<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Thinking of upgrading to 4.1.0 in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31112#M22753</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you done the upgrade yet? Any issues? We're about to do the exact same upgrade (4.0.5 -&amp;gt; 4.1.2 on a 2050 active/passive cluster).&lt;/P&gt;&lt;P&gt;We don't have any active VPN users outside of the IT department so I'm not too worried about the changes to the SSL/GP portal.&lt;/P&gt;&lt;P&gt;We do have IPSec VPNs though that I don't want to fail.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 23 Jan 2012 14:36:27 GMT</pubDate>
    <dc:creator>pkaren</dc:creator>
    <dc:date>2012-01-23T14:36:27Z</dc:date>
    <item>
      <title>Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31108#M22749</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We have two 2050's in an active/passive cluster running 4.0.5.&amp;nbsp; We are looking to upgrade to 4.1.0.&amp;nbsp; Had anyone had any negative experience with this version - particularly related to the SSL-VPN changes or User-ID functionality?&amp;nbsp; I've heard a few things that have made me wary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Jan 2012 17:36:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31108#M22749</guid>
      <dc:creator>bvest</dc:creator>
      <dc:date>2012-01-03T17:36:13Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31109#M22750</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are some behavior changes in 4.1.x with regards to user-id and SSL VPN. In particular, 4.1.x introduces a new User-Id agent that combines the former AD Pan Agent and LDAP agent into one. Also SSL VPN changes in that 4.1.x no longer uses NetConnect client but instead uses Global Protect client. Functionally they should perform same function but there are changes in how you configure as GP can separate the SSL portal and GP gateway whereas NetConnect used same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;These are just two of the new features within 4.1.x. There are many others. I would recommend reviewing 4.1.1 release notes thoroughly before considering upgrade to 4.1.x. But in general if you do not need any of the new features, then upgrading to latest within 4.0.x release is generally safe and recommended. Currently 4.0.8 is latest version.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Richard&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jan 2012 06:47:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31109#M22750</guid>
      <dc:creator>Retired Member</dc:creator>
      <dc:date>2012-01-05T06:47:01Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31110#M22751</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We deployed a new firewall with 4.1.1 in order avoid the VPN client switch, among other reasons. I obviously can't speak to upgrade experience, but the software basically works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have had intermittent problems with rules requiring Active Directory group membership -- access fails, show user ip-user-mapping ip (address) shows user not a member of any group, do a policy commit with no related changes, and then all of a sudden access works and "show user" displays correct information.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PAN only documented how to get userid agent working on Windows 2008 last week.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A 4.1.1-h1 hotfix exists with some critical fixes. But I've been unable to find out what they are. One support tech says I can read the release notes in the portal, but they're not there.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If this is a particularly good time in your business cycle to make the change, it won't blow up, but you might want to wait a month for 4.1.2.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 06 Jan 2012 17:47:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31110#M22751</guid>
      <dc:creator>rgraves</dc:creator>
      <dc:date>2012-01-06T17:47:49Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31111#M22752</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the advice, everyone!&amp;nbsp; I see 4.1.2 was just released so I'll be doing that this weekend.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 18 Jan 2012 20:35:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31111#M22752</guid>
      <dc:creator>bvest</dc:creator>
      <dc:date>2012-01-18T20:35:23Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31112#M22753</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you done the upgrade yet? Any issues? We're about to do the exact same upgrade (4.0.5 -&amp;gt; 4.1.2 on a 2050 active/passive cluster).&lt;/P&gt;&lt;P&gt;We don't have any active VPN users outside of the IT department so I'm not too worried about the changes to the SSL/GP portal.&lt;/P&gt;&lt;P&gt;We do have IPSec VPNs though that I don't want to fail.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jan 2012 14:36:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31112#M22753</guid>
      <dc:creator>pkaren</dc:creator>
      <dc:date>2012-01-23T14:36:27Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31113#M22754</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I found troubles with PANOS&amp;nbsp; 4.1.1 and 4.1.2 in Global Protect Gateway with 200 and 2000 series (unable to commit due to error in useridd module). Also some minor difficulties with Active Directory browse user into policies tab.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The other stuffs look great&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 24 Jan 2012 22:04:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31113#M22754</guid>
      <dc:creator>NGS_SOC</dc:creator>
      <dc:date>2012-01-24T22:04:18Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31114#M22755</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Wait for 4.1.3 ... I have 7 tickets open for 7 different (and many impacting) problems currently ....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jan 2012 15:10:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31114#M22755</guid>
      <dc:creator>essnet</dc:creator>
      <dc:date>2012-01-30T15:10:41Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31115#M22756</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Could you name two or three bugs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a 4.1.1-&amp;gt;4.1.2 update scheduled next weekend, but it could be aborted.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If they're regressions from prior to 4.1.0, we're already living with them, but any post-4.1.1 regression would be of interest.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jan 2012 15:21:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31115#M22756</guid>
      <dc:creator>rgraves</dc:creator>
      <dc:date>2012-01-30T15:21:13Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31116#M22757</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;essnet, could you share what those issues are please?&amp;nbsp;&amp;nbsp; I am deploying a brand new install of a Palo Alto 2050 HA pair and am curious what issues you have found with 4.1.2. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jan 2012 15:21:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31116#M22757</guid>
      <dc:creator>EdwinD</dc:creator>
      <dc:date>2012-01-30T15:21:46Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31117#M22758</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well, I did it this weekend and didn't encounter any issues, although I wish they had just stuck with NetConnect; it worked great and GlobalProtect seems a bit on the twitchy side.&amp;nbsp; So far so good.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any way to actually close GlobalProtect?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Jan 2012 16:01:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31117#M22758</guid>
      <dc:creator>bvest</dc:creator>
      <dc:date>2012-01-30T16:01:59Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31118#M22759</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We went to 4.1.2 on our 2050 cluster a week ago. The only issue we've found is a misclassification of skype traffic for bittorrent. And since the timeouts for bittorrent seems to be higher than for skype, the number of open udp sessions in the session table has increased by a factor 20 or so.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jan 2012 08:16:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31118#M22759</guid>
      <dc:creator>pkaren</dc:creator>
      <dc:date>2012-01-31T08:16:47Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31119#M22760</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I found a strange issue with my PA-200 and (probably) our customers's PA-2020 using 4.1.2. When configuring Global Protect Gateway in WAN interface with a QoS rule I receive a commit error due to useridd module failed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After a case support I removed the QoS rule and the commit was succesfull. Same configuration on a PA-500 works with QoS rule.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another unsolved issue is related to D user browse in policy tab, only a subpart of the total users are shown in the GUI. By the way this is a minor problem becous I can manually enter the domain\name in every policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Version 4.1 is much faster the the previous ones and I'm confident that resolved this (and other) bugs the operating system can be used widely without concern.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 31 Jan 2012 10:15:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31119#M22760</guid>
      <dc:creator>NGS_SOC</dc:creator>
      <dc:date>2012-01-31T10:15:40Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31120#M22761</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone tell me how did you do the migration from NetConnect to GlobalProtect when upgrading to 4.1.x?&lt;/P&gt;&lt;P&gt;Was it automatic like for an upgrade of the VPN SSL client or do have you to redone configuration? &lt;/P&gt;&lt;P&gt;Do you have to uninstall NetConnect and instal GlobalProtect on every computer?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remi&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Feb 2012 10:45:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31120#M22761</guid>
      <dc:creator>rroger</dc:creator>
      <dc:date>2012-02-03T10:45:32Z</dc:date>
    </item>
    <item>
      <title>Re: Thinking of upgrading to 4.1.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31121#M22762</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Migration to Global Protect is automatic.&amp;nbsp; I have done a couple of upgrades and no where was it necessary for me to change any settings or uninstall and install any agent.&amp;nbsp; Should be a smooth changeover.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Feb 2012 13:39:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/thinking-of-upgrading-to-4-1-0/m-p/31121#M22762</guid>
      <dc:creator>kalyanram.piratla</dc:creator>
      <dc:date>2012-02-03T13:39:41Z</dc:date>
    </item>
  </channel>
</rss>

