Open Issues
Learn about open issues in this release for vSRX.
For the most complete and latest information about known Junos OS defects, use the Juniper Networks online Junos Problem Report Search application.
Infrastructure
-
With ssl-proxy configured along with web-proxy, the client session might not get closed on the device until session timeout, even though the proxy session ends gracefully.PR1580526
-
Device does not drop session with server certificate chain more than 6.PR1663062
-
Earlier implementation of kvmclock with vDSO (virtual Dynamic Shared Object) which helps avoid the system call overhead for user space applications had problem of time drift, the latest set of changes takes care of initializing the clock after all auxiliary processors are launched so that the clock initialization is accurate.PR1691036
-
FIPS mode is not supported in this release for SRX devices.PR1697999
-
On SRX platforms, log streaming to the security director cloud fails on TLS when DNS re-query is performed.PR1708116
VPNs
-
In some scenarios, the kmd core might be seen when all VPNs are down. PR1336368
-
When using Group VPN, in certain cases, the PUSH ACK message from the group member to the group key server may be lost. The group member can still send rekey requests for the TEK SAs before the hard lifetime expiry. Only if the key server sends any new PUSH messages to the group members, those updates would not be received by the group member since the key server would have removed the member from registered members list. PR1608290