Overview of Cisco 1100 Series Integrated Services Routers
The Cisco 1100 Series Integrated Services Routers (ISR) are powerful fixed branch routers based on the Cisco IOS XE operating system. They are multi-core routers with separate core for data plane and control plane. There are two primary models with 8 LAN ports and 4 LAN ports. Features such as Smart Licensing, VDSL2 and ADSL2/2+, 802.11ac with Wave 2, 4G LTE-Advanced and 3G/4G LTE and LTEA Omnidirectional Dipole Antenna (LTE-ANTM-SMA-D) are supported on Cisco 1100 Series ISRs.
Note |
Explore the Content Hub, the all new portal that offers an enhanced product documentation experience.
Get started with the Content Hub at content.cisco.com to craft a personalized documentation experience. Do provide feedback about your experience with the Content Hub. |
The following table lists the router models that belong to the Cisco 1100 Series ISRs.
Cisco 1100 Series ISRs |
|
---|---|
C1111-8P |
C1111-4P |
C1111-8PLTEEA |
C1111-4PLTEEA |
C1111-8PLTELA |
C1111-4PLTELA |
C1111-8PWE |
C1111-4PWE |
C1111-8PWB |
C1111-4PWB |
C1111-8PWA |
C1111-4PWA |
C1111-8PWZ |
C1111-4PWZ |
C1111-8PWQ |
C1111-4PWN |
C1111-8PWN |
C1111-4PWQ |
C1111-8PWH |
C1111-4PWH |
C1111-8PWR |
C1111-4PWR |
C1111-8PWF |
C1111-4PWF |
C1111-8PLTEEAWE |
C1111-4PWD |
C1111-8PLTEEAWB |
|
C1111-8PLTEEAWA |
|
C1111-8PLTEEAWR |
|
C1111-8PLTELAWZ |
|
C1111-8PLTELAWN |
|
C1111-8PLTELAWQ |
|
C1111-8PLTELAWH |
|
C1111-8PLTELAWF |
|
C1111-8PLTELAWD |
C1101-4P |
C1101-4PLTEP |
C1101-4PLTEPWX |
C1116-4P |
C1116-4PLTEEA |
C1116-4PWE |
C1116-4PLTEEAWE |
C1117-4P |
C1117-4PLTEEA |
C1117-4PLTELA |
C1117-4PWE |
C1117-4PWA |
C1117-4PWZ |
C1117-4PM |
C1117-4PMLTEEA |
C1117-4PMWE |
C1117-4PLTEEAWE |
C1117-4PLTEEAWA |
C1117-4PLTELAWZ |
C1117-4PMLTEEAWE |
System Requirements
The following are the minimum system requirements:
Note |
There is no change in the system requirements from the earlier releases. |
-
Memory: 4GB DDR3 up to 16GB
-
Hard Drive: 200GB or higher (Optional). (The hard drive is only required for running services such as Cisco ISR-WAAS.)
-
Flash Storage: 4GB to 32GB
Note
There is no change in the flash storage size from the earlier releases. The flash storage size must be equal to the system memory size.
-
NIMs and SM-Xs: Modules (Optional)
-
NIM SSD (Optional)
For more information, see the Cisco 4000 Series ISRs Data Sheet.
Note |
For more information on the Cisco WAAS IOS-XE interoperability, refer to the WAAS release notes: https://www.cisco.com/c/en/us/support/routers/wide-area-application-services-waas-software/products-release-notes-list.html |
Determining the Software Version
You can use the following commands to verify your software version:
-
For a consolidated package, use the show version command
-
For individual sub-packages, use the show version installed command
Installing a New Software Release
To install, obtain a Cisco IOS XE 16.x consolidated package (image) from Cisco.com. You can find software images at http://software.cisco.com/download/navigator.html. To run the router using individual sub-packages, you also need to first download the consolidated package and extract the individual sub-packages from a consolidated package.
For information about upgrading software, see the “Installing the Software” section in the Software Configuration Guide for the Cisco 1100 Series ISRs.
Upgrading the ROMMON Version on the Cisco 1100 Series ISR
For information about ROMMON and upgrading procedure, see the "ROMMON Overview and Basic Procedures” section in the Hardware Installation Guide for the Cisco 1100 Series Integrated Services Routers.
Feature Navigator
You can use Cisco Feature Navigator to find information about feature, platform, and software image support. To access Cisco Feature Navigator, go to http://www.cisco.com/go/cfn . An account on cisco.com is not required.
Using the Cisco Bug Search Tool
About the Cisco Bug Search Tool
Use the Cisco Bug Search Tool to access open and resolved bugs for a release.
The tool allows you to search for a specific bug ID, or for all bugs specific to a product and a release.
You can filter the search results by last modified date, bug status (open, resolved), severity, rating, and support cases.
New Features and Important Notes for Cisco ISR 1000 Series, Cisco IOS XE Fuji 16.9.1
This section describes new features in Cisco IOS XE Fuji 16.9.1 that are supported on the Cisco 1000 Series ISRs
New Hardware Features in Cisco 1100 Series ISR Release 16.9.1
There are no hardware features on Cisco 1100 Series Integrated Service Routers for the Cisco IOS XE Fuji 16.9.1 release:
New Software Features in Cisco ISR 1000 Series, Cisco IOS XE Fuji 16.9.1
The following are the new software features introduced in Cisco 1000 Series Integrated Service Routers for Cisco IOS XE Fuji 16.9.1 release:
Application Awareness capability to ZBFW
For detailed information, see the following Cisco document:
Candidate Configuration
A temporary configuration that can be modified without changing running configuration. You can then choose when to update the device's configuration with the candidate configuration, by committing and confirming the candidate configuration.
For detailed information, see the following Cisco document:
Cellular Profile Configration
For detailed information, see the following Cisco document:
Setting Up Secure Device Provisioning for Enrollment in a PKI
For detailed information, see the following Cisco document:
IOS-XE: IPSec VPN with DDNS
For detailed information, see the following Cisco document:
Runtime Defense: ASLR -kASLR
For detailed information, see the following Cisco document:
VXLAN support on IOS-XE
For detailed information, see the following Cisco document:
Web User Interface
Supports an embedded Graphical User Interface based device-management tool that provides the ability to provision the device, simplifies device deployment and manageability, and enhances user experience. The following features aresupported on Web User Interface:
-
Day Zero Enhancement
-
Open Shortest Path First (OSPF)
-
Snort IPS Enhancement
Open and Resolved Caveats in Cisco IOS XE Fuji 16.9.x
All open and resolved bugs for this release are available in the Cisco Bug Search Tool.
This section contains the following topics:
Resolved Caveats-Cisco IOS XE Fuji 16.9.8
Caveat ID Number |
Description |
---|---|
Cisco IOS XE Software NETCONF and RESTCONF Authentication Bypass Vulnerability |
|
Crash in SNMP Engine process while polling chassis id in LLDP |
|
Cisco IOS XE Software Zone-Based Policy Firewall ICMP and UDP Inspection Vulnerability |
|
Cisco IOS and IOS XE Software IKEv2 AutoReconnect Feature Denial of Service Vulnerability |
|
Cisco IOS XE Software H.323 Application Level Gateway Bypass Vulnerability |
|
Cisco IOS XE Software Rate Limiting Network Address Translation Denial of Service Vulnerability |
|
High CPU usage caused by TCP Timer process |
Open Caveats - Cisco IOS XE Fuji 16.9.8
There are no open caveats for this release.
Resolved Caveats-Cisco IOS XE Fuji 16.9.7
Caveat ID Number |
Description |
---|---|
Mishandling of dsmpSession pointer causes a crash |
|
Cisco IOS XE IOx GuestShell USB SSD Namespace Protection Privilege Escalation Vulnerabiliy |
|
Hub router crashed when run test_mpol_policy_qos_policy_template testcase |
|
Device reload due to tunnel flapping |
|
Router may unexpectedly be reloaded when collecting data from the interface using telemetry/Netconf. |
|
Evaluation of CVE-2020-11868 for IOS |
|
Random MPLS-TE tunnels with explicit-path stay down after egress interface is bounced. |
|
Crash due to a NULL pointer while bringing down PPPoE sessions. |
|
Memory leak "AAA SESS ATTR" |
|
ACLs may be partially loaded into hardware resulting in unexpected drop or permit |
|
Cisco ASR 1000 Crash on configuring IP NAT inside source list under VRF |
|
GETVPN: All GM will crash when Primary KS recovers its COOP role after network outage |
|
"platform ipsec reassemble transit" tail-drops unencrypted IPv4 Fragments with specific payload |
|
Passive FTP doesn't work with NAT |
|
Cisco ISR router running 16.9.6 crashes authenticating crypto certificate |
|
APPNAV CFT Crashes |
|
unable to transfer 1500 byte IP packet when using BRI bundled Multilink |
|
LMR Unable to hear first seconds of audio |
|
Duplicate entries seen in MAC filter table. |
Open Caveats - Cisco IOS XE Fuji 16.9.7
Caveat ID Number |
Description |
---|---|
RSA Keysize > 2048 may cause crash |
|
DNAC Wolverine - Crypto PKI-CRL-IO_1 process crashed in crypto_send_pki_request,crypto_crl_io_proc |
|
CUBE fails to send calls with below error after updating IOS to 16.9.5 Error (Resource busy) |
|
Link auto-negotiation fails between Cisco 1111-4P ES-4 switch module and Meraki MX100 |
|
Memory Leak in MallocLite / Crypto IKMP |
|
CP process crashed while I95 driver was adding an IPC response to the receive ring |
Resolved Caveats-Cisco IOS XE Fuji 16.9.6
Caveat ID Number |
Description |
---|---|
PfRv3: Crash while Printing the Same TCA Message |
|
Crash when IOS is adapting shaping with Adaptive QoS over DMVPN configured |
|
Protocol type for GRE header doesn't work consistently with "cts sgt inline" enable over auto-tunnel |
|
Crash when entering username with aaa common-criteria policy password |
|
Memory leak under Key Manager (keyman) process |
|
Router crashes when the calls doesn't establish after making 2 calls when we set "max-conn 2" |
|
CPU Spike seen due to "VTEMPLATE BKG OW Process" when disconnecting PPP users 100 session/sec rate |
|
Sync failure and hung calls observed on standby |
|
Performance Monitor crash |
|
CiscoFlashFile - Get-Next request takes longer time for last file on directory. |
|
Need to check qfp ucode crash with RTCP traffic - chunk memory corruption in RTCP path |
|
After putting caller on hold - caller call leg tx packets are increasing in CUBE |
|
IOS crash in DHCPd Receive with Unnumbered interfaces |
|
With CRL fetch failed, stuck at Failed to send the request. There is another request in progress |
|
LNS crash with Segmentation fault(11) in L2TP mgmt daemon |
|
Memory leak in CC-API_VCM and CCSIP_SPI_CONTROL |
|
CFT crashed frequently |
|
Memory leak under CCSIP_UDP_SOCKET / MallocLite |
|
Process = Exec crash seen on dmap longevity testbed with clear cry sa peer several times |
|
FlexVPN Hub Memory Leak in AAA process when IKEv2 sessions are being established |
|
NeMo tunnel is down after cellular interface config is overwritten |
|
IOS-XE device has memory leak in linux_iosd-imag |
|
x509 SSH authentication incorrect UPN value selected |
|
crash with shared-line command |
|
RTP/SRTP interworking fails when 180 and 183 have different to-tag |
|
CUBE DNS cache clear should be limited only to the matched connection id |
|
Connect message is never forwarded to the calling side |
|
Crash due to DHCP relay |
|
CPP crash due to a long QoS Policy and Class name |
|
IOS-XE: NAT not work for Active FTP |
|
C1111-LTE Observe data stalling after cellular interface has been loaded with data traffic for while |
|
CUBE crashes when SIP call is forked with active SIP KPML subscription |
|
Multiple Cisco Products Snort HTTP Detection Engine File Policy Bypass Vulnerability UTD |
|
unexpected reload in CPP ucode forced by nat 514 . |
|
MACsec 128/256 XPN on 40g/100g, stop passing traffic for one of AN and interface link flap seen |
|
Flow monitor is removed from interface configuration on reload |
|
Device Crash observed with NAT and once there is traffic from outside |
|
Process sessmgrd crash due to clear radius sg-stats command. |
|
Memory leak in SCCP TLS Client on unexpected deregister event |
|
Device crashed after Boost license expire |
|
IOS-XE FW feature crashes while inspecting TCP packet with incorrect session packet state. |
|
FlexVPN IKEv2 Tunnel route removed after establishing new IKEv2 SA to another peer |
|
missing/corrupt IOS-XE PKSC10 format |
|
Incorrect Source IP when resolving DNS |
|
router see http wsma request as coming from 192.168.1.5 |
|
CUBE/LGW: Certificate Unknown Error is observed when cn-san-validate server is configured |
|
CPUHOGS produced while executing the command - client fireall access-list ? |
|
ISR1K/4K reloads with erroneous reload cause code |
|
CUBE keeps sending REINVITES to peer legs leading to high CPU and eventually crashes. |
|
IOS-XE MTP Fails to Interwork DTMF RFC2833 from Payload 100 to Payload 101 |
|
ZBFW drops selfzone generated packets from CPU to host with invalid reason in 16.12.x routers |
|
Crash on IOS-XE router when authenticating expired IPSec peer certificate |
|
Memory leak in STUN/MallocLite on ISRG2 CUBE/SIP GW routers leading to memory exhaustion over time. |
|
Crash due to a segmentation fault in the "IPsec background proc" process |
|
Calls going through T1 are rejected with "no dsps found" Analog/TDM Hairpin calls |
|
Crash when tearing down a PPPoE client session |
|
Survivability.tcl recovery procedure fails on Ingress GW of CCE call flow |
|
Router crashes frequently on NBAR |
|
CUBE Segmentation Fault @ sipSPIFreeOneSCB due to corrupt ccb |
|
Secure key agent memory leak in 16.9 and only in 16.9 |
|
Unexpected Reload after running 'show voice dsp' command while an ISDN Call Disconnects |
Open Caveats - Cisco IOS XE Fuji 16.9.6
Caveat ID Number |
Description |
---|---|
[UniScale]Crash seen on csr1k during NAT44 hsl scale test when clearing max NAT translations |
|
Router May Crash When a SSH session is Closed After a TACACS Configuration Change (Part 2) |
|
Memory corruption crash when device is booting up |
|
CUBE fails to send calls with below error after updating IOS to 16.9.5 Error (Resource busy) |
|
Interface qlimit size decreases causing output / tail drops |
|
Crash due to a NULL pointer while bringing down PPPoE sessions. |
Resolved Caveats-Cisco IOS XE Fuji 16.9.5
Caveat ID Number |
Description |
---|---|
DHCP-pd reflect the Advertised prefix in Request message |
|
Crash when entering username with aaa common-criteria policy password |
|
IOS PKI: trustpoint doesn't rollover regenerated RSA keys. |
|
NAT MIB not populated when using traditional NAT |
|
Memory leak VOIP *MallocLite* |
|
CME: Toll fraud app not automatically trusting traffic from phones |
|
memory leak @ CCSIP_SPI_CONTR |
|
vEWLC:High amount of wncd memory leaks observed@crypto_encrypt_data_params_create_internal on scale |
|
Signaling interface inactive on "show snmp mib ifmib ifindex de" on IOS 16.6.3 |
|
DMVPN Phase 2 shortcut triggered from a spoke behind PAT may end up in stuck DNX state |
|
Async lines configuration is not retrievable over netconf |
|
Router Running IOS-XE 16 Crashes when Stopping EPC with ACL |
|
ISR4K CME no way audio on calls across E1/PRI, reboot resolves for sometime |
|
CDETS to follow up fix "P-bit Sev Err Secs" increasing in patterns of 256 in SM-X-1T3/E3 in ISR4451 |
|
Router crashes after snmpget to OID related to NHRP |
|
Ucode crash in infra with injected jumbo packet |
|
BGL18 Alpha: Cat9x00 hitting "No connections to Shell Manager available for processing the command" |
|
ISR4k Crash seen in skinny_unreserve_xcode_stream on 16.9 |
|
cpp_bqs_srt_yoda_csr_tree_seid_initialize:1744 is not in "placed" state |
|
Memory leak in linux_iosd when polling mabClientIndexTest mib. |
|
DMVPN - Loopback interface as Tunnel source; packet not hitting NAT when egressing DMVPN device |
|
Neptune: 10G link does not come up after reload with GE-T SFP inserted in FPGE SFP slot |
|
ASR1006-X: cpp_cp_svr: QFP0.0 CPP Driver LOCKDOWN encountered due to previous fatal error |
|
CUBE router crashed due to memory corruption in subscription control block |
|
BRI leased line can't come up automatically after remove/insert one side's cable |
|
Voice gateway crash due to segmentation fault in process CCSIP_DNS |
|
IOSXE: IOMD / TDL leak seen with tdl_response_xcode_stat_side_t |
|
AppNav: Optimization failed with Asymmetrical traffic, VRF, FNF and NBAR |
|
Account logon failing for both direct and indirect lite-session in 16.9.3 |
|
AFW_application_process triggers a crash with voice conference |
|
CUBE ha crash of standby unit after call hold from video endpoint |
|
C1111-4P doesn't restart authentication for "clear authen session" if "authen open" the port |
|
ISR 4k Reloads Unexpectedly, Crashing in the "IP NAT Ager" Process |
|
Supervisor reloaded due to cpp_cp_svr process crashing |
|
Recording failures with XMF media forking and SIP preservation timer |
|
cpp_cp_svr crash in cpp_bqs_rm_yoda_select_sch_exponent |
|
Supervisor reload due to cpp_cp_svr crash. |
|
ESP reload due to cpp_cp_svr exception at cpp_bqs_exponent_cnt_validate |
|
Cube might crash when sending a SIP message over TLS |
|
Core seen in ISR when removing the service-insertion config and committing it back |
|
Crash after executing "show archive config differences" |
|
Router crashed on running show policy-map interface <> output command |
|
connectivity is broken on ingress-replication L2DP/VXLAN |
|
CME/BE4K SNR: Crash when config changes are made while SNR call is active |
|
Router crashes with ZBF HA sync. |
|
QoS configuration download failed when device reloading |
|
NHRP process crash on using same tunnel address on multiple spokes |
|
"DHCPD Receive" process crash |
|
ISR4451-X / 16.09.01 / Crash when IPSEC SA installation fails |
|
Crashes when trying to bring-up / bring-down IPsec crypto session for OSPFv3 |
|
Unrecoverable Error with PVDM in 0/4 and Thule+dreamliner in 1/0 on ISR4300 |
|
incorrect Total number of translations on show ip nat translations |
|
Punt fragment crash when receive EoGRE packets which have many fragments |
|
Smart licensing PID and SN logs filling up the IOSRP tracelogs |
|
ISR4K Router CPP ucode Crash due IPv4 Fragmented packets |
|
KPML dialing fails after CSCvq20936 commit |
|
Session unauthorized as Redirect ACL Failure. Failed attribute name POSTURE_REDIRECT. |
|
qfp ucode crash with media monitor |
|
ISR G3, ASR1K crash after VoIP AAA test |
|
Router crashes due to Segmentation Fault when 'ccb' gives a NULL Pointer |
|
Crash due to NBAR classification |
|
ASR1k - Egress byte count is innacurate |
|
Router may crash unexpectedly with Segmentation fault(11), Process = DSMP |
|
Removing and adding ACL to ASR1K is causing Tracebacks and download to DP failed errors |
|
ESP ucode crashed when running NAT with bpa (CGN) |
|
Observed Traceback with SRTP-RTP call after hold/resume |
|
While signalling forking the CUBE is not Sending Re-INVITE for T.38 with the Authorized header. |
|
Prince: Keepalive pkts dropped when serial link congested with data traffic |
|
CME-ISR4K: BLF working Inconsistently on 16.09.03 [Bad code fix was done in CSCvk49797] |
|
ISR4k : Crash seen at Process Exec |
|
ASR1006 tunnels are flapping CPP crash |
|
CUBE is updating the resolved IP only after the REGISTER expires |
|
IOS-XE crash after doing a SCEP enrollment |
|
ISR 4K router crash during updating the OpenDNS bypass whitelist |
|
IWAN High CPU and Memory |
|
IWAN crash related to DCA channel |
|
Router crashed on removing trustpoint on dspfarm profile |
Open Caveats - Cisco IOS XE Fuji 16.9.5
Caveat ID Number |
Description |
---|---|
RFGW-10 Sup Moka CRC Causes Slot 3-10 Linecard Restarts |
|
[UniScale]Crash seen on csr1k during NAT44 hsl scale test when clearing max NAT translations |
|
Router crashes when the calls doesn't establish after making 2 calls when we set "max-conn 2" |
|
Kernel crash in netfilter |
|
Remove show ip/ipv6 access-list from syncfd-<ewlc-SIT>17.1-Observed Traceback followed by IOSD crash |
|
ASR1k crash in NAT code when processing PPTP traffic |
|
Passive FTP will fail when going over NAT and either client or server are off a SM-X-ES3 |
|
IOS crash in DHCPd Receive with Unnumbered interfaces |
|
LNS crash with Segmentation fault(11) in L2TP mgmt daemon |
|
Memory leak in CC-API_VCM and CCSIP_SPI_CONTROL |
|
Memory leak under CCSIP_UDP_SOCKET / MallocLite |
|
Process = Exec crash seen on dmap longevity testbed with clear cry sa peer several times |
|
cpp_cp_svr fast memory leak when nbar custom protocol is configured |
|
ASR1K ucode crash after too many locks in ZBF pair setup |
Resolved Caveats-Cisco IOS XE Fuji 16.9.4
Caveat ID Number |
Description |
---|---|
Traceback is observed during mid-call media IP and port change |
|
491 not sent in a multiple re-invites in DO2EO scenario |
|
IKE Fragmentation payload incorrectly marked as critical |
|
CUBE crashes at sipSPI_ipip_vcc_CheckCodecSetType |
|
CRL file is getting overwritten when PKI server turns up after reload |
|
False authorizations and authentications even without radius server for dot1x/mab |
|
Router crash when clearing ip nat translations |
|
IOS CUBE Ent does not show 'media anti-trombone' in configuration |
|
"clear crypto sa vrf MyVrf" triggers crash after updating pre-shared-keys |
|
"VoIP dial-Peer <XX> is Busied out" printed in log every 2 minutes when destination is not reachable |
|
Crash under AFW_application_process with shared-line configuration |
|
Crash at CCB of RTPSPI at the moment of creating a disconnect timer |
|
SNMP PKI trap are generated with wrong OID of 6999 instead of 854 per OID assignment |
|
PKI authentication should proceed even if GetCACaps return any http failure |
|
[SAP] syncfd fails to start on reload after upgrade to new ES image |
|
IPSec background crash while sending SNMP trap |
|
CUBE doesn't forward 200 OK in SRTP-RTP scenario with TCL script on Dial-peer |
|
CUBE: Crash observed at rbuf_ooh_handler |
|
Media Ant-Trombone does not properly handle a Re-Invite utilizing a Replaces Header |
|
ISR1K Fails to Send Multicast Traffic When Also Receiving The Same Group From a Non-direct Source |
|
IP change on dialer-int does not trigger a correct "local cryto entpt"in DMVPN |
|
DSM-3-INTERNAL: Internal Error : No DSM handle provided traceback on TDM voice gateway |
|
Device reloads when applying #client <IP> vrf Mgmt-vrf server-key 062B0C09586D590B5656390E15 |
|
Crash caused by a "TLB Modification exception" after processing a null chunk in "IP Input" process. |
|
CUBE Crash in CCSIP_SPI_CONTROL process |
|
IOS-XE PKI: Certificate with 4 dashes imported in trustpool gets lost after reboot |
|
CUBE Crash in sipSPIAppAddCallInfoUI |
|
IPv6 To/From headers malformed with TCL IVR Script and header-passing |
|
Out of Band DTMF Events Not Passing to CUCM via SCCP When Using IOS MTP |
|
Crash with SIP call |
|
loss of two way audio with Skinny Phone, Line instance does not work until the next reboot. |
|
Certificate map does not work always with UPN in SAN field |
|
Cube crash with %SDP-3-SDP_PTR_ERROR |
|
ISR1k ping fails with MTU value 1560 |
|
SSRC-field in RTCP gets changes to 0 when going through TRP present in the media path. |
|
CUBE doesn't forward INVITE with "midcal-signalling passthru media-change" during a video escalation |
|
Recommit of CSCvm99778 - eca/ewlc/qwlc/mewlc Sanity : AP join failed. |
|
RTP/SRTP interworking fails when 18x w/o SDP is before 183 w/SDP |
|
Memory leak in SMD process due to AAA Idle-timer not being freed |
|
Crash when making an external call |
|
Incorrect syntax in CRL download URL cause crash |
|
TCP port takes 4 minutes to get released after it is closed |
|
TACACS group server is not seen, when "transport-map type console test" is configured. |
|
FlexVPN with password encryption - keyring aaa LIST password 6 xxxxx encrypted again upon reload |
|
PBR works although an interface is down. |
|
Subscribers cannot re-login due to CoA time-out (lite-sessions in routed mode) |
|
Radius attr 32 NAS-IDENTIFIIER not sending the FQDN. |
|
CLI "nat force-on" in voice service voip not working as expected |
Open Caveats - Cisco IOS XE Fuji 16.9.4
Caveat ID Number |
Description |
---|---|
Byte counters for physical interface and subinterface don't match |
|
Memory leak VOIP *MallocLite* |
|
memleak_detect script errors "can't use floating-point value as operand of -" |
|
DMVPN Phase 2 shortcut triggered from a spoke behind PAT may end up in stuck DNX state |
|
Kernel crash in netfilter |
|
CPP Stuck thread when processing IPv6 traffic |
|
Router crashes after snmpget to OID related to NHRP |
|
BRI leased line can't come up automatically after remove/insert one side's cable |
|
shaper of the internal crypto interface is incorrectly programmed |
|
IOSXE: IOMD / TDL leak seen with tdl_response_xcode_stat_side_t |
|
AppNav: Optimization failed with Asymmetrical traffic, VRF, FNF and NBAR |
|
Router crashes with ZBF HA sync. |
|
Need to check qfp ucode crash with RTCP traffic - chunk memory corruption in RTCP path |
|
Class-attributes duplicated after EAP reauthen. in ISG radius proxy scenario |
|
cable-detect command not reflecting proper status in Analog ports on IOS-XE platforms |
|
RADIUS attribute 4 (NAS-IP-Address) is not honored |
|
cpp_cp_svr crash in cpp_bqs_rm_yoda_select_sch_exponent |
|
CPP microcode core file generated due to HW interrupt |
|
Crash after executing "show archive config differences" |
|
Router crashed on running show policy-map interface <> output command |
|
TCP traceroute - response ICMP TTL exceeded packet dropped by ZBFW with NAT enabled |
|
connectivity is broken on ingress-replication L2DP/VXLAN |
|
IWAN router crash after upgrading to 16.3.8 |
|
IOSd Segmentation Fault on CTS enabled SDA fabric-edge switch stack |
|
Router crashes with ZBF HA sync. |
|
NEAT/CISP:authenticate SVI interface for Supplicant switch in NEAT port when spanning-tree disabled |
|
FlexVPN with password encryption -- after MasterKey change password in profile is not working |
|
getvpn suiteb:KS sends delete payload to gm's while scheduled rekey after primary KS dead/readded |
|
NHRP process crash on using same tunnel address on multiple spokes |
|
When issuing ip helper-addresss x.x.x.x command, "sh run" and "sh run all" show differently |
|
IOS XE: RSA Keys randomly getting wiped out after rebooting |
|
[SDA] Crash due to Segmentation fault(11), Process = ARP Input |
|
Segmentation Fault in IP RIB Update following Virtual-Access Interface flap |
|
IPSec SA creation failure causes crash in fman-fp-image |
|
2 interfaces of client in different vrf connected to same vlan of server not able to get ip via dhcp |
|
"DHCPD Receive" process crash |
|
Gi0/0/0 interface stays up/up and LED green after cable removed |
Resolved Caveats-Cisco IOS XE Fuji 16.9.3
Caveat ID Number |
Description |
---|---|
Traceback is observed during mid-call media IP and port change |
|
491 not sent in a multiple re-invites in DO2EO scenario |
|
IKE Fragmentation payload incorrectly marked as critical |
|
CUBE crashes at sipSPI_ipip_vcc_CheckCodecSetType |
|
CRL file is getting overwritten when PKI server turns up after reload |
|
False authorizations and authentications even without radius server for dot1x/mab |
|
Router crash when clearing ip nat translations |
|
IOS CUBE Ent does not show 'media anti-trombone' in configuration |
|
"clear crypto sa vrf MyVrf" triggers crash after updating pre-shared-keys |
|
"VoIP dial-Peer <XX> is Busied out" printed in log every 2 minutes when destination is not reachable |
|
Crash under AFW_application_process with shared-line configuration |
|
Crash at CCB of RTPSPI at the moment of creating a disconnect timer |
|
SNMP PKI trap are generated with wrong OID of 6999 instead of 854 per OID assignment |
|
PKI authentication should proceed even if GetCACaps return any http failure |
|
[SAP] syncfd fails to start on reload after upgrade to new ES image |
|
IPSec background crash while sending SNMP trap |
|
CUBE doesn't forward 200 OK in SRTP-RTP scenario with TCL script on Dial-peer |
|
CUBE: Crash observed at rbuf_ooh_handler |
|
Media Ant-Trombone does not properly handle a Re-Invite utilizing a Replaces Header |
|
ISR1K Fails to Send Multicast Traffic When Also Receiving The Same Group From a Non-direct Source |
|
IP change on dialer-int does not trigger a correct "local cryto entpt"in DMVPN |
|
DSM-3-INTERNAL: Internal Error : No DSM handle provided traceback on TDM voice gateway |
|
Device reloads when applying #client <IP> vrf Mgmt-vrf server-key 062B0C09586D590B5656390E15 |
|
Crash caused by a "TLB Modification exception" after processing a null chunk in "IP Input" process. |
|
CUBE Crash in CCSIP_SPI_CONTROL process |
|
IOS-XE PKI: Certificate with 4 dashes imported in trustpool gets lost after reboot |
|
CUBE Crash in sipSPIAppAddCallInfoUI |
|
IPv6 To/From headers malformed with TCL IVR Script and header-passing |
|
Out of Band DTMF Events Not Passing to CUCM via SCCP When Using IOS MTP |
|
Crash with SIP call |
|
loss of two way audio with Skinny Phone, Line instance does not work until the next reboot. |
|
Certificate map does not work always with UPN in SAN field |
|
Cube crash with %SDP-3-SDP_PTR_ERROR |
|
ISR1k ping fails with MTU value 1560 |
|
SSRC-field in RTCP gets changes to 0 when going through TRP present in the media path. |
|
CUBE doesn't forward INVITE with "midcal-signalling passthru media-change" during a video escalation |
|
Recommit of CSCvm99778 - eca/ewlc/qwlc/mewlc Sanity : AP join failed. |
|
RTP/SRTP interworking fails when 18x w/o SDP is before 183 w/SDP |
|
Memory leak in SMD process due to AAA Idle-timer not being freed |
|
Crash when making an external call |
|
Incorrect syntax in CRL download URL cause crash |
|
TCP port takes 4 minutes to get released after it is closed |
|
TACACS group server is not seen, when "transport-map type console test" is configured. |
|
FlexVPN with password encryption - keyring aaa LIST password 6 xxxxx encrypted again upon reload |
|
Subscribers cannot re-login due to CoA time-out (lite-sessions in routed mode) |
|
Radius attr 32 NAS-IDENTIFIIER not sending the FQDN. |
|
CLI "nat force-on" in voice service voip not working as expected |
Open Caveats - Cisco IOS XE Fuji 16.9.3
Caveat ID Number |
Description |
---|---|
Crash while processing ISIS updates when DiffServ-TE is enabled |
|
Router crashed when printing logs while constructing rekey packets (GETVPN) |
|
IPV4 routes on the global routing table learnt via BGP refreshes upon adding or removing a VRF |
|
Crash due to chunk corruption in ISIS code |
|
Dialer interface shutdown caused crash of router. |
|
Crash at NAT clear |
|
IOS-XE Router may crash when attempting to Fragment Corrupted IPv4 Packet |
|
DHCP discover packets were being dropped at firewall since UDP source port as 0. |
Resolved Caveats-Cisco IOS XE Fuji 16.9.2
Caveat ID Number |
Description |
---|---|
OSPF originates default route without "default-information originate" |
|
OSPF routing loop for external route with multiple VLINKs/ABRs |
|
Viptela-netconf returns 255 length byte-stream chars instead of actual length for OSPFV2 Key-string |
|
OSPF SR uloop : After issuing \"clear ip ospf process\". ospf process crashed |
|
BGP high CPU when config 256k vxlan static route |
|
BGP crash while running show command and same time bgp peer reset |
|
C1100 router stops forwarding traffic when doing bulk configurations on device via telnet |
|
TSN: Maximum HSRP Groups on FPGE interface not match the HW capability |
|
ISR1111-4P Ping issue between LAN inetrface and directly connected switch |
|
ICMP unrechables are not sent to the client on C1117 platform |
Open Caveats - Cisco IOS XE Fuji 16.9.2
Caveat ID Number |
Description |
---|---|
Can't configure multiple CFM IP SLA with the same source MEP on ISR1k |
|
ISR1K Fails to Send Multicast Traffic When Also Receiving The Same Group From a Non-direct Source |
|
cpp_cp_svr crash in bqs while running QMRT test tool |
|
Strict SID has NOT been enabled in ISIS segment-routing |
|
Subscriber session hangs after the upgrade and reload |
|
config-sync failure aaa authorization commands |
|
Configuring more than 5k NAT entries cause high CPU utilization even with no traffic |
Resolved Caveats - Cisco IOS XE Fuji 16.9.1
All resolved bugs for this release are available in the Cisco Bug Search Tool.
Caveat ID Number |
Description |
---|---|
Excessive Reflector Tracelogs |
|
uIDB leaks at the DMVPN hub if the route to remote NBMA is not learned |
|
C1111 Gi0/0/1 not passing packets when autoneg is disabled |
Open Caveats - Cisco IOS XE Fuji 16.9.1
Caveat ID Number |
Description |
---|---|
NIM-VAB-A: Configured in ADSL2+ mode brings up the ethernet interface. |
|
C1101-4PLTEP-EM74xx: No free dialer causes data call fails after another SIM slot is activated. |
|
sdavc_ppdk.pack force command is not accepted during boot up |
|
Unable to remove the ip nat inside destination command. |