USG FLEX H Series - V1.39 Patch 0 Firmware Release

Options
2

Comments

  • Zyxel_Melen
    Zyxel_Melen Posts: 5,030 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    Options

    Hi @stgvn

    Please help to send me a message for your organization's name and site's name. And enable Zyxel support access so we can check this issue.

    Zyxel Melen


  • Zyxel_Melen
    Zyxel_Melen Posts: 5,030 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    Options

    Hi @tojeroman

    This issue was caused by an error in the Release Note, and we sincerely apologize for the confusion it caused.

    Currently, the H series models do not yet officially support IPv6 functionality. That ticket was primarily intended to fix a GUI display bug — at the time, although the device did not actually support IPv6, the GUI was incorrectly displaying IPv6-related information. We addressed and corrected this display issue accordingly.

    Zyxel Melen


  • mMontana
    mMontana Posts: 1,499 image  Guru Member
    Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Switch 50 Answers 1000 Comments
    Options

    Any 1.39 adopters?

    Which is your current upgrade experience?

  • astronout
    astronout Posts: 2 image  Freshman Member
    First Comment
    Options

    We tried 1.39 patch 0 on our 700H and encountered unusual outbound connection issues, such as HTTP 504 Gateway Time-out errors and website connection failures. We’re going to roll back to 1.38.

    Zyxel—please clearly state at the top of the release notes that this release is not stable (i.e., label it as beta). As written, it feels like a beta release without clear labeling.

  • astronout
    astronout Posts: 2 image  Freshman Member
    First Comment
    edited August 7
    Options
  • Zyxel_Melen
    Zyxel_Melen Posts: 5,030 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    Options

    Hi @astronout

    Thanks for reporting this.

    First, to clarify: 1.39 Patch 0 went through our standard QA and regression testing process before being officially released — it was not pushed out ahead of that process — so by definition it isn't labeled as a beta release.

    That said, regarding the HTTP 504 / outbound connection issues you're seeing, we'd like to gather a few details so engineering can reproduce and investigate:

    1. Syslog from when the issue occurred (with timestamps)
    2. WAN interface configuration (PPPoE/DHCP/Static, any custom SNAT/Policy Route)
    3. Whether Content Filter, IDP, Application Patrol, or similar features are enabled
    4. Frequency of the issue and whether there's a pattern (e.g. specific sites/times)

    Thanks.

    Zyxel Melen


  • Zyxel_Melen
    Zyxel_Melen Posts: 5,030 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    Options

    Thank you for forwarding the email to us.

    The email you received is Nebula Control Center Upgrade Notification, which is mainly notifying that Nebula Control Center will update to 20.10 From Jul.27, 2026 0:20 AM to Jul.27, 2026 2:00 AM UTC+0. And in this email, we notified USG FLEX H series has new firmware, but we won't upgrade your device once your setting is not "Latest" firmware type.

    Hope this explanation helps.

    Zyxel Melen


  • p4_greg
    p4_greg Posts: 48 image  Freshman Member
    Network Detective-New Adventure Badge First Comment Friend Collector Fourth Anniversary
    Options

    Has 1.39 been pushed to 'stable' release category for FLEX100H? We had multiple firewalls reboot early this morning and upgrade from 1.38 to 1.39 and now we seem to be experiencing connectivity issues with policy-based site-to-site IPSec VPNs….the connection shows that it is up but traffic is not passing until a reboot.

    All of these sites were set to 'stable' firmware type, not 'latest'….

  • Zyxel_Melen
    Zyxel_Melen Posts: 5,030 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate
    edited August 18
    Options

    Hi @p4_greg

    I confirmed with our team that we didn't change 1.39 as the stable version, stable version is still 1.38. Please help to enable Zyxel support access and the organization's name of the effected orgs/sites for us to check what was happening. Thanks!

    Zyxel Melen


  • p4_greg
    p4_greg Posts: 48 image  Freshman Member
    Network Detective-New Adventure Badge First Comment Friend Collector Fourth Anniversary
    Options

    @Zyxel_Melen I have enabled the Support access as requested and sent you a PM with details.

    It appears that nearly half of our sites with firewalls in Nebula out of a total ~65 firewalls were upgraded to v1.39 early Monday morning. -All- of these sites were set to 'Stable' release type in the firmware management settings.

    I am very interested to know why this happened…..as of now we have set these site to ignore updates since we cant trust it now…