Files
firewallissues/reference/PAN-OS/addressed/11.1.1.html
T

243 lines
7.5 KiB
HTML

<table class="table colsep rowsep table-striped">
<!--cq:include script="../../common/tablestack.jsp" /-->
<colgroup>
<col style="width: 25%" />
<col style="width: 75%" />
</colgroup>
<thead class="thead">
<tr class="row rowsep">
<th class="entry">
<div class="p"><b class="ph b">Issue ID</b></div>
</th>
<th class="entry">
<div class="p"><b class="ph b">Description</b></div>
</th>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-239241</b></div>
</td>
<td class="entry relcol">
Extended the root certificate for WildFire appliances to December 31,
2032.
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-238792</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed the following device certificate issues:
<ul id="concept-id5_nkr_vzb_ul-vdr_dlv_5zb" class="ul">
<li class="li">
The firewall was unable to automatically renew the device
certificate-Fetching device certificates failed incorrectly with
the error message
<span class="ph systemoutput">OTP is not valid</span>.
</li>
<li class="li">
Firewalls disconnected from
<span class="ph">Strata Logging Service</span> after renewing the
device certificate.
</li>
<li class="li">
The device certificate was not correctly generated on the log
forwarding card (LFC).
</li>
<li class="li">
WildFire cloud logs did not log thermite certificate usage status.
</li>
</ul>
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-237935</b></div>
</td>
<td class="entry relcol">
<div class="p">
Extended the offline PAN-DB, Panorama, and WildFire certificates which
were previously set to expire on September 2, 2024.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-237876</b></div>
</td>
<td class="entry relcol">
Extended the firewall Panorama root CA certificate which was previously
set to expire on April 7th, 2024.
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-236605</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<a
class="term"
href="#"
title=""
data-scope=""
data-format="dita"
data-type=""
target="_self"
>configd</a
>
process stopped responding due to a deadlock related to
rule-hit-count.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-235385</b></div>
</td>
<td class="entry relcol">
<div class="p">Enhanced wifclient cloud connectivity redundancy.</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-234929</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where tabs in the
<span class="ph uicontrol">ACC</span> such as
<span class="ph uicontrol">Network Activity</span>
<span class="ph uicontrol">Threat Activity</span> and
<span class="ph uicontrol">Blocked Activity</span> did not display
data when you applied a <span class="ph uicontrol">Time</span> filter
of <span class="ph uicontrol">Last 15 Minutes</span>,
<span class="ph uicontrol">Last Hour</span>,
<span class="ph uicontrol">Last 6 Hours</span>, or
<span class="ph uicontrol">Last 12 Hours</span>, and the data that was
displayed with the
<span class="ph uicontrol">Last 24 Hours</span> filter was not
accurate. Reports that were run against summary logs also did not
display accurate results.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-233957</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">PA-5450 firewalls only</tt>) Fixed an issue where
the NAT private pool was not used properly when enabling slot 6 DPC.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-233191</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">PA-5450 firewalls only</tt>) Fixed an issue where
the Data Processing Card (DPC) restarted due to path monitor failure
after QSFP28 disconnected from the Network Processing Card (NPC).
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-232358</b></div>
</td>
<td class="entry relcol">
<div class="p">
(<tt class="ph tt">PA-5450 firewalls only</tt>) Fixed an issue where
the interface on QSFP28 ports did not go down when the Tx cable was
removed from the QSFP28 module.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-231771</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall issued /box/getserv/ requests with
PAN-OS 7.1.0 and did not take device certificates.
</div>
</td>
</tr>
<tr class="row rowsep">
<td class="entry">
<div class="p"><b class="ph b">PAN-231658</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where DNS resolution failed when interfaces were
configured as DHCP and a DNS server was provided via DHCP while also
statically configured with DNS servers.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-231194</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the firewall was unable to clear hints from the
disk.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-227568</b></div>
</td>
<td class="entry relcol">
<div class="p">
When a device certificate is installed, renewed, or removed, the
firewall will reconnect to the WildFire cloud to use the newest
certificate.
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p"><b class="ph b">PAN-215576</b></div>
</td>
<td class="entry relcol">
<div class="p">
Fixed an issue where the
<span class="ph synph">userID-Agent</span> and
<span class="ph systemoutput">TS-Agent</span> certificates were set to
expire on November 18, 2024. With this fix, the expiration date has
been extended to January 2032.
</div>
</td>
</tr>
</tbody>
</table>