Support Support Downloads Knowledge Base Case Manager My Juniper Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

[ScreenOS] Dynamic DNS shows last response as “not init”

0

0

Article ID: KB27464 KB Last Updated: 12 Aug 2013Version: 1.0
Summary:

After setting up the Netscreen device for DDNS with clear text unchecked in the server settings, the WebUI shows the last response as 'not-init'; the CLI shows 'successful updates: 0'. This happens because if the clear text box is unchecked, then HTTPS encryption is used for DDNS servers. The Netscreen device does not have the required certificate installed. This article describes how to download and install the correct certificate.

Symptoms:

After setting up a Netscreen device for DDNS with clear text unchecked in the server settings, the WebUI of the Netscreen shows the last response as 'not-init'; the CLI shows 'successful updates: 0'.

If the clear text box is unchecked then HTTPS encryption is used for DDNS servers.

Cause:

This error is due to the Netscreen not having the required certificate installed.

Solution:

First, get the ID of the DDNS configuration.  Execute the command get dns ddns via the CLI:

user1-> get dns ddns id 209
Id: 209
State: Init
Socket: -1
Type: dyndns
Server: members.dyndns.org
Clear-text: no
Refresh-int: 3 days 14 hours 0 minutes 0 seconds
Min-update-int: 2 hours 0 minutes 0 seconds
Next-update: 1 minutes 0 seconds
Username: ******
Password: **********
Agent: Netscreen-6.2.0r1.0-0064032004004624
Src-interface: ethernet3
Host-name: *****.dyndns.net
Last-response: not-init
Last-response-ip: 0.0.0.0

Counters
--------------------------------------------------------------------------------
Successful updates: 0
Failed updates: 0
Server lookup failures: 0
Socket creation errors: 0
Socket connect errors: 2
Socket send errors: 0

To correct this problem, complete these steps:

  1. Go to the website https://members.dyndns.org/ and double-click the padlock.

  2. Click View > Certificates > Details > Certificate Hierarchy of Equifax Secure CA

  3. Click Export and then save the certificate.

  4. Go into the WebUI of the Netscreen and go to Objects> Certificates, and upload.

  5. Go back to the DDNS section and click refresh.

  6. You should now see from the output of get dns ddns that it has successfully updated.
For more information, refer to KB4777- Installing a Certificate on Netscreen Device.

Related Links

Comment on this article > Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search