Security

last person joined: 7 days ago 

Ask questions and share experiences with Juniper Connected Security. Discuss Advanced Threat Protection, SecIntel, Secure Analytics, Secure Connect, Security Director, and all things related to Juniper security technologies.
  • 1.  Can't manage JunOS ES export in NSM2008.1r1

    Posted 09-29-2008 23:48

    Hi all,

     

    I just try to add an J2320 in 9.1r8 [export] in my NSM2008 server.

    The J doesn't whant to connect to the server.

    Here is what I found in deviceDaemon.0 every 20sec :

     

    [09/29/2008 18:25:51.705] [Notice] [1122272-connectionMgr.c:2131] Incoming TCP connection from SSH, device ip 172.16.24.69
    [09/29/2008 18:25:51.881] [Notice] [1122272-sshPlugDb.c:854] svrTLSDbServerGetClientData is called.
    [09/29/2008 18:25:51.884] [Notice] [1122272-sessionPlug.c:3581] session returns NETPLUG_SEND_DISCONNECTED
    [09/29/2008 18:25:51.887] [Notice] [1122272-sessionPlug.c:3581] session returns NETPLUG_SEND_DISCONNECTED
    [09/29/2008 18:25:52.114] [Error] [1122272-sshPlug.c:110] SSHPLUG(172.16.24.69): Recv return 0, peer-disconnect
    [09/29/2008 18:25:52.114] [Error] [1122272-sshPlug.c:110] SSHPLUG(172.16.24.69): sshapi_packet_recv return -1 status 1 type 0
    [09/29/2008 18:25:52.114] [Error] [1122272-sshPlug.c:777] SSHPLUG(172.16.24.69): Failed to process SSH_MSG_KEXINIT message
     

     I try to upgrade to 9.1r8 domestic and the SSH tunnel goes up immediatly.

     

    Has anyone else find out this issue ? Is there a way to manage export version of JunOS with NSM2008 ?

     

    Thanks,

     

    Romain

     


    #NSM
    #JUNOS
    #NSM2008


  • 2.  RE: Can't manage JunOS ES export in NSM2008.1r1
    Best Answer

    Posted 09-30-2008 00:12

    Hi,

     

    Currently there is no support for the RSA encryption used in for NSM connectivity in the export version 😞

     

    I would contact the sales teams to get more info on this.

     

    Thanks

     

    Ben