Addressed Issues in OpenConfig Plugin 2.1.3-h2
Table of Contents
Expand all | Collapse all
-
-
-
-
- Features Introduced in Zero Touch Provisioning 2.0
- Known Issues in the Zero Touch Provisioning 2.0.4 Release
- Known Issues in the Zero Touch Provisioning 2.0.3 Release
- Known Issues in the Zero Touch Provisioning 2.0.2 Release
- Known Issues in the Zero Touch Provisioning 2.0.1 Release
- Known Issues in the Zero Touch Provisioning 2.0.0 Release
- Limitations
-
-
Addressed Issues in OpenConfig Plugin 2.1.3-h2
Addressed issues in the 2.1.3-h2 version of the OpenConfig plugin.
The following are addressed issues in the OpenConfig 2.1.3-h2 version of the plugin.
PLUG-10983
Fixed an issue where subscribing to the
components/component/subcomponents/subcomponent/state path
returned internal filesystem mount paths as subcomponent names instead of the
expected hardware component data, resulting in fewer valid entries than expected in
the gNMI subscribe response.
PLUG-23275
Fixed a security issue where authenticated gNMI users could read or delete files
outside of the permitted directories through the streaming telemetry file upload
handlers.
PLUG-23324
Fixed a security issue where authenticated gNMI users could execute arbitrary
PAN-OS® operational commands through the gNMI XML API handler without
command-level authorization.
PLUG-23370
Fixed an issue where PHP package dependencies were downloaded over plaintext HTTP
with TLS disabled during plugin builds. TLS is now enabled and repository URLs use
HTTPS.
PLUG-24750
Added OpenConfig leaf-path support for additional SNMP OIDs to achieve parity with
SNMP-based monitoring, including system uptime
(system/state/up-time), hardware component serial number
(components/component/state/serial-no), hardware component part
number (components/component/state/part-no), HA mode
(ha-groups/ha-group/state/ha-mode), LACP system ID
(lacp/interfaces/interface/members/member/state/system-id), and
BGP peer session state, admin status, remote AS, remote address, and local address.