PAN-OS 11.2.4-h11 Addressed Issues
Focus
Focus

PAN-OS 11.2.4-h11 Addressed Issues

Table of Contents

PAN-OS 11.2.4-h11 Addressed Issues

PAN-OS® 11.2.4-h11 addressed issues.
Issue ID
Description
PAN-291499
(VM-Series firewalls on Amazon Web Services (AWS) environments only) Fixed an issue where newly deployed firewalls were unable to connect to the Palo Alto Networks Software License Server (SLS) until after a reboot, license fetch, or management server restart.
PAN-290803
(VM-Series firewalls on Microsoft Azure environments only) Fixed an issue where firewall failed to bootstrap with a custom image, and VM-Series plugin information was not displayed in the system information.
PAN-290241
Fixed an issue where the useridd process became unresponsive, which caused User ID CLI commands to time out.
PAN-288939
Fixed an issue where the logrcvr process stopped responding due to an invalid SSL context being used for socket communication, which caused commits to fail.
PAN-287688
Fixed an issue where the firewall failed to connect to the Palo Alto Networks update server when using a customized service route with the source interface as MGT.
PAN-279901
An issue was fixed where the firewall dropped fragmented TLS ClientHello packets, which blocked access to certain websites. This occurred because the packets arrived truncated, in varying sizes and orders, and the firewall's heuristics failed to handle them correctly.
To enable this fix, run: debug dataplane set ssl-decrypt accumulate-client-hello disjoined yes
PAN-268680
Fixed an issue where the configd process stopped responding when a configuration merge operation changed.
PAN-268522
Fixed an issue where the firewall failed to connect to the update server with a customized service route when the source interface was set to MGT and the source address was set as IPv4.
PAN-255914
(VM-Series firewalls on Amazon Web Services (AWS) environments only) Fixed an issue where a newly bootstrapped firewall required a management server restart, relicensing, or license push from Panorama to invoke the device certificate.
PAN-241230
Fixed an issue where the SNMP get request status value for Panorama connections was incorrect.