USG FLEX H Series - V1.21Patch 0 Firmware Release

Zyxel_Melen
Zyxel_Melen Posts: 2,098  Zyxel Employee
250 Answers Zyxel Certified Network Engineer Level 1 - Switch Third Anniversary 1000 Comments

Zywall USG FLEX H Series Release Note 

July 2024

Firmware Version on all models

  • Please use the cloud firmware upgrade function to upgrade USG FLEX H Series
USG FLEX H SeriesFirmware Version
FLEX100HV1.21(ABXF.0)C0
FLEX100HPV1.21(ACII.0)C0
FLEX200HV1.21(ABWV.0)C0
FLEX200HPV1.21(ABXE.0)C0
FLEX500HV1.21(ABZH.0)C0
FLEX700HV1.21(ABZI.0)C0

Note: For the initial installation of the USG FLEX H Series firewall, please using the firmware wizard to upgrade to uOS 1.08 Patch 1 firmware first, and then proceed with the upgrade to uOS1.10 firmware. The device becomes unreachable if you upgrade USG FLEX H directly from the factory default version to 1.10 P1 or later firmware version directly.

New Feature and Enhancements

1. [Enhancement] Content Filter/SSL Inspection support inspect TLS 1.3 hybridized Kyber session. [eITS#240401693, 240401220, 240401350][ZNGA-4890, 4960, 5005]

2. [Enhancement] Support modify Zone in IPsec/SSL Remote Access VPN. [ZNGA-5018, 5020]

3. [Enhancement] Newly supported applications include: Zoom, Webex, Google Meet, Skype, WeChat, Yandex Stream for Bandwidth Management. [eITS#210800391, 220200469][ZNGA-4906, 4907]

4. [Enhancement] Usability enhancements:

a. Add License Service expiration notification. [ZNGA-4830, 4833, 4834]
b. A memory check mechanism has been added for firmware upgrades, with a pop-up reminder message. [ZNGA-4732, 4775, 4777, 4778, 4779]
c. Tooltips can be clicked to redirect and edit the objects. [eITS#230900100] [ZNGA-3681]
d. Add a redirect link to SecuReporter at security statistics page, allowing users to easily check historical data. [ZNGA-4824]
e. Add SecuReporter tutorial video. [ZNGA-4825]
f. Unify the Timestamp format for statistic graphics. [ZNGA-4887]
g. Display or hide settings for table columns can be saved. [ZNGA-4392]
h. Enhance the user interface entry fields to be wider for better key-in visibility. [eITS#230701262][ZNGA-4911]
i. Add pattern validation for the subject of certificate. [ZNGA-4695]
j. Fine tune the hint message to make it more precise. [ZNGA-4807]
k. Support scan statistics of sandboxing on SecuReporter. [eITS#240501652] [ZNGA-5289]

5. [Feature Change] Hidden the PKCS#12 password for security. [eITS#231200194][ZNGA-4909]

6. [Feature Change] Stop Cloud firmware updates if the current firmware is Project/ITS firmware to avoid losing ITS-specific bug fixes. [ZNGA-4989, 4990]

7. [Feature Change] Change FTP ALG default settings: [eITS#231201239][ZNGA- 4908] 

a. Enable FTP ATG from Disable to Enable.
b. Enable FTP Transformation from Disable to Enable.

Bug Fix

1. [Bug Fix][eITS#231100879][ZNGA-4071] Open another website will redirect to uOS after logout.

2. [Bug Fix][eITS#231200398][ZNGA-4269] The device becomes unresponsive and stop processing traffic.

3. [Bug Fix][eITS#240100668][ZNGA-4539] Remote access VPN cannot be established.

4. [Bug Fix][eITS#240201429][ZNGA-4753] The device becomes unresponsive.

5. [Bug Fix][eITS#240301616][ZNGA-4782] Unable to establish SSL VPN using OpenVPN on mobile phone.

6. [Bug Fix][eITS#240400076][ZNGA-4836] iOS OpenVPN traffic cannot go through VPN tunnel to Internet in full tunnel mode.

7. [Bug Fix][eITS#240400192][ZNGA-4847] The device rebooted unexpectedly.

8. [Bug Fix][eITS#240400989][ZNGA-4874] Incorrect IPS and Sandboxing statistical data on SecuReporter.

9. [Bug Fix][eITS#240401060][ZNGA-4882] USG FLEX 200H works properly but it is always offline on Nebula.

10. [Bug Fix][eITS#240401303][ZNGA-4894] Error message: "Unable to save/write the startup config ..." appears when moving policy route order.

11. [Bug Fix][eITS#240401280][ZNGA-4895] VPN configuration page gets stuck on loading when setup.

12. [Bug Fix][eITS#240500136][ZNGA-4955] Use CLI to create "Configuration backup schedule". If the minute value is '00', it is not displayed in the GUI, only the hour.

13. [Bug Fix][eITS#240500140][ZNGA-4988] Search Base in Active Directory is not working.

14. [Bug Fix][eITS#240401531][ZNGA-4991] Site-to-site VPN traffic goes to the wrong zone for security policy management.

15. [Bug Fix][eITS#240500438][ZNGA-5069] Security policy is not working after modify the action from allow to deny in bridge mode.

16. [Bug Fix][eITS#240500522][ZNGA-5004] Unable to apply imported configuration file.

17. [Bug Fix][eITS#240501331][ZNGA-5056] Typo on USG FLEX H.

18. [Bug Fix][eITS#240501546][ZNGA-5098] Network Status -> DHCP Table sorting order works incorrectly.

19. [Bug Fix][eITS#240600115][ZNGA-5115] If 00 is configured as minute in Configure Backup schedule > Enable Auto Backup > Daily, it becomes empty after the settings are saved.

20. [Bug Fix][eITS#240600764][ZNGA-5258] NAT rule cannot be applied properly.

21. [Bug Fix][eITS#240600735][ZNGA-5259] On Site to Site VPN monitor page, it shows all VPN tunnels are disconnected even they are properly connected.

22. [Bug Fix][eITS#240601117][ZNGA-5271] NAT rule does not take effect after object type "interface IP" is used.

23. [Bug Fix][eITS#240501404][ZNGA-5286] USG FLEX 100H works properly but it is always offline on Nebula.

24. [Bug Fix][eITS#240600305][ZNGA-5287] Policy route health check does not work as expected. It is always "down" even wan link is up and ping check is successful.

25. [Bug Fix][eITS#240500726][ZNGA-5382] SSL VPN tunnel disconnects after 60 minutes.

26. [Bug Fix][eITS#240600938][ZNGA-5383] DDNS is unable to be updated.

27. [Bug Fix][eITS#240601358][ZNGA-5386] Service disappear from service group after device reboots.

28. [Bug Fix][ZNGA-3402, 3314] Malfunction when set banner via CLI command.

29. [Bug Fix][ZNGA-4754] IPSec VPN VTI interface ping check cannot trigger IKE negotiation.

30. [Bug Fix][ZNGA-4762] [GUI/Policy Route] Change browser to Firefox then move rule will appear error undefined.

31. [Bug Fix][ZNGA-4768] [File Manager] DUT will not reboot when apply system-default.conf.

32. [Bug Fix][ZNGA-4846] VTI interface in user defined Trunk is not working.

33. [Bug Fix][ZNGA-4883] [Remote Access IPsec VPN] Add admin user type into Remote Access VPN results in failure to provision the Remote Access IPsec VPN configuration to local user.

34. [Bug Fix][ZNGA-5036] Users may encounter issues where the DHCP Relay retains outdated IP addresses and upstream interface configurations.

35. [Bug Fix][ZNGA-5042] An unexpected behavior occurs in the DHCP Relay functionality when the upstream interface setting is left empty or set to any other interface.

36. [Bug Fix][ZNGA-5045] When the PPPoE interface is active, other VLANs cannot obtain IP addresses.

37. [Bug Fix][ZNGA-5091] [Interface/GUI] Remove port from port group that GUI will keep loading

38. [Bug Fix][ZNGA-5094] DHCP option 46 is not working.

39. [Bug Fix][ZNGA-5102] DHCP Relay interface is same as upstream interface, then the DHCP Relay will not work.

Please refer to the Download Link for more details.

Zyxel Melen


Don't miss this great chance to upgrade your Nebula org. for free!