<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>article Expedition 1.2.56 Hotfix Information in Expedition Release Notes</title>
    <link>https://live.paloaltonetworks.com/t5/expedition-release-notes/expedition-1-2-56-hotfix-information/ta-p/537407</link>
    <description>&lt;DIV class="lia-message-template-content-zone"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;FONT size="4"&gt;Version 1.2.56&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/STRONG&gt;&lt;FONT size="4"&gt;(&lt;/FONT&gt;&lt;FONT size="4"&gt;Date Apr 3, 2023)&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;H3 id="toc-hId-1484239880"&gt;&lt;STRONG&gt;&lt;FONT size="4"&gt;PACKAGE DOWNLOAD&lt;BR /&gt;&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;TABLE id="release" border="1" width="100%"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD height="31px"&gt;&amp;nbsp;&lt;/TD&gt;
&lt;TD height="31px"&gt;&lt;STRONG&gt;INFORMATION&lt;/STRONG&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="30px"&gt;
&lt;P&gt;&lt;FONT size="3"&gt;Link&lt;/FONT&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD height="30px"&gt;&lt;FONT size="3"&gt;&lt;A href="https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb" target="_blank" rel="nofollow noopener noreferrer"&gt;https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb&lt;/A&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="57px"&gt;
&lt;P&gt;&lt;FONT size="3"&gt;sha1sum&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD height="57px"&gt;
&lt;P&gt;4e684985e887d87fa3bbcc570004c9ef9f835aa6&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="30px"&gt;&lt;FONT size="3"&gt;apt update&lt;BR /&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD height="30px"&gt;&lt;FONT size="3"&gt;sudo apt-get update; sudo apt-get install expedition-beta&lt;BR /&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="81px"&gt;&lt;FONT size="3"&gt;manual update&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD height="81px"&gt;&lt;FONT size="3"&gt;cd /tmp;&lt;BR /&gt;wget &amp;nbsp;&lt;A href="https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb" target="_blank" rel="nofollow noopener noreferrer"&gt;https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb&lt;/A&gt;;&lt;BR /&gt;sudo dpkg -i expedition_1.2.56.all.deb;&lt;BR /&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;H2 id="toc-hId--1067917081"&gt;&lt;STRONG&gt;&lt;FONT size="4"&gt;CHANGELOG&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H2&gt;
&lt;H4 id="toc-hId-921366204"&gt;Fixing below Bugs:&lt;/H4&gt;
&lt;P&gt;&lt;STRONG&gt;GENERAL:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;[MT-2598] - Autozone feature was creating duplicate NAT rules in case resulting destination to zone contains more than 1 member. Expedition was not checking if the required clone NAT rules was already created on the project. &lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;[MT-2602] - Installer - Remove warnings when unpacking the installer file.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;FORTINET:&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;[MT-2588] - Fortinet - NAT and VIP rules conversion issues:&lt;/P&gt;
&lt;P&gt;1) NAT with multi services. Expedition is now creating (not repeated) service_groups with all services defined and adding a log warning message.&lt;BR /&gt;2) Converting VIP to: U-Turn and bidirectional static NAT. Note: SNAT and DNAT rules will be created disabled, so user can delete them after checking it. &lt;BR /&gt;3) NAT getting and reading more than 1 TP Source.&lt;BR /&gt;4) Removing PHP warnings found during execution on /tmp/error file (not defined variables, casting issues, ...).&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;CISCO:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;[MT-2595] - CISCO - Avoid creating a zone without a name due to the cisco interface is not declaring any name (command no nameif)&lt;/LI&gt;
&lt;LI&gt;[MT-2597] - CISCO - NAT policy. Missing to create an inbound nat rule when ACL is " nat (any,any) source static X X' destination static Y Y' "&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;CHECKPOINT R80+:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;[MT-2599] - Checkpoint - Below interfaces issues when a policy contains lots of firewalls/gateways:&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;1) There was no option to tell Expedition which FW interfaces it should use, instead Expedition is getting all defined FW on the policy: Workaround: Created a script that given the export config and a list of Firewalls, it generates a new export config maintaining only the required firewalls (OS/scripts/checkpoint_r80_util_remove_gateways.php).&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;2) When reading duplicated interfaces by name but in different FW/gateway Expedition was only getting the last address. Currently we are getting all them.&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;[MT-2600] - Checkpoint - Sec rules defined on sub-policies with users were not exported properly.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;</description>
    <pubDate>Mon, 03 Apr 2023 09:16:17 GMT</pubDate>
    <dc:creator>dpuigdomenec</dc:creator>
    <dc:date>2023-04-03T09:16:17Z</dc:date>
    <item>
      <title>Expedition 1.2.56 Hotfix Information</title>
      <link>https://live.paloaltonetworks.com/t5/expedition-release-notes/expedition-1-2-56-hotfix-information/ta-p/537407</link>
      <description>&lt;DIV class="lia-message-template-content-zone"&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;FONT size="4"&gt;Version 1.2.56&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/STRONG&gt;&lt;FONT size="4"&gt;(&lt;/FONT&gt;&lt;FONT size="4"&gt;Date Apr 3, 2023)&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;H3 id="toc-hId-1484239880"&gt;&lt;STRONG&gt;&lt;FONT size="4"&gt;PACKAGE DOWNLOAD&lt;BR /&gt;&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H3&gt;
&lt;TABLE id="release" border="1" width="100%"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD height="31px"&gt;&amp;nbsp;&lt;/TD&gt;
&lt;TD height="31px"&gt;&lt;STRONG&gt;INFORMATION&lt;/STRONG&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="30px"&gt;
&lt;P&gt;&lt;FONT size="3"&gt;Link&lt;/FONT&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD height="30px"&gt;&lt;FONT size="3"&gt;&lt;A href="https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb" target="_blank" rel="nofollow noopener noreferrer"&gt;https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb&lt;/A&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="57px"&gt;
&lt;P&gt;&lt;FONT size="3"&gt;sha1sum&lt;BR /&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD height="57px"&gt;
&lt;P&gt;4e684985e887d87fa3bbcc570004c9ef9f835aa6&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="30px"&gt;&lt;FONT size="3"&gt;apt update&lt;BR /&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD height="30px"&gt;&lt;FONT size="3"&gt;sudo apt-get update; sudo apt-get install expedition-beta&lt;BR /&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD height="81px"&gt;&lt;FONT size="3"&gt;manual update&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD height="81px"&gt;&lt;FONT size="3"&gt;cd /tmp;&lt;BR /&gt;wget &amp;nbsp;&lt;A href="https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb" target="_blank" rel="nofollow noopener noreferrer"&gt;https://conversionupdates.paloaltonetworks.com/expedition-updates/expedition_1.2.56.all.deb&lt;/A&gt;;&lt;BR /&gt;sudo dpkg -i expedition_1.2.56.all.deb;&lt;BR /&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;H2 id="toc-hId--1067917081"&gt;&lt;STRONG&gt;&lt;FONT size="4"&gt;CHANGELOG&lt;/FONT&gt;&lt;/STRONG&gt;&lt;/H2&gt;
&lt;H4 id="toc-hId-921366204"&gt;Fixing below Bugs:&lt;/H4&gt;
&lt;P&gt;&lt;STRONG&gt;GENERAL:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;[MT-2598] - Autozone feature was creating duplicate NAT rules in case resulting destination to zone contains more than 1 member. Expedition was not checking if the required clone NAT rules was already created on the project. &lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;[MT-2602] - Installer - Remove warnings when unpacking the installer file.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;FORTINET:&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;[MT-2588] - Fortinet - NAT and VIP rules conversion issues:&lt;/P&gt;
&lt;P&gt;1) NAT with multi services. Expedition is now creating (not repeated) service_groups with all services defined and adding a log warning message.&lt;BR /&gt;2) Converting VIP to: U-Turn and bidirectional static NAT. Note: SNAT and DNAT rules will be created disabled, so user can delete them after checking it. &lt;BR /&gt;3) NAT getting and reading more than 1 TP Source.&lt;BR /&gt;4) Removing PHP warnings found during execution on /tmp/error file (not defined variables, casting issues, ...).&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;CISCO:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;[MT-2595] - CISCO - Avoid creating a zone without a name due to the cisco interface is not declaring any name (command no nameif)&lt;/LI&gt;
&lt;LI&gt;[MT-2597] - CISCO - NAT policy. Missing to create an inbound nat rule when ACL is " nat (any,any) source static X X' destination static Y Y' "&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;CHECKPOINT R80+:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;[MT-2599] - Checkpoint - Below interfaces issues when a policy contains lots of firewalls/gateways:&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;1) There was no option to tell Expedition which FW interfaces it should use, instead Expedition is getting all defined FW on the policy: Workaround: Created a script that given the export config and a list of Firewalls, it generates a new export config maintaining only the required firewalls (OS/scripts/checkpoint_r80_util_remove_gateways.php).&lt;/P&gt;
&lt;P class="lia-indent-padding-left-30px"&gt;2) When reading duplicated interfaces by name but in different FW/gateway Expedition was only getting the last address. Currently we are getting all them.&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;[MT-2600] - Checkpoint - Sec rules defined on sub-policies with users were not exported properly.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;</description>
      <pubDate>Mon, 03 Apr 2023 09:16:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/expedition-release-notes/expedition-1-2-56-hotfix-information/ta-p/537407</guid>
      <dc:creator>dpuigdomenec</dc:creator>
      <dc:date>2023-04-03T09:16:17Z</dc:date>
    </item>
  </channel>
</rss>

