What's New
Learn about new features introduced in the Connected Security Distributed Services (CSDS) Architecture in this release.
Junos OS Platforms Support
| Junos OS Platform | Junos OS Devices | Junos OS Release |
|---|---|---|
| SRX Series Firewalls | SRX4300 | 24.4R2 |
To learn about the supported platforms in CSDS Architecture, see Supported Platforms.
Express Path for CSDS Architecture
-
Express Path support for CSDS Architecture (MX304 and vSRX 3.0)—Starting in Junos OS Release 25.4R1, you can use Express Path in the router to directly process non-first packets of a session and bypass the firewall in the datapath. The firewall inspects the first packet of a session. After it accepts the flow and marks the session for offloading, the router handles and forwards subsequent traffic without further inspection by the firewall. The CSDS Architecture uses Express Path to offload flow processing and optimize network performance.
Use the following configuration statements:
-
set chassis fpc slot service-offloadto enable the feature. -
set chassis fpc slot service-offload flow-table-size unitto optionally adjust the flow table size.
[See Express Path in CSDS Architecture, service-offload (CSDS), virtual-offload (CSDS), show security flow service-offload virtual-offload statistics, and clear security flow service-offload virtual-offload statistics.]
-
Support for Juniper Security Director Cloud
-
Monitor firewalls in CSDS Architecture using CSDS groups (SRX4300, SRX4600, SRX4700, SRX5400, SRX5600, SRX5800, and vSRX 3.0)—You can use Connected Security Distributed Services (CSDS) groups to monitor SRX Series Firewalls within the CSDS Architecture. CSDS groups provide network topology visualization and performance metrics tracking. You can improve network visibility and retain data for trend analysis, ensuring optimal system performance. The feature also supports monitoring firewalls deployed in a Multinode High Availability (MNHA) configuration.
To use the feature, deploy CSDS Architecture outside of Juniper Security Director Cloud. For more information, see Connected Security Distributed Services Architecture Deployment Guide.
[See CSDS Groups Overview, Create and Manage CSDS Groups, View CSDS Groups Topology, Set Threshold for CSDS Groups, and Monitor SRX Series Firewalls in CSDS Groups for Juniper Security Director Cloud.]