Update PAN-OS 11.1 files

This commit is contained in:
2026-04-15 14:57:19 -05:00
parent 8a243e3d9c
commit 10f549ef2a
84 changed files with 3207 additions and 3509 deletions
+25 -25
View File
@@ -6,7 +6,7 @@ version: 11.1.8
## PAN-284490
A fix was made to address CVE-2025-2182.
A fix was made to address [CVE-2025-2182](https://security.paloaltonetworks.com/CVE-2025-2182).
## PAN-283493
@@ -26,7 +26,7 @@ Fixed an issue where the web interface did not display a message to commit prior
## PAN-280471
Fixed an issue where navigating Panorama > Monitor > Logs was slower than expected.
Fixed an issue where navigating **Panorama > Monitor > Logs** was slower than expected.
## PAN-280243
@@ -38,7 +38,7 @@ Fixed an issue where the firewall lost the pre-shared key configuration assigned
PA-1400 Series firewalls only
```
Fixed an issue on the web interface where Enable Bonjour Reflector was not displayed (Network > Interfaces > Ethernet Interface).
Fixed an issue on the web interface where **Enable Bonjour Reflector** was not displayed (**Network > Interfaces > Ethernet Interface**).
## PAN-279746
@@ -66,7 +66,7 @@ Fixed an issue where the firewall did not properly power cycle during a reboot.
## PAN-277751
Fixed an issue where a policy-based forwarding (PBF) rule with an action of no-pbf and a service of TCP-22 did not match traffic after upgrading to PAN-OS 11.1.5-h1. As a result, traffic was matched by a lower rule with a service of any and an action of forward.
Fixed an issue where a policy-based forwarding (PBF) rule with an action of **no-pbf** and a service of TCP-22 did not match traffic after upgrading to PAN-OS 11.1.5-h1. As a result, traffic was matched by a lower rule with a service of **any** and an action of **forward**.
## PAN-277631
@@ -82,7 +82,7 @@ Fixed an issue where the packet buffer size increased significantly when WildFir
## PAN-276795
Fixed an issue where the GlobalProtect client displayed an error message when you clicked Check Now and Preferred Releases and Base Releases were unchecked (Device > Software).
Fixed an issue where the GlobalProtect client displayed an error message when you clicked **Check Now** and **Preferred Releases** and **Base Releases** were unchecked (**Device > Software**).
## PAN-276599
@@ -166,11 +166,11 @@ Fixed an issue where the firewall rebooted continuously after upgrading to PAN-O
## PAN-274038
Fixed an issue where you were unable to use the s_encrypted field in custom reports for the Panorama threat log database.
Fixed an issue where you were unable to use the **s_encrypted** field in custom reports for the Panorama threat log database.
## PAN-273991
Fixed an issue where the transmit power for a cable that was used on port 44 displayed as N/A.
Fixed an issue where the transmit power for a cable that was used on port 44 displayed as **N/A**.
## PAN-273963
@@ -190,7 +190,7 @@ Fixed an issue where packets were dropped initially when a SYN cookie with activ
## PAN-273597
Fixed an issue where logs in the cloud database displayed in the Not-Resolved category but not in the local database.
Fixed an issue where logs in the cloud database displayed in the **Not-Resolved** category but not in the local database.
## PAN-273589
@@ -230,11 +230,11 @@ Fixed an issue where the firewall entered an unstable state after committing cha
## PAN-272743
Fixed an issue where non-captive portal traffic was not visible under Traffic Logs when the traffic was denied by an authentication rule and the session was discarded.
Fixed an issue where non-captive portal traffic was not visible under **Traffic Logs** when the traffic was denied by an authentication rule and the session was discarded.
## PAN-272726
Fixed an issue on the web interface where the URL Filtering change category feature did not work.
Fixed an issue on the web interface where the **URL Filtering** change category feature did not work.
## PAN-272605
@@ -270,7 +270,7 @@ Fixed an issue where the push scope did not populate when attempting to push a p
## PAN-271774
Fixed an issue where the firewall logs displayed the reason for data filtering action as FW Skipped: XXXX.
Fixed an issue where the firewall logs displayed the reason for data filtering action as **FW Skipped: XXXX**.
## PAN-271700
@@ -366,7 +366,7 @@ Fixed an issue threat reports were empty when generated from Panorama, but displ
## PAN-269716
Fixed an issue where half-closed TCP sessions did not refresh the session timeout when continuously receiving data after setting the cfg.session.tcp-no-refresh-fin-rst option toTrue.
Fixed an issue where half-closed TCP sessions did not refresh the session timeout when continuously receiving data after setting the cfg.session.tcp-no-refresh-fin-rst option to True.
## PAN-269624
@@ -434,7 +434,7 @@ Fixed an issue where traffic did not match the correct security policy when usin
## PAN-268606
Fixed an issue where GlobalProtect users with client certificates received an authentication failure message without entering a password and clicking connect or login.
Fixed an issue where GlobalProtect users with client certificates received an authentication failure message without entering a password and clicking **connect** or **login**.
## PAN-268597
@@ -458,7 +458,7 @@ Fixed an issue where autocommits failed if the management IPv6 gateway was the s
## PAN-268276
Fixed an issue where GlobalProtect clients intermittently failed to connect to the gateway with the error message could not connect to gateway.
Fixed an issue where GlobalProtect clients intermittently failed to connect to the gateway with the error message **could not connect to gateway**.
## PAN-268168
@@ -474,7 +474,7 @@ Fixed an issue on firewalls in active/passive HA configurations where, after a f
## PAN-267912
Fixed an issue on the Panorama web interface where Application and Category was not able to be selected under Test Policy Match.
Fixed an issue on the Panorama web interface where **Application** and **Category** was not able to be selected under **Test Policy Match**.
## PAN-267660
@@ -502,7 +502,7 @@ Fixed an issue where WildFire submission logs incorrectly reported allowed malic
Firewalls in HA configuration only
```
Fixed an issue where the Network pre-negotiation enabled page did not display on the firewall dashboard.
Fixed an issue where the **Network pre-negotiation enabled** page did not display on the firewall dashboard.
## PAN-267381
@@ -526,7 +526,7 @@ Fixed an issue where multicast streams were unstable with ECMP and dropped every
## PAN-266905
Fixed an issue where sessions ended with the message decrypt error in the logs for traffic that matched a no-decrypt policy.
Fixed an issue where sessions ended with the message decrypt error in the logs for traffic that matched a **no-decrypt** policy.
## PAN-266800
@@ -784,7 +784,7 @@ Fixed an issue where the firewall displayed incorrect statistics for mac_transmi
## PAN-261936
Fixed an issue where WildFire submission logs were not displayed when filtered by Sender Address.
Fixed an issue where WildFire submission logs were not displayed when filtered by **Sender Address**.
## PAN-261825
@@ -840,11 +840,11 @@ Fixed an issue where the firewall dropped a retransmitted SYN packet when using
## PAN-261074
Fixed an issue where the firewall delayed video file transfers over SMB when Exclude Video Traffic from the Tunnel feature was enabled and no applications were added to the list.
Fixed an issue where the firewall delayed video file transfers over SMB when **Exclude Video Traffic** from the Tunnel feature was enabled and no applications were added to the list.
## PAN-260879
Fixed an issue where the Panorama port 28270 did not adhere to the restricted TLS version and ciphers set in the Secure Communication Settings.
Fixed an issue where the Panorama port 28270 did not adhere to the restricted TLS version and ciphers set in the **Secure Communication Settings**.
## PAN-260752
@@ -892,11 +892,11 @@ Fixed an issue where the web interface stopped responding when configuring the G
## PAN-260059
Fixed an issue where Device Telemetry Regions did not show up with the latest content due to content files not being parsed for the region list when Telemetry was turned off.
Fixed an issue where **Device Telemetry Regions** did not show up with the latest content due to content files not being parsed for the region list when Telemetry was turned off.
## PAN-260003
Fixed an issue where commits failed when you set Use Management interface for all and MGMT was configured for Data Services.
Fixed an issue where commits failed when you set **Use Management interface for all** and **MGMT** was configured for **Data Services**.
## PAN-259870
@@ -916,11 +916,11 @@ Fixed an issue where the firewall experienced high dataplane CPU usage when SSL
## PAN-259767
Fixed an issue where GlobalProtect users were unable to connect when the option Block sessions if the certificate was not issued to the authenticating device was enabled in the certificate profile.
Fixed an issue where GlobalProtect users were unable to connect when the option **Block sessions if the certificate was not issued to the authenticating device** was enabled in the certificate profile.
## PAN-259343
Fixed an issue on the Panorama web interface where the Configuration tab did not accurately display changes made to URL filtering profiles.
Fixed an issue on the Panorama web interface where the **Configuration** tab did not accurately display changes made to URL filtering profiles.
## PAN-259140
@@ -988,7 +988,7 @@ Fixed an issue where scheduled email reports were sent without PDF attachments i
## PAN-256560
Fixed an issue where exporting a Custom Report to CSV format did not display the full report if it contained non-ASCII characters.
Fixed an issue where exporting a **Custom Report** to CSV format did not display the full report if it contained non-ASCII characters.
## PAN-256138