Resolved Issues
Learn about the issues fixed in this release for SRX Series Firewalls.
For the most complete and latest information about known Junos OS defects, use the Juniper Networks online Junos Problem Report Search application.
- Chassis Clustering
- Flow-Based and Packet-Based Processing
- General Routing
- Intrusion Detection and Prevention (IDP)
- J-Web
- Platform and Infrastructure
- Routing Policy and Firewall Filters
- Content Security
- User Interface and Configuration
- VLAN Infrastructure
- VPNs
Chassis Clustering
-
Core files are generated on both the nodes when you upgrade to Junos OS Release 21.2 and higher. PR1736985
Flow-Based and Packet-Based Processing
-
The srxpfe process pause when ATP Cloud turned on. PR1783101
-
PMI sends packets to the wrong destination. PR1783595
-
Packets over GRE or IPIP or GRE(PMI) might not reach destination. PR1791633
-
The GTP-U packet destination port gets duplicated to the source port and subsequently discarded by policy. PR1798041
-
The commit will not go through when more than 128 VRF groups for Layer 3 VPN are configured. PR1802089
-
VXLAN session not created after committing FTI configuration on both devices. PR1807339
General Routing
-
TSC_DEADLINE timer feature is disabled in Intel CPUs if the microcode version is less than 0x3A. PR1608045
-
High latency observed while pinging to peer device. PR1714620
-
SRX4100 and SRX4200 devices accepts the datapath-debug configuration although it does not support. PR1739559
-
On SRX1500, PEM alarms are displayed due to hardware limitations to read I2C. PR1751496
-
ARP resolution failure for lt interfaces is observed after cluster failover. PR1753191
-
DNS proxy feature not working on logical tunnel interfaces. PR1760684
-
Traffic drop observed right after boot up on SRX4600 device. PR1775083
-
IPsec tunnel behind NAT stops passing traffic when the NAT port number or IP address changes. PR1776216
-
IP monitoring fail to install route after cluster reboot. PR1780326
-
Chassis alarm not present for if or var partition usage exceeds 100 percent. PR1784983
-
Validate result is in processing state for more than five minutes when the configured validator port is in incorrect. PR1786432
-
The flowd process stops when the TLS 1.3 session ticket is received on SSL-I. PR1788673
-
The srxpfe or flowd process generates core files while trying to update the path probe statistics. PR1790782
-
The ISSU fails in Layer 2 HA cluster deployment. PR1803376
-
The sxrpfe and fwauthd process generates core files. PR1804149
-
IPsec VPN is getting flapped due to warning messages PR1805493
Intrusion Detection and Prevention (IDP)
-
The flowd process generates core files when the device is rebooted. PR1786822
J-Web
Platform and Infrastructure
Routing Policy and Firewall Filters
-
Security policies might not synchronize during ISSU. PR1783249
Content Security
-
The Web filtering does not work for HTTPS traffic that is sent from Google Chrome browser or MS Edge v124. PR1806786
User Interface and Configuration
-
The SSH configuration changes do not come into affect on an existing outbound SSH client connection. PR1791814
VLAN Infrastructure
-
Packet and byte counters in flow session result or traffic log are not correct for traffic uses Content Security or ALG services when SRX Series Firewall device working in Layer 2 mode. PR1787772
VPNs
-
Tunnel IKE and IPsec fails to come up on SRX Series Firewalls with L2HA and FIPS after switchover. PR1793207