
30 • PAN-OS 6.1 Release Notes Palo Alto Networks
PAN-OS 6.1.3 Addressed Issues
67709
Fixed an issue where a context switch over to a firewall in Panorama followed by a
response page import attempt (
Device > Response Pages) resulted in a failed import
and displayed a misleading
Session timed out error. With this fix, response page
import requests after a context switch in Panorama are successful.
67523
Fixed an issue where the second pair of Aggregate Ethernet (AE) interface ports did
not stay down when both ports on the first AE interface went down. This issue
occurred on a virtual wire (vwire) with two AE interfaces that had
link-state-pass-through enabled and where both ports on one AE interface went down.
With this fix, when both ports on one AE interface go down, the second AE interface
ports go down and remain in powered down state until the first AE link recovers.
67515
Fixed an issue where clicking the OK and Cancel buttons did not result in the
appropriate action when responding to an error message received after attempting to
create an address object with the same name as an existing address object (
Objects >
Addresses
). With this fix, clicking the OK or Cancel button in response to the error
message works as expected; clicking
OK allows the user to continue the process and
choose a different name while clicking
Cancel exits the address object creation process.
67029
Fixed an issue where a large number of ifInErrors incorrectly warned of hardware
issues after an upgrade to PAN-OS 6.0 or PAN-OS 6.1 release versions. Received
counters now correctly differentiate between errors to avoid misleading warnings
about hardware.
66113
Fixed an issue where adding a large number of groups and users to the allow list in the
authentication profile resulted in longer than expected commit times. With this fix, the
time it takes to commit changes to the configuration is reasonable even when an allow
list contains a large number of groups and users.
65553
The option to Highlight Unused Rules did not work as expected for NAT policies.
The expected behavior is for rules that are not being matched to traffic to show as
highlighted; in this case, a rule that was not being matched to any traffic was not
displayed as highlighted. This has been fixed so that NAT rules that do no match to
any traffic are correctly shown as highlighted (
Policies > NAT).
64887
Fixed an issue on a PA-7050 firewall where some traffic was dropped after a
configuration commit that included a change to the interface configuration. With this
fix, the firewall updates current available memory as expected when changes to the
interface configuration are committed. Without this fix, you can work around the issue
by committing a security policy change following any commit that includes changes to
the interface configuration, which prompts the firewall to update current available
memory settings.
62375
The GoDaddy root certificate authority (CA) was missing from the list of trusted
certificate authorities. When SSL decryption was configured, sites using the GoDaddy
root certificate authority were displayed as not trusted. With this fix, the GoDaddy
Root Certificate Authority - G2 is included in the list of trusted CAs.
Issue Identifier Description
Comentarios a estos manuales