USG FLEX H Series - V1.31Patch 0 Firmware Release

Zyxel_Melen
Zyxel_Melen Posts: 2,654  Zyxel Employee
Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

Zywall USG FLEX H Series Release Note 

January 2025

Firmware Version on all models

  • Please use the cloud firmware upgrade function to upgrade USG FLEX H Series
USG FLEX H SeriesFirmware Version
FLEX100HV1.31(ABXF.0)C0
FLEX100HPV1.31(ACII.0)C0
FLEX200HV1.31(ABWV.0)C0
FLEX200HPV1.31(ABXE.0)C0
FLEX500HV1.31(ABZH.0)C0
FLEX700HV1.31(ABZI.0)C0

Note: For the initial installation of the USG FLEX H Series firewall, please using the firmware wizard to upgrade to uOS 1.08 Patch 1 firmware first, and then proceed with the upgrade to uOS1.10 firmware. The device becomes unreachable if you upgrade USG FLEX H directly from the factory default version to 1.10 P1 or later firmware version directly.

New Feature and Enhancements

1. [Enhancement] Support Device HA (Active-Passive mode)

Note: If your Pro/Plus pack organization downgrades to base pack or enters grace period since USG FLEX H series enables device HA, please contact @Zyxel_CSO for help.

2. [Enhancement] Support Event Notification, sending emails for event and alert logs.

3. [Enhancement] Support Packet Flow Explore

4. [Enhancement] Support SIP ALG

5. [Enhancement] Support Policy-based Site to Site VPN with NAT (NAT over IPsec)

6. [Enhancement] Support Nebula VPN

7. [Enhancement] Support Device and Nebula seamless configuration synchronization.

8. [Enhancement] Support Nebula Firewall Interface settings.

9. [Enhancement] Support Nebula Firewall Object settings.

10. [Enhancement] Support Nebula Auto Rollback WAN function for ISP (Change to a different ISP).

11. [Enhancement] Support Lockout user list that allows admins perform unlock actions.

12. [Enhancement] IPsec VPN Phase 2 now supports Address object selection.

13. [Enhancement] Add USB storage disk full warning.

14. [Enhancement] Support Recovery Manager, one-click backup for configurations and certificates.

15. [Enhancement] Usability enhancements:

  • Added ""Nebula Status"" to System Dashboard > System. 
  • Added Cloud Firmware download icon to System Dashboard > System when new firmware is available. 
  • Added disconnected legend to System Dashboard > Port. 
  • Added search field to Address and Service Object. 
  • Improved GUI usability, including scroll bar adjustments, DHCP Extended Option reminders, and interface table refinements."

16. [Feature Change] Update Reset button behavior by pressing the Reset button for more than 7 seconds will now retain certificates and user configurations.

17. [Feature Change] The default payload size for "Drop SYN with Payload Pkt" has been modified to 1 byte. [eITS#240901862]

18. [Feature Change] No License Required for Application Usage/Traffic

19. [Feature Change] Updated the Mail Server layout, including the default sender and receiver email addresses

Bug Fix

1. [eITS#240600109] NAT rule affects VPN traffic when the NAT destination setting is Any

2. [eITS#240801135] CPU usage of core0 and core1 is high even if just a few clients are connected in LAN.

3. [eITS#240801153] If the firewall runs for a few days, the memory usage will gradually increase.

4. [eITS#240801231] The CF service will perform additional scanning, which may increase memory usage and lead to system reboots.

5. [eITS#240801470] Local out traffic failure if WAN(Static IP) isn't in Trunk member

6. [eITS#240801545] External block list can't update if HTTP no content-length header

7. [eITS#240801656] When accessing the device dashboard, it remains in a loading state, and the security policy is missing from the web GUI.

8. [eITS#240801699] The syslog daemon dead and leads firewall is unable to send out the syslog to server.

9. [eITS#240801798] No settings are displayed in the web GUI when the device has been running for around 5 to 10 days.

10. [eITS#240900150] Sometime USG FLEX 100H becomes unresponsive.

11. [eITS#240900509] Network is very slow and GUI can't load

12. [eITS#240900523] Apply config failed after the device is upgraded to 1.30 version.

13. [eITS#240901455] Firewall will keep CF query until the server reply to firewall. If server stops replying or replies slow, it will affect firewall memory high and may lead reboot.

14. [eITS#240901725] Stability issue when DNS Domain scan is enabled.

15. [eITS#240901822] Can't remove group of user profile

16. [eITS#241000324] Multiple entries in the DHCP list are missing MAC addresses.

17. [eITS#241000471] Unable to delete an empty user group; the GUI becomes unresponsive and freezes.

18. [eITS#241000768] CPU usage becomes high when ZSDN sync

19. [eITS#241000983] An error message pops up when creating a VLAN or Ethernet interface.

20. [eITS#241001089] In DDNS settings, DDNS update status is "Update Failed" when the primary address is "Public IP".

21. [eITS#241001229] The device failed to apply configuration file after upgraded from 1.21WK40 to 1.30. It will roll back to the original firmware partition 1.21WK40.

22. [eITS#241001300] DHCP service stops for no reason, and LAN hosts cannot obtain an IP address from the firewall.

23. [eITS#241001397] Unable to delete multiple “*.log” files at once.

24. [eITS#241001550] Display of Security Policy jumps randomly

25. [eITS#241001778] GUI should stop duplicated MAC for reserved DHCP client

26. [eITS#241100097] DHCP table becomes empty after firmware upgrade

27. [eITS#241100219, 241100331] LAN and VLAN clients experience ping timeouts to 8.8.8.8 and slow internet access/download speeds.

28. [eITS#241100235, 241200863] The WAN trunk WRR algorithm is not working as expected; all traffic is routed through a specific WAN interface.

29. [eITS#241100473] The " character in VPN PSK setting causes VPN tunnel doesn't work and system is unable to delete completely from system.

30. [eITS#241100480] The VPN service is affected by the NAT service, causing data traffic to be unable to pass through.

31. [eITS#241100518] Improve USG FLEX 700 FAN noises

32. [eITS#241100535] The firewall reboots unexpectedly due to a memory leak caused by VPN rekey failures

33. [eITS#241100601] The PoE port stops working after the firmware update to 1.30, and both ports cannot operate simultaneously.

34. [eITS#241101398] (1)The firewall stopped sending syslogs to the syslog server. (2) The syslogs show a UTC+0 timestamp instead of the corresponding timestamp for the configured time zone.

35. [eITS#241101415] Google MFA binding fails, and no backup codes are displayed in the web GUI.

36. [eITS#241101660] If user defined "any" as External IP in NAT rules, it affects VPN traffic matches the rule even if the Incoming interface is configured as "WAN" interface but not VTI interface.

37. [eITS#241200162] Unable to delete a user in User Authentication > User/Group > User. The button "Remove" is greyed out.

38. [eITS#241200665] SSLVPN provision is not working

Please refer to the Download Link for more details.

Zyxel Melen