Add 12.1.7 reference file
This commit is contained in:
@@ -0,0 +1,965 @@
|
||||
<table class="table colsep rowsep table-striped">
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<!--cq:include script="../../common/tablestack.jsp" /-->
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<colgroup><col style="width: 25%"><col style="width: 75%"></colgroup>
|
||||
<thead class="thead">
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row"><th class="entry">
|
||||
<div class="p">Issue ID</div>
|
||||
</th><th class="entry">
|
||||
<div class="p">Description</div>
|
||||
</th></tr>
|
||||
|
||||
</thead>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tbody class="tbody"><tr class="row"><td class="entry">
|
||||
<div class="p"><b class="ph b">—</b></div>
|
||||
</td><td class="entry relcol">
|
||||
<div class="p">Fixes were made to address the following CVEs:</div>
|
||||
<ul id="pan_os_12_1_7_addressed_issues_ul-snk_4r1_gjc" class="ul"><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0265" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0265</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0264" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0264</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0263" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0263</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0262" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0262</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0261" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0261</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0258" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0258</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0257" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0257</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0256" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0256</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0259" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0259</a></li><li class="li"><a class="xref" href="https://security.paloaltonetworks.com/CVE-2026-0300" title="" data-scope="external" data-format="html" data-type="" target="_blank">CVE-2026-0300</a></li></ul>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-322815</b></div></td><td class="entry relcol"><div class="p">(<tt class="ph tt">VM-Series firewalls on Microsoft Azure environments only</tt>) Fixed an issue where the firewall entered maintenance mode after enabling FIPS-CC mode and rebooted.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-322681</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the PDF Summary Reports were not generated correctly after upgrading to an affected release.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-322630</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where IKE gateways were not visible within Panorama Templates under <span class="ph uicontrol">Network Profiles</span> from a custom administrator role after upgrading to an affected PAN-OS release.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-320897</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the firewall did not detect evasions due to TCP checksum offloading not being enabled.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-318288</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where traffic initiated from Microsoft Azure to an on-premises firewall was not decrypted, which caused the firewall to drop the traffic. This occurred due to the firewall incorrectly identifying SPI values.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-318275</b></div></td><td class="entry relcol"><div class="p">(<tt class="ph tt">VM-Series firewalls only</tt>) Fixed an issue where the firewall became unresponsive and did not automatically reboot, which led to prolonged outages. With this fix, the Linux kernel configuration will trigger a system panic and reboot.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317772</b></div></td><td class="entry relcol"><div class="p">Added a fix to improve performance in lossy network conditions.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317583</b></div></td><td class="entry relcol"><div class="p">Fixed an issue with intermittent ICMP ping drops and packet loss in traffic flows between a hub and branch after upgrading to an affected PAN-OS release due to incorrect SD-WAN path monitor state.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317548</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where an IMA violation occurred when Panorama accessed GRUB during the installation process, which caused upgrades from PAN-OS 12.1.4 to PAN-OS 12.1.5 to fail.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317466</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where SIP sessions stopped progressing after the firewall received fragmented packets, fragmented at header field.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317215</b></div></td><td class="entry relcol"><div class="p">(<tt class="ph tt">VM-Series firewalls on ESXi with Intel E810 NICs using PCI passthrough</tt>) Fixed an issue where the <span class="ph systemoutput">brdagent</span> process became unresponsive during data port initialization, which resulted in system instability, interface outages, HA split-brain conditions, and unexpected reboots during failover.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317177</b></div></td><td class="entry relcol"><div class="p">Fixed an issue on firewalls in DHCP Client mode where, after upgrading to an affected release, the SNMP process unexpectedly restarted after a commit, which led to false interface flap notifications on SNMP managers.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-317068</b></div></td><td class="entry relcol"><div class="p">Fixed an issue on the Panorama web interface where you were able to enable IPv6 for IKE gateways and IPSec tunnels even when IPv6 WAN was disabled, which resulted in an invalid configuration. To utilize this fix, upgrade to the latest Panorama plugin.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-316937</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where GlobalProtect users intermittently received incorrect private IP addresses after connecting to a gateway behind a Network Load Balancer (NLB).</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-316740</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where, after upgrading to an affected release, HCE profiles exceeded the maximum character length when generated automatically, which caused subsequent commit operations to fail with a validation error. This occurred when HIP objects were associated with HIP profiles prior to the upgrade.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-316605</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where HIP redistribution to remote network nodes from external gateways resulted in a large amount of error messages in User-ID logs.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-315965</b></div></td><td class="entry relcol"><div class="p">Fixed an issue to address TCP proxy fast recovery behavior to follow RFC 5681.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-315912</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the Maximum Segment Size (MSS) rewrite functionality for packets ingressing through SD-WAN interfaces on firewalls was not optimized.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-315134</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where, after an upgrade, <span class="ph uicontrol">IoT Devices > Asset Inventory</span> did not display device data even though the system reported a total count of devices.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-315005</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where configured RIPv2 timer parameters were not applied when the profile was configured with custom update, expire, and delete values, and the system continued to use the default timer settings, which caused unexpected route removal and network disconnections.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-314823</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the management interface became unresponsive when attempting to untag an IP address via the web interface.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p">PAN-314365</div></td><td class="entry relcol"><div class="p">Fixed an issue where the <a class="term" href="#" title="" data-scope="" data-format="dita" data-type="" target="_self">logrcvr</a> process stopped responding for traffic containing multiple XFF headers when URL XFF header logging was enabled along with additional XFF header logging, which caused subsequent commits to fail.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-314319</b></div></td><td class="entry relcol"><div class="p">Added a CLI command to enable and disable AHO software offload optimization.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-314147</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where SSL traffic was dropped on SD-WAN DIA interfaces with member having different MTU.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-314020</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the firewall did not decapsulate GENEVE packets when DNS Security retransmitted a DNS query after receiving a verdict from the cloud.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-313623</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the <span class="ph systemoutput">/opt/pancfg/mgmt/ssl/private/</span> directory on Palo Alto Networks devices with TPM support became 100% utilized due to an accumulation of undeleted <span class="ph systemoutput">.pub_pem</span> files. This occurred because executing the <span class="ph systemoutput">show device-certificate status</span> CLI command initiated a process that generated these files but failed to remove them, which prevented the fetching of new device certificates.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-313606</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where Panorama pushed commits took longer than expected to complete without displaying an error message when committing due to slow cloud-app compilation.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-312514</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where correlation logs were not forwarded via syslog or email.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-312354</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where Captive Portal authentication redirects failed for HTTPS traffic when a user attempted to access internal HTTPS websites via URL, which led to <span class="ph uicontrol">ERR_CONNECTION_RESET</span> error messages in the browser with SSL decryption and CTD handshake inspection enabled.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-311938</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where autocommits failed after an upgrade due to configuration memory allocation issues and 100% policy rule cache usage when both DNS Rewrite and URL Custom Category Match were configured.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-311040</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the <a class="term" href="#" title="" data-scope="" data-format="dita" data-type="" target="_self">all_task</a> process stopped responding and caused the firewall to reboot unexpectedly.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-310851</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where firewalls experienced <span class="ph systemoutput">snmpd</span> log flooding with messages such as <span class="ph systemoutput">update_ifTable_utilization_rates(pan_interfacecache.c:1720): Last time is 0 for dedicated-ha2.</span>, which caused the <span class="ph systemoutput">snmpd</span> log to overflow and be cleared every five minutes. This occurred because the <span class="ph systemoutput">snmpd</span> process attempted to calculate interface utilization rates without first verifying if the interface had valid <span class="ph systemoutput">sysd</span> configuration data, as the code incorrectly assumed all interfaces in the MIB would possess valid <span class="ph systemoutput">sysd</span> data.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-308564</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where packets were dropped on SD-WAN interfaces when a proxy was enabled due to an MTU inconsistency where the firewall failed to rewrite the maximum segment size in SYN/ACK packets based on the SD-WAN virtual interface MTU.</div>
|
||||
<div class="p">Note: This fix does not apply when the traffic egress interface is SD-WAN Direct Internet Access (DIA) interface and proxy is enabled.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-308377</b></div></td><td class="entry relcol"><div class="p">(<tt class="ph tt">PA-7000 Series firewalls with an LFC in HA configurations only</tt>) Fixed an issue where the firewall reached 100% disk utilization due to the <a class="term" href="#" title="" data-scope="" data-format="dita" data-type="" target="_self">logrcvr</a> process repeatedly restarting and dumping core files due to a blocked hints processing thread, which caused a failover.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-304360</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the firewall did not redistribute its application routes to BGP peers. This occurred in multi-mesh deployments with the multi-cloud networking feature enabled.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-302855</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where multiple processes restarted which caused the firewall to become unstable when processing traffic.</div>
|
||||
</td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-302512</b></div></td><td class="entry relcol">
|
||||
<div class="p">(<tt class="ph tt">Log Collectors in HA configurations only</tt>) Fixed an issue where log collectors displayed a disconnected inter-log collector status.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-300615</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the <a class="term" href="#" title="" data-scope="" data-format="dita" data-type="" target="_self">pan_comm</a> process stopped after multiple content versions were installed and the memory limits were reached.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-296635</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the <a class="term" href="#" title="" data-scope="" data-format="dita" data-type="" target="_self">reportd</a> process on passive Panorama management servers leaked memory due to scheduled report handling from the Strata Logging Service (SLS). This memory leak occurred daily, consuming available memory until the process was restarted.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-295806</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where memory leaks on the <span class="ph systemoutput">configd</span> process occurred due to a hash insert operation failing during connection management and SSL connections.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-294998</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where the LogDB incorrectly reported that the database quota for <span class="ph systemoutput">extpcap</span> logs was reached.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-289757</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where policy rule imports were blocked when <span class="ph uicontrol">any</span> was in the source device column, which prevented the use of inbound policy rule recommendations. Additionally, when the source profile name was missing for inbound behaviors, a default policy rule name was not able to be generated.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-282335</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where firewalls in a cluster experienced approximately 50% packet loss on IPSec NATT tunnels when tunnel acceleration was enabled.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-273805</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where SAML authentication for GlobalProtect failed when the GlobalProtect portal was accessed externally on a non-standard port.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-273028</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where manual SCP exports from firewalls in FIPS mode were successful to SCP servers that were not FIPS-compliant. This occurred because the manual SCP process did not enforce FIPS security checks.</div></td></tr>
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
<tr class="row rowsep"><td class="entry"><div class="p"><b class="ph b">PAN-260661</b></div></td><td class="entry relcol"><div class="p">Fixed an issue where daily email reports generated from the custom report did not display the report details in PDF or CSV files.</div></td></tr>
|
||||
</tbody>
|
||||
|
||||
|
||||
</table>
|
||||
Reference in New Issue
Block a user