Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Resolved Issues

Learn about the issues fixed in this release for SRX Series devices.

For the most complete and latest information about known Junos OS defects, use the Juniper Networks online Junos Problem Report Search application.

Application Layer Gateways (ALGs)

  • The first FTPS session will not work on SRX5K platforms leading to a traffic drop PR1715918

  • Device crashed while processing H323 traffic in SRX and MX PR1722877

  • SIP ALG not working for SIP traffic with MIME header and traffic is dropped PR1728638

Authentication and Access Control

  • Connection fails are observed on Junos despite a valid auth entry PR1692398

Chassis Clustering

  • Unsupported configuration for interface st0.16000-16385 is possible when using replace pattern on SRX platforms PR1731593

  • In SRX MNHA cluster setup the RSI takes long time to generate PR1736498

  • BFD session fails to re-establish on SRX cluster mode PR1737520

Class of Service (CoS)

  • The CoS scheduler map will not get attached to the sub-interface correctly when shaping-rate and scheduler-map are configured on it PR1734013

Flow-Based and Packet-Based Processing

  • Packet loss is observed for IPSec sessions when PMI is enabled PR1692885

  • The traffic will fail when accessing the routing instance interface IP from external IP PR1719437

  • The IPv6 Neighbor Discovery fails on VLAN tagged reth interfaces PR1720570

General Routing

  • 8-Port Gigabit Ethernet SFP XPIM not passing traffic after software upgrade PR1620982

  • BGP down due to BFD expired; failover restored services PR1630981

  • [SRX] SRX550HM interfaces LED of ge-0/0/6-9 will auto turn off after device bootup some minutes PR1634965

  • The DNS information is getting lost when IPCP flaps PR1658968

  • fxp0 works under disable state in SRX300 PR1661816

  • SRX Branch models are unable to connect to domain controller on installing Microsoft KB update PR1683420

  • On all Junos lsys systems RPD process crashes due to JET client invoking rpc handled by RPD daemon PR1692738

  • The user-id entries will not be synced with secondary node PR1701990

  • Log streaming Hosts configured as FQDN may fail when DNS re-query is performed PR1708116

  • High latency will be observed while pinging to peer device PR1714620

  • The firewall web-authentication feature will not work after enabling Juniper secure connect PR1714845

  • Interface speed stays 100Mbps when removing speed and duplex command separately PR1715247

  • The nsd process may report an error msg PR1715297

  • J-flow sends wrong IP in sampling records when NAT is configured for traffic along with input sampling PR1716707

  • Security log missing space between timestamp and hostname PR1716776

  • The SSL session drops because of the wrong SNI value PR1716893

  • Errors seen under interfaces in slot0 option PR1717095

  • The srxpfe core has been seen on secondary SRX during ISSU PR1717503

  • OAM not working with flexible-vlan-tagging PR1719108

  • The flowd process crash is observed when the web proxy packet reinjection fails PR1719703

  • Local route is not added in the secondary FIB on all Junos SRX platforms and routes will be permanently stuck in KRT queue PR1721032

  • Nstraced process is running high on the primary node after the Junos upgrade PR1727122

  • L2 channel error counter increases when unknown family packets received by interfaces PR1729284

  • When there is a power outage happens after the first upgrade, the reboot device gets stuck at volume booting PR1729671

  • The DNS cache gets wiped out due to the flowd crash on all SRX platforms after the upgrade PR1732028

  • nsd crash impacting remote access vpn on SRX devices PR1732746

  • 23.2R1 :USF_DNSF:log messages are not generated when Sending MX query with domain name in black list with action as report after configure the web filtering with one/morep profile and template. PR1733435

  • Intermittent core-dumps is received when SMB protocol is enabled on AAMW policy and PFE memory is exhausted PR1737442

  • Junos OS installation using USB can fail on SRX4600 PR1737721

  • Failover can be seen on SRX5K cluster with SPC2 cards while executing RSI PR1738188

  • "Minor Autorecovery information needs to be saved" alarm is not displayed after zeroize PR1738271

  • Traffic drop caused by PFE memory leak on SRX platforms PR1738656

  • SRX4100/4200 accepts the datapath-debug configuration although it does not support it PR1739559

  • Processing a TWAMP packet and terminating the TWAMP session will cause a core-dump in a corner case scenario PR1739733

  • flowd process crash observed in Junos branch SRX platforms PR1743107

  • Commit panic reboot observed after implementing system processes watchdog timeout 180 on SRX hardware platforms PR1744108

  • One of the node in high availability/cluster will go offline briefly PR1749584

  • SPC3 PIC crash PR1749830

  • Users authenticated via captive portal experience a noticeable delay of atleast 2-5 mins PR1755593

Intrusion Detection and Prevention (IDP)

  • Multiple network issues are seen after the upgrade with lower IDP packet-log total-memory percentage PR1741887

J-Web

  • Editing security policy configuration via J-web is enabling "Exclude Selected" unexpectedly PR1735314

  • Junos OS: EX and SRX Series: A PHP vulnerability in J-Web allows an unauthenticated to control important environment variables (CVE-2023-36845) PR1736942

  • Cannot add custom defined security address-book under Security Policies Objects > Security Policies > Create > Source Zone > Select Sources. PR1748078

Network Address Translation (NAT)

  • Some sessions will not be deleted when the NAT rule is deleted from the system PR1712738

Platform and Infrastructure

  • 22.2R1:FIPSCC:L2HA:After RG0 failover, node priority are set to zero for node0 with Relinquish monitoring failure. PR1670772

  • The message "kernel: %KERN-6: ARP UNICAST MODE 0; retrans_timer - 8" might be seen when commit command is run for configuration which is not related to ARP PR1735686

Routing Policy and Firewall Filters

  • The flowd process crash is observed with the security policy updated with changing IP address related to the FQDN PR1713576

  • The nsd process crash is seen when ISSU is performed on the cluster PR1724777

  • Traffic impact is observed when the security policy is configured with a huge number of addresses and on addition/deletion of these policies PR1725567

Routing Protocols

  • The traffic drop will be observed for the static route after VRRP failover when VRRP VIP is set as next-hop for that static route PR1687884

  • BFD session for BGP remains down in a specific scenario PR1738074

  • Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute (CVE-2023-0026) PR1739919

  • RPD scheduler slip is observed when the BGP session flaps and subsequent configuration changes for the same peer PR1742416

  • When BGP is configured in routing-instance virtual router without L3VPN configuration, default MPLS table is being created unexpectedly PR1742513

Unified Threat Management (UTM)

  • utmd core has seen at commit when *.* or *.*.* is configured at url-pattern PR1715260

  • Memory leak is observed on all Junos SRX platforms with http-persist and http-reassembly configuration PR1725359

  • Outlook notification channel connection is not established PR1725938

VPNs

  • The tunnel went down because the IKE exchange failed PR1690921

  • Cold sync status of MNHA nodes may go into an INCOMPLETE state after bootup. PR1710374

  • The iked process will crash when VPN tunnels parameters are not matching PR1716092

  • ISSU is aborted and flowd process crash is observed PR1722122

  • IPSEC VPN does not come up in NAT-T scenario PR1745174

  • Error seen while clearing ike statistics in secondary node PR1748531