[
Contents]
[
Prev]
[
Next]
[
Report an Error]
Changes in Default Behavior and Syntax
The following current system behavior, configuration statement
usage, and operational mode command usage might not yet be documented
in the JUNOS software with enhanced services documentation:
-
Firewall screens—The default values for threshold limit for screen have been
increased. [JUNOS Software Security Configuration Guide]
-
For Security—J-series Services Routers do not support the authentication
order password radius or password ldap in the edit access profile profile-name authentication-order command. Instead, use the order radius password or ldap password. [JUNOS Software Security Configuration Guide]
-
IPSec VPNs —Previously, when you committed an IPSec VPN configuration,
the J-series router needed to restart the IPSec process for the tunnel
to come up. Now, when you commit an IPSec VPN configuration, the system
restarts the IPSec process and does not require an IPSec process restart.
[JUNOS Software Interfaces and Routing Configuration Guide]
-
No IPSec SAs in BGP—JUNOS software with enhanced services does not support the use of IPSec
security associations (SAs) in BGP protocol configuration. The ipsec-sa option is not available at the edit protocols bgp hierarchy level. [JUNOS Software CLI Reference]
-
Source and destination-based
threshold limits for screens—Previously, JUNOS software with enhanced services defined
the source and destination-based threshold limits for security screens
as low and did not allow you to increase them. Now you can increase
the threshold as per traffic requirements. [JUNOS Software Security Configuration Guide]
[
Contents]
[
Prev]
[
Next]
[
Report an Error]