Catch up on the latest product updates, best practices, and expert insights from the Checkmk Conference #12 – Watch the livestream recordings now

Werk #22411: palo_alto: report unknown HA states instead of crashing

Component Checks & agents
Title palo_alto: report unknown HA states instead of crashing
Date Sep 22, 2026
Level Trivial Change
Class Bug Fix
Compatibility Compatible - no manual interaction needed
Checkmk versions & editions
3.0.0b1
Not yet released
Checkmk Community, Checkmk Pro, Checkmk Ultimate, Checkmk Cloud, Checkmk Ultimate MT
2.5.0p15
Not yet released
Checkmk Community, Checkmk Pro, Checkmk Ultimate, Checkmk Cloud, Checkmk Ultimate MT
2.4.0p38
Not yet released
Checkmk Community, Checkmk Pro, Checkmk Ultimate, Checkmk Cloud, Checkmk Ultimate MT

If a Palo Alto device reported a high availability state that Checkmk has no monitoring state for, the Palo Alto State service produced a crash report with KeyError instead of a result. This happened for example with the state initial on installations whose rule for this check was saved before that state could be configured, and it happens with any HA state a future PAN-OS release introduces.

The service now reports UNKNOWN for such a state and names it, for example HA local state: initial (no monitoring state defined for this value). The firmware version and the remaining states are reported as before, so a device in an unexpected HA state is still monitored.

To the list of all Werks