Addressed Issues—ADEM Agents for Mobile Users
Focus
Focus
Autonomous DEM

Addressed Issues—ADEM Agents for Mobile Users

Table of Contents

Addressed Issues—ADEM Agents for Mobile Users

The following issues have been addressed in the Mobile User Autonomous Digital Experience Management (ADEM) agent.
Where Can I Use This?What Do I Need?
  • Prisma Access (Managed by Strata Cloud Manager)
  • Prisma Access (Managed by Panorama)
  • Prisma Access license
  • Autonomous DEM license

Autonomous DEM Agent 5.9 Addressed Issues

Issue IDDescription
DEM-10817In Insights > Application Experience > Application Domain page, the user experience scores appear lower than expected, even though devices are able to connect to all test domains.
DEM-12280Fixed an issue where ADEM metrics and applications failed to appear on the Insights > Activity Insights > Users > Experience page when Application Security was enabled for TCP-based tests on non web or web applications with Curl disabled.

Autonomous DEM Agent 5.8 Addressed Issues

Issue IDDescription
DEM-8217Fixed an issue where the ADEM agent did not follow the SCM auto-generated PAC file configuration when a forwarding profile was in use, causing all traffic to route through the proxy.

Autonomous DEM Agent 5.7 Addressed Issues

Issue IDDescription
  1. DEM-10079
Fixed an issue where not all devices associated with a GlobalProtect user were displayed on the Users page.
DEM-10630
Fixed an issue where the enable/disable configuration for RUM data collection and user/group exclusions in the RUM extension was not applied correctly, causing these settings to have no effect.

Autonomous DEM Agent 5.6 Addressed Issues

Issue IDDescription
DEM-10386Fixed an issue where the RUM extension failed to send data to the portal after switching tenants via GlobalProtect, requiring a browser relaunch or extension reload to resume normal operation.
DEM-10499Fixed an issue where the hostname appeared twice on a single tile on the User Experience > Data Source page after switching users between GlobalProtect and Prisma Access Browser sessions.
DEM-3129
Fixed an issue where custom applications deleted from Prisma Access continued to appear on the Insights > Application Experience page instead of being removed during the next sync.
PAB-281
Fixed an issue where On macOS, MAC address changes disrupt ADEM RUM functionality, potentially causing inconsistent monitoring results for users on these devices.
DEM-10410Fixed an issue where two hostnames were displayed for a single Windows endpoint machine on the Users page.
DEM-9086In app test configuration, under Advanced OptionsRemote Sites Test OptionsApplication Entities, App-IDs do not appear as options in the dropdown, even if the test has an application name configured and you have SD-WAN path policy rules on your ION devices configured for specific applications.

Autonomous DEM Agent 5.4 Addressed Issues

Issue IDDescription
DEM-7548
Fixed an issue where the ADEM agent installer failed on macOS 15.

Autonomous DEM Agent 5.3 Addressed Issues

Issue IDDescription
  1. DEM-7464
Fixed an issue where, on PC start-up, the Access Experience dashboard automatically displays.
DEM-7601
Fixed an issue where some of the components of the Access Experience dashboard were obscured on low-resolution screens.
DEM-7403Fixed an issue where the Access Experience dashboard does not open after an ADEM Agent with Self-Serve enabled upgrades to a later version and installs that version’s Self-Serve feature simultaneously.
DEM-7293Fixed an issue where, due to increased SSID restrictions in macOS 14.5, Access Experience and User Experience dashboards in Strata Cloud Manager showed the connected SSID as <redacted> instead of the actual SSID name without location services enabled. Now, you can enable location services for ADEM to accurately report SSID.
DEM-7287
Fixed an issue where, due to increased Wi-Fi restrictions in macOS 14.4.1, Access Experience did not detect Wi-Fi or internet connection status without location services enabled.
Now, if Access Experience detects that location services are disabled, it prompts you with the following banner to enable them so that it can accurately report Wi-Fi status.

Autonomous DEM Agent 5.1 Addressed Issues

June 2024

IDDescription
DEM-7456
Fixed an issue where, if the ADEM agent in Windows had been upgraded manually to a higher version that was not available on the portal, it would attempt to install the lower version.
DEM-7327
Fixed an issue where the Windows agent wasn't getting a custom appcast for a subtenant ID.
DEM-6869
Fixed an issue where Local Network Details, Public IP, WLAN, and OS information under the Device Details section of the UI did not change based on the experience shown on the graph. With this fix, Device Details change based on the experience shown on the graph.
To gain insight into the application experience of individual users, customers can navigate to InsightsActivity InsightsUsers. There, they can view the Application Experience Trend, allowing them to observe the experience over a selected time range depicted in a time series graph. Users can click on any point of the trend to view trends, path visualization, and session experience at that point in time in the Device Details section.

May 2024

IDDescription
DEM-7243Fixed an issue where ICMP sockets were not being cleaned up correctly.
DEM-6626Fixed an issue where some users see an inconsistent experience score graph in the ADEM UI.
DEM-6680Fixed an issue where the code incorrectly destroys the pbHashObject parameter before destroying the phHash handle, which causes crashes to occur randomly.
DEM-6824Fixed an issue where ADEM user data was missing under the Experience > Application experience trend in Strata Cloud Manager after the device recovers from sleep.

February 2024

IDDescription
DEM-6097The Curl version used by ADEM has been upgraded to version 8.4

January 2024

IDDescription
DEM-4416The creation method for ADEM user _panwdem on macOS has been altered to be more secure for MacOS 11 and greater. For the fix to work, either this must be the first ever installation of ADEM on the device or the previous _panwdem user created on the device needs to be deleted.
DEM-5967Fixed an issue where an ADEM agent crashed on machines where Windows operating system's WMI infrastructure was malfunctioning.
DEM-6087The design of ping result selection for polls has been modified based on the result timestamp to minimize potential missing ping results and gaps.

October 2023

IDDescription
DEM-5767When entering your login credentials in GlobalProtect, regardless of the username format you use, (for example, username, domain\username, or username@domain) ADEM will identify it as a single user and consume only one license.
DEM-5578ADEM license gets freed up within 24 hours for users who do not have any devices registered under their name.
DEM-5154
Fixed an issue where the SD-WAN tab was not visible on the Monitor > Branch Sites page when logged in with the ADEM Tier 1 Support role.

August 2023

IDDescription
DEM-2255The ADEM agents have better error handling now since common cases of failures are now better detected and monitored.
DEM-3963 (Mac OS)
DEM-3911
DEM-3996 (Windows)
The internet connection test can now be configured to test multiple targets instead of just the GlobalProtect gateway.
DEM-4420The ADEM agent will now import client certificates to the system stores to enable full native Schannel and TLS support.
DEM-4718 (Mac OS)
dEM-4719 (Windows)
In addition to the application name, the application test name is now displayed in the results of the application tests.
DEM-4726The amount of time the agent takes to wait to download the installation package for new ADEM versions is now configurable.
DEM-4786The “pre-logon” no longer displays as a username in the UI.
DEM-4866 (Mac OS)
DEM-4867 (Windows)
You can now explicitly configure the ADEM portal URL. This is primarily for FedRAMP environments.
DEM-5159The Self-Serve feature now has a separate on-demand installer. If self-service is enabled on the portal, self-service cab file will be auto downloaded and installed as part of DEM upgrade process. If disabled, the feature will be uninstalled.
DEM-5536Upgrading a subtenant that belongs to a region other than the region in which the tenant belongs, for example upgrading a US subtenant from Europe, results in an endless re-register loop.
DEM-1457When an endpoint is in a trusted network with a VPN tunnel established to an internal gateway using GlobalProtect 5.2.8 on Windows, the portal incorrectly displays the GlobalProtect status as Connected-Internal and the VPN status as Disabled.
DEM-2596Fixed an intermittent issue where the ADEM Settings page failed to load in large-scale deployments with 200K or more agents, particularly when multiple users accessed the Summary page simultaneously.
DEM-2717Fixed a React rendering issue where logging into ADEM as a Data Security Manager caused the page to fail to load, triggering a "Maximum update depth exceeded" infinite loop error.

March 2023

IDDescription
DEM-4630Fixed an issue where the Historical Synthetics tab was displayed on the User Details page and the Application Details page even when the Zoom application was not selected.

January 2023

IDDescription
ADI-16562
When logged in with ADEM Tier 1 Support role on Panorama, you now have access only to the ADEM dashboards. The Manage option is no longer visible.
DEM-3812
If you stop monitoring a user (disable the tests that are running on the user) for whom Self-Serve is already enabled, Self-Serve is now disabled immediately. Administrators do not need to manually disable Self-Serve for such users.
DEM-137
The license usage count that displays on SettingsLicense Details now correctly displays the unique users that are connected to the ADEM service.
DEM-191Fixed an issue where the ADEM portal displayed additional locations that were not configured or enabled in Panorama.
DEM-198Fixed an issue where IP address information for hops such as mobile user and service connection was not displayed in the topology view.
DEM-2048Fixed an issue where the Autonomous DEM (ADEM) agent failed to install during a fresh installation of GlobalProtect on M1 MacBook devices lacking Rosetta 2, despite the installer incorrectly reporting a successful installation. The ADEM agent now installs natively without requiring Rosetta 2.
DEM-2477
Fixed an issue where the Location Details page failed to load performance trends and path visualization tab data after an Application filter was applied.
DEM-253Fixed an issue where split-tunneled applications failed to perform a trace path or display a hop-by-hop detailed topology on the UserUser Details page, despite application and network performance telemetry being successfully collected.
DEM-4248Fixed an issue where, if web tests were disabled for an application test and the network performance probes for that test were failing, the score for these tests was displayed as null (grey tile) on the Prisma Access Locations page.
DEM-4349Fixed an issue where the Map View tab of the Prisma Access Locations page displayed edge locations such as Hungary and Slovakia as part of the Israel compute location even though Israel is now part of the me-west-1 location.

September 2022

IDDescription
DEM-2813
Results from traceroute tests that take more than 5 minutes to process are now visible in the UI for the polling interval.
DEM-2812
When you switch back to an ADEM enabled GP portal after upgrading your ADEM agent and then switching to an ADEM disabled GP portal, the upgraded ADEM agent gets reinstalled now.
DEM-2762
Navigating to the Users List page by clicking the link for a user on the Application details page, now retains the filter that you had applied in the Application details page.
DEM-2760
Any filter that is applied on a details page (for example, User details page), now displays the filtered data correctly after you navigate to another page (for example, the Summary page) from the left navigation menu and return to the details page.

August 2022

IDDescription
DEM-3301
The Device Group filters return the correct results for both Mobile Users and Remote Networks.
DEM-3270
The target application entity for an app test will now include the path attribute.
DEM-2983
The ADEM portal has been configured to omit displaying devices that have not connected to the ADEM server for the last 30 days.
DEM-2909
Monitored Mobile User Devices table now displays the complete data for all users regardless of the time range or and the number of users you select.
DEM-2741
When creating a new application test or modifying an existing test, the advance options saving headers are now displayed in the UI.
DEM-2228
The path to the Remote Network gets truncated if it does not fit in the tile. Hover over the name to display the full string.
DEM-779
Regardless of the number of destinations configured for an application test, the Applications Test Settings screen displays all of them in a legible format.
DEM-768
Resizing your browser window adjusts the column width of tables accordingly.

June 2022

IDDescription
DEM-3038
Application dashboard now promptly populates applications and experience scores in multi-tenant deployments.
DEM-3031
The Search function in ADEM has been improved to return more complete results.
DEM-2183
Modifying ADEM tests no longer results in a 5-minute data gap.