Update PAN-OS 11.1 files
This commit is contained in:
@@ -6,7 +6,7 @@ version: 11.1.8
|
||||
|
||||
## PAN-284490
|
||||
|
||||
A fix was made to address CVE-2025-2182.
|
||||
A fix was made to address [CVE-2025-2182](https://security.paloaltonetworks.com/CVE-2025-2182).
|
||||
|
||||
## PAN-283493
|
||||
|
||||
@@ -26,7 +26,7 @@ Fixed an issue where the web interface did not display a message to commit prior
|
||||
|
||||
## PAN-280471
|
||||
|
||||
Fixed an issue where navigating Panorama > Monitor > Logs was slower than expected.
|
||||
Fixed an issue where navigating **Panorama > Monitor > Logs** was slower than expected.
|
||||
|
||||
## PAN-280243
|
||||
|
||||
@@ -38,7 +38,7 @@ Fixed an issue where the firewall lost the pre-shared key configuration assigned
|
||||
PA-1400 Series firewalls only
|
||||
```
|
||||
|
||||
Fixed an issue on the web interface where Enable Bonjour Reflector was not displayed (Network > Interfaces > Ethernet Interface).
|
||||
Fixed an issue on the web interface where **Enable Bonjour Reflector** was not displayed (**Network > Interfaces > Ethernet Interface**).
|
||||
|
||||
## PAN-279746
|
||||
|
||||
@@ -66,7 +66,7 @@ Fixed an issue where the firewall did not properly power cycle during a reboot.
|
||||
|
||||
## PAN-277751
|
||||
|
||||
Fixed an issue where a policy-based forwarding (PBF) rule with an action of no-pbf and a service of TCP-22 did not match traffic after upgrading to PAN-OS 11.1.5-h1. As a result, traffic was matched by a lower rule with a service of any and an action of forward.
|
||||
Fixed an issue where a policy-based forwarding (PBF) rule with an action of **no-pbf** and a service of TCP-22 did not match traffic after upgrading to PAN-OS 11.1.5-h1. As a result, traffic was matched by a lower rule with a service of **any** and an action of **forward**.
|
||||
|
||||
## PAN-277631
|
||||
|
||||
@@ -82,7 +82,7 @@ Fixed an issue where the packet buffer size increased significantly when WildFir
|
||||
|
||||
## PAN-276795
|
||||
|
||||
Fixed an issue where the GlobalProtect client displayed an error message when you clicked Check Now and Preferred Releases and Base Releases were unchecked (Device > Software).
|
||||
Fixed an issue where the GlobalProtect client displayed an error message when you clicked **Check Now** and **Preferred Releases** and **Base Releases** were unchecked (**Device > Software**).
|
||||
|
||||
## PAN-276599
|
||||
|
||||
@@ -166,11 +166,11 @@ Fixed an issue where the firewall rebooted continuously after upgrading to PAN-O
|
||||
|
||||
## PAN-274038
|
||||
|
||||
Fixed an issue where you were unable to use the s_encrypted field in custom reports for the Panorama threat log database.
|
||||
Fixed an issue where you were unable to use the **s_encrypted** field in custom reports for the Panorama threat log database.
|
||||
|
||||
## PAN-273991
|
||||
|
||||
Fixed an issue where the transmit power for a cable that was used on port 44 displayed as N/A.
|
||||
Fixed an issue where the transmit power for a cable that was used on port 44 displayed as **N/A**.
|
||||
|
||||
## PAN-273963
|
||||
|
||||
@@ -190,7 +190,7 @@ Fixed an issue where packets were dropped initially when a SYN cookie with activ
|
||||
|
||||
## PAN-273597
|
||||
|
||||
Fixed an issue where logs in the cloud database displayed in the Not-Resolved category but not in the local database.
|
||||
Fixed an issue where logs in the cloud database displayed in the **Not-Resolved** category but not in the local database.
|
||||
|
||||
## PAN-273589
|
||||
|
||||
@@ -230,11 +230,11 @@ Fixed an issue where the firewall entered an unstable state after committing cha
|
||||
|
||||
## PAN-272743
|
||||
|
||||
Fixed an issue where non-captive portal traffic was not visible under Traffic Logs when the traffic was denied by an authentication rule and the session was discarded.
|
||||
Fixed an issue where non-captive portal traffic was not visible under **Traffic Logs** when the traffic was denied by an authentication rule and the session was discarded.
|
||||
|
||||
## PAN-272726
|
||||
|
||||
Fixed an issue on the web interface where the URL Filtering change category feature did not work.
|
||||
Fixed an issue on the web interface where the **URL Filtering** change category feature did not work.
|
||||
|
||||
## PAN-272605
|
||||
|
||||
@@ -270,7 +270,7 @@ Fixed an issue where the push scope did not populate when attempting to push a p
|
||||
|
||||
## PAN-271774
|
||||
|
||||
Fixed an issue where the firewall logs displayed the reason for data filtering action as FW Skipped: XXXX.
|
||||
Fixed an issue where the firewall logs displayed the reason for data filtering action as **FW Skipped: XXXX**.
|
||||
|
||||
## PAN-271700
|
||||
|
||||
@@ -366,7 +366,7 @@ Fixed an issue threat reports were empty when generated from Panorama, but displ
|
||||
|
||||
## PAN-269716
|
||||
|
||||
Fixed an issue where half-closed TCP sessions did not refresh the session timeout when continuously receiving data after setting the cfg.session.tcp-no-refresh-fin-rst option toTrue.
|
||||
Fixed an issue where half-closed TCP sessions did not refresh the session timeout when continuously receiving data after setting the cfg.session.tcp-no-refresh-fin-rst option to True.
|
||||
|
||||
## PAN-269624
|
||||
|
||||
@@ -434,7 +434,7 @@ Fixed an issue where traffic did not match the correct security policy when usin
|
||||
|
||||
## PAN-268606
|
||||
|
||||
Fixed an issue where GlobalProtect users with client certificates received an authentication failure message without entering a password and clicking connect or login.
|
||||
Fixed an issue where GlobalProtect users with client certificates received an authentication failure message without entering a password and clicking **connect** or **login**.
|
||||
|
||||
## PAN-268597
|
||||
|
||||
@@ -458,7 +458,7 @@ Fixed an issue where autocommits failed if the management IPv6 gateway was the s
|
||||
|
||||
## PAN-268276
|
||||
|
||||
Fixed an issue where GlobalProtect clients intermittently failed to connect to the gateway with the error message could not connect to gateway.
|
||||
Fixed an issue where GlobalProtect clients intermittently failed to connect to the gateway with the error message **could not connect to gateway**.
|
||||
|
||||
## PAN-268168
|
||||
|
||||
@@ -474,7 +474,7 @@ Fixed an issue on firewalls in active/passive HA configurations where, after a f
|
||||
|
||||
## PAN-267912
|
||||
|
||||
Fixed an issue on the Panorama web interface where Application and Category was not able to be selected under Test Policy Match.
|
||||
Fixed an issue on the Panorama web interface where **Application** and **Category** was not able to be selected under **Test Policy Match**.
|
||||
|
||||
## PAN-267660
|
||||
|
||||
@@ -502,7 +502,7 @@ Fixed an issue where WildFire submission logs incorrectly reported allowed malic
|
||||
Firewalls in HA configuration only
|
||||
```
|
||||
|
||||
Fixed an issue where the Network pre-negotiation enabled page did not display on the firewall dashboard.
|
||||
Fixed an issue where the **Network pre-negotiation enabled** page did not display on the firewall dashboard.
|
||||
|
||||
## PAN-267381
|
||||
|
||||
@@ -526,7 +526,7 @@ Fixed an issue where multicast streams were unstable with ECMP and dropped every
|
||||
|
||||
## PAN-266905
|
||||
|
||||
Fixed an issue where sessions ended with the message decrypt error in the logs for traffic that matched a no-decrypt policy.
|
||||
Fixed an issue where sessions ended with the message decrypt error in the logs for traffic that matched a **no-decrypt** policy.
|
||||
|
||||
## PAN-266800
|
||||
|
||||
@@ -784,7 +784,7 @@ Fixed an issue where the firewall displayed incorrect statistics for mac_transmi
|
||||
|
||||
## PAN-261936
|
||||
|
||||
Fixed an issue where WildFire submission logs were not displayed when filtered by Sender Address.
|
||||
Fixed an issue where WildFire submission logs were not displayed when filtered by **Sender Address**.
|
||||
|
||||
## PAN-261825
|
||||
|
||||
@@ -840,11 +840,11 @@ Fixed an issue where the firewall dropped a retransmitted SYN packet when using
|
||||
|
||||
## PAN-261074
|
||||
|
||||
Fixed an issue where the firewall delayed video file transfers over SMB when Exclude Video Traffic from the Tunnel feature was enabled and no applications were added to the list.
|
||||
Fixed an issue where the firewall delayed video file transfers over SMB when **Exclude Video Traffic** from the Tunnel feature was enabled and no applications were added to the list.
|
||||
|
||||
## PAN-260879
|
||||
|
||||
Fixed an issue where the Panorama port 28270 did not adhere to the restricted TLS version and ciphers set in the Secure Communication Settings.
|
||||
Fixed an issue where the Panorama port 28270 did not adhere to the restricted TLS version and ciphers set in the **Secure Communication Settings**.
|
||||
|
||||
## PAN-260752
|
||||
|
||||
@@ -892,11 +892,11 @@ Fixed an issue where the web interface stopped responding when configuring the G
|
||||
|
||||
## PAN-260059
|
||||
|
||||
Fixed an issue where Device Telemetry Regions did not show up with the latest content due to content files not being parsed for the region list when Telemetry was turned off.
|
||||
Fixed an issue where **Device Telemetry Regions** did not show up with the latest content due to content files not being parsed for the region list when Telemetry was turned off.
|
||||
|
||||
## PAN-260003
|
||||
|
||||
Fixed an issue where commits failed when you set Use Management interface for all and MGMT was configured for Data Services.
|
||||
Fixed an issue where commits failed when you set **Use Management interface for all** and **MGMT** was configured for **Data Services**.
|
||||
|
||||
## PAN-259870
|
||||
|
||||
@@ -916,11 +916,11 @@ Fixed an issue where the firewall experienced high dataplane CPU usage when SSL
|
||||
|
||||
## PAN-259767
|
||||
|
||||
Fixed an issue where GlobalProtect users were unable to connect when the option Block sessions if the certificate was not issued to the authenticating device was enabled in the certificate profile.
|
||||
Fixed an issue where GlobalProtect users were unable to connect when the option **Block sessions if the certificate was not issued to the authenticating device** was enabled in the certificate profile.
|
||||
|
||||
## PAN-259343
|
||||
|
||||
Fixed an issue on the Panorama web interface where the Configuration tab did not accurately display changes made to URL filtering profiles.
|
||||
Fixed an issue on the Panorama web interface where the **Configuration** tab did not accurately display changes made to URL filtering profiles.
|
||||
|
||||
## PAN-259140
|
||||
|
||||
@@ -988,7 +988,7 @@ Fixed an issue where scheduled email reports were sent without PDF attachments i
|
||||
|
||||
## PAN-256560
|
||||
|
||||
Fixed an issue where exporting a Custom Report to CSV format did not display the full report if it contained non-ASCII characters.
|
||||
Fixed an issue where exporting a **Custom Report** to CSV format did not display the full report if it contained non-ASCII characters.
|
||||
|
||||
## PAN-256138
|
||||
|
||||
|
||||
Reference in New Issue
Block a user