Screen OS

last person joined: 8 months ago 

This is a legacy community with limited Juniper monitoring.
  • 1.  Question about OS Upgarde with NS-5200 ??

    Posted 06-02-2009 02:57

    Hi...

    I'm going to upgrade Firmware (5.2.0pk1 --> 5.4.0r9) of NS-5200(Active-Active HA)

    in order to solve PAT bug.

     

    Q1. firmware 5.2.0pk1

    what is the "pk" meaning?? I've never seen this kind of firmware version...

    I don't think this firmware is regular release....

    Does anyone have any idea about 5.2.0pk1???

     

    Q2. expectation problem..

    If i would begin to upgrade..what kind of problems are do you expect???

    such as firmware conflict or inablity of firewall...etc...

     

    Any idea would be help...

    Tanx in advance...

     

     

     

     

     



  • 2.  RE: Question about OS Upgarde with NS-5200 ??
    Best Answer

    Posted 06-02-2009 06:13

    Hi,

     

     

    >I'm going to upgrade Firmware (5.2.0pk1 --> 5.4.0r9) of NS-5200(Active-Active HA)

    >in order to solve PAT bug.

     

    My suggestion is to go for the latest 5.4 which is now 5.4r13

     

     

    >Q1. firmware 5.2.0pk1

    >what is the "pk" meaning?? I've never seen this kind of firmware version...

    >I don't think this firmware is regular release....

    >Does anyone have any idea about 5.2.0pk1???

     

    pk1 is a customer specific patch based on 5.2r2 . 

    These patches are created when customer can not wait for the maintenance release to include the fix. 

    5.2r2 is very old and all the fixes are in 5.4 now so you should be OK. 

     

     

    >Q2. expectation problem..

    >If i would begin to upgrade..what kind of problems are do you expect???

    >such as firmware conflict or inablity of firewall...etc...

     

    Please read the release notes:

    http://www.juniper.net/techpubs/software/screenos/screenos5.4.0/rn_540_r13.pdf

     

    All the info regarding upgrade should be there.

     

    Hope this helps.

     

    Thanks,

    Nemanja



  • 3.  RE: Question about OS Upgarde with NS-5200 ??

    Posted 06-02-2009 07:15

    I appreciate it very much Nemanja..

    It's very helpful...

     

    Tanx..again..



  • 4.  RE: Question about OS Upgarde with NS-5200 ??

    Posted 06-02-2009 18:38

    I encountered new problem...

    While i'm checking the " rn_540_r13.pdf" , I found below paragraph...

    and i need Intermediate Firmware to upgrade(5.2.0pk1 -->5.2r3--> 5.4.0r13)

     

    Caution: This release requires the SIMM DRAM upgrade to 1GB on the NetScreen-5000 Series devices. Secure Port Modules (SPMs) affected are 5000-8G2 and 5000-2XGE manufactured before 2/1/2006. If your NetScreen-5000 modules qualify for a memory upgrade, contact Juniper Networks at 1-866-369-5418 or email mailto:Junipermem@onprocess.com for a memory-upgrade kit. The memory upgrade is free for qualified users. 

     

    So i checked my machine..like below

     

    > get system 

    Product Name: NetScreen-5000
    Serial Number: 0040022XXXXXXXXX, Control Number: 00000000
    Hardware Version: 3010(0)-(20), FPGA checksum: 00000000, VLAN1 IP (0.0.0.0)
    Software Version: 5.2.0pk1.0, Type: Firewall+VPN
    Base Mac: 0010.db35.e040
    File Name: dd"tcp4747", Checksum: 4049e3ce
    , Total Memory: 1024MB

     

    > get chassis
    Chassis Environment:
      Power Supply: Good
      Fan Status: Good
      Battery Status: Good
      CPU Temperature: 116'F (47'C)
    Slot Information:
    Slot  Type              S/N                Assembly-No   Temperature
     1    Management        0039022004000051   0024-005      116'F (47'C)
     2    Processing-8G     0038022004000011   0025-006      100'F (38'C)
    Alarm Control Information:
      Power failure audible alarm: enabled
      Fan failure audible alarm: enabled
      Low battery audible alarm: enabled
      Temperature audible alarm: disabled
        Normal alarm temperature is 132'F (56'C)
        Severe alarm temperature is 150'F (66'C)

     

    Q1. How can i find out the manufactured date of this mahine? and Do i need to upgrade memory?

     

    Q2. What is the SPM(Secure Port Module)? Where can i check this?

     

    Actually I'm not sure that there is going to be OK to proceed this upgrade job?

     

    Very much thanx...anyway...

     



  • 5.  RE: Question about OS Upgarde with NS-5200 ??

    Posted 06-02-2009 18:44

    The manufacturing date for yours is 2004.

    Looking at your conf, you only have 8G card, so memory upgrade is not required.

     

    Also based on the M1 card, you can only go up to 5.4 ScreenOS.

     

    The 8G2 cards the note is talking abt looks like this:

     

    ns5200-> get chas
    Chassis Environment:
      Power Supply: One power supply is down
      Fan Status: Good
      Battery Status: Good
      CPU Temperature: 176'F (80'C)
    Slot Information:
    Slot  Type              S/N                Assembly-No   Temperature    DRAM Size
     1    Management        <>  <>      138'F (59'C)   2048MB
     2    Processing-8G2    <>   <>131'F (55'C)   1024MB

    So upgrade will be ok but as its a big jump from 5.2 to 5.4 ScreenOs you really need to be ready for some teething problems as the behaviour change between 2 codes is significant
    Message Edited by WL on 06-02-2009 06:46 PM