USG FLEX H Series - V1.21Patch 0 Firmware Release

Zyxel_Melen
Zyxel_Melen Posts: 2,472  Zyxel Employee
Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

Zywall USG FLEX H Series Release Note 

July 2024

Firmware Version on all models

  • Please use the cloud firmware upgrade function to upgrade USG FLEX H Series
USG FLEX H SeriesFirmware Version
FLEX100HV1.21(ABXF.0)C0
FLEX100HPV1.21(ACII.0)C0
FLEX200HV1.21(ABWV.0)C0
FLEX200HPV1.21(ABXE.0)C0
FLEX500HV1.21(ABZH.0)C0
FLEX700HV1.21(ABZI.0)C0

Note: For the initial installation of the USG FLEX H Series firewall, please using the firmware wizard to upgrade to uOS 1.08 Patch 1 firmware first, and then proceed with the upgrade to uOS1.10 firmware. The device becomes unreachable if you upgrade USG FLEX H directly from the factory default version to 1.10 P1 or later firmware version directly.

New Feature and Enhancements

1. [Enhancement] Content Filter/SSL Inspection support inspect TLS 1.3 hybridized Kyber session. [eITS#240401693, 240401220, 240401350][ZNGA-4890, 4960, 5005]

2. [Enhancement] Support modify Zone in IPsec/SSL Remote Access VPN. [ZNGA-5018, 5020]

3. [Enhancement] Newly supported applications include: Zoom, Webex, Google Meet, Skype, WeChat, Yandex Stream for Bandwidth Management. [eITS#210800391, 220200469][ZNGA-4906, 4907]

4. [Enhancement] Usability enhancements:

a. Add License Service expiration notification. [ZNGA-4830, 4833, 4834]
b. A memory check mechanism has been added for firmware upgrades, with a pop-up reminder message. [ZNGA-4732, 4775, 4777, 4778, 4779]
c. Tooltips can be clicked to redirect and edit the objects. [eITS#230900100] [ZNGA-3681]
d. Add a redirect link to SecuReporter at security statistics page, allowing users to easily check historical data. [ZNGA-4824]
e. Add SecuReporter tutorial video. [ZNGA-4825]
f. Unify the Timestamp format for statistic graphics. [ZNGA-4887]
g. Display or hide settings for table columns can be saved. [ZNGA-4392]
h. Enhance the user interface entry fields to be wider for better key-in visibility. [eITS#230701262][ZNGA-4911]
i. Add pattern validation for the subject of certificate. [ZNGA-4695]
j. Fine tune the hint message to make it more precise. [ZNGA-4807]
k. Support scan statistics of sandboxing on SecuReporter. [eITS#240501652] [ZNGA-5289]

5. [Feature Change] Hidden the PKCS#12 password for security. [eITS#231200194][ZNGA-4909]

6. [Feature Change] Stop Cloud firmware updates if the current firmware is Project/ITS firmware to avoid losing ITS-specific bug fixes. [ZNGA-4989, 4990]

7. [Feature Change] Change FTP ALG default settings: [eITS#231201239][ZNGA- 4908] 

a. Enable FTP ATG from Disable to Enable.
b. Enable FTP Transformation from Disable to Enable.

Bug Fix

1. [Bug Fix][eITS#231100879][ZNGA-4071] Open another website will redirect to uOS after logout.

2. [Bug Fix][eITS#231200398][ZNGA-4269] The device becomes unresponsive and stop processing traffic.

3. [Bug Fix][eITS#240100668][ZNGA-4539] Remote access VPN cannot be established.

4. [Bug Fix][eITS#240201429][ZNGA-4753] The device becomes unresponsive.

5. [Bug Fix][eITS#240301616][ZNGA-4782] Unable to establish SSL VPN using OpenVPN on mobile phone.

6. [Bug Fix][eITS#240400076][ZNGA-4836] iOS OpenVPN traffic cannot go through VPN tunnel to Internet in full tunnel mode.

7. [Bug Fix][eITS#240400192][ZNGA-4847] The device rebooted unexpectedly.

8. [Bug Fix][eITS#240400989][ZNGA-4874] Incorrect IPS and Sandboxing statistical data on SecuReporter.

9. [Bug Fix][eITS#240401060][ZNGA-4882] USG FLEX 200H works properly but it is always offline on Nebula.

10. [Bug Fix][eITS#240401303][ZNGA-4894] Error message: "Unable to save/write the startup config ..." appears when moving policy route order.

11. [Bug Fix][eITS#240401280][ZNGA-4895] VPN configuration page gets stuck on loading when setup.

12. [Bug Fix][eITS#240500136][ZNGA-4955] Use CLI to create "Configuration backup schedule". If the minute value is '00', it is not displayed in the GUI, only the hour.

13. [Bug Fix][eITS#240500140][ZNGA-4988] Search Base in Active Directory is not working.

14. [Bug Fix][eITS#240401531][ZNGA-4991] Site-to-site VPN traffic goes to the wrong zone for security policy management.

15. [Bug Fix][eITS#240500438][ZNGA-5069] Security policy is not working after modify the action from allow to deny in bridge mode.

16. [Bug Fix][eITS#240500522][ZNGA-5004] Unable to apply imported configuration file.

17. [Bug Fix][eITS#240501331][ZNGA-5056] Typo on USG FLEX H.

18. [Bug Fix][eITS#240501546][ZNGA-5098] Network Status -> DHCP Table sorting order works incorrectly.

19. [Bug Fix][eITS#240600115][ZNGA-5115] If 00 is configured as minute in Configure Backup schedule > Enable Auto Backup > Daily, it becomes empty after the settings are saved.

20. [Bug Fix][eITS#240600764][ZNGA-5258] NAT rule cannot be applied properly.

21. [Bug Fix][eITS#240600735][ZNGA-5259] On Site to Site VPN monitor page, it shows all VPN tunnels are disconnected even they are properly connected.

22. [Bug Fix][eITS#240601117][ZNGA-5271] NAT rule does not take effect after object type "interface IP" is used.

23. [Bug Fix][eITS#240501404][ZNGA-5286] USG FLEX 100H works properly but it is always offline on Nebula.

24. [Bug Fix][eITS#240600305][ZNGA-5287] Policy route health check does not work as expected. It is always "down" even wan link is up and ping check is successful.

25. [Bug Fix][eITS#240500726][ZNGA-5382] SSL VPN tunnel disconnects after 60 minutes.

26. [Bug Fix][eITS#240600938][ZNGA-5383] DDNS is unable to be updated.

27. [Bug Fix][eITS#240601358][ZNGA-5386] Service disappear from service group after device reboots.

28. [Bug Fix][ZNGA-3402, 3314] Malfunction when set banner via CLI command.

29. [Bug Fix][ZNGA-4754] IPSec VPN VTI interface ping check cannot trigger IKE negotiation.

30. [Bug Fix][ZNGA-4762] [GUI/Policy Route] Change browser to Firefox then move rule will appear error undefined.

31. [Bug Fix][ZNGA-4768] [File Manager] DUT will not reboot when apply system-default.conf.

32. [Bug Fix][ZNGA-4846] VTI interface in user defined Trunk is not working.

33. [Bug Fix][ZNGA-4883] [Remote Access IPsec VPN] Add admin user type into Remote Access VPN results in failure to provision the Remote Access IPsec VPN configuration to local user.

34. [Bug Fix][ZNGA-5036] Users may encounter issues where the DHCP Relay retains outdated IP addresses and upstream interface configurations.

35. [Bug Fix][ZNGA-5042] An unexpected behavior occurs in the DHCP Relay functionality when the upstream interface setting is left empty or set to any other interface.

36. [Bug Fix][ZNGA-5045] When the PPPoE interface is active, other VLANs cannot obtain IP addresses.

37. [Bug Fix][ZNGA-5091] [Interface/GUI] Remove port from port group that GUI will keep loading

38. [Bug Fix][ZNGA-5094] DHCP option 46 is not working.

39. [Bug Fix][ZNGA-5102] DHCP Relay interface is same as upstream interface, then the DHCP Relay will not work.

Please refer to the Download Link for more details.