Juniper Networks 208, 5200, 204, 500, 5XT, 5400 manual Juniper Networks NetScreen Release Notes

Page 37

Juniper Networks

NetScreen Release Notes

 

 

exceeds the maximum number of routes permitted on a single page, all subsequent pages display the routes from the first page.

35417 - If you set the guaranteed or maximum bandwidth (GBW or MBW) higher than the interface bandwidth, traffic does not pass through if there is a policy configured that specifies traffic shaping.

W/A: Adjust the GBW or MBW to be equal or less than the interface bandwidth.

35336 - If you enabled VPN tunneling for syslog traffic and the source interface is bound to a zone that contains multiple interfaces, after upgrading a device from ScreenOS 4.0.0 to ScreenOS 5.0.0, the source interface might have changed.

W/A: After upgrading the Juniper Networks security appliance, verify the VPN settings for syslog and modify if necessary.

35238 - For devices in an NSRP configuration, active/active or active- passive, you have to manually issue the delete ssh device all CLI command on both devices.

34950 - (Juniper NetScreen-5000 only) Failover between two layer 2 interfaces in the same layer 2 security zone is not supported.

34922 - (Juniper NetScreen-50 only) You cannot configure a VSI when the Juniper Networks security appliance is in an active-passive NSRP configuration.

34880 - (Juniper NetScreen-5GT only) Issuing the CLI command 'set interface <interface> manage ident-reset' displays incorrectly as 'set interface <interface> ident-reset' (without the word "manage" in the configuration file).

34670 - (Juniper NetScreen-5GT only) Issuing the CLI command 'set/unset firewall exclude log-self exclude ike' does not change the state of "Log Self for IKE". The 'get firewall' command displays "Log Self for IKE" constantly in the "Off" state.

34663 - Enabling the RTO mirror group direction feature using the set nsrp rto-mirror id <id> direction { in out } CLI command, might cause the preempt mode feature not to work.

34414 - The Juniper Networks security appliance does not perform a revocation check on the signature attack database upon requesting an update.

34070 - (Juniper NetScreen-5GT only) The event message 'AV: Suspicious client <Source IP> <Source Port> -> <Destination IP> <Destination Port> used <X> percent of AV resources, and exceeded the max. of <y> percent'

ScreenOS 5.0.0r9-FIPS

P/N 093-1638-000, Rev. A

Page 37 of 42

Image 37
Contents Contents Version Summary New Features and Enhancements in ScreenOS 5.0.0r9-FIPS New Features and EnhancementsNew Features and Enhancements from ScreenOS 5.0.0r8 Set av http skipmime Unset av http skipmimeNew Features and Enhancements from ScreenOS 5.0.0r1 New Features and Enhancements from ScreenOS 5.0.0r6Addressed Issues in ScreenOS Changes to Default BehaviorAddressed Issues in ScreenOS 5.0.0r9-FIPS Get log system savedJuniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes VIP cannot be contacted VIP is now alive Addressed Issues from ScreenOS 5.0.0r8 Juniper Networks NetScreen Release Notes Get traffic log include Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Dhcp IP Pool not in the same subnet with gateway/interface Juniper Networks NetScreen Release Notes Addressed Issues from ScreenOS 5.0.0r6 Addressed Issues from ScreenOS 5.0.0r7Juniper Networks NetScreen Release Notes Addressed Issues from ScreenOS 5.0.0r4 Addressed Issues from ScreenOS 5.0.0r5Set interface tunnel.2 nhtb 10.1.2.5 vpn Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Addressed Issues from Previous Releases Juniper Networks NetScreen Release Notes Limitations of Features in ScreenOS Known IssuesGeneral Compatibility Issues Compatibility Issues in ScreenOSUpgrade Paths from Previous Releases Known Issues in ScreenOS 5.0.0r9-FIPS Known Issues in ScreenOSKnown Issues from ScreenOS 5.0.0r8 Known Issues from ScreenOS 5.0.0r6 Known Issues from ScreenOS 5.0.0r7Known Issues from ScreenOS 5.0.0r5 Known Issues from ScreenOS 5.0.0r4Known Issues from ScreenOS 5.0.0r3 for the 5000-M2 Known Issues from ScreenOS 5.0.0r2 Known Issues from ScreenOS 5.0.0r3Known Issues from ScreenOS 5.0.0r1 Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Juniper Networks NetScreen Release Notes Known Issues from Previous Releases Getting Help