Resolved Issues
Learn about the issues fixed in this release for Connected Security Distributed Services (CSDS) Architecture.
For the most complete and latest information about known Junos OS defects, use the Juniper Networks online Junos Problem Report Search application
-
In Multinode High Availability solution, IPsec VPN tunnel distribution table on the Routing Engine (RE) is not cleaned up, leading to the crashing of SRX Series Firewall Packet Forwarding Engine and generation of core-dump file although DPD is configured. PR1850526.
-
In Multinode High Availability solution with SRG1 IPsec VPN configuration, the layer 3 Interchassis link (ICL) IPsec encryption link goes down permanently after rebooting the connected router through which the ICL was established. During this state, the IKE process got stuck at ~70% on the Multinode High Available active node. PR1850967.
-
The uid of jnuadmin changes when you delete and then add back the JNU configuration. PR1854326.
-
Intermittently, when the schema.tar.gz failed to secure copy (scp) from the satellite to the controller, the jnud process continues synchronizing with the MX Series controller. PR1854356.
-
In Multinode High Availability solution, the ICL link encryption must be used for connection between the pub-broker and sub-broker with loopback interface IP addresses to avoid IPsec session synchronization failure between the master and backup Multinode High Availability nodes. PR1840788.
-
In Multinode High Availability solution with SRG1 IPsec VPN configuration, the command
show chassis high-availability information
shows SRG1 control plane state asReady
although the ICL connection between the Pub-Broker and Sub-broker is not established properly and the IPsec sessions are getting synchronized between the master and standby peers. PR1840803.