background image

Juniper Networks, Inc.

1194 North Mathilda Avenue

Sunnyvale, CA 94089

USA

408-745-2000

www.juniper.net

Published: 2010-06-04

JUNOSe

 Software

for E Series

 Broadband Services Routers

Release Notes

Release 10.2.2

Summary of Contents for JUNOSe 10.2.2

Page 1: ...iper Networks Inc 1194 North Mathilda Avenue Sunnyvale CA 94089 USA 408 745 2000 www juniper net Published 2010 06 04 JUNOSe Software for E Series Broadband Services Routers Release Notes Release 10 2...

Page 2: ...ated outside the Americas such applicable entity being referred to herein as Juniper and ii the person or organization that originally purchased from Juniper or an authorized Juniper reseller the appl...

Page 3: ...WILL BE FREE OF VULNERABILITY TO INTRUSION OR ATTACK In no event shall Juniper s or its suppliers or licensors liability to Customer whether in contract tort including negligence breach of warranty or...

Page 4: ...nd supersedes all prior and contemporaneous agreements relating to the Software whether oral or written including any inconsistent terms contained in a purchase order except that the terms of a separa...

Page 5: ...erview 5 Before You Start 5 Release Highlights 7 SDX Software and SRC Software 7 Early Field Trial Features 7 DHCP 7 Unified ISSU 8 Unsupported Features 9 E120 Router and E320 Router 9 Multicast 9 Pol...

Page 6: ...Availability 31 Subscriber Interfaces 32 System 33 System Logging 34 Tunneling 34 Known Problems and Limitations 34 ANCP 34 ATM 34 BFD 36 Bridged Ethernet 36 CLI 36 DHCP 37 DHCP External Server 37 Do...

Page 7: ...aximums 71 Policy and QoS Maximums 75 Tunneling Maximums 77 Subscriber Management Maximums 79 E120 and E320 System Maximums 82 General System Maximums 82 Physical and Logical Density Maximums 83 Link...

Page 8: ...viii Table of Contents JUNOSe 10 2 2 Release Notes...

Page 9: ...restore the earlier software version Upgrading to Release 5 3 0 or a Higher Numbered Release When you upgrade from a lower numbered release to Release 5 3 0 or a higher numbered release the higher re...

Page 10: ...ter 8 Maintaining ERX Routers Upgrading NVS Cards on SRP Modules in E120 and E320 Hardware Guide Chapter 8 Maintaining the Router Moving Line Modules Between Releases The Juniper Networks ERX1440 Broa...

Page 11: ...protocols and applications supported by ERX router modules are in ERX Module Guide Appendix A Module Protocol Support Compatibility of E120 router and E320 router modules with software releases is in...

Page 12: ...mers csc software Search technical bulletins for relevant hardware and software notifications https www juniper net alerts Join and participate in the Juniper Networks Community Forum http www juniper...

Page 13: ...sferring DSL Line Rate Information from an Access Node to SRC Software on page 105 If the information in these Release Notes differs from the information found in the published documentation set follo...

Page 14: ...interfaces JUNOSe Link Layer Configuration Guide Configure IP IPv6 and Neighbor Discovery and interior gateway protocols RIP OSPF and IS IS JUNOSe IP IPv6 and IGP Configuration Guide Configure IP rout...

Page 15: ...section are present in the code but have not yet been fully qualified by Juniper Networks These features are available only for field test purposes in this release If you use any of these features be...

Page 16: ...OS access interfaces or to a specific POS access interface in the range 0 96000 use the ip dhcp local limit command with the new pos keyword For example Set the IP address limit for all POS access int...

Page 17: ...on the ES2 10G Uplink LM provides no benefit because access features such as per subscriber QoS are unavailable on the module Multicast Unsupported IPv6 Data MDT Commands in CLI The ipv6 pim data mdt...

Page 18: ...the configuration guides Core Routing Stack Internet Protocol IP version 4 and version 6 Transmission Control Protocol TCP for IPv4 User Datagram Protocol UDP for IPv4 and IPv6 Layer 2 Protocols Async...

Page 19: ...ocol IGMP Intermediate System to Intermediate System IS IS Layer 2 Virtual Private Networks L2VPNs Mobile IP Open Shortest Path First OSPF version 2 and version 3 Protocol Independent Multicast Protoc...

Page 20: ...s AAA Although you can use the max sessions command to configure a maximum of 32 000 outstanding authentication authorization requests to a RADIUS server AAA internal limits prevent the actual number...

Page 21: ...splayed under certain conditions bgpConnections default 0 0 0 0 TCP error code xx occurred while accepting inbound TCP connection The message is generated when an unconfigured peer attempts to establi...

Page 22: ...unting interval and aaa user accounting interval cablelength short Controller Configuration channel group description Controller Configuration channel group shutdown Controller Configuration channel g...

Page 23: ...he ip mirror command has been removed from the CLI for those routers ip policy local input Interface Configuration Profile Configuration None no ipsec isakmp policy rule Global Configuration no ipsec...

Page 24: ...ration mode has been removed from the CLI subscriber disconnect rate limit profile Policy List Configuration rate limit profile in Classifier Group Configuration mode remote loopback Controller Config...

Page 25: ...ant to configure authentication do so before you have otherwise configured the DHCP local server When you upgrade from a release numbered lower than Release 7 1 0 all DHCP host routes previously store...

Page 26: ...2 4p0 4 and all higher numbered 7 2 x releases and patch releases Release 7 3 4 and all higher numbered 7 3 x releases and patch releases Release 8 0 4 and all higher numbered 8 0 x releases and patch...

Page 27: ...ort QoS Consequently a particular flow is always hashed to the same link When a member link is removed from a LAG bundle traffic rate is disrupted and traffic flow is reduced When the link goes down a...

Page 28: ...onfigurations that use the 0x9200 Ethertype to the 0x88a8 Ethertype The show interface gigabitEthernet command output does not display the following line of output for Gigabit Ethernet modules that do...

Page 29: ...CX I O modules with an earlier assembly number are not supported for 1 5 redundancy configurations that use either the 4XOC3 APS MULTIMODE or 4XOC3 APS SINGLE MODE I O module There is a very small cha...

Page 30: ...ongername host1 config vrf description 45678 host1 config ip vrf 123 host1 config vrf description longdescription Work around Before you upgrade from an affected release to JUNOSe Release 9 2 0p1 0 or...

Page 31: ...of Updating However if the Status field always indicates Updating then again the routing table distribution has failed constantly for that VR and a real problem exists The enhancement to the CLI to su...

Page 32: ...network segment This situation occurs because the router uses the same MAC address on all bridged Ethernet interfaces by default When both VRs have the same that is the default IS IS priority level th...

Page 33: ...us instance of this destination profile If you do not wait the E Series router displays a message similar to the following l2tp Discarding incoming sccrq from vr default remote address 192 168 100 1 n...

Page 34: ...address host1 config if mpls If you do not explicitly configure MPLS on the links the inter AS feature will not work properly Multicast The ip dipe sg cache miss and ipv6 dipe commands are not intende...

Page 35: ...ets a response over the new link Policy Management Multiple Forwarding Solution Rules for a Single Classifier List in a Policy Before Release 5 2 0 it was possible to configure a policy with multiple...

Page 36: ...ced a previously configured rule host1 config policy list next interface atm 1 0 0 classifier group clacl5 WARNING This rule has replaced a previously configured rule host1 config policy list filter c...

Page 37: ...ces that are configured in a link aggregation group LAG interface However beginning with JUNOSe Release 8 0 1 you can attach a QoS profile directly to the LAG interface As of JUNOSe Release 8 0 1 the...

Page 38: ...Use the following commands on routers that have line modules with more than 7 physical ports To configure the NAS Port attribute format use the radius nas port format extended atm ethernet command To...

Page 39: ...all setup rates in future releases Trap Name Expected Enterprise OID Enterprise OID Sent by SNMP Agent junidApsEventSwitchover 1 3 6 1 4 1 4874 3 2 2 1 2 1 3 6 1 4 1 4874 3 2 2 1 2 0 junidApsEventMode...

Page 40: ...n While the interfaces are being reconstructed the SRP module cannot send or receive frames including the protocol frames that signal graceful restart behavior with OSPF and IS IS peers If the configu...

Page 41: ...ne If the second IOA fails the line module is still online but does not use both IOAs You can ensure that every module is up and active in the system and not in a failed state by issuing the show vers...

Page 42: ...8 to port 9 Known Problems and Limitations This section identifies the known problems and limitations in this release For more information about known problems that were discovered at customer sites...

Page 43: ...riber information can be used for DHCP option 82 suboption 2 the SRP module can reset This issue does not occur when you use the no authenticate keyword with the subscriber command as a way to perform...

Page 44: ...ame parameters depending on the desired priority for the traffic CBR has a high priority and UBR plus PCR has a medium priority BFD After you have shut down the interface to the next hop for the route...

Page 45: ...ommand are doubled rather than incremented for each renew and release sent Defect ID 78802 When DHCP clients on an S VLAN over bridged Ethernet stack send a decline message to a router that has DHCP r...

Page 46: ...UNOSe Release 7 2 0 or higher and the standby SRP module is running a release lower than Release 7 2 0 as in a downgrade situation you cannot display the files for the standby SRP module Defect ID 741...

Page 47: ...n range 23 23 427 712 host1 config if vlan bulk config BulkCezarCnfg2 svlan range 22 22 101 110 Use fully overlapping ranges rather than partially overlapping ranges as in the following example host1...

Page 48: ...ID 46046 IP The ES2 4G LM can reset during a unified ISSU after you issue the issu start command on a router configured with 8000 dynamic VCs and 8000 packet triggered dynamic subscriber interfaces D...

Page 49: ...minates at the LAC on an ES2 10G LM or an ES2 10G Uplink LM the L2TP data traffic that originated or terminated at the LAC is discarded Defect ID 87260 In a network where you use the tunnel signalling...

Page 50: ...2 is the default The default value for the MLDv2 proxy unsolicited report interval timer should be 1 second rather than 10 seconds the value for v1 Defect ID 46040 MLPPP Failure to meet all of the fo...

Page 51: ...the interface You cannot use an underscore character _ in an MPLS tunnel name Defect ID 31291 When the IPv4 explicit null label appears anywhere other than at the bottom of the label stack TTL expira...

Page 52: ...r the system is in a scaled state changes to the rate limit profile fail owing to lack of adequate policy resources However the changed value of the rate limit profile is displayed in the output of th...

Page 53: ...ID 175696 On E320 line modules that support secure policies the SRP module enables you to configure more than 1022 secure policies per module To avoid potential performance issues we recommend that y...

Page 54: ...ATM segmentation and reassembly SAR schedulers functions properly However in a queue controlled configuration in which you configure the shared shaping rate on the best effort queue for the logical i...

Page 55: ...he VLAN subinterface over which a subscriber is connected Defect ID 84507 When QoS resources such as failure nodes and statistics bins are exhausted because of insufficient memory available on the lin...

Page 56: ...problem also occurs when a subscriber is authenticated using a RADIUS server for a combined IPv4 and IPv6 service in a dual stack SNMP When you configure the router with an address pool that has two...

Page 57: ...essive stateful SRP switchovers When you use the ping command with the IPv6 address of the helper router in the broadcast network as the destination address and no source address when stateful SRP swi...

Page 58: ...elete binding command to remove the DHCP binding and the dynamic subscriber interfaces the DHCP client does not detect the binding removal and retains the lease When the major Ethernet interface is bo...

Page 59: ...tual router default command incorrectly displays logs for multiple syslog destinations when you add a log to only one syslog destination The show log configuration command shows the correct configurat...

Page 60: ...se to the router again to ensure that all subsystem files are included in the release Resolved Known Problems The following problems were reported open in Release 10 2 1 and have been resolved in this...

Page 61: ...nd erroneously displays IGMP packets on ES2 10G LM as multicast packets Defect ID 90041 IP Executing BFD last resort also enables RTR last resort Defect ID 89510 Although the IP access internal route...

Page 62: ...the interface name of DSI interface created Defect ID 90208 Errata This section identifies errors found in the JUNOSe documentation These errors are corrected in subsequent releases of the affected do...

Page 63: ...p blocks per ES2 10G Uplink LM on E120 and E320 routers was 16 383 This scaling limitation on the software lookup blocks for ES2 10G Uplink LMs applies to JUNOSe Release 10 2 0 and higher numbered rel...

Page 64: ...icast is supported on the ES2 S1 Service IOA module IPv6 multicast is not supported on this module In JUNOSe System Basics Configuration Guide Chapter 4 Configuring SNMP the Monitoring Interface Table...

Page 65: ...ws while the show snmp interfaces command is used to view SNMP status The show snmp interfaces command is described in detail in the Monitoring Interface Tables section in Chapter 4 Configuring SNMP H...

Page 66: ...ault keyword with the bgp graceful restart command advertisements of the graceful restart capability are not sent The neighbor graceful restart command section fails to state that using the no version...

Page 67: ...removed on the virtual router the command displays the following information host1 show radius servers RADIUS Authentication Configuration Monitoring RADIUS Server Information 1 Udp Retry Maximum Dea...

Page 68: ...ur DNS domains for the search list of an IPv6 local pool maximum of 32 characters The description of the neighbor graceful restart command in the JUNOSe Command Reference N to Z incorrectly states tha...

Page 69: ...Maximums for ERX310 ERX7xx and ERX14xx Section General router values General System Maximums on page 62 Physical layer values Physical and Logical Density Maximums on page 63 Link layer values Link La...

Page 70: ...eral system maximums for the ERX routers Table 1 General System Maximums Feature ERX310 ERX705 and ERX710 ERX1410 ERX1440 Fabric size 10 Gbps 5 or 10 Gbps 10 Gbps 40 Gbps Chassis per 7 foot rack 14 6...

Page 71: ...e Physical Layer Configuration Guide Chapter 5 Configuring Ethernet Interfaces 3 When you pair the GE HDE line module with the GE 8 I O module on the ERX1440 router you can terminate up to 96 Gigabit...

Page 72: ...ports per chassis OC12 STM4 I O modules 2 4 5 8 12 12 OC12 STM 4 POS ports per chassis OC12 STM4 I O modules 2 4 5 4 12 12 OC48 STM16 POS ports per chassis OC48 FRAME I O modules ERX1440 router only 2...

Page 73: ...000 500 per OC3 STM1 Logical fractional T1s DS0 per CT3 T3 F0 line module 1992 166 per T3 1992 166 per T3 1992 166 per T3 1992 166 per T3 Logical fractional T3s DS3 per COCX F3 line module 12 12 12 12...

Page 74: ...atic The JUNOSe Software supports up to 10 000 PPP interfaces with EAP authentication negotiation configured Performance and scalability is unchanged when EAP is not configured 2 The total maximum num...

Page 75: ...chassis 100 100 100 100 ATM VP VC addresses per line module OCx STMx DS3 ATM 20 bit 20 bit 20 bit 20 bit OC3 STM1 GE FE 20 bit 20 bit 20 bit 20 bit ATM VP tunnels per port all supported modules 256 25...

Page 76: ...16 384 OC3 2 GE APS I O 4096 4096 4096 4096 Ethernet VLAN bulk configuration VLAN ranges per chassis 300 300 300 300 Ethernet VLAN bulk configuration VLAN ranges per line module 300 300 300 300 Ethern...

Page 77: ...interface columns MLPPP bundles per chassis 12 000 12 000 12 000 12 000 MLPPP bundles per line module The maximum number of MLPPP bundles supported per line module is the lesser of the maximum number...

Page 78: ...8000 Subinterfaces per GE 2 line module 8000 8000 Subinterfaces per GE HDE line module 8000 8000 Subinterfaces per OCx STMx DS 3 ATM line module 8000 8000 8000 8000 Subinterfaces per OC3 STM 1 GE FE l...

Page 79: ...a maximum of 16 000 IP network interfaces For all these models the interfaces can be any combination of dynamic or static 3 These values are subject to limitations on available SRP module memory whic...

Page 80: ...RX1440 BFD Sessions per line module 50 50 50 50 ECMP maximum paths to a destination BGP IS IS MPLS OSPF RIP 16 16 16 16 IPv4 forwarding table entries See Note 1 on page 71 Chassis with only ASIC modul...

Page 81: ...Total Martini circuits per chassis See Note 7 on page 71 16 000 16 000 16 000 32 767 External Martini circuits per chassis 16 000 16 000 16 000 32 767 Internal Martini circuits local cross connects p...

Page 82: ...m Maximums Response Time Reporter simultaneous operations per VR 500 500 500 500 VRRP VRIDs per line module ASIC See Ethernet VRRP VRIDs per line module ASIC on page 68 Table 4 Routing Protocol Maximu...

Page 83: ...most configurations each classifier entry in a policy consumes one CAM entry However a policy that has only the default classifier consumes no CAM resources Policies that use CAM hardware classifiers...

Page 84: ...hments on all other line modules 16 000 16 000 16 000 16 000 Combined ATM Frame Relay GRE L2TP LNS only MPLS and VLAN interface attachments 8191 8191 8191 8191 Rate limiters Egress per ASIC line modul...

Page 85: ...rview Table 6 Tunneling Maximums Feature ERX310 ERX705 and ERX710 ERX1410 ERX1440 DVMRP IP in IP tunnels per chassis 4000 4000 4000 4000 DVMRP IP in IP tunnels per line module See Note 1 on page 77 GE...

Page 86: ...nnel server ports provisioned 8000 8000 IPSec Service Module ISM L2TP IPSec sessions 5000 5000 5000 5000 Service Module SM 16 000 16 000 16 000 16 000 L2TP tunnels per chassis 8000 8000 8000 8000 L2TP...

Page 87: ...f 32 000 static major interfaces Although the ERX1440 router supports a maximum of 48 000 static major interfaces for PPPoE the PPPoE static limit is enforced at the subinterface level which has a lim...

Page 88: ...thentication server Local user databases per chassis 100 100 100 100 Users per local user database 100 100 100 100 Users for all local user databases 100 100 100 100 RADIUS requests Concurrent RADIUS...

Page 89: ...ces per chassis 16 000 32 000 32 000 48 000 Dynamic subscriber interfaces per line module 8000 8000 8000 8000 Static subscriber interfaces per chassis 16 000 32 000 32 000 48 000 Static subscriber int...

Page 90: ...hieve the maximum number if each VR and VRF instance is running a routing protocol 2 The maximum of 3000 VRs and VRFs can be achieved only with the SRP 120 and SRP 320 modules which have 4 GB of memor...

Page 91: ...lled in slot 2 or slot 4 you cannot install another line module in slot 3 or slot 5 In this case you can only install the ES2 4G LM in slots 0 1 and 6 11 therefore the maximum number of ports and the...

Page 92: ...1 OC12 2 STM4 POS IOAs 24 48 OC48 STM16 ports per chassis ES2 S1 OC48 STM16 POS IOAs 6 12 Logical density per chassis Logical OC3 STM1 per chassis 96 192 Logical OC12 STM4 per chassis 24 48 Logical OC...

Page 93: ...cation negotiation configured Performance and scalability is unchanged when EAP is not configured 4 The E120 router supports a maximum of 64 000 Ethernet subinterfaces that can be active at any one ti...

Page 94: ...uration VC ranges per chassis 300 300 ATM bulk configuration VC ranges per line module 300 300 ATM bulk configuration total VCs per chassis 192 000 384 000 ATM bulk configuration total VCs per line mo...

Page 95: ...hernet S VLANs per chassis See Notes 2 4 and 5 on page 85 64 000 96 000 Ethernet S VLANs per IOA See Note 6 on page 85 ES2 S1 GE 4 IOA with ES2 4G LM 16 384 16 384 ES2 S1 GE 8 IOA with ES2 4G LM or ES...

Page 96: ...S2 10G LM 16 384 16 384 ES2 S3 GE 20 IOA with ES2 10G ADV LM 32 768 32 768 Ethernet VLAN major interfaces over Bridged Ethernet Interfaces per IOA See Note 8 on page 85 ES2 S1 GE 4 IOA with ES2 4G LM...

Page 97: ...sis See Notes 2 and 3 on page 85 64 000 96 000 PPP major interfaces per line module ignoring physical interface constraints ES2 4G LM 16 000 16 000 ES2 10G LM 16 000 16 000 ES2 10G ADV LM 32 000 32 00...

Page 98: ...G ADV LM 32 000 32 000 Transparent bridging and VPLS Bridge groups or VPLS instances per chassis 1024 1024 Bridge interfaces per line module in bridge groups or VPLS instances 8000 8000 Bridge interfa...

Page 99: ...tions on available SRP module memory which varies according to your router configuration 4 Depending on your configuration the router may support more routing table entries or fewer routing table entr...

Page 100: ...0 000 1 500 000 IP next hops egress FECs used to represent the IP addresses of next hop routers on Ethernet interfaces 1 000 000 1 000 000 MPLS next hops egress FECs when graceful restart is not enabl...

Page 101: ...2 767 Internal Martini circuits local cross connects per chassis 16 000 32 767 Mobile IP bindings per chassis 96 000 Multicast routes IPv4 and IPv6 Forwarding entries S G pairs per chassis See Note 7...

Page 102: ...y used when you attach the policy The line modules support policy attachments based on the following considerations IPv4 Up to 2 ingress policy attachments and 1 egress policy attachment Secure policy...

Page 103: ...LM IP interface attachments 32 000 32 000 ES2 10G ADV LM VLAN interface attachments 16 383 16 383 ES2 10G ADV LM VLAN interface attachments 32 000 32 000 ES2 10G Uplink LM combined IP and IPv6 interf...

Page 104: ...2 10G Uplink LM 64 000 64 000 Policy statistics blocks egress per line module ES2 4G LM 256 000 256 000 ES2 10G LM 256 000 256 000 ES2 10G ADV LM 512 000 512 000 ES2 10G Uplink LM 256 000 256 000 Poli...

Page 105: ...t groups only 8191 8191 ES2 10G Uplink LM internal parent groups only 8191 8191 Software lookup blocks per line module ES2 4G LM 16 383 16 383 ES2 10G LM 16 383 16 383 ES2 10G ADV LM 32 000 32 000 ES2...

Page 106: ...E120 E320 DVMRP IP in IP tunnels per chassis 4000 4000 DVMRP IP in IP tunnels per line module with shared tunnel server ports provisioned 4000 4000 DVMRP IP in IP tunnels per ES2 S1 Service IOA See N...

Page 107: ...aximums L2TP tunnels per line module with shared tunnel server ports provisioned See Note 2 on page 98 8000 8000 L2TP tunnels per ES2 S1 Service IOA See Note 1 and Note 2 on page 98 16 000 16 000 Tabl...

Page 108: ...stored for all DHCP relay and DHCP relay proxy instances that is for all virtual routers 2 On the E120 router the SRP 120 and the SRP 320 support a maximum of 64 000 interfaces On the E320 router the...

Page 109: ...nload server downloaded routes per chassis 64 000 96 000 Service Manager Service definitions 2048 2048 SRC Software and SDX Software COPS client instances 200 200 SRC clients 200 200 SRC interfaces 48...

Page 110: ...JUNOSe 10 2 2 Release Notes 102 E120 and E320 System Maximums...

Page 111: ...Table 15 Module Naming Reference for ERX Routers Label Name Software Display Name Model Number SRP Modules SRP 5G SRP 5GPlus ERX 5G2GEC2 SRP SRP 10G SRP 10G ERX 10G2GEC2 SRP SRP 40G PLUS SRP 40G ERX...

Page 112: ...G HAUL OC12 SM I O OC12 LH I O OC12 STM4 I O MULTI MODE OC12 MM I O OC12 MM I O OC12 STM4 I O SINGLE MODE OC12 SM I O OC12 SM I O OC3 4 I O LONG HAUL OC3 4LH I O OC3 4LH I O OC3 4 I O MULTI MODE OC3 4...

Page 113: ...L2C To enable the router that functions as the SRC client to obtain updated line rate parameters from ANCP and transmit them to the COPS server use the sscc update policy request enable command in Glo...

Page 114: ...eIpInterfaceActualInterleavingDelayUpstream junoseIpInterfaceMaximumInterleavingDelayDownstream junoseIpInterfaceActualInterleavingDelayDownstream junoseIpInterfaceDSLlinestate A COPS server that runs...

Page 115: ...th during connection establishment between a subscriber and an access node and when any of the values of the line rate parameters changes after the connection is built A COPS server that is running SR...

Page 116: ...ient is currently unconnected The SSC Client configured servers are Primary 10 10 2 2 3 Secondary 0 0 0 0 0 Tertiary 0 0 0 0 0 Local Source FastEthernet 0 0 Local Source Address 10 13 5 61 The configu...

Page 117: ...rate values changes after the connection is built The no version restores the default which disables line rate parameters to be sent to the COPS server Syntax no sscc update policy request enable Mod...

Page 118: ...JUNOSe 10 2 2 Release Notes 110 sscc update policy request enable...

Reviews: