Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


Resolved Issues

Learn about the issues fixed in this release for vSRX.

For the most complete and latest information about known Junos OS defects, use the Juniper Networks online Junos Problem Report Search application.

Flow-Based and Packet-Based Processing

  • traffic in the power-mode still passthrough when the ingress logic interface is manually disabled PR1604144

  • TCP-MSS override for GREoIPSec does not work PR1630124

Intrusion Detection and Prevention (IDP)

  • 21.2R3:SRX345:vSRX3.0:Device is hanging while checking the cli " show security idp attack attack-list policy combine-policy" PR1616782


  • Significant performance improvements were made to JWeb in this release. PR1652676

  • Various page errors have been corrected in JWeb PR1658330

Network Address Translation (NAT)

  • Datapath daemon might crash resulting in total traffic and service failure PR1645039

Platform and Infrastructure

  • SRX_RIAD:CSRX:LOG: RT-Log pattern is not matching in 21.1R1, 21.2R2, 21.2R1 and 21.4R1. PR1565153

  • PKID core during auto-re-enrollment of CMPv2 certificates. PR1580442

  • On SRX Series devices running DNS Security, if a DGA was detected and the action in the configuration was set to 'permit', under rare circumstances, a log would not be generated by the device. PR1624076

  • On SRX Series devices running DNS Security, a dataplane memory leak may occur within the DNSF plugin when entries age-out of the DNSF cache PR1633519

  • Application group name is not found for micro apps in CLI show output PR1640040

  • 22.1R1:SRX-RIAD:vSRX3.0: SSL: RT:junos-ssl-term is not found in ssl-trace-new logs PR1640075

  • Certificate-based VPN tunnel is not established PR1655571

  • The crash files may be seen on SRX platforms PR1655808

Unified Threat Management (UTM)

  • New UTM Content-Filtering CLI is changing from seclog to log PR1634580

  • Modification of Content-Filtering rule order after JunOS 21.4 would not have the desired effect. PR1653488

  • Web browser traffic might get blocked when matched to the content-filtering rule with file-types 7z PR1656266


  • IPsec tunnel might stop processing traffic PR1636458

  • 22.4DCB-PCT:"ipsec tunnel-events-statistics" is not coming as expected while Verifying IPv4 Auto-VPN in point-to-multipoint mode using IKEv2 with DUT as spoke with latest DCB PR1669110