Juniper Networks 208, 5200, 204, 500, 5XT, 5400 manual Upgrade Paths from Previous Releases

Models: 500 208 5XT 5200 204 5400

1 42
Download 42 pages 59.79 Kb
Page 31
Image 31
5.2.1 Upgrade Paths from Previous Releases

Juniper Networks

NetScreen Release Notes

 

 

Freeswan - The Freeswan 1.3 VPN client is incompatible with ScreenOS 5.0.0 in certain configurations due to IKE features that Freeswan does not fully support. The result is that Phase 2 negotiations and Phase 2 SA will not complete if the following commands are enabled in 5.0.0:

set ike initiator-set-commit set ike responder-set-commit set ike initial-contact

W/A: Unset these commands to ensure compatible configuration on the Juniper Networks security appliance.

Compatible Web Browsers - The WebUI for ScreenOS 5.0.0 was tested with and supports Microsoft Internet Explorer (IE) browser versions 5.5 and above, and Netscape Navigator 6.X for Microsoft Windows platforms, and Microsoft Internet Explorer version 5.1 for MacOS 10.x. Other versions of these and other browsers, were reported to display erroneous behavior.

SNMP Trap Type Values Different in ScreenOS 5.0.0 – ScreenOS 5.0.0 uses a different numbering system than previous ScreenOS releases to identify trap types. SNMP maps specific integers to indicate specific trap types, or events that generate traps. For example, the traditional SNMP trap type value for a Cold Start is 0. However, different vendors deploy different values to indicate different trap types. Please check the ScreenOS Messages Guide for the correct values in ScreenOS 5.0.0.

5.2.1 Upgrade Paths from Previous Releases

For detailed information on how to upgrade any Juniper Networks security appliance from ScreenOS 4.0.0 and later to ScreenOS 5.0.0, refer to the NetScreen ScreenOS Migration Guide. The migration guide provides step-by- step upgrade procedures and important information about upgrading Juniper Networks security appliances.

Important: To avoid downtime while upgrading devices in an NSRP configuration (active-passive or active/active), refer to the NetScreen ScreenOS Migration Guide which describes procedures to upgrade the devices without causing any downtime.

The migration guide also provides a step-by-step procedure to downgrade a Juniper Networks security appliance from ScreenOS 5.0.0 to ScreenOS 4.0.0 and later using the exec downgrade CLI command.

ScreenOS 5.0.0r9-FIPS

P/N 093-1638-000, Rev. A

Page 31 of 42

Page 31
Image 31
Juniper Networks 208, 5200, 204, 500, 5XT, 5400 manual Upgrade Paths from Previous Releases