Juniper JUNOS OS 10.4 - RELEASE NOTES Release Note page 154

Table of Contents

Advertisement

JUNOS OS 10.4 Release Notes
154
1024-bit keys. The throughput is much higher for the traffic using <= 1024-bit SSL
private keys. [PR/524452 ]
On SRX210 High Memory and SRX240 High Memory devices, IDP scaling drop occurs.
[PR/525732]
On SRX3400, SRX3600, SRX5600, and SRX5800 devices, when packet-logging
functionality is configured with an improved pre-attack configuration parameter value,
the resource usage increases proportionally and might affect the performance.
[PR/526155]
On SRX240 High Memory devices, with IDP policy template, policy load fails while
changing the active policy from the recommended option to the IDP_Default policy.
This is because there is not enough memory for IDP to load the IDP_Default policy.
[PR/539486]
On SRX100, SRX210, SRX220, SRX240, and SRX650 devices, IDP policies greater than
19 MB do not get loaded. [PR/540856]
On SRX100 and SRX240 High Memory devices, whenever the folder
deleted or any folder
/var/db/idpd/db
the system must be rebooted for proper functioning of idpd. [PR/551412]
IPv6
Proxy-ndp does not work in IPv6. Hence, the following issues exist:
proxy-ndp cannot be configured under
publish MAC for specific IPv6 addresses will not work under
[PR/549969]
ISSU
In-service software upgrade (ISSU) is not supported for upgrading VPN, NAT, IPv6,
FTP ALG, TFTP ALG, or IDP functionality. If ISSU is used while the noted functionality
is enabled, SRX Series devices might be left in an invalid state. The upgrade options
are either to disable unsupported ISSU features prior to the upgrade or to use a standard
upgrade procedure with a reboot. [PR/558566, PR/530035].
J-Flow
SRX3400, SRX3600, SRX5600, and SRX5800 devices support the 4-byte autonomous
system (AS) for BGP configuration. However, J-Flow template versions 5 and 8 do not
support 4-byte AS because these J-Flow templates have 2 bytes for the SRC/DST AS
field. [PR/416497]
On SRX3400, SRX3600, SRX5600, and SRX5800 devices, J-Flow sampling on the
virtual router interface does not show the values of autonomous system (AS) and
mask length. The AS or mask length values of
the packet on the virtual router interface. [PR/419563]
that is under the folder
var/db/idpd
Security
>
NAT
Interfaces
packets show
cflowd
Copyright © 2010, Juniper Networks, Inc.
is
/var/db/idpd
is deleted,
>
set interfaces
while sampling
0

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junos os 10.4

Table of Contents