Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?




Hierarchy Level


Specify what the SRX Series Firewall should do when a timeout occurs and the device cannot connect to an Infranet Enforcer.

Use this statement when you are configuring the SRX Series Firewall to act as a Junos OS Enforcer in a Unified Access Control (UAC) deployment. When deployed as a Junos OS Enforcer, the SRX Series Firewall enforces the policies that are defined on the UAC’s IC Series UAC Appliance.


  • close—Close existing sessions and block any further traffic. This is the default option.

  • no-change—Preserve existing sessions and require authentication for new sessions.

  • open—Preserve existing sessions and allow new sessions access.

Required Privilege Level

services—To view this statement in the configuration.

services-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 9.4.