Deep Inspection attack database update frequency for ScreenOS
Knowledge Base ID: KB10473
Version: 4.0
Published: 26 Mar 2009
Updated: 26 Mar 2009
Categories: . Firewall/IPSec_VPN
. Deep Inspection
. ScreenOS

Synopsis:
How often does Juniper update a Deep Inspection attack database for ScreenOS?
When does Juniper stop the support of Deep Inspection attack database updates for ScreenOS?

Problem:




Solution:

How often does Juniper update a Deep Inspection attack database for ScreenOS?

As of ScreenOS 5.3.0r5, there were some modifications to allow for future attack database updates:
  1. New mechanism is used to create attack signatures (e.g., new protocol decoders and new contexts),
  2. Attack database URL changes (please refer to the 5.3.0r5 Release Notes), and
  3. Regular attack database updates
Addressed Issues in ScreenOS 5.3.0r5
  • os64441 - Modifications were made to allow for future attack db updates. The attack URL has changed from https://services.netscreen.com/restricted/sigupdates/5.3/ attacks.bin to https://services.netscreen.com/restricted/sigupdates/5.3u/attacks.bin
In order to utilize the enhancements of new attack database, Juniper does not provide DI attack database updates for ScreenOS 5.3.0r1 to 5.3.0r4. Instead Juniper recommends upgrading the ScreenOS.  The following ScreenOS versions include the fix:
  • ScreenOS 5.3.0r5 or above
  • ScreenOS 5.4
  • ScreenOS 6.x

To check the version of the latest attack database, go to the J-Security Center: http://www.juniper.net/security. The 'Latest Attack Object Updates' are posted in the left-hand column.

When will Juniper stop the support of Deep Inspection attack database updates for ScreenOS?

Juniper follows the ScreenOS Software End of Life (EOL) policy. The EOL dates for ScreenOS are posted at http://www.juniper.net/support/eol/screenos.html.

Purpose:
Specifications