Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation  Back up to About Overview 

Known Behavior

This section contains the known behaviors, system maximums, and limitations in hardware and software in Policy Enforcer for Security Director 17.1R1.

  • Policy Enforcer supports only the default global domain in Junos Space Network Management.
  • When editing a Policy Enforcement Group, you cannot change the Group type. If you need to change the Group type, delete the Policy Enforcement Group and create a new one.
  • Secure Fabric has connectors and devices as enforcement points that can be assigned to a site through the list builder.
  • When a switch fails to update the VLAN access control list (VACL) and the infected host has an error failed state, the switch will continue to try to update the VACL until it is successful.
  • If an infected host is moved from a wired network interface controller (NIC) to wireless or from a wireless to a wired NIC, it is not automatically blocked until there is another malware detection at the new NIC. This is due to the change in the MAC address.

Modified: 2017-08-02