Very, interesting and quite worrisome :
i configured a RO user :
user occasus {
uid 2001;
class read-only;
I logged in and tried the "?" and then the "request wlan access-point restart ap-1" and here are the results:
occasus@AltaBadia> ?
Possible completions:
file Perform file operations
help Provide help information
load Load information from file
op Invoke an operation script
quit Exit the management session
request Make system-level requests
save Save information to file
set Set CLI properties, date/time, craft interface message
show Show system information
start Start shell
test Perform diagnostic debugging
occasus@AltaBadia>
occasus@AltaBadia> request wlan access-point restart raven-ap1
Successfully restarted the access point.
occasus@AltaBadia>
And the ap-1 restarted indeed as my iPad lost connectivity (it was on wifi on one of the SSIDs of the AP-1)
In my oppinion this is very worrysome as i believe it could be a door open to tinkering with the SRX... especially with the "file" and/or "load"...
If possible, it would be great, at this point, to have someone from Juniper to confirm (or infirm) that this is a desired behavior of the RO class.
Cheers
Andy