[2025 APR Notification] uOS1.32 Update: What's New for USG FLEX H Series

Zyxel_Avani
Zyxel_Avani Posts: 5  Zyxel Employee
edited April 14 in Security Highlight

The latest USG FLEX H firewall series is powered by the new uOS, which is designed to minimize system response time and improve overall system efficiency, including the following features:

  • Smart Sync, Manage Seamlessly

Experience revolutionary sync between the cloud and your devices with our advanced SmartSync technology. Seamlessly access configurations across your entire ecosystem. Our next generation platform gives you instant, granular settings, giving you unprecedented control. Stay in perfect harmony with real-time updates and smart preference management. Unlock a seamlessly connected future now.

  • DoH and DoT Blocking and Monitoring

When the firewall detects DNS over HTTPS (DoH) or DNS over TLS (DoT) queries to known DoH servers, USG FLEX H series blocks them to enforce internet restrictions, ensuring web filtering, DNS traffic visibility, and network health.

  • Unlock Borderless Connectivity with Tailscale VPN Integration

Deploy our gateway as a Tailscale VPN node, supporting individuals to MSPs with flexible subscriptions. Enjoy mesh VPN capabilities, SSO/MFA with Entra ID, and seamless NAT traversal—all within a zero-trust framework.

  • Nebula VPN Orchestrator: Simplified and Comprehensive VPN Management

Nebula VPN Orchestrator streamlines the deployment and management of both SD-VPN (Nebula VPN) and Auto-link VPN (Non-Nebula VPN) connections, enabling seamless device integration. Enjoy greater flexibility, effortless hybrid deployments, and centralized control for all your VPN networks.

  • Streamlined Wireless Control with Integrated AP Controller

Our gateway now functions as an AP Controller, enabling centralized management of multiple access points from one interface. Configure settings, deploy policies, and monitor performance without separate hardware. The USG FLEX 50H/HP models also offer this AP Controller capability, delivering streamlined operations with automated updates and intelligent client balancing—all from your existing gateway.

  • More Enhancements:
    • Captive Portal, providing secure user authentication for network access.
    • Link Aggregation (LAG), enhancing bandwidth and network reliability by combining multiple Ethernet links.
    • Route Traces, leveraging 5-tuple filtering to quickly identify drop reasons, troubleshoot network traffic path issues, and ensure seamless operations with optimal performance.
    • Bandwidth Management (BWM), enables easy control of bandwidth by setting limits per user and per IP, ensuring no single user hogs the bandwidth.
    • Application Patrol: Each profile allows only selected apps with specified actions.
  • Upgrade your devices to uOS1.32 for enhanced protection against the CVE references listed, as uOS1.32 is no longer vulnerable to them.
    • CVE-2025-1731, CVE-2025-1732

Release Date: April 14th, 2025

Supported Models: USG FLEX 50H/50HP/100H/100HP/200H/200HP/500H/700H