Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

What's Changed

Learn about what changed in this release for vSRX.

Content Security

  • New fallback option for antivirus (SRX Series and vSRX)—We introduce the server-connection-err statement at the edit security utm default-configuration anti-virus fallback-options hierarchy level. This new statement enables you to configure the fallback actions when the device to Sophos server connection has an error due to following reasons:

    • Sophos server configuration does not have an SSL initiation profile.

    • Server host is not resolved.

    • Outgoing interface IP is not available.

    • Server to device connection creation failed due to internal errors.

    We've also enhanced the show security utm anti-virus statistics output with the Server connection error counter.

    See fallback-options (Security Antivirus Sophos Engine).

Network Management and Monitoring

  • NETCONF <copy-config> operations support a file:// URI for copy to file operations (ACX Series, EX Series, MX Series, QFX Series, SRX Series, vMX, and vSRX)—The NETCONF <copy-config> operation supports using a file:// URI when <url> is the target and specifies the absolute path of a local file.

    [See <copy-config>.]

VPNs

  • Introduction of extensive option for IPsec security associations (MX Series, SRX Series and vSRX 3.0)—We've introduced the extensive option for the show security ipsec security-associations command. Use this option to display IPsec security associations with all the tunnel events. Use the existing detail option to display upto ten events in reverse chronological order.

    See show security ipsec security-associations.