--- type: Addressed product: PAN-OS version: 11.1.4-h9 --- ## PAN-273215 Fixed an issue where a syntax error in the index generation script caused a high management plane CPU load after upgrading. ## PAN-271912 Fixed an issue on Panorama where the *configd* process stopped responding when filtering in the configuration audit window after upgrading to PAN-OS 11.1.3. ## PAN-271613 Fixed an issue where configuration pushes from Panorama to the firewall failed due to an OOXML commit error. ## PAN-271314 Fixed an issue where pushing changes to a prefix list used for BGP from Panorama affected OSPF routes. ## PAN-270224 Fixed an issue where indices were not opened after a query. ## PAN-269956 Fixed an issue where the all_pktproc process stopped responding, which caused internal path monitor failures. ## PAN-269899 Fixed an issue where the Panorama web interface was slower than expected when querying for device tags. ## PAN-269673 Fixed an issue where ElasticSearch was not set up after an upgrade. ## PAN-269000 Fixed an issue where the firewall stopped responding due to a NULL pointer dereference when path monitoring failed. ## PAN-268972 Fixed an issue where Panorama was slower than expected when using a high number of device group tags in a non-shared context. ## PAN-268501 Fixed an issue where the firewall was unable to generate a TSF file due to a full root partition. ## PAN-266639 Fixed an issue where administrators were unable to edit or add virtual router configurations when a filter was applied to the viewer. ## PAN-266114 Fixed an issue where, when a new set of URL logs came in, the content of the earlier URL and traffic logs were lost. ## PAN-265973 Fixed an issue where administrator sessions were logged out with an ERR_CONNECTION_REFUSED error on the browser. ## PAN-265742 Fixed an issue on the Panorama web interface where the OK button on the GlobalProtect gateway configuration dialog box was not clickable. ## PAN-265219 ```caveat VM-Series firewalls only ``` Fixed an issue where GRE traffic did not work properly. ## PAN-264871 Fixed an issue on Panorama where the configd process stopped responding when viewing IP addresses on dynamic address groups with a large number of IP addresses. ## PAN-264249 Fixed an issue on the firewall where SNMP queries timed out when using SNMP. ## PAN-263973 Fixed an issue where log collectors had a low incoming log rate. ## PAN-263287 The PAN-COMMON-MIB.my file was updated to support new object identifiers (OID) to poll interface use via SNMP with table identifiers. ## PAN-263208 ```caveat PA-5440 and PA-5445 firewalls only ``` Fixed an issue where interrupts were generated at a certain packet rate, and dataplane processes missed heartbeats, which caused the dataplane to go down. ## PAN-263017 Fixed an issue where the firewall was unable to mount a disk partition due to a corrupted filesystem. ## PAN-261485 Fixed an issue where the firewall dropped the Real Time Transport Protocol (RTP) session for the second SIP call on Persistent-DIPP connections when the source port of the client device was reset. ## PAN-260604 Fixed an issue where the firewall displayed inaccurate throughput utilization stats in NetFlow analyzer tools. ## PAN-260512 Fixed an issue where accessing the IP address of the device address group objects from the user interface caused the configd process to stop responding. ## PAN-260461 Fixed an issue where traffic logs showed a non-zero destination port number on ICMP echo sessions through the firewall. ## PAN-260417 Fixed an issue on Panorama where UpdateLicDB was triggered every few minutes when firewalls with PAYG licenses were onboarded. ## PAN-260235 Fixed an issue where the firewall sent Threat logs and URL logs to an external syslog server without Security profile settings when Enhanced Application Logging was enabled. ## PAN-259910 Fixed an issue where the firewall reported the same value over consecutive SNMP polls when asynchronous mode was enabled. ## PAN-259881 Fixed an issue on Panorama where traffic log details were not displayed under detailed log view. ## PAN-259802 ```caveat Panorama appliances in high availability (HA) clusters only ``` Fixed an issue where, after replacing a secondary Panorama appliance in a Panorama HA cluster, the ElasticSearch cluster was unable to establish SSL tunnels due to SSLHandshakeException errors. ## PAN-259078 Fixed an issue where WildFire Analysis reports were not generated and the following error message was displayed: Error 500: Internal Server Error. ## PAN-258799 Fixed an issue where, when updating a Security Policy Policy Optimizer, the web interface stopped responding. ## PAN-257961 Fixed an issue on Panorama where Test Security Policy Match failed when the From or To zone fields were populated. ## PAN-255915 Fixed an issue where a memory leak in the sslmgr process caused the firewall to restart. ## PAN-254904 Fixed an issue on Panorama where a core file was generated by /usr/local/bin/logd during a restart. ## PAN-254577 Fixed an issue where a core file was created on the Log Forwarding Card (LFC) due to a third-party software issue. ## PAN-253829 Fixed an issue where the CLI command show running security-policy timed out when the Security policy was large. ## PAN-252381 Fixed an issue where the Panorama web interface was slower than expected when opening interfaces, virtual routers, and zones in a template or template stack. ## PAN-250394 Fixed an issue where a large amount of group data caused serialization errors and prevented synchronization. ## PAN-249581 Fixed an issue where stale BGP routes were advertised to peers even when they were not present in the local RIB table. ## PAN-246699 Fixed an issue on Panorama where the Rule Usage and Apps Seen under Security policy rules stopped incrementing. ## PAN-246567 Fixed an issue where a firewall with a copper SFP transceiver (PAN-SFP-CG) flapped during a commit. ## PAN-242331 Fixed an issue where Prisma Access remote network firewalls intermittently created incorrect user-to-IP-address mappings. ## PAN-241004 Fixed an issue where DNS Proxy dropped client requests of the type ns for a root domain. ## PAN-235808 ```caveat Panorama appliances in Log Collector mode only ``` Fixed an issue where an unnamed core file was generated after a reboot. ## PAN-233197 Fixed an issue where the CLI command to set the FEC parameter for the front panel ports was not supported on platforms supporting 25G and 100G.