Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Open Issues

Learn about open issues in Junos OS Release 21.4R2 for vSRX Virtual Firewall.

For the most complete and latest information about known Junos OS defects, use the Juniper Networks online Junos Problem Report Search application.

Flow-Based and Packet-Based Processing

  • Traffic in the power mode still passthrough when the ingress logic interface is manually disabled. PR1604144

  • The ICMPv6 TCP sequence information is missing in the ICMP v6 error generated. PR1611202

  • You must keep 1 to 2 minutes gap between two configuration commits if there are lots of security policies which need time to be processed. PR1625531

Platform and Infrastructure

  • With ssl-proxy configured along with web-proxy, the client session might not closed on the device even though proxy session ends gracefully. PR1580526

  • The prerformance will be improved by set security forwarding-options no-allow-dataplane-sleep command. PR1602564

  • One needs to configure set security forwarding-options no-allow-dataplane-sleep for high traffic rate use cases. PR1602606

  • AMR first session traffic is not copying over multiple paths for IPv6 traffic over IPv6 IPsec tunnel mode PR1643570

Routing Policy and Firewall Filters

  • Policy re-match is not working when source-tenant or destination-service match criteria modified. PR1625172

VPNs

  • When using Group VPN, in certain cases, the PUSH ACK message from the group member to the group key server may be lost. The group member can still send rekey requests for the TEK SAs before the hard lifetime expiry. Only if the key server sends any new PUSH messages to the group members, those updates would not be received by the group member since the key server would have removed the member from registered members list. PR1608290