Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Resolved Issues: 21.3R1

Class of Service (CoS)

  • Traffic might drop when you activate or deactivate the target-mode using the set chassis satellite-management fpc [] target-mode command. PR1593059

  • The child mgd processes might become nonresponsive when multiple sessions continuously ask for interface information. PR1599024

  • Traffic loss might occur if you configure the per-unit-scheduler on the aggregated Ethernet interface. PR1599857

  • 802.1p rewrite policies might not have any effect if the rewrite gets tied to circuit cross-connect interfaces. PR1603909

EVPN

  • Prefix added to the output of the mhevpn.evpn.0 route table triggers TC failure. PR1566429

  • The label field for the EVPN Type 1 route gets set to 1. PR1594981

  • The multicast traffic loss might occur in the EVPN VXLAN scenario with the CRB multicast snooping. PR1570883

  • Configuring the static-mac and no-mac-learning simultaneously on the VXLAN interface causes stale MAC/IP entry in the EVPN database. PR1576147

  • Sometimes BUM traffic that comes through the EVPN-MPLS tunnel gets dropped or duplicated when the traffic goes out of the aggregated Ethernet interface after the tunnel termination when the aggregated Ethernet interface members span across multiple Packet Forwarding Engines. PR1578314

  • The rpd process might crash if the EVPN routing instances or BGP connections flaps. PR1581674

  • Multicast traffic loss might occur in the EVPN setup with IGMP snooping. PR1582134

  • After device reboots in the EVPN VXLAN setup with a graceful restart, the EVPN routes do not get advertised to the EVPN peers until the rpd process goes up for 180 seconds. PR1586246

  • The BUM traffic might lose after triggering NSR in the EVPN MPLS or EVPN-ETREE scenario. PR1586402

  • The traffic might be dropped when the EVPN and Layer 3 VPN routes gets resolved using the same MPLS-over-UDP tunnel. PR1587204

  • The traffic might be dropped in the EVPN VXLAN multihomed scenario. PR1590128

  • Traffic loss might occur in the EVPN-VxLAN scenario when the MAC-IP moves from one CE interface to another. PR1591264

  • Transit traffic gets dropped after you disable one of the PE-CE device link on a remote multihome PE device in the EVPN-MPLS A-A setup with Dynamic-List NextHop configured. PR1594326

  • EVPN might not work properly in the multihome setup. PR1596723

Forwarding and Sampling

  • Logical interface statistics for an aggregated sonet displays double value than expected. PR1521223

  • User-defined ARP policer are not applied on the aggregated Ethernet interface until the firewall process restarts. PR1528403

  • The l2ald process might crash when you change the routing-instance. PR1584737

  • The snmpwalk process might not get polled in the mib for some logical child interface. PR1601761

General Routing

  • Routing Engine switchover does not work as expected while SSD fails. PR1437745

  • Memory leaks might be observed on the l2cpd process when you perform certain LLDP operations. PR1608699

  • The auto-sensed L2-BSA subscribers over dynamic-vlan interface might fail after clearing the client on PS ifl for the single-vlan tag. PR1609844

  • The authd process and RADIUS might have stale Layer 2 BSA subscriber entries. PR1610476

  • The DNS-sinkhole functionality does not work since the service PICs are unable to come up when you configure the dnsf package under the chassis configuration. PR1612316

  • After FPC, over subscription of the new subscribers might not be able to connect. PR1607056

  • TCP traffic might be dropped on the source port range 512 to 767 when you configure the flowspec IPv6 filter. PR1607185

  • In the subscriber management scenario, under a rare condition, the Routing Engine reboots and generates a vmcore. PR1607282

  • Jflow-syslog for CGNAT uses 0x0000 in the IPv4 identification field. PR1602528

  • The bbesmgd process generates core file after the Routing Engine goes down. PR1596848

  • On MX10016 router, the SFB Plane not online alarm gets generated after the primary Routing Engine switchovers. PR1597630

  • The following error message might appear periodically in the chassisd logs:

    PR1576173
  • Fabric link training might occur if the fabric selfping silently gets discarded. PR1590054

  • SSL-FP logging for non SNI session occurs. PR1442391

  • Configuring two IPsec gateways for V1 and V2 triggers IKEv1 client tunnels and AutoVPN hub always checks with IKEV2 policy and not on IKEV1. PR1465970

  • Inaccurate allocated memory for nh and dfw_rulemask under kernel might occurs. PR1475478

  • On MX204 router, incorrect log message for PIC1 appears when you change the configuration from PIC mode to port mode. PR1500429

  • VCCV Type 1 connectivity verification is not supported. PR1503724

  • When you configure the SR-sid ingress sensors, mpls-label does not get reaped out. PR1516811

  • Set of information level Orphan (no password entry) cron logs appears every 1 minute. PR1527266

  • Kernel crash might occur after NSSU when you perform GRES. PR1533874

  • The show chassis alarms command must redirect to the show system alarm command. PR1536020

  • Port mirroring stops working for the fti interface when you change the gre source. PR1536223

  • The sessions creation rate gets set to minimal rate after IDS and CPU throttles in a place during DDoS attack. PR1544489

  • The VM host platform might crash continuously after you upgrade or downgrade, and then boot up with the new image. PR1544875

  • The show system core-dumps command needs to support cRPD. PR1546097

  • The 40G or 100G interfaces might flap during ISSU if you deactivate PTP on the interfaces. PR1546704

  • FPC might crash after the multicast traffic flaps. PR1548972

  • When the MX Series device is in the SAEGW-U mode, in rare cases of a double back-to-back failover involving GRES and Node Association release, some access-peers might not be freed (even after the sessions count associated with that peer reaches zero). PR1549689

  • Deletion or deactivation of the ps interface must not be allowed when the BBE subscriber uses the interface. PR1550915

  • Silent compact flash (/dev/ada1) might fail during reboot or startup of a router. PR1551171

  • The interface might not come up with 1G optics. PR1554098

  • The following error messages occurs on the vty when you commit the CLI commands to fetch host route scale:

    PR1554140
  • The device NMI watchdog kicks in after USB scratch installs and wait for the user action to reboot, resulting in a system exception. PR1555142

  • FPC with power related faults might become online again once the Fabric Healing becomes offline. PR1556558

  • On the MPC9E line card, core file is generated when SFB becomes online after ISSU of a GNF. PR1556627

  • The MAC addresses learned in a Virtual Chassis might fail due to aging out in the MAC scaling environment. PR1558128

  • Some transmitting packets might get dropped due to the disable-pfe action being invoked when the fabric self-ping fails. PR1558899

  • The device might run out of service post GRES/ISSU. PR1558958

  • The PIC in the MX-SPC3 line card might get stuck in the Offline status after the flowd process crashes.
  • On the MPC10E line cards, interface is unable to send or receive packets after repeated flapping of the 100G link. PR1560772

  • When you abort ztp using the commit configuration command, the configuration must persist. PR1561142

  • SPC3 is not supported in Junos OS Release 21.1R1 and Junos OS Release 20.4R2 for deployment. PR1561188

  • The Layer 2 interface information does not get included in the DHCPv4 option-82 circuit-id/remote-id and DHCPv6 relay-agent-interface-id/relay-agent-remote-id options when the service provider style configuration for switch interfaces gets employed. PR1564010

  • Commit error appears when you configure the tunnel-service on a PIC without explicit bandwidth. PR1565034

  • The MX150 device might reboot after you issue the request system snapshot recovery command. PR1565138

  • On MX2010 or MX2020 router, the following error message might be observed after switchover with GRES/NSR:

    PR1565223
  • The show pfe statistics traffic command displays incorrect output. PR1566065

  • The license-check process generates core file on the Routing Engine 1 during runtime removal of CB[0] SAM FPGA from the PCie device. PR1567066

  • The sub line cards (SLC) might reboot after loading the configured inline services and services along with the dfwd filters. PR1567313

  • Drop counts in the show interfaces voq ae0 command might not match with the show interfaces queue command when you issue the clear interface command with flowing traffic. PR1567598

  • The MAC addresses might not be relearned successfully after the MAC address age timeouts. PR1567723

  • The chassisd process generates core file with the MPC11 line card moved alternatively from full FPC to SLC mode on GNF. PR1569206

  • The user script output must be logged during the ZTP execution for determining failure in the logs. PR1570167

  • The bbe-smgd process might crash after committing several thousand addresses in a filter term. PR1570536

  • PDB pull or synchronization does not occur in the new primary Routing Engine during unified ISSU. PR1570841

  • Packet loss might occur when you use the sample based action in the firewall filter. PR1571399

  • The BGP sessions might intermittently flap if you enable the egress sFlow sample at a high sampling rate. PR1571636

  • Packets with the MAC address of eth0 and macvlan0@eth0 interface might be sent out to the management interface on the VMHOST platform with NG-RE. PR1571753

  • Router must not boot up with the USB installation again after you select the second option Type reboot and hit return to complete the installation. PR1571930

  • High CPU usage might occur on rpd for routes that uses static subscriber. PR1572130

  • DCI traffic loss of hundred percent occurs in the transit spine devices. PR1572238

  • FPCs restarts automatically after ungraceful removal of SIBs. PR1572431

  • The show services mobile-edge sessions summary access-network-peers command displays incorrect established subscriber output after the UPF Handover ENB step. PR1572520

  • A traffic loop might be observed after the VCP interface flaps. PR1573047

  • Some MPC4E-3D line cards displays the following error message at boot up:

    PR1573729
  • Only the root user can execute commands on the host using vhclient. PR1574240

  • QSFP 4x10G interface might not come up after FPC reboot. PR1574279

  • DS-Lite throughput degradation might occur on MS-MPC. PR1574321

  • On MX MS-MIC/MPC line cards, the mpls-template for jFlow version 9 cannot make a similar template to mpls-ipv4-template template. PR1574402

  • PTP might become nonresponsive in the Phase acquiring state after the ISSU upgrade. PR1575055

  • The rpd process might continuously crash if you delete the forwarding-class policy with the discard action. PR1575177

  • When you configure child inactivity-timeout under the custom ALG configuration, the configuration does not take effect. PR1575183

  • The MPC10E line cards generates the following error message:

    PR1575310
  • On MX150 router, the interface might take a long time to power down while rebooting, powering-off, halting, or upgrading. PR1575328

  • When you remove an interface and add the interface from the aggregated Ethernet interface bundle, invalid status gets displayed in the output of the show interface statistics command. PR1575623

  • The show services service-sets statistics syslog command returns the following error message as the service-set does not have the syslog configuration:

    PR1576044
  • IPsec tunnel does not get established when the proxy-id list is received. PR1576071

  • On MX10016 router, when the Fan X Failed alarm gets cleared in the Fan Tray 1, the Fan/Blower OK SNMP alarms gets generated for the Fan Tray 0 [Fan 31 - 41] and Fan Tray 1 [Fan 11 - 41]. PR1576521

  • Mirrored packets gets corrupted when you apply a filter with the port-mirror action and discard. PR1576914

  • The MS-MPC/SPC3 line cards might reset on receiving the subscriber traffic. PR1576946

  • When you apply the imon firewall instance in the egress direction on the family VPLS interface, InputInt gets reported incorrectly. PR1577212

  • Traffic loss might occur when the subscriber service is over the aggregated Ethernet bundle interface(s). PR1577289

  • After optics OIR, some of the channels displays additional link flap. PR1577676

  • Native sensors does not work for ldp lsp, and ldp p2mp sensor. PR1577931

  • The bbe-smgd process might crash when the RADIUS server sends multiple CoA. PR1578162

  • TACACS traffic might get dropped. PR1578579

  • Kernel might become nonresponsive if multiple master Routing Engine switchovers in a short span of time. PR1578693

  • The MPC11E line card might fail to upgrade. PR1578987

  • High FPC CPU usage might occur when signal on the link gets unstable. PR1579173

  • FPC status LED does not turn RED with the power fault. PR1579466

  • The dcpfe process might crash when any interface flaps. PR1579736

  • On the MPC11E line cards, system resource monitor does not list some of the available Packet Forwarding Engines. PR1579975

  • The MPC7E, MPC8E, MPC9E, amd MPC11E line cards might get stuck in the Unresponsive state in a Junos Node Slicing setup. PR1580168

  • The Inline Jflow Routing Engine command gets handled at low priority than the routes and nexthops learning. When the Packet Forwarding Engine gets busy while downloading the routes and nexthops (for example, commit, route convergence and link flap), the inline jFlow related status command or query might get timed out. This error message is harmless and indicate status query did not succeed. PR1580362

  • FPC becomes nonresponsive in the Online state and continuously reboots during ISSU. PR1580374

  • When you map the analyzers to the channelized port, mirror might not work properly. PR1580473

  • More than one subscriber on the same VLAN fails to apply the same FWF template. PR1580826

  • The traffic related to the native VLAN might be dropped. PR1581075

  • Memory leak might occur due to stale NAT64 entries. PR1581231

  • Hitting with vmcore.0 at 0xffffffff80443eef in kern_reboot occurs. PR1581260

  • The timingd process might crash post NSR. PR1581270

  • The rpd process might crash on the new primary Routing Engine after graceful switchover. PR1581878

  • Changing the bandwidth statement does not take affect for the SNMP ifHigSpeed oid until you disable and enable a PSX interface. PR1582060

  • The rpd process might crash when you configure routing-options transport-class. PR1582081

  • The voice VLAN might not get assigned to the access interface. PR1582115

  • Communication between two CE devices might fail when you enable the BGP rib-sharding. PR1582210

  • The rpd process might become nonresponsive due to the race condition. PR1582226

  • The pciephy and firmware download do not work after migration to 6.5.19. PR1582244

  • The bbe-smgd process might crash after the subscriber logs out due to a rare timing issue. PR1582356

  • On MX960 devices, the 400G and 4x100G optics laser restores after reboot despite configuring the disabled interface. PR1582418

  • Traffic might drop with SPC3 in the DS-LITE scenario. PR1582447

  • Destination port might be incorrectly set on the MS-MPC or MS-MIC line cards in the DS-LITE scenario. PR1582595

  • Configuration or removal of the hierarchical-scheduler or per-unit-scheduler might cause traffic to stop forwarding. PR1582724

  • Load balancing does not work correctly on the AMS interfaces for CGNAT traffic On MX USF mode with SPC3. PR1582764

  • The 1x100G, 2x100G, or 3x100G mode might not work when you use the QSFP56-DD 4x100G optics on an interface. PR1583200

  • The next hop of static LSP for MPLS might get stuck in the Dead state after you change the network mask of the outgoing interface. PR1583245

  • On MX150 router, the bcmd process might crash. PR1583281

  • New master Routing Engine might get stuck in the Switchover is in transition and Please wait state after the master reboot test case if the switchover occurs back-to-back within 2 to 3 seconds. PR1583347

  • SNMP SysObjectID.0 gets empty when you enable unified-services. PR1583534

  • The FRR convergence number becomes high with ALB enabled on the aggregated Ethernet interface bundle. PR1583866

  • TCP connection to syslog server might fail to establish after you add the tcp-log configuration for an existing service-set. PR1583979

  • The Layer 2 multicast VXLAN instance goes down since local vtep logical child interface is not associated to the EVPN instance. PR1584109

  • The jsd process consumes full CPU utillization. PR1584357

  • Traffic might not get filtered properly when you configure the security-intelligence profile. PR1584377

  • The rpd process might crash due to a rare timing issue if you enable both the BGP Local-RIB and Adjacency-RIB-In route monitoring in BMP. PR1584560

  • SIB state might not get updated properly when you physically remove the SIB from chassis during SWO. PR1584706

  • Bridge domain names information does not displayed properly in the show bridge statistics instance command. PR1584874

  • After changing the configuration, the show bridge statistics command displays extremely larger value. PR1584876

  • Traffic impact might occur when you configure the tunnel-services bandwidth. PR1584969

  • The vmcore process might generate core file after switchover. PR1585436

  • The secure web proxy continues to send the DNS query for the unresolved DNS entry even after removing the entry. PR1585542

  • GRE OAM packets are sent through queue 0 with the force-control-packets-on-transit-path statement enabled. PR1586169

  • On the MPC2E line cards, traffic drops after enabling the flexible-queuing-mode. PR1586403

  • The following error message appears on certain scenarios when the rpd or GRES restarts with NSR enabled:

    PR1586466
  • The l2ald process might crash when you change the routing-instance. PR1586516

  • Inter and intra VNI traffic might drop in spine with the EVPNVXLAN CRB configuration. PR1586537

  • The rpd process might generate core file if you execute the show igmp continuous stats command after GRES. PR1587023

  • The mspmand.core.ms32.0.gz process might generate core file when you test the memory-usage prints garbage value. PR1587103

  • The SNMP trap for MAC notifications might not be generate when you add an interface explicitly under the switch-options. PR1587610

  • The bbe-smgd process might crash if the staled ACI-based subscribers does not get cleaned up properly. PR1587792

  • The rpd process might crash on the router running a scaled setup. PR1588439

  • The bbe-statsd process might leak memory on the backup Routing Engine during the subscribers login or logout. PR1589081

  • The jsd process might crash in a rare condition in a telemetry scenario. PR1589103

  • The l2cpd process might crash. PR1589216

  • Traffic loss might occur for the interface configured in the subnet 137.63.0.0/16. PR1590040

  • The output of the open configuration BGP route community command displays incorrectly when you use large BGP communities. PR1590083

  • VXLAN DDoS violation might occur when you disable the port mirror analyzer interface. PR1590150

  • Sensor statistics might not be displayed accurately in the show network-agent statistics operational command for the data generated from the multiple nodes. PR1590249

  • Even before the FPC or SLC comes online fully during phase 2 of fabric healing and fabric healing, the restart-action gets completed. PR1590335

  • Traffic loss might be observed due to FPC crash in a scaled subscriber scenario. PR1590374

  • Non-zero values might be displayed against the drop field in the show network-agent statistics command post switchover scenarios. PR1590432

  • NAT service might not occur after AMS switchover or deactivating/activating NAT service. PR1590890

  • The orchagent and syncd processes might crash when you delete the routes. PR1590983

  • Traffic loss might occur post the SAK keys change. PR1591432

  • If you configure the COS CR-features used by VBF service, MPC might crash with the subscriber. PR1591533

  • Frequent phydriver sync_state toggling results in high two way time errors. PR1591667

  • The clear-ipsec-sas-for-duplicate-ts command does not clear the Secure Access (SA) for duplicate traffic-selectors (TS). PR1591735

  • FPC goes offline after switchover in the power budget test case. PR1592004

  • The picd log floods when there is Optics does not support configured speed system alarm. PR1592165

  • xSTP might not get configured when enabled on a interface with SP style configuration. PR1592264

  • The aftmand process might crash when you configure an interface with analyzer. PR1592267

  • ZTP occasionally fails to apply user configuration after the system upgrade. PR1592281

  • The mobiled daemon might crash after switchover for an AMS interface or crashes on the service PIC with the AMS member interfaces. PR1592345

  • The Routing Engine kernel might crash due to logical child interface of an aggregated interface adding failure in the Junos kernel. PR1592456

  • The l2cpd agent might become unresponsive after starting the telemetry service. PR1592473

  • Purge timer starts after the prpd client disconnects with the purge timeout set to never. PR1592591

  • Using the BITS interface from the backup Routing Engine for clock recovery might not work. PR1592657

  • The packet coming from the PS interface and forwarding to the SPC3 might be dropped. PR1592706

  • Any mmcq process-based services might crash due to shared memory queues issue in a rare condition. PR1592889

  • Port related component sensor does not get exported when subscribed to the /components/component/state/path. PR1593031

  • Low priority host bound traffic might starve or delay processing of high priority host bond traffic. PR1593083

  • The TCP connections to the telemetry server might become nonresponsive in the Close wait state. PR1593113

  • The TCP keepalive might not be processed by the private network host. PR1593226

  • IPv6 neighbor might remain unreachable in VRRP for the IPv6 scenario. PR1593539

  • Jweb Deny log nested-application displays unknown instead of the specific application. PR1593560

  • Fabric errors do not get generated after swapping the MPC10E line card with the MPC7E line card in the same slot. PR1593821

  • Packet drop might occur when traffic moves from one FPC to another FPC. PR1594244

  • On MX5, MX40, and MX80 line cards, TEB becomes nonresponsive in the Present state. PR1595107

  • Default wavelength for 400G ZR modules displays incorrect value. PR1595498

  • The interface might be delayed after you issue the set interface interfacename disable command. PR1595682

  • Firmware might fail to be downloaded to MIC on the MX Virtual Chassis setup. PR1595693

  • The applications might crash if the publishing parent objects linked child objects gets published by the different applications. PR1595846

  • Mismatch in the master and backup Routing Engines with inetcolour tables and BGP-SRTE tunnels occurs. PR1596095

  • Packet Forwading Engine wedge might occur if many IPv4 packets are received that need to be fragmented. PR1596100

  • The l2ald process might crash on all the leaves and spines after you add a new leaf to the EVPN fabric. PR1596229

  • The nsd process generates core file when you verify the session-limit rate and issue the bypass-traffic-on-exceeding-flow-limits command. PR1596578

  • Traffic loss might occur periodically in the MACsec-used setup if the Routing Engine works under a pressure situation. PR1596755

  • The SR-TE tunnel initiated from a non-juniper PCE might fail. PR1596821

  • Traffic fails to recover after multiple quick dot1xd restarts when you enable the MACsec suspend-for option. PR1596854

  • CGNAT MX SPC3 AMS warm-standby 1:1 redundancy problem with CLI CPU statistics lost data after PIC failover occurs. PR1596976

  • The IFD creation fails after you add or delete the invalid speed configuration. PR1597022

  • Major alarms on all FPCs in chassis might appear after some time from the bootup. PR1597066

  • The MAC/IP withdraw route might be suppressed by rpd in the EVPN VXLAN scenario. PR1597391

  • ALG traffic might be dropped. PR1598017

  • Subscriber management daemons might continuously generate core files and shutdown with the invalid Routing Engine sensors configured. PR1598351

  • The afeb process might crash with MIC-3D-8DS3-E3. PR1598411

  • Upper backplane type for the MX2020 router are incorrectly reported as Chassis. PR1598594

  • The packet loop might occur after you receive the PCP request packets, which are destined to softwire concentrator address. PR1598720

  • Component sensor does not export logs. PR1598816

  • The MX SPC3 applications for protocol ICMP does not get detected and does not allow user to modify inactivity-timeout values. PR1599603

  • The configuration check would fail if you configure more than 8 FCs and enable CBF. PR1600544

  • The multiservices card does not drop the TCP acknowledgment packet received as a reply to the self-generated TCP keepalive. PR1600619

  • Duplicate Address Detection(DAD) flags appears for the IRB interfaces after removing the configuration and restoration, which may lead to traffic blockage. PR1601065

  • The BBE-SMGD process generates core files at bbe_dequeue_and_deliver bbe_process_work_queues bbe_smd_main_post_dispatch. PR1601203

  • Unable to commit configuration due to the Check-out failed error message for the mobility process. PR1601785

  • Few line cards might not come up online with the increased-bandwidth mode. PR1602080

  • The Packet Forwarding Engine might get disabled by a detected major CMERROR event when you ungracefully remove the MIC from MPC2E-3D-NG/MPC3E--3D-NG. PR1602939

  • On MX150 router, interface hold-time up does not work. PR1604554

  • The MPLS transit router might push an extra entropy label to the LSP. PR1605865

  • IRB IFL do not get created after a sequence of events. PR1565842

  • The rpd process might generate core file after the Routing Engine switchovers. PR1582095

  • NSSU performed with MACsec configuration might result in the fxpc process to generate the core file. PR1603602

  • After performing NSSU, the following error message appears when you check the version details:

    PR1584457
  • The MVPN traffic loss might occur due to missing of the flooded multicast next-hop. PR1587054

  • The rpdagent process crashes on the primary Routing Engine after enabling multiple GRES with GR/NSR. PR1593104

  • Node name should not be attached to the system hostname under LLDP. PR1593991

  • On MX480 routr, the subinfo process generates core file with the Layer 2 Node Scaling. PR1598187

Infrastructure

  • While loading the kernel, the kernel displays the following error message:

    PR1549754
  • The fxpc process might crash and generate core PR1611480

  • The Virtual Machine might crash if you share a file between the host operating system and guest operating system using virtFS. PR1551193

  • The vme/me0 management interface cannot process any incoming packets. PR1552952

Interfaces and Chassis

  • On the MPC10 line cards, DMRs or SLRs are not received with an EVPN up MEP on the aggregated Ethernet interface with normalization. PR1543641

  • Configuration check-out fails with the following error message:

    PR1581877
  • Traffic might be interrupted while adding the xe or ge interfaces as member of the aggregated Ethernet interface bundle. PR1569399

  • if-media-type is missed from the interface XML output. PR1574035

  • The ARP resolution failure might occur during the VRRP failover. PR1578126

  • The alarm data type of the JVISION optics sensor gets changed from bool_val to str_val. PR1580113

  • Newly added MC-LAGs do not come up after the Routing Engine switchovers. PR1583547

  • When changing the address of the Micro BFD session from IPv4 to IPv6, the BFD session and the aggregated Ethernet interfaces goes down. PR1584853

  • On MX10003 router in the Virtual Chassis mode, you cannot configure the pseudowire interface. PR1587499

  • The dcd process might crash after the Routing Engine switchovers, reboots, or change the management interface configuration. PR1587552

  • The VRRP host cannot be reached if you configure native-vlan-id. PR1595896

  • Duplicate src + dest pair check gets completed only after across the same tunnel encapsulation type for FTI. PR1599266

  • The dcd process might crash and FPC might be stuck in the Ready state. PR1601566

  • The aggregated Ethernet interface might flap when you change the configuration. PR1602656

  • Memory leak on the dcd process occurs when you commit configuration changes on any interfaces in a setup with AMS interface configured. PR1608281

Intrusion Detection and Prevention (IDP)

  • Addition of signature in the packet drop occurs and sends the signature to the record packet drops module. PR1574603

J-Web

  • J-Web allows a locally authenticated attacker to escalate their privileges to root. PR1511853

Juniper Extension Toolkit (JET)

  • GRPC connections gets stuck in the Established state with no active collector. PR1592542

Junos Fusion Enterprise

  • Reverting mastership from the Routing Engine 1 to Routing Engine 0 might crash the l2ald daemon and cause an outage. PR1601817

Layer 2 Ethernet Services

  • The DHCP client becomes offline for 120 seconds after sending the DHCPINFORM message in the DHCP relay scenario. PR1575740

  • DHCP relay drops packets during the renewal DHCP process. PR1576417

  • The jdhcpd process might crash if you enable relay-source lo0 in the DHCP relay. PR1580724

  • The traffic received on a port in the LACP detached state might be incorrectly forwarded. PR1582459

  • An ALQ synchronization issue on the primary and backup BNG occurs with the loss of subscriber session redundancy through the ps interface. PR1583310

  • The DHCP ALQ queue might become nonresponsive causing the subscriber to flap. PR1590421

  • The jdhcpd process might not respond to any discover message when the process is in the Clients waiting to be restored state. PR1592552

MPLS

  • The rpd process might crash in the co-routed bidirectional RSVP LSP scenario. PR1544890

  • LDP P2MP traffic might be interrupted post GRES. PR1609559

  • Traffic loss might occur when the rpd process crashes with RVP-signaled P2MP LSP configured. PR1559022

  • The LSP might fail to be established when you enable the ISIS-TE or OSPF-TE. PR1575060

  • Sub-optimal routing issues might occur in case of LDP route with multiple next-hops. PR1582037

  • Need to add support the lsp-ping-multiplier option for LDP-OAM similar to RSVP-OAM. PR1582254

  • MBB do not get triggered when LSP reverts to the primary path. PR1587704

  • The rpd process genrates core file in the backup Routing Engine at mirror_process_recvd_data_queue with the mldp NSR configuration. PR1594405

  • The LDP replication session might not get synchronized when you enable the dual-transport. PR1598174

  • Static LDP P2MP might fail after the NSR switchovers. PR1598344

  • The VPLS connection might go down if you configure the dual-transport statement. PR1601854

  • RSVP detour LSP might fail to come up when an LSR in the detour path goes down. PR1603613

  • The rpd process might crash on the standby_re LDP module when you enable the VPLS mac-flush on the peer by default or configuration. PR1610638

Network Address Translation (NAT)

  • Services NAT mappings and sessions are incorrect while checking the SIP sessions from public to private and RTP from private to public. PR1577922

Network Management and Monitoring

  • SNMP reflects outdated ARP entries. PR1606600

Platform and Infrastructure

  • The CoS queue egress interface forwarding-class might not work as expected. PR1538286

  • The PPP/L2TP clients on si-0/4/0 and si-0/5/0 might get disconnected due to keep alive failure. PR1570053

  • The following error message might occur when you configure the adaptive load-balancing on a LAG:

    PR1547240
  • Upon receipt of specific sequences of genuine packets destined to the device, the kernel crashes and restarts. PR1557881

  • The l2tp tunnel might not work with the filter-based encapsulation. PR1568324

  • The toe_lu_stats_ucode process generates core file at jbeta_fcv_alloc_fcv_idx_global jbeta_sfilter_fcv_cb bwy_dfw_sfilter_fcv_cb.PR1569328

  • FPCs might crash randomly when you delete the interface-set in the system. PR1571192

  • Memory partitioning issue might occur on the Packet Forwarding Engine after applying sampling and flex-flow-sizing to the line cards. PR1575994

  • When you commit source-address addr routing-instance and then delete source-address addr in the private edit mode, the commit fails with a warning message. PR1582529

  • VRRP device as the slave role might cause the destination IP to become unreachable after the VRRP mastership switchovers. PR1584115

  • FPC might crash in a scaled firewall configuration. PR1586817

  • The traffic might not failover when you enable shared-bandwidth-policer on the aggregated Ethernet interface. PR1588708

  • The audit process generates core file when you change the TACACs and login user passwords. PR1589953

  • VLAN tagged traffic might be dropped with the service provider style configuration. PR1598251

  • The service filter might get incorrectly programmed in the Packet Forwarding Engine due to a rare timing issue in the enhanced subscriber management environment. PR1598830

  • The kernel might generate core file if you restart the BGP connections after you delete the BGP authentication. PR1601492

  • Multicast traffic gets dropped when forwarded over VPLS through IRB. PR1607311

Routing Policy and Firewall Filters

  • If you configure the customer-defined routing instance under the name-server, you cannot resolve the DSN name. PR1539980

  • Traffic loss might occur due to rpd crash when the NSR switchovers. PR1579830

  • The bbe-smgd - dymanic-profile NACK due to configuration error might occur when you read the address mask prefix-length in the policy options or policy statement. PR1583535

  • BGP route preference using PBR do not get applied to all the routes when you enable the CCNH Inet6. PR1596436

  • IPv6 firewall filter displays commit error when you configure TC in the binary or hexadecimal format. PR1597422

Routing Protocols

  • BGP session might go down due to BGP-LS TLV received going out of order. PR1546416

  • Multicast traffic might get duplicated on the subscriber interface. PR1607493

  • Some routes might get incorrectly programmed in the forwarding table in the kernel with next-hop installed as DEAD. PR1601163

  • The BGP session terminates upon the receipt of the specific BGP FlowSpec advertisement. PR1323474

  • Incorrect active, received, accepted counters might occur in the output of the show bgp summary. PR1558678

  • The rpd memory leak might occur during the ephemeral commits in the OSPFv2 scenario. PR1568157

  • Incorrect authentication-algorithm set in bgp neighbor PR1571705

  • After the first parallel ISSU, subsequent ISSU aborts with the Aborting Daemon Prepare message. PR1572265

  • The BFD session of DHCP subscriber does not come up on the MPC2E card and remains in the Down state. PR1572577

  • Need to provide a cli option to change the default BGP listen port. PR1576728

  • The unexpected CSPF link becomes down or deletes events on LSPs. PR1576818

  • The rpd might crash when two or more routing instances gets deleted in one shot. PR1578740

  • Short multicast packets drops using PIM when multicast traffic is received at a non-RPT/SPT interface. PR1579452

  • BGP session carrying VPNv4 prefix with IPv6 next-hop might be dropped. PR1580578

  • BGP replication might become nonresponsive in rare and timing conditions. PR1581578

  • The rpd might crash in the BGP and MPLS scenario. PR1581794

  • Traffic might misroute or get dropped after the Packet Forwarding Engine restarts or when the interface flaps. PR1581845

  • CPU utilization might be increased to hundred percentage if more than 10M BGP prefixes are received. PR1582411

  • With IGMP snooping implemented, unexpected jitter issue that could cause traffic loss occurs. PR1583207

  • The SSH cipher option Triple-DES gets disabled in the FIPS mode. PR1583470

  • The rpd process might crash in certain IS-IS scenario. PR1583484

  • On rare occasion, the rpd process might generate core file on the backup Routing Engine after loading a new image. PR1583630

  • Even though when you do not configure the show task replication command, the output of the command displaysteh Origin-validation (RV) replication status. PR1583692

  • The rpd process might crash in the BGP multipath scenario if the single hop EBGP peer goes down. PR1585265

  • The rpd process might crash when you configure the BGP RPKI session record-lifetime less than the hold-time. PR1585321

  • Traffic drop might occur when you configure IS-IS. PR1585471

  • The rpd process might crash after you commit the configured static group 224.0.0.0. PR1586631

  • Incorrect BGP next-hop advertisement occurs in the Layer 3 VPN scenario. PR1587879

  • The multicast traffic loss might occur after ISSU. PR1588555

  • The rpd might crash in BGP multipath scenario if interface for a single hop EBGP peer goes down. PR1589141

  • The rpd might crash in the scaled routing instances scenario. PR1590638

  • The rpd process might crash post GRES. PR1590912

  • PIM joins might not be synchronized between the primary and backup Routing Engines due to the restart of the ppmd process. PR1591685

  • Disabling or enabling BGP in a short time interval on a scaled NSR router can result in the backup RPD to restart. PR1591717

  • The rpd process might crash if the BGP peer flaps. PR1592123

  • The remote LFA (loop-free-alternate) backup path might not be formed. PR1592424

  • The routing process might crash due to memory corruption while processing the BGP multipath route. PR1594626

  • The IPv4 static route might still forward traffic unexpectedly even after you delete the static route configuration. PR1599084

  • The rpd process might be stuck at hundred percentage in the OSPFv3 scenario. PR1601187

  • Packet might get drop after changing MTU on the aggregated Ethernet interface. PR1605376

  • With rib-sharding enabled, when you perform any commit, all BGP sessions with 4 byte peer-as flaps (as number 65536 or greater). PR1607777

Services Applications

  • Need to support to clear the l2tp session based on the routing-instance name filter. PR1580984

  • IWF AVP value might not be reflected properly on LTS. PR1581096

  • On MX480 router, the vmcore process generates core file due to doadump (textdump=1) at /volume/build/junos/occam/llvm-5.0/sandbox-204ab-20210401/freebsd/stable_11-204ab/20210401.22. PR1595088

  • The show services l2tp tunnel extensive, show services l2tp session extensive and show subscribers accounting-statistics commands do not work on LTS. PR1596972

  • The kmd.core process generates core file at kmd_gen_fill_sa_pair_sadb_flags @kmd_update_sa_in_kernel @kmd_sa_cfg_children_sa_free. PR1600750

  • The show services l2tp tunnel extensive and show services l2tp session extensive commands provide incorrect outputs on LTS. PR1601886

Subscriber Access Management

  • BBE-SMGD configures in-correct vbf_accurate_accounting_bits to the Packet Forwarding Engine. PR1515899

  • Prefix duplication errors might occur for DHCPv6 over the PPPoE subscribers. PR1609403

  • DHCP session fails when you issue the session-limit-per-username statement. PR1612196

  • Subscribers might remain in the Terminated state when the RADIUS server becomes unreachable. PR1600655

  • The Service session entry creation failed error message appears during ephemeral commit. PR1603030

Unified Threat Management (UTM)

  • No counter available for the juniper-local default action. PR1570500

User Interface and Configuration

  • During rare circumstances, the mgd process might crash and generate a core file on Junos devices connected with the Contrail Service Orchestration (CSO). PR1569903

  • The juniper.conf.gz file gets created with empty data when you create the tenant system. PR1584850

  • Fix fast-diff to detect the change when a deactivated delta-list element gets deleted. PR1586229

  • File copy using FTP does not prompt for password like FreeBSD Junos equivalent. PR1587646

  • The apply-path does not expand for the configuration under groups. PR1592032

  • The mgd process might crash after you commit check. PR1593192

  • Invalid JSON and XML output formats for the command like show system resource-monitor ifd-cos-queue-mapping fpc x | display [json|xml] appears. PR1605897

VPNs

  • Traffic from the reverse direction might cause traffic loss for up to 1 second with NSR switchover. PR1558395

  • The iked process might crash when IKEv2 negotiation fails. PR1577484

  • The rpd might crash in the NG-MVPN scenario. PR1579963

  • The traffic of the Draft-Rosen Multicast VPN might get lost after Routing Engines switchover. PR1584720

  • Unable to add the BGP standard community to NGMVPN Type-6 and Type-7 routes in the VRF export policy. PR1589057

  • The DDoS protection reason packets failed the multicast RPF check might appeears in the NG-MVPN scenario with GRE transport. PR1591228

  • The rpd process might crash if the interface goes down in the BGP-MVPN scenario. PR1597387

  • Authentication fails on bringing up the IPsec tunnel between the DUT and Strongswan-peer with IKE (group21 sha-512 aes-192-cbc) proposal. PR1605275