Description

After enrolling an SRX device as a JATP collector, users may encounter the "Download manifest failed <Server Internal Error> [0][500]" error while downloading the Security Intelligence manifest.

This article gives the reason for the download to fail, and details what must be done to resolve the error.

 

Symptoms

The following error is seen:

> show services security-intelligence update status
--------------------------------------------------------------------------
Current action        :Start downloading the latest manifest.
Last update status    :Download manifest failed<Server Internal Error> [0][500].

 

Solution

The manifest might fail to download in certain scenarios because of a missing srx_global_config threshold value. This value is supposed to be always present (even when it is not manually configured in the UI) because the system creates it by default.

But there is a corner case where an appliance is upgraded to JATP 5.0.4.x directly from JATP 5.0.1.x instead of JATP 5.0.2.x. In this case, the value might not get created automatically, thus resulting in the above error.

 

To resolve the above error, configure the SRX Global Threshold in the JATP GUI:

  1. In the JATP GUI, navigate to SRX Global Config > Threat Level Threshold:

alt

  1. Click SRX Settings on the left panel. Enter a value (.25, .50, .75) on the right in the Threat Level Threshold field and click Submit .

  2. Wait for approximately two minutes.

  3. Now execute the following command on the SRX device:
request services security-intelligence download