243 lines
7.5 KiB
HTML
243 lines
7.5 KiB
HTML
<table class="table colsep rowsep table-striped">
|
|
<!--cq:include script="../../common/tablestack.jsp" /-->
|
|
|
|
<colgroup>
|
|
<col style="width: 25%" />
|
|
<col style="width: 75%" />
|
|
</colgroup>
|
|
<thead class="thead">
|
|
<tr class="row rowsep">
|
|
<th class="entry">
|
|
<div class="p"><b class="ph b">Issue ID</b></div>
|
|
</th>
|
|
<th class="entry">
|
|
<div class="p"><b class="ph b">Description</b></div>
|
|
</th>
|
|
</tr>
|
|
</thead>
|
|
|
|
<tbody class="tbody">
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-239241</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
Extended the root certificate for WildFire appliances to December 31,
|
|
2032.
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-238792</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed the following device certificate issues:
|
|
<ul id="concept-id5_nkr_vzb_ul-vdr_dlv_5zb" class="ul">
|
|
<li class="li">
|
|
The firewall was unable to automatically renew the device
|
|
certificate-Fetching device certificates failed incorrectly with
|
|
the error message
|
|
<span class="ph systemoutput">OTP is not valid</span>.
|
|
</li>
|
|
<li class="li">
|
|
Firewalls disconnected from
|
|
<span class="ph">Strata Logging Service</span> after renewing the
|
|
device certificate.
|
|
</li>
|
|
<li class="li">
|
|
The device certificate was not correctly generated on the log
|
|
forwarding card (LFC).
|
|
</li>
|
|
<li class="li">
|
|
WildFire cloud logs did not log thermite certificate usage status.
|
|
</li>
|
|
</ul>
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-237935</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Extended the offline PAN-DB, Panorama, and WildFire certificates which
|
|
were previously set to expire on September 2, 2024.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-237876</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
Extended the firewall Panorama root CA certificate which was previously
|
|
set to expire on April 7th, 2024.
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row rowsep">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-236605</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed an issue where the
|
|
<a
|
|
class="term"
|
|
href="#"
|
|
title=""
|
|
data-scope=""
|
|
data-format="dita"
|
|
data-type=""
|
|
target="_self"
|
|
>configd</a
|
|
>
|
|
process stopped responding due to a deadlock related to
|
|
rule-hit-count.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row rowsep">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-235385</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">Enhanced wifclient cloud connectivity redundancy.</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row rowsep">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-234929</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed an issue where tabs in the
|
|
<span class="ph uicontrol">ACC</span> such as
|
|
<span class="ph uicontrol">Network Activity</span>
|
|
<span class="ph uicontrol">Threat Activity</span> and
|
|
<span class="ph uicontrol">Blocked Activity</span> did not display
|
|
data when you applied a <span class="ph uicontrol">Time</span> filter
|
|
of <span class="ph uicontrol">Last 15 Minutes</span>,
|
|
<span class="ph uicontrol">Last Hour</span>,
|
|
<span class="ph uicontrol">Last 6 Hours</span>, or
|
|
<span class="ph uicontrol">Last 12 Hours</span>, and the data that was
|
|
displayed with the
|
|
<span class="ph uicontrol">Last 24 Hours</span> filter was not
|
|
accurate. Reports that were run against summary logs also did not
|
|
display accurate results.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-233957</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
(<tt class="ph tt">PA-5450 firewalls only</tt>) Fixed an issue where
|
|
the NAT private pool was not used properly when enabling slot 6 DPC.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-233191</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
(<tt class="ph tt">PA-5450 firewalls only</tt>) Fixed an issue where
|
|
the Data Processing Card (DPC) restarted due to path monitor failure
|
|
after QSFP28 disconnected from the Network Processing Card (NPC).
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-232358</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
(<tt class="ph tt">PA-5450 firewalls only</tt>) Fixed an issue where
|
|
the interface on QSFP28 ports did not go down when the Tx cable was
|
|
removed from the QSFP28 module.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-231771</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed an issue where the firewall issued /box/getserv/ requests with
|
|
PAN-OS 7.1.0 and did not take device certificates.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row rowsep">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-231658</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed an issue where DNS resolution failed when interfaces were
|
|
configured as DHCP and a DNS server was provided via DHCP while also
|
|
statically configured with DNS servers.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-231194</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed an issue where the firewall was unable to clear hints from the
|
|
disk.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-227568</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
When a device certificate is installed, renewed, or removed, the
|
|
firewall will reconnect to the WildFire cloud to use the newest
|
|
certificate.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="row">
|
|
<td class="entry">
|
|
<div class="p"><b class="ph b">PAN-215576</b></div>
|
|
</td>
|
|
<td class="entry relcol">
|
|
<div class="p">
|
|
Fixed an issue where the
|
|
<span class="ph synph">userID-Agent</span> and
|
|
<span class="ph systemoutput">TS-Agent</span> certificates were set to
|
|
expire on November 18, 2024. With this fix, the expiration date has
|
|
been extended to January 2032.
|
|
</div>
|
|
</td>
|
|
</tr>
|
|
</tbody>
|
|
</table>
|