Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Software Installation and Upgrade

  • Support for SZTP (EX4100-H-12MP)—Use RFC-8572-based secure zero-touch provisioning (SZTP) to bootstrap your remotely located network devices that are in a factory-default state. SZTP enables mutual authentication between the bootstrap server and the network device before initiating ZTP.

    To enable mutual authentication, the system generates a unique digital voucher based on the Digital Device ID or Cryptographic Digital Identity (DevID) of the network device. The DevID is embedded inside Trusted Platform Module (TPM) 2.0 chip on the network device. We issue a digital voucher to customers for each eligible network device.

    [See Secure Zero Touch Provisioning and Generate Secure ZTP Vouchers.]

  • Hardware root of trust, secure boot, and network boot support (EX4000-12MP, EX4000-24MP, EX4000-48MP, EX4000-8P, EX4000-12P, EX4000-12T, EX4000-24P, EX4000-24T, EX4000-48P, and EX4000-48T)—You can enhance the security of your system with the hardware root of trust (HRoT). HRoT is a hardware-based security feature that verifies the integrity of the firmware, ensuring it has not been compromised or modified without authorization. With HRoT, you establish a trusted foundation starting from the hardware, making it highly resistant to tampering and enabling a secure boot process where only verified firmware is loaded.

    Network booting (netboot), refers to the process of initiating a device's startup directly from a network source, rather than relying on local storage devices such as hard disks or USB drives. This method enables the device to load the Junos OS from a centralized server over the network.

    The platforms provide the newly introduced hardware root of trust (HRoT) support along with secure boot support to authenticate and securely verify the software and boot firmware immediately after powering on. The platforms also provide the newly introduced network boot support.

    [See Junos OS Overview and Boot EX4000 using Network Boot.]