J Series devices have the following limitations:
■
A Fast Ethernet port from a 4-port Ethernet PIM cannot be used as a fabric link
port in a chassis cluster.
■
On SRX3400, SRX3600, SRX5600, and SRX5800 devices, in-service software
upgrade (ISSU) does not support version downgrading. That is, ISSU does not
support running an ISSU install of a JUNOS Software version that is earlier than
the currently installed version.
Command-Line Interface (CLI)
On SRX210 and SRX240 devices, J-Web crashes if more than nine users log in to the
device by using the CLI.
The number of users allowed to access the device is limited as follows:
■
For SRX210 devices: four CLI users and three J-Web users
■
For SRX240 devices: six CLI users and five J-Web users
Dynamic VPN
SRX100, SRX210, and SRX240 devices have the following limitations:
■
The IKE configuration for the dynamic VPN client does not support the
hexadecimal preshared key.
■
The dynamic VPN client IPsec does not support the Authentication Header (AH)
protocol and the Encapsulating Security Payload (ESP) protocol with NULL
authentication.
■
When you log in through the Web browser (instead of logging in through the
dynamic VPN client) and a new client is available, you are prompted for a client
upgrade even if the
force-upgrade
option is configured. Conversely, if you log in
using the dynamic VPN client with the
force-upgrade
option configured, the client
upgrade occurs automatically (without a prompt).
128
■
Known Limitations in JUNOS Release 10.1 for SRX Series Services Gateways and J Series Services Routers
JUNOS 10.1 Software Release Notes