
34 • PAN-OS 6.1 Release Notes Palo Alto Networks
PAN-OS 6.1.2 Addressed Issues
70837
VM Information Sources with names containing a space character were not handled
correctly, and caused VM information retrieval from Amazon Web Services (AWS) to
fail. This issue has been fixed so that VM Information Sources configured with a space
character used in the Name field are handled correctly (
Device > VM Information
Sources
).
70820
Addressed an issue for PA-7050 firewalls, where Real-time Transport Protocol (RTP)
predict sessions remained in the Opened session state and did not become an active
session. This caused the RTP packets to not merge correctly with the predict session
and the packets were dropped if they did not specifically match to an allow policy.
70706
When configured in a high availability (HA) active/passive configuration, an M-100
appliance could not be accessed using the web interface or the command line interface
(CLI). In this case, a restart was required to gain access to the appliance. This issue has
been fixed so that an M-100 in an HA active/passive configuration can be accessed
correctly by an administrator using the web interface or CLI.
70383
When using the Panorama XML API to register an IP address to a Dynamic Address
Group on a targeted firewall, an error was displayed that the user was not authorized
to perform the operation. This issue has been resolved so that using the XML API to
register an IP address to a Dynamic Address Group on the firewall results in the
firewall correctly registering the IP address and updating the membership information
for the dynamic address group.
70303
When attempting to create a custom spyware signature, using the Browse option to
browse for and add threats did not correctly open the
Spyware Browser; instead,
selecting
Browse caused the Custom Spyware Signature dialog to close completely
(
Objects > Custom Objects > Spyware). This issue has been fixed so that selecting
Browse correctly opens the Spyware Browser, and you can then select threats from
the browser to be added as conditions for your custom signature.
70302
This fix addresses an issue where the autocommit process failed after upgrading a
PAN-OS 5000 Series firewall or a PA-7050 firewall to a PAN-OS 6.1 release.
70150
Resolved an issue where Simple Network Management Protocol (SNMP) traps were
not correctly sent to the SNMP trap destinations following a software upgrade. This
issue is fixed so that SNMP traps are generated and correctly sent to SNMP trap
destinations after performing an upgrade.
69934
Fixed an issue where an active File Transfer Protocol (FTP) connection failed when
enabled with Source Network Address Translation (NAT) using a dynamic IP pool.
This issue was due to the FTP control channel and the FTP data channel using
different source IP addresses and the following error was displayed for the client:
500
Illegal PORT command
.
69737
On platforms with multiple dataplanes, stale IPv6 neighbor entries were not removed
and replaced with new IPv6 neighbor entries when the IPv6 neighbor table threshold
was reached. This issue has been fixed so that stale IPv6 neighbor entries are correctly
removed when the table threshold is reached. Additionally, for both platforms with
multiple dataplanes and platforms with a single dataplane, once the table threshold of
70% is reached, a check is now made every 20 minutes to remove entries which have
been stale for more than 10 minutes (this check was previously performed every hour).
Issue Identifier Description
Komentarze do niniejszej Instrukcji