About Cisco ASR 1000 Series Aggregation Services Routers
Note |
Explore the Content Hub, the all new portal that offers an enhanced product documentation experience.
Get started with the Content Hub at content.cisco.com to craft a personalized documentation experience. Do provide feedback about your experience with the Content Hub. |
Cisco ASR 1000 Series Aggregation Services Routers are Cisco routers deployed as managed service provider routers, enterprise edge routers, and service provider edge routers. These routers use an innovative and powerful hardware processor technology known as the Cisco QuantumFlow Processor.
Cisco ASR 1000 Series Aggregation Services Routers run the Cisco IOS XE software and introduce a distributed software architecture that moves many operating system responsibilities out of the IOS process. In this architecture, Cisco IOS, which was previously responsible for almost all of the internal software processes, now runs as one of many Cisco IOS XE processes while allowing other Cisco IOS XE processes to share responsibility for running the router.
ROMmon Release Requirements
For more information on ROMmon support for Route Processors (RPs), Embedded Services Processors (ESPs), Modular Interface Processors (MIPs), and Shared Port Adapter Interface Processors (SIPs) on Cisco ASR 1000 Series Aggregation Services Routers, see https://www.cisco.com/c/en/us/td/docs/routers/asr1000/rommon/asr1000-rommon-upg-guide.html.
New Features and Important Notes
New and Changed Information
The following sections list the new hardware and software features that are supported on the Cisco ASR 1000 Series Aggregation Services Routers.
New Hardware Features in Cisco IOS XE Fuji 16.9.1
The following are the new hardware features introduced in Cisco ASR 1000 Series Aggregation Services Routers for Cisco IOS XE Fuji 16.9.1.
EPA-QSFP-1X100GE
For detailed information, see the following Cisco documents:
New Software Features in Cisco IOS XE Fuji 16.9.1
The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers for Cisco IOS XE Fuji 16.9.1.
Address Range command for Object Group
For detailed information, see the following Cisco document:
BNG: Dumping event-traces along with the crash
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/command/isg-cr-book/isg_m1.html
Candidate Configuration
A temporary configuration that can be modified without changing running configuration. You can then choose when to update the configuration of the device with the candidate configuration, by committing and confirming the candidate configuration. For detailed information, see the following Cisco document:
CCE Serviceability: TCAM usage troubleshooting improvements
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/security/s1/sec-s1-cr-book/sec-cr-s5.html
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr/command/ipaddr-cr-book/ipaddr-s1.html
CPAK-100G-ER4L support
For detailed information, see the following Cisco document:
Add PHY firmware update
For detailed information, see the following Cisco document:
FlexVPN AnyConnect Profile Download
For detailed information, see the following Cisco document:
IS-IS Event Trace Improvements
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/ios/iproute_isis/command/reference/irs_book/irs_is2.html
IS-IS: Improvements to - Show tech isis
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/ios/iproute_isis/command/reference/irs_book/irs_is2.html
IS-IS: Provide Per-Interface statistics for CLNS or IS-IS traffic
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/ios/iproute_isis/command/reference/irs_book/irs_is2.html
L2 EVPN Multihoming
For detailed information, see the following Cisco document:
OSPFv2 -Strict SPF Support
For detailed information, see the following Cisco document:
PKI Event-Trace Implementation
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/ion-en_US/ios-xml/ios/security/m1/sec-m1-cr-book.html
https://www.cisco.com/c/en/us/td/docs/ion-en_US/ios-xml/ios/security/s1/sec-s1-cr-book.html
Secure Storage of encryption keys and passwords
For detailed information, see the following Cisco document:
show crypto pki certificate
For detailed information, see the following Cisco document:
https://www-cisco.com/c/en/us/td/docs/ios-xml/ios/security/s1/sec-s1-cr-book.html
Macsec and DLC Support
For detailed information, see the following Cisco document:
Support for inter-AP Roaming Between APs of Mixed Aggregation Type
Roaming of clients between access points of mixed aggregation, such as L2 and Ethernet over Generic Routing Encapsulation (EoGRE) interfaces with DHCP triggers, is supported.
Web UI
Web User Interface—Supports an embedded Graphical User Interface based device-management tool that provides the ability to provision the device, simplifies device deployment and manageability, and enhances user experience. The following features are supported on Web User Interface:
-
Day Zero Enhancement
-
Open Shortest Path First (OSPF)
-
Snort IPS Enhancement
YANG Data Models
For the list of Cisco IOS XE YANG models available with this release, navigate to https:%20https:/%E2%80%8B/%E2%80%8Bgithub.com/%E2%80%8BYangModels/%E2%80%8Byang/%E2%80%8Btree/%E2%80%8Bmaster/%E2%80%8Bvendor/%E2%80%8Bcisco/%E2%80%8Bxe/%E2%80%8B1691
Revision statements embedded in the YANG files indicate if there has been a model revision. The README.md file in the same github location highlights changes that have been made in the release.
Important Notes
The following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers.
Encrypted Traffic Analytics Records not Exported After Reload
When the router is reloaded with a large configuration, which generates many messages for initializing features in the data plane, Encrypted Traffic Analytics (ETA) records may not be exported. This occurs if the inactive timeout command is included in the configuration.
Workaround
Remove the inactive timeout command from the ETA configuration. After reloading the router, you can add the inactive timeout command to the configuration.
Deferrals
Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:
http://www.cisco.com/en/US/products/products_security_advisories_listing.html
Field Notices and Bulletins
-
Field Notices—We recommend that you view the field notices to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:
http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html
-
Bulletins—You can find bulletins at the following location:
http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html
Caveats
Open and Resolved Bugs
The open and resolved bugs for a release are accessible through the Cisco Bug Search Tool. This web-based tool provides you with access to the Cisco bug tracking system, which maintains information about bugs and vulnerabilities in this product and other Cisco hardware and software products. Within the Cisco Bug Search Tool, each bug is given a unique identifier (ID) with a pattern of CSCxxNNNNN, where x is any letter (a-z) and N is any number (0-9). The bug IDs are frequently referenced in Cisco documentation, such as Security Advisories, Field Notices and other Cisco support documents. Technical Assistance Center (TAC) engineers or other Cisco staff can also provide you with the ID for a specific bug. The Cisco Bug Search Tool enables you to filter the bugs so that you only see those in which you are interested.
In addition to being able to search for a specific bug ID, or for all bugs in a product and release, you can filter the open and/or resolved bugs by one or more of the following criteria:
-
Last modified date
-
Status, such as fixed (resolved) or open
-
Severity
-
Support cases
You can save searches that you perform frequently. You can also bookmark the URL for a search and email the URL for those search results.
Using the Cisco Bug Search Tool
For more information about how to use the Cisco Bug Search Tool, including how to set email alerts for bugs and to save bugs and searches, see Bug Search Tool Help and FAQ.
Before You Begin
You must have a Cisco.com account to log in and access the Cisco Bug Search Tool. If you do not have one, you can register for an account.
Procedure
Step 1 |
In your browser, navigate to the Cisco Bug Search Tool. |
||||||||||||
Step 2 |
If you are redirected to a Log In page, enter your registered Cisco.com username and password and then, click Log In. |
||||||||||||
Step 3 |
To search for a specific bug, enter the bug ID in the Search For field and press Enter. |
||||||||||||
Step 4 |
To search for bugs related to a specific software release, do the following: |
||||||||||||
Step 5 |
To see more content about a specific bug, you can do the following:
|
||||||||||||
Step 6 |
To restrict the results of a search, choose from one or more of the following filters:
Your search results update when you choose a filter. |
Caveats in Cisco IOS XE Fuji Release 16.9.x
Resolved Caveats—Cisco IOS XE Fuji Release 16.9.8
All resolved caveats for this release are available in the Cisco Bug Search Tool.
Caveat ID Number |
Description |
---|---|
Cisco IOS XE Software NETCONF and RESTCONF Authentication Bypass Vulnerability |
|
Cisco IOS and IOS XE Software IKEv2 AutoReconnect Feature Denial of Service Vulnerability |
|
High CPU usage caused by \"TCP Timer\" process |
|
Crash in SNMP Engine process while polling chassis id in lldp |
|
Cisco IOS XE Software Zone-Based Policy Firewall ICMP and UDP Inspection Vulnerability |
|
Cisco IOS XE Software H.323 Application Level Gateway Bypass Vulnerability |
|
Cisco IOS XE Software Rate Limiting Network Address Translation Denial of Service Vulnerability |
Open Caveats—Cisco IOS XE Fuji Release 16.9.8
There are no open caveats in this release.
Resolved Caveats—Cisco IOS XE Fuji Release 16.9.7
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
Mishandling of dsmpSession pointer causes a crash |
|
Cisco IOS XE IOx GuestShell USB SSD Namespace Protection Privilege Escalation Vulnerabiliy |
|
Hub router crashed when run test_mpol_policy_qos_policy_template testcase |
|
Device reload due to tunnel flapping |
|
Router may unexpectedly be reloaded when collecting data from the interface using telemetry/Netconf |
|
Evaluation of CVE-2020-11868 for IOS |
|
Random MPLS-TE tunnels with explicit-path stay down after egress interface is bounced |
|
Crash due to a NULL pointer while bringing down PPPoE sessions |
|
Memory leak "AAA SESS ATTR" |
|
ACLs may be partially loaded into hardware resulting in unexpected drop or permit |
|
ASR 1000 Series Routers Crash on configuring IP NAT inside source list under VRF |
|
GETVPN: All GM will crash when Primary KS recovers its COOP role after network outage |
|
ASR 1000 Series Routers FMANFP crashes during bootup with memory corruption |
|
"platform ipsec reassemble transit" tail-drops unencrypted IPv4 Fragments with specific payload |
|
Passive FTP doesn't work with NAT |
|
ISR router running 16.9.6 crashes authenticating crypto certificate |
|
APPNAV CFT crashes |
|
Unable to transfer 1500 byte IP packet when using BRI bundled multilink |
|
LMR Unable to hear first seconds of audio |
|
Duplicate Bytes & Packet when Q in Q is configured |
Open Caveats—Cisco IOS XE Fuji Release 16.9.7
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
RSA Keysize > 2048 may cause crash |
|
DNAC Wolverine - Crypto PKI-CRL-IO_1 process crashed in crypto_send_pki_request,crypto_crl_io_proc |
|
CUBE fails to send calls with below error after updating IOS to 16.9.5 Error (Resource busy) |
|
Crash in sre_dp_traverse_dfa_legacy as SIP invite messages crosses a GRE Tunnel |
|
Memory Leak in MallocLite / Crypto IKMP |
|
Crash in DSP causing an mcpcc-lc-ms core file |
|
Crash at the moment of calculating tcp header |
Resolved Caveats—Cisco IOS XE Fuji Release 16.9.6
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
SPA modules on ASR1002-X/ASR1001-X does not get recognized under show platform |
|
PfRv3: Crash while Printing the Same TCA Message |
|
Crash when IOS is adapting shaping with Adaptive QoS over DMVPN configured |
|
Protocol type for GRE header doesn't work consistently with "cts sgt inline" enable over auto-tunnel |
|
Crash when entering username with aaa common-criteria policy password |
|
Memory leak under Key Manager (keyman) process |
|
Router crashes when the calls doesn't establish after making 2 calls when we set "max-conn 2" |
|
ISR4K CUBE send first register with wrong ip address after reload - SIP-UA |
|
CPU Spike seen due to "VTEMPLATE BKG OW Process" when disconnecting PPP users 100 session/sec rate |
|
ASR1k Process = TUN ETHER Thread crash |
|
Sync failure and hung calls observed on standby |
|
Performance Monitor crash |
|
ASR1K ACTIVE ROUTER NAT ENTRIES SPIKE ISSUE |
|
CiscoFlashFile - Get-Next request takes longer time for last file on directory. |
|
Need to check qfp ucode crash with RTCP traffic - chunk memory corruption in RTCP path |
|
ASR1k crash in NAT code when processing PPTP traffic |
|
After putting caller on hold - caller call leg tx packets are increasing in CUBE |
|
IOS crash in DHCPd Receive with Unnumbered interfaces |
|
ping is not working on port-channel after router reload |
|
With CRL fetch failed, stuck at Failed to send the request. There is another request in progress |
|
LNS crash with Segmentation fault(11) in L2TP mgmt daemon |
|
Memory leak in CC-API_VCM and CCSIP_SPI_CONTROL |
|
ISR4461: Large un-fragmented IPSEC packets cause router to crash |
|
CFT crashed frequently |
|
Memory leak under CCSIP_UDP_SOCKET / MallocLite |
|
Process = Exec crash seen on dmap longevity testbed with clear cry sa peer several times |
|
ESP40 crash in CGN mode after apply "ip nat setting mode cgn" and "no shut" interface |
|
Portchannel stats not working on ASR1002-HX |
|
FlexVPN Hub Memory Leak in AAA process when IKEv2 sessions are being established |
|
NeMo tunnel is down after cellular interface config is overwritten |
|
IOS-XE device has memory leak in linux_iosd-imag |
|
x509 SSH authentication incorrect UPN value selected |
|
crash with shared-line command |
|
QinQ subinterface counters not accounted properly |
|
RTP/SRTP interworking fails when 180 and 183 have different to-tag |
|
ISR4K only: MGCP status remains Down and does not register with CUCM after a reboot or power cycle |
|
Random IPSEC drops on ESP200 with esp-gcm transform set |
|
ASR1K ucode crash after too many locks in ZBF pair setup |
|
Ping fails on hundred gig primary interface with FRR configured though MPLS traffic is not impacted |
|
CUBE DNS cache clear should be limited only to the matched connection id |
|
ISR4331/K9 Dialer cannot make calls suddenly |
|
ISR G3 router crashes when rtp-nte DTMF packet arrives at MTP + BDI |
|
Connect message is never forwarded to the calling side |
|
Crash due to DHCP relay |
|
Interface does down when "l2vpn xconnect" command is removed |
|
ISR4K Unexpectedly Reboots with CENT-BR-0 |
|
CPP crash due to a long QoS Policy and Class name |
|
CUBE crashes when SIP call is forked with active SIP KPML subscription |
|
Multiple Cisco Products Snort HTTP Detection Engine File Policy Bypass Vulnerability UTD |
|
ASR1k:Router stops forwarding traffic with MPLS TE & FRR |
|
unexpected reload in CPP ucode forced by nat 514 . |
|
MACsec 128/256 XPN on 40g/100g, stop passing traffic for one of AN and interface link flap seen |
|
Part of double encapsulated frames dropped with TunnelDecapTooManyTimes code reason |
|
ISR4K CUBEs - call monitor crashed with Process = AFW_application_process |
|
Virtual address not reachable: "mac:0000:0c07:xxxx download to DP failed" for HSRP / VRRP over BDI. |
|
ASR1002-hx crashing with IPSEC+QoS+DPI+FNF+NAT+ZBFW profile - half open list corrupted |
|
Device Crash observed with NAT and once there is traffic from outside |
|
Process sessmgrd crash due to clear radius sg-stats command. |
|
Memory leak in SCCP TLS Client on unexpected deregister event |
|
IOS-XE FW feature crashes while inspecting TCP packet with incorrect session packet state. |
|
FlexVPN IKEv2 Tunnel route removed after establishing new IKEv2 SA to another peer |
|
missing/corrupt IOS-XE PKSC10 format |
|
ASR1002-X ESP crash in multikey_hash_ager_tw_timer_to() |
|
IWAN routers ISR4K unexpected reload multiple times |
|
Incorrect Source IP when resolving DNS |
|
CRC increasing on down int Te0/0/20 |
|
router see http wsma request as coming from 192.168.1.5 |
|
CUBE/LGW: Certificate Unknown Error is observed when cn-san-validate server is configured |
|
CPUHOGS produced while executing the command - client fireall access-list ? |
|
CUBE keeps sending REINVITES to peer legs leading to high CPU and eventually crashes. |
|
IOS-XE MTP Fails to Interwork DTMF RFC2833 from Payload 100 to Payload 101 |
|
ZBFW drops selfzone generated packets from CPU to host with invalid reason in 16.12.x routers |
|
Crash on IOS-XE router when authenticating expired IPSec peer certificate |
|
Memory leak in STUN/MallocLite on ISRG2 CUBE/SIP GW routers leading to memory exhaustion over time. |
|
Crash due to a segmentation fault in the "IPsec background proc" process |
|
Calls going through T1 are rejected with "no dsps found" Analog/TDM Hairpin calls |
|
Crash when tearing down a PPPoE client session |
|
%IP-4-DUPADDR: Duplicate address issue at NAT-HSRP ISR4k router |
|
Survivability.tcl recovery procedure fails on Ingress GW of CCE call flow |
|
Router crashes frequently on NBAR |
|
ASR1K / 16.9.4c / MKA control traffic not forwarded out on L2VPN |
|
CUBE Segmentation Fault @ sipSPIFreeOneSCB due to corrupt ccb |
|
Secure key agent memory leak in 16.9 and only in 16.9 |
|
Catalyst 9300 Active stack switch crash while applying the CTS configuration |
|
Unexpected Reload after running 'show voice dsp' command while an ISDN Call Disconnects |
|
Removing and Adding Bulk ACL leads to Tracebacks and Error-Objects |
Open Caveats—Cisco IOS XE Fuji Release 16.9.6
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
RFGW-10 Sup Moka CRC Causes Slot 3-10 Linecard Restarts |
|
MMA/FME feature enhancement for Elephant Flow |
|
[UniScale]Crash seen on csr1k during NAT44 hsl scale test when clearing max NAT translations |
|
Router May Crash When a SSH session is Closed After a TACACS Configuration Change (Part 2) |
|
Memory corruption crash when device is booting up |
|
CUBE fails to send calls with below error after updating IOS to 16.9.5 Error (Resource busy) |
|
Crash in sre_dp_traverse_dfa_legacy as SIP invite messages crosses a GRE Tunnel |
|
ASR1001-HX, CCP crash due to invalid address accessed by DTL |
|
IOS-XE ipsec EULA prompt may block crypto process indefinitely |
|
Crash due to a NULL pointer while bringing down PPPoE sessions. |
Resolved Caveats—Cisco IOS XE Fuji Release 16.9.5
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
CME: Toll fraud app not automatically trusting traffic from phones |
|
DMVPN Phase 2 shortcut triggered from a spoke behind PAT may end up in stuck DNX state |
|
ISR 4k Reloads Unexpectedly, Crashing in the "IP NAT Ager" Process |
|
Cube might crash when sending a SIP message over TLS |
|
CME/BE4K SNR: Crash when config changes are made while SNR call is active |
|
qfp ucode crash with media monitor |
|
When user cancel Call Forward All from the analog phone, user can't hear the confirmation tone |
|
No video on Calls from ON prem to BroadCloud |
|
Router crashes due to Segmentation Fault when 'ccb' gives a NULL Pointer |
|
GETVPN gikev2 Secondary KS doesn't push new policy after merging split condition |
|
Router may crash unexpectedly with Segmentation fault(11), Process = DSMP |
|
IPSEC install failed IPSEC_PAL_SA shows "unexpected number of parents" |
|
Removing and adding ACL to ASR1K is causing Tracebacks and download to DP failed errors |
|
ESP ucode crashed when running NAT with bpa (CGN) |
|
Observed Traceback with SRTP-RTP call after hold/resume |
|
MGCP Calls with SRTP fail to connect with Cause Value=47 due to T.38 calls |
|
While signalling forking the CUBE is not Sending Re-INVITE for T.38 with the Authorized header. |
|
GetVPN-ISR4461// Getvpn traffic is failing with Transport mode with all the versions. |
|
"static ip addresses not configured for the list" message |
|
CME-ISR4K: BLF working Inconsistently on 16.09.03 [Bad code fix was done in CSCvk49797] |
|
ISR 4000 : Crash seen at Process Exec |
|
ASR 1006 tunnels are flapping CPP crash |
|
CUBE is updating the resolved IP only after the REGISTER expires |
|
IOS-XE crash after doing a SCEP enrollment |
|
ISR 4K router crash during updating the OpenDNS bypass whitelist |
|
IWAN High CPU and Memory |
|
IWAN crash related to DCA channel |
|
Router crashed on removing trustpoint on dspfarm profile |
|
Incorrect counters on ASR 1000-2T+20X1GE |
Open Caveats—Cisco IOS XE Fuji Release 16.9.5
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
RFGW-10 Sup Moka CRC Causes Slot 3-10 Linecard Restarts |
|
Router crashes when the calls doesn't establish after making 2 calls when we set "max-conn 2" |
|
Kernel crash in netfilter |
|
CiscoFlashFile - Get-Next request takes longer time for last file on directory. |
|
ASR1k crash in NAT code when processing PPTP traffic |
|
IOS crash in DHCPd Receive with Unnumbered interfaces |
|
LNS crash with Segmentation fault(11) in L2TP mgmt daemon |
|
Memory leak in CC-API_VCM and CCSIP_SPI_CONTROL |
|
Memory leak under CCSIP_UDP_SOCKET / MallocLite |
|
Process = Exec crash seen on dmap longevity testbed with clear cry sa peer several times |
|
Portchannel stats not working on ASR1002-HX |
|
ASR1K ucode crash after too many locks in ZBF pair setup |
Resolved Caveats—Cisco IOS XE Fuji Release 16.9.4
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
sup 720 crashes while executing show file desc continously |
|
show running-config | format with DHCP pool results in a reload |
|
DMVPN : IOS-XE - Unable to pass traffic if spoke to spoke fails to build in phase 2 |
|
4500X does not run dot1x when a laptop wakes from sleep mode |
|
MoH not heard when conf initiator drops from conference [specifically when Holdee xfers the call] |
|
Excluding cisco802TapMIB or ciscoTap2MIB should not require Lawful Intercept licence |
|
Traceback seen on COOP KS |
|
Crash on OPF_CSR32_OPF_LOGIC_ERR_LEAF_INT__INT_START_OF_BURST_MARKER_ERR |
|
Change the punt cause of packets whose destination is virtual IP from SUBNET_BCAST to FOR_US |
|
BFD flaps everytime with dynamic tunnel creation in DMVPN |
|
Call failure after Bye-Also blind transfer from CUE requires failure indication |
|
SNR call flows hardening with Media Renegotiate Flow |
|
Crash seen after configuring SCP path under archive |
|
Video struck in 8865 /45 when initiate conference from video enabled phone |
|
isr44xx crashes in o2_cavm_pci_unlock when forwarding large packets for VPLS |
|
High CPU due to Alignment Corrections - SMEF & IWAN |
|
Xcoder from VCC Offer All not deallocated when call fails over to second preference dial-peer |
|
Redzone overlay copying SIP SDP data |
|
Partial Power Failure in Stack Causes Interfaces to Become "shutdown" |
|
CUBE: FPI Hung Sessions and Provisioning Failures observed in Standby CUBE |
|
CCSIP_REGISTER memory leak@__be_voice_reg_bulkreg_initialize |
|
Called-Station-Id attribute not included in Radius Access-Request |
|
Crash while doing a conference call |
|
Traceback observed with DN assignment and removal using extension assigner |
|
After enabling fac standard, cancel call waiting *1 scenario is not working properly |
|
Rekey Timer are same for both the Server and Client |
|
ISAKMP using UDP500 rather peer(translated) port from peer structure while initiating IKE SA for DPD |
|
Night service code when dialed in from sip phone does not toggle ephone 1 status |
|
ISR4K crashed in FXS-FXS non-hairpin call |
|
SSS Manager Traceback observer when test MLPPP |
|
Router crash after binding virtual template to IWAN domain |
|
Memory leak observed in AFW_Redirect_New with call transfer recall FIT1 script |
|
Driver code improvement for debug-ability of XAUI link issues |
|
Quick RP3 recovery after the Punt Path XAUI link goes down |
|
NFS link of FP/CC broken on Modular Chasis |
|
Router fails to reserve necessary ports for VPN traffic (UDP 500 & 4500) for ISAKMP |
|
"auto assign" config under telephony-service returns % Ambiguous command: "auto " |
|
ATOM CW is not exchanged after node reload |
|
Process = VTEMPLATE Background Mgr crashed in flexvpn session |
|
SRTP to RTP call through IOS-XE CUBE produces static with jitter present |
|
callq periodic notification timer needs update after CSCve91511 commit [No functionality impact] |
|
Crypto not updated post standby IP address change |
|
[Polaris] Critical Authentication affected if Voice VLAN not configured |
|
One-way audio to IP phone if phone does hold/resume after 20 minutes on secure SIP GW |
|
Small clock changes or time drifts can cause GETVPN TBAR drops (GDOI/IPSEC-PI) |
|
ASR1k node in HA pair might crash due to punt-keepalive failures |
|
Stale entry in shared line database on executing no voice register dn. |
|
Addition/Edits to numbered OG ACL using "access-list <>" command does not re-expand the ACL. |
|
ISR4331: 16.9.1: snmpwalk error - OID not increasing |
|
ivr: Dialpeer leaks observed in HG with shared-line flow |
|
leak observed in AFW_application_proc(buildDestControlInfo) in VHG with shared-line flow |
|
IOS-XE block CLI "tunnel protection ipsec profile <name> shared" on Virtual-template type tunnell |
|
Small clock changes or time drifts can cause GETVPN TBAR drops (Crypto-DP) |
|
CUBE Gets Stuck In 491 Request Pending When Using TLS |
|
ISR4300 shows abnormal large RTT |
|
ASR-CUBE: Crashes with call spike configuration changes |
|
Voice Hunt Group Sequential, Peer or Longest-Idle keeps ringing when member hits Decline softkey |
|
voice calls randomly drop with cause code 47 and traceback error in CPPOSLIB-3-ERROR_NOTIFY |
|
IOSd memory leak within DSMIB Server within xqos_malloc_wrapper |
|
MACsec SAP 128 Bits doesn't work with network-essentials license |
|
Software crash due to memory corruption after packet trace was enabled. |
|
SR: CFLOW input intf index is 0xffffffff for Service-engine DSP module interface |
|
Polaris: Using MTR in redundant RP systems will reload the standby due to parser return error |
|
Caller doesn't get Ringback tone when transfer to park slot and recall back to SNR enabled Extension |
|
Memory leak seen@__be_AFW_Event_New |
|
RTP-NTE packets in sip-kpml <-> rtp-nte scenario have timestamp 0 on CUBE. |
|
Router Crashes When PKI-CRL-IO_0 Runs out of Stack Space During Failed DNS Lookup for CA Server |
|
DHCP Server sends Renew ACKs to Clients with 00:00:00:00:00:00 MAC in L2 frame |
|
Lowering the severity of Harddisk Missing Alarm from Major to Info |
|
ASR1002-HX crashed after huge traffic is transmitted over it |
|
Device crashing if we unconfigure the NTP on the device |
|
Negating dialer watch-list command without alterning the entered CLI command. |
|
ASR1006X linecard down after Active RP3 OIR |
|
High Memory utilization due to Wireless Manager IOSD process |
|
CSR1000v LDAP causing memory corruption |
|
ISR4k - 'control-plane host' feature was moved to APPX feature set. |
|
Observing Memory leak at Sip MPA |
|
ASR-1002-HX crash at headend running 16.9.3 |
|
ASR1000-2T+20X1GE interface speed change from 100 to 1000 after switchover |
|
Reorder ip nat configuration - to be placed after ip http configuration |
|
ND packets received in remote vtep SISF table - EVPN part |
|
ASR1K Crash on device when SNMP walk is done while configuring QoS on interface. |
|
IOS-XE routers cannot boot due to a bootflash problem |
|
CUBE fails to send outgoing SUBSCRIBE if egress dial-peer has "session server-group" configured |
|
RP3 Punt Interface May Drop Traffic Due to VLAN Filter Hardware |
|
Add support for AAA CC <cleartext> secrets. |
|
VoIP Dial-peer up/down traps sent to SNMP server every interval |
|
Polaris IOS-XE Router Crashes Upon running "show debug" or "undebug all" |
|
SRTP decryption failure leading to one-way audio issues for hairpin calls on CUBE. |
|
class-attributes support in ISG radius proxy scenario |
|
Router crashed when printing logs while constructing rekey packets (GETVPN) |
|
CUBE changing the payload for content sharing packets, though it negotiate correctly |
|
Int index is 0 for the Cellular inteface in the exported flow |
|
SNG_AO unavailable alarms are not clearing after removing the monitor-load feature under policy |
|
SUP reload after running the command " show plat hard qfp act infr bqs debug qmrt_dump " |
|
Correction to Quick RP3 recovery after the Punt Path XAUI link goes down |
|
CUBE failed to send BYE on peer leg with 'media stats-disconnect' enabled |
|
PKI "revocation check crl none" does not fallback if CRL not reachable |
|
DataPlane (DP) crash observed in MMOH call flow |
|
SIP global binding disappears when the interface to which SIP is bound flaps. |
|
Polaris : Changes for sending vlan attrs in access request |
|
Router crash while executing show commands using '|' (pipe) to filter the output. |
|
SRST Parallel hunt group fails if first member missing |
|
TCP 3WAY handshake fail for redirected packet using PBHK |
|
ISR4351 communication down few minute after shutdown/no shutdown interface |
|
Memory overlay crash when using include-cui |
|
PnP Agent should detect image upgrade scenario and configure dialer to bring up cellular interface |
|
SCCP Application does not clear failed sockets leading to leak and socket pool exhaustion |
|
Packet drop occurs after acl permit configurations |
|
Call is not getting connected in Forking Re-INVITE scenario |
|
CUBE - SDP version increment behaviour creates cypto interworking issues |
|
SIP-Notify/KPML to DTMF RTP-NTE interworking fails, NTE packets dont have the marker bit set to TRUE |
|
ASR920:memory leak due to csmControllerStatistics (CISCO-SDG-MDNS-MIB) on snmpwalk |
|
ASR1001-X crashed upon receiving Radius Access-Accept message |
|
Reload initiated via SNMP on IOS-XE causes a crash |
|
Unable to remove "logging source-interface <if-name>" command on 3850 |
|
Memory corruption while freeing memory |
|
Router crashes when removing a crypto map |
|
9200L Day0 setup not working out of box. |
|
CUBE DNS SRV Query is not performed for PRACK |
|
FMAN crash due to Flexible Netflow (fnf) |
|
Memory leak at hman process |
|
ISR4k with NIM-ES2 do not forward STP Uplink Fast dummy packet |
|
Expected error message is not seen after Configuring MisMatching Bit Length - 16.9 throttle. |
|
Router Crashed with running Layer Two Tunneling Protocol Version 3 (L2TPv3) |
|
Crash on an LNS router in process ACCT Periodic Proc |
|
PKI incorrect fingerprint calulation during CA authentication |
|
CUBE adds 'Require: timer' to Early Dialog UPDATE |
|
CSR1000v IC2M Self Integrity Test Bypassed |
|
C3850 - SNMP Pending Messages have nonsensical expiry timers. |
|
CUBE 100% CPU usage when using outbound-proxy dns: and session server-group |
|
WSMA crash formatting show command output |
|
Crash at NAT clear |
|
Router crash when running show aaa user all command |
|
CUBE picks incorrect interface for media after receiving c=IN IP4 0.0.0.0 |
|
Crash at the VRF configuration |
|
When roaming to another AP, services received from RADIUS are not applied to the session |
|
IOS-XE DHCP server creates option 125 with invalid format |
|
ISR 4331, wrongly adding to Port to subscriber field after translation. |
|
Memory leak in CENT-BR-0 process |
|
MaxSusRate is not working with service class |
|
Stuck CPP Thread while processing H323 packet |
|
qfp ucode crashed with sRTP traffic - chunk memory corruption |
|
IOSXE - firewall corrupts half open list |
|
isr4461 may fail to recognize SFP+ 10GBASE-LR on the latest polaris_dev images |
|
Crash at Process = SCCP Auto Config |
|
Blind Transfer fails due to 491 Request Pending against UPDATE in early dialog |
|
CTS PACS not downloading to the devices |
|
Deleting one sip-copylist will remove all sip copy-lists from dialpeers |
|
FXS - no busy tone is generated on remote-onhook condition with call pickup scenario |
|
GC NAT unable to detect dns packet |
|
DHCP discover packets were being dropped at firewall since UDP source port as 0. |
|
One-way video after 15 mins/session refresh due to rtcp pli packets drop |
|
IPSec-Session count in "show crypto eli" reaches max causing VPN failure |
|
in.telnetd process consumes 100% CPU in show process cpu platform sorted |
|
C93k SDA edge seg fault in LISP fwd background process |
|
Missing Calling-Station-ID in Accounting Ticket for Web-Tal locations |
|
CME SIP: BE4000 Smart Licensing - Extension Assigner temp registration uses endpoint license |
|
ISR4300: show version IDMGR-3-INVALID_ID: bad id in id_to_ptr traceback |
|
dot1x dynamic voice assignment failure after data domain auth such |
|
MACSEC license is not being consumed for sub-interfaces |
|
When sending account-logon ISG do not reply with ACK nor NACK. |
|
Identity policy won't update after config changes. |
|
ASR1001-HX: Excessive pause frames (IEEE802.3x compliant) affect traffic on other interfaces |
|
IOS-XE ACL port information preserved after encapsulation |
|
ISR1K: Router crash with ZTP using Python script running in guest shell |
|
Ambiguous/unidentical ConnectionID and Fcid during CDR accounting after IOS upgrade |
|
Streaming CRCs seen with GLC-GE-100FX VID: V02 on ISR4k |
|
Transcoder getting invoked for SRTP-SRTP calls. |
|
Ping failure on Port-channel sub interface when is using EVC in main port channel |
|
ISR1100 router reloaded at posix_twheel_process_timers_inline |
|
Wrong label programming leading to traffic drop |
|
CUBE doesn't send INVITE to Registrar to which CUBE is registered. |
|
SDP attribute list corruption causes voice gateway crash |
|
Traffic stops flowing on Xconnect tunnel when upgraded to 16.9.2 |
|
Unexpected reload in btrace routines due to division by NULL. |
|
Read and Write lock fix for ACL cache |
|
bqs may select an inaccurate rate |
|
Bye Also Transfer Fails with Call Route URL Enabled Post B2BHA Switchover |
|
Overlay BGP down when configured "ip nhrp server-only" |
|
Router loses "transport tcp tls v1.0" on reload |
|
locale installer in CME should allow full filename to be loaded |
|
When sourcing Radius from loopback in VRF, auth right out of boot up might fail |
|
Hierarchical QoS stops working on GRE tunnel if dest route flaps between 2nd tunnel and physical int |
|
Incoming ESP packets with SPI value starting with 0xFF are dropped due to Invalid SPI error |
|
L2VPN - Xconnect - filtering of LDP targeted hellos using ACL not working |
|
Nas Identifier not sent in Accounting Packet |
|
OBS: ping stop working on replacing MIP100 ->>> SIP40 >>>>>>MIP100 |
|
SRTP ROC Stress: CPP crash with 6000+ concurrent calls - g729 |
|
ISR4K: Router crash due to twice memory release |
|
PNP profile using hostname is not working anymore |
|
sip re-invite trigger dsmp_dsp_pak_unsuppress |
|
CHUNKBADROOTCHUNKPTR: Bad root chunk pointer in chunk header post SSO - ASR1K |
|
Crash at the moment of deleting a DVTI |
|
CUBE HA - Global bind is removed during interface flap |
|
Neptune: CDP and ping to next hop fails on Ten Gig int after device comes up post "wr er" and reload |
|
CSR1000v - i40evf interface shows Up but does not pass traffic |
|
MGCP GW doesn't reset SSRC/ROC on receiving MDCX with new IP/port/SDP parameter for SRTP call. |
|
"Radius-server attribute 31" command broken on LNS when LAC sends Remote-Id string |
|
Crashes with GRE tunnels configured with QOS over Multilink Frame-relay interfaces |
|
ISR44xx NO_PUNT_KEEPALIVE kernel crash due to CP drivers stuck punt and IPC rings |
|
static nat which has been deleted is shown when show ip nat translation |
|
VG3x0 - groundstart voice-port configuration removed after reload |
|
CSR1000v loses ssh/telnet connectivity on AWS and is unable to ping Elastic IP |
|
Incomplete arp in management interface |
|
UTD: Process SSL callback on client hello message as opposed to server response |
|
ISR4K crashes after voice register reset command is applied |
|
Counters of interfaces are reporting inexistent peaks |
|
Switch unexpected reloads in aaa_coord_auth_request |
|
ASR1001-x crash while configuring policy-map |
|
Delay of 30 sec while creating a new config file for phone using tftp. |
|
Split DNS not working in case of TCP query coming on WAN interface and destined to LAN interface |
|
Crash due to too many DSPs |
|
Video call over CUBE drops when number of m-line increase in the RE_INVITE |
|
default ip forward-protocol udp xx changed to no ip forward-protocol udp xx after rollback |
|
HTTP Client inside IOS-XE incorrectly reports "Invalid IP address in Hostname" for legal IP address |
|
Corrupt free block of memory with high availability config for Session Initiation Protocol |
|
Crash when running show crypto map |
|
isdn cause-location command support for switch-type primary-ntt |
|
IOS: Prevent crypto ACL change if already mapped with crypto map configuration |
|
ip dns primary command does not get removed |
|
Standby crash during ISSU |
|
Ucode crash when PfRv3 and IPv6 monitor are configured on the same tunnel with IPv6 VRF configured |
|
ASR1k: Crypto Engine remains in stuck state post dataplane crash |
|
SSH may crash due to a corrupt MAC |
|
IPsec SA installation fails with simultaneous negotiations despite fix for CSCve08418 |
|
ASR 920 || SW 16.9.3 || Issue with "platform usb disable" CLI |
|
NIM-VAB-A stops forwaring traffic after line resync |
|
name-ip_address mapping is bypassed when the ip domain command is configured on Cisco C1111X Router |
|
Crash when "show running" is used |
|
Router ucode crash with NAT with interface flap |
|
200 OK and UPDATE in fast succession causes issue with refresher param in update response |
|
no login on-success log CLI does not persist across device reloads |
|
Error messages seen when configuring "logging persistent protected" on ASR1K routers |
|
When Dial-Peer is Marked Down Due to Option Pings the Call Fails with Cause Value 47 |
|
Crash after Media monitor look up. |
|
ISR4k BRI ping failure with WIC-1B-S/T-V3 with ISDN 128 leased line |
|
Inband to OOB DTMF Fails to Be Passed On CUBE If Media Inactive Comes During Digit Processing |
|
CUBE not passing History-Info header in 181 Call is being forwarded |
|
Device crashed @ radius_io_stats_timer_handler due to dynamic-author |
|
CME Crash with call to shared line when 1 setup leg is NULL |
|
BGP flap while doing shut/no-shut on a different FPGE interface. |
|
Replaces string not passed on CUBE REFER consumption scenario when address-hiding is configured |
|
9400 crashed at radius_dynamic_author_server_udp_input without any trigger in 16.9.3 |
|
ASR1002-X High Platform CPU for process mcpcc-lc-ms |
|
VRF aware reverse DNS lookup not working |
|
ping between 2 Interfaces is not working , dialer interface is interferring in the ARP Processs |
|
NAT SIP Contact Header changed to port 512 |
|
SDP version was incremented due to misplace of PT 100 |
|
DPDK: Performing Shut/No-Shut with traffic running can cause packets to silently drop on TX |
|
ISR4321 ifOperStatus for Cellular reports Up when it should be dormant |
|
NIM-2FXS/4FXOP crashing due to DSP failed to reply properly |
|
Egress shaping on port-channel sub-intf tail dropping traffic long before rate |
|
SIP GW/CUBE does not update the change in remote SRTP key on session refresh re-invite. |
|
Sessmgr CPU is going high due to DB cursor is not disabled after switchover |
|
ARM - Marvell 7040 SoC Hardware Erratum - Kernel Driver Fix |
|
Router is on Bootloop after QoS configuration. |
|
Webex Calling - TDM-IP - Hold/Resume from Broadcloud causes one-way audio |
|
ISR4k crash during packet inspection due to stuck thread |
|
AppNaX Cluster do not send/log "clear" alarms from cluster |
|
asr1k BDI not working properly for packet fragmentation - very small fragments are getting dropped |
|
PBR works although an interface is down. |
|
LGW/CUBE/TDM memory leak when STUN is enabled |
|
CUBE Crashes with STUN keepalive messages triggered on Non reachable IP |
|
Enable modem CO4 setting for VDSL CPE |
Open Caveats—Cisco IOS XE Fuji Release 16.9.4
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
lots of chunk memory leak about SNMP SMALL CHUN and SNMP MEDIUM CHU |
|
cgna traceback on PI31 branch nightly build |
|
Polaris 16.3.1 : Machine and bus error failures in ESP20 |
|
RFGW-10 Sup Moka CRC Causes Slot 3-10 Linecard Restarts |
|
ARP packets not getting forwarded with DAI enabled |
|
Byte counters for physical interface and subinterface don't match |
|
Linux shell prompt format changed with cEdge image |
|
IPV6 MLD queries re not generated |
|
Memory leak VOIP *MallocLite* |
|
Modify the input ACL on the fly has no effect on the traffic |
|
Different ISP name smartprobes are received in branch WAN interface, the channel cannot detect |
|
Standard IPSec support in IOS-XE SDWAN software |
|
memleak_detect script errors "can't use floating-point value as operand of -" |
|
Multicast IPv6 ping within VRF return % No valid source address for destination |
|
netconf/yang or telemetry retrieval of /trustsec-state/cts-rolebased-policies breaks |
|
Post 3650 Mobility Agent Reload the Mobility Tunnel down due to "DTLS handshake error" |
|
ASR920:CFM remote endpoint with backup pseudowire points to primary peer IP in HSPW |
|
FED logs overrun 20,000 times with same trace |
|
[UniScale]Crash seen on csr1k during NAT44 hsl scale test when clearing max NAT translations |
|
Router crashes when the calls doesn't establish after making 2 calls when we set "max-conn 2" |
|
Removing FNF config using the command "no vlan config 1-4094" causes watchdog forced crash |
|
ISAKMP SA is not deleted even if crypto config is deleted (IPsec NAT-T). |
|
RATE_11M supported cannot be preserved in config after reboot(no lower datarates set as mand.) |
|
Memory leak found in CUBE after the test suite execution |
|
ACL remarks not handled correctly by Cisco-IOS-XE-acl YANG model |
|
DMVPN Phase 2 shortcut triggered from a spoke behind PAT may end up in stuck DNX state |
|
QSIG - SIP - Connected Number Missing leading digit when decoding raw QSIG |
|
Input CRC counter increasing on Tengi interface. |
|
AAA-CC: password type-6/7 should follow the hash design and only work against expiry or be removed |
|
mem leak in ios_portal_vty_run_cmd |
|
ASR1000: RP3 crash due to punt-keepalive failures |
|
CSR: Unconfiguring VPG interface causes a traceback |
|
Call drops on CUBE when Hold/Resume switches codec and with midcall-signaling passthru media-change |
|
AWS: UDI serial changes when CSR 1000v instance type is changed from c4 to c5 or vice versa |
|
Crash when polling IPForwarding MIB |
|
Router unexpected reloads when doing ipv4_nat_destroy_addrport_bind |
|
Add ERROR message over IOS console when HSPRDA TCAM region gets full |
|
CSR1000v AWS typo in user-data can break SSH connectivity |
|
Async lines configuration is not retrievable over netconf |
|
CUE AA leg not cleared on ios after it does blind xfer to sip line |
|
Router crashes due to a call loop |
|
Kernel crash in netfilter |
|
QoS counter didn't generate at ASR1001-X |
|
ISR4K CME no way audio on calls across E1/PRI, reboot resolves for sometime |
|
CPP Stuck thread when processing IPv6 traffic |
|
Router crashes after snmpget to OID related to NHRP |
|
Cisco XE SD-WAN Router unable to inject packets when traffic is destined to it |
|
"advertise ospf external" throws application error |
|
BE4000 No MeetMe conference softkey in 7832 phones. |
|
ISR4K crashes when inserting LTE card |
|
CUBE Fails To Take the Accept Header Into Account When Receiving Option Pings |
|
SSH: host_key->name is not null after reload which prevents SSH from starting up |
|
ASR 1k sub-interface counters wrong. |
|
BRI leased line can't come up automatically after remove/insert one side's cable |
|
shaper of the internal crypto interface is incorrectly programmed |
|
Voice gateway crash due to segmentation fault in process CCSIP_DNS |
|
IP SLA react for packetloss and successivepacketloss do not set $_ipsla_react_type in EEM |
|
IOSXE: IOMD / TDL leak seen with tdl_response_xcode_stat_side_t |
|
AppNav: Optimization failed with Asymmetrical traffic, VRF, FNF and NBAR |
|
Catalyst 9200L silent reloads |
|
Router crashes with ZBF HA sync. |
|
Support status of Restapi container for CSR has not been documented |
|
Need to check qfp ucode crash with RTCP traffic - chunk memory corruption in RTCP path |
|
L2 EVPN: Remote MAC not unfrozen when duplicate cleared with no MAC-only route |
|
Supervisor reloaded due to cpp_cp_svr process crashing |
|
Telnet access fails when VRF-aware extended VTY ACL is configured |
|
Back out Monolith code of CSCvp10711 |
|
Class-attributes duplicated after EAP reauthen. in ISG radius proxy scenario |
|
Recording failures with XMF media forking and SIP preservation timer |
|
cable-detect command not reflecting proper status in Analog ports on IOS-XE platforms |
|
RADIUS attribute 4 (NAS-IP-Address) is not honored |
|
cpp_cp_svr crash in cpp_bqs_rm_yoda_select_sch_exponent |
|
Supervisor reload due to cpp_cp_svr crash. |
|
ASR1K BGP PIC Repair path broke after link flap |
|
Crash after exiting RADIUS server configuration mode. |
|
after reload dial-peers with ports that have the 'signal did' command show operational state none |
|
Stack crashed after upgrade |
|
CME SIP: Add custom SK templates support back to 7832/8832 conf phones |
|
Cube might crash when sending a SIP message over TLS |
|
CPP microcode core file generated due to HW interrupt |
|
Crash after executing "show archive config differences" |
|
Accounting Stop is being sent for the wrong authentication session |
|
Router crashed on running show policy-map interface <> output command |
|
TLS connections in WebEx between CUBE and iCP/CUSP breaks intermittently |
|
TCP traceroute - response ICMP TTL exceeded packet dropped by ZBFW with NAT enabled |
|
connectivity is broken on ingress-replication L2DP/VXLAN |
|
ASR1002x crash due to "fw_base_flow_create" |
|
Crash: Memory corruption after reconfiguration of SONET controller |
|
IWAN router crash after upgrading to 16.3.8 |
|
Issue with installing CSR 1KV MEMORY 4G license with SLR |
|
CUBE fails to respond to second Session Refresh after refresher is forcefully reversed |
|
can access to C9200' Mgmt port cross subnet even there is no vrf default route configured |
|
Seg Fault 11 crash at cts_ip_sgt_binding_sync on CTS enabled SDA fabric-edge switch stack |
|
Device sensor breaks with ignore-acct-port configured in automate-tester |
|
Device-sensor not included in Accounting packets |
|
Router crashes with ZBF HA sync. |
|
Polaris 16.9 QFP crash due to a stuck thread |
|
NEAT/CISP:authenticate SVI interface for Supplicant switch in NEAT port when spanning-tree disabled |
|
FlexVPN with password encryption -- after MasterKey change password in profile is not working |
|
getvpn suiteb:KS sends delete payload to gm's while scheduled rekey after primary KS dead/readded |
|
Secure SIP trunk between SIP-GW/CUBE and CUCM with multiple nodes not coming in to service. |
|
NHRP process crash |
|
CUBE : SIP INVITE is not sent to TGW when rtp-nte or rtp-nte digit-drop is enabled |
|
ASR1k crash in NAT code when processing PPTP traffic |
|
When issuing ip helper-addresss x.x.x.x command, "sh run" and "sh run all" show differently |
|
VG450: SCCP crashing router while shutdown the process |
|
Hostname is not accepted as a part of "snmp-server host" command. |
|
C9400 - Unable to edit FNF commands after pull out a LC |
|
IOS XE: RSA Keys randomly getting wiped out after rebooting |
|
[SDA] Crash due to Segmentation fault(11), Process = ARP Input |
|
Segmentation Fault in IP RIB Update following Virtual-Access Interface flap |
|
IPSec SA creation failure causes crash in fman-fp-image |
|
ISR1111 not getting IP Addresses in its inrterfaces when running 16.6.6 IOS |
|
"DHCPD Receive" process crash |
|
Gi0/0/0 interface stays up/up and LED green after cable removed |
|
ISR4451-X / 16.09.01 / Crash when IPSEC SA installation fails |
|
AAA accounting issue after router reload when mGRE and L3VPN configured |
|
"ip access-list logging hash-generation" removes ACL statements upon reload |
|
Upgrade from 16.6.3 to 16.6.5 crash router with Unrecoverable Error |
|
incorrect Total number of translations on show ip nat translations |
Resolved Caveats—Cisco IOS XE Fuji Release 16.9.3
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
qWLC-Sanity: interface down due to %EZMAN_RM-3-SERDES_AUTOTUNE_FAIL-R0/0: Failed on lane 54 |
|
ASR1002-X router crashed in cpp_qm_event_collapse_hl_node |
|
16.10 ASR1K: IOSd crash @SSS Manager during sessions teardown |
|
QFP CGM Memory depletion during ISG session churn |
|
ASR1001-HX crashed due to critical software exception on operation group-object add/remove |
|
491 not sent in a multiple re-invites in DO2EO scenario |
|
IKE Fragmentation payload incorrectly marked as critical |
|
CUBE crashes at sipSPI_ipip_vcc_CheckCodecSetType |
|
CRL file is getting overwritten when PKI server turns up after reload |
|
16.6 and 16.9: cannot OIR harddisk on ASR1000-RP2 |
|
False authorizations and authentications even without radius server for dot1x/mab |
|
ASR1001-HX 10GE SFP+ ports may operate as 1000Mbps |
|
IOS CUBE Ent does not show 'media anti-trombone' in configuration |
|
"clear crypto sa vrf MyVrf" triggers crash after updating pre-shared-keys |
|
"VoIP dial-Peer <XX> is Busied out" printed in log every 2 minutes when destination is not reachable |
|
Crash under AFW_application_process with shared-line configuration |
|
Crash at CCB of RTPSPI at the moment of creating a disconnect timer |
|
SNMP PKI trap are generated with wrong OID of 6999 instead of 854 per OID assignment |
|
Active RP crash at __be_datagram_done |
|
PKI authentication should proceed even if GetCACaps return any http failure |
|
[SAP] syncfd fails to start on reload after upgrade to new ES image |
|
IPSec background crash while sending SNMP trap |
|
ASR1k crash due to QoS in case of 4k subscribers per subinterface |
|
CUBE doesn't forward 200 OK in SRTP-RTP scenario with TCL script on Dial-peer |
|
Traceroute not working when sourced from NAT Inside interface |
|
IOS and IOS-XE STCAPP service not updating DTMF RFC2833 payload when there is SCCP renegotiation |
|
Media Ant-Trombone does not properly handle a Re-Invite utilizing a Replaces Header |
|
IP change on dialer-int does not trigger a correct "local cryto entpt"in DMVPN |
|
Device reloads when applying #client <IP> vrf Mgmt-vrf server-key 062B0C09586D590B5656390E15 |
|
Crash caused by a "TLB Modification exception" after processing a null chunk in "IP Input" process. |
|
100FX OPNEXT SFP does not come up on ASR1001-X |
|
ASR1001-X throwing: ETH_SPA_MAC-3-SPI4_ERROR: SIP0/1: Marvel MAC |
|
CUBE Crash in CCSIP_SPI_CONTROL process |
|
IOS-XE PKI: Certificate with 4 dashes imported in trustpool gets lost after reboot |
|
CUBE Crash in sipSPIAppAddCallInfoUI |
|
ASR 1006-X RP2 : Standby RP Crashed after running command "license boot level adventerprise" |
|
Router crash occurs while running Dell software update |
|
Ethernet FRR switchover takes more than 200ms on EPA10 and EPA100 if remote Rx fiber is pulled |
|
Out of Band DTMF Events Not Passing to CUCM via SCCP When Using IOS MTP |
|
Crash with SIP call |
|
loss of two way audio with Skinny Phone, Line instance does not work until the next reboot. |
|
Cube crash with %SDP-3-SDP_PTR_ERROR |
|
show interface output reports incorrect bandwidth |
|
IOS-XE ISAKMP deletes new SPI if rx new SPI packet before installation is done |
|
SSRC-field in RTCP gets changes to 0 when going through TRP present in the media path. |
|
CUBE doesn't forward INVITE with "midcal-signalling passthru media-change" during a video escalation |
|
Crash in cpp_bqs_rm_yoda_proc_pend_fc_cb |
|
Recommit of CSCvm99778 - eca/ewlc/qwlc/mewlc Sanity : AP join failed. |
|
QFP crashes with a HW interrupt |
|
Memory leak in SMD process due to AAA Idle-timer not being freed |
|
In some cases non AppNav Configuration cause AppNav-XE Token changes |
|
Crash when making an external call |
|
Incorrect syntax in CRL download URL cause crash |
|
TCP port takes 4 minutes to get released after it is closed |
|
TACACS group server is not seen, when "transport-map type console test" is configured. |
|
FlexVPN with password encryption - keyring aaa LIST password 6 xxxxx encrypted again upon reload |
|
Subscribers cannot re-login due to CoA time-out (lite-sessions in routed mode) |
|
EIGRP session is not coming up if the dynamic PBR is applied on interface |
|
Radius attr 32 NAS-IDENTIFIIER not sending the FQDN. |
|
Priority queueing on port-channel interfaces causes frame re-ordering. |
|
CLI "nat force-on" in voice service voip not working as expected |
Open Caveats—Cisco IOS XE Fuji Release 16.9.3
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
Crash while processing ISIS updates when DiffServ-TE is enabled |
|
ASR1K Crash with Realod Reson as IntelResetRequest. |
|
Router crashed when printing logs while constructing rekey packets (GETVPN) |
|
ASR1001-X crashed upon receiving Radius Access-Accept message |
|
IPV4 routes on the global routing table learnt via BGP refreshes upon adding or removing a VRF |
|
FMAN crash due to Flexible Netflow (fnf) |
|
Crash due to chunk corruption in ISIS code |
|
SRTP load balancing crash |
|
Crash at NAT clear |
|
qfp ucode crashed with sRTP traffic - chunk memory corruption |
|
ASR1006-X Crash __be_mcprp_punt_keepalive_receive_check |
|
DHCP discover packets were being dropped at firewall since UDP source port as 0. |
|
ASR1k crashes by handling DHCP packet |
Resolved Caveats—Cisco IOS XE Fuji 16.9.2
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
IOS-XE Fails to correctly populate RTCP SSRC Field |
|
SNMP Error: OID not increasing: @ipAddressIfIndex.ipv6z |
|
ASR CUBE 1K reloaded with reason: RG-application reload on voice-b2bha RG |
|
Standby RP Reloads due to Config Sync Failure When Applied Service-insertion WAAS on Physical Int |
|
CME with external SIP trunk registration results into crash. |
|
Voice VRF with No Bind OPTIONS Ping response not sent |
|
Crash after failing to modify xcode |
|
Crash during Generic Call Filter Module cleanup |
|
Crash in XDR process: "fib_rp_table_broker_encode_buf.size <= FIB_RP_TABLE_BROKER_ENC_BUF_SZ" |
|
ASR1K crash in tplus_handle_req_timeout |
|
OSPF originates default route without "default-information originate" |
|
ospf routing loop for external route with multiple VLINKs/ABRs |
|
Snmp v2 breaks due to Authentication failure, bad community string, 16.03.06 |
|
ASR1001X @incorrect traffic statistics reported of port-channel sub interface using SNMP. |
|
mtu cli is disappeared from show run when interface dialer sh/no shu |
|
VASI NAT: FTP ALG translation is sometimes failed |
|
ASR1K - No kernel/coredump generated with watchdog reload event |
|
PKI:-IP address parsing issue while printing the subject name if classless IP is used in Trustpoint |
|
Viptela-netconf returns 255 length byte-stream chars instead of actual length for OSPFV2 Key-string |
|
ASR1001-X : netconf interface goes into oper down state afer reboot tests |
|
OSPF SR uloop : After issuing "clear ip ospf process". ospf process crashed. |
|
BGP high CPU when config 256k vxlan static route |
|
Hoot-n-holler multicast traffic marked with DSCP 0 |
|
ASR1K not reachable by Unicast on Port-Channel Sub interfaces when EVC + Sub-interface is configured |
|
CUBE is using wrong source IP address to send SIP error |
|
bgp crash while running show command and same time bgp peer reset |
|
Unable to remove command 'ip nat inside destination' |
|
ESP crash due to fatal error |
|
ASR1001X - when using VRF NAT port used for ftp data is not freed |
|
ASR1k PWLAN: Cisco-AVPair = remote-id-tag=5 missing after roaming |
|
ASR1001-X crash due to free block at tty_handle |
|
NG: Ping fails after cahanging Copper SFP to Fiber SFP on 1GE built-in interface. |
|
MGCP status remains Down after IOS upgrade caused by CSCvh70570 |
|
High Availability system with two Voice Gateways - Crash |
|
Router crash - AFW_application_process |
|
Initial contact in IKEv1 phase 2 rekey (QM1) causes all crypto sessions to drop |
|
NETCONF the IP routes with DHCP are not presented in a consistent way for rpc-reply |
|
Random crash of data plane with SRTP-SRTP / SRTP-RTP load tests |
|
Active RP3 hard oir can cause module to go UNKNOWN |
|
Extension Mobility Not working when used with Greek locale on SIP CME |
|
CUBE incorrectly fomats SIP SDP |
|
Crash observed on ASR1002-X @ fnf_age_recalculate_record_len with AVC performance monitor config |
|
No calls shown in output "show call active voice brief" on CUBE & stale entries are present |
|
CUBE is not responding to SIP INFO |
|
Incorrect Contact port 5060 used instead of 5061 by CUBE in "302 Moved Temporarily" message |
|
"%FMFP-3-OBJ_DWNLD_TO_DP_FAILED:fman_fp_image:xxx" appears when configured "ip port-map" on ISR44xx. |
|
Rework need on CSCvj59170 to support SDP parsing |
|
Standby switch crashes when adding a host name to an object-group |
|
Crash on Running "show vpdn tunnel summary" command. |
|
ASR1K: ipv6 telnet session with vrf is failing |
|
SNMP v3 discloses password in the parser warning syslog trap |
|
SIP CME Crashes when Calling Shared Line |
|
CME/BE4K: Corrupted config file for Auto Registered IP Phones after reload |
|
ACL dropping packets after updating it - %CPPEXMEM-3-NOMEM |
|
ASR1002-X crash due to ccp_cp_svr going into lockdown state. |
|
ISSU:NetFlow not exporting flow resulting in new feature not working after ISSU. |
Open Caveats—Cisco IOS XE Fuji 16.9.2
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
cpp_cp_svr crash in bqs while running QMRT test tool. |
|
QFP CGM Memory depletion during ISG session churn |
|
Strict SID has NOT been enabled in ISIS segment-routing |
|
Subscriber session hangs after the upgrade and reload |
|
Crash under AFW_application_process with shared-line configuration |
|
CUBE doesn't forward 200 OK in SRTP-RTP scenario with TCL script on Dial-peer |
|
Self-generated NHRP packets are not remarked with DSCP value |
|
Device reloads when applying #client <IP> vrf Mgmt-vrf server-key 062B0C09586D590B5656390E15 |
|
100FX OPNEXT SFP does not come up on ASR1001-X |
|
ASR1k IF down/up happen when config "plim ethernet vlan filter disable" on GigabitEthernet interface |
|
Configuring more than 5k NAT entries cause high CPU utilization even with no traffic. |
Resolved Caveats—Cisco IOS XE Fuji 16.9.1
All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved Bug Search.
Caveat ID Number |
Description |
---|---|
R0/0: ASR1002-X kernel: bullseye_i2c_master_xfer Error Repeats Every Hour |
|
Intel Security Issue: Microcode Update (current microcode versions: RP3 - 0x7000012, 1001-X – 0x2D, 1001-X/1002-X – 0x1F) |
|
mcp_rommon: RP2 BIOS - Adjust TOLM based on PCIE HT FPGA address space size |
|
Memory leak under LLDP Protocol process |
|
Orthrus: FP 100 crashed when sending traffic around 55 MPPS with pkts size 64byte |
|
RSP3 crashes @ fillin_mempool_pc_array, mempool_pc_summary_tty |
|
CTS Pac download fails with ISE reachability through loopback interface over vrf |
|
ESP Crash with FP Switchover |
|
Crash due to Stack overflow |
|
rotate nginx access/error log files |
|
RP3 - magic cookie written for power cycle as workaround for keepalive timeout crashes in loop |
|
IPv4 PLU mtrie lookup return invalid oce_chain_p |
|
ASR1K BGP scanner crash when change VRF and BGP configuration |
|
Router resets while processing fragmented/encrypted packet |
|
Tracebacks and Linux IOSD crash with sh vtp counters cmd |
|
Mgig stack keeps crashing while configuring with Radius commands |
|
ISRv/QOS - service-policy defined in bootstrap config may not be applied |
|
Cannot add static route through dynamic NEMO tunnel interface |
|
IPv4 DPI Hashing: default key-control not going to right bucket |
|
CVLA crash on memory merge scan task |
|
QFP crashed to while sending oversubscribe traffic. |
|
SIP40 in slot 5 of ASR1013 when inserted ESP-200 in F1 by replacing ESP-40, showed ESI lock failure |
|
ESP crashes with high scale QoS configuration |
|
ASR1002HX FP Crash post LNS path switchover |
|
Interoperability failure between some Fortitude Ports and some SmartJack cards |
|
Kernel crash in ASR1002-HX during LNS path switchover |
|
Suite-B Not Supported with ESP-200 on ASR1000-X Platform |
|
Evaluation of all for CPU Side-Channel Information Disclosure Vulnerability |
|
FP reload with IMGR deregister interface |
|
IGMP multicast SSM-map with DNS doesn't work with IGMPv3 |
|
ESP crash when flapping interface with l2tp tunnels that have qos applied to the tunnels. |
|
cpp-mcplo-ucode crash when layer 2 switching packet |
|
Router crashes after interface flap where sessions get moved from one interface to another |
|
CLI aaa common-criteria not available on IPBASEK9 license |
|
Unexpected Reboot following show platform software adjacency oce [ID] |
|
NULL remote_hostname from LAC |
|
FP crash @cpp_qm_create_queue while adding fair-queue |
|
16.8.1:dot1x Clients stops responding ( ping to clinet IP fails) after 2nd SSO |
|
Redundancy Mode None does not Sync |
|
ASR1K - ECMP load-balance w/ DPI L2TP Tunnel visibility and QoS may generate ucode crash |
|
CPP crash in MMA |
|
isdn pri-group cause router get into a loop |
|
cts pacs and cts credentials are lost after SSO |
|
IOS-XE Voice NIM/PVDM Service-Engine Admin Down leads to one-way audio |
|
QoS Overrides loadbalancing to per prefix even with only session level policing applied |
|
ASR1004 started relaying clients DHCP Discover messages to DHCP Server with the wrong IP address |
|
Erroneous fan failure indication on some units - Speed Racer (ASR1001-HX) |
|
17112010 to fix incorrect fan status read by tach inputs to Reset FPGA - ASR1001-HX |
|
cpp_cp_svr crashes, causing reload |
|
ZBF not able to identify the WAAS optimized flow and drops ACK |
|
ip dhcp excluded-address deletion issues via netconf |
|
Crash processing MMA punt records |
|
ASR1009-X/RP2:power supplies are seen as ASR1000X-FAN and Insufficient number of power supplies (0) |
|
Router cpp_cp_svr process crashes at cpp_qm_event_parent_event_create |
|
BQS pending deferred is stuck |
|
FP cpp_cp_svr crash @cpp_bqs_srt_yoda_place_child |
|
EPA-10X10GE or EPA-18X1GE - Memory leak with input mac-address accounting |
|
Router crash due to PuntInject Keepalive Process - kmalloc failures |
|
PFRv3 RC FIA is not enabeld on interfaces with one of sub-interface with xconnect config |
|
ASR1000X-AC-1100W PEM status displayed as "Unknown" in CCO-16.06.02 on 6X chassis |
|
Vz: Non-Polaris to Polaris ISSU compatibility issue |
|
ASR1006-X EPA card input errors |
|
IOS-XE - FTP closing connection as NAT device does not process the 230 reply message |
|
16.8.1: MKA session not coming up consistently after SSO and keepalive timeout. |
|
Session Mgrd crah obsered with 16.8.1 image |
|
MIP100 get struck in disconnecting state on FP reload |
|
ASR1k @ "add-route" does not work with "ip nat outside static" statement under VRF |
|
Interface on ASR1001-X will become down/down after shut/no shut |
|
16.8.1:dot1x Clients stops responding ( ping to clinet IP fails) after SSO (CSCvh68810) (PD changes) |
|
Incorrect BDI configuration state shown by NETCONF on interface creation |
|
standby rp crash on removing member link from port-channel |
|
Restored DB is session-lock locked out with insane timeout after boot |
|
H.245 messages are not translated by NAT outside when H.323 video call is initiated from Out-2-In |
|
active SUP crash when active run 16.7.1 and standby run 3.18.2aSP |
|
RBM-3-RBM_ERR: Returning from SISF handler as idb is NULL console error messages on FE node |
|
ASR 1001-X Te0/0/1 link fails when AOC transceivers are used |
|
vif interface counters do not increment with multicast service reflection on IOS-XE |
|
Memory leak seen when having same src mac -address with different src ip address |
|
Rapid TDL memory leak in SMD process leads to crash of active switch in stack for ipv6 clients |
|
ASR1001-x crash due to wrong packet size |
|
Crash due appnav SYN-ACK packets without a flow |
|
ZBFW HA: active router stuck in cold standby state after shut no shut the wan interface |
|
AppNav-XE cause delays for locally source traffic on router |
|
Crash after service-policy APPNAV change on WAAS instance |
|
Missing interface source template model |
Open Caveats—Cisco IOS XE Fuji 16.9.1
All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.
Caveat ID Number |
Description |
---|---|
Router crashed due to stack corruption from buffer overflow |
|
SNMP dead loop @ipAddressIfIndex.ipv6z |
|
CENT: branch MC crashed @ cent_pdp_msg_send_from_pickexit after CSCup19724 |
|
Memory leak on interface range shut/noshut (G.8032/MST) |
|
BGP PIC/Max-paths:150K scale device stuck with pending issues with network changes |
|
slow convergence when configuring ha-mode SSO for IPv6 peers |
|
With AppNav controller source as loopback on ASR1K RP2 HA, AppNav state goes DOWN |
|
ASR1k unexpected crash due to appNav . |
|
Crash after service-policy APPNAV change on WAAS instance |
|
router crashed with '%SYS-2-NOPROCESS: No such process 158 -Process= "SC CMM Recv Process"' |
|
ASR1K crash in tplus_handle_req_timeout |
|
Snmp v2 breaks due to Authentication failure, bad community string, 16.03.06 |
|
[UniScale]CSRs failed to scale upto desired NAT64 stateful Dynamic translations |
|
sgt-map gets cleared for some of the end points for unknown reason |
|
IPv6 AAA Prefix Support for 3rd party PPP clients no password for -dhcpv6 Access-Request |
|
FNF export not working after second switchover when ETA+FNF is configured |
|
Synchronization of built-in interface templates broken or never implemented |
|
PLR channel is not muted for some time |
|
Performance problems when configuring via CLI when netconf/restconf/gnmi is enabled |
|
ASR1K - No kernel/coredump generated with watchdog reload event |
|
CSR1k-FlexVPN: Spoke to Spoke: Implicit NHRP entry due to expired resolution request handling. |
|
Crash in ssh_process when removing pnp profile from switch |
|
DCA traffic-classes get controlled over blackhole path |
|
ASR1K not reachable by Unicast on Port-Channel Sub interfaces when EVC + Sub-interface is configured |
|
Unable to remove command 'ip nat inside destination' |
|
ESP crash due to fatal error |
|
Polaris: Host limit of 32 for session monitoring sessions |
|
ASR1001-X crash due to free block at tty_handle |
|
Crash when doing a new SSL Connection. |
|
MAB fails to start negotiation after device moves to another layer 2 adjacent switch |
|
MPLS TE + MLDP - TTL issue |
|
QoS stats process crash |
|
Fman-fp in one c9300 crashed unexpectedly and took down the rest of stack members without failover |
|
IOS/IOS-XE 16.6.3 - SSH on VRF int is allowed irrespective of vrf-also key |
Related Documentation
Platform-Specific Documentation
For information about associated services and modules in Cisco ASR 1000 Series Aggregation Services Routers, see: Documentation Roadmap for Cisco ASR 1000 Series, Cisco IOS XE 16.x Releases.
Communications, Services, and Additional Information
-
To receive timely, relevant information from Cisco, sign up at Cisco Profile Manager.
-
To get the business impact you’re looking for with the technologies that matter, visit Cisco Services.
-
To submit a service request, visit Cisco Support.
-
To discover and browse secure, validated enterprise-class apps, products, solutions and services, visit Cisco Marketplace.
-
To obtain general networking, training, and certification titles, visit Cisco Press.
-
To find warranty information for a specific product or product family, access Cisco Warranty Finder.
Cisco Bug Search Tool
Cisco Bug Search Tool (BST) is a web-based tool that acts as a gateway to the Cisco bug tracking system that maintains a comprehensive list of defects and vulnerabilities in Cisco products and software. BST provides you with detailed defect information about your products and software.