be notified immediately when a network event occurs. Thanks to the Open Notification Interface, collected alerts about various events can now be forwarded to any recipient service, such as Slack, Jira or Splunk, that enables communication with the LMC based on Webhook technology. This allows users to flexibly integrate notifications into their usual work environment and also merge them with alerts from third-party systems.

Extended Wi-Fi settings

More control and time savings

Even more control and time savings in your Wi-Fi projects! With the extended settings options, you can define project-wide, site-specific, and device-specific Wi-Fi configurations such as frequency bands to be used, channel allocation, or channel width with just a few clicks. The settings in the project defaults are conveniently inherited by the site settings, which in turn are inherited by the individual devices. Start right away under Project specifications > SDN > SD-WLAN.

Automatic license assignment

Practical relicensing

The LANCOM Management Cloud automatically carries out the especially in large projects time-consuming relicensing for you three weeks before the devices' licenses expire. To do this, activate automatic license assignment in the Project settings > Basic > Automatic license assignment area and select whether relicensing should be carried out using licenses with the shortest or longest term. If there are no compatible licenses in the license pool, you will be notified directly and can activate additional license keys.

Add-ins — for tailor-made networks

Practical script editor

Use the Add-ins to customize the configuration data of all devices managed in the LMC or make versatile detail modifications to existing standard concepts for SD-WAN, SD-LAN, SD-WLAN and SD-Security.
Activation: Project specifications > Basic > Configuration > Use Add-ins
Add-in Management: Add-ins (new one in the menu bar) > Create new Add-in opens the integrated script editor.
Requirements: Knowledge of Java scripting and LANCOM operating systems
Additional materials: Information area > Further reading > Add-in Scripting Handbook (incl. numerous practical examples)

SD-WAN of the highest quality – With Dynamic Path Selection

The best connection at any time

At sites with multiple WAN connections, Dynamic Path Selection ensures that business-critical applications, for example, are always routed over the highest-quality line. The feature continuously monitors your WAN links for load, packet loss, latency, or jitter, and dynamically decides the optimal path for specific applications based on the current link quality. Enable best SD-WAN quality in the Project Preferences > SDN > SD-WAN > Dynamic Path Selection section.

Full SD-WAN power – With HSVPN and Load Balancing

Maximum scalability and efficiency for your SD-WAN architectures

LANCOM High Scalability VPN (HSVPN) ensures that numerous VPN connections are combined in just one data tunnel, but without sacrificing the strict separation of routing contexts and the security of a modern IPSec VPN. You can now enable this in the area Project specifications > SDN > SD-WAN. Furthermore, if multiple WAN connections are defined for a site, they will now automatically operate in active/active mode (Load Balancing), thereby increasing the total available bandwidth.

Cloud-managed Hotspot

Wi-Fi hotspot with a few clicks directly from the LMC

Create a simple Wi-Fi hotspot with a few clicks – directly from the LMC! No additional gateway or WLAN controller with LANCOM Public Spot Option is required. Just go to the “Networks” section and click on “Add network -> Hotspot network” to customize your hotspot welcome screen with your logo and corporate colors and integrate important information such as imprint and usage guidelines for your hotspot users. Afterwards you can assign the new hotspot to the respective location and it will be available to your visitors.

Dynamic DNS Service for the Public Cloud

Visual LANCOM Management Cloud feature Dynamic DNS Service

Set up subdomain for gateways and VPN remote stations

Simply assign a fixed, self-selected subdomain ( to the gateways implemented there in the sites settings. This subdomain can then be stored in VPN remote stations such as the LANCOM Advanced VPN Client. This way, gateways (from LCOS 10.42 RC3) with dynamic WAN IP addresses remain accessible at all times via this domain-name.

New user role "Technical Administrator"

Distinguish administrator roles and permissions clearly

In network infrastructures with several administrators, differentiating between rights for technical and organizational tasks is necessary to implement compliance requirements. An LMC user with the new role "Technical Administrator" can configure location, network, and device details. In contrast to the "Project Administrator", however, the Technical Administrator is not allowed to manage or invite new users and cannot modify project information.

Easy generation of new VPN passwords

Change VPN passwords of individual sites with just a few clicks

If the VPN keys (IPSec PSK) of a VPN connection could be compromised – whether it is due to an administrator leaving the company or a VPN gateway being serviced – it is advisable to change these VPN passwords manually. The LANCOM Management Cloud allows VPN passwords of individual sites to be conveniently changed with just a few clicks: In the "Sites" section you simply mark the affected sites, trigger the generation of new VPN passwords and then roll out the configurations of the gateways involved.

Fully automatic device commissioning

Early detailed configuration without the physical presence of the device

The multiple zero-touch / auto-config functions of the LMC for automatic commissioning of cloud-managed devices are now extended by the possibility of early detailed configuration without the physical presence of the device. The advantage: The devices only need to be connected at the operating site and are immediately ready for operation! Under "Devices > Add Device" you can create "preconfigurations". You can assign the serial number directly in the device table. Then add the device as usual using the activation code or PIN.

Automatic firmware assignment

Commission new devices directly with the firmware you require

With this feature, the administrator controls the automatic assignment of a preferred firmware version during the initial setup of different devices. If a device is connected to the LANCOM Mangement Cloud (LMC), the firmware corresponding to the specification is automatically rolled out to this device. In this way, for example, during commission all devices in a project can be adapted to a uniform software version that corresponds to the project specifications, regardless of the factory delivery status.

WLAN scheduling

Time-based activation and deactivation of SSIDs in your wireless LAN

The functionality "WLAN scheduling" enables time-based activation and deactivation of SSIDs in the wireless LAN – ideal for Wi-Fi networks that should only be available at specific times. For example, customer hotspots in shopping centers can be switched on during opening hours and then switched off afterwards, or Wi-Fi in educational institutions can be specifically tailored to school breaks and lesson times.

Offline Acknowledgement

New device status for an improved overview

If devices are known to be offline for a long time, or if they are intended to be offline for a longer period of time, or if work is already in progress on troubleshooting, simply assign them an 'offline acknowledgement' from now on, which enables clearer incident management. You can still identify all devices that are offline unplanned by the red filled out display, known faults are only outlined in red. The 'offline acknowledgement' is automatically removed as soon as the device is back online; devices marked as known are not included in the offline statistics of the dashboards.

Audit Logs

Standardized logging of changes in the LMC

Changes in the LMC are now logged in a standardized way. These log messages comply with the requirements of PCI conformity and thus create a complete, non-manipulable tracing of events by containing all information about who made which change and at what time. This happens in accordance with data privacy standards. Only project administrators receive the complete information and can download it once a month as a new log archive on the "Log Download" tab. The logs remain stored for one year before being deleted.

WLAN Anomaly Detection

Fast and targeted troubleshooting in your WLAN

Keep the overview and control of your WLAN quality at all times! The sooner you know where and why something is wrong with your WLAN, the sooner this anomaly is eliminated. The evaluation of various metrics of the WLAN devices managed in the LMC and the comparison with defined threshold values ensure an immediate and accurate troubleshooting. If a threshold value is repeatedly exceeded at a pre-defined interval, you will receive clear warnings in the LMC and via e-mail. This allows early problem detection, ideally even before the Wi-Fi users notice it or before a fault occurs. The LANCOM Management Cloud provides direct practical advice, identifies possible causes and shows possible solutions.

Device exchange & pre-configuration

Prepare device configurations before connecting devices and transfer configurations to devices of the same model

Device replacement has never been easier: With this new feature, you can transfer the complete configuration from an existing device to a new device of the same model with just a few clicks. Simply select the device to be exchanged and enter the serial number of the replacement device — done! In addition, you now have the possibility to completely prepare the configuration for numerous LCOS devices — even before the device is connected to the LMC. Ideal for preparing your infrastructure for the least amount of effort during commissioning.

Rollout Assistant

The quick and easy way to onboard new LANCOM devices in the LANCOM Management Cloud

The initial setup and inventory of new LANCOM devices in the LMC is easy with the new Rollout Assistant and takes just a few clicks. The Rollout Assistant, which was specially designed for mobile use on tablets and smartphones, can be used to perform onboarding to the LMC directly on site, after the new device has been connected to the network. The only requirement is that your smartphone or tablet can access the Internet (LTE, WLAN, etc.) and that you have your LMC login data at hand. During the inventory using the Rollout Assistant, you can follow the current device status live and thus find out during the installation whether the device receives the final status "online" in the LMC. With both iOS and Android, you can drop the Rollout Assistant home page as a quick link on the home screen of your smartphone. Like all other apps you can start the application quickly by clicking on this icon.

Secure WEBconfig access

Secure access to your LANCOM R&S®Unified Firewall device’s WEBconfig

The new highlight feature "Secure WEBconfig Access" allows direct and secure access to your LANCOM R&S® Unified Firewall device's WEBconfig – securely encrypted and above all usable from within the cloud interface. By this direct remote access to the device's WEBconfig the complete Unified Firewall configuration becomes accessible to a system administrator. A convenient added value which does not only save time, but particularly unifies the global and individual firewall management in the LANCOM Management Cloud. You can access the LANCOM R&S® Unified Firewall's WEBconfig in the LMC via the tab "Detail configuration" in the device's detail view. One WEBconfig session is supported per device. A previously initiated session is thereby closed.

Custom Fields

User-defined views and advanced sorting and filtering capabilities

It is now possible to extend the devices overview page with additional columns. These columns are freely configurable and can include values which enable the user to sort and filter the overview by further criteria, for instance to find a certain device faster. Examples for user-defined columns: Contact person, Location (e.g. "Room 4“), Customer number (beneficial in large-scale / individual customer installations). In the locations overview, as well, user-defined columns can now be added. Just like in the devices overview, you have the option to sort the overview by all columns.

Cloud-managed Firewalls

The entire network within in the LMC

The LANCOM R&S®Unified Firewalls are now cloud-ready! Devices are connected to the LANCOM Management Cloud (LMC) by a simple yet secure PIN- or activation code-based pairing procedure. They then appear in the device overview, which offers clearly structured monitoring of the device status and also features an alerting function. On top of that, having a firewall in your network all applications tagged with "LCOS FX" within the feature "Application Management" can be provided with rules.

Application Management

Convenient control over the applications in your network

You can now manage which applications you allow or block in your networks even more easily in the LANCOM Management Cloud. As the successor to the previous application routing, you can use the new application management to group several applications into a common rule. You assign specific actions to these, such as "redirect" or "block". With just a few clicks, you can increase the security of the network and also improve performance by local breakouts of defined applications.

SD-WAN Performance Monitoring

Performance in focus

The LANCOM Management Cloud provides a simple overview of your SD-WAN setup and thus of all VPN connections in a network. For even more control of your SD-WAN, it is now possible to display performance values for a selected VPN connection on the map in addition to a tabular view. This enables end-to-end quality monitoring, e.g. up to VoIP- or application servers in the SD-WAN. The widget ‘Site Interconnection Overview‘ in the WAN / VPN dashboard shows current performance values such as throughput, packet loss, delay, and jitter for all VPN connections.Performance monitoring can be activated in the configuration dialog for each network. The monitoring target for the measurement is also defined there, allowing individual and flexible quality monitoring.

Do not miss any more LMC features: Subscribe to RSS feed

Find more information on features of LMC software releases up to version in our Archive document Release Notes.