What's Changed
Learn about what changed in this release for vSRX.
Content Security
-
New fallback option for antivirus (SRX Series and vSRX)—We introduce the
server-connection-errstatement at theedit security utm default-configuration anti-virus fallback-optionshierarchy level. This new statement enables you to configure the fallback actions when the device to Sophos server connection has an error due to following reasons:-
Sophos server configuration does not have an SSL initiation profile.
-
Server host is not resolved.
-
Outgoing interface IP is not available.
-
Server to device connection creation failed due to internal errors.
We've also enhanced the
show security utm anti-virus statisticsoutput with theServer connection errorcounter. -
Network Management and Monitoring
-
NETCONF
<copy-config>operations support afile://URI for copy to file operations (ACX Series, EX Series, MX Series, QFX Series, SRX Series, vMX, and vSRX)—The NETCONF<copy-config>operation supports using afile://URI when<url>is the target and specifies the absolute path of a local file.[See <copy-config>.]
VPNs
-
Introduction of extensive option for IPsec security associations (MX Series, SRX Series and vSRX 3.0)—We've introduced the
extensiveoption for theshow security ipsec security-associationscommand. Use this option to display IPsec security associations with all the tunnel events. Use the existingdetailoption to display upto ten events in reverse chronological order.