Alert Type

PSN - Product Support Notification
Low/NotificationSoftware Release Notification
Low/NotificationSoftware Release Notification

Product Affected

ACX PTX QFX running Junos Evolved software

Alert Description

Junos Software Service Release version 22.4R2-S1-EVO is now available for download from the Junos software download site

Download Junos Software Service Release:

  1. Go to Junos Platforms - Download Software page
  2. Input your product in the "Find a Product" search box
  3. From the Type/OS drop-down menu, select Junos SR
  4. From the Version drop-down menu, select your version
  5. Click the Software tab
  6. Select the Install Package as need and follow the prompts

Solution

Junos Software service Release version 22.4R2-S1-EVO is now available.

22.4R2-S1-EVO - List of Fixed issues 

PR NumberSynopsisCategory: Border Gateway Protocol
1705938The BGP sessions will flap after the RE switchover
Product-Group=evo
On all Junos and Junos OS Evolved platforms with dual RE (Routing Engine) or VC (Virtual Chassis) with NSR enabled scenarios, in some rare BGP scaled scenarios upon RE switchover the new Master RE will send out a route refresh message to all the peers, which is not expected. This will eventually lead to the BGP session flap.
1739919Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute (CVE-2023-0026)
Product-Group=evo
An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). Please refer to https://supportportal.juniper.net/JSA71542 [juniper.net] for more details.
PR NumberSynopsisCategory: EVO L3 routing for BCM XGS Platforms
1738709The traffic for the same flow with the same tuple will be sent through different tunnels if the TTL value in IPv4 or the payload length in IPv6 is different
Product-Group=evo
On Junos OS Evolved QFX5130/QFX5700 platforms configured with EVPN-VXLAN (Ethernet VPN-Virtual Extensible LAN), when the packets of a flow have the same tuples but have different TTL (time-to-live) values or payload length, the packets will be sent through multiple VXLAN tunnels, which would lead to a jitter.
PR NumberSynopsisCategory: Firewall related development
1703169CCL:NGPR: filter with payload-protocol cannot be attached to the lo0 egress interface
Product-Group=evo
The commit check 'filter with payload-protocol cannot be attached to the lo0 egress interface' was added to the 22.3 and onward releases as this feature was not supported by the Kernel. The same commit check was not added to 21.4 releases as adding this commit check was high risk. This commit check was introduced in the RLI 53437.
PR NumberSynopsisCategory: Application controller related issues
PR NumberSynopsisCategory: Distributor related issues
1719739The evo-aftmand-bt process may restart when an app exit
Product-Group=evo
On all Junos Evolved platforms, when an app exits (like app restart, node restart, ..), the evo-aftmand-bt process may restart unexpectedly.
PR NumberSynopsisCategory: Interface PRs defect & enhancement requests
1743461Changing speed and adding to AE in the same commit fails
Product-Group=evo
On all Junos OS Evolved platforms, If the changing of the speed and the creation of the ae interfaces is in the same commit, the commit fails with "Interface aeX with child links of mixed speed but link-speed mixed is not configured".
PR NumberSynopsisCategory: ISIS routing protocol
1725686Unnecessary SPF calculation is causing high CPU utilization
Product-Group=evo
On all Junos and Junos Evolved platforms, very frequent SPF (Shortest Path First) calculation, being caused by leaking multiple prefixes across the IS-IS areas, is causing high CPU utilization.
PR NumberSynopsisCategory: PRs for LC1202 Platform and Interface
1734235PTP will get stuck in acquiring state which leads to improper time synchronization after system reboot
Product-Group=evo
On Junos OS Evolved PTX10004/PTX10008/PTX10016/PTX10K-LC1201/PTX10K-LC1202/JNP10K-LC1202 platforms with SyncE (Synchronous Ethernet) and PTP (Precision Time Protocol) after system reboot, SyncE ref will not get locked and the PTP will get stuck in acquiring state and time synchronization will not be proper.
PR NumberSynopsisCategory: OSPF routing protocol
1737978OSPFv3 using the VIP address on the IRB interface will not form adjacencies between peers
Product-Group=evo
OSPFv3 may not form adjacencies on IRB interfaces with VRRP configuration.
PR NumberSynopsisCategory: KRT Queue issues within RPD
1721032Local route is not added in the secondary FIB on all Junos SRX platforms and routes will be permanently stuck in KRT queue
Product-Group=evo
On all Junos SRX platforms when ST (Secure-Tunnel) interface with P2MP (Point-to-Multipoint) is configured and interface routes are leaked via RIB-group (Routing Information Base), local route of the ST interface will not be leaked into forwarding-table of the secondary-RIB and it will be stuck in the KRT (Kernel Routing Table) queue.
PR NumberSynopsisCategory: RPD API infrastructure
1715907After the device reboots with lpm(longest prefix match) profile configured, the default route entry is getting created on ipv4 and ipv6 (pfe hw lpm) due to gRIBI routing instance and same route is removed after the interface flap.
Product-Group=evo
The multi-topology table gribi.inet6.0 is always created when the rib service is being instantiated. Since this is a dynamic table, if we do a configuration commit and the rpd infra module sees that the table is not being used, the dynamic table will be reclaimed (deleted) by the infra module. To prevent the rpd infra module from reclaiming the table, create a dummy route entry in gribi.inet6.0.
PR NumberSynopsisCategory: PTX10K Diagnostics related PRs
1725658Enabling Cell BIST Support for LC1201 and LC1202 new components
Product-Group=evo
With the new component, a software upgrade is needed to support the new hardware for the LC1201, LC1202. (See TSB71797 [juniper.net])
PR NumberSynopsisCategory: PTX10K specific platform PRs
1720259System calls for shutdown after RE switchover
Product-Group=evo
When Routing Engine (RE) mastership switchover is performed, CoolingApp from the new backup Routing Engine might incorrectly interpret the temperature sensor reading and initiates a system shutdown request.
1720276Application failure would occur on Routing Engine switchover
Product-Group=evo
On Junos OS Evolved platforms, application failure would be observed if it exits without cleaning up the zookeeper contents. This is a rare issue, however can have potential impact depending on the application which fails.
PR NumberSynopsisCategory: PTX10K Timing/Sync-E issues tracking
1725260PTX EVO - esmc transmit interfaces may not be listed in "show synchronous-ethernet esmc transmit" CLI with generating clksyncd core by replacing "interface name" with "replace pattern" CLI
Product-Group=evo
On PTX Junos Evolved platforms, esmc transmit interfaces may not be listed in "show synchronous-ethernet esmc transmit" CLI with generating clksyncd core by replacing "interface name".
PR NumberSynopsisCategory: UI Infrastructure - mgd, DAX API, DDL/ODL
1745565The mgd core is observed when 'show' is executed from the configuration mode
Product-Group=evo
On all Junos platforms, when 'show' is executed from the configuration mode, a mgd core is observed which has no functionality impact.
 
 

22.4R2-S1-EVO - List of Known issues 

PR NumberSynopsisCategory: Track PRs in BGP BMP area & is part of BGP inside RPD.
1635143The rpd may crash due to memory pressure for high BGP scale with flapping route and BGP Monitoring Protocol (BMP) collector/station is very slow on all Junos and EVO platforms
Product-Group=evo
On all devices running Junos OS or Junos OS Evolved, where this is a high BGP scale with flapping route and the BGP Monitoring Protocol (BMP) collector/station is very slow, the rpd process might crash due to memory pressure.

Resolved In: junos:20.3X75-D45
PR NumberSynopsisCategory: EVO Layer-2 switching for BCM XGS Platforms
1741712Traffic loss would be seen for host generated traffic on QFX5130 and QFX5700 platforms
Product-Group=evo
On QFX5130 and QFX5700 platforms on LAG(Link Aggregation Group) interfaces with flexible-vlan-tagging enabled and extended-vlan-bridge and native-vlan-id configuration, host generated traffic would be sent untagged to both native VLAN and non-native VLAN.

Resolved In: evo:22.4R3-EVO evo:23.1R2-EVO evo:23.2R2-EVO evo:23.3R1-EVO evo:23.4R1-EVO
PR NumberSynopsisCategory: DNX L2 related features
1745163On ACX7K routers traffic may get affected on interface using ethernet-switching interface-mode trunk due to incorrect DEI marking.
Product-Group=evo
On ACX7K routers traffic may get affected on interface using ethernet-switching interface-mode trunk due to incorrect DEI marking.

Resolved In: evo:22.3R3-S1-EVO evo:22.4R3-EVO evo:23.1R2-EVO evo:23.2R2-EVO evo:23.3R1-EVO evo:23.4R1-EVO
PR NumberSynopsisCategory: SNMP, mib2d issues
1730420ACX7100-32C EVO : LIBJSNMP_NS_LOG_ERR: ERR: truncating signed value to 32 bits error seen in logs
Product-Group=evo
Following log messages are seen in ACX7100-32C EVO if we are querying OIDS of type INTEGER (32 bits). snmpd[10883]: LIBJSNMP_NS_LOG_ERR: ERR: truncating signed value to 32 bits (10) This is a bug in netsnmp code and has been fixed by changing the log message to DEBUG. This error message can be seen if we are querying OIDS of type INTEGER (32 bits) and the value of it has overflowed. But there is no action required by the user for this message.

Resolved In: evo:22.4R3-EVO evo:23.1R2-EVO evo:23.2R1-EVO evo:23.3R1-EVO junos:22.4R3 junos:23.1R2 junos:23.2R1 junos:23.3R1
PR NumberSynopsisCategory: JDHCP is a daemon for EVO platform to handle DHCP protocol
1740530[dhcp] [generic_evo] ACX7509 :: DHCP Daemon is not running in the new master RE post GRES, all dhcpv4/v6 sessions are lost
Product-Group=evo
This issue will be seen on 23.2R1-EVO, while performing GRES on 7509 may not work properly for DHCP sessions.

Resolved In: 
PR NumberSynopsisCategory: UI Infrastructure - mgd, DAX API, DDL/ODL
1730336The rpd crashes and the commit operation fails while pushing a large configuration with the "extend-size" knob enabled
Product-Group=evo
On all Junos platforms, when the 'extend-size' knob is configured and a scaled configuration is committed, the rpd daemon crash is seen and the commit operation fails.

Resolved In: evo:22.2R3-S1-EVO evo:22.3R2-S2-EVO evo:22.3X50-EVO evo:22.4R3-EVO evo:23.1R1-S1-EVO evo:23.1R2-EVO evo:23.2R1-EVO evo:23.2R2-EVO evo:23.3R1-EVO junos:21.2R3-S6 junos:21.4R3-S4 junos:22.1R3-S4 junos:22.2R3-S1 junos:22.2R3-S2 junos:22.3R2-S1 junos:22.3R2-S2 junos:22.4R2-S1 junos:22.4R3 junos:23.1R1-S1 junos:23.1R2 junos:23.2R1 junos:23.2R2 junos:23.3R1
PR NumberSynopsisCategory: Issues related to YANG Data Models
1725934ODL controller is throwing unavailable capabilities error for few of the Openconfig Yang modules
Product-Group=evo
ODL controller is throwing unavailable capabilities error for few of the Openconfig Yang modules

Resolved In: evo:23.2R1-EVO evo:23.3R1-EVO
 

Modification History

2023-08-25 Updated to remove PR1744293 from "Known Issue" since it is fixed via PR1708385
First publication 2023-08-09