Extended the offline PAN-DB, Panorama, and WildFire certificates
which were previously set to expire on September 2, 2024.
PAN-237876
Extended the firewall Panorama root CA certificate which was
previously set to expire on April 7th, 2024.
PAN-236605
Fixed an issue where the configd process stopped
responding due to a deadlock related to rule-hit-count.
PAN-234962
Fixed an issue on Panorama that caused commit operations to be slower
than expected.
PAN-231771
Fixed an issue where the firewall issued /box/getserv/ requests with
PAN-OS 7.1.0 and did not take device certificates.
PAN-227568
When a device certificate is installed, renewed, or removed, the
firewall will reconnect to the WildFire cloud to use the newest
certificate.
PAN-226418
A CLI command was added to address an issue where long-lived sessions
aged out even when there was ongoing traffic.
PAN-225920
Fixed an issue where duplicate predict sessions didn't release NAT
resources.
PAN-223852
Fixed an issue where all_pktproc stopped responding when
network packet broker or decryption broker chains failed.
PAN-223741
Fixed an issue where the mprelay process stopped
responding, which caused a slot restart when another slot
rebooted.
PAN-220712
Fixed an issue where retransmitted DNS requests made by the firewall
did not follow the Policy Based Forwarding (PBF) rule. With this
fix, both original and retransmitted DNS requests follow the PBF
rule.
PAN-219643
(VM-Series firewalls in Microsoft Azure environments only)
Fixed an issue where the dataplane interface status went down due to
a DPDK driver issue.
PAN-218555
Fixed an issue where the firewall did not receive dynamic address
updates pushed from Panorama during initial registration to
Panorama.
PAN-218404
Fixed an issue where ikemgr stopped responding due to
receiving CREATE_CHILD messages with a
malformed SA payload.
PAN-217484
Fixed an issue where the rasmgr process used 100% CPU
due to a maximum duration timer not being set, which caused the
GlobalProtect gateway to be unavailable.
PAN-217208
Fixed an issue where a memory leak related to the snmpd
process caused an out-of-memory (OOM) condition or caused the
process to restart when using SNMPv3.
PAN-216043
Fixed an issue where wifclient stopped responding due to shared
memory corruption.
PAN-215767
Fixed an issue where, after a high availability failover, IKE SA
negotiation failed with the error message
INVALID_SPI, which resulted in
temporary loss of traffic over some proxy IDs.
PAN-215576
Fixed an issue where the userID-Agent
and TS-Agent certificates were set to
expire on November 18, 2024. With this fix, the expiration date has
been extended to January 2032.