Specifications

very high and the host path and interface network control queues can get congested.
Refer to KB29553 for more information and mitigation. PR945215
In rare cases, rpd may write a core file with signature "rt_notbest_sanity: Path selection
failure on ..." The core is 'soft', which means there should be no impact to traffic or
routing protocols. PR946415
In a scaled setup a restart routing or NSR switchover can result in duplicate msdp
entries. PR977841
With BGP multipath configured, if a BGP route's multiple protocol nexthops are resolved
to different types of IGP routes with a same metric, high rpd process utilization might
be observed due to the BGP multipath task. PR1017372
The multicast traffic might be pruned with a static IGMP join configuration upon
receiving an IGMP leave group message when the interface is not a querier on the
corresponding interface. PR1034270
Routing Policy and Firewall Filters
There are two routing-instances, AAA and BBB. AAA's instance-type is default
(non-forwarding). BBB's instance-type is virtual-router. Create a policy to import routes
from routing-instances AAA to BBB. If the instance-type of AAA is changed from default
to virtual-router after the routing-policy is already configured, the route is missing from
routing-instance BBB. PR969944
Services Applications
When you specify a standard application at the [edit security idp idp-policy
<policy-name> rulebase-ips rule <rule-name> match application] hierarchy level, IDP
does not detect the attack on the nonstandard port (for example, junos:ftp on port
85). Whether it is a custom or predefined application, the application name does not
matter. IDP simply looks at the protocol and port from the application definition. Only
when traffic matches the protocol and port does IDP try to match or detect against
the associated attack. PR477748
When Ipsec tunnels scaled we need to have multiple proposals, otherwise all of these
tunnels do rekey almost around the same time, so load on the kmd would be too high
to handle it. Currently kmd (Routing Engine) is limited by tunnel setup rate of 6 tnl/sec.
So, 1k tunnels bring up would take around 150-200 seconds . It is better to split the
configuration with different proposals (each with 1k) having different lifetime values,
scattered by 200 seconds. PR929693
On M Series, MX Series, T Series routers (platforms) with Services PIC, the incoming
interface is a services interface. If the services interface receives "ICMP MTU Exceeded"
message, the message might be dropped. PR977627
Stale entries after connecting and disconnecting 100 PPPoE Dual Stack subscribers
with DTCP filters based on CID. PR979517
With Real Time Streaming Protocol (RTSP) Application Layer Gateway (ALG) enabled,
the PIC might crash in case the transport header in status reply from the media server
is bigger than 240 bytes. PR1027977
Copyright © 2015, Juniper Networks, Inc.78
Release Notes: Junos OS Release 13.3R6 for the EX Series, M Series, MX Series, PTX Series, and T Series