--- type: Addressed product: PAN-OS version: 11.2.4-h11 --- ## PAN-291499 ```caveat VM-Series firewalls on Amazon Web Services (AWS) environments only ``` Fixed an issue where newly deployed firewalls were unable to connect to the Palo Alto Networks Software License Server (SLS) until after a reboot, license fetch, or management server restart. ## PAN-290803 ```caveat VM-Series firewalls on Microsoft Azure environments only ``` Fixed an issue where firewall failed to bootstrap with a custom image, and VM-Series plugin information was not displayed in the system information. ## PAN-290241 Fixed an issue where the useridd process became unresponsive, which caused User ID CLI commands to time out. ## PAN-288939 Fixed an issue where the logrcvr process stopped responding due to an invalid SSL context being used for socket communication, which caused commits to fail. ## PAN-287688 Fixed an issue where the firewall failed to connect to the Palo Alto Networks update server when using a customized service route with the source interface as **MGT**. ## PAN-279901 An issue was fixed where the firewall dropped fragmented TLS ClientHello packets, which blocked access to certain websites. This occurred because the packets arrived truncated, in varying sizes and orders, and the firewall's heuristics failed to handle them correctly. To enable this fix, run: debug dataplane set ssl-decrypt accumulate-client-hello disjoined yes ## PAN-268680 Fixed an issue where the configd process stopped responding when a configuration merge operation changed. ## PAN-268522 Fixed an issue where the firewall failed to connect to the update server with a customized service route when the source interface was set to **MGT** and the source address was set as IPv4. ## PAN-255914 ```caveat VM-Series firewalls on Amazon Web Services (AWS) environments only ``` Fixed an issue where a newly bootstrapped firewall required a management server restart, relicensing, or license push from Panorama to invoke the device certificate. ## PAN-241230 Fixed an issue where the SNMP get request status value for Panorama connections was incorrect.