Alert Type

SRN - Software Release Notification
Low/NotificationJunos Evolved software release notification
Low/NotificationJunos Evolved software release notification

Product Affected

PTX ACX platforms running Junos Evolved software QFX platforms software has been recalled - see TSB91270 [juniper.net]

Alert Description

Junos Software Service Release version 23.4R2-S3-EVO is now available for download from the Junos software download site

Download Junos Software Service Release:

  1. Go to Junos Platforms - Download Software page
  2. Input your product in the "Find a Product" search box
  3. From the Type/OS drop-down menu, select Junos SR
  4. From the Version drop-down menu, select your version
  5. Click the Software tab
  6. Select the Install Package as needed and follow the prompts

NOTE: Starting August 30th, 2024, we include PR severity with each entry. See KB86335 [juniper.net] for the definition of PR's Severity

Note 1: QFX platform Junos Evolved software has been recalled, the new software re-spin version for QFX is 23.4R2-S3.11-EVO. If you have QFX 23.4R2-S3.10-EVO software, please download and deploy the "-S3.11-EVO" version instead.

Solution

Junos Software service Release version 23.4R2-S3-EVO is now available.

23.4R2-S3-EVO - List of Fixed issues

PR NumberSynopsisCategory: MX/PTX 20A AC power Software Issues
1831436
Critical
JNP10K-PWR-AC3 AC: SNMPWALK LED not matching physical LED status with d2d failure
Product-Group=evo
Severity=Critical
JNP10K-PWR-AC3: There is a mismatch of the physical LED and shown in the SNMP LED status in case of d2d failure
PR NumberSynopsisCategory: "agentd" software daemon
1820774
Major
Commit check does not display error while configuring "format gpb-gnmi" and "transport udp" for export-profile in Telemetry
Product-Group=evo
Severity=Major
When the Dial-Out profile's transport is set as "UDP", Config shall not allow the COMMIT with the profile's format for "gpb-gnmi".Both are the Exclusive, as gnmi is a TCP based transport.
1826196
Major
The error messages will be observed while configuring native sensor paths
Product-Group=evo
Severity=Major
On Junos and Junos Evolved platforms with telemetry enabled, configuring any native sensor path like "set services analytics sensor interface_stats resource /junos/system/linecard/optics " will not be enabled unless "/" is added at the end. This will not have any traffic impact.
1831841
Major
Telemetry streaming will not happen because the resource path is not valid
Product-Group=evo
Severity=Major
On Junos and Junos Evolved platforms with analytics sensor resource configured, when the CLI telemetry configure command is accepting the resource path even if there is no leading / which is not a valid path results in telemetry streaming is not happening.
PR NumberSynopsisCategory: PTX10000s Diags software
1832769
Major
The soft minor alarm 'QoS License(289) usage requires a license' is raised on the device
Product-Group=evo
Severity=Major
A minor QoS license alarm warning is expected on PTX10002-36QDD devices with or without QoS configurations. Due to the presence of default QoS configurations, these warnings cannot be cleared and will reappear due to daily license checks. User commit warnings and alarms are expected but should be ignored for now.
PR NumberSynopsisCategory: BBE state synchronization issues
1811787
Critical
The process bbe-smgd crash will be observed in the Subscriber login/logout scenario
Product-Group=evo
Severity=Critical
On all Junos and Junos OS Evolved platforms, in a scaled stack-based Subscriber Management scenario (e.g PPPOE, DHCP, PS over LT interface, etc.), the bbe-smgd process crash will be observed with continuous login/logout of a large number of subscribers over a period.
PR NumberSynopsisCategory: BBE Statistics daemon & libraries
1820001
Critical
Multiple processes on both the REs are crashing
Product-Group=evo
Severity=Critical
On Junos MX platforms, when a Stats DB corrupt entry in encountered, several processes related to subscriber management were high like CPU/Memory and statsd and authd both continuously crashing in both REs. As a result subscribers stuck in terminating.
PR NumberSynopsisCategory: Border Gateway Protocol
1788543
Major
BGP OutQ counter of one of the BGP peers gets stuck after system reboot/restart routing/clear bgp neighbor
Product-Group=evo
Severity=Major
On all Junos and Junos Evolved platforms, when there is a high route churn and the system reboot/restart routing/clear bgp neighbor is done, there are some values stuck in the OutQ counter of one of the peers in a group. This is a cosmetic issue since no missing routes at the BGP peer.
1810617
Major
BGP routes with next hops as link-local address are not installed
Product-Group=evo
Severity=Major
On all Junos and Junos OS Evolved platforms, BGP (Border Gateway Protocol) routes are not installed on routing table when their next hops are link-local addresses, and unnumbered session and confederation are configured. Missing information in the routing table might cause no route to destination is found or suboptimal path being chosen.
1811862
Major
Improper maximum value for limit-bandwidth of policy-statement
Product-Group=evo
Severity=Major
On all Junos and Junos Evolved platforms limit-bandwidth of policy-statement can only be configured to maximum value 4.2G (4294967295) which is not large enough based on actual maximum capacity. user@router# set policy-options policy-statement test then limit-bandwidth ? Possible completions: Limit advertised aggregate outbound link bandwidth (0...4294967295)
1814289
Major
The IBGP session stuck in active state with 'local-as alias AS_X' when peers have different global AS configuration
Product-Group=evo
Severity=Major
On all Junos and Junos Evolved platforms, when "local-as alias" configuration knob is used on an IBGP session, it won't be able to get established in the scenario where peers have different global AS, but the same "local-as alias".
1826686
Major
Traffic impact due to BGP route stuck in hidden state
Product-Group=evo
Severity=Major
On all Junos and Junos Evolved platforms, with BMP (BGP Monitoring Protocol) 'exclude-non-eligible' configured, the BGP route gets stuck in a hidden state with the next hop state as 'Next hop type unusable' leading to traffic drop.
PR NumberSynopsisCategory: Track PRs in BGP BMP area & is part of BGP inside RPD.
1819305
Critical
BMP gets stuck and does not send data to BMP collector
Product-Group=evo
Severity=Critical
On all Junos OS and Junos OS Evolved platforms which supports BMP (BGP Monitoring Protocol), the BMP session stop sending data to an BMP Station. Please refer to TSB83918 [juniper.net] for more details.
PR NumberSynopsisCategory: PFE L2 forwarding features on BT based platforms
1836051
Critical
BUM traffic to remote leaf vtep in an evpn-vxlan fabric is dropped on all PTX evolved platforms
Product-Group=evo
Severity=Critical
On all Junos OS Evolved PTX platforms, BUM (broadcast, unknown unicast and multicast) packets destined to remote VTEP (Virtual Tunnel Endpoint) of leaf in an Ethernet VPN Virtual Extensible LAN (EVPN-VxLAN) fabric is dropped when the remote VTEP has an IP address with all 0's in the last octet.
PR NumberSynopsisCategory: PFE COS features on BX based platforms
1806737
Major
Rate-limit is un-supported in PTX 10008 and PTX-10002-36QDD
Product-Group=evo
Severity=Major
On PTX 10008 and PTX-10002-36QDD platforms, rate-limit is un-supported, so ignore "rate-limit" configuration. It is behavior changes.
PR NumberSynopsisCategory: CFM
1842542
Major
CFM session flaps continuously upon committing CFM inline mode and CFM sessions related configuration together
Product-Group=evo
Severity=Major
On Junos Evolved PTX platforms, the Connectivity Fault Management (CFM) session flaps continuously upon committing CFM inline mode and CFM sessions related configuration together. If CFM action profiles are configured to mark link-down, it will cause continuous marking of the logical interface as up and down affecting the convergence of routing protocols.
1846960
Major
[Junos OS Evolved] PTX 10K - cfmman memory leaks when CFM remote-mep is configured and adjacency goes down
Product-Group=evo
Severity=Major
On PTX 10K platforms, cfmman memory leaks when CFM remote-mep is configured and adjacency goes down
PR NumberSynopsisCategory: QFX Access Control related
1819462
Major
Switch port status is changed to unauthorized, when a supplicant client attempts to authenticate using 802.1X standard with EAP-TLS certificate
Product-Group=evo
Severity=Major
In all Junos platforms supporting 802.1X authentication, when a supplicant client attempts to authenticate using an EAP (Extensible Authentication Protocol) - TLS (Transport Layer Security) certificate, and the user-name is left empty on the client's configuration, the authenticator receives an EAP-Response/Identity message with an empty user-name and the authd process rejects this message setting the port status to HELD, preventing access to network.
PR NumberSynopsisCategory: CoS support on DNX
1779030
Major
The cosd crashes when configuring CoS host-outbound-traffic without forwarding-class
Product-Group=evo
Severity=Major
On Junos OS Evolved platforms, cosd crash is observed i.e. traffic impact when fetching forwarding-class detail having CoS (Class-of-Service) host-outbound-traffic configured without forwarding-class.
PR NumberSynopsisCategory: EVO Services Jflow PRs for defect & enhancement requests
1816542
Major
A router running sampling may see the msvcs-db daemon run at 99.9% for an extended period
Product-Group=evo
Severity=Major
A router running sampling may see the msvcs-db daemon run at 99.9% for an extended period
PR NumberSynopsisCategory: EVO ifmd RE related PRs
1830990
Major
On PTX platform running Junos-EVO OAM LFM event PDU may be generated with wrong values
Product-Group=evo
Severity=Major
On PTX platform running Junos-EVO OAM LFM event PDU may be generated with wrong values
PR NumberSynopsisCategory: EVO MBB infra related issues and enhancements
1820376
Critical
Multicast routes can be out of sync due to the quick AE interface flap
Product-Group=evo
Severity=Critical
On Junos Evolved PTX platforms, due to quick Aggregated Ethernet (AE) interface flap, Multicast routes can be out of sync between the control plane and the forwarding plane (rpd and Packet Forwarding Engine (PFE)) resulting in traffic drops.
PR NumberSynopsisCategory: Express PFE MPLS for EVO platforms
1829924
Major
PTX devices acting as transit nodes display incorrect MPLS traceroute or TTL
Product-Group=evo
Severity=Major
On Junos Evolved PTX10K platforms, when there is an ECMP to destination, PTX devices in a transit MPLS path do not decrement the TTL value properly, leading to ICMP tunneling failure and incorrect traceroute behavior.
PR NumberSynopsisCategory: Configd, ffp issues
1822256
Major
The process cosd crash is seen after ISSU upgrade from 22.4R3-S3.2 to 23.4R2.13 on Junos Evolved QFX platforms
Product-Group=evo
Severity=Major
On Junos Evolved QFX products configured with class-of-service, after ISSU (In-Service Software Upgrade) upgrade from 22.4R3-S3.2 to 23.4R2.13 release, the process configd crashes followed by cosd crash when class-of-service is deactivated and reactivated. It can impact forwarding traffic due to crash of class-of-service function.
PR NumberSynopsisCategory: SNMP, mib2d issues
1836012
Major
The mib2d memory increase observed during 24 hours testing
Product-Group=evo
Severity=Major
On all Junos OS Evolved platforms, mib2d memory leak may be observed when querying ip, tcp, udp, jnxIpv6GlobalStats and jnxIcmpv6GlobalStats scalar mib objects.
PR NumberSynopsisCategory: Category for software tracing Infra issues
1829652
Minor
traceroute monitor failed with Permission denied
Product-Group=evo
Severity=Minor
On Junos Evolved, "traceroute monitor" command might fail due to incorrect permission as below. user@ptx10k> traceroute monitor 8.8.8.8 mtr-packet: Failure to open IPv4 sockets: Permission denied mtr-packet: Failure to open IPv6 sockets: Permission denied /usr/sbin/mtr: Failure to start mtr-packet: Invalid argument
PR NumberSynopsisCategory: Express PFE COS AFT software issues
1814641
Major
One CoS drop-profile might not work on PTX EVO platforms
Product-Group=evo
Severity=Major
Due to mishandling reserved 'drop-profile" curve index zero, one of "class-of-service drop-profiles" might not get programmed correctly in the ASICs on some FPCs. Curve index zero is reserved for 'default-drop-profile', which disables WRED (for dropping or ECN). If a non-default drop-profile configuration object reaches FPC AFT software first, AFT wrongly assigns curve index zero to that drop-profile. But lower-layer software will not program WRED for curve index zero. It is unpredictable whether this bug occurs for a given FPC reboot, with drop-profiles already configured. Schedulers whose drop-profile-map uses the affected drop-profile might have WRED disabled in hardware, so only Tail-drops will be seen if that queue drops packets for congestion.
PR NumberSynopsisCategory: Express PFE CFM
1822526
Critical
BFD protocol sessions flap continuously when operating in hardware-assisted inline mode
Product-Group=evo
Severity=Critical
On Junos Evolved PTX10K platforms, Bidirectional Forwarding Detection (BFD) protocol sessions will flap continuously and never become stable after this. This exposure is not deterministic and is only exposed if BFD is operating in hardware-assisted inline mode.
PR NumberSynopsisCategory: Integrated Routing & Bridging (IRB) module
1834886
Major
irb interface units greater than 16385 cannot be configured on MX304
Product-Group=evo
Severity=Major
On MX304 platform, IRB (Integrated Routing and Bridging) interface units above 16385 cannot be configured using dot (.) command. The knob 'unit' has to be used for a successful configuration of IRB interface units above 16385.
PR NumberSynopsisCategory: ISIS routing protocol
1828209
Major
[MX] Memory leak observed in so_in6 and TED-INFRA-COOKIE leading to RPD crash
Product-Group=evo
Severity=Major
Leaks gets introduced when SPF run for SRv6 routes which has additional sids, ie In the backup path. While building SID list for route next-hop, socket memory allocated which is not freed result in memory leak.
PR NumberSynopsisCategory: Layer2 forwarding on EX/NTF/PTX/QFX
1817705
Critical
The l2ald crash is observed when adding scaled EVPN-VXLAN configuration on Junos platforms
Product-Group=evo
Severity=Critical
On Junos platforms, if disk is full, when scaling configuration is moved to baseline configuration and move back to scaling configuration, l2ald try to create a source VTEP, but old VTEP is still in the middle of deletion, so kernel return EBUSY and l2ald will retry. If retry too many times, l2ald insist and core.
1824739
Major
The traffic is getting duplicated when VPLS to EVPN transition is performed
Product-Group=evo
Severity=Major
On platforms with MPC10, MPC11, LC9600 and MX304-LMIC line cards, during a transition from VPLS (Virtual Private LAN Services) to EVPN (Ethernet Virtual Private Network) or when the MAC (Media Access Control Address) addresses move from a local to a remote state, control MAC addresses are incorrectly programmed in the hardware, leading to traffic duplication and unresolved destination errors.
PR NumberSynopsisCategory: Port-based link layer security services and protocols that a
1757100
Major
Memory leak observed in AFTd-Trio daemon in PFE with IFL based MACSEC enabled on MX platforms with MPC11/LC2301/LC9600 line cards and MX304-LMIC16
Product-Group=evo
Severity=Major
On all Junos MX platforms with MPC11/LC2301/LC9600 line cards and MX304-LMIC16, the statistics for MACSEC (MAC Security) are not displayed properly and lead to memory not getting freed. In a scaled environment of IFLs with MACSEC configured, eventually leads to AFTd-Trio daemon crash due to memory exhaustion.
PR NumberSynopsisCategory: Multiprotocol Label Switching
1814358
Major
LSP keep retrying over the transit router marked as "overload" resulting in traffic drops or using the suboptimal path for the LSP
Product-Group=evo
Severity=Major
On Junos and Junos Evolved platforms with RSVP-TE (Reservation Protocol-Traffic Engineering) configured, when IGP (Interior Gateway Protocol) "overload" is configured on the transit router, the traffic should move away from the transit router. But in the issue scenario, the LSP (Label Switched Path) continues to stay across the transit router which has been marked as overload and traffic continues across the transit router resulting in traffic drops or using the suboptimal path for the LSP. The issue happens when Patherr is received for the re-optimized path and CSPF (Constrained Shortest Path First) computation is triggered before the backoff timer.
PR NumberSynopsisCategory: RPD Next-hop issues including indirect, CNH, and MCNH
1810866
Major
The rpd crash is observed due to the segmentation fault on Junos OS Evolved platforms
Product-Group=evo
Severity=Major
On Junos OS Evolved platforms, the rpd (Routing Process Daemon) crash i.e. traffic impact is observed due to a segmentation fault. The issue happens when the rpd sends an add request for the same next-hop ID for multiple routes/unicast next-hops with the same prefix and points to a discard interface. The rpd doesn't expect the same next-hop ID for multiple routes/unicast next-hops.
PR NumberSynopsisCategory: Issues related route resolution routing infrastructure
1818978
Major
The "preserve-nexthop-hierarchy" knob configured with VPLS , brings down the L3 protocol sessions running over the IRB interface
Product-Group=evo
Severity=Major
On all Junos and Junos Evolved platforms, "preserve-nexthop-hierarchy" knob configured with Virtual Private LAN Service (VPLS), causes the Layer-3 (L3) control packets like that of Border Gateway Protocol (BGP) / Open Shortest Path First (OSPF) running over Integrated Routing and Bridging (IRB) interface to be dropped and brings down the protocol sessions.
PR NumberSynopsisCategory: PTX10K Line Card specific interface PRs
1794352
Major
Channelized interface 4x10G remains DOWN with good signal levels
Product-Group=evo
Severity=Major
On Junos EVO a channelized interface can get stuck in DOWN state.
PR NumberSynopsisCategory: PTX10K specific platform PRs
1798298
Major
During PSM health check chassis power consumption may spike at 25%-30% according to cli output
Product-Group=evo
Severity=Major
On all EVO platforms supporting PSM health check, the power showed by telemetry or cli command "show chassis power detail" is higher than expected during this heath check and this rice an alarm in the customer's monitoring system.
PR NumberSynopsisCategory: Bug and Review Tracking for Segment routing traffic eng
1820791
Major
Per-Segment-list telemetry for colored tunnel doesn't work
Product-Group=evo
Severity=Major
Per-Segment-list telemetry for colored tunnel doesn't work on PTX-Series platform with Junos OS Evolved such as PTX10004, PTX10003, PTX10001, but it works on PTX10008 and PTX10016.
PR NumberSynopsisCategory: Stout card (MPC7) fabric issues
1812276
Critical
Persistent link error in one fabric plane towards some PFE could causes traffic blackholing from non-native LC PFE towards that remote PFE over all fabric planes
Product-Group=evo
Severity=Critical
On MX2010/MX2020 platforms with non-native LCs installed with an ADC, if a non-native LC PFE erroneously starts sending the traffic to a remote PFE using some fabric plane with link error towards that remote PFE, then this traffic will build up at the sending LC ADC, which cause the traffic blackholing to the remote PFE over all fabric planes.
PR NumberSynopsisCategory: Authentication, Authorization, Accounting, PAM (RADIUS/tacplus)
1802329
Major
Multiple Products: RADIUS protocol susceptible to forgery attacks (Blast-RADIUS) (CVE-2024-3596)
Product-Group=evo
Severity=Major
An Authentication Bypass by Spoofing vulnerability in the RADIUS protocol of Juniper Networks Junos OS and Junos OS Evolved platforms allows an on-path attacker between a RADIUS server and a RADIUS client to bypass authentication when RADIUS authentication is in use. Please refer to https://supportportal.juniper.net/JSA88210 [juniper.net] for more information.
PR NumberSynopsisCategory: Configuration mgmt, ffp, load-action, commit processing
1818692
Major
Configuration commit fails due to mustd process crash
Product-Group=evo
Severity=Major
Core dumps in mustd seen commiting a change to a large prefix-list used by BGP
PR NumberSynopsisCategory: Issues related to NETCONF
1800859
Major
Configuration push to device using RPC resulted in incorrect policy order
Product-Group=evo
Severity=Major
On all Junos and Junos OS Evolved platforms, RPC command with default-operation replace uses load update instead of load override from Junos 21.1 onwards. Policies could get incorrectly reordered impacting traffic, because load update does not honor the replace: tag present in configuration file loaded.
1819656
Major
In all Junos and Junos OS Evolved platforms, with Multinode High Availability configured, node configuration on primary might differ from backup due to configuration synchronization failure at the time of commit
Product-Group=evo
Severity=Major
In all Junos and Junos OS Evolved platforms with MNHA (Multinode High Availability) supported and "set system commit peers-synchronize" is configured in a local primary node of the HA, when the "commit" command is issued, a synchronization warning message is displayed informing that session to peer (backup) has failed and configuration is committed only in the local primary device. Under the same configuration, if the command "commit peers-synchronize" is used instead of "commit", then the synchronization error will cause the configuration to not be committed on any of the high availability nodes. This issue does not affect network services. The synchronization error is caused by a TACACS authentication failure when primary node attempts to access the secondary backup node.
1831167
Major
Netconf over ssh stop working with "sshd[]: fatal: /etc/ssh/netconf_config line 10: Directive 'Ciphers' is not allowed within a Match block" error
Product-Group=evo
Severity=Major
Day-1 issue affecting all EVO platforms, in some rare conditions, when adding Netconf and SSH cipher configuration or performing a "commit full" (with NETCONF and SSH ciphers config present ) or "load override" (with NETCONF and SSH ciphers config present ) may cause Netconf connections over SSH to fail with the following error message: "sshd[]: fatal: /etc/ssh/netconf_config line 10: Directive 'Ciphers' is not allowed within a Match block"
PR NumberSynopsisCategory: ACX724 timing issues
1833150
Major
Object anomalies seen post deactivate/delete of PTP configurations.
Product-Group=evo
Severity=Major
Object anomalies seen post deactivate/delete of PTP configurations.
PR NumberSynopsisCategory: Virtual Private LAN Services
1793342
Major
VPLS traffic will be impacted when routing-engine switchover happens due to master routing-engine reboot in NSR scenario
Product-Group=evo
Severity=Major
With VPLS service having NSR+GRES configured it may be seen that post RE switchover few of the VPLS sessions that were undergoing changes during transition to new RE may not come up, due to LSI IFL not getting created. This will impact the traffic flowing over that VPLS session
PR NumberSynopsisCategory: Virtual Router Redundancy Protocol
1822867
Major
After RE switchover the VRRP master and backup router will start functioning as master routers
Product-Group=evo
Severity=Major
On all Junos and Junos Evolved platforms configured with VRRP (Virtual Router Redundancy Protocol) and NSR (Non-Stop Routing), after RE switchover or GRES (Graceful Routing Engine Switchover) the master router would starts sending VRRP advertisements with a different priority value. As a result, both the master and backup VRRP routers will begin operating as the master which results in inconsistent traffic routing or packet loss as the system fails to establish a single master node.
PR NumberSynopsisCategory: usf nat related issues
1829633
Critical
The flowd process crashes in scaled scenario when subscribers exceed maximum session limit for NAPT44
Product-Group=evo
Severity=Critical
On MX240, MX480 , MX960 with Services Processing Card (MX-SPC3 ) and "jflow-log" configured , high memory consumption is seen in scaled setup and flowd process crashes when subscriber received through Endpoint Independent Filtering (EIF) reaches "max-sessions-per-subscriber" limit for Network Address and Port Translation(NAPT44). The Services Processing Unit(SPU) reboots and services self-recover if this issue is hit.

 


 

23.4R2-S3-EVO - List of Known issues

PR NumberSynopsisCategory: EVO RCB software
1799443
Major
PTX10001-36 reports Host 0 Voltage Threshold Crossed Alarm after USB Media installation
Product-Group=evo
On PTX10001-36 platforms, upon software installation with USB Media, the system might report minor Alarm "Host 0 Voltage Threshold Crossed ". The root cause is a missing symbolic link for the voltage sensor configuration. During the installation reboot process the assembly_id readout did not return a value. This is only applicable during media USB installation and not during regular system reboots. There is no operational impact.

Resolved In:
PR NumberSynopsisCategory: Border Gateway Protocol
1760356
Major
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash (CVE-2024-21598)
Product-Group=evo
An Improper Validation of Syntactic Correctness of Input vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). Please refer to https://supportportal.juniper.net/JSA75739 [juniper.net] for more information.

Resolved In: evo:20.4R3-S9-EVO evo:21.2R3-S7-EVO evo:21.3R3-S5-EVO evo:21.4R3-S5-EVO evo:22.1R3-S4-EVO evo:22.2R3-S3-EVO evo:22.2X100-EVO evo:22.3R3-S1-EVO evo:22.3X50-EVO evo:22.3X80-D39-EVO evo:22.4R3-EVO evo:23.2R1-S2-EVO evo:23.2R2-EVO evo:23.3R1-EVO evo:23.3R2-EVO evo:23.4R1-EVO evo:24.1R1-EVO junos:20.3X75-D36 junos:20.3X75-D44 junos:20.3X75-D46 junos:20.3X75-D52 junos:20.4R3-S9 junos:21.2R3-S4-J27 junos:21.2R3-S4-J30 junos:21.2R3-S4-J37 junos:21.2R3-S7 junos:21.3R3-S5 junos:21.4R3-S5 junos:22.1R3-S4 junos:22.2R3-S3 junos:22.3R3-S1 junos:22.4R3 junos:23.2R1-S2 junos:23.2R2 junos:23.3R1 junos:23.3R2 junos:23.4R1 junos:24.1R1
1817834
Major
The rpd crashes when stale label entry keeps increasing when knob stale-labels-holddown-period is configured
Product-Group=evo
On all Junos and Junos Evolved platforms configured with the "stale-labels-holddown-period" setting and extensive label configurations (such as Multiprotocol Label Switching labels), the Routing Protocol Daemon (RPD) may crash if stale labels are not cleared periodically and keep accumulating. Due this, temporary traffic impact will be seen until the rpd process restarts.

Resolved In: evo:23.2R2-S3-EVO evo:24.2R2-EVO evo:24.3R1-EVO evo:24.4R1-EVO junos:21.4R3-S10 junos:22.4R3-S6 junos:23.2R2-S3 junos:23.4R2-S3 junos:24.2R2 junos:24.3R1 junos:24.4R1
PR NumberSynopsisCategory: Track PRs in BGP BMP area & is part of BGP inside RPD.
1807892
Major
A route stuck inA route can get stuck in
PR NumberSynopsisCategory: CFM
1836228
Major
All PTX-EVO platforms doesn't support CFM Performance Monitoring Loss Measurement SLA iterator feature
Product-Group=evo
On all Junos Evolved PTX platforms CFM (Connectivity Fault Management) Performance Monitoring LM(Loss Measurement) SLA(Service Level Agreement) iterator feature is not supported starting version 23.2. This issue is not traffic impacting.

Resolved In: evo:24.2R2-EVO evo:24.4R1-EVO evo:25.1R1-EVO junos:24.2R2 junos:24.4R1 junos:25.1R1
PR NumberSynopsisCategory: System Management daemon and related issues
1834545
Major
"xargs: WARNING: a NUL character occurred in the input. It cannot be passed through in the argument list. Did you mean to use the --null option?" messages are dumpled continuously in the journal control when subscribed to OCST sensor related to memory.
Product-Group=evo
"xargs: WARNING: a NUL character occurred in the input. It cannot be passed through in the argument list. Did you mean to use the --null option?" messages are dumpled continuously in the journal control when subscribed to OCST sensor related to memory.

Resolved In: evo:25.1R1-EVO
PR NumberSynopsisCategory: jdhcpd daemon refactored for evo
1816246
Major
ACX7509:DHCPv4/v6 Relay subscriber may not login if DHCP configuration is completly removed and readded.
Product-Group=evo
Under certain conditions when DHCP configuration is completely removed Session Database is left in an unusable state. On subsequent reconfiguration of DHCP subscriber logins will fail. In this case a system reboot is required.

Resolved In:
PR NumberSynopsisCategory: EVO L2 Control Plane PRs
1817677
Critical
MX and ACX platforms running EVPN-VXLAN in DCI stitching environments will experience traffic outage
Product-Group=evo
On MX and ACX platforms with Ethernet VPN-Virtual Extensible LAN (EVPN-VXLAN), symmetric route stitching between data center networks enables the Control Word (CW) flag changes, which will cause traffic disruption in the Packet Forwarding Engine (PFE).

Resolved In: evo:24.2R2-EVO evo:24.3R1-EVO evo:24.4R1-EVO junos:23.4R2-S3 junos:24.2R2 junos:24.3R1 junos:24.4R1
PR NumberSynopsisCategory: EVO linux defects & enhancement requests
1602717
Major
Ephemeral/dynamic port range has been modified in EVO platforms
Product-Group=evo
On all EVO platforms, near-end port is not within RFC/IANA standards as ephemeral/dynamic port range has been modified.

Resolved In: evo:20.4R3-EVO evo:20.4X80-D12-EVO evo:21.2R2-EVO evo:21.2R3-EVO evo:21.3R1-EVO evo:21.3R2-EVO evo:22.4R3-EVO junos:21.1R3-S5 junos:21.2R3 junos:21.3R2
PR NumberSynopsisCategory: eventd, syslog infra issues
1815238
Major
PTX10004 - Host-name is not updated in picd logs
Product-Group=evo
On Junos OS Evolved platforms, host-name was not appended to PICD logs.

Resolved In: evo:24.4R1-EVO evo:25.1R1-EVO junos:24.4R1 junos:25.1R1
PR NumberSynopsisCategory: mgd, ddl, odl infra issues
1825793
Minor
[EVO] The timestamp of the "show system configuration rescue" output shows wrong time.
Product-Group=evo
"show system configuration rescue" may show strange "Last changed" timestamp. It may happen under any time zone potentially and looks like there are some patterns. In case of "Asia/Tokyo", Last changed timestamp may show "1970-01-01 08:59:59 JST".

Resolved In: evo:24.2R2-EVO evo:24.4R1-EVO junos:23.4R2-S3 junos:23.4X30-D20 junos:24.2R1-S2 junos:24.2R2 junos:24.4R1
PR NumberSynopsisCategory: All Guardian (ACX7509) Linecard (FPC) related issues
1821275
Major
100G LR4 optics did not come up after upgrade
Product-Group=evo
Interfaces with QSFP-100GBASE-LR4 optics may not come up after SW upgrade or system reboot

Resolved In: evo:23.2R2-S3-EVO evo:24.2R2-EVO evo:24.3R1-EVO evo:24.4R1-EVO
PR NumberSynopsisCategory: All Guardian ACX7509 platform, FEB, RCB & linecaard resiliency
1835268
Major
Major FEB alarm due to broadsync unlock
Product-Group=evo
On ACX7509, major FEB alarm due to broadsync unlock.

Resolved In: evo:23.2R2-S3-EVO evo:24.2R2-EVO evo:24.4R1-EVO evo:25.1R1-EVO
PR NumberSynopsisCategory: Category for QFX5K EVO Platform Software PRs related to Chas
1816064
Major
QFX5130-48C/QFX5130-48CM: In rare cases, "FPC 0 Volt Sensor Fail" or "FPC 0 Voltage Threshold Crossed" alarm seen after bootup
Product-Group=evo
In rare cases, "FPC 0 Volt Sensor Fail" or "FPC 0 Voltage Threshold Crossed" alarm is seen after bootup on QFX5130-48C/QFX5130-48CM.

Resolved In: evo:23.4X100-D20-EVO evo:24.4R1-EVO junos:24.4R1
1841882
Major
QFX5240-64OD/QD: Update BIOS to v41.01.08.06
Product-Group=evo
Customers are recommended to Upgrade the BIOS to v41.01.08.06.

Resolved In: evo:23.4X100-D12-EVO evo:23.4X100-D20-EVO evo:24.4R1-EVO evo:25.1R1-EVO junos:24.4R1 junos:25.1R1
PR NumberSynopsisCategory: RPD policy options
1807830
Major
OSPF neighbourship with IPsec authentication goes down after RE switchover
Product-Group=evo
On all Junos OS Evolved platforms, the Open Shortest Path First (OSPF) neighbourship configured with Internet Protocol Security (IPsec) authentication will go down during the Routing Engine (RE) switchover.

Resolved In: evo:24.2R2-EVO evo:24.3R1-EVO evo:24.4R1-EVO junos:24.2R2 junos:24.3R1 junos:24.4R1
PR NumberSynopsisCategory: Issues related to NETCONF
1792554
Minor
JUNOS: Netconf: Edit-config with operation attribute create for existing hierarchy is not working as per RFC 6241
Product-Group=evo
JUNOS: Netconf: Edit-config with operation attribute create for existing hierarchy is not working as per RFC 6241

Resolved In:
NumberSynopsisCategory: QFX5000 EVO Interfaces
1862907QFX5000s ZTP failed on WAN ports, interfaces do not come up

QFX5000s ZTP failed on WAN ports, interfaces do not come up

Resolved In: