Alert Type

SRN - Software Release Notification
Low/NotificationSoftware Release Notification
Low/NotificationSoftware Release Notification

Product Affected

ACX PTX QFX running Junos Evolved Software

Alert Description

Junos Software Service Release version 22.3R1-S1-EVO is now available for download from the Junos software download site

Download Junos Software Service Release:

  1. Go to Junos Platforms - Download Software page
  2. Input your product in the "Find a Product" search box
  3. From the Type/OS drop-down menu, select Junos SR
  4. From the Version drop-down menu, select your version
  5. Click the Software tab
  6. Select the Install Package as need and follow the prompts

Solution

Junos Software service Release version 22.3R1-S1-EVO is now available.

22.3R1-S1-EVO - List of Fixed issues

PR NumberSynopsisCategory: Track PRs in BGP Flow Spec area & is part of BGP inside RPD.
1698446Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute in version 22.3R1 (CVE-2022-22184)
Product-Group=evo
If a BGP update message is received over an established BGP session, and that message contains a specific, optional transitive attribute, this session will be torn down with an update message error. This issue cannot propagate beyond an affected system as the processing error occurs as soon as the update is received. This issue is exploitable remotely as the respective attribute will propagate through unaffected systems and intermediate AS (if any). Please refer to https://kb.juniper.net/JSA70175 [juniper.net] for more information.
PR NumberSynopsisCategory: ACX VxLAN Issue
1680253ACX7100-32C: Ipv4/Ipv6 EP-Type2 intra-vni traffic getting failed on leaf device after loading EVO BO profile configs
Product-Group=evo
ACX7100-32C: Ipv4/Ipv6 EP-Type2 intra-vni traffic getting failed on leaf device after loading EVO BO profile configs
PR NumberSynopsisCategory: Paragon Active Assurance
1680309ACX7100: Spikes in jitter that are larger than 5 ms for UDP plugin in PAA for high bandwidth or small packet size.
Product-Group=evo
A Paragon Active Assurance (PAA) Test Agent running on the ACX7100 and ACX7509 may report significant jitter spikes, sometimes exceeding 40ms in latency measurements, even in an idle system. These spikes may originate from the device and do not necessarily represent actual network latency. The data plane forwarding performance is not affected by this issue.
PR NumberSynopsisCategory: Configd, ffp issues
1679476QFX5220: ISSU is not successful on a box loaded with 22.3- ssh failure after ISSU
Product-Group=evo
ISSU is not successful on a box loaded with 22.3 latest ci passed build - ssh failure after ISSU
PR NumberSynopsisCategory: Layer 2 Control Module
1686097The l2ald core seen after zeroize
Product-Group=evo
One time l2ald (Layer 2 Address Learning Daemon) core will be seen once the box comes up after zeroize. There will be no service impact due to this.
PR NumberSynopsisCategory: JDHCP is a daemon for EVO platform to handle DHCP protocol
1658327ACX7100-48L : jdhcpd core seen on boot
Product-Group=evo
core is seen when any invalid range of interfaces in committed in any group under dhcpv6 dhcp-local-server system services and the box is booted. For eg :- set system services dhcp-local-server group g1 interface ge-0/0/1.3 upto ge-0/0/1.1
 
 

22.3R1-S1-EVO - List of Known issues

PR NumberSynopsisCategory: PFE infra to support jvision for EVO
1683552Query returned nothing from the database while validating sync_response
Product-Group=evo
sync_response does not work correctly.

Resolved In: evo:22.2R2-EVO evo:22.2R3-EVO evo:22.3R1-S1-EVO evo:22.3R2-EVO junos:22.2R3 junos:22.3R2 junos:22.4R1 junos:23.1R1
PR NumberSynopsisCategory: Layer 2 Control Module
1686596If MVRP is enabled on an MSTP enabled interface, the interface will be made part of all the existing instances on the switch
Product-Group=evo
, If MVRP is enabled on an MSTP enabled interface, the interface will be made part of all the existing instances on the switch, So, if there are two interfaces between R1 and R2 as below: R1(et-0/0/1 & et-0/0/2)======(et-0/0/1 & et-0/0/2)R2 And one interface is MVRP enabled (say et-0/0/1), and et-0/0/2 is not MVRP enabled. By configuration et-0/0/1 is part of MSTI-1 and et-0/0/2 is part of MSTI-2. MSTI-1 is running on vlan-100 and MSTI-2 is running on Vlan-200. R2 in this case, is advertising only vlan-100. The MVRP enabled interface will become part of all the MSTIs(MSTI-1 and MSTI-2 both) configured on the device and it will take part in the FSM of all the MSTIs. Although et-0/0/1 is not member interface of vlan-200(correspnding to MSTI-2). This potentially can cause a problem where et-0/0/1 although not a vlan-200 member, will go into FWD state and et-0/0/2, genuine member of vlan-200 goes into BLK state for MSTI-2. So, when traffic is received in vlan-200 it will be sent out of et-0/0/1, an it will be dropped.

Resolved In: evo:22.4R1-EVO
PR NumberSynopsisCategory: KRT Queue issues within RPD
1674310The rpd crash may be encountered on Junos Evolved platforms
Product-Group=evo
On Junos Evolved dual RE (Routing Engine) platforms, the rpd (routing protocol daemon) may crash if the NSR (Non-Stop Routing) switchover is performed before even the backup rpd is NSR ready. If the issue is encountered, the rpd may get stuck and not install routes. The workaround to avoid this is to perform the switchover when backup RE is fully synced.

Resolved In: evo:21.4R3-EVO evo:22.1R3-EVO evo:22.2R2-EVO evo:22.3R2-EVO evo:22.4R1-EVO junos:22.1R3 junos:22.2R2 junos:22.3R2 junos:22.4R1
PR NumberSynopsisCategory: PTX10K RE EVO Issues
1692186CBC-FPGA and RE-FPGA firmware upgrades fail
Product-Group=evo
On Junos Evolved PTX10004, PTX10008, and PTX10016 RE-FPGA (Routing Engine Field Programmable Gate Array) and CBC-FPGA (Control Board Field Programmable Gate Array) firmware upgrades will fail and the current RE-FPGA firmware version will not be displayed.

Resolved In: evo:22.2R3-EVO evo:22.3R1-S2-EVO evo:22.3R2-EVO evo:22.4R1-EVO evo:23.1R1-EVO junos:22.2R3 junos:22.3R2 junos:22.4R1 junos:23.1R1
PR NumberSynopsisCategory: Issues related to control plane security
1655537UEFI BIOS Key synchronization tool - efitools.service failed after optics diagnostics test
Product-Group=evo
The efitools.service failed since the EFI data structure is set to be immutable in the JUNOS WRL version 9.x

Resolved In: evo:22.1R3-EVO evo:22.2R2-EVO evo:22.4R1-EVO junos:22.1R3 junos:22.2R1-S2 junos:22.2R2 junos:22.2R3 junos:22.3R1 junos:22.3R1-S1 junos:22.3R2
PR NumberSynopsisCategory: Issues related to NETCONF
1585855< ok/> response is getting generated along with < rpc-error>
Product-Group=evo
When maximum-password-length is configured and user tries to configure password whose length exceeds configured maximum-password-length, error is thrown, along with error '' tag is also emitted. (Ideally '' tag should not be emitted in an error scenario.) The configuration does not get committed.

Resolved In: evo:23.2R1-EVO
PR NumberSynopsisCategory: Issues related to YANG Data Models
1574634The command 'show system yang package | display xml' shows unexpected strings in output
Product-Group=evo
The command 'show system yang package | display xml' shows unexpected strings in output.

Resolved In: evo:23.2R1-EVO
PR NumberSynopsisCategory: Category for Ultron (ACX724) timing issues
1684770PTP/TWAMP will not work on PM50 ports ( et-0/0/0 to et-0/0/3 on ACX7024 and all ports on ACX7100-48L) if FEC74 is enabled on that port.
Product-Group=evo
PTP/TWAMP will not work on PM50 ports ( et-0/0/0 to et-0/0/3 on ACX7024 and all ports on ACX7100-48L) if FEC74 is enabled on that port.

Resolved In: evo:22.3R2-EVO evo:22.4R1-EVO evo:22.4R2-EVO evo:23.1R1-EVO

Modification History

First publication 2023-01-04