276 lines
6.4 KiB
Markdown
276 lines
6.4 KiB
Markdown
---
|
|
type: Addressed
|
|
product: PAN-OS
|
|
version: 11.1.4-h9
|
|
---
|
|
|
|
## PAN-273215
|
|
|
|
Fixed an issue where a syntax error in the index generation script
|
|
caused a high management plane CPU load after upgrading.
|
|
|
|
## PAN-271912
|
|
|
|
Fixed an issue on Panorama where the *configd* process stopped
|
|
responding when filtering in the configuration audit window after
|
|
upgrading to PAN-OS 11.1.3.
|
|
|
|
## PAN-271613
|
|
|
|
Fixed an issue where configuration pushes from Panorama to the
|
|
firewall failed due to an OOXML commit error.
|
|
|
|
## PAN-271314
|
|
|
|
Fixed an issue where pushing changes to a prefix list used for BGP
|
|
from Panorama affected OSPF routes.
|
|
|
|
## PAN-270224
|
|
|
|
Fixed an issue where indices were not opened after a query.
|
|
|
|
## PAN-269956
|
|
|
|
Fixed an issue where the all_pktproc process stopped
|
|
responding, which caused internal path monitor failures.
|
|
|
|
## PAN-269899
|
|
|
|
Fixed an issue where the Panorama web interface was slower than
|
|
expected when querying for device tags.
|
|
|
|
## PAN-269673
|
|
|
|
Fixed an issue where ElasticSearch was not set up after an
|
|
upgrade.
|
|
|
|
## PAN-269000
|
|
|
|
Fixed an issue where the firewall stopped responding due to a NULL
|
|
pointer dereference when path monitoring failed.
|
|
|
|
## PAN-268972
|
|
|
|
Fixed an issue where Panorama was slower than expected when using a
|
|
high number of device group tags in a non-shared context.
|
|
|
|
## PAN-268501
|
|
|
|
Fixed an issue where the firewall was unable to generate a TSF file
|
|
due to a full root partition.
|
|
|
|
## PAN-266639
|
|
|
|
Fixed an issue where administrators were unable to edit or add
|
|
virtual router configurations when a filter was applied to the
|
|
viewer.
|
|
|
|
## PAN-266114
|
|
|
|
Fixed an issue where, when a new set of URL logs came in, the content
|
|
of the earlier URL and traffic logs were lost.
|
|
|
|
## PAN-265973
|
|
|
|
Fixed an issue where administrator sessions were logged out with an
|
|
ERR_CONNECTION_REFUSED error on the
|
|
browser.
|
|
|
|
## PAN-265742
|
|
|
|
Fixed an issue on the Panorama web interface where the
|
|
OK button on the GlobalProtect gateway
|
|
configuration dialog box was not clickable.
|
|
|
|
## PAN-265219
|
|
|
|
```caveat
|
|
VM-Series firewalls only
|
|
```
|
|
|
|
Fixed an issue where GRE traffic
|
|
did not work properly.
|
|
|
|
## PAN-264871
|
|
|
|
Fixed an issue on Panorama where the configd process
|
|
stopped responding when viewing IP addresses on dynamic address
|
|
groups with a large number of IP addresses.
|
|
|
|
## PAN-264249
|
|
|
|
Fixed an issue on the firewall where SNMP queries timed out when
|
|
using SNMP.
|
|
|
|
## PAN-263973
|
|
|
|
Fixed an issue where log collectors had a low incoming log rate.
|
|
|
|
## PAN-263287
|
|
|
|
The PAN-COMMON-MIB.my file was updated to support new object
|
|
identifiers (OID) to poll interface use via SNMP with table
|
|
identifiers.
|
|
|
|
## PAN-263208
|
|
|
|
```caveat
|
|
PA-5440 and PA-5445 firewalls only
|
|
```
|
|
|
|
Fixed an issue where
|
|
interrupts were generated at a certain packet rate, and dataplane
|
|
processes missed heartbeats, which caused the dataplane to go
|
|
down.
|
|
|
|
## PAN-263017
|
|
|
|
Fixed an issue where the firewall was unable to mount a disk
|
|
partition due to a corrupted filesystem.
|
|
|
|
## PAN-261485
|
|
|
|
Fixed an issue where the firewall dropped the Real Time Transport
|
|
Protocol (RTP) session for the second SIP call on Persistent-DIPP
|
|
connections when the source port of the client device was reset.
|
|
|
|
## PAN-260604
|
|
|
|
Fixed an issue where the firewall displayed inaccurate throughput
|
|
utilization stats in NetFlow analyzer tools.
|
|
|
|
## PAN-260512
|
|
|
|
Fixed an issue where accessing the IP address of the device address
|
|
group objects from the user interface caused the
|
|
configd process to stop responding.
|
|
|
|
## PAN-260461
|
|
|
|
Fixed an issue where traffic logs showed a non-zero destination port
|
|
number on ICMP echo sessions through the firewall.
|
|
|
|
## PAN-260417
|
|
|
|
Fixed an issue on Panorama where
|
|
UpdateLicDB was triggered every few
|
|
minutes when firewalls with PAYG licenses were onboarded.
|
|
|
|
## PAN-260235
|
|
|
|
Fixed an issue where the firewall sent Threat logs and URL logs to an
|
|
external syslog server without Security profile settings when
|
|
Enhanced Application Logging was enabled.
|
|
|
|
## PAN-259910
|
|
|
|
Fixed an issue where the firewall reported the same value over
|
|
consecutive SNMP polls when asynchronous mode was enabled.
|
|
|
|
## PAN-259881
|
|
|
|
Fixed an issue on Panorama where traffic log details were not
|
|
displayed under detailed log view.
|
|
|
|
## PAN-259802
|
|
|
|
```caveat
|
|
Panorama appliances in high availability (HA) clusters only
|
|
```
|
|
|
|
Fixed an issue where, after replacing a secondary
|
|
Panorama appliance in a Panorama HA cluster, the ElasticSearch
|
|
cluster was unable to establish SSL tunnels due to
|
|
SSLHandshakeException errors.
|
|
|
|
## PAN-259078
|
|
|
|
Fixed an issue where WildFire Analysis reports were not generated and
|
|
the following error message was displayed: Error 500:
|
|
Internal Server Error.
|
|
|
|
## PAN-258799
|
|
|
|
Fixed an issue where, when updating a Security Policy
|
|
Policy Optimizer, the web interface
|
|
stopped responding.
|
|
|
|
## PAN-257961
|
|
|
|
Fixed an issue on Panorama where Test Security Policy
|
|
Match failed when the From or
|
|
To zone fields were populated.
|
|
|
|
## PAN-255915
|
|
|
|
Fixed an issue where a memory leak in the sslmgr process
|
|
caused the firewall to restart.
|
|
|
|
## PAN-254904
|
|
|
|
Fixed an issue on Panorama where a core file was generated by
|
|
/usr/local/bin/logd during a restart.
|
|
|
|
## PAN-254577
|
|
|
|
Fixed an issue where a core file was created on the Log Forwarding
|
|
Card (LFC) due to a third-party software issue.
|
|
|
|
## PAN-253829
|
|
|
|
Fixed an issue where the CLI command show running
|
|
security-policy timed out when the Security
|
|
policy was large.
|
|
|
|
## PAN-252381
|
|
|
|
Fixed an issue where the Panorama web interface was slower than
|
|
expected when opening interfaces, virtual routers, and zones in a
|
|
template or template stack.
|
|
|
|
## PAN-250394
|
|
|
|
Fixed an issue where a large amount of group data caused
|
|
serialization errors and prevented synchronization.
|
|
|
|
## PAN-249581
|
|
|
|
Fixed an issue where stale BGP routes were advertised to peers even
|
|
when they were not present in the local RIB table.
|
|
|
|
## PAN-246699
|
|
|
|
Fixed an issue on Panorama where the Rule
|
|
Usage and Apps Seen under
|
|
Security policy rules stopped incrementing.
|
|
|
|
## PAN-246567
|
|
|
|
Fixed an issue where a firewall with a copper SFP transceiver
|
|
(PAN-SFP-CG) flapped during a commit.
|
|
|
|
## PAN-242331
|
|
|
|
Fixed an issue where Prisma Access remote network firewalls
|
|
intermittently created incorrect user-to-IP-address mappings.
|
|
|
|
## PAN-241004
|
|
|
|
Fixed an issue where DNS Proxy dropped client requests of the type
|
|
ns for a root domain.
|
|
|
|
## PAN-235808
|
|
|
|
```caveat
|
|
Panorama appliances in Log Collector mode only
|
|
```
|
|
|
|
Fixed an
|
|
issue where an unnamed core file was generated after a reboot.
|
|
|
|
## PAN-233197
|
|
|
|
Fixed an issue where the CLI command to set the FEC parameter for the
|
|
front panel ports was not supported on platforms supporting 25G and
|
|
100G.
|