--- type: Addressed product: PAN-OS version: 9.1.18 --- ## PAN-242561 Fixed an issue where GlobalProtect tunnels disconnected shortly after being established when SSL was used as the transfer protocol. ## PAN-240688 Fixed an issue where LSVPN tunnels did not come up and did not switch tunnel monitoring up. ## PAN-234596 Fixed an issue on firewalls in active/passive high availability (HA) configurations where the passive firewall incorrectly became active after a reboot. ## PAN-221208 Fixed an issue where the tunnel monitor was unable to remain up when Zone Protection with Strict IP was enabled and NAT Traversal was applied. ## PAN-217465 Fixed an issue where the Panorama web interface became unresponsive and displayed the error message **504 Gateway Not Reachable**. ## PAN-212860 Fixed an issue where changes to the SD-WAN database did not remove the old entries. ## PAN-205255 Fixed a rare issue that caused the dataplane to restart unexpectedly. ## PAN-201269 Fixed an issue where commits failed with the error message IPv6 addresses are not allowed because IPv6-firewalling is disabled when Security policy rules had an address group with more than 1000 FQDN address objects. ## PAN-199214 Fixed an intermittent issue where downloading threat pcap via XML API failed with the following error message: /opt/pancfg/session/pan/user_tmp/XXXXX/YYYYY.pcap does not exist. ## PAN-196457 Fixed an issue where extraneous logs displayed in the Traffic log when Security policy rule settings were changed. ## PAN-195342 Fixed an issue on Panorama where, when you attempted to context switch from a managed firewall on PAN-OS 10.1.7 or an earlier release back to Panorama, the context switch failed with the following error message: Could not find start token '@start@. ## PAN-180948 Fixed an issue where an external dynamic list fetch failed with the error message Unable to fetch external dynamic list. Couldn't resolve host name. Using old copy for refresh. ## PAN-159508 Fixed an IPSec tunnel memory leak issue where IPSec tunnels failed during rekey.