Skip to content

Commit

Permalink
[Cloud Security] 24.11.1 RN (#959)
Browse files Browse the repository at this point in the history
* [Cloud Security] 24.11.1 RN

* [CSPM] 24.11.1 RN

* removed action plans added RLP-148646

* final updates as of 11/1

* fixed iam policies col width

* added fixed issue RLP-151431

* minor text edits

* removed https://pan.dev/prisma-cloud/api/cspm/get-audit-logs/ api link since it's not yet live
  • Loading branch information
arane26 authored Nov 1, 2024
1 parent e617a03 commit 0174288
Show file tree
Hide file tree
Showing 11 changed files with 1,987 additions and 1,285 deletions.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
2 changes: 2 additions & 0 deletions docs/en/enterprise-edition/rn/book.yml
Original file line number Diff line number Diff line change
Expand Up @@ -22,6 +22,8 @@ topics:
topics:
- name: Features Introduced in 2024
file: features-introduced-in-2024.adoc
- name: Features Introduced in November 2024
file: features-introduced-in-november-2024.adoc
- name: Features Introduced in October 2024
file: features-introduced-in-october-2024.adoc
- name: Features Introduced in September 2024
Expand Down
48 changes: 0 additions & 48 deletions docs/en/enterprise-edition/rn/draft-book.yaml

This file was deleted.

46 changes: 28 additions & 18 deletions docs/en/enterprise-edition/rn/known-issues/known-fixed-issues.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -19,11 +19,26 @@ The list of fixed issues are not cumulative; only the issues that are fixed with
|*DESCRIPTION*
//CSPM AND CAS Known Issues

//Verify RLP-149496

//*RLP-127621*
//Added post-24.1.2, related to PCSUP-20665, retain in KIs list till engg confirms
//On *Inventory > Assets*, if you filter based on the _Key-Value_ *Asset Tag* and your environment has more that 1 million assets, the results will be inconclusive.
//Contact your Prisma Cloud Customer Success representative for more details.

|*RLP-153057*

|To provide enhanced performance, the *Compliance* trendline has been disabled for very large tenants that have tens of millions of Assets.

*Workaround*: Contact Prisma Cloud Customer Support to get it re-enabled for your tenant.

|*RLP-150999*
//added on 10/24 with 24.11.1 - check whether it shd be under Fixed?

|Cloud resources located in disabled regions may trigger policy violations, resulting in false positive alerts. You may notice these misleading alerts associated with specific OOTB policies.

*Workaround*: You must manually dismiss these false positive alerts.

|*RLP-151696*
//added on 10/11/2024

Expand All @@ -38,7 +53,7 @@ The list of fixed issues are not cumulative; only the issues that are fixed with
|In certain cases, a system processing issue is causing deviations in the total, passed, and failed assets count.


*Imapct*: Inaccurate overall asset counts will be displayed on *Asset Inventory* and *Compliance Dashboard* for some customers.
*Impact*: Inaccurate overall asset counts will be displayed on *Asset Inventory* and *Compliance Dashboard* for some customers.

//move blurb under fixed-issues once fix/patch is deployed in 24.10.1 or .2? -- Fixed a race condition (Was causing deviations in total, pass, fail counts on the asset inventory and compliance pages) in Asset Inventory and Compliance Dashboard. This fix will provide more accurate overall asset counts for some customers.

Expand Down Expand Up @@ -387,17 +402,22 @@ CVE-2024-3154 - Arbitrary Systemd Property Injection as Defender does not direct
|*ISSUE ID*
|*DESCRIPTION*
|*RLP-113952*
//Added in 24.1.1. Plan is to fix it in 24.5.2. This must be moved to fixed issues then. Moved to Fixed 10/16 remove in 11.1
|While onboarding your Azure China tenant to Prisma Cloud, you might see an inaccurate warning within the *Review Status > Security Capabilities and Permissions* section, even if you have granted the necessary permissions.
|*RLP-151431*
`Prisma Cloud application is not assigned following role(s): GroupMember.Read.All, Domain.Read.All, Reports.Read.All, Application.Read.All, Policy.Read.All;`
tt:[Fixed in 24.11.1]
This issue is resolved and can be disregarded.
|With the *azure-postgresql-flexible-server* API, specifically related to version 11 databases, you would be unable to see the newly created databases. Also the previously ingested resources were incorrectly marked as deleted in the Prisma Cloud UI even though they were available in your cloud accounts.
|*CWP-62084*
This issue is now fixed and the *azure-postgresql-flexible-server* API will only make calls for ssl_min_protocol_version for databases with version greater than 11, thereby improving performance and visibility.
tt:[Secure the Runtime]
// |*RLP-113952*
//Added in 24.1.1. Plan is to fix it in 24.5.2. This must be moved to fixed issues then. Moved to Fixed 10/16 remove in 11.1
// |While onboarding your Azure China tenant to Prisma Cloud, you might see an inaccurate warning within the *Review Status > Security Capabilities and Permissions* section, even if you have granted the necessary permissions.
//`Prisma Cloud application is not assigned following role(s): GroupMember.Read.All, Domain.Read.All, Reports.Read.All, Application.Read.All, Policy.Read.All;`
//This issue is resolved and can be disregarded.
|*CWP-62084*
tt:[Fixed in 33.01.137]
Expand All @@ -409,8 +429,6 @@ Rerunning a scan didn't update the binary packages exposed to a vulnerability. T
|*CWP-61947*
tt:[Secure the Runtime]
tt:[Fixed in 33.01.137]
|*Boot volume encryption in agentless scanning*
Expand All @@ -419,8 +437,6 @@ Fixed an issue with the agentless scanner boot volume default encryption.
|*CWP-61606*
tt:[Secure the Runtime]
tt:[Fixed in 33.01.137]
|*CSV Export Compatibility with Excel*
Expand All @@ -431,8 +447,6 @@ This issue is resolved. The fix ensures that the CSV now lists all the hostnames
|*CWP-59281*
tt:[Secure the Runtime]
tt:[Fixed in 33.01.137]
|*Improved vulnerability reporting for Debian images*
Expand All @@ -443,8 +457,6 @@ The fix prioritizes CVE matches from the security repository and Prisma Cloud no
|*CWP-58952*
tt:[Secure the Runtime]
tt:[Fixed in 33.01.137]
| *Improved vulnerability detection for multiple Python versions*
Expand All @@ -455,8 +467,6 @@ The issue is fixed. Prisma Cloud will now scan and report vulnerabilities for ea
|*CWP-59654*
tt:[Secure the Runtime]
tt:[Fixed in 33.01.137]
| *Support for Amazon Linux CVEs*
Expand Down
Loading

0 comments on commit 0174288

Please sign in to comment.