Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Resolved Issues: 21.2R1

General Routing

  • Revert of RLT to primary might silently discard traffic for around 10 minutes after the primary FPC is online with primary RLT up. PR1394026

  • Unable to show to which shard a given route is hashed. PR1430460

  • Configuring two IPsec gateways for V1 and V2, triggering IKEv1 client tunnels AutoVPN hub always checks with IKEv2 policy and not on IKEv1. PR1465970

  • The following line card errors are seen: HALP-trinity_nh_dynamic_mcast_add_irb_topo:3520 snooping-error: invlaid IRB topo/ IRB ifl zero in l2 nh 40495 add IRB. PR1472222

  • FPC might crash after performing unified ISSU on the device which equips the type of 3D 20x 1GE MIC. PR1480212

  • Subscribing to /linecard/packet/usage and triggering the UDP decoder, the hardware statistics are exported with improper hierarchy. PR1485739

  • Incorrect log message for PIC1 when changing the configuration from PIC mode to port mode. PR1500429

  • Aggregate Ethernet interfaces do not display member link statistics. PR1505596

  • MX150 routers might go into db mode after software upgrade or downgrade. PR1510892

  • Sometimes external 1 pps cTE is slightly above Class B requirement of the ITU-T G.8273.2 specification. PR1514066

  • On the MX960 routers, the show interfaces redundancy rlt0 statement shows current status as primary down as FPC is still in the ready state after RLT failover (restart FPC). PR1518543

  • Packet drops might be seen with all commit events when interface configured with 1 Gbps speed. PR1524614

  • RADIUS framed route sent via RADIUS initiated COA message might not be installed into the routing table. PR1524628

  • The aggregated Ethernet interface might not come up with LFM configured after reboot. PR1526283

  • Removing superflous XML tags within syslog strings. PR1528116

  • On MX150 routers, configuring the no-flow-control statement under gigether-options does not work. PR1531983

  • Wavelength unlocked alarm is On when using SFP+-10G-T-DWDM-ZR optics. PR1532593

  • On the Virtual Chassis and Virtual Chassis fan, after NSSU while performing GRES, backup can generate core file and go to the database prompt. PR1533874

  • The dcpfe process might crash and cause FPC to restart due to the traffic burst. PR1534340

  • The CFM sessions go down during FRU upgrade stage of unified ISSU in MX Virtual Chassis. PR1534628

  • The spcd process might crash during early initialization. PR1535536

  • Certain Linux based FPCs might reboot if TNP neighbor towards backup Routing Engine continuously flaps on dual Routing Engine platforms. PR1537869

  • The following error message might be seen during upgrade of VM host platform: vmhost-platform-grub-install.sh: line 140: [: ==: unary operator expected. PR1537980

  • On the AFT based FPCs (MPC10 and MPC11 line cards), the show jnh exceptions inst command of the Packet Forwarding Engine might cause the FPC process to crash. PR1538138

  • The BFD neighborship fails with the EVPN VXLAN configuration after the Layer 2 learning restarts. PR1538600

  • Configuration archival might not work. PR1540843
  • The dcpfe process might crash in the specific MAC move cases and traffic loss might be observed in the EVPN-VXLAN scenario. PR1542709

  • The JNH memory leak could be observed on MPCs or MICs. PR1542882

  • Sessions creation rate is set to minimal rate after IDS and CPU throttling in place during DDoS attack. PR1544489

  • The kmd process might crash when the interface flaps. PR1544800

  • The VM host platform might get crashed continuously after performing upgrade or downgrade and booting up with the new image. PR1544875

  • The high priority queue might consistently drop traffic after SIB goes offline. PR1545061

  • Continuous rpd process errors might be seen and new routes fails to be programmed by the rpd process. PR1545463

  • FPC might not boot-up on MX960 routers in certain condition. PR1545838

  • The 40G or 100G interfaces might flap during unified ISSU if PTP is deactivated on the interfaces on MX platforms. PR1546704

  • OSPFv3 session might keep flapping and OSPFv3 hellos might be dropped in the host path. PR1547032

  • The PTP protocol might get stuck at initializing state on MX platforms. PR1547423

  • WR Linux 6 platforms and WR Linux 9 platforms might be stuck after upgrading or downgrading image version and restarting the device. PR1547669

  • Traffic for some IPv4 over IPv6 entries is dropped. PR1547681

  • SR-TE might stay in the Up state when the routes are deleted through policy. PR1547933

  • MX platforms might stuck after performing vmhost reboot post image upgrade. PR1548254

  • The MS-MPC and MS-MIC located at VC-B might not work properly in an MX Series Virtual Chassis. PR1548340

  • Traffic with jumbo frame might be discarded on the vMX platforms. PR1548422

  • FPC crash might occur after flapping the multicast traffic. PR1548972

  • When the MX Series device is in the SAEGW-U mode, in rare cases of a double back-to-back failover involving GRES and node association release, some access-peers might not be freed even after the sessions count associated with that peer reaches zero. PR1549689

  • The firewalld process crash might be seen if deactivating/activating the firewall during back to back switchovers. PR1549856

  • PKI CMPv2 client certificate enrollment does not work when using root-CA. PR1549954

  • The LLDP adjacency might not be established for fxp interface. PR1550131

  • Error messages are observed as the backup peer does not send marker acknowledgment for the last 360 seconds for vks 0 slave_ack=0 during ISSU. PR1550492

  • Two Routing Engines might lose communication if they have different Junos OS versions on MX10003 platforms. PR1550594

  • The adapted sample rate might get reset to the configured sample rate without changing the sampling rate information in sFlow datagrams after enabling sFlow technology on a new interface. PR1550603

  • Deleting or deactivating the PS interface must not be allowed when use by BBE subscriber. PR1550915

  • Unintended FPC restarts might be seen on MX10008 and MX10016 routers due to small timeout value between line card and chassisd process. PR1550917

  • Certain MX platforms might reset and fail to boot due to a failure accessing Solid State Drive (SSD). PR1551047

  • Silent compact flash (/dev/ada1) failure might occur during reboot or startup of router. PR1551171

  • The softwire might not be established when connecting to a different AFTR. PR1552431

  • Firmware versions for MPC11E line card were not getting displayed due to the changes made to the API in software required to read the firmware versions from the hardware. PR1552847

  • The interface might not come up with 1G optics. PR1554098

  • Unified ISSU upgrade from pre Junos OS Release 19.1 to Junos OS Release 19.1 and later might cause a few interfaces to go down. PR1554099

  • The following error messages seen when we issue CLI commands to fetch host route scale: Cattle-Prod Daemon received unknown trigger (type Semaphore, id 1). PR1554140

  • CoS WRED Curve: Create Expr Curve: No curve data points!! error messages are seen when interpolate is configured under drop profile. PR1554220

  • Global Ethernet flow-control should be disabled when PFC CNP is enabled on an interface. PR1554345

  • The link on the Linux based LC is not brought down immediately after the FPC process(ukern/indus.elf) crashes or the process is killed. PR1554430

  • On MX960 routers, SNMP index of output interface is reported as zero in the exported flow records of MPLS and MPLS-IPv4 sampling when ipv4 tunnel-observation statement is deleted on the fly. PR1554489

  • The subscriber sessions might be missed but stay in the authd after performing unified ISSU. PR1554539

  • The device takes 3-10 mins to bring up the 100-1000 subscribers. PR1555216

  • The chassisd process might crash with repeated configuration commits on MX204 and MX10003 routers. PR1555271

  • The VGA might be down when configuring the IRB interface with multi VGA addresses. PR1555338

  • The subscriber's RADIUS interim accounting statistics update might not work in some scenario. PR1555492

  • Fabric self ping failure might be reported from MPC10 line card when MPC CPU is busy. PR1555802

  • The following message is not generated on the MPC11E line card due to no power: Chassisd SNMP trap Fru Offline. PR1556090

  • FPC with power related faults might get on-lined again once fabric healing has off-lined the FPC. PR1556558

  • The dcpfe process might crash and restart with a dcpfe core file created while running the Type 5 EVPN VXLAN with 2000 VLANs. PR1556561

  • On the MPC9E line card, core file is generated when SFB is online after ISSU of a GNF. PR1556627

  • The framed route installed for a demux interface has no MAC address. PR1556980

  • Script fails while committing the IPsec authentication configuration as the algorithm statement is missing. PR1557216

  • The framed-routes are stuck in KRT queued (pending) add state when the routing-service enable is configured under dynamic-profile. PR1557230

  • Multiple FPCs crash might be seen when performing GRES or FPC reboot repeatedly in subscriber scenario. PR1557294

  • Packets corruption on 100G or 40G when interface is configured with protocol PTP. PR1557758

  • The MAC addresses learned in a Virtual Chassis might fail aging out in MAC scaling environment. PR1558128

  • Application identity unknown packet capture utility does not function when enhanced-services mode is enabled. PR1558812

  • Rpd process generates core file after Routing Engine switchover. PR1558814

  • Some transmitting packets might get dropped due to the disable-pfe action is not invoked when the fabric self-ping failure is detected. PR1558899

  • The device might run out of service post GRES or unified ISSU. PR1558958

  • MX Series with MPC10 and MPC11 line card might crash and restart when traffic is hitting a firewall filter having a term with syslog action configured. PR1559174

  • On MX150 routers, the following continuous license error is observed: [licinfra_set_usage_nextgen_async:1733] Invalid input parameters. PR1559361

  • The subscriber management infrastructure daemon (smid) process might be stuck at 100 percent. PR1559402

  • Single rate three color policer does not work. PR1559665

  • On MX960 routers, mismatch between YANG schema and RPC output are observed. PR1559810

  • Zero suppression is disabled. PR1559882

  • Untagged traffic routed over native-vlan might be dropped. PR1560038

  • When the system has only one plane (in the process of plane offline or online), the MPC10-10C line card displays a destination error. PR1560053

  • The PTP master line card servo might stuck in freerun state. PR1560074

  • The jnxDomAlarmSet and jnxDomAlarmClear trap will be generated for a copper port. PR1560149

  • The request system software validate command might corrupt installation of the junos-openconfig package. PR1560234

  • The VXLAN queue DDoS violation and RARP packets flood might happen if receiving the RARP packets more than the supported DDoS bandwidth. PR1560243

  • The PIC in SRX5K-SPC3/MX-SPC3 card might get stuck in offline status after flowd process crash occurs on it. PR1560305

  • On MX240 routers, R0 overlay ping fails. PR1560408

  • The class-of-service RED feature might work unexpectedly and cause traffic drop. PR1560495

  • Telemetry might not work after reboot or upgrade. PR1560496

  • Filters are not allowed on family any port-mirroring destination interface. PR1560624

  • The FPC might reboot in a high-scale configuration scenario. PR1560757

  • Interface does not able to send/receive packets after repeated link flaps on MPC10 and MPC11E line cards. PR1560772

  • When LACP daemon is restarted, LACP local partner system id remains 0 in mc-ae output. PR1560820

  • The native-vlan-id might not work as expected on MPC10E and MPC11E line cards. PR1560849

  • FTP might fail when using in-band ports. PR1561146

  • The tunable optics SFP+-10G-T-DWDM-ZR does not work. PR1561181

  • SPC3 is not supported on MX in 21.1R1 for deployment. PR1561188

  • The l2cpd process might generate core file on reboot. PR1561235

  • The VIA headers might not be translated properly when the SIP ALG is enabled. PR1561312

  • The CdaExprClient: grpc api call ExprServerInfoGet failed and CdaExprClient: Failed to fetch server info error:5 are seen on all FPCs after restarting router or FPC restart. PR1561362

  • Firewall filters might not work after unified ISSU. PR1561690

  • Traffic drop might occur on all platforms running Junos OS when a GRE-based dynamic tunnel is configured. PR1561721

  • Unable to open configuration database during USB upgrading. PR1561741

  • After recovering from restart routing immediately, object-info anomalies is observed on rpd agent. PR1561812

  • Continuous bbe-smgd core files are generated after restarting the smgd. PR1561855

  • Interface loopback might not work if there is no optics connected to the port. PR1562471

  • The dcpfe process might crash after deleting VXLAN configuration. PR1562692

  • LICENSE_INVALID_FEATURE_ID syslog message is not being logged. PR1562700

  • Commit issue is seen after loading limited-signed image through USB. PR1562723

  • The rpd process might crash when the routing-instances are deleted and recreated quickly. PR1562905

  • FPC Online/Offline through pinhole is not working. PR1563315

  • The AppID DB not erased after the request system zeroize command. PR1563280

  • Client authentication is failing after performing GRES. PR1563431

  • Routing Engine switchover on-disk-failure does not work as expected when GRES is disabled. PR1563505

  • Layer 2 interface information is not included in DHCPv4 option-82 circuit-id/remote-id DHCPv6 relay-agent-interface-id/relay-agent-remote-id options when service provider style configuration for switch interfaces is employed. PR1564010

  • It might take a long time to create physical interfaces after restarting the FPC. PR1564156

  • The following error message might be seen after unified ISSU: Turbotx process not running. PR1564418

  • MX platforms with MX-SCBE3 might reboot continuously. PR1564539

  • Old template is found in p2mp rsvp LSPs after adding new template. PR1564795

  • Upon receipt of specific packets, BFD sessions might flap due to DDoS policer implementation in Packet Forwarding Engine. PR1564807

  • Commit error observed when tunnel-service is configured on a PIC without explicit bandwidth. PR1565034

  • On MX2010 and MX2020 routers, the following error message might be observed after switchover with GRES/NSR: CHASSISD_IPC_FLUSH_ERROR. PR1565223

  • Unable to bring up more than one client on one VLAN at the same time. PR1565249

  • PPPoE service-name-tables does not correctly count active sessions that matches agent-specifier ACI/ARI used for delay. PR1565258

  • The KRT log file might continue to grow after removing the KRT log configuration. PR1565425

  • Core files are seen at grpc_slice_buffer_add_indexed with LSR core profile configuration. PR1565427

  • The mspmand crash might be seen on the PIC of MS-MPC and MS-MIC. PR1566325

  • LLDP does not work on the management interface. PR1566454

  • Pushing more than 2 MPLS labels on might not work. PR1566828

  • Rpd core files are generated at boot time of a device. PR1567043

  • The chassisd crash might be seen on MX platforms. PR1567479

  • TLB composite next hop is installed incorrectly in other routing-instances. PR1567568

  • Need to allow the tunnel interface as the peer-address for ALQ. PR1567735

  • On MX204 routers, FPC might display high CPU utilization because of the JGCI background thread that runs for a long period. PR1567797

  • State is not established for the show bgp bmp station name after the authentication-key bmp-auth is configured. PR1568046

  • MAC addresses might not be installed in the EVPN MAC table due to route churn. PR1568130

  • Memory might be exhausted when BGP sessions are unstable. PR1568551

  • BFD flaps might be seen between leaf and core during spine reboot causing other protocols flap. PR1568615

  • SPC3 card interfaces are not created. PR1568694

  • IPv6 ping not working, when the strict uRPF is enabled. PR1568938

  • Traffic might be dropped when the default route is changed in inet.0 table. PR1568944

  • The scu-class-name statement is taking more than 60 seconds to come up with scaled aggregated Ethernet configuration. PR1568957

  • The nsd process might crash after turning off the address translation for the NAT rules in the USF scenario. PR1568997

  • The rpd process might crash while using BFD API to bring up the BFD sessions. PR1569040

  • Traffic loss might be observed when SCU accounting is configured and logical-systems is enabled. PR1569047

  • The agent sensor __default_fabric_sensor__ are partly applied to some FPCs, which causes zero payload issue. PR1569167

  • LLDP out-of-bounds read vulnerability in l2cpd. PR1569312

  • Wi-Fi mPIM is reaching out to NTP and DNS servers. PR1569680

  • The MPLS traffic passed through the back-to-back PE topology might match the incorrect CoS queue. PR1569715

  • On MPC10 line cards, resolve to hold nh:776 not found in the database. PR1569829

  • The mspmand process might crash if the packet flow-control issue occurs on MS-MPC and MS-MIC. PR1569894

  • The log message /tmp//mpci_info: No such file or directory :error[1] might be seen on VM host platform. PR1570135

  • The jinsightd process might be stuck with high CPU process utilization. PR1570526

  • The bbe-smgd process might crash after committing several thousand addresses in a filter term. PR1570536

  • The ZTP state machine might be stuck on the management interface for about 12 minutes. PR1570598

  • Cleanup does not happen properly for subscribers stacked over static demux interface. PR1570739

  • Upgrading with unified SSDs (2x32G SSD) might result in boot loop in certain scenario. PR1571275

  • Packet loss might be observed when sample based action is used in firewall filter. PR1571399

  • FPC crash might be seen when deleting a lot of multicast groups at the same time. PR1571890

  • Switchover to backup Routing Engine if rpd was NSR ready and then crashed. PR1571914

  • The gRPC session hanging in CLOSED state. PR1571999

  • The grpcd process might crash and telemetry subscription will retry until grpcd restarts. PR1572107

  • In transit spine devices, 100 percent DCI traffic loss is observed. PR1572238

  • The TFEB/FPC might fail to be online after rebooting the system or the FPC if the interface-set is configured for CoS. PR1572348

  • Segment routing might not work properly in IS-IS multiple levels setup. PR1572391

  • The show services mobile-edge sessions summary access-network-peers command displays incorrect established subscriber output after the UPF handover ENB step. PR1572520

  • On MX960 routers, the Require a Fan Tray upgrade alarm is raised when the top Fan Tray 0 is removed, even though the enhanced Fan Tray is already used. PR1572778

  • A traffic loop might be observed after the VCP interface flap. PR1573047

  • CFP unplugged message is not logged. PR1573209

  • Fabric errors are observed and FPC processes might get offline when MPC3-NG or MPC3E line cards are installed along with MPC7/MPC10 and SCBE3/SCB4 operating in increased-bandwidth fabric mode. PR1573360

  • The rpd process on the transit node might crash when MPLS traceroute on the ingress node is performed. PR1573517

  • ARP traffic exceeding the policer limit is not discarded. PR1573956

  • QSFP 4x10G interface might not come up after FPC reboot. PR1574279

  • DS-Lite throughput degradation might be seen on MS-MPC. PR1574321

  • Slow FPC heap memory leak might be triggered by flapping the subscribers terminated over multiple pseudowires. PR1574383

  • The mpls-template for J-Flow version 9 cannot make a similar template to mpls-ipv4-template on MX MS-MIC/MPC. PR1574402

  • PIM rib-group fails to be added in VRF. PR1574497

  • On the EA-based cards IGMP group membership is displayed incorrectly. PR1575031

  • PTP might be stuck in Phase acquiring state after ISSU upgrade PR1575055

  • The rpd process might continuously crash if deleting forwarding-class policy with discard action. PR1575177

  • The MPC10E line cards generates the following error message: user.err aftd-trio: [Error] Em: root: Insert entry failed, entry:parentToken:747441 entryMask:ffffffffffffffff index:52. PR1575310

  • On the MX150 routers, the interface might take a long time to power down while rebooting, powering-off, halting, or upgrading. PR1575328

  • The show services service-sets statistics syslog command returns the following error message as the service-set does not have the syslog configuration: error: usp_ipc_client_recv_ 1237: ipc_pipe_read fails! error:No error: 0(0), tries:1. PR1576044

  • MPC crash might be seen when the next-ip action is used for filter-based forwarding. PR1576695

  • The LLDP neighbor information displays hex string instead of chassis ID when subtype 1 is used. PR1576721

  • The MS-MPC and SPC3 might reset on receiving the subscriber traffic. PR1576946

  • Traffic drop and the aftd process crash are seen on MPC10 line card. PR1576997

  • The following commit failure-error is observed: Modified IFD "ae0" is in use by targeted BBE subscriber, commit denied - mtu config changed (1522), (1514). PR1577007

  • Traffic loss might be seen when subscriber service over aggregated Ethernet bundle interface. PR1577289

  • Object anomalies are seen with PTP TC configuration. PR1577375

  • When line card is booted on Routing Engine 1 being master, Next-gen statistics failed to fetch the value of backup MAC address correctly. PR1577611

  • Native sensors does not work for LDP LSP, LDP p2mp sensor. PR1577931

  • The bbe-smgd process crash might be seen when the RADIUS server sends multiple CoA. PR1578162

  • Mismatch in the snapshot recovery steps display message. PR1578556

  • TACACS traffic might be dropped. PR1578579

  • High FPC CPU usage might be seen when signal on the link is unstable. PR1579173

  • Random or silent reboot might be seen. PR1579576

  • On the MPC11E line card, system resource monitor does not list some of the available Packet Forwarding Engines. PR1579975

  • On MX Virtual Chassis, data is missing in gRPC based components or sensor output. PR1580120

  • Authentication might fail if the password contains special characters. PR1580003

  • When analyzers mapped to channelized port, then the mirror might not happen properly. PR1580473

  • BFD session with in-line mode might flap during network congestion. PR1580320

  • The l2cpd process might crash on dual Routing Engines. PR1580479

  • More than one subscriber on same VLAN fails to apply same FWF template. PR1580826

  • Need to add support for Virtual Chassis licensing. PR1580880

  • Issue is observed in telemetry when the set services analytics streaming-server configuration is present and server is not reachable. PR1581192

  • Memory leak might happen due to stale NAT64 entries. PR1581231

  • VM core messages are generated at 0xffffffff80443eef in kern_reboot. PR1581260

  • The rpd process might crash on the new primary after performing graceful switchover. PR1581878

  • Changing bandwidth statement does not take affect for SNMP ifHigSpeed oid until a PSX interface is disable/enabled. PR1582060

  • The l2ald process generates the core file in l2ald_vxlan_ifl_create_event_handler while running the EVPN VXLAN scripts in VQFX during the PCT submission. PR1582128

  • Communication between two CE devices might be failed when BGP rib-sharding is enabled. PR1582210

  • Pciephy and firmware download are not working after migration to 6.5.19. PR1582244

  • The bbe-smgd process on both routing engines might crash due to a rare timing issue after log out of subscribers over pseudowire. PR1582356

  • On MX960 devices, the 400G and 4x100G optics laser restores after reboot despite interface disable being configured. PR1582418

  • Destination port might be incorrectly set on MS-MPC and MS-MIC in a DS-Lite scenario. PR1582595

  • Node locked license addition fails. PR1582704

  • Configuring or removing the hierarchical-scheduler or per-unit-scheduler might cause traffic to stop forwarding. PR1582724

  • The firewall filter logs are incorrectly populated the protocol entries. PR1582780

  • Reset JBS, JAS, JPS definition to align with Hawk License model. PR1583438

  • Reset PFL, AFL definition to align with Hawk License model. PR1583439

  • SNMP SysObjectID.0 is empty with enabled unified-services. PR1583534

  • TCP connection to syslog server might fail to be established after adding tcp-log configuration for an existing service set. PR1583979

  • The jsd process hogging CPU. PR1584357

  • Traffic might not get filtered properly when security-intelligence profile is configured on the MX platforms. PR1584377

  • The rpd process might crash due to a rare timing issue if both BGP Local-RIB and Adjacency-RIB-In route monitoring are enabled in BMP. PR1584560

  • Bridge domain names information is not displayed properly in the show bridge statistics instance command. PR1584874

  • After changing configuration, the show bridge statistics command displays extreme larger value. PR1584876

  • Traffic impact might be seen when tunnel-services bandwidth is configured. PR1584969

  • GRE OAM packets are sent through queue 0 with force-control-packets-on-transit-path statement enabled. PR1586169

  • Traffic drop after enabling flexible-queuing-mode on MPC2E line cards. PR1586403

  • The l2ald process might crash on changing the routing-instance. PR1586516

  • Inter and intra VNI traffic drop might occur in spine with EVPN-VXLAN CRB configuration. PR1586537

  • The rpd process generates core file if the show igmp continuous stats command is executed after GRES. PR1587023

  • Mspmand.core.ms32.0.gz is found while testing memory-usage prints garbage value. PR1587103

  • The SNMP trap for MAC notifications might not be generated when an interface is added explicitly under switch-options. PR1587610

  • The bbe-smgd might crash if the staled ACI based subscribers are not cleaned up properly. PR1587792

  • The na-grpc process crash might be seen and existing telemetry connections will be disconnected. PR1587956

  • The rpd process crash might be observed on the router running in a scaled setup. PR1588439

  • The bbe-statsd memory leak might be observed on backup Routing Engine during subscriber's login and logout. PR1589081

  • The jsd process crash might be seen in a rare condition in a telemetry scenario. PR1589103

  • The l2cpd process might crash. PR1589216

  • Allow default license for FBF, CFM, VRRP, Q-IN-Q, MC_LAG, TIMING, IGMP, PIM, GRE_TUNNEL, RIP, OSPF, Virtual Chassis, and sFlow. PR1589920

  • Expected snooping route is not observed after configuring one bridge with snooping and add interface check. PR1590278

  • Some times show chassis fabric reachability extended detail command shows that fabric healing is complete for Phase 2, while the links to few FPCs or SLCs are still under training. PR1590335

  • Traffic loss might be observed due to FPC crash in a scaled subscriber scenario. PR1590374

  • If the CoS CR-features used by VBF service is configured, MPC might crash with subscriber PR1591533

  • The clear-ipsec-sas-for-duplicate-ts is not clearing secuar Access (SA) for duplicate traffic selectors (TS). PR1591735

  • The xSTP might not get configured when it is enabled on a interface with SP style configuration on all platforms. PR1592264

  • Routing Engine kernel might crash due to logical interfaces of aggregated interface adding failure in Junos OS kernel. PR1592456

  • Any mmcq based services might crash due to shared memory queue issue happens in a rare condition. PR1592889

  • The TCP keepalive message might not be processed by the private network host. PR1593226

  • Fabric errors will be generated after swapping MPC10E with MPC7E line card in the same slot. PR1593821

  • On MX5, MX40, and MX80 routers, TEB stuck in present state. PR1595107

  • On MX Series platforms with EVPN-VXLAN with shared-tunnel configuration, when there is BGP flap or restart of l2ald, then info logs appear. PR1595203

  • The l2ald process might crash on all leaves and spines after a new leaf is added to the EVPN fabric. PR1596229

  • Traffic loss might happen periodically in MACsec used setup if Routing Engine is working under a pressure situation. PR1596755

  • Major alarms on all FPCs in chassis after some time from boot up. PR1597066

Class of Service (CoS)

  • The explicit classifier or rewrite-rule might not work as expected for a logical interface if the wildcard configuration is also applied. PR1556103

  • On the MPC7E line card, the BPS counter of the egress queue displays incorrect BPS value when the cell mode is configured on the static interface. PR1568192

  • FPC crash might be observed after the show class-of-service command execution. PR1568661

  • Class of service commands will be auto sorted and will not be ordered as per the user configuration. PR1568907

  • Unable to configure policer with bandwidth-limit greater than 50g. PR1575049

EVPN

  • Rpd memory leak might occur when the EVPN configuration is changed. PR1540788

  • The rpd process might crash after adding route-target on a dual Routing Engine system under the EVPN multihoming scenario. PR1546992

  • The rpd process might crash under EVPN-VPWS environment. PR1562160

  • Prefix added to the mhevpn.evpn.0 output route table triggers TC failure. PR1566429

  • Traffic might drop on multicast based VXLAN tunnel. PR1567209

  • Policy with mac-filter-list might not work if the change is not related to that policy committed in an EVPN scenario. PR1567623

  • ESI preference is not preferred when configured on lo0 for multicast VXLAN. PR1570618

  • The multicast traffic loss might be seen in EVPN VXLAN scenario with CRB multicast snooping PR1570883

  • The mustd process generates core file during upgrading or while committing a configuration. PR1577548

  • Rpd process might crash in high scaled EVPN VXLAN scenario. PR1581674

  • Multicast traffic loss might be seen in EVPN setup with IGMP snooping used. PR1582134

  • After the device reboot in an EVPN-VXLAN setup with graceful restart, EVPN routes are not advertised to EVPN peers until rpd is up for 180 seconds. PR1586246

  • The BUM traffic might lose after triggering GRES+NSR in an EVPN-MPLS or EVPN-ETREE scenario. PR1586402

  • The traffic might be dropped when EVPN and L3VPN routes are resolved using the same MPLS-over-UDP tunnel. PR1587204

  • The traffic might be dropped in an EVPN-VXLAN multihomed scenario. PR1590128

Forwarding and Sampling

  • After routing restarts, the remote mask that the routing daemon sends might be different from the existing remote mask that the Layer 2 learning daemon had before restart. PR1452990

  • User-defined ARP policer is not applied on aggregated Ethernet interface until firewall process is restarted. PR1528403

  • The dfwd process might crash when implementing non-contiguous firewall filter. PR1555724

  • The configuration archive transfer-on-commit fails. PR1563641

  • In the VXLAN scenario, the locally originated packets have UDP source port 0. PR1571970

  • The pfed memory leak might be observed. PR1573285

  • The l2ald process might crash on changing the routing-instance. PR1584737

General Routing

  • The ndp process might reach to 100 percent and might result in traffic drop. PR1551644

  • More memory usage might occur in ndpd (NDP daemon). PR1568370

  • Silent switchover might be triggered on executing restart routing. PR1570993

  • The DHCP ALQ is not working as expected. PR1578543

  • Rpd process core file might be seen on the backup Routing Engine after a switchover with graceful restart is enabled. PR1582095

  • After performing NSSU, timeout waiting for response from fpc0 error message is seen while checking version detail. PR1584457

Infrastructure

  • On Virtual Chassis and Virtual Chassis fabric, HEAP malloc(0) detected. PR1546036

  • When device trying reboot from OAM might get stuck in OK prompt and leading to reboot from Junos OS. PR1555748

  • Some MAC addresses might not be aged out. PR1579293

Interfaces and Chassis

  • Backup Routing Engine or backup node might get stuck in bad status with improper backup-router configuration. PR1530935

  • On the MPC10 line card, DMRs or SLRs are not received with an EVPN up MEP on the aggregated Ethernet interface with normalization. PR1543641

  • An lacpd core file is obserevd after router reboot. PR1553196

  • Block duplicate IP across different logical interfaces inside same routing instance. PR1555861

  • Sessions are flapped after applying the action profile on the router. PR1561044

  • The input errors counter command on the monitor interface command does not work. PR1561065

  • The ppmd process might crash when VRRP is configured. PR1561281

  • MAC address entry issue might be observed after the MC-LAG interface failover. PR1562535

  • Traffic loss might be seen while verifying VRRP state machine functionality. PR1564551

  • Unable to set member-id as Routing Engine is in synching mode forever when its having invalid Virtual Chassis data. PR1569556

  • The show interface interface name | display xml command output displays the media type if-media-type also along with other parameters. PR1574035

  • There might be increase in memory for the fabspoked process. PR1574391

  • MX Virtual Chassis ISSU incompatible FRU offline can result in unexpected FPC restarts after ISSU completes. PR1575687

  • The following errors are generated during GRES: VRRPMAN_PATRICIA_GROUP_ADD_FAIL: vrrp_ifcm_send_bulk: Failed to add group to patricia tree key and VRRPMAN_ENTRY_KEY_PRESENT: vrrp_ifcm_send_bulk: Already an entry present with the key. PR1575689

  • MC-AE interfaces might go down if same VRRP group-id is configured on multiple IRB units. PR1575779

  • The show interface description display order is different. PR1576224

  • Newly added MC-LAGs do not come up after Routing Engine switchover. PR1583547

  • NCP/PPP negotiation Max-Failure retry count are not configurable. PR1584168

  • Unable to configure pseudowire interface on an MX10003 in Virtual Chassis mode. PR1587499

  • The VRRP host cannot be reached if native-vlan-id is configured. PR1595896

Intrusion Detection and Prevention (IDP)

  • Adding signature in packet drop reason and sending to record packet drops module. PR1574603

J-Web

  • J-Web allows a locally authenticated attacker to escalate their privileges to root. PR1511853

  • To improve performance in Monitoring > Network > Interfaces page, Admin Status is removed, Services and Protocols data merged into one Host inbound traffic. PR1574895

Juniper Extension Toolkit (JET)

  • TCP connection might not be established while creating the default gRPC channel with fw_channel name. PR1559064

  • The custom JET APP will be lost after rebooting. PR1570563

Junos XML API and Scripting

  • Multiple vulnerabilities in cURL resolved. PR1562153

Layer 2 Features

  • LACP gets into detached state when deleting VLAN on aggregate interface configured on SP style. PR1555862

  • Traffic forwarding for VLAN 2 might not be correct when a VLAN member is removed from the ESI interface. PR1570446

  • LACP does not come up in non-oversubscribed mode for a set of ports. PR1563171

  • The clear vpls mac-address could result in rpd core. PR1573406

Layer 2 Ethernet Services

  • The copying of files to the RCB over WAN ports is slow. PR1496895

  • Aggregated Ethernet interface flap might be seen during NSSU. PR1551925

  • DHCP packet drop might be seen when the DHCP relay is configured on a leaf device. PR1554992

  • In a DHCP relay configuration with active lease query, some subscriber's active on master might get logged out. PR1559269

  • Receipt of malformed DHCPv6 packets causes jdhcpd process to crash and restart. PR1564434

  • DHCPv6 option 18 and option 37 might not be created in a DHCP dual stack scenario. PR1564778

  • The jnxJdhcpLocalServerMacAddress (.1.3.6.1.4.1.2636.3.61.61.1.4.3) returns incorrect format of the MAC address. PR1565540

  • The Option 82 information is incorrectly cleared by the DHCP relay agent. PR1568344

  • The DHCP client will be offline for 120 seconds after sending the DHCPINFORM message in a the DHCP relay scenario. PR1575740

  • DHCP relay drops packets during the renewal DHCP process. PR1576417

  • The jdhcpd might crash if the relay-source lo0 is enabled in the DHCP relay. PR1580724

  • The jdhcpd process might not respond to any discover message when it is in clients waiting to be restored state. PR1592552

MPLS

  • The rpd process might crash in a corouted bidirectional RSVP LSP scenario. PR1544890

  • A new LSP might not be up even if bypass LSP is up and setup-protection is configured. PR1555774

  • Incorrect EXP bit change might be seen in certain conditions under MPLS scenario. PR1555797

  • MPLS-LIB memory leak might be seen in segment routing scenario. PR1556495

  • Traffic loss might be observed during rpd crash when RSVP signaled P2MP LSP is configured. PR1559022

  • LDP routes might be stuck when BGP LU session is down. PR1562884

  • Traffic sent over an LSP might be dropped if two consecutive PLRs along the LSP perform local repair and bypass protecting the second PLR fails. PR1566101

  • Unexpected LSP packet count is found in the ingress MPLS LSP statistics. PR1570382

  • The rpd process generates core file when deactivating PCEP protocol followed by RSVP protocol. PR1579370

  • The suboptimal routing issues might be seen in case LDP route with multiple next hops. PR1582037

  • Add lsp-ping-multiplier option support for LDP-OAM similar to RSVP-OAM. PR1582254

  • MBB is not triggered when LSP is reverting back to primary path. PR1587704

Multicast

  • FPC might crash in a multicast scenario. PR1569957

Network Address Translation (NAT)

  • Services NAT mappings and sessions are incorrect while checking the SIP sessions from public to private and RTP from private to public. PR1577922

Network Management and Monitoring

  • The mib2d process crashes and generates a core file on backup Routing Engine. PR1557384

  • Context registration from l2cpd to snmpd might fail after l2cpd service restart. PR1561736

  • SSH connection might become unresponsive and logs the following message: kern.maxfiles limit exceeded by uid. PR1567634

  • Slow memory leak might be observed for snmpd process. PR1575790

Platform and Infrastructure

  • Traffic loss might be observed due to FPC crash on MX platfoms. PR1482683

  • Interwork failure as RPM client and TVP platforms as RPM server (and vice versa). PR1508127

  • Console access on backup Virtual Chassis member is not allowed. PR1530106

  • The npc process generates the core file in igmp_process_wakeup_events,igmp_pfe_thread,thread_detach_tty. PR1534542

  • Packets transiting via multicast-based VXLAN VTEP interface might be dropped post FPC restart. PR1536364

  • The queue-counters-srx-reserved-buffer-bytes count is 625000 bytes, expected buffer is 2500000. PR1538286

  • The following major error message might cause the Packet Forwarding Engine to disable: XQ_CMERROR_SCHED_L3_PERR_ERR. PR1538960

  • Subscribers over an interface-set might not be able to login. PR1539260

  • The kernel might crash if GRES is performed on either new iteration or after swapping the Routing Engine and restoring the HA configuration. PR1549656

  • Traffic loss might be seen as logical interface policer is not processed properly during filter migration. PR1551394

  • Traffic is not forwarded over IRB to a Layer 2 circuit on the lt interfaces. PR1554908

  • SPC3 might not come up after the system reboot. PR1555904

  • The IPv4 EXP rewrite might not work properly when inet6-vpn is enabled. PR1559018

  • The BUM frame might be duplicated on an aggregate device if the extended-port on the satellite device is an aggregated Ethernet interface. PR1560788

  • Interfaces statistics not updated on aggregated Ethernet interface as expected with CCCOAE configurations. PR1561304

  • Multicast traffic with incorrect source MAC address might be observed from IRB interface. PR1561313

  • The DHCPv4 request packets might be incorrectly dropped when DDoS attack occurs. PR1562474

  • Traffic loss might be observed due to FPC crash on MX platforms. PR1563144

  • The mtr process might hog CPU when the traceroute monitor command is paused. PR1563298

  • The enforce-strict-scale-limit-license configuration enforces subscriber license incorrectly in the ESSM subscriber scenario. PR1563975

  • The Last flapped timestamp for interface fxp0 gets reset every time the monitor traffic interface fxp0 command is executed. PR1564323

  • PFEX might crash when soft error recovery feature is enabled on Packet Forwarding Engine. PR1567515

  • Reclassify the severity of the CMERROR XMCHIP_CMERROR_DDRIF_PROTECT_WR_RD_SRAM_RUNN_CHKSM from major to minor. PR1568072

  • The following error message is observed: toe_lu_stats_ucode core found @ jbeta_fcv_alloc_fcv_idx_global jbeta_sfilter_fcv_cb bwy_dfw_sfilter_fcv_cb. PR1569328

  • The following error message is observed: pfe err-jnh_physmem_add_resvd_to_cntr(18014): PFE 0 jnh_app 0x08020860, add ox00080000 from 0x00b00000-0x00b80000 to baMask 0x1. PR1570631

  • FPCs might crash randomly while deleting the interface-set in the system. PR1571192

  • When EVPN-VXLAN is configured, the next-hop memory leak in MX Series ASIC happens whenever there is a route churn for remote MAC-IP entries learned bound to the IRB interface in EVPN-VXLAN routing instance. When the ASIC's next-hop memory partition exhausted the FPC might reboot. PR1571439

  • Scale-subscriber license might not be updated properly on the backup Routing Engine which leads to License grace period for feature scale-subscriber(44) is about to expire alarm after GRES. PR1573289

  • The following error message is observed: cassxr_err_addr(8593): Uninitialized Read Error @ EDMEM[0x7cb601b0]. PR1573920

  • Introduce two new major CMERRORs for XM chip-based line card to stabilize the running device. PR1574631

  • Memory partitioning issue might happen on Packet Forwarding Engine after applying sampling and the flex-flow-sizing to the MX Series with MPCs/MICs based line-cards. PR1575994

  • If committing the source-address addr routing-instance and then delete the source-address addr in private edit mode, commit fails with a warning message. PR1582529

  • VRRP device originally taking backup role might cause destination IP unreachable after VRRP mastership switch-over. PR1584115

  • FPC crash might be observed in a scaled firewall configuration on MX Series platforms. PR1586817

  • The traffic might not failover with shared-bandwidth-policer enabled on aggregated Ethernet. PR1588708

Routing Policy and Firewall Filters

  • Global variable policy_db_type is not set to the correct value on failure. PR1561931

  • Generated route goes to the hidden state when the protect core command is enabled. PR1562867

  • The rpd process might crash when the deletion of routing table occurs. PR1565629

  • The rpd might crash due to the source-address-filter-list enabled within the policy. PR1565891

  • Traffic loss might be observed during rpd process crash when auto-bandwidth is configured. PR1579830

  • The bbe-smgd process fails when reading configuration for address mask prefix-length when configured in a policy statement, causing the service profile to fail. PR1583535

Routing Protocols

  • The rpd process crashes when a fresh router is configured with IS-IS and RIB-group to leak inet3 routes from no-forwarding to primary instance in single commit. PR1534486

  • Unexpected packet loss might happen due to inet-vpn routes not valid in vrf.inet.0 and bgp.l3vpn.0 routing tables. PR1543717

  • Convergence time is high when the IGMP snooping configuration is deleted. PR1550523

  • Specific packets can trigger rpd crash when BGP origin validation is configured with RPKI. PR1556207

  • Route validation states might flip between VALID, INVALID, and UNKNOWN in some corner case. PR1556656

  • Multipath information is displayed for BGP route even after disabling the interface for one path. PR1557604

  • BGP-LU session flap might be seen when the AIGP is used. PR1558102

  • The ISO routes are not leaked in default (master) instance after switchover or reconfiguration. PR1558532

  • Traffic loss might occur for stitched traffic from segment routing towards LDP if no-eligible-backup is configured. PR1558565

  • When admin-color based policy evaluation happens with the policy LFA configuration, the backup next hop chosen (among the possible different backup next hops) might not be correct. PR1558581

  • Incorrect Active, Received, or Accepted counters in the show bgp summary command. PR1558678

  • The rpd process might crash when applying the BGP route policy change. PR1560037

  • VPN routes learned from core were not advertised to the CE devices when BGP sharding is configured. PR1560661

  • All the Layer 3 VPN route resets when a VRF is added or removed. PR1560827

  • Duplicate LSP next hop is shown on inet.0, inet.3 and mpls.0 route table when ospf traffic-engineering shortcuts and mpls bgp-igp-both-ribs are enabled. PR1561207

  • Incorrect SPF calculation might be observed for OSPF with ldp-synchronization hold-time configured after the interface flap. PR1561414

  • The ppmd memory leak might cause traffic loss. PR1561850

  • The rpd process might crash with dynamic tunnels configured. PR1562458

  • The rpd process might crash on the backup Routing Engine after rpd process restart is triggered on the primary Routing Engine. PR1563350

  • The rpd process might crash if there are more routes changed during the commit-sync processing window. PR1565814

  • There might be traffic loss when GRE interface flaps. PR1566428

  • The rpd process might crash in BGP L2VPN scenario due to memory corruption. PR1567026

  • The rpd process might crash when the BGP session re-establishes or flaps. PR1567182

  • The rpd memory leak might be observed during CLI or ephemeral commits in a OSPFv2 scenario. PR1568157

  • Traffic loss might be observed due to the rpd process crash in BGP multipath scenario. PR1568600

  • The rpd process might crash continuously when MoFRR is configured along with TI-LFA. PR1568750

  • Traffic might be lost during mirror data transmit from the primary ppmd or bfdd. PR1570228

  • There might be 10 seconds delay to upload the LSP on the point-to-point interface if rpd process is restarted on its direct neighbor. PR1571395

  • SNMP MIB ospfv3NbrState is returning drifted value. PR1571473

  • Incorrect authentication-algorithm is set in BGP neighbor. PR1571705

  • Rpdagent core seen while testing BFD state replication. PR1571824

  • After first parallel ISSU, subsequent ISSU aborts with Aborting Daemon Prepare due to BFD abort state. PR1572265

  • The DHCP BFD subscriber session does not come up on the MPC Type 2 card and gets stuck in the Down state. PR1572577

  • The DHCP packets might be dropped in the Static VXLAN scenario. PR1576168

  • Provide a CLI option to change default BGP listen port. PR1576728

  • The ppmd might crash when enabling MD5 authentication on OSPF with BFD flapping. PR1576893

  • BGP session flap might be observed after the Routing Engine switchovers when the VRRP virtual address is used as the local address for the BGP session. PR1576959

  • Multicast traffic loss might be observed due to logical PIM de-encapsulation interface is not created as expected. PR1577461

  • The rpd process might crash when two or more routing instances are deleted in one shot. PR1578740

  • The dcpfe process might crash when any interface flaps. PR1579736

  • Rpd core found at thread_next_node jnx_bgp_tunnel_encaps_attr_tunnel_count jnx_bgp_tunnel_encaps_attr_set_tunnel. PR1579818

  • BGP replication might be stuck in rare and timing conditions. PR1581578

  • BGP session carrying VPNv4 prefix with IPv6 next hop might be dropped. PR1580578

  • The rpd process might crash in BGP and MPLS scenarios. PR1581794

  • The route resolution issue is observed after controller facing Packet Forwarding Engine restart or core interface disable or enable PR1581845

  • Possible rpd process might crash with the routing-options transport-class configuration during the restart. PR1582081

  • The voice VLAN might not get assigned to the access interface. PR1582115

  • With IGMP snooping implemented, there is unexpected jitter issue that could cause traffic loss. PR1583207

  • SSH cipher option Triple-DES is disabled in FIPS mode. PR1583470

  • The rpd process crash might be seen in certain IS-IS scenario. PR1583484

  • On rare occasion, rpd process core might be observed on backup Routing Engine after loading a new image. PR1583630

  • Origin-validation replication status shows up in the show task replication command output even when it is not configured. PR1583692

  • The rpd process might crash when BGP RPKI session record-lifetime is configured less than the hold-time. PR1585321

  • The rpd process might crash after committing with the configured static group. PR1586631

  • Incorrect BGP next-hop advertisement in a L3VPN scenario. PR1587879

  • The multicast traffic loss might be observed after unified ISSU is performed. PR1588555

  • The rpd process might crash in a scaled routing instances scenario. PR1590638

  • when you disable or enable BGP in a short time interval on a scaled NSR router can result in backup rpd process restart. PR1591717

  • The remote LFA backup path might not be formed. PR1592424

  • BGP egress-TE routes lose to BGP routes using the same protocol preference. PR1593332

  • The routing process might crash due to memory corruption while processing BGP multipath route. PR1594626

Services Applications

  • The CoA with LI-on or LI-off message might be dropped during CoA process. PR1554618

  • Memory leak might be observed in a tunnel flapping scenario. PR1567291

  • Support to clear l2tp session based on routing-instance name filter. PR1580984

  • IWF AVP value might not be reflected properly on LTS. PR1581096

Subscriber Access Management

  • BBE-SMGD configures incorrect vbf_accurate_accounting_bits to the Packet Forwarding Engine. PR1515899

  • The authd might crash after performing unified ISSU in a MX BNG scenario. PR1570096

  • CoA request might not be processed correctly from time to time. PR1571501

User Interface and Configuration

  • The port_speed configuration details not present in the picd configuration for ports et-0/0/128 and et-0/0/129. PR1510486

  • The configuration under groups stanza is not inherited properly. PR1529989

  • Commit might fail after the Routing Engine switchovers. PR1531415

  • The operational state would be incorrect on the system and CoS schedulers configuration change might not take effect. PR1536615

  • The mgd process might crash when performing rollback command. PR1554696

  • The chassisd core files might be observed if PIC number 2 or 3 is used on MX204 platforms. PR1555685

  • If the xml output from the request vmhost mode test | display xml rpc command is picked and used in NETCONF fails. PR1559786

  • Memory leak on eventd might be seen when running the request system script event-scripts reload command. PR1570580

  • The LACP might stop working after disabling LACP sync-reset. PR1576146

Virtual Chassis

  • Virtual Chassis might not come up after upgrade when QSFP+-40G-SR4, QSFP+-40G-LR4, or QSFP+40GE-LX4 is used. PR1579430

VPNs

  • Traffic from the reverse direction might cause traffic loss for up to 1 second with NSR switchover. PR1558395

  • Type7 messages might not be sent from egress PE device resulting in Type 3 or Type 5 messages not created for some S, Gs in source PE devices. PR1567584

  • The rpd might crash during a race condition under BGP multipath scenario. PR1567918

  • The iked process might crash when IKEv2 negotiation fails on MX devices. PR1577484

  • The rpd process might crash in the NG-MVPN scenario. PR1579963

  • The traffic of the draft-rosen multicast VPN might lose after switching over the Routing Engines. PR1584720