Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Revert the Junos OS Software Image Back to the Previous Version

Learn about how to revert the Junos OS software image on the SRX Series Firewalls.

Requirements

No special configuration beyond device initialization is required before configuring this feature.

Overview

When you upgrade your software, the device creates a backup image of the software that was previously installed in addition to installing the requested software upgrade.

To downgrade the software, you can revert to the previous image using the backup image. You can use this method to downgrade to only the software release that was installed on the device before the current release. To downgrade to an earlier version, follow the procedure for upgrading, using the software image labeled with the appropriate release. This example returns software to the previous Junos OS version.

This procedure applies only to downgrading from one Junos OS software release to another or from one Junos OS services release to another.

Use Feature Explorer to confirm platform and release support for specific features.

Review the Platform-Specific Rollback Behavior section for notes related to your platform.

Configuration

Procedure

CLI Quick Configuration

To quickly set up this section, copy the following commands into a text file, remove any line breaks, update the details to match your network, and paste them into the CLI at the [edit] hierarchy level. Finally, enter commit to apply the changes.

From operational mode, enter:

GUI Quick Configuration

Step-By-Step Procedure

To downgrade Junos OS on SRX Series Firewalls:

  1. In the J-Web user interface, select Device Administration>Software Management>Downgrade. The image of the previous version (if any) appears on this page.

    After you perform this operation, you cannot undo it.

  2. Select Downgrade to downgrade to the previous version of the software or Cancel to cancel the downgrade process.

  3. Click Device Administration>Software Management>Reboot from the J-Web user interface to reboot the device. To downgrade to an earlier version, follow the procedure used for upgrading the software image labeled with the appropriate release.

  4. Click OK to check your configuration and save it as a candidate configuration. In Junos OS, a candidate configuration is a draft. Changes are saved but not yet applied to the running system.

  5. If you are done configuring the device, click Commit Options>Commit. Commit applies the candidate configuration to the device and activates all changes.

Step-by-Step Procedure

The following example requires you to navigate various levels in the configuration hierarchy. For instructions on how to do that, see Using the CLI Editor in Configuration Mode.

To downgrade Junos OS on SRX Series Firewalls:

  1. From operational mode, return to the previous Junos OS version.

  2. Reboot the device.

    The device is now running the previous version of Junos OS. To downgrade to an earlier version, follow the procedure for upgrading, using the software image labeled with the appropriate release.

Results

From configuration mode, confirm your configuration by entering the show system command. If the output does not display the intended configuration, repeat the configuration instructions in this example to correct it.

If you are done configuring the device, enter commit from configuration mode.

Verification

Confirm that the configuration is working properly.

Verifying the Junos OS Downgrade Installation

Purpose

Verify that the Junos OS downgrade was installed.

Action

From operational mode, enter the show system command.

Platform-Specific Rollback Behavior

Use Feature Explorer to confirm platform and release support for specific features.

Use the following table to review platform-specific rollback behavior for your platform:

Platform

Difference

SRX Series

  • For SRX300 Line of Firewalls, you must treat the rollback as a downgrade.
  • To rollback from Junos OS Release 24.4R1 to either Junos OS Release 23.4R2-S3 or to Release 24.2R2, use the request system software add package-name no-validate reboot command. Avoid using the request system rollback command to roll back.
  • On SRX300, SRX320, SRX340, and SRX345 Firewalls, when downgrading the software, sometimes the downgrade process doesn't complete because the /oam partition does not have enough free space.