Add 10.2.0 addressed issues

This commit is contained in:
2026-03-20 09:50:13 -05:00
parent 658b07089d
commit e59b230db7
6 changed files with 116 additions and 2 deletions
@@ -0,0 +1,13 @@
---
type: Addressed
product: PAN-OS
version: 10.2.0-h1
---
## PAN-190311
```caveat
PA-220 and PA-220R firewalls and PA-800 Series firewalls only
```
Fixed an issue where management connectivity to the firewall was lost due to the expiration of the DHCP lease, which caused the IP configuration on the management port to be purged in PAN-OS 10.2.0. To upgrade, download PAN-OS 10.2.0 (no installation), then download and install PAN-OS 10.2.0-h1.
@@ -0,0 +1,46 @@
---
type: Addressed
product: PAN-OS
version: 10.2.0-h2
---
## PAN-238792
Fixed the following device certificate issues:
- The firewall was unable to automatically renew the device certificate-Fetching device certificates failed incorrectly with the error message OTP is not valid.
- Firewalls disconnected from Strata Logging Service after renewing the device certificate.
- The device certificate was not correctly generated on the log forwarding card (LFC).
- WildFire cloud logs did not log thermite certificate usage status.
## PAN-237876
Extended the firewall Panorama root CA certificate which was previously set to expire on April 7th, 2024.
## PAN-237871
```caveat
WF-500 appliances and PAN-DB private cloud deployments only
```
Fixed an issue where the root-cert was set to expire on December 31, 2023. With this fix, the expiration date has been extended.
## PAN-231771
Fixed an issue where the firewall issued /box/getserv/ requests with PAN-OS 7.1.0 and did not take device certificates.
## PAN-227568
When a device certificate is installed, renewed, or removed, the firewall will reconnect to the WildFire cloud to use the newest certificate.
## PAN-215576
Fixed an issue where the userID-Agent and TS-Agent certificates were set to expire on November 18, 2024. With this fix, the expiration date has been extended to January 2032.
## PAN-202450
Fixed an issue where the device-client-cert was set to expire on December 31, 2023. With this fix, the expiration date has been extended.
## PAN-198372
Fixed an issue where the root-cert was set to expire on December 31, 2023. With this fix, the expiration date has been extended.
@@ -0,0 +1,9 @@
---
type: Addressed
product: PAN-OS
version: 10.2.0-h3
---
## PAN-252214
A fix was made to address [CVE-2024-3400](https://security.paloaltonetworks.com/CVE-2024-3400).
@@ -0,0 +1,9 @@
---
type: Addressed
product: PAN-OS
version: 10.2.0-h4
---
## PAN-272809
A fix was made to address [CVE-2024-0012](https://security.paloaltonetworks.com/CVE-2024-0012) ([PAN-SA-2024-0015](https://security.paloaltonetworks.com/PAN-SA-2024-0015)) and [CVE-2024-9474](https://security.paloaltonetworks.com/CVE-2024-9474).
@@ -0,0 +1,29 @@
---
type: Addressed
product: PAN-OS
version: 10.2.0
---
## PAN-231823
A fix was made to address [CVE-2024-5916](https://security.paloaltonetworks.com/CVE-2024-5916).
## PAN-186143
Fixed an issue where no local changes could be made on a ZTP-enabled device after an upgrade to PAN-OS 10.1.x.
## PAN-182634
```caveat
PA-400 series firewalls only
```
Fixed an issue where the firewall detected a Power Supply Unit (PSU) failure for the opposite side when disconnecting a PSU from the device. This issue occurred when redundant PSUs were connected.
## PAN-178165
Fixed an issue where the CLI command set system setting ctd ctd-agent-assigned-cores 0 to change assigned cores for the ctd-agent failed.
## PAN-175950
Fixed an issue where IoT Security (without Strata Logging Service) onboarding failed.