Cisco ASR 1000 Series Aggregation Services Routers Release Notes

1251
Cisco Systems, Inc. www.cisco.com Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco website at www.cisco.com/go/offices. Cisco ASR 1000 Series Aggregation Services Routers Release Notes, Cisco IOS XE Release 3S February 10, 2017 Text Part Number: OL-26698-25

Transcript of Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Page 1: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Release Notes, Cisco IOS XE Release 3SFebruary 10, 2017

Cisco Systems, Inc.www.cisco.com

Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco website at www.cisco.com/go/offices.

Text Part Number: OL-26698-25

Page 2: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

THE SPECIFICATIONS AND INFORMATION REGARDING THE PRODUCTS IN THIS MANUAL ARE SUBJECT TO CHANGE WITHOUT NOTICE. ALL STATEMENTS, INFORMATION, AND RECOMMENDATIONS IN THIS MANUAL ARE BELIEVED TO BE ACCURATE BUT ARE PRESENTED WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED. USERS MUST TAKE FULL RESPONSIBILITY FOR THEIR APPLICATION OF ANY PRODUCTS.

THE SOFTWARE LICENSE AND LIMITED WARRANTY FOR THE ACCOMPANYING PRODUCT ARE SET FORTH IN THE INFORMATION PACKET THAT SHIPPED WITH THE PRODUCT AND ARE INCORPORATED HEREIN BY THIS REFERENCE. IF YOU ARE UNABLE TO LOCATE THE SOFTWARE LICENSE OR LIMITED WARRANTY, CONTACT YOUR CISCO REPRESENTATIVE FOR A COPY.

The Cisco implementation of TCP header compression is an adaptation of a program developed by the University of California, Berkeley (UCB) as part of UCB’s public domain version of the UNIX operating system. All rights reserved. Copyright © 1981, Regents of the University of California.

NOTWITHSTANDING ANY OTHER WARRANTY HEREIN, ALL DOCUMENT FILES AND SOFTWARE OF THESE SUPPLIERS ARE PROVIDED “AS IS” WITH ALL FAULTS. CISCO AND THE ABOVE-NAMED SUPPLIERS DISCLAIM ALL WARRANTIES, EXPRESSED OR IMPLIED, INCLUDING, WITHOUT LIMITATION, THOSE OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT OR ARISING FROM A COURSE OF DEALING, USAGE, OR TRADE PRACTICE.

IN NO EVENT SHALL CISCO OR ITS SUPPLIERS BE LIABLE FOR ANY INDIRECT, SPECIAL, CONSEQUENTIAL, OR INCIDENTAL DAMAGES, INCLUDING, WITHOUT LIMITATION, LOST PROFITS OR LOSS OR DAMAGE TO DATA ARISING OUT OF THE USE OR INABILITY TO USE THIS MANUAL, EVEN IF CISCO OR ITS SUPPLIERS HAVE BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.

Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R)

Any Internet Protocol (IP) addresses and phone numbers used in this document are not intended to be actual addresses and phone numbers. Any examples, command display output, network topology diagrams, and other figures included in the document are shown for illustrative purposes only. Any use of actual IP addresses or phone numbers in illustrative content is unintentional and coincidental.

Cisco ASR 1000 Series Aggregation Services Routers Release Notes, Cisco IOS XE Release 3S© 2011–2017 Cisco Systems, Inc. All rights reserved.

Page 3: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

OL-26698-25

C O N T E N T S

Cisco ASR 1000 Series Aggregation Services Routers Release Notes 1-1

About Cisco ASR 1000 Series Aggregation Services Routers 1-1

System Requirements for Cisco ASR 1000 Series Aggregation Services Routers 1-7

Software Packaging 1-7

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU 1-10

RP Memory Recommendations 1-10

Hardware Supported 1-16

ROMmon Release Requirements 1-16

Determining the Release Number of the Installed Software 1-21

Determining the Version of the Consolidated Package 1-21

Determining the Version of the Individual Subpackages 1-22

Upgrading to a New Software Release 1-27

Limitations and Restrictions in Cisco ASR 1000 Series Aggregation Services Routers 1-29

Limitations and Restrictions in Release 3.15.0 1-29

Limitations and Restrictions in Release 3.14.0 1-29

Limitations and Restrictions in Release 3.13.0 1-30

Limitations and Restrictions in Release 3.12.0 1-30

Limitations and Restrictions in Release 3.11.0 1-30

Limitations and Restrictions in Release 3.10.0 1-30

Limitations and Restrictions in Release 3.9.0 1-30

Limitations and Restrictions in Release 3.8.0 1-30

Limitations and Restrictions in Release 3.7.0 1-30

Limitations and Restrictions in Release 3.6.0 1-31

New and Changed Information 2-35

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S 2-35

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S 2-36

Additional features for multiple-m-line support on CUBE 2-36

Autonomic Networking Infrastructure 2-36

iii

Page 4: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

BGP Strict-mode support for BFD Dampening 2-36

Dual-Factor Authentication support with IKEv2 2-36

EIGRPv6 Route-map support for Distribute-list 2-36

Enhancement to bandwidth qos-reference Command 2-36

Ethernet Overhead Accounting (Policing) for MEF 2.0 Certification 2-36

IKEv2 Cluster Reconnect 2-37

IOSXE Local CAC 2-37

IOS-XE ZBFW interop with crypto VPN 2-37

MacSec CLI option to change EAPoL frame ethernet type 2-37

MC-LAG TCN interworking 2-37

MPLS LDP: Entropy Label Support 2-37

OAM for Segment Routing 2-37

One P/DPSS performance enhancement and new packet actions: dscp-marking, set-nexthop and forward 2-38

PMIPv6 LMA SSO 2-38

QoS: Per-Flow Admission 2-38

REST API support for ASR1000 family management port 2-38

SGT Based QoS 2-38

SIP-REC standard based call/media recording support on CUBE 2-38

Spoke-to-Spoke NHRP summary maps 2-38

Survivability TCL concurrent operation with Cisco UC GW Services API based Media Forking 2-39

TLS 1.2 support,256_GCM Cipher suits support and HTTPS for Cisco UC GW Services API interface support on CUBE 2-39

Variable length Checkpointing Enhancements for enhanced HA in CUBE 2-39

VxLAN PIM SM Support 2-39

Important Notes 2-39

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 2-39

Deferrals 2-40

Field Notices and Bulletins 2-40

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S 2-40

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S 3-41

New and Changed Information 3-41

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S 3-42

2-Port 40 Gigabit Ethernet EPA with CPAK and Breakout Cable (EPA-CPAK-2x40GE) 3-42

iv OL-26698-25

Page 5: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS 3-42

Cisco ASR 1009-X Router and Cisco ASR 1006-X Router 3-42

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S 3-42

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S 3-42

Cisco ASR 1000 Series Modular Ethernet Line Card 3-43

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS 3-43

Cisco ASR 1000 Series Modular Ethernet Line Card 3-43

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.0S 3-43

Adaptive QoS Enhancements 3-43

Auto-custom 3-43

Asymmetric Routing Support for NAT64 3-43

Asymmetric Routing Enhancements for NAT44 3-43

Cisco ASR 1009-X Router and Cisco ASR 1006-X Router 3-44

Custom App based on any NBAR2 extracted field 3-44

DMVPN Akamai NAT Ph2 3-44

Domain Name System Security Extensions 3-44

Early Dialog UPDATE Block 3-44

EIGRP iWAN Simplification 3-44

EOAM over Port Channel 3-44

EoGRE: Inter-chassis HA 3-44

Flexible Netflow - Top N Talkers Support 3-45

IWAN serviceability -- Application aware Ping, Traceroute 3-45

L3 custom any IP/Port 3-45

LISP MIB 3-45

MacSec max concurrent peer scale improvment 3-45

MACSec support on Wallander 3-45

Mid-call signaling block - ReINVITE Consumption 3-45

MPLS LDP - IGP Synchronization 3-46

MPLS MTU command for GRE Tunnels 3-46

NBAR2 DNS-AS support 3-46

NBAR2 server-name custom application 3-46

Potentially match 3-46

PP support for 3.16/PI28 3-46

Selective Fine Grain 3-46

SGT Based PBR 3-46

Show unclassified port stats 3-47

vOL-26698-25

Page 6: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

SMI over virtual template 3-47

Spotlight NBAR2 visibility dashboard 3-47

SRND support 3-47

SSL - TLS 1.2 support 3-47

Support for pass-through of unsupported content types in SIP INFO messages 3-47

TrustSec Security Group Name Download 3-47

VXLAN- MCLAG Active-Active High Availability Support 3-47

VxLAN Scaling Enhancement 3-48

XE 3.16 GETVPN GDOI/COOP MIBS 3-48

XE Segment Routing - ISIS v4 node SID 3-48

Important Notes 3-48

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 3-48

Deferrals 3-48

Field Notices and Bulletins 3-49

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S 3-49

address ipv4 Command Changes 3-49

Class of Restrictions (COR) Configuration 3-49

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 4-51

New and Changed Information 4-51

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 4-52

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.0S 4-52

1000M GLC-TE (catskills) support 4-52

Adaptive QoS Manageability 4-52

AMT (Automatic Multicast Tunneling) 4-52

AVC in L2 Transparent mode 4-52

BGP Support of Multiple Sourced Paths per Redistributed Route 4-52

C3PL - BGP flowspec client 4-53

Call Progress Analysis (CPA) over IP-IP Media Session 4-53

Cisco Service Discovery Gateway - Phase 3 4-53

CLI control to extend port range to entire range 4-53

Configurable export interval in EZPM 4-53

DHCP lease-query support for multiple DHCP Servers 4-53

EIGRP OTP Support to propagate SGT 4-53

EoGRE inter-SSID roaming 4-53

EoMPLS over IPv6 GRE Tunnel 4-54

Export absolute timestamp 4-54

vi OL-26698-25

Page 7: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Fine-grain NBAR for selective apps 4-54

FlexVPN - IKEv2 CoA for QoS and ACL 4-54

FlexVPN RA - Aggregate Auth support for AnyConnect 4-54

HA for Xcoded Calls (Inbox & Box to Box) 4-54

HA for Xcoded Calls w/ DTMF & VCC 4-54

HA support for REFER call flows upon SSO 4-54

ICE infra and ICE lite support on XE platforms 4-55

Identify and clear (terminate) FPI hung sessions to prevent reboot 4-55

IEEE 802.1ag-2007 Compliant CFM - PW/VFI Support 4-55

Layer 2 Transparent Firewall support 4-55

Modification of unsupport SIP header using SIP Profiles 4-55

NAT MIB Support 4-55

NBAR custom applications based on DNS Name 4-55

OSPF: Limit simultaneous adjacency formations 4-56

PfRv3 support for transit hub 4-56

PfRv3 Transit Site Support 4-56

PKI Credentials Expiry Alerts 4-56

PKI IOS XE Certificate Server 4-56

PKI MIB 4-56

Preserve ISIS metrics when redistributing routes between ISIS instances 4-56

QoS Service Group 4-56

QoS: Spoke to Spoke per tunnel QoS for DMVPN 4-57

Remote Id Format : IR.61 compliance 4-57

SEQUENCE / SORT DIAL PEERS 4-57

SIP Profile to provide tag, sequence number and modification of unsupported SIP header 4-57

SSL custom application and DSCP based L3 custom application 4-57

undetermined transport support for deny ipv6 any any 4-57

VLAN ID based policy control 4-57

Zone-Based Firewall Handling of Zone Mismatch Traffic 4-58

Zone-Based Firewall: Serviceability Enhancements Phase 4 4-58

Important Notes 4-58

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 4-58

Deferrals 4-58

Field Notices and Bulletins 4-59

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 4-59

4-59

viiOL-26698-25

Page 8: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S 5-61

New and Changed Information 5-61

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S 5-62

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S 5-62

8K GM Scale Improvement 5-62

Adaptive QoS: Dynamic Shape Rate 5-62

AnyConnect Dual Stack Support on IOS FlexVPN Gateway - Announcing IPv6 Capability over GRE 5-62

Auto-Configuration of Remote Shapers 5-62

Autonomic Networking for ASR 921 Pegasus 5-62

BGP AS-Override Split-Horizon 5-63

BGP-FlowSpec Route-reflector (RR) Support 5-63

Clear Crypto Session (IKEv2/IPsec) via RADIUS Attribute 5-63

CUBE (ENT) Dial-peer and Call Handling Enhancements 5-63

CUBE: IOS Parity Feature: Deliver Call Quality Statistics in CDR 5-63

DSP SNMP MIB 5-63

Dynamic Bandwidth Handling for Non-ima Link 5-64

EST Client Support 5-64

IKEv2 Remote Access Change of Authorization (CoA) ? Packet of Disconnect 5-64

IPv6 Routing: OSPF for IPv6 (OSPFv3) 5-64

ISIS IPv6 Multi-process Support 5-64

iWAG-GTP: S2a Interface Support and High Availability Enhancements 5-64

LISP Data Plane Security 5-64

MACsec Key Agreement Support 5-64

mLDP (*,G) In-band Signaling 5-65

NBAR2 Integrated Protocol Pack 11.0.0 5-65

NBAR MQC support for Pre-resolved and Unknown Applications 5-65

OSPFv3 Autoroute Exclude 5-65

OSPFv2/v3 RFC5243 Database Exchange Summary List Optimization 5-65

OCSP Response Stapling 5-65

PfRv3 Zero SLA Support 5-65

REST API Support for XE Platforms 5-65

SIP Line-side Out of Dialog REFER Pass-through 5-66

Smart Licensing Client for IOS and IOS XE 5-66

SSL Support for HSM/ACT2 5-66

Support for Standard PIM MIB (RFC 5060) 5-67

vFW - VRF Aware Software Infrastructure (VASI) 5-67

viii OL-26698-25

Page 9: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

VRF-Aware NAT for WAN-WAN topology with Box-to-Box Redundancy 5-67

X.509v3 Certificates for SSH Authentication 5-67

ZBFW-ALG MSRPC Inspection for ZBFW and NAT 5-67

ZBFW Asymmetric Routing Support with VRF/MPLS 5-67

ZBFW B2B and Intra Box HA support for LISP Inner Pkt Inspection 5-67

ZBFW Serviceability Phase III 5-67

Important Notes 5-68

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 5-68

Deferrals 5-68

Field Notices and Bulletins 5-68

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S 5-69

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S 6-71

New and Changed Information 6-71

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S 6-72

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S 6-72

Dual DHCP lease query servers 6-72

QoS On Ethernet Over GRE (EoGRE) Tunnels 6-72

VxLAN L2 Gateway with multicast 6-72

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S 6-73

NIM Support for the Cisco ASR 1001-X Router 6-73

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S 6-73

Adaptive AVC Reporting 6-73

Audio only stream forking of video call 6-73

BGP - 4-byte AS RD and RT Support (RFC5668) 6-73

BGP - mVPN Source-AS EC Filtering (SAFI 128/129) 6-73

BGP - NSR Enhancement 6-73

BGP - Sub-codes for BGP Cease notification (RFC 4486) 6-74

Bridge Domain Interface (BDI) IPv6 Support 6-74

Cayuga API support for Secure RTP forking 6-74

Cisco Service Discovery Gateway - Phase 2 6-74

CRL pre-fetch with tunable timers 6-74

Delete crypto session(s) of revoked peer cert(s) on CRL download 6-74

DNS debug changes 6-74

Dynamic VLAN interface provisioning 6-74

ixOL-26698-25

Page 10: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Flexible NetFlow Export of TrustSec fields 6-75

GETVPN Routing Awareness for BGP 6-75

IOS OSPF - OSPFv2 Autoroute Exclude 6-75

IPv6 VRF aware system message logging (syslog) 6-75

ISM Restartability 6-75

IPv6 Routing: IS-IS Support for IPv6 6-75

L2VPN HDLC to Ethernet Interworking 6-75

LISP and ZBFW Integration & Interoperability 6-76

LISP Multicast 6-76

Minimum Frame size 68-bytes on 40G Native Ethernet Line card on ASR1000 6-76

Multicast Traffic Blocking 6-76

NBAR2 Integrated Protocol Pack 9.0.0 6-76

OPTIONS PING support under HA config 6-76

PIM DR Loadbalancing 6-76

PMIP MAG SSO 6-76

Pre-Paid support for Dual stack sessions 6-77

Performance Routing v3 (PfRv3) 6-77

PBR: Match Track Object 6-77

QoS On Ethernet Over GRE (EoGRE) 6-77

Radius Proxy in pass-through mode 6-77

Shaping on Dialer Interface 6-77

SNMP MIB for dial peer connection status based on SIP OPTIONS KEEP ALIVE 6-77

Support for IEEE 1588-2008 Precision Clock Synchronization Protocol 6-78

Third-Party GUID Capture for correlation between Calls and SIP based Recording 6-78

TrustSec DMVPN Inline Tagging Support 6-78

web-auth for iWAG mobility (GTP/PMIPv6) 6-78

6-78

ZBFW-ALG/AIC Conditional Debugging and Packet Tracing Support 6-78

Zone-based Firewall Per-filiter Statistics 6-78

Zone-Based Firewall Support of Multipath TCP 6-78

Important Notes 6-79

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 6-79

Deferrals 6-79

Field Notices and Bulletins 6-79

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S 6-79

x OL-26698-25

Page 11: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S 7-81

New and Changed Information 7-81

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS 7-82

Cisco ASR 1001-X Router 7-82

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S 7-83

ASR1000: 6x10GE Native Ethernet Line Card 7-83

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S 7-83

AC-name and AC-cookie Knob for PPPoE PADS 7-83

ASR1000: 6x10GE Native Ethernet Line Card 7-83

ASR 1000 FlexVPN Scaling Enhancement 7-83

ASR 1000 Minimal Disruptive Restart (MDR) Phase 3 7-83

Autoroute Announce and Forwarding Adjacencies for OSPFV3 over Ipv4 Te Tunnels 7-84

BGP Accumulated IGP 7-84

Cisco Application Visibility and Control User Guide for IOS Release 15.4(2)T and IOS XE Release 3.12S 7-84

Cisco Channelized T3 to DS0 Shared Port Adapter (SPA-2XCT3/DS0-V2, SPA-4XCT3/DS0-V2) 7-84

Cisco Clear Channel T3/E3 Shared Port Adapter V2 (SPA-2XT3/E3-V2, SPA-4XT3/E3-V2) 7-84

Cisco Trustsec Interface to SGT Mapping 7-84

Configurable CHAP Challenge Length 7-84

Create MIB Object to Track A Successful GDOI Registration 7-85

CUBE Serviceability Enhancements 7-85

Easy Performance Monitor Phase II 7-85

EIGRP Scale for DMVPN 7-85

Frame Relay over L2TPv3 7-85

HA Checkpointing Support for Asymmetric Payload 7-85

Inbound Leg Headers for Dial Peer Matching 7-85

IP Access List Entry - Persistent Sequence Numbering Across Reloads 7-86

IP SLAs TWAMP Responder 7-86

ISG Debuggability Enhancements 7-86

ISG IP Session and NAT Co-existence 7-86

ISG L2 Subscriber Roaming 7-86

Knob for Ping and Traceroute with VRF to Choose Global DNS Server 7-86

L2VPN Local Switching-FR-Ethernet/VLAN 7-86

xiOL-26698-25

Page 12: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Label Switched Multicast (LSM) Multicast Label Distribution Protocol (mLDP) based Multicast VPN (mVPN) Support 7-87

MAG to MAG Traffic Blocking on the PMIPv6 LMA 7-87

Mid-Call Renegotiation Support for DO-EO Calls 7-87

MLPoE at PTA 7-87

MPLS TE - Bundled Interface Support (EtherChannel and MLP) 7-87

MPLS Traffic Engineering (TE) - Class-based Tunnel Selection 7-87

Multiple FlexVPN Spokes Behind a Single NAT Device 7-87

mVPNv6-mLDP over GREv4 7-88

NBAR2 Custom Protocol Enhancements Phase II 7-88

NBAR2 Integrated Protocol Pack 7.1.0 7-88

NBAR2 Protocol Pack Hitless Upgrade 7-88

NBAR L3 Custom Protocol Support 7-88

Object Groups for ACLs 7-88

OnePK Support 7-89

Open Plug-N-Play Agent 7-89

Packet Classification Using Frame-Relay DLCI Number 7-89

PBR Recursive Next Hop for IPv6 7-89

Per-Interface QoS for PPPoE Punt Traffics 7-89

Persistent CPU Index After ESP/RP Reboot 7-89

QoS on GEC PortChannel on ASR 1K 7-89

RFC430x IPSec Support Phase-1 7-90

Simplified Line Side Support for CUCM on CUBE 7-90

SIP Profiles for Inbound Messages 7-90

SPA-1xCHSTM1/OC3 7-90

Support AAC-LD MP4-LATM CODEC Support on CUBE for Interworking with Media Sense for Forked Calls 7-90

Support of AES-GCM as an IKEv2 Cipher on IOS 7-90

TrustSec Phase4 7-90

Tunnel Mode Auto Selection 7-91

TWAMP RFC compliance 7-91

V.150.1 MER Support in SDP Passthru Mode 7-91

VPLS BGP Signaling L2VPN Inter-AS Option B 7-91

Important Notes 7-91

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 7-91

Deferrals 7-92

Field Notices and Bulletins 7-92

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S 7-92

7-92

xii OL-26698-25

Page 13: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S 8-93

New and Changed Information 8-93

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S 8-94

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S 8-94

1 port OC-48 POS/RPR SPA with SFP Optics 8-94

BGP - EVPN / PBB_EVPN route-reflection 8-94

BGP - RTC for legacy PE 8-94

BGP GSHUT enhancement 8-94

BGP Monitoring Protocol 8-94

CAC for IP sessions Enhancements 8-95

Cisco 8-Port Channelized T1/E1 Shared Port Adapter (SPA-8XCHT1/E1-V2) 8-95

Configurable number of simultaneous packet per ZBFW session 8-95

CUBE HA Enhancements:Stateful Switch Over (SSO) for SIP Signaling over TCP/TLS connection, HA Protected State to simplify Active reboot, including SYSLOG msg,HA Box to Box Redundancy for ASR1006 8-95

CUBE-SP: Blended transcoding and long user info 8-95

Dial peer simplification 8-95

Disjoint LISP RLOC Domains Support 8-96

Dual Stack support for Mobile IP users - GTP 8-96

Dual Stack support for Simple IP 8-96

EIGRP Classic to Named mode Conversion 8-96

Enable Automatic configuration of Flow Metadata in the reverse direction 8-96

Enable bi-directional SXP support 8-96

Enabling ALGs and AICs in Zone-Based Policy Firewalls 8-97

FlexVPN IPv6 Direct Spoke to Spoke 8-97

Flow Based Redirect 8-97

Flow-Aware Transport of MPLS Pseudowires 8-97

FNF: Prevent Export Storms 8-97

FRR and VLAN Unlimited for 40G Native Ethernet Line card on ASR1000 8-97

GETVPN IKEv1 Separation 8-97

HA Protected State to simplify Active reboot,including SYSLOG msg,HA Box to Box Redundancy for ASR1006 8-98

IOS IKEv2 support for AutoReconnect feature of AnyConnect 8-98

IOS VRF Multicast Multi-Topology Support 8-98

IP Tunnel - GRE Key Entropy Support 8-98

IPV4 ACL Chaining Support 8-98

IPv6 ACL Chaining with common ACL 8-98

IPv6 IPSec QoS (LLQ and QoS Pre-Classify) 8-99

xiiiOL-26698-25

Page 14: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

ISDN Phase 2 (for LAC) on E1 8-99

ISG accounting accuracy (~ 1 sec accuracy at session and TC level) 8-99

ISG / iWAG Templating Based Policy / Feature Provisioning 8-99

ISIS - Remote LFA FRR 8-99

ISIS local microloop protection 8-99

L2TPv3 - Layer-2 Tunneling Protocol Version 3 8-100

Label Switched Multicast (LSM) Multicast Label Distribution Protocol (mLDP) based Multicast VPN (mVPN) support 8-100

LISP ESM Multihop mobility 8-100

MMOH suport on ASR 8-100

MPLS VPN over mGRE 8-100

MTR in VRF 8-100

Multi-Topology BGP with VRF enhancement 8-100

Multicast MT mode in VRF 8-101

NBAR2: Add/rename static attributes 8-101

NBAR2: GETVPN (Crypto-Map) Support 8-101

NBAR2 Integrated Protocol Pack 6.0.0 8-101

NBAR2: Integrate NBAR Taxonomy into the router 8-101

Observation Point ID - distinguish metrics from different interfaces 8-101

OSPF IPv4 Remote Loop Free Alternate IP Fast-reroute (Remote LFA IPFRR) 8-102

OSPFv2 IP FRR Local Microloop Avoidance 8-102

OSPFv2 Multi Area Adjacency 8-102

OSPFv2 OSPF Live-live 8-102

OSPFv3 Authentication Trailer 8-102

OSPFv3 Multi Area Adjacency 8-103

PBR next hop verify availability for vrf 8-103

Per Tunnel QoS 8-103

PKI Split VRF in Trustpoint 8-103

Pv6 IPSec QoS (LLQ and QoS Pre-Classify) 8-103

Retain DSCP setting of RTP packet 8-103

Role-Based CLI Inclusive Views 8-104

RSVP Over UDP 8-104

Service Discovery Gateway 8-104

SIP ALG resilience to DOS attack 8-104

SIP Signaling Enhancements: URI based dialing, Pass-through of Unsupported and non-Mandatory Headers, CUBE Graceful Shutdown mode, Configurable SIP Error codes, SHA1_80 support in SRTP 8-104

SP Wifi: Integrated Ethernet over GRE support 8-104

Support for adjustable statistics poll interval for SPA-8xCHT1E1 8-105

TCP MSS Adjust 8-105

xiv OL-26698-25

Page 15: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

VRF aware BGP translate-update 8-105

Weighted Fair Queueing, High Priority Policer and Configurable threshold for Pause Framesfeature for 40G Native Ethernet Line card on ASR1000 8-105

WSMA Enhancements for wireless management 8-105

Important Notes 8-105

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 8-105

Deferrals 8-106

Field Notices and Bulletins 8-106

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S 8-106

8-106

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S 9-107

New and Changed Information 9-107

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.2S 9-108

WCCP with generic GRE Support 9-108

Dropping TCP Packets During Router Reboot Process in AppNav Controller Group Scenario 9-108

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S 9-108

Cisco ASR 1000 Series Fixed Ethernet Line Card 9-108

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S 9-108

1-port OC-192c/STM-64 POS/RPR Shared Port Adapter, XFP Optics 9-109

Add support for more than 32 FNF fields 9-109

Aliases 9-109

ASR1000 - 16k policy map scaling 9-109

ASR-1000 Minimal Disruptive Restart (MDR) Phase 2 - POS SPA MDR 9-109

ASR1000: 40G Native Ethernet Line card 9-109

ASR1000-ESP200 9-109

ATM support on SPA-24CHT1-CE-ATM on ASR1000 9-109

Auto-IP 9-110

BGP - L3VPN iBGP pe-ce (RFC 6368) 9-110

BGP NSR Support for MPLS VPNv4 and VPNv6 Inter AS Option B 9-110

Bidirectional MPLS-TP LSP 9-110

Bowflex - NHRP snmp restructuring 9-110

Bulk-logging and port block allocation 9-110

Cisco 8-Port Channelized T1/E1 Shared Port Adapter (SPA-8XCHT1/E1-V2) 9-110

Configurable RTP port range per IP Address for RTP session connectivity 9-110

xvOL-26698-25

Page 16: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

CUBE Inter-Cluster Look up Service (ILS) 9-111

CUBE Serviceability for event logging and debug classification 9-111

CUCM Lineside support 9-111

Debuggability enhancement in IOS-XE Zone Based Firewall (Phase-II) 9-111

DHCP-SIP and Walkby Integration 9-111

Disabling Flow Cache Entreis in NAT and NAT64 9-112

Easy Performance monitor 9-112

Ethernet over GRE Tunnels 9-112

EVC On Port-channel 9-112

eiBGP multipath for non VRF interfaces (IPv4/IPv6) 9-112

EIGRP Over the Top 9-112

FlexVPN Mixed Mode support 9-112

GETVPN CRL Checking 9-113

GETVPN Resiliency - GM Error Detection 9-113

GETVPN support with SuiteB 9-113

GTPv2 support in iWAG - Intelligent Wireless Access Gateway on ASR1K 9-113

IKE Profile based tunnel selection 9-113

IKEv1 SHA-2 support 9-113

IOS BGP - BGP C-Route Full SM Support 9-113

IOS-XE GTP TEID based ECMP 9-114

IP SLAs - Asymmetric probe support for UDP jitter 9-114

IPSec debugability enhancement 9-114

IPv6 SNMP MIB support for voice features 9-114

IPv6 Static Route support for Object Tracking 9-114

iWAG - Intelligent Wireless Access Gateway SSO support for GTP on ASR1K 9-115

iWAG Scale Enhancements 9-115

L2VPN Static to Dynamic PW Interconnection & PW Preferred Path for MPLS-TP Tunnels 9-115

L3VPN per CE label 9-115

LI support for IPoE sessions 9-115

Loose Checking Option for TCP Window Scaling in ZBFW 9-115

MPLS Traffic Engineering Non-Stop Routing Support 9-116

MPLS VPN over mGRE 9-116

MPLS VPN Per CE Label Allocation 9-116

MPLS-TP OAM: Continuity Check via BFD 9-116

MPLS-TP OAM: Fault Management 9-116

MPLS-TP OAM: GACH 9-116

MPLS-TP OAM: Ping/Trace 9-116

MPLS-TP Path Protection 9-117

MVPN BGP C-Route Full SM Support 9-117

xvi OL-26698-25

Page 17: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

MVPN mLDP Partitioned MDT including wildcard 9-117

NAT increase VRF scale to 4k 9-117

Network-based recording of video calls using Cisco UBE 9-117

NHRP SNMP Restructuring 9-117

No Service Password-Recovery 9-118

OSPFv2 Cryptographic Authentication 9-118

OSPFv2 Multi Area Adjacency 9-118

OTV Enhancements 9-118

Per ACE QoS Statistics 9-118

Per COS Storm Control for Broadcast/Unknown Unicast/Multicast for EVC ports in ASR1k 9-119

PKI - New cert attributes 9-119

PMIP: Multipath support on MAG 9-121

Pseudowire Group Switchover 9-121

RFC4303 IP Encapsulating Security Payload (ESP) dummy packet for traffic flow confidentiality (TFC) 9-121

Secure CDP 9-121

Secure Shell-Configuring User Authentication Methods 9-121

SPA-4XOC3-POS-V2 support on ASR-1000 9-122

Support for dynamic payload type interworking for DTMF and codec packets for SIP to SIP calls 9-122

TDOS Attack prevention on CUBE 9-122

TrustSec SGT Handling: L2 SGT imposition and forwarding 9-122

UC GW Services - media forking service 9-122

VASI (VRF Aware Software Infrastructure) 2000 pairs scale 9-122

VP/VC Shaping for PPPoEoA/PPPoA 9-122

VRF-Aware IPv6 Rapid Deployment Tunnel 9-123

VRRP aware PIM 9-123

VRRPv3: Object Tracking Integration 9-123

WCCPv2 - IPv6 Support 9-123

Important Notes 9-123

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 9-123

Deferrals 9-123

Field Notices and Bulletins 9-124

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S 9-124

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S 10-125

New and Changed Information 10-125

xviiOL-26698-25

Page 18: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S 10-125

SFR Counter Support 10-126

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S 10-126

SP WiFi: Integrated Ethernet over GRE Support 10-126

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S 10-126

ALG/AIC Serviceability 10-126

AppNav-XE 10-126

AVC—Enhanced Connection/Transaction Metrics 10-127

AVC—Monitoring QoS Metrics 10-127

AVC—Enforcement of NBAR Advanced Mode 10-127

BB/ISG IOSXE Serviceability Enhancement 10-127

BFD Support for Multicast (PIM) 10-127

BGP—IPv6 NSR 10-127

BGP—Local-AS Allow-Policy 10-127

BGP—RT or VPN-ID Attribute Rewrite Wildcard 10-128

BGP—VRF Aware Conditional Advertisement 10-128

EIGRP Debug for EVN 10-128

EIGRP Support for 6PE/6VPE 10-128

Flexible NetFlow—Permanent Cache 10-128

Flexible NetFlow—MPLS Support 10-128

GTP v2 Support 10-129

IPSec Serviceability Debug 10-129

IPv6 Destination Guard 10-129

IPv6 Neighbor Discovery Multicast Suppress 10-129

IPv6—RIPng VRF Aware Support 10-129

IP SLA - Service Performance Testing Infrastructure 10-129

IPv6 Snooping 10-130

IPv6 Source or Prefix Guard 10-130

IPv6—Unicast Router Advertisement Support 10-130

L2VPN Protocol Base CLIs 10-130

Layer 2 Local Switching—ATM to Ethernet 10-130

LISP Host Mobility Extended Subnet 10-130

LISP Host Mobility Across Subnet 10-130

LISP—SHA-2 Support for Site Registration 10-131

mDNS for kWAAS 10-131

MediaTrace 3.0—MIB, IPv6, MIB Profiles and Reverse MediaTrace 10-131

MPLS—TP: Linear Protection or PSC support 10-131

xviii OL-26698-25

Page 19: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

NAT—Paired Address Pooling Support 10-131

Network-Based Recording Using Cisco UBE 10-131

NSR—LDP Support 10-131

OTV Adjacency Server 10-132

Parent Level Overhead Accounting 10-132

PMIP Mobility—3G Mobility Anchor 10-132

PPTP ALG for PAT Support 10-132

RaBaPol Shorten Policy Map Names 10-132

Radius Event Timestamp Attribute Support 10-132

Recursive Static Route 10-132

Scale up to 128K for Bridge Domain Mac Address 10-133

Simple Network Time ProtocolV4 (SNTPV4) 10-133

SP or WiFi: iWAG Access Tunnels: PMIPv6 LMA (128k tunnels) 10-133

Storm Control for Broadcast or Unknown Unicast or Multicast For EVC Ports in ASR1K 10-133

Unidirectional Link Detection Protocol (UDLD) on ASR 1000 10-133

ZBFW Serviceability Phase-1 10-133

Important Notes 10-134

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 10-134

Deferrals 10-134

Field Notices and Bulletins 10-134

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S 10-134

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 11-135

New and Changed Information 11-135

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 11-135

8 port clear channel T3/E3 SPA - SPA-8XT3/E3 11-136

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 11-136

8-Port Clear Channel T3/E3 SPA - SPA-8XT3/E3 11-136

Add Path Support in EIGRP 11-136

Ambiguous VLAN Support for IP Sessions over ISG (Limited Feature Support) 11-136

ASR1K-SIP40 ISSU MDR Support 11-136

AVC Limited Availability 11-136

BFD Dampening 11-136

BGP—Multicast VPN BGP Dampening 11-137

BGP—Multiple Cluster IDs 11-137

xixOL-26698-25

Page 20: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

BGP—VPN Distinguisher Attribute 11-137

Call Escalation from Voice to Video 11-137

Cisco Data Collection Manager 11-137

Classification Enhancements for IOS-XE3.8 11-137

Configuring ITU-T Y.1731 Fault Management Functions 11-137

Diffserv MIB 11-138

Embedded Packet Capture (EPC) 11-138

Enable Visualization of Application Usage 11-138

Enable Visualization of Service Path 11-138

E-OAM-CFM CCM Hardware Offload 11-138

Ethernet Local Management Interface (LMI) at Provider Edge (PE) 11-138

Flexible NetFlow—Egress VRF Support 11-138

iWAG – Intelligent Wireless Access Gateway 11-138

Excalibur Reverse L2GP 11-139

GDOI MIB Support for GET VPN 11-139

GETVPN GM Removal and Policy Trigger 11-139

GETVPN Troubleshooting 11-139

Graceful Shutdown Support for OSPFv3 11-139

3GPP Release 7 & 8 Support for GPRS Tunneling Protocol AIC 11-139

HSRP: Global IPv6 Address 11-140

H-VPLS N-PE Redundancy for MPLS Access 11-140

H-VPLS N-PE Redundancy for QinQ Access 11-140

IEEE 802.1ab LLDP (Link Layer Discovery Protocol) 11-140

IKEv1 Hardening 11-140

IKEv2 Remote Access Hardware Client 11-140

Inter-Chassis HA Support in IPV6 ZBFW 11-140

IP Unnumbered Ethernet Polling Support 11-141

IPSLA Multicast Support 11-141

IPV6 MVPN with MLDP 11-141

IPv6 Remote Access for IPSec VPN 11-141

IPv6 Transport for DMVPN 11-141

IPv6 ZBFW B2B HA Support 11-141

ISDN/Dialer Access-Link Support for Broadband Aggregation 11-141

ISIS No Hello Padding Always 11-141

ISSU—E-LMI Support 11-142

L2VPN VPLS Inter-AS, Option B 11-142

Label Switched Multicast (LSM) Multicast Label Distribution Protocol (mLDP) based Multicast VPN (mVPN) Support 11-142

LISP Delegate Database Tree (DDT) 11-142

LISP Host Mobility Across Subnet 11-142

xx OL-26698-25

Page 21: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

LISP-SEC, LISP Control Plane Security 11-142

Mapping of Address and Port Using Translation (MAP-T) 11-142

MGRE Tunnel Support over IPv6 11-143

MLDP-Based MVPN 11-143

MLDP In-Band Signaling / Transit Mode 11-143

MPLS Virtual Private Networks 11-143

MVPNv6 Extranet 11-143

NETCONF XML PI 11-143

Network-Based Recording Using Cisco UBE 11-143

NSF/SSO—E-LMI Support 11-143

OSPFv3 ABR Type 3 LSA Filtering 11-144

Per PW Layer 2 Service Policy in VFI 11-144

Per PW QOS in VFI 11-144

PfR Bandwidth Visibility Distribution for xDSL Access 11-144

PfR Scaling Improvement for Application Traffic Class (TC) 11-144

PPPoGEC—Per Session QoS [Include Model F Support] 11-144

Prefix Suppression Support for OSPFv3 11-144

SIP ALG Hardening for NAT and Firewall 11-145

Suite-B Support in IOS SW Crypto 11-145

Support for Algorithms in the Suite B Specification for IPSec by the On-Board Crypto Engine in Cisco ASR 1000 Series Aggregation Services Routers 11-145

Support for Negotiation of an Audio Codec from a List of Codecs on Each Leg of a SIP-SIP Call on the Cisco Unified Border Element 11-145

TCP - Configurable Keepalive Timer 11-145

TCP Reset Segment Control 11-146

Unicast Reverse Path Forwarding Loose Mode 11-146

VPLS BGP Signaling 11-146

VPLS MAC Limit Enhancement 11-146

VRRPv3 Protocol Support 11-146

WebEx SPA 11-146

Y.1731 Performance Monitoring 11-146

Important Notes 11-147

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature 11-147

Deferrals 11-147

Field Notices and Bulletins 11-147

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 11-147

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 12-149

New and Changed Information 12-149

xxiOL-26698-25

Page 22: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 12-149

Cisco ASR 1002-X Router 12-150

Cisco ASR 1000 Embedded Services Processor 100-Gbps 12-150

SPA-4XOC3-POS-V2 support on ASR-1000 12-150

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 12-150

ALG—H.323 vTCP with High Availability Support for Firewall and NAT 12-150

ASR1000 IPSec Debuggability Enhancement - Phase I 12-151

BGP—Attribute Filter and Enhance Attribute Error Handling 12-151

E-OAM : Multiple Port MAs Under Single MD 12-151

BGP Support for the L2VPN Address Family 12-151

CUBE(SP): H.248 BAC Support 12-151

CUBE(SP): IMS: Support for RF Interface (charging) 12-151

Flexible NetFlow: IPFIX Export Format 12-151

Flexible NetFlow: Export to an IPv6 Address 12-151

FTP66 ALG support for IPv6 Firewall 12-152

GRE IPv6 Tunnels 12-152

IP SLA QFP Time Stamping 12-152

IPv6 Firewall Support for Prevention of DDoS Attacks and Resource Management 12-152

IPv6 Zone-Based Firewall Support Over VASI Interfaces 12-152

Lawful Intercept License Monitoring Support 12-152

NBAR Classification Enhancements for IOS-XE3.7 12-152

NBAR Multi-stage classification 12-152

Performance Routing (PfR) with NBAR/CCE Application Recognition 12-153

Stateful NAT64—Interchassis Redundancy 12-153

Suite-B Support in IOS SW Crypto 12-153

Unicast Reverse Path Forwarding ACL Support 12-153

Universal SIP40 support for ASR1K 12-153

VPLS Autodiscovery, BGP-based 12-153

Walk-By User Support for PWLAN 12-153

GGSN Pooling Support for Firewalls 12-154

IPv6 Over DMVPN 12-154

IPv6 Remote Access for IPSec VPN 12-154

Bandwidth Based Call Admission Control (CAC) 12-154

Dynamic REFER Handling on CUBE 12-154

External: Support for Inclusion of Authorization Header in the Initial REGISTER Request 12-154

Multiple Destination Pattern Support on Voice Dialpeer 12-154

Supplementary Services Support on CUBE for RTP-SRTP calls 12-154

xxii OL-26698-25

Page 23: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Support for Populating Route Header Based on Proxy Server IP Address and Port, and Service-route Header Present in the REGISTER Response 12-155

Support for SIP Registration Proxy on CUBE 12-155

E-OAM : Multiple Port MAs Under Single MD 12-155

EIGRP IPv6 MIBs 12-155

Embedded Packet Capture (EPC) 12-155

Flexible NetFlow: Extracted Fields Support 12-155

IPSLA 4.0 - IP v6 phase2 12-155

ISIS client for BFD c-bit support 12-156

MVPNv6 12-156

OSPFv3 RFC 3101 Support 12-156

OSPFv3 MIB 12-156

Perf-mon V3 12-156

FRF.12 Support on MFR Interfaces 12-156

PfR Syslog and Trap enhancement 12-156

PPPoGEC: Per Session QoS 12-156

PWLAN ISG: Walking-by Sessions Scale Support 12-157

Y.1731/CFM Test TLV support 12-157

BGP - Add Path 12-157

BGP VPLS Auto Discovery Support on Route Reflector 12-157

BGP - mVPN SAFI-129 IPv6 12-157

BGP - mVPN BGP sAFI 129 IPv4 12-157

BGP - multicast VPN auto-discovery and customer-multicast routing 12-157

ISIS BFD TLV 12-158

Important Notes 12-158

End of Sale and End of Life of Cisco Traditional NetFlow 12-158

Deferrals 12-158

Field Notices and Bulletins 12-159

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.0S 12-159

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S 13-161

New and Changed Information 13-161

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S 13-162

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S 13-162

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S 13-162

xxiiiOL-26698-25

Page 24: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S 13-162

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S 13-162

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S 13-162

ACL syslog Correlation 13-163

Add Policy and Engineering Capabilities to PETR Usage 13-163

ALG: H.323 v6 Support 13-163

Audio and Video SPA Supports High-Definition (HD) Video 13-163

IPsec Feature License for Monitoring and Reporting 13-163

BFD - BFD Hardware Offload Support 13-163

BFD C Bit Support - RFC5882 13-163

BFD Support for EIGRP IPv6 13-164

BFD: BGP Multihop Client Support and C Bit (IPv4/IPv6) 13-164

BGP - iBGP NSR 13-164

BGP - mVPN BGP sAFI 129 - IPv4 13-164

BGP NSR - Autosense 13-164

BGP: Graceful Shutdown (GSHUT) 13-164

Carrier Grade Network Address Translation 13-164

CEM Support for SPA-2CHT3-CE-ATM 13-164

Cisco Unified Border Element (SP Edition): Common IP Address Media Bypass 13-165

Cisco Unified Border Element (SP Edition): Via Header Passthrough 13-165

Class Default Shaper on Physical Interface in Combination with Service Policy Applied to dMVPN Tunnel 13-165

CSL CallHome for the Cisco ASR 1001 Router 13-165

EIGRP IPv6 NSF/GR 13-165

EIGRP Route Tag Enhancements 13-165

Enhanced Route Tags 13-165

Ethernet Operations, Administration, and Maintenance (OAM) 13-165

GEC VPWS Support 13-166

Group Encrypted Transport VPN Key Server 13-166

IOS ACL Support for Filtering IP Options 13-166

IP SLAs TWAMP Responder v1.0 13-166

IP Tunnel - SSO c7600 13-166

IPv6 ACL Extensions for Hop by Hop Filtering 13-166

IPv6 VRF-Aware PBR Next-Hop Enhancement 13-166

ISG Downstream Enhancements—Passthrough and Idle-Timer 13-166

IS-IS IPv6 Administrative Tag 13-166

IS-IS IPv6 Advertise Passive Only 13-167

xxiv OL-26698-25

Page 25: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

L2VPN Interworking: Frame Relay to ATM (Bridged Mode) 13-167

LISP Virtualization Support for Multiple Parallel RLOC Domains 13-167

MediaTrace 2.0 13-167

MPLS TE - TE Display Debug Info for PCALC Error Show Command 13-167

MPLS Traffic Engineering - AutoTunnel Mesh Groups 13-167

MPLS Traffic Engineering - FRR Scalability Enhancements 13-167

MPLS Traffic Engineering (TE) - Class-Based Tunnel Selection 13-167

NBAR Classification Enhancements 13-168

OSPFv3 VRF-Lite/PE-CE 13-168

Per Tunnel QoS 13-168

Perf-mon V3 13-168

Performance Monitoring - IPv6 Support 13-168

Proxy Mobile IPv6 Local Mobility Anchor 13-168

Route Server Based Provisioning for PITR 13-168

Routed Pseudowire and Routed VPLS 13-168

SSO Support for MPLS-TE Autotunnel-Automesh Feature 13-169

Support Multiple xTRs with Dynamic RLOCs at a Site 13-169

USB eToken 64 KB Smartcard Support 13-169

Zone-Based Policy Firewall IPv6 Support 13-169

Important Notes 13-169

Deferrals 13-169

Field Notices and Bulletins 13-170

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S 13-170

Information about Caveats 14-173

Using the Cisco Bug Search Tool 14-173

Open and Resolved Bugs 14-174

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S 15-177

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.3S 15-177

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.3S 15-177

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S 15-178

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S 15-178

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S 15-180

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S 15-181

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1aS 15-181

xxvOL-26698-25

Page 26: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S 15-181

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S 15-182

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S 15-183

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S 15-183

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S 15-185

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S 16-187

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S 16-187

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S 16-187

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S 16-194

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4bS 16-198

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4bS 16-198

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS 16-199

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS 16-199

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS 16-207

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S 16-211

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S 16-211

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S 16-218

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S 16-222

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2bS 16-223

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S 16-223

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S 16-223

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS 16-225

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS 16-225

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS 16-225

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S 16-226

xxvi OL-26698-25

Page 27: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S 16-227

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 17-229

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S 17-229

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S 17-229

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S 17-234

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S 17-235

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S 17-236

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S 17-238

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S 17-238

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S 17-239

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S 17-241

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 17-242

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 17-242

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S 17-249

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S 18-251

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S 18-251

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S 18-251

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S 18-252

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S 18-255

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S 18-255

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S 18-256

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S 18-256

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S 18-256

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S 18-257

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S 18-258

xxviiOL-26698-25

Page 28: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S 18-258

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S 18-262

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S 19-267

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7aS 19-267

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7aS 19-267

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S 19-268

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S 19-268

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S 19-269

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6bS 19-270

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6bS 19-271

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S 19-271

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S 19-271

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S 19-272

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S 19-272

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5aS 19-273

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S 19-273

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S 19-274

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S 19-275

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S 19-275

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S 19-277

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S 19-277

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S 19-277

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S 19-278

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S 19-279

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S 19-279

xxviii OL-26698-25

Page 29: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S 19-281

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S 19-282

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S 19-282

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S 19-284

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S 19-284

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S 19-284

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S 19-324

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S 20-333

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.4S 20-333

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.4S 20-333

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.3S 20-333

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.3S 20-334

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S 20-335

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S 20-335

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S 20-337

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S 20-337

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S 20-338

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S 20-347

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS 20-351

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS 20-351

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S 20-353

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S 20-353

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S 20-361

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S 21-365

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S 21-366

xxixOL-26698-25

Page 30: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S 21-366

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S 21-367

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S 21-367

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S 21-367

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S 21-391

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S 21-416

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S 21-416

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S 21-417

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S 21-417

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S 21-444

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S 21-478

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S 21-478

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S 21-541

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S 22-547

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.9S 22-547

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.9S 22-547

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.8S 22-548

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.8S 22-548

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.8S 22-548

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.7S 22-548

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.7S 22-549

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.7S 22-550

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.6S 22-551

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.6S 22-551

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.6S 22-554

xxx OL-26698-25

Page 31: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.5S 22-555

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.5S 22-556

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.5S 22-557

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.4S 22-558

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.4S 22-558

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.4S 22-578

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.3S 22-582

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.3S 22-582

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.3S 22-612

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.2S 22-617

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.2S 22-618

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.2S 22-648

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.1S 22-649

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.1S 22-650

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.1S 22-689

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S 22-696

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S 22-696

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S 22-731

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S 23-743

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S 23-743

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S 23-743

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S 23-748

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S 23-766

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S 23-766

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S 23-776

xxxiOL-26698-25

Page 32: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S 23-797

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S 23-797

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S 23-803

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 24-867

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.2S 24-867

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.2S 24-867

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.2S 24-873

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.1S 24-891

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.1S 24-891

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.1S 24-895

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 24-914

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 24-914

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S 24-915

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 25-1021

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.7S 25-1021

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.7S 25-1021

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.6S 25-1022

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.6S 25-1022

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.5S 25-1029

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.5S 25-1030

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.5S 25-1042

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.4aS 25-1065

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.4aS 25-1066

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.4S 25-1066

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.4S 25-1066

xxxii OL-26698-25

Page 33: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.4S 25-1069

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.3S 25-1102

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.3S 25-1102

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.3S 25-1104

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.2T 25-1120

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.2T 25-1120

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.2S 25-1121

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.2S 25-1121

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.2S 25-1124

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.1S 25-1134

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.1S 25-1134

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.1S 25-1144

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 25-1175

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 25-1175

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S 25-1186

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S 26-1188

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S 26-1188

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S 26-1189

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S 26-1190

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S 26-1195

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S 26-1203

MIBs Used in Cisco ASR 1000 Series Aggregation Services Routers 27-1208

MIBs for Cisco ASR 1000 Series Aggregation Services Routers 27-1208

Related Documentation for Cisco ASR 1000 Series Aggregation Services Routers 1-1214

Cisco ASR 1000 Series Aggregation Services Routers Documents 1-1214

xxxiiiOL-26698-25

Page 34: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Contents

Error Message Documentation for Cisco ASR 1000 Series Aggregation Services Routers 1-1215

Obtaining Documentation and Submitting a Service Request 1-1215

xxxiv OL-26698-25

Page 35: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Release Notes

For release notes information about the Cisco ASR 1000 Series Aggregation Services Routers releases prior to Release 3.6.0S, see Cisco IOS XE 3S Release Notes.

Note Cisco ASR 1001 Routers support the Cisco IOS XE Release 3.10aS image.

About Cisco ASR 1000 Series Aggregation Services Routers

Cisco ASR 1000 Series Aggregation Services Routers are Cisco routers deployed as managed service provide routers, enterprise edge routers, and service provider edge routers. These routers use an innovative and powerful hardware processor technology known as the Cisco QuantumFlow Processor.

Cisco ASR 1000 Series Aggregation Services Routers run the Cisco IOS XE software and introduce a distributed software architecture that moves many operating system responsibilities out of the IOS process. In this architecture, Cisco IOS, which was previously responsible for almost all of the internal software processes, now runs as one of many Cisco IOS XE processes while allowing other Cisco IOS XE processes to share responsibility for running the router.

Cisco ASR 1000 Series Aggregation Services Routers Release 3.8.0S have several new software features. For details on the new Cisco ASR 1002-X Router, Cisco ASR 1000 Series Aggregation Services Routers 100-Gbps Embedded Services Processor, and the new features, see the New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S, page 136.

New hardware support and several new software features were introduced as part of the Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.1. For details on the new Cisco ASR 1002-X Router, Cisco ASR 1000 Series Aggregation Services Routers 100-Gbps Embedded Services Processor, and the new features, see the New and Changed Information, page 149.

Cisco Systems, Inc.www.cisco.com

Page 36: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

The Cisco ASR 1000 Series Aggregation Services Routers consists of the following routers:

• The Cisco ASR 1001 Router is a small form factor router targeted at high-end branch offices needing integrated services, including voice and security with high-speed connectivity (2.5 Gbps w/optional SW license for 5 Gbps). It is designed with integrated Cisco ASR1000-RP, Cisco ASR1000-SIP, and Cisco ASR1000-ESP, with Nitrox complex providing hardware based encryption and decryption. Input/output options include half-height SPA, 4x1GE built-in ports, and factory-installed integrated daughtercard (IDC) with different options.

• The Cisco ASR 1002 Router is a 3-SPA, 2-rack-unit (RU) chassis with integrated Route Processor (RP), Cisco ASR 1000 Series Aggregation Services Routers Shared Port Adapter Interface Processor (SIP), and four Gigabit Ethernet ports built in.

• The Cisco ASR 1002-F Router supports the same features and components as the Cisco ASR 1002 Router and supports 2.5 Gbps bandwidth limit with a single half height SPA. In addition, the Cisco ASR 1002-F Router has an integrated 4x1GE built-in ports and 2.5 GB of fixed system bandwidth.

• The Cisco ASR 1002-X Router is a 3-SPA, 2-RU chassis. The embedded services processor and route processor are integrated into the chassis. There are 6 small form factor pluggable (SFP) Gigabit Ethernet ports. The router provides a forwarding bandwidth of up to 36 Gbps.

• The Cisco ASR 1004 Router is an 8-SPA, 4-RU chassis with one ESP slot, one RP slot, and two SIP slots.

• The Cisco ASR 1006 Router is a 12-SPA, 6-RU, hardware-redundant chassis with two ESP slots, two RP slots, and three SIP slots. The platform offers RP and ESP hardware redundancy, Cisco Nonstop Forwarding (NSF), In-Service Software Upgrade (ISSU), and future RP hardware upgrades.

• The Cisco ASR 1013 Router is a 24-SPA, 13-RU, hardware-redundant chassis with two ESP slots, two RP slots, and six SIP slots. The platform offers full RP hardware redundancy, Cisco Nonstop Forwarding (NSF), In-Service Software Upgrade (ISSU), and future RP hardware upgrades and services upgrades.

For the single-RP Cisco ASR 1000 Router platforms, Cisco ASR 1001, Cisco ASR 1002, Cisco ASR 1002-F, Cisco ASR 1002-X and Cisco ASR 1004, the RP has a dual Cisco IOS software option that allows these routers to use Cisco IOS software redundancy, Cisco high-availability features, and Nonstop Forwarding (NSF). Single-route-processor Cisco ASR 1000 platforms do not support ISSU upgrade or downgrade. Instead sub-package software upgrade is supported only if the router is running in sub-package mode.

The Cisco ASR 1006 Router supports fully redundant RPs that allow for full RP hardware redundancy, NSF, ISSU, and future RP service upgrades.

The Cisco ASR 1013 Router extends the Cisco ASR 1000 Series Routers to a chassis that can hold six SIPs and provides superslots (more height and power) for the route processors and embedded services processors.

Note Software redundancy is not supported on the Cisco ASR 1006 Router and the Cisco ASR 1013 Router.

Cisco IOS XE 3S Releases and Cisco IOS Release Number Mapping

The Cisco ASR 1000 Series Aggregation Services Routers releases correspond to the Cisco IOS XE releases. For example, Cisco IOS XE Release 3.7.0 is the software release for Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.0.

2Cisco ASR 1000 Series Aggregation Services Routers Release Notes

OL-26698-25

Page 37: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Table 1 lists the mappings between the Cisco IOS XE 3S releases and their associated Cisco IOS releases.

Table 1 Cisco IOS XE 3S–to–Cisco IOS Release Number Mapping

Cisco IOS XE 3S Release Cisco IOS Release

3.1.0S 15.0(1)S

3.1.1S 15.0(1)S1

3.1.2S 15.0(1)S2

3.1.3S 15.0(1)S3

3.1.4S 15.0(1)S4

3.1.4aS 15.0(1)S4a

3.2.0S 15.1(1)S

3.2.1S 15.1(1)S1

3.2.2S 15.1(1)S2

3.3.0S 15.1(2)S

3.3.1S 15.1(2)S1

3.3.2S 15.1(2)S2

3.4.0S 15.1(3)S

3.4.0aS 15.1(3)S0a

3.4.1S 15.1(3)S1

3.4.2S 15.1(3)S2

3.4.3S 15.1(3)S3

3.4.4S 15.1(3)S4

3.5.0S 15.2(1)S

3.5.1S 15.2(1)S1

3.5.2S 15.2(1)S2

3.6.0S 15.2(2)S

3.6.1S 15.2(2)S1

3.6.2S 15.2(2)S2

3.7.0S 15.2(4)S

3.7.1S 15.2(4)S1

3.7.2S 15.2(4)S2

3.7.3S 15.2(4)S3

3.7.4S 15.2(4)S4

3.7.5S 15.2(4)S5

3.7.6S 15.2(4)S6

3.8.0S 15.3(1)S

3.8.1S 15.3(1)S1

3.8.2S 15.3(1)S2

3Cisco ASR 1000 Series Aggregation Services Routers Release Notes

OL-26698-25

Page 38: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

3.9.0S 15.3(2)S

3.9.1S 15.3(2)S1

3.9.2S 15.3(2)S2

3.10.0S 15.3(3)S

3.10.1S 15.3(3)S1

3.10.2S 15.3(3)S2

3.10.3S 15.3(3)S3

3.10.4S 15.3(3)S4

3.10.5S 15.3(3)S5

3.10.6S 15.3(3)S6

3.10.7S 15.3(3)S7

3.10.8S 15.3(3)S8

3.10.9S 15.3(3)S9

3.11.0S 15.4(1)S

3.11.1S 15.4(1)S1

3.11.2S 15.4(1)S2

3.11.3S 15.4(1)S3

3.12.0S 15.4(2)S

3.12.1S 15.4(2)S1

3.12.2S 15.4(2)S2

3.13.0S 15.4(3)S

3.13.1S 15.4(3)S1

3.13.2S 15.4(3)S2

3.13.3S 15.4(3)S3

3.13.4S 15.4(3)S4

3.13.5S 15.4(3)S5

3.13.6S 15.4(3)S6

3.13.7S 15.4(3)S7

3.14.0S 15.5(1)S

3.14.1S 15.5(1)S1

3.14.2S 15.5(1)S2

3.14.3S 15.5(1)S3

3.15.0S 15.5(2)S

3.15.1S 15.5(2)S1

3.15.2S 15.5(2)S2

3.15.3S 15.5(2)S3

Table 1 Cisco IOS XE 3S–to–Cisco IOS Release Number Mapping (continued)

Cisco IOS XE 3S Release Cisco IOS Release

4Cisco ASR 1000 Series Aggregation Services Routers Release Notes

OL-26698-25

Page 39: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Transition from Cisco IOS XE Release 2.6 to Cisco IOS XE Release 3.1S

In July 2010, the Cisco IOS XE software moved from Cisco IOS XE Release 2.6 to Cisco IOS XE Release 3.1S to introduce new hardware (Cisco ASR1000-ESP40, Cisco ASR1000-SIP40, and Cisco ASR 1013 Router) and an enhanced Cisco IOS Release 15.0(1)S software that runs on improved componentized code for Cisco IOS features.

One of the key features of the Cisco IOS XE 3.1S software was support for dual Cisco IOS software consolidated packages in a single RP for software redundancy in the 2-RU and 4-RU chassis systems (The dual IOS support was extended to ASR1001). The dual Cisco IOS consolidated packages can consist of the same software consolidated packages for backup or different software consolidated packages for resilient upgrade.

The Cisco IOS XE release numbering scheme was modified by adding the suffix S to the release number to denote the release branch that differentiate the different products using the Cisco IOS XE release.

The underlying Cisco IOS software numbering scheme for the Cisco ASR 1000 Series Routers changed from 12.2(33)XNx to 15.0(1)S. This change was aimed at simpler numbering for new feature releases (the number in parenthesis) and rebuilds.

Cisco IOS Release 15S aggregates feature inheritance from Cisco IOS Release 12.2SR.The 15.x(x)Sx releases will continue to be time-based and time-synchronized with the Cisco IOS XE releases.

The Cisco IOS XE 3S releases inherit all the Cisco IOS XE Release 2 features that were released prior to the introduction of Cisco IOS XE Release 3.1.0S, with a few exceptions. For information about inherited features, see Release Notes for Cisco ASR 1000 Series Aggregation Services Routers for Cisco IOS XE Release 2.

3.16S 15.5(3)S

3.16.1S 15.5(3)S1

3.16.2S 15.5(3)S2

3.16.3S 15.5(3)S3

3.16.4aS 15.5(3)S4a

3.16.4bS 15.5(3)S4b

3.16.5S 15.5(3)S5

3.17S 15.6(1)S

3.17.1S 15.6(1)S1

3.17.2S 15.6(1)S2

3.17.3S 15.6(1)S3

Table 1 Cisco IOS XE 3S–to–Cisco IOS Release Number Mapping (continued)

Cisco IOS XE 3S Release Cisco IOS Release

5Cisco ASR 1000 Series Aggregation Services Routers Release Notes

OL-26698-25

Page 40: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

6Cisco ASR 1000 Series Aggregation Services Routers Release Notes

OL-26698-25

Page 41: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

The following sections describe the system requirements for Cisco ASR 1000 Series Aggregation Services Routers:

• Software Packaging, page 7

• Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU, page 10

• Hardware Supported, page 16

• ROMmon Release Requirements, page 16

• Determining the Release Number of the Installed Software, page 21

• Upgrading to a New Software Release, page 28

Software PackagingCisco ASR 1000 Series Aggregation Services Routers run Cisco IOS XE 3S and use a software packaging model that consists of the following components:

• Consolidated packages

• Individual software subpackages within a consolidated package

• Optional software subpackages outside the consolidated packages

Each consolidated package contains a collection of individual software subpackages. Each individual software subpackage is an individual software file that controls a different element or elements of the router. Some individual subpackages may be installed per element, for example, per SPA.

Note The subpackage functionality is intended for both upgrade and field support. However, not all combinations of subpackages are supported.

Each individual software subpackage can be upgraded individually, or all individual software subpackages for a specific Cisco IOS XE 3S consolidated package can be upgraded as part of a complete Cisco IOS XE 3S consolidated package upgrade.

Cisco Systems, Inc.www.cisco.com

Page 42: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Software Packaging

Importantly, IOS (the RPIOS individual software subpackage) is considered one of the individual software subpackages that makes up the complete Cisco IOS XE 3S consolidated package.

The following are the individual software subpackages within a consolidated package:

• Route Processor

– RPBase: Provides the RP operating system.

– RPControl: Provides the control plane processes that interface between Cisco IOS software and the rest of the platform.

– RPIOS: Provides the Cisco IOS software kernel, which is where Cisco IOS software features are stored and run. Each consolidated image variant has a different RPIOS subpackage: RPIOS-ipbase, RPIOS-ipbasek9, RPIOS-advipservices, RPIOS-advipservicesk9, RPIOS-adventservices, and RPIOS-adventservicesk9.

Note The RPIOS-advipservices and RPIOS-adventservices subpackages are available from Cisco IOS XE Release 2.2.1 onward. These two subpackages are not available with Cisco IOS XE Release 2.1.2 and earlier releases.

– RPAccess: Provides components to manage enhanced router access functionality.

• ESP

– ESPBase: Provides the ESP operating system and control processes, and the Cisco QuantumFlow Processor client, driver, and ucode.

• SIP

– SIPBase: Provides the SIP operating system and control processes

– SIPSPA: Provides the SPA drivers and the associated field-programmable device (FPD) images (SPA FPGA images)

A Cisco IOS XE 3S consolidated package allows users to upgrade all the individual software subpackages on a router with a single Cisco IOS XE 3S image download. The Cisco IOS XE 3S consolidated packages that are available vary based on the RP (RP1 or RP2) installed in the system and the Cisco IOS XE 3S release.

The following are the RP1 consolidated packages:

• Cisco ASR 1000 Series Aggregation Services Routers RP1 IP BASE W/O CRYPTO

• Cisco ASR 1000 Series Aggregation Services Routers RP1 IP BASE

• Cisco ASR 1000 Series Aggregation Services Routers RP1 ADVANCED IP SERVICES

• Cisco ASR 1000 Series Aggregation Services Routers RP1 ADVANCED IP SERVICES W/O CRYPTO

• Cisco ASR 1000 Series Aggregation Services Routers RP1 ADVANCED ENTERPRISE SERVICES

• Cisco ASR 1000 Series Aggregation Services Routers RP1 ADVANCED ENTERPRISE SERVICES W/O CRYPTO

The following are the RP2 consolidated packages:

• Cisco ASR 1000 Series Aggregation Services Routers RP2 IP BASE W/O CRYPTO

• Cisco ASR 1000 Series Aggregation Services Routers RP2 IP BASE

• Cisco ASR 1000 Series Aggregation Services Routers RP2 ADVANCED IP SERVICES

8System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 43: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Software Packaging

• Cisco ASR 1000 Series Aggregation Services Routers RP2 ADVANCED IP SERVICES W/O CRYPTO

• Cisco ASR 1000 Series Aggregation Services Routers RP2 ADVANCED ENTERPRISE SERVICES

• Cisco ASR 1000 Series Aggregation Services Routers RP2 ADVANCED ENTERPRISE SERVICES W/O CRYPTO

The individual software subpackages within the consolidated packages cannot be downloaded from cisco.com; only the Cisco IOS XE S consolidated packages and optional subpackages can be downloaded. Users who want to run the router using individual software subpackages must first download the consolidated package from cisco.com and extract the individual software subpackages from the consolidated package.

In addition to the individual software subpackages within a consolidated package, optional software subpackages that are not part of a consolidated package are available. Optional software subpackages can be downloaded separately from cisco.com; their installation is similar to the installation of an individual software subpackage using a provisioning file. The optional subpackage must be located in the same directory with the provisioning file and the other individual subpackage files. The optional software subpackages that are available vary based on the RP installed in the system: RP1 or RP2:

• For RP1, the optional software subpackage available is the Cisco ASR 1000 Series Aggregation Services Routers RP1 WebEx Node (asr1000rp1-sipspawmak9.version.pkg)

• For RP2, the optional software subpackage available is the Cisco ASR 1000 Series Aggregation Services Routers RP2 WebEx Node (asr1000rp2-sipspawmak9.version.pkg)

Note The Cisco ASR 1000 Series Aggregation Services Routers RP1 WebEx Node and Cisco ASR 1000 Series Aggregation Services Routers RP2 WebEx Node optional software subpackages are available only from Cisco IOS XE Release 2.4.0 onward and are supported only in conjunction with a related RP-based Cisco ASR 1000 Series Aggregation Services Routers RPx IP BASE, Cisco ASR 1000 Series Aggregation Services Routers RPx ADVANCED IP SERVICES, or Cisco ASR 1000 Series Aggregation Services Routers RPx ADVANCED ENTERPRISE SERVICES consolidated package. These optional software subpackages are not supported with earlier Cisco IOS XE releases or with any of the non-CRYPTO consolidated packages.

Note ISSU operation on the Cisco ASR 1002 Router, Cisco ASR 1002-X Router and Cisco ASR 1004 Router requires the router to be operating in subpackage mode.

Note USB (or any other removable media) cannot be used to boot the system in the subpackage mode.

For more information about the advantages and disadvantages of running individual subpackages or a complete Cisco IOS XE 3S consolidated package, and the process of extracting the individual subpackages, see Cisco ASR 1000 Series Aggregation Services Router Software Configuration Guide at the following location:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/asrswcfg.html

9System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 44: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Cisco IOS XE Release 3.1S is an ISSU break release. ISSU upgrade and subpackage software upgrade from Cisco IOS XE Release 2.x to Cisco IOS XE Release 3.xS, including Release 3.1S, is not supported. ISSU downgrade from Cisco IOS XE Release 3.xS, including Release 3.1S to Release 2.x, is not supported either.

Support for ISSU upgrade and subpackage software upgrade has been resumed from Cisco IOS XE Release 3.1S onward. Therefore, rebuilds and releases after Cisco IOS XE Release 3.1S will support ISSU and software upgrade and downgrade, based on the ISSU compatibility matrix tables. For example, ISSU upgrade and downgrade between Cisco IOS XE Release 3.1.0S (15.0(1)S) to Cisco IOS XE Release 3.xS are supported.

This document describes the Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU ASR 1000 ISSU Compatibility Matrix.

For information about Cisco IOS XE 2.x releases that support ISSU and software upgrade and downgrade, based on the ISSU compatibility matrix tables in Cisco IOS XE Release 2, see the “Cisco IOS XE Release Compatibility Tables” section in Release Notes for Cisco ASR 1000 Series Aggregation Services Routers for Cisco IOS XE Release 2.

Note Cisco IOS XE software compatibility is supported only between images that are of the same type, for example, advipservicesk9 to advipservicesk9, adventerprisek9 to adventerprisek9, and so on. Cross-image-type upgrades or installations are not supported in the ISSU process. For example, you cannot upgrade ipbase to advipservicesk9 or advipservices to advipservicesk9.

RP Memory Recommendations

The Cisco IOS XE 3S images and packages that are available vary based on the RP (either RP1 or RP2) installed in the system:

• Table 1 describes the RP1 consolidated package images, their individual software subpackage contents, and their memory recommendations.

• Table 2 describes the RP1 optional subpackage images and their memory recommendations.

• Table 3 describes the RP2 consolidated package images, their individual software subpackage contents, and their memory recommendations.

• Table 4 describes the RP2 optional subpackage images and their memory recommendations.

Each Cisco IOS XE 3S image also contains two provisioning files: asr1000rpx-packages.image.version.conf and packages.conf. A provisioning file is used for booting only in scenarios where individual modules are extracted from the Cisco IOS XE 3.1S image and then used to run the router. Any one of the provisioning files can be used.

10System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 45: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Table 1 RP1 Memory Recommendations for the Cisco ASR 1000 Series Aggregation Services Routers Consolidated Package Images

Platforms Image Name Software Image Individual Subpackage Contents DRAMMemory

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series RP1 IP BASE W/O CRYPTO

asr1000rp1-ipbase.version.bin asr1000rp1-rpbase.version.pkg 4 GB (for Cisco ASR 1002 Router)

2–4 GB (for Cisco ASR 1004 and Cisco ASR 1006 routers)

asr1000rp1-rpcontrol.version.pkg

asr1000rp1-rpaccess.version.pkg

asr1000rp1-rpios-ipbase.version.pkg

asr1000rp1-espbase.version.pkg

asr1000rp1-sipbase.version.pkg

asr1000rp1-sipspa.version.pkg

asr1000rp1-packages-ipbase.version.conf

packages.conf

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series RP1 IP BASE

asr1000rp1-ipbasek9.version.bin asr1000rp1-rpbase.version.pkg 4 GB (for Cisco ASR 1002 Router) 2–4 GB (for Cisco ASR 1004 and Cisco ASR 1006 routers)

asr1000rp1-rpcontrol.version.pkg

asr1000rp1-rpaccess.version.pkg

asr1000rp1-rpios-ipbasek9.version.pkg

asr1000rp1-espbase.version.pkg

asr1000rp1-sipbase.version.pkg

asr1000rp1-sipspa.version.pkg

asr1000rp1-packages-ipbasek9.version.conf

packages.conf

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series RP1 ADVANCED IP SERVICES W/O CRYPTO

asr1000rp1-advipservices.version. bin

asr1000rp1-rpbase.version.pkg 4 GB (for Cisco ASR 1002 Router)

2–4 GB (for Cisco ASR 1004 and Cisco ASR 1006 routers)

asr1000rp1-rpcontrol.version.pkg

asr1000rp1-rpaccess.version.pkg

asr1000rp1-rpios-advipservices.version.pkg

asr1000rp1-espbase.version.pkg

asr1000rp1-sipbase.version.pkg

asr1000rp1-sipspa.version.pkg

asr1000rp1-packages-advipservices.version.conf

packages.conf

11System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 46: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series RP1 ADVANCED IP SERVICES

asr1000rp1-advipservicesk9.version.bin

asr1000rp1-rpbase.version.pkg 4 GB (for Cisco ASR 1002 Router)

2–4 GB (for Cisco ASR 1004 and Cisco ASR 1006 routers)

asr1000rp1-rpcontrol.version.pkg

asr1000rp1-rpaccess.version.pkg

asr1000rp1-rpios-ipbasek9.version.pkg

asr1000rp1-espbase.version.pkg

asr1000rp1-sipbase.version.pkg

asr1000rp1-sipspa.version.pkg

asr1000rp1-packages-advipservicesk9.version.conf

packages.conf

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series RP1 ADVANCED ENTERPRISE SERVICES W/O CRYPTO

asr1000rp1-adventservices.version.bin

asr1000rp1-rpbase.version.pkg 4 GB (for Cisco ASR 1002 Router)

2–4 GB (for Cisco ASR 1004 and Cisco ASR 1006 routers)

asr1000rp1-rpcontrol.version.pkg

asr1000rp1-rpaccess.version.pkg

asr1000rp1-rpios-adventservices.version.pkg

asr1000rp1-espbase.version.pkg

asr1000rp1-sipbase.version.pkg

asr1000rp1-sipspa.version.pkg

asr1000rp1-packages-adventservices.version.conf

packages.conf

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series RP1 ADVANCED ENTERPRISE SERVICES

asr1000rp1-adventservicesk9.version.bin

asr1000rp1-rpbase.version.pkg 4 GB (for Cisco ASR 1002 Router)

2–4 GB (for Cisco ASR 1004 and Cisco ASR 1006 routers)

asr1000rp1-rpcontrol.version.pkg

asr1000rp1-rpaccess.version.pkg

asr1000rp1-rpios-adventservicesk9.version.pkg

asr1000rp1-espbase.version.pkg

asr1000rp1-sipbase.version.pkg

asr1000rp1-sipspa.version.pkg

asr1000rp1-packages-adventservicesk9.version.conf

packages.conf

Table 1 RP1 Memory Recommendations for the Cisco ASR 1000 Series Aggregation Services Routers Consolidated Package Images (continued)

Platforms Image Name Software Image Individual Subpackage Contents DRAMMemory

12System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 47: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Note RP2 images are available from Cisco IOS XE Release 2.3.0.

Table 2 RP1 Memory Recommendations for the Cisco ASR 1000 Series Routers Optional Subpackage Image

Platforms Image Name Software ImageFlash Memory

Cisco ASR 1002 Router

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1000 Series Aggregation Services Routers RP1 WebEx Node1

1. The Cisco ASR 1000 Series Aggregation Services Routers RP1 WebEx Node (asr1000rp1-sipspawmak9.version.pkg) optional software subpackage is available only from Cisco IOS XE Release 2.4.0 and is supported only in conjunction with the Cisco ASR 1000 Series Aggregation Services Routers RP1 IP BASE, Cisco ASR 1000 Series Aggregation Services Routers RP1 ADVANCED IP SERVICES, or Cisco ASR 1000 Series Aggregation Services Routers RP1 ADVANCED ENTERPRISE SERVICES consolidated package. This subpackage is not supported in Cisco IOS XE releases prior to Release 2.4.0 or with any of the non-CRYPTO consolidated packages.

asr1000rp1-sipspawmak9.version.XND.pkg 100 MB

Table 3 RP2 Memory Recommendations for the Cisco ASR 1000 Series Aggregation Services Routers Consolidated Package Images

Platforms Image Name Software Image Individual Subpackage Contents DRAMMemory

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series RP2 IP BASE W/O CRYPTO

asr1000rp2-ipbase.version.bin asr1000rp2-rpbase.version.pkg 8–16 GB (for Cisco ASR 1004 Router, Cisco ASR 1006 Router, and Cisco ASR 1013 Router)

asr1000rp2-rpcontrol.version.pkg

asr1000rp2-rpaccess.version.pkg

asr1000rp2-rpios-ipbase.version.pkg

asr1000rp2-espbase.version.pkg

asr1000rp2-sipbase.version.pkg

asr1000rp2-sipspa.version.pkg

asr1000rp2-packages-ipbase.version.conf

packages.conf

13System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 48: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series RP2 IP BASE

asr1000rp2-ipbasek9.version.bin asr1000rp2-rpbase.version.pkg 8–16 GB (for Cisco ASR 1004 Router, Cisco ASR 1006 Router, and Cisco ASR 1013 Router)

asr1000rp2-rpcontrol.version.pkg

asr1000rp2-rpaccess.version.pkg

asr1000rp2-rpios-ipbasek9.version. pkg

asr1000rp2-espbase.version.pkg

asr1000rp2-sipbase.version.pkg

asr1000rp2-sipspa.version.pkg

asr1000rp2-packages-ipbasek9.version.conf

packages.conf

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series RP2 ADVANCED IP SERVICES W/O CRYPTO

asr1000rp2-advipservices.version.bin

asr1000rp2-rpbase.version.pkg 8–16 GB (for Cisco ASR 1004 Router, Cisco ASR 1006 Router, and Cisco ASR 1013 Router)

asr1000rp2-rpcontrol.version.pkg

asr1000rp2-rpaccess.version.pkg

asr1000rp2-rpios-advipservices.version.pkg

asr1000rp2-espbase.version.pkg

asr1000rp2-sipbase.version.pkg

asr1000rp2-sipspa.version.pkg

asr1000rp2-packages-advipservices.version.conf

packages.conf

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series RP2 ADVANCED IP SERVICES

asr1000rp2-advipservicesk9.version.bin

asr1000rp2-rpbase.version.pkg 8–16 GB (for Cisco ASR 1004 Router, Cisco ASR 1006 Router, and Cisco ASR 1013 Router)

asr1000rp2-rpcontrol.version.pkg

asr1000rp2-rpaccess.version.pkg

asr1000rp2-rpios-advipservicesk9.version.pkg

asr1000rp2-espbase.version.pkg

asr1000rp2-sipbase.version.pkg

asr1000rp2-sipspa.version.pkg

asr1000rp2-packages-advipservicesk9.version.conf

packages.conf

Table 3 RP2 Memory Recommendations for the Cisco ASR 1000 Series Aggregation Services Routers Consolidated Package Images (continued)

Platforms Image Name Software Image Individual Subpackage Contents DRAMMemory

14System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 49: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Cisco ASR 1000 Series Aggregation Services Routers Software Package Compatibility for ISSU

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series RP2 ADVANCED ENTERPRISE SERVICES W/O CRYPTO

asr1000rp2-adventservices.version.bin

asr1000rp2-rpbase.version.pkg 8–16 GB (for Cisco ASR 1004 Router, Cisco ASR 1006 Router, and Cisco ASR 1013 Router)

asr1000rp2-rpcontrol.version.pkg

asr1000rp2-rpaccess.version.pkg

asr1000rp2-rpios-adventservices.version.pkg

asr1000rp2-espbase.version.pkg

asr1000rp2-sipbase.version.pkg

asr1000rp2-sipspa.version.pkg

asr1000rp2-packages-adventservices.version.conf

packages.conf

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series RP2 ADVANCED ENTERPRISE SERVICES

asr1000rp2-adventservicesk9.version.bin

asr1000rp2-rpbase.version.pkg 8–16 GB (for Cisco ASR 1004 Router, Cisco ASR 1006 Router, and Cisco ASR 1013 Router)

asr1000rp2-rpcontrol.version.pkg

asr1000rp2-rpaccess.version.pkg

asr1000rp2-rpios-adventservicesk9.version.pkg

asr1000rp2-espbase.version.pkg

asr1000rp2-sipbase.version.pkg

asr1000rp2-sipspa.version.pkg

asr1000rp2-packages-adventservicesk9.version.conf

packages.conf

Table 4 RP2 Memory Recommendations for the Cisco ASR 1000 Series Routers Optional Subpackage Image

Platforms Image Name Software ImageFlash Memory

Cisco ASR 1004 Router

Cisco ASR 1006 Router

Cisco ASR 1013 Router

Cisco ASR 1000 Series Aggregation Services Routers RP2 WebEx Node1

1. The Cisco ASR 1000 Series Aggregation Services Routers RP2 WebEx Node (asr1000rp1-sipspawmak9.version.pkg) optional software subpackage is available only from Cisco IOS XE Release 2.4.0 and is supported only in conjunction with the Cisco ASR 1000 Series Aggregation Services Routers RP2 IP BASE, Cisco ASR 1000 Series Aggregation Services Routers RP2 ADVANCED IP SERVICES, or Cisco ASR 1000 Series Aggregation Services Routers RP2 ADVANCED ENTERPRISE SERVICES consolidated package. This subpackage is not supported in Cisco IOS XE releases prior to Release 2.4.0 or in any of the non-CRYPTO consolidated packages.

asr1000rp2-sipspawmak9.version.XND.pkg 100 MB

Table 3 RP2 Memory Recommendations for the Cisco ASR 1000 Series Aggregation Services Routers Consolidated Package Images (continued)

Platforms Image Name Software Image Individual Subpackage Contents DRAMMemory

15System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 50: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Hardware Supported

Hardware SupportedCisco IOS XE 3S releases support the following Cisco ASR 1000 Series Routers:

• Cisco ASR 1001 Router

• Cisco ASR 1001-X Router

• Cisco ASR 1002 Router

• Cisco ASR 1002-F Router

• Cisco ASR 1002-X Router

• Cisco ASR 1004 Router

• Cisco ASR 1006 Router

• Cisco ASR 1009-X Router

• Cisco ASR 1013 Router

ROMmon Release RequirementsTable 5 provides information about the field-replaceable units (FRUs) of the Cisco ASR 1000 Series Aggregation Services Routers supported by each ROMmon release.

Table 5 Available ROMmon Release

FRU ROMmon Release

— XNXN1

XN2

XNB

XNC

XNC0

XND

XND1

15.0(1r)S

15.2(1r)S

15.2(4r)S

15.2(4r)S1

15.3(1r)S

15.3(3r)S

15.3(3r)S1

15.4(2r)S

15.5(3r)S1

16.2(1r)

16.3(2r)

ASR1000 RP1

Yes Yes Yes Yes Yes — Yes Yes Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1002 RP1

— — Yes Yes Yes — Yes Yes Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1000 RP2

— — — — — Yes Yes — Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1001 — — — — — — — — Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1001-X — — — — — — — — — — — — — — — Yes Yes Yes Yes

ASR1002-X — — — — — — — — — — — Yes Yes Yes — Yes Yes Yes Yes

ASR1000- ESP5

Yes Yes Yes Yes Yes — Yes Yes Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1000- ESP10

Yes Yes Yes Yes Yes — Yes Yes Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1000- ESP20

Yes Yes Yes Yes Yes — Yes Yes Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1000- ESP40

— — — — — — — — Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1000- ESP100

— — — — — — — — — — Yes Yes Yes Yes — Yes Yes Yes Yes

16System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 51: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

ROMmon Release Requirements

Table 6 lists the minimum ROMmon release supported for RP and ESP FRUs, for each Cisco IOS XE release. Table 7 lists the minimum ROMmon release supported for other FRUs, for each Cisco IOS XE release.

ASR1000- ESP200

— — — — — — — — — — — — Yes Yes — Yes Yes Yes Yes

ASR1000- SIP10

Yes Yes Yes Yes Yes — Yes Yes — — — — Yes Yes — Yes Yes Yes Yes

ASR1000- SIP40

— — — — — — — — Yes Yes Yes Yes Yes Yes — Yes Yes Yes Yes

ASR1000- 2T+ 20x1GE

— — — — — — — — — — — — — Yes Yes Yes Yes Yes Yes

ASR1000- 6TGE

— — — — — — — — — — — — — — — Yes Yes Yes Yes

ASR1000- MIP100

— — — — — — — — — — — — — — — — Yes Yes Yes

Table 5 Available ROMmon Release (continued)

FRU ROMmon Release

— XNXN1

XN2

XNB

XNC

XNC0

XND

XND1

15.0(1r)S

15.2(1r)S

15.2(4r)S

15.2(4r)S1

15.3(1r)S

15.3(3r)S

15.3(3r)S1

15.4(2r)S

15.5(3r)S1

16.2(1r)

16.3(2r)

Table 6 Minimum ROMmon Release Supported for RP and ESP FRUs

Cisco IOS XE Release FRU

—ASR 1000 RP1

ASR 1002 RP1

ASR 1000 RP2

ASR 1000-ESP5

ASR 1000-ESP10

ASR1000-ESP20

ASR1000-ESP40

ASR1000-ESP100

ASR1000-ESP200

2.0.x XNC — — — XNC — — — —

2.1.x XNC XNC — XNC XNC — — — —

2.2.0 XNC XNC — XNC XNC — — — —

2.2.1 XNC XNC — XNC XNC XNC — — —

2.2.2 XNC XNC — XNC XNC XNC — — —

2.3.0 XNC XNC XNC0 XNC XNC XNC — — —

2.3.1 XNC XNC XNC0 XNC XNC XNC — — —

2.3.2 XNC XNC XNC0 XNC XNC XNC — — —

2.4.x XND1 XND1 XND XNC XNC XNC — — —

2.5.x XND1 XND1 XND XNC XNC XNC — — —

2.6.x XND1 XND1 XND XNC XNC XNC — — —

3.1.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S — —

3.2.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S — —

3.3.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S — —

17System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 52: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

ROMmon Release Requirements

3.4.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S — —

3.5.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S — —

3.6.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S — —

3.7.x XND1 XND1 XND XNC XNC XNC 15.0(1r)S 15.3(1r)S —

3.8.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S —

3.9.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S —

3.10.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.11.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.12.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.13.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.14.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.15.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.16.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

3.17.x XND1 XND1 15.2(1r)S XNC XNC XNC 15.0(1r)S 15.3(1r)S 15.3(1r)S

Table 7 Minimum ROMmon Release Supported for Other FRUs

Cisco IOS XE Release FRU

— ASR 1001ASR 1001-X

ASR 1002-X

ASR1000-2T+20x1GE

ASR1000-6TGE

ASR1000-MIP100

ASR1000-SIP10

ASR1000-SIP40

2.0.x — — — — — — XNC —

2.1.x — — — — — — XNC —

2.2.0 — — — — — — XNC —

2.2.1 — — — — — — XNC —

2.2.2 — — — — — — XNC —

2.3.0 — — — — — — XNC —

2.3.1 — — — — — — XNC —

2.3.2 — — — — — — XNC —

2.4.x — — — — — — XNC —

2.5.x — — — — — — XNC —

2.6.x — — — — — — XNC —

3.1.x — — — — — — XNC —

3.2.x 15.0(1r)S — — — — — XNC 15.0(1r)S

Table 6 Minimum ROMmon Release Supported for RP and ESP FRUs (continued)

Cisco IOS XE Release FRU

—ASR 1000 RP1

ASR 1002 RP1

ASR 1000 RP2

ASR 1000-ESP5

ASR 1000-ESP10

ASR1000-ESP20

ASR1000-ESP40

ASR1000-ESP100

ASR1000-ESP200

18System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 53: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

ROMmon Release Requirements

Table 8 lists the recommended ROMmon release for RP and ESP FRUs, for each Cisco IOS XE release. Table 9 lists the recommended ROMmon release for other FRUs, for each Cisco IOS XE release

3.3.x 15.0(1r)S — — — — — XNC 15.0(1r)S

3.4.x 15.0(1r)S — — — — — XNC 15.0(1r)S

3.5.x 15.0(1r)S — — — — — XNC 15.0(1r)S

3.6.x 15.0(1r)S — — — — — XNC 15.0(1r)S

3.7.x 15.0(1r)S — 15.3(1r)S — — — XNC 15.0(1r)S

3.8.x 15.0(1r)S — 15.3(1r)S — — — XNC 15.0(1r)S

3.9.x 15.0(1r)S — 15.3(1r)S — — — XNC 15.0(1r)S

3.10.x 15.0(1r)S — 15.3(1r)S 15.3(3r)S1 — — XNC 15.0(1r)S

3.11.x 15.0(1r)S — 15.3(1r)S 15.3(3r)S1 — — XNC 15.0(1r)S

3.12.x 15.0(1r)S 15.4(2r)S 15.3(1r)S 15.3(3r)S1 15.4(2r)S — XNC 15.0(1r)S

3.13.x 15.0(1r)S 15.4(2r)S 15.3(1r)S 15.3(3r)S1 15.4(2r)S — XNC 15.0(1r)S

3.14.x 15.0(1r)S 15.4(2r)S 15.3(1r)S 15.3(3r)S1 15.4(2r)S — XNC 15.0(1r)S

3.15.x 15.0(1r)S 15.4(2r)S 15.3(1r)S 15.3(3r)S1 15.4(2r)S — XNC 15.0(1r)S

3.16.x 15.0(1r)S 15.4(2r)S 15.3(1r)S 15.3(3r)S1 15.4(2r)S 15.5(3r)S1 XNC 15.0(1r)S

3.17.x 15.0(1r)S 15.4(2r)S 15.3(1r)S 15.3(3r)S1 15.4(2r)S 15.5(3r)S1 XNC 15.0(1r)S

Table 7 Minimum ROMmon Release Supported for Other FRUs (continued)

Cisco IOS XE Release FRU

— ASR 1001ASR 1001-X

ASR 1002-X

ASR1000-2T+20x1GE

ASR1000-6TGE

ASR1000-MIP100

ASR1000-SIP10

ASR1000-SIP40

Table 8 Recommended ROMmon Release for RP and ESP FRUs

Cisco IOS XE Release FRU

—ASR1000 RP1

ASR 1002 RP1

ASR1000 RP2

ASR 1000-ESP5

ASR 1000-ESP10

ASR1000-ESP20

ASR1000-ESP40

ASR1000-ESP100

ASR1000-ESP200

2.0.x XNC — — 15.5(3r)S1 15.5(3r)S1 — — — —

2.1.x XNC XNC — 15.5(3r)S1 15.5(3r)S1 — — — —

2.2.0 XNC XNC — 15.5(3r)S1 15.5(3r)S1 — — — —

2.2.1 XNC XNC — 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

2.2.2 XNC XNC — 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

2.3.0 XNC1 XNC 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

2.3.1 XNC XNC 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

2.3.2 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

2.4.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

19System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 54: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

ROMmon Release Requirements

2.5.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

2.6.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) — — —

3.1.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) — —

3.2.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) — —

3.3.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) — —

3.4.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) — —

3.5.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) — —

3.6.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) — —

3.7.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) —

3.8.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) —

3.9.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) —

3.10.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.11.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.12.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.13.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.14.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.15.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.16.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

3.17.x 15.5(3r)S1 15.5(3r)S1 16.2(1r) 15.5(3r)S1 15.5(3r)S1 16.2(1r) 16.2(1r) 16.2(1r) 16.2(1r)

1. For Cisco IOS XE Release 2.3.0d and Release 2.3.0e, ROMmon Release 15.2(1r)S is the recommended release.

Table 9 Recommended ROMmon Release for Other FRUs

Cisco IOS XE Release FRU

— ASR1001ASR 1001-X

ASR1002-X

ASR1000-2T+20x1GE

ASR1000-6TGE

ASR1000-MIP100

ASR1000-SIP10

ASR1000-SIP40

2.0.x — — — — — — 16.3(2r) —

2.1.x — — — — — — 16.3(2r) —

2.2.0 — — — — — — 16.3(2r) —

2.2.1 — — — — — — 16.3(2r) —

2.2.2 — — — — — — 16.3(2r) —

Table 8 Recommended ROMmon Release for RP and ESP FRUs (continued)

Cisco IOS XE Release FRU

—ASR1000 RP1

ASR 1002 RP1

ASR1000 RP2

ASR 1000-ESP5

ASR 1000-ESP10

ASR1000-ESP20

ASR1000-ESP40

ASR1000-ESP100

ASR1000-ESP200

20System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 55: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Determining the Release Number of the Installed SoftwareThis section provides information about determining the release number of the installed software.

Determining the Version of the Consolidated Package

To determine the version of the Cisco IOS XE Software (consolidated package) running on your router, log in to the router and enter the show version EXEC command.

The following is sample output of the show version command. The actual output displayed when you run the command will vary depending on the version of the product that you are using.

2.3.0 — — — — — — 16.3(2r) —

2.3.1 — — — — — — 16.3(2r) —

2.3.2 — — — — — — 16.3(2r) —

2.4.x — — — — — — 16.3(2r) —

2.5.x — — — — — — 16.3(2r) —

2.6.x — — — — — — 16.3(2r) —

3.1.x — — — — — — 16.3(2r) —

3.2.x 16.3(2r) — — — — — 16.3(2r) 16.3(2r)

3.3.x 16.3(2r) — — — — — 16.3(2r) 16.3(2r)

3.4.x 16.3(2r) — — — — — 16.3(2r) 16.3(2r)

3.5.x 16.3(2r) — — — — — 16.3(2r) 16.3(2r)

3.6.x 16.3(2r) — — — — — 16.3(2r) 16.3(2r)

3.7.x 16.3(2r) — 16.3(2r) — — — 16.3(2r) 16.3(2r)

3.8.x 16.3(2r) — 16.3(2r) — — — 16.3(2r) 16.3(2r)

3.9.x 16.3(2r) — 16.3(2r) — — — 16.3(2r) 16.3(2r)

3.10.x 16.3(2r) — 16.3(2r) 16.3(2r) — — 16.3(2r) 16.3(2r)

3.11.x 16.3(2r) — 16.3(2r) 16.3(2r) — — 16.3(2r) 16.3(2r)

3.12.x 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) — 16.3(2r) 16.3(2r)

3.13.x 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) — 16.3(2r) 16.3(2r)

3.14.x 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) — 16.3(2r) 16.3(2r)

3.15.x 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) — 16.3(2r) 16.3(2r)

3.16.x 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r)

3.17.x 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r) 16.3(2r)

Table 9 Recommended ROMmon Release for Other FRUs (continued)

Cisco IOS XE Release FRU

— ASR1001ASR 1001-X

ASR1002-X

ASR1000-2T+20x1GE

ASR1000-6TGE

ASR1000-MIP100

ASR1000-SIP10

ASR1000-SIP40

21System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 56: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Router# show version

Cisco IOS Software, IOS-XE Software (X86_64_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.2(1)S, RELEASE SOFTWARE (fc1)Technical Support: http://www.cisco.com/techsupportCopyright (c) 1986-2011 by Cisco Systems, Inc.Compiled Sun 27-Nov-11 21:19 by mcpre

Cisco IOS-XE software, Copyright (c) 2005-2011 by cisco Systems, Inc.All rights reserved. Certain components of Cisco IOS-XE software arelicensed under the GNU General Public License ("GPL") Version 2.0. Thesoftware code licensed under GPL Version 2.0 is free software that comeswith ABSOLUTELY NO WARRANTY. You can redistribute and/or modify suchGPL code under the terms of GPL Version 2.0. For more details, see thedocumentation or "License Notice" file accompanying the IOS-XE software,or the applicable URL provided on the flyer accompanying the IOS-XEsoftware.

ROM: IOS-XE ROMMON

Router uptime is 1 minuteUptime for this control processor is 3 minutesSystem returned to ROM by reloadSystem restarted at 22:07:05 UTC Sun Nov 27 2011System image file is "tftp:/auto/tftp-smoke2/mcpdt-rp2-14/vmlinux"Last reload reason: PowerOn

This product contains cryptographic features and is subject to UnitedStates and local country laws governing import, export, transfer anduse. Delivery of Cisco cryptographic products does not implythird-party authority to import, export, distribute or use encryption.Importers, exporters, distributors and users are responsible forcompliance with U.S. and local country laws. By using this product youagree to comply with applicable laws and regulations. If you are unableto comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email [email protected].

cisco ASR1006 (RP2) processor with 4252282K/6147K bytes of memory.5 Gigabit Ethernet interfaces2 Channelized T3 ports32768K bytes of non-volatile configuration memory.8388608K bytes of physical memory.1925119K bytes of eUSB flash at bootflash:.78085207K bytes of SATA hard disk at harddisk:.

Configuration register is 0x2102

Determining the Version of the Individual Subpackages

To determine the version of the individual subpackages running on your router, log in to the router and enter the show version installed command in the User EXEC, Privileged EXEC, or Diagnostic mode.

The following is sample output of the show version installed command. The actual output displayed when you run the command will vary depending on the version of the product that you are using.

22System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 57: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Router# show version installed

Package: Provisioning File, version: n/a, status: active File: consolidated:packages.conf, on: RP0 Built: n/a, by: n/a File SHA1 checksum: 96de495067ade7bb7e17f833fb3e4136addff0a7

23System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 58: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Package: rpbase, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-rpbase.03.05.00.S.152-1.S.pkg, on: RP0 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: aadf1bfa5ff97720c3eeaed32e4d9941e54b0ea8

Package: rpcontrol, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-rpcontrol.03.05.00.S.152-1.S.pkg, on: RP0/0 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: 57f1f2c5536098d761d228d3a4d5031bf1f885fb

Package: rpios-adventerprisek9, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-rpios-adventerprisek9.03.05.00.S.152-1.S.pkg, on: RP0/0 Built: 2011-11-27_15.41, by: mcpre File SHA1 checksum: 632836be203f1f5a94d7cbb4eb042890649d5b0d

Package: rpaccess, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-rpaccess.03.05.00.S.152-1.S.pkg, on: RP0/0 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: adc4045026a793a1523431f10860b6bf1fa1fb2c

Package: rpcontrol, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpcontrol.03.05.00.S.152-1.S.pkg, on: RP0/1 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: 57f1f2c5536098d761d228d3a4d5031bf1f885fb

Package: rpios-adventerprisek9, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpios-adventerprisek9.03.05.00.S.152-1.S.pkg, on: RP0/1 Built: 2011-11-27_15.41, by: mcpre File SHA1 checksum: 632836be203f1f5a94d7cbb4eb042890649d5b0d

Package: rpaccess, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpaccess.03.05.00.S.152-1.S.pkg, on: RP0/1 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: adc4045026a793a1523431f10860b6bf1fa1fb2c

Package: rpbase, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpbase.03.05.00.S.152-1.S.pkg, on: RP1 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: aadf1bfa5ff97720c3eeaed32e4d9941e54b0ea8

Package: rpcontrol, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpcontrol.03.05.00.S.152-1.S.pkg, on: RP1/0 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: 57f1f2c5536098d761d228d3a4d5031bf1f885fb

Package: rpios-adventerprisek9, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpios-adventerprisek9.03.05.00.S.152-1.S.pkg, on: RP1/0 Built: 2011-11-27_15.41, by: mcpre File SHA1 checksum: 632836be203f1f5a94d7cbb4eb042890649d5b0d

Package: rpaccess, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpaccess.03.05.00.S.152-1.S.pkg, on: RP1/0 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: adc4045026a793a1523431f10860b6bf1fa1fb2c

Package: rpcontrol, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpcontrol.03.05.00.S.152-1.S.pkg, on: RP1/1 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: 57f1f2c5536098d761d228d3a4d5031bf1f885fb

Package: rpios-adventerprisek9, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpios-adventerprisek9.03.05.00.S.152-1.S.pkg, on: RP1/1 Built: 2011-11-27_15.41, by: mcpre File SHA1 checksum: 632836be203f1f5a94d7cbb4eb042890649d5b0d

24System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 59: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Package: rpaccess, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-rpaccess.03.05.00.S.152-1.S.pkg, on: RP1/1 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: adc4045026a793a1523431f10860b6bf1fa1fb2c

Package: espbase, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-espbase.03.05.00.S.152-1.S.pkg, on: ESP0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 6867ebbf53d4e17b88c45859175ad70891c49f05

Package: espx86base, version: 03.05.00.S.152-1.S, status: inactive File: consolidated:asr1000rp2-espx86base.03.05.00.S.152-1.S.pkg, on: ESP0 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: 6d11715ea722191f6d5e8bec077512fd22c473ae

Package: espbase, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-espbase.03.05.00.S.152-1.S.pkg, on: ESP1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 6867ebbf53d4e17b88c45859175ad70891c49f05

Package: espx86base, version: 03.05.00.S.152-1.S, status: inactive File: consolidated:asr1000rp2-espx86base.03.05.00.S.152-1.S.pkg, on: ESP1 Built: 2011-11-27_15.35, by: mcpre File SHA1 checksum: 6d11715ea722191f6d5e8bec077512fd22c473ae

Package: sipbase, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-sipbase.03.05.00.S.152-1.S.pkg, on: SIP0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 216029d6fb614f3b65225015008d25e70b513169

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP0/0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP0/1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP0/2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP0/3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipbase, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-sipbase.03.05.00.S.152-1.S.pkg, on: SIP1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 216029d6fb614f3b65225015008d25e70b513169

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP1/0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

25System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 60: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP1/1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP1/2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP1/3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipbase, version: 03.05.00.S.152-1.S, status: active File: consolidated:asr1000rp2-sipbase.03.05.00.S.152-1.S.pkg, on: SIP2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 216029d6fb614f3b65225015008d25e70b513169

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP2/0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP2/1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP2/2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP2/3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipbase, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipbase.03.05.00.S.152-1.S.pkg, on: SIP3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 216029d6fb614f3b65225015008d25e70b513169

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP3/0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP3/1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP3/2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP3/3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

26System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 61: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Determining the Release Number of the Installed Software

Package: sipbase, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipbase.03.05.00.S.152-1.S.pkg, on: SIP4 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 216029d6fb614f3b65225015008d25e70b513169

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP4/0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP4/1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP4/2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP4/3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipbase, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipbase.03.05.00.S.152-1.S.pkg, on: SIP5 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 216029d6fb614f3b65225015008d25e70b513169

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP5/0 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP5/1 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP5/2 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

Package: sipspa, version: 03.05.00.S.152-1.S, status: n/a File: consolidated:asr1000rp2-sipspa.03.05.00.S.152-1.S.pkg, on: SIP5/3 Built: 2011-11-27_15.14, by: mcpre File SHA1 checksum: 58250807ef37ef9da6c3952babce9a9a5b5e29b5

27System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 62: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Upgrading to a New Software Release

Upgrading to a New Software ReleaseOnly Cisco IOS XE 3S consolidated packages can be downloaded from cisco.com; users who want to run a router using individual subpackages must first download the image from cisco.com and extract the individual subpackages from the consolidated package.

For information about upgrading to a new software release, see Cisco ASR 1000 Series Aggregation Services Router Software Configuration Guide at the following location:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/asrswcfg.html

28System Requirements for Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 63: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Limitations and Restrictions in Cisco ASR 1000 Series Aggregation Services Routers

This following section describes limitations and restrictions pertaining to Cisco ASR 1000 Series Aggregation Services Routers:

• Limitations and Restrictions in Release 3.15.0, page 29

• Limitations and Restrictions in Release 3.14.0, page 29

• Limitations and Restrictions in Release 3.13.0, page 30

• Limitations and Restrictions in Release 3.12.0, page 30

• Limitations and Restrictions in Release 3.11.0, page 30

• Limitations and Restrictions in Release 3.10.0, page 30

• Limitations and Restrictions in Release 3.9.0, page 30

• Limitations and Restrictions in Release 3.8.0, page 30

• Limitations and Restrictions in Release 3.7.0, page 30

• Limitations and Restrictions in Release 3.6.0, page 31

Note For information about limitations and restrictions pertaining to releases prior to Release 3.6.0, see Cisco IOS XE 3S Release Notes.

Limitations and Restrictions in Release 3.15.0There are no new limitations or restrictions in Release 3.15.0.

Limitations and Restrictions in Release 3.14.0There are no new limitations or restrictions in Release 3.14.0.

Cisco Systems, Inc.www.cisco.com

Page 64: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Limitations and Restrictions in Release 3.13.0

Limitations and Restrictions in Release 3.13.0CUBE-ENT Limitations

Dial-peer simplification with Dial-peer Group is not supported with "REFER Consume".

Limitations and Restrictions in Release 3.12.0There are no new limitations or restrictions in Release 3.12.0.

Limitations and Restrictions in Release 3.11.0There are no new limitations or restrictions in Release 3.11.0.

Limitations and Restrictions in Release 3.10.0There are no new limitations or restrictions in Release 3.10.0.

Limitations and Restrictions in Release 3.9.0There are no new limitations or restrictions in Release 3.9.0.

Limitations and Restrictions in Release 3.8.0There are no new limitations or restrictions in Release 3.8.0.

Limitations and Restrictions in Release 3.7.0General Limitations

RF billing and Lawful Interception do not work together.

DMVPN Limitations

Cisco ASR 1000 devices does not support the ip nhrp server-only command used to configure an interface to operate in Next Hop Resolution Protocol (NHRP) server-only mode.

In a phase 2 deployment, NHRP server-only mode configured on one spoke stops all traffic from the configured spoke to other spokes.

In a phase 3 deployment, NHRP server-only mode configured on one spoke stops the shortcut tunnel from the configured spoke to other spokes and consequently all traffic from the configured spoke to other spokes have to be forwarded by Hub.

We recommend that you do not use the ip nhrp server-only command on Cisco ASR 1000 devices.

30Limitations and Restrictions in Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 65: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Limitations and Restrictions in Release 3.6.0

MPLS over IPv6 GRE Tunnel is not supported

The mpls ip command can be configured on the IPv6 GRE Tunnel, but it does not take effect.

Limitations and Restrictions in Release 3.6.0Mediatrace sessions are not established with crypto on WAN link

Mediatrace does not work on ASR 1006 Routers when crypto map is applied directly on the egress interface. This is because mediatrace uses RSVP, which in turn relies on IP Headers that cannot be encrypted in ASR 1006 Routers.

We recommend that you use GRE tunnel interface to apply the crypto map.

31Limitations and Restrictions in Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 66: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Limitations and Restrictions in Release 3.6.0

32Limitations and Restrictions in Cisco ASR 1000 Series Aggregation Services Routers

OL-26698-25

Page 67: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features and Important Notes

Page 68: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 69: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 35

• Important Notes, page 39

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.17S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S, page 35

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S, page 36

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S

No new hardware features were introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S.

Cisco Systems, Inc.www.cisco.com

Page 70: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.0S

Additional features for multiple-m-line support on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-sip-param-mod.html

Autonomic Networking Infrastructure

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/auto_net/configuration/xe-3s/asr1000/an-auto-net-xe-3s-asr1000-book.html

BGP Strict-mode support for BFD Dampening

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-xe-3s-asr1000-book/irg-multihop-cbit.html

Dual-Factor Authentication support with IKEv2

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-flex-aggr.html

EIGRPv6 Route-map support for Distribute-list

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/asr1000/ire-xe-3s-asr1000.html

Enhancement to bandwidth qos-reference Command

The Enhancement to bandwidth qos-reference Command feature extends support for logical interfaces to a main interface and a subinterface.

Ethernet Overhead Accounting (Policing) for MEF 2.0 Certification

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-xe-3s-asr-1000-book/qos-plcshp-ether-ohead-actg.html

36New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 71: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

IKEv2 Cluster Reconnect

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-clb-supp.html

IOSXE Local CAC

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_conmgt/configuration/xe-3s/asr1000/qos-conmgt-xe-3s-asr1000-book/qos-conmgt-per-flow-admission.html

IOS-XE ZBFW interop with crypto VPN

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-data-zbf-xe-asr1k-book.html

MacSec CLI option to change EAPoL frame ethernet type

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_vpnav/configuration/xe-3s/asr1000/sec-vpn-availability-xe-3s-asr1000-book/sec-mac-sup.html

MC-LAG TCN interworking

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-xe-3s-asr1000-book/ce-mclag-tcn-Interworking.html

MPLS LDP: Entropy Label Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_ldp/configuration/xe-3s/asr1000/mp-ldp-xe-3s-asr1000-book/mp-ldp-entropy.html

OAM for Segment Routing

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/seg_routing/configuration/xe-3s/asr1000/segrt-xe-3s-asr1000-book.html

37New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 72: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

One P/DPSS performance enhancement and new packet actions: dscp-marking, set-nexthop and forward

OneP/DPSS performance enhancement and new packet actions: dscp-marking, set-nexthop and forward feature enhances the performance of Data Path Service Set (DPSS) by initiating packet action during packet classification. The following are the packet actions included in the feature:

• Forward—The packet is forwarded as normal.

• Set DSCP—The packet's Differentiated Services Code Point (DSCP) value is changed.

• Set next hop—The packets are forwarded to next hop. VPN routing and forwarding (VRF) addresses are not supported.

PMIPv6 LMA SSO

The Proxy Mobile IPv6 (PMIPv6) protocol provides network-based IP mobility management support for mobile node. There are two network entities present in PMiPv6 domain—Local Mobility Anchor (LMA) and Mobile Access Gateway (MAG). The PMIPv6 LMA SSO feature provides high availability support in PMIPv6 via the High Availability and ISSU features on Cisco IOS XE software.

QoS: Per-Flow Admission

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_conmgt/configuration/xe-3s/asr1000/qos-conmgt-xe-3s-asr1000-book/qos-conmgt-per-flow-admission.html

REST API support for ASR1000 family management port

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/RESTAPI.html

SGT Based QoS

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/asr1000/iri-xe-3s-asr1000-book/iri-sgt-based-qos.html

SIP-REC standard based call/media recording support on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-sip-recording.html

Spoke-to-Spoke NHRP summary maps

For detailed information, see the following Cisco document:

38New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 73: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_dmvpn/configuration/xe-3s/asr1000/sec-conn-dmvpn-xe-3s-asr1000-book/sec-conn-dmvpn-summ-maps.html

Survivability TCL concurrent operation with Cisco UC GW Services API based Media Forking

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-uc-gateway-services.html

TLS 1.2 support,256_GCM Cipher suits support and HTTPS for Cisco UC GW Services API interface support on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-sip-tls.html

Variable length Checkpointing Enhancements for enhanced HA in CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-high-availability.html

VxLAN PIM SM Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-xe-3s-asr1000-book.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

39New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 74: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S.

40New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 75: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 41

• Important Notes, page 48

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.16S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S, page 42

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS, page 42

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S, page 42

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S, page 42

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS, page 43

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.0S, page 43

Cisco Systems, Inc.www.cisco.com

Page 76: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

The Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S introduces the 2-Port 40 Gigabit Ethernet EPA with CPAK and Breakout Cable (EPA-CPAK-2x40GE).

2-Port 40 Gigabit Ethernet EPA with CPAK and Breakout Cable (EPA-CPAK-2x40GE)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/install/guide/modular_linecard/asr1_mlc_hig.html

Note This hardware is supported only on Cisco IOS XE Release 3.16.2S and later releases.This hardware is not supported on Cisco IOS XE Release 3.17S.

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS

The Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS introduces the Cisco ASR 1009-X Router and Cisco ASR 1006-X Router.

Cisco ASR 1009-X Router and Cisco ASR 1006-X Router

The Cisco ASR1006-X Router and Cisco ASR1009-X Router create a future-proof modular routing platform to support next generation Forwarding and Route Processor modules with hardware redundancy. The Cisco ASR1006-X Router and Cisco ASR1009-X Router provide up to 200 Gbps slot bandwidth to enable new high density Ethernet linecards utilizing the ASR1000-MIP100 and Ethernet Port Adapters (EPAs), and integrating N+1 power-on-demand design to the ASR1000 portfolio.

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/install/guide/1009X_1006X/asr1009x_1006xhig.html

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

No new hardware features were introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.0S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

The following software feature was introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S.

42New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 77: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Cisco ASR 1000 Series Modular Ethernet Line Card

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/modular_ethernet_linecard/ASRmelcconf_guide.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS

The following feature was introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS.

Cisco ASR 1000 Series Modular Ethernet Line Card

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/modular_ethernet_linecard/ASRmelcconf_guide.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.0S.

Adaptive QoS Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-xe-3s-asr-1000-book/qos-plcshp-adaptive-qos-dmvpn.html

Auto-custom

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book.html

Asymmetric Routing Support for NAT64

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/nat-xe-3s-book/iadnat-stateful-nat64.html

Asymmetric Routing Enhancements for NAT44

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/nat-xe-3s-book/sec-data-asym-route.html

43New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 78: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Cisco ASR 1009-X Router and Cisco ASR 1006-X Router

Cisco ASR 1006-X Router and Cisco ASR 1009-X Router are the new modular routing platforms that support ESP and RP modules with hardware redundancy, provide up to 200 Gbps slot bandwidth to enable high density Ethernet line cards, and integrate N+1 power-on-demand design for ASR 1000 Series Routers.

Custom App based on any NBAR2 extracted field

The Custom App Based on any NBAR2 Extracted Field feature provides additional custom protocol capabilities to NBAR2, which are provided through Protocol Packs in accordance with Cisco's Protocol Packs release policy.

DMVPN Akamai NAT Ph2

The DMVPN Akamai NAT Ph2 feature leverages the tunnel inside another tunnel feature to enable the usage of point-to-point GRE tunnel interface between a hub or spoke to an Akamai gateway as source interface for DMVPN tunnel between hub and spoke.

Domain Name System Security Extensions

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr_dns/configuration/xe-3s/asr1000/dns-xe-3s-asr1000-book/Configuring_DNS.html

Early Dialog UPDATE Block

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-edupdate-block.html

EIGRP iWAN Simplification

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/asr1000/ire-xe-3s-asr1000-book/ire-iwan-simpl.html

EOAM over Port Channel

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/cether/configuration/xe-3s/ce-xe-3s-book/ce-cfm-ieee.html

EoGRE: Inter-chassis HA

For detailed information, see the following Cisco document:

44New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 79: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap/eogre-iwag-inter-chassis-ha.html

Flexible Netflow - Top N Talkers Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/fnetflow/configuration/xe-3s/asr1000/fnf-xe-3s-asr1000-book/cgf-topn.html

IWAN serviceability -- Application aware Ping, Traceroute

The ping and traceroute command can determine if IWAN is enabled on a LAN interface thereby deciding if a packet must be to be injected in the ingress path or follow the regular path. The ping and traceroute commands are updated so that packets follow the same path when received on a LAN interface.

L3 custom any IP/Port

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/dscp-layer3-cust-app.html

LISP MIB

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/asr1000/irl-xe-3s-asr1000-book/irl-overview.html

MacSec max concurrent peer scale improvment

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/macsec/configuration/xe-3s/macsec-xe-3s-book.html

MACSec support on Wallander

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/macsec/configuration/xe-3s/macsec-xe-3s-book.html

Mid-call signaling block - ReINVITE Consumption

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-midcall-reinvite.html

45New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 80: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

MPLS LDP - IGP Synchronization

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_ldp/configuration/xe-3s/asr1000/mp-ldp-xe-3s-asr1000-book/mp-ldp-igp-synch.html

MPLS MTU command for GRE Tunnels

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/asr1000/mp-l2-vpns-xe-3s-asr1000-book/mp-any-transport-xe.html

NBAR2 DNS-AS support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book.html

NBAR2 server-name custom application

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book.html

Potentially match

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos/command/qos-cr-book/qos-m1.html

PP support for 3.16/PI28

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book.html

Selective Fine Grain

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/nbar-fine-selapp-xe.html

SGT Based PBR

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/asr1000/iri-xe-3s-asr1000-book/m_iri-sgt-based-pbr.html

46New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 81: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Show unclassified port stats

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/nbar-cust-assist-ssl.html

SMI over virtual template

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/qos-plcshp-xe-3s-book/qos-plcshp-mgt-pln-prt.html

Spotlight NBAR2 visibility dashboard

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/nbar2-vis-dashbd.html

SRND support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book.html

SSL - TLS 1.2 support

Cisco IOS SSL uses OpenSSL to perform SSL handshakes. To be on par with the standards in the industry and also to cater to your requirements for TLS 1.2 Cisco IOS SSL supports TLS 1.2 through the SSL - TLS 1.2 Support feature.

Support for pass-through of unsupported content types in SIP INFO messages

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-sip-info-messages.html

TrustSec Security Group Name Download

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/sec-cts-xe-3s-asr-1000-book/sec-cts-sg-download.html

VXLAN- MCLAG Active-Active High Availability Support

For detailed information, see the following Cisco document:

47New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 82: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

www.cisco.com/c/en/us/td/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-xe-3s-asr1000-book/ce-active-ha-support.html

VxLAN Scaling Enhancement

For detailed information, see the following Cisco document:

www.cisco.com/c/en/us/td/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-xe-3s-asr1000-book/ce-conf-vxlan.html

XE 3.16 GETVPN GDOI/COOP MIBS

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn-xe-3s-asr1000-book/sec-get-vpn-gdoi-mib-support.html

XE Segment Routing - ISIS v4 node SID

For detailed information, see the following Cisco document:

www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/asr1000/irs-xe-3s-asr1000-book/irs-seg-routg-isis.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

48New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 83: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

address ipv4 Command Changes

Effective with Cisco IOS XE Release 3.16.1aS, the auth port 0 keyword argument pair is not supported in the address ipv4 command. This command is configured in the RADIUS server configuration mode (config-radius-server), when authentication requests and accounting requests are sent to different servers.

Class of Restrictions (COR) Configuration

Class of Restrictions (COR) is a Cisco voice gateway feature that enables Class of Service (COS) or calling privileges to be assigned. It is most commonly used with Cisco Survivable Remote Site Telephony (SRST) and Cisco CallManager Express but can be applied to any dial peer. COR will work on Cisco ASR 1000 Series Aggregation Services Routers for Cisco IOS XE Release 3.17.3S and later releases only.

49New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 84: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

50New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 85: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 51

• Important Notes, page 58

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.15S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S, page 52

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.0S, page 52

Cisco Systems, Inc.www.cisco.com

Page 86: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

No new hardware features were introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.0S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.0S.

1000M GLC-TE (catskills) support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/install_upgrade/ASR1000/asr_sip_spa_hw.html

Adaptive QoS Manageability

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-xe-3s-asr-1000-book/qos-plcshp-adaptive-qos-dmvpn.html

AMT (Automatic Multicast Tunneling)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipmulti_pim/configuration/xe-3s/asr1000/imc-pim-xe-3s-book/amt.html

AVC in L2 Transparent mode

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios/solutions_docs/avc/guide/avc-user-guide.html

BGP Support of Multiple Sourced Paths per Redistributed Route

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-xe-3s-asr1000-book/bgp-multi-paths-redistribute.html

52New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 87: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

C3PL - BGP flowspec client

The Border Gateway Protocol (BGP) flow specification client feature enables a device to perform the role of a BGP flow specification client and receive flow specification rules from a BGP flow specification controller.

Call Progress Analysis (CPA) over IP-IP Media Session

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-cpa.html

Cisco Service Discovery Gateway - Phase 3

For detailed information, see the following Cisco document:

CLI control to extend port range to entire range

For detailed information, see the following Cisco document:

Configurable export interval in EZPM

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios/solutions_docs/avc/guide/avc-user-guide.html

DHCP lease-query support for multiple DHCP Servers

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr/command/ipaddr-cr-book/ip-dhcp-client-network-discovery-TO-ip-nat-sip-sbc.html

EIGRP OTP Support to propagate SGT

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/asr1000/ire-xe-3s-asr1000/ire-eigrp-over-the-top.html

EoGRE inter-SSID roaming

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

53New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 88: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

EoMPLS over IPv6 GRE Tunnel

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/interface/configuration/xe-3s/asr1000/ir-xe-3s-asr1000-book.html

Export absolute timestamp

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/access/ISRG2/AVC/api/guide/AVC_Metric_Definition_Guide.html

Fine-grain NBAR for selective apps

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/nbar-fine-selapp-xe.html

FlexVPN - IKEv2 CoA for QoS and ACL

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-ikev2-flex-coa.html

FlexVPN RA - Aggregate Auth support for AnyConnect

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-flex-aggr.html

HA for Xcoded Calls (Inbox & Box to Box)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-dsp.html

HA for Xcoded Calls w/ DTMF & VCC

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-dsp.html

HA support for REFER call flows upon SSO

For detailed information, see the following Cisco document:

54New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 89: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-stateful-switchover.html

ICE infra and ICE lite support on XE platforms

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-ice-lite.html

Identify and clear (terminate) FPI hung sessions to prevent reboot

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/vcr1/vcr1-cr-book/vcr-c5.html

IEEE 802.1ag-2007 Compliant CFM - PW/VFI Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-xe-3s-asr1000-book.html

Layer 2 Transparent Firewall support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-data-zbf-xe-asr1k-book/zbfw-l2-transp-fw.html

Modification of unsupport SIP header using SIP Profiles

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-sip-param-mod.html

NAT MIB Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/nat-xe-3s-asr1k-book/iadnat-addr-consv.html

NBAR custom applications based on DNS Name

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/nbar-custapp-dns-xe.html

55New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 90: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

OSPF: Limit simultaneous adjacency formations

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-xe-3s-asr1000-book/iro-limit-adj-form.html

PfRv3 support for transit hub

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/pfrv3/configuration/xe-3s/asr1000/pfrv3-xe-3s-asr-1000-book/pfrv3-transit-site.html

PfRv3 Transit Site Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/pfrv3/configuration/xe-3s/asr1000/pfrv3-xe-3s-asr1000-book/pfrv3-transit-site.html

PKI Credentials Expiry Alerts

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/asr1000/sec-pki-xe-3s-asr1000-book/sec-pki-alerts.html

PKI IOS XE Certificate Server

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/sec-pki-xe-3s-book/sec-cfg-mng-cert-serv.html

PKI MIB

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/asr1000/sec-pki-xe-3s-asr1000-book/sec-pki-overview.html

Preserve ISIS metrics when redistributing routes between ISIS instances

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/asr1000/irs-xe-3s-asr1000-book/ip6-route-isis-redis-xe.html

QoS Service Group

For detailed information, see the following Cisco document:

56New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 91: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_svcgrp/configuration/xe-3s/qos-svcgrp-xe-book.html

QoS: Spoke to Spoke per tunnel QoS for DMVPN

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_dmvpn/configuration/xe-3s/asr1000/sec-conn-dmvpn-xe-3s-asr1000-book/sec-conn-dmvpn-per-tunnel-qos.html

Remote Id Format : IR.61 compliance

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

SEQUENCE / SORT DIAL PEERS

For detailed information, see the following Cisco document:

A new command show running-config dial-peer for this feature. http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/vcr4/vcr4-cr-book/vcr-s7.html

SIP Profile to provide tag, sequence number and modification of unsupported SIP header

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-sip-param-mod.html

SSL custom application and DSCP based L3 custom application

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/qos-nbar-xe-3s-asr-1000-book/nbar-ssl-custom-appl-xe.html

undetermined transport support for deny ipv6 any any

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/asr1000/sec-data-acl-xe-3s-asr1k-book/ipv6-undeter-trans-xe.html

VLAN ID based policy control

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

57New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 92: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Zone-Based Firewall Handling of Zone Mismatch Traffic

For detailed information, see the following Cisco document: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-data-zbf-xe-asr1k-book/zbf-zone-mismatch.html

Zone-Based Firewall: Serviceability Enhancements Phase 4

The Zone-Based Firewall Serviceability Enhancements Phase 4 feature provides the following functionalities:

• Enhances the zone-based firewall client debugs

• Enhances the firewall client statistics related to zone, zone pair, VRF, per-filter and PAM

• Provides policy transaction debugs.

• The following command was introduced: debug platform condition feature fw controlplane submode. For more information on this command, see Cisco IOS Debug Command Reference - Commands M through R.

• The following commands were removed: set platform software trace forwarding-manager FP active fw, set platform software trace forwarding-manager RP active fw, set platform software trace forwarding-manager F0 fw, set platform software trace forwarding-manager R0 fw. For more information on these commands, see Cisco IOS Security Command Reference: Commands M to R.

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

58New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 93: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S.

59New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 94: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

60New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 95: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 61

• Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S, page 69

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.14.0S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S, page 62

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S, page 62

Cisco Systems, Inc.www.cisco.com

Page 96: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S

No new hardware features were introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S:

8K GM Scale Improvement

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-x

e-3s-book/sec-get-vpn-gm-scale-improve.html

Adaptive QoS: Dynamic Shape Rate

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/qos-plcshp-xe-3s-b

ook/qos-plcshp-adaptive-qos-dmvpn.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-xe-3s-asr-1000-book/qos-plcshp-adaptive-qos-dmvpn.html

AnyConnect Dual Stack Support on IOS FlexVPN Gateway - Announcing IPv6 Capability over GRE

For detailed information, see the following Cisco document: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-flex-vpn-xe-3s-book/sec-cfg-flex-serv.html

Auto-Configuration of Remote Shapers

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/qos-plcshp-xe-3s-book/qos-plcshp-adaptive-qos-dmvpn.html

Autonomic Networking for ASR 921 Pegasus

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/auto_net/configura-tion/xe-3s/an-auto-net-xe-3s-book/an-auto-net-infra.html

62New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 97: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

BGP AS-Override Split-Horizon

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-xe-3s-book/irg-bgp-as-override-split-horizon.html

BGP-FlowSpec Route-reflector (RR) Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configura-tion/xe-3s/irg-xe-3s-book/flowspec-route-reflection.html

Clear Crypto Session (IKEv2/IPsec) via RADIUS Attribute

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-flex-vpn-xe-3s-book/sec-cfg-flex-serv.html

CUBE (ENT) Dial-peer and Call Handling Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configura-tion/cube-book/cause-code-mapping.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/multiple-out-bound-dial-peer.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configura-

tion/cube-book/voi-cub-sip-dyn-refer-handling-pdf.html

CUBE: IOS Parity Feature: Deliver Call Quality Statistics in CDR

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configura-tion/cube-book/voi-cube-call-quality-statistics.html

DSP SNMP MIB

The DSP SNMP MIB feature provides additional DSPFARM profile objects to the CISCO-DSP-MGMT-MIB, which enables the profile objects to monitor and extract specific DSPFARM profile usage and have better control of resources. To locate and download MIBs for selected platforms,

Cisco IOS XE software releases, and feature sets, use Cisco MIB Locator found at the following URL:

http://www.cisco.com/go/mibs

63New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 98: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Dynamic Bandwidth Handling for Non-ima Link

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/atm/command/atm-cr-book/atm-s1.html

EST Client Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/sec-pki-xe-3s-boo

k/sec-est-client-supp-pki.html

IKEv2 Remote Access Change of Authorization (CoA) ? Packet of Disconnect

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-flex-vpn-xe-3s-book/sec-ikev2-flex-pod.html

IPv6 Routing: OSPF for IPv6 (OSPFv3)

For detailed information, see the following Cisco document: http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/configura-tion/xe-3s/iro-xe-3s-book/ip6-route-ospfv3-xe.html

ISIS IPv6 Multi-process Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/irs-xe-3s-book/irs-ipv6-multi-process-support.html

iWAG-GTP: S2a Interface Support and High Availability Enhancements

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Con-

fig_Guide_BookMap/gtp-s2a-int-ha.html

LISP Data Plane Security

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_lisp/configura-tion/xe-3s/irl-xe-3s-book/irl-data-plane-sec.html

MACsec Key Agreement Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/macsec/configuration/xe-3s/macsec-xe-3s-book.html

64New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 99: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

mLDP (*,G) In-band Signaling

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipmulti_lsm/configura-tion/15-s/imc-lsm-15-s-book/imc-inband.html

NBAR2 Integrated Protocol Pack 11.0.0

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/prot_lib/config_li-brary/pp1100/nbar-prot-pack1100.html

NBAR MQC support for Pre-resolved and Unknown Applications

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configura-tion/xe-3s/qos-nbar-xe-3s-book/nbar-mqc.html

OSPFv3 Autoroute Exclude

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/configura-tion/xe-3s/iro-xe-3s-book/iro-v3-autoroute-exclude.html

OSPFv2/v3 RFC5243 Database Exchange Summary List Optimization

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/command/iro-cr-book/ospf-a1.html

OCSP Response Stapling

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configura-tion/xe-3s/sec-pki-xe-3s-book/sec-ocsp-resp-stapl.html

PfRv3 Zero SLA Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/pfrv3/configura-tion/xe-3s/pfrv3-xe-3s-book/pfrv3-0sla.html

REST API Support for XE Platforms

Beginning with Cisco IOS XE 3.14.0S, the Cisco ASR 1000 Series Routers support REST APIs in the following functional areas:

65New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 100: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

• Save Configuration

• L2 Interfaces

• Bridge Domain

• VxLAN

• Multicast

• VRF

• VRF-Aware DNS

• OSPF

• BGP

• EIGRP

• VRF Routing Table

• NAT

• VPN site-to-site interface state

• LISP

• QoS

• HSRP

SIP Line-side Out of Dialog REFER Pass-through

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_interop/configuration/xe-3s/cube-interop-xe-3s-book/voi-cucm-lineside.html

Smart Licensing Client for IOS and IOS XE

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/csa/configura-tion/xe-3s/csa-xe-3s-book/csa-smrt-license.html

SSL Support for HSM/ACT2

For detailed information, see the following Cisco document:

Effective with Cisco IOS XE Release 3.14S, SSL VPN extends support for Hardware Service Module (HSM) through the SSL Support for HSM/ACT2 feature. This feature enables SSL VPN to establish SSL session with a peer when the cryptographic module is an HSM. HSM is a physical computing device that safeguards and manages digital keys for strong authentication and provides crypto process-ing. An example of HSM is e-token. These devices are either plug-in cards or external devices attached to computers or network devices. The HSM performs the following functions:

• Generates the cryptographic key

• Stores and manages the cryptographic key

• Proper use of cryptographic key and sensitive data

66New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 101: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Support for Standard PIM MIB (RFC 5060)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipmulti_pim/configura-tion/15-s/imc-pim-15-s-book/imc_snmp_trap_mcast.html

vFW - VRF Aware Software Infrastructure (VASI)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/conf-vasi.html

VRF-Aware NAT for WAN-WAN topology with Box-to-Box Redundancy

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/nat-xe-3s-book/iad-

nat-vrf-aware-b2b-ha.html

X.509v3 Certificates for SSH Authentication

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_ssh/configuration/xe-3s/sec-usr-ssh-xe-3s-book/sec-secure-shell-auth-digi-certificate.html

ZBFW-ALG MSRPC Inspection for ZBFW and NAT

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configura-tion/xe-3s/sec-data-zbf-xe-book/fw-msrpc-supp.html

ZBFW Asymmetric Routing Support with VRF/MPLS

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configura-tion/xe-3s/sec-data-zbf-xe-book/sec-data-asym-route.html

ZBFW B2B and Intra Box HA support for LISP Inner Pkt Inspection

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-zbf-xe-book/sec-zbf-lisp-inner-pac-insp.html

ZBFW Serviceability Phase III

The ZBFW Serviceability Enhancement feature enhances output of existing show commands and intro-duces new show and debug commands to display all the Zone-Based Firewall configuration informa-

67New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 102: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

tion. The following commands were introduced or modified: debug platform condition feature fw controlplane level, show platform hardware qfp feature firewall, show policy-firewall config, show platform software firewall.For detailed information, see the following Cisco document:http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/security/s1/sec-s1-cr-book.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.14S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

68New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 103: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S.

69New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 104: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

70New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 105: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 71

• Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S, page 79

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.13S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S, page 72

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S, page 72

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S, page 73

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S, page 73

Cisco Systems, Inc.www.cisco.com

Page 106: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

No new hardware features were introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S:

Dual DHCP lease query servers

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr/command/ipaddr-cr-book/ipaddr-i3.html

QoS On Ethernet Over GRE (EoGRE) Tunnels

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/interface/configuration/xe-3s/ir-xe-3s-book/ir-qos-eogre-tunnels.html

VxLAN L2 Gateway with multicast

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/vxlan.html

72New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 107: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S

The following are the new hardware features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S:

NIM Support for the Cisco ASR 1001-X Router

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/install/guide/1001-x/asr1hig.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.0S:

Adaptive AVC Reporting

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios/solutions_docs/avc/ios15-4-3T-ios-xe3-13/avc-user-guide-ios15-4-3T-ios-xe3-13/avc_tech_overview.html

Audio only stream forking of video call

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-ntwk-based.html

BGP - 4-byte AS RD and RT Support (RFC5668)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-xe-3s-book/irg-4byte-asn.html

BGP - mVPN Source-AS EC Filtering (SAFI 128/129)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-xe-3s-book/irg-mvpn-source-as-ec-filtering.html

BGP - NSR Enhancement

For detailed information, see the following Cisco document:

73New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 108: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-xe-3s-book/irg-nsr-sso.html

BGP - Sub-codes for BGP Cease notification (RFC 4486)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-xe-3s-book/irg-max-prefix.html

Bridge Domain Interface (BDI) IPv6 Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/bdi.html

Cayuga API support for Secure RTP forking

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-cube-uc-gateway-services.html

Cisco Service Discovery Gateway - Phase 2

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipaddr_dns/configuration/xe-3s/dns-xe-3s-book/Service-Discovery-Gateway.html

CRL pre-fetch with tunable timers

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/sec-pki-xe-3s-book/sec-cfg-auth-rev-cert.html

Delete crypto session(s) of revoked peer cert(s) on CRL download

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ikevpn/configuration/xe-3s/sec-ike-for-ipsec-vpns-xe-3s-book/sec-key-exch-ipsec.html

DNS debug changes

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/debug/command/i1/db-i1-cr-book/db-i1.html

Dynamic VLAN interface provisioning

For detailed information, see the following Cisco document:

74New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 109: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/isg-xe-3s-book/isg-dyn-vlan.html

Flexible NetFlow Export of TrustSec fields

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/sec-usr-cts-xe-3s-book/cts-fnf.html

GETVPN Routing Awareness for BGP

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-xe-3s-book/sec-get-vpn.html

IOS OSPF - OSPFv2 Autoroute Exclude

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-xe-3s-book/iro-autoroute-exclude.html

IPv6 VRF aware system message logging (syslog)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_l3_vpns/configuration/xe-3s/mp-l3-vpns-xe-3s-book/mp-ipv6-vrf-aware-syslog.html

ISM Restartability

When the ISM-VPN module is disabled because of a crash, the router’s encryption and decryption performance degrade due to the usage of an on board crypto-engine. The ISM Restartability feature allows you to reboot the module so that the ISM-VPN module can register again as a new crypto engine and download the relevant policies required to handle the crypto load of the router.

The ISM Module can be rebooted 3 times in an hour. However, if there are more than three crashes in less than an hour, the ISM-VPN module is not rebooted. You must reset the timers and enable the ISM-VPN module using the crypto engine slot and crypto engine accelerator command.

IPv6 Routing: IS-IS Support for IPv6

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/ip6-route-isis-xe.html

L2VPN HDLC to Ethernet Interworking

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/mpls.html

75New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 110: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

LISP and ZBFW Integration & Interoperability

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-zbf-xe-book/sec-zbf-lisp-inner-pac-insp.html

LISP Multicast

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-xe-3s-book/irl-lisp-multicast.html

Minimum Frame size 68-bytes on 40G Native Ethernet Line card on ASR1000

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/fixed_ethernet_linecard/ASRfelcconf_guide/ASRcfget.html

Multicast Traffic Blocking

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipmulti_pim/configuration/xe-3s/asr1000/imc-pim-xe-3s-asr1000-book/imc_basic_cfg.html

NBAR2 Integrated Protocol Pack 9.0.0

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/prot_lib/config_library/pp900/nbar-prot-pack900.html

OPTIONS PING support under HA config

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-stateful-switchover.html

PIM DR Loadbalancing

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipmulti_optim/configuration/xe-3s/imc-optim-xe-3s-book/imc_load_splt_ecmp.html

PMIP MAG SSO

For detailed information, see the following Cisco document:

76New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 111: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap/pmip-mag-sso.html

Pre-Paid support for Dual stack sessions

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/isg-xe-3s-book/isg-prepaid-bill.html

Performance Routing v3 (PfRv3)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/pfrv3/configuration/xe-3s/pfrv3-xe-3s-book.html

PBR: Match Track Object

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/iri-xe-3s-book/iri-pbr-match-track-object.html

QoS On Ethernet Over GRE (EoGRE)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap/ir-qos-eogre.html

Radius Proxy in pass-through mode

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/isg-xe-3s-book/isg-rp-passthru.html

Shaping on Dialer Interface

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_conavd/configuration/xe-3s/qos-conavd-xe-3s-book/qos-conavd-dial.html

SNMP MIB for dial peer connection status based on SIP OPTIONS KEEP ALIVE

The CISCO-VOICE-DIAL-CONTROL MIB is used to track the list of dial-peers configured in CUBE. This MIB is used to track the dial peer connection status based on SIP OPTIONS keepalive. The OID for the dial-peer table is “cvPeerCfgTable” "1.3.6.1.4.1.9.9.63.1.2.1"

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/voi-add-ref.html

77New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 112: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Support for IEEE 1588-2008 Precision Clock Synchronization Protocol

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/1588v2ptp.html

Third-Party GUID Capture for correlation between Calls and SIP based Recording

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube/configuration/cube-book/thirdp-guid-recording.html

TrustSec DMVPN Inline Tagging Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_dmvpn/configuration/xe-3s/sec-conn-dmvpn-xe-3s-book/sec-conn-dmvpn-ips-tag.html

web-auth for iWAG mobility (GTP/PMIPv6)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap/web-auth-gtp.html

ZBFW-ALG/AIC Conditional Debugging and Packet Tracing Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-zbf-xe-book/cond_debug_pack_tracing.html

Zone-based Firewall Per-filiter Statistics

The output of the show policy-map type inspect zone-pair has been modified to display filter statistics.

Zone-Based Firewall Support of Multipath TCP

Multipoint TCP seamlessly works with zone-based firewall Layer 4 inspection. Multipoint TCP does not work with application layer gateways (ALGs) and application inspection and control (AIC).

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-zbf-xe-book/sec-zone-pol-fw.html

78New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 113: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.9S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S.

79New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 114: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

80New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 115: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 81

• Important Notes, page 91

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.12S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS, page 82

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S, page 83

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S, page 83

Cisco Systems, Inc.www.cisco.com

Page 116: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS

The Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS introduces the Cisco ASR 1001-X Router.

Cisco ASR 1001-X Router

The Cisco ASR 1001-X router is a compact 1RU form factor that consumes less rack space and power while offering 20 Gbps forwarding throughput. The Cisco ASR 1001-X Router supports one half-height Shared Port Adapter (SPA) slot, one Network Interface Module (NIM) slot, six Gigabit Ethernet (GE) small form-factor pluggable (SFP) slots, and two 10 GE SFP+ slots.

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/install/guide/1001-x/asr1hig.html

82New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 117: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S

The following hardware is introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S.

ASR1000: 6x10GE Native Ethernet Line Card

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/install/guide/linecard/asr1lc_hig.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.0S.

AC-name and AC-cookie Knob for PPPoE PADS

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/bbdsl/configuration/xe-3s/bba-xe-3s-book/bba-pppoe-pads-disable-ac-info.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/bbdsl/configuration/xe-3s/asr1000/bba-xe-3s-asr1000-book/bba-pppoe-pads-disable-ac-info.html

ASR1000: 6x10GE Native Ethernet Line Card

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/fixed_ethernet_linecard/ASRfelcconf_guide.html

ASR 1000 FlexVPN Scaling Enhancement

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-ikev2-flex.html#GUID-B1054598-E968-416F-8A02-0A64642E77D5

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-flex-vpn-xe-3s-book/sec-cfg-ikev2-flex.html

ASR 1000 Minimal Disruptive Restart (MDR) Phase 3

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/issu.html

83New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 118: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Autoroute Announce and Forwarding Adjacencies for OSPFV3 over Ipv4 Te Tunnels

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-xe-3s-book/iro-ospf-autoroute.html

BGP Accumulated IGP

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-xe-3s-book/bgp-accumulated-igp.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-xe-3s-asr1000-book/bgp-accumulated-igp.html

Cisco Application Visibility and Control User Guide for IOS Release 15.4(2)T and IOS XE Release 3.12S

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios/solutions_docs/avc/ios15-4-2T-ios-xe3-12/avc-user-guide-ios15-4-2T-ios-xe3-12.html

Cisco Channelized T3 to DS0 Shared Port Adapter (SPA-2XCT3/DS0-V2, SPA-4XCT3/DS0-V2)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw/ASRswpref.html

Cisco Clear Channel T3/E3 Shared Port Adapter V2 (SPA-2XT3/E3-V2, SPA-4XT3/E3-V2)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw/ASRswpref.html

Cisco Trustsec Interface to SGT Mapping

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/sec-usr-cts-xe-3s-book/cts-interface-sgt-map.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/sec-usr-cts-xe-3s-asr-1000-book/cts-interface-sgt-map.html

Configurable CHAP Challenge Length

For detailed information, see the following Cisco document:

84New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 119: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_mlp/configuration/xe-3s/wan-mlp-xe-3s-book/wan-config-chap-chal-xe.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_mlp/configuration/xe-3s/asr1000/wan-mlp-xe-3s-asr1000-book/wan-config-chap-chal-xe.html

Create MIB Object to Track A Successful GDOI Registration

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-xe-3s-book/sec-get-vpn.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn-xe-3s-asr1000-book/sec-get-vpn.html

CUBE Serviceability Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_mgmt/configuration/xe-3s/cube-mgmt-xe-3s-book/voi-cube-service-evntlog-debugclass.html

Easy Performance Monitor Phase II

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/avc/configuration/xe-3s/asr1000/avc-xe-3s-asr1000-book/avc-ezpm.html

EIGRP Scale for DMVPN

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-xe-3s-book/eigrp-scale-for-dmvpn.html

Frame Relay over L2TPv3

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_lserv/configuration/xe-3s/asr1000/wan-lserv-xe-3s-asr1000-book/wan-l2-tun-pro-v3-xe.html

HA Checkpointing Support for Asymmetric Payload

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/cube-proto-xe-3s-book/voi-dymc-payld-dtmf.html

Inbound Leg Headers for Dial Peer Matching

For detailed information, see the following Cisco document:

85New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 120: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/dialpeer/configuration/xe-3s/vd-xe-3s-book/inbound-hdr-for-outbound.html

IP Access List Entry - Persistent Sequence Numbering Across Reloads

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/sec-data-acl-xe-3s-book/sec-acl-seq-num.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/asr1000/sec-data-acl-xe-3s-asr1k-book/sec-acl-seq-num.html

IP SLAs TWAMP Responder

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla-xe-3s-book/sla_twamp.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipsla/configuration/xe-3s/asr1000/sla-xe-3s-asr1000-book/sla_twamp.html

ISG Debuggability Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/isg-xe-3s-book/isg-debuggability.html

ISG IP Session and NAT Co-existence

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/asr1000/isg-xe-3s-asr-1000-book/isg-xe-3s-asr-isg-nat-combination.html

ISG L2 Subscriber Roaming

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/isg-xe-3s-book/isg-l2-roaming.html

Knob for Ping and Traceroute with VRF to Choose Global DNS Server

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mtr/configuration/xe-3s/mtr-xe-3s-book/mtr-support-multicast-vrf.html

L2VPN Local Switching-FR-Ethernet/VLAN

For detailed information, see the following Cisco document:

86New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 121: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_frly/configuration/xe-3s/wan-frly-xe-3s-book/wan-frly-eth-ls-xe.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_frly/configuration/xe-3s/asr1000/wan-frly-xe-3s-asr1000-book/wan-frly-eth-ls-xe.html

Label Switched Multicast (LSM) Multicast Label Distribution Protocol (mLDP) based Multicast VPN (mVPN) Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/lsmmldp.html

MAG to MAG Traffic Blocking on the PMIPv6 LMA

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mob_pmipv6/configuration/xe-3s/mob-pmipv6-xe-3s-book/imo-pmipv6-multipath-support.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mob_pmipv6/configuration/xe-3s/asr1000/mob-pmipv6-xe-3s-asr1000-book/imo-pmipv6-multipath-support.html

Mid-Call Renegotiation Support for DO-EO Calls

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_sip/configuration/xe-3s/cube-sip-xe-3s-book/do-to-eo.html

MLPoE at PTA

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_mlp/configuration/xe-3s/wan-mlp-xe-3s-book/wan_mlppp_eth_pta_xe.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_mlp/configuration/xe-3s/asr1000/wan-mlp-xe-3s-asr1000-book/wan_mlppp_eth_pta_xe.html

MPLS TE - Bundled Interface Support (EtherChannel and MLP)

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_te_path_setup/configuration/xe-3s/mp-te-path-setup-xe-3s-book/mp-bundle-interface.html

MPLS Traffic Engineering (TE) - Class-based Tunnel Selection

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_te_path_protect/configuration/xe-3s/mp-te-path-protect-xe-3s-book/mp-te-over-gre.html

87New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 122: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_te_path_protect/configuration/xe-3s/asr1000/mp-te-path-protect-xe-3s-asr1000-book/mp-te-over-gre.html

Multiple FlexVPN Spokes Behind a Single NAT Device

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-flex-spoke.html#GUID-42323D5A-D841-48AD-A6DC-2A432EA788A5

mVPNv6-mLDP over GREv4

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/configuration/guide/chassis/asrswcfg/lsmmldp.html#wp1111820

NBAR2 Custom Protocol Enhancements Phase II

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book/nbar2-custm-protocl.html

NBAR2 Integrated Protocol Pack 7.1.0

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/prot_lib/config_library/pp710/nbar-prot-pack710.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book/nbar-protocl-pack.html

NBAR2 Protocol Pack Hitless Upgrade

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book/nbar-pp-hitless.html

NBAR L3 Custom Protocol Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/qos-nbar-xe-3s-book/nbar2-custm-protocl.html

Object Groups for ACLs

For detailed information, see the following Cisco document:

88New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 123: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-zbf-xe-book/sec-zbf-ogacl.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-data-zbf-xe-asr1k-book/sec-zbf-ogacl.html

OnePK Support

For detailed information, see the following Cisco document:

https://developer.cisco.com/web/onepk

Open Plug-N-Play Agent

The Open Plug-N-Play Agent is a software module running on an IOS device. This feature enables the acquisition and loading of pertinent image, configuration, and other required files to the device along with notifications for various events.

In the absence of a startup configuration file, the Open Plug-n-Play agent attempts to discover the address of the Open Plug-n-Play server. For this the Open Plug-n-Play agent uses DHCP, Domain Name System (DNS) server and other methods to acquire the desired IP address of the PnP server.

Packet Classification Using Frame-Relay DLCI Number

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_classn/configuration/xe-3s/qos-classn-xe-3s-book/qos-classn-ntwk-trfc.html

PBR Recursive Next Hop for IPv6

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/iri-xe-3s-book/iri-pbr-rec-next-hop-support.html

https://www-author.cisco.com/c/en/us/td/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/asr1000/iri-xe-3s-asr1000-book/iri-pbr-rec-next-hop-support.html

Per-Interface QoS for PPPoE Punt Traffics

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-xe-3s-asr-1000-book/qos-plcshp-ctrl-pln-plc.html#d4235e1854a1635

Persistent CPU Index After ESP/RP Reboot

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/routers/asr1000/mib/guide/asr1kmib/asr1mib3.html#wp1988088

89New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 124: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

QoS on GEC PortChannel on ASR 1K

For detailed information, see the following Cisco document:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_mqc/configuration/xe-3s/asr1000/qos-mqc-xe-3s-asr1000-book/qos-mqc-xe-3s-asr1000-book_chapter_01011.html

RFC430x IPSec Support Phase-1

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_vpnips/configuration/xe-3s/asr1000/sec-sec-for-vpns-w-ipsec-xe-3s-asr1000-book/sec-rfc-430x-support.html

Simplified Line Side Support for CUCM on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_interop/configuration/xe-3s/cube-interop-xe-3s-book/voi-cucm-lineside.html

SIP Profiles for Inbound Messages

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_fund/configuration/xe-3s/cube-fund-xe-3s-book/voi-sip-param-mod.html

SPA-1xCHSTM1/OC3

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw/ASRswpref.html

Support AAC-LD MP4-LATM CODEC Support on CUBE for Interworking with Media Sense for Forked Calls

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/cube-proto-xe-3s-book/voi-cube-mp4-latm-codec.html

Support of AES-GCM as an IKEv2 Cipher on IOS

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-flex-vpn-xe-3s-book/sec-cfg-ikev2-flex.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-ikev2-flex.html

90New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 125: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

TrustSec Phase4

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/sec-usr-cts-xe-3s-book/cts-subnet-sgt-map.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/sec-usr-cts-xe-3s-book/cts-interface-sgt-map.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/sec-usr-cts-xe-3s-asr-1000-book/cts-subnet-sgt-map.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/sec-usr-cts-xe-3s-asr-1000-book/cts-interface-sgt-map.html

Tunnel Mode Auto Selection

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-flex-vpn-xe-3s-book/sec-cfg-ikev2-flex.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-ikev2-flex.html

TWAMP RFC compliance

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla-xe-3s-book/sla_twamp.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipsla/configuration/xe-3s/asr1000/sla-xe-3s-asr1000-book/sla_twamp.html

V.150.1 MER Support in SDP Passthru Mode

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/voice/cube_sip/configuration/xe-3s/cube-sip-xe-3s-book/voi-cube-v150-mer-sdp-passthru.html

VPLS BGP Signaling L2VPN Inter-AS Option B

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-l2-vpns-xe-3s-book/m_mp-vpls-bgp-sig-inter-as-option-b.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/asr1000/mp-l2-vpns-xe-3s-asr1000-book/m_mp-vpls-bgp-sig-inter-as-option-b.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S.

91New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 126: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.9S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S.

92New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 127: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 93

• Important Notes, page 105

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.11S:

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S, page 94

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S, page 94

Cisco Systems, Inc.www.cisco.com

Page 128: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S

No new hardware was introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.0S.

1 port OC-48 POS/RPR SPA with SFP Optics

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/asrovwpos.html

BGP - EVPN / PBB_EVPN route-reflection

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/bgp-l3vpn-evpn-rr-support.html

BGP - RTC for legacy PE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/bgp-rtc-for-legacy-pe.html

BGP GSHUT enhancement

The BGP Graceful Shutdown (GSHUT) Enhancement feature enables graceful shutdown of either all neighbors or only virtual routing and forwarding (VRF) neighbors across BGP sessions. The following command has been introduced in this feature: bgp graceful-shutdown all.

BGP Monitoring Protocol

The BGP Monitoring Protocol (BMP) feature enables configuration and monitoring of BMP servers, establishing connection with the BMP clients, and monitoring and reporting of all configured BGP neighbors.

The following commands were added or modified for this feature:

• The "bmp-activate" keyword was added to the "neighbor" command.

• The "bmp" command was added.

94New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 129: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

• The "bmp server" command was added to enable bmp-server configuration sub-mode under router configuration mode.

CAC for IP sessions Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

Cisco 8-Port Channelized T1/E1 Shared Port Adapter (SPA-8XCHT1/E1-V2)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

Configurable number of simultaneous packet per ZBFW session

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/conf-simul-pack-sess.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/conf-simul-pack-sess.html

CUBE HA Enhancements:Stateful Switch Over (SSO) for SIP Signaling over TCP/TLS connection, HA Protected State to simplify Active reboot, including SYSLOG msg,HA Box to Box Redundancy for ASR1006

This feature enhances existing CUBE High Availability and introduces the following

• Redundancy Group Protected mode

• Box to Box (B2B) redundancy support for customers that require large DSP resource capacity.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/products/sw/voicesw/ps5640/products_configuration_example09186a0080b40d82.shtml

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_mgmt/configuration/15-mt/cube-mgmt-15-mt-book.html

CUBE-SP: Blended transcoding and long user info

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_cd.html#wp1178317

Dial peer simplification

For detailed information, see the following Cisco document:

95New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 130: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/dialpeer/configuration/xe-3s/multiple-outBound-dial-peer.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/dialpeer/configuration/xe-3s/multiple-server-groups.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/dialpeer/configuration/xe-3s/vd-mdp-dialpeer.html

Disjoint LISP RLOC Domains Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-lisp-support-for-disjoint-rloc-domains.html

Dual Stack support for Mobile IP users - GTP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

Dual Stack support for Simple IP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

EIGRP Classic to Named mode Conversion

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/asr1000/ire-classic-to-named.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-classic-to-named.html

Enable Automatic configuration of Flow Metadata in the reverse direction

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mdata/configuration/15-mt/metadata-framework.html

Enable bi-directional SXP support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/cts-bi-sxp.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/cts-bi-sxp.html

96New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 131: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Enabling ALGs and AICs in Zone-Based Policy Firewalls

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/zbf-enable-alg-aic.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/zbf-enable-alg-aic.html

FlexVPN IPv6 Direct Spoke to Spoke

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/15-mt/sec-flex-spoke.html

Flow Based Redirect

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap_chapter_01000.html

Flow-Aware Transport of MPLS Pseudowires

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-any-transport-xe.html

FNF: Prevent Export Storms

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/asrovwser.html

FRR and VLAN Unlimited for 40G Native Ethernet Line card on ASR1000

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/fixed_ethernet_linecard/ASRoveth.html

GETVPN IKEv1 Separation

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn.html

97New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 132: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

HA Protected State to simplify Active reboot,including SYSLOG msg,HA Box to Box Redundancy for ASR1006

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_mgmt/configuration/xe-3s/voi-stateful-switchover.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_mgmt/configuration/xe-3s/asr1000/voi-stateful-switchover.html

IOS IKEv2 support for AutoReconnect feature of AnyConnect

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-cfg-recon-flex.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-cfg-recon-flex.html

IOS VRF Multicast Multi-Topology Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_pim/configuration/xe-3s/imc_pim_multicast_vrf.html

IP Tunnel - GRE Key Entropy Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ir-tunls-gre-entropy-xe.html

IPV4 ACL Chaining Support

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/asr1000/sec-data-acl-xe-3s-asr1000-book/sec-ip4-acl-chng-sup.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/sec-ip4-acl-chng-sup.html

IPv6 ACL Chaining with common ACL

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/asr1000/sec-data-acl-xe-3s-asr1000-book/sec-ip6-acl-chng-sup.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/sec-ip6-acl-chng-sup.html

98New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 133: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

IPv6 IPSec QoS (LLQ and QoS Pre-Classify)

The IPv6 IPSec QoS feature applies the Quality of Service (QoS) policies to IPV6 IPsec. This feature supports the following functionalities:

• Crypto LLQ QoS: Traffic that is classified as priority, for example PAK priority, is en-queued to the priority queue before the crypto processor. The Low Latency Queuing (LLQ) for IPSec encryption engines helps reduce packet latency for priority traffic.

• IPSec QoS pre-classify: QoS pre-classify is configured under a crypto map to enable IPSec to save the original Layer 3 and Layer 4 header before the encryption so that Quality of Service (QoS) can do the classification using the saved header.

• QoS group-based LLQ: The QoS group-based LLQ feature allows IPSec to check the LLQ QoS group setting to determine whether a packet is a high priority packet before it is en-queued to Low Latency Queue (LLQ).

The following commands were modified: crypto map and qos pre-classify to reflect IPv6 capabilities

ISDN Phase 2 (for LAC) on E1

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/vpdn/configuration/xe-3s/vpd-xe-3s-book/vpd-isdn-access-bba.html

ISG accounting accuracy (~ 1 sec accuracy at session and TC level)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

ISG / iWAG Templating Based Policy / Feature Provisioning

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/IWAG_Config_Guide_BookMap.html

ISIS - Remote LFA FRR

For detailed information, see the following Cisco document:

http://cisco.com/en/US/docs/wireless/asr_901/Configuration/Guide/remote_lfa-frr.html

ISIS local microloop protection

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/irs-uloop-local-avoid.html

99New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 134: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

L2TPv3 - Layer-2 Tunneling Protocol Version 3

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/ios_xe/wan/configuration/guide/wan_l2_tun_pro_v3_xe.html

Label Switched Multicast (LSM) Multicast Label Distribution Protocol (mLDP) based Multicast VPN (mVPN) support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/lsmmldp.html

LISP ESM Multihop mobility

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-lisp-esm-multihop-mobility.html

MMOH suport on ASR

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s//asr1000/voi-multicast-moh.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-multicast-moh.html

MPLS VPN over mGRE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ir-mpls-vpnomgre-xe.html

MTR in VRF

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mtr/configuration/xe-3s/asr1000/vrf-support-mtr.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mtr/configuration/xe-3s/vrf-support-mtr.html

Multi-Topology BGP with VRF enhancement

The Multi-Topology BGP with VRF enhancement feature enables multi- topology BGP routing in VRF. There are no new BGP commands introduced or modified for this feature. If multi-topology BGP is configured, the "address-family (ipv4 | ipv6) multicast" command under a specific "vrf definition" is used for configuration; else all multicast VRF activity is configured using the "address-family (ipv4 | ipv6)" command under "vrf definition".

100New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 135: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Multicast MT mode in VRF

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_pim/configuration/xe-3s/imc_pim_multicast_vrf.html

NBAR2: Add/rename static attributes

The custom values enable you to name the attributes based on grouping of protocols. You can create custom values for the application-group, category, and sub-category attributes. Use the ip nbar attribute application-group custom application-group-name, ip nbar attribute category custom category-name, and ip nbar attribute sub-category custom sub-category-name to add custom values for the attributes application-group, category, and sub-category, respectively.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/clsfy-traffic-nbar.html

NBAR2: GETVPN (Crypto-Map) Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/clsfy-traffic-nbar.html

NBAR2 Integrated Protocol Pack 6.0.0

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/prot_lib/config_library/pp600/nbar-prot-pack600.html

NBAR2: Integrate NBAR Taxonomy into the router

The NBAR taxonomy file contains the information such as common name, description, underlying protocol, for every protocol that is available in the protocol pack. Use the show ip nbar protocol-pack active taxonomy, show ip nbar protocol-pack inactive taxonomy, and show ip nbar protocol-pack loaded taxonomy commands to view the taxonomy for an active, inactive, and all loaded protocol packs, respectively.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/asr1000/nbar-protocl-pack.html

Observation Point ID - distinguish metrics from different interfaces

The Observation Point ID metric identifies a monitored interface for traffic in both directions (ingress and egress). A single flow definition using this metric can be used in place of match interface input and match interface output, making configuration more compact and enabling a single record collected on an interface to include metrics for traffic in both directions.

101New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 136: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios/solutions_docs/avc/ios_15.4_1T_ios_xe3_11/avc_user_guide_ios_15.4_1T_iosxe3_11.html

OSPF IPv4 Remote Loop Free Alternate IP Fast-reroute (Remote LFA IPFRR)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s//iro-ipfrr-lfa.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-ipfrr-lfa.html

OSPFv2 IP FRR Local Microloop Avoidance

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-ospfv2-ip-frr.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-ospfv2-ip-frr.html

OSPFv2 Multi Area Adjacency

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-multi-area-adj-xe.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-multi-area-adj-xe.html

OSPFv2 OSPF Live-live

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-ospfv2-ospf-live.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-ospfv2-ospf-live.html

OSPFv3 Authentication Trailer

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-ospfv3-authtrailer.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-ospfv3-authtrailer.html

102New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 137: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

OSPFv3 Multi Area Adjacency

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-v3-multi-area-adj-xe.html

PBR next hop verify availability for vrf

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/iri-pbr-next-hop-verify-availability-for-vrf.html

Per Tunnel QoS

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_dmvpn/configuration/xe-3s/sec-conn-dmvpn-per-tunnel-qos.html

PKI Split VRF in Trustpoint

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_pki/configuration/15-mt/sec-pki-split-vrf.html

Pv6 IPSec QoS (LLQ and QoS Pre-Classify)

The IPv6 IPSec QoS feature applies the Quality of Service (QoS)policies to IPV6 IPsec. This feature supports the following functionalities:

• Crypto LLQ QoS: Traffic that is classified as priority, for example PAK priority, is en-queued to the priority queue before the crypto processor. The Low Latency Queuing (LLQ) for IPSec encryption engines helps reduce packet latency for priority traffic.

• IPSec QoS pre-classify: QoS pre-classify is configured under a crypto map to enable IPSec to save the original Layer 3 and Layer 4 header before the encryption so that Quality of Service (QoS) can do the classification using the saved header.

• QoS group-based LLQ: The QoS group-based LLQ feature allows IPSec to check the LLQ QoS group setting to determine whether a packet is a high priority packet before it is en-queued to Low Latency Queue (LLQ).

The following commands were modified: crypto map and qos pre-classify to reflect IPv6 capabilities

Retain DSCP setting of RTP packet

This feature introduces the preserving and forwarding of Differentiated services code point (DSCP) markings received from endpoints by Cisco Unified Communications Manager (CUCM) when the programmed value from CUCM is NULL. Media Termination Point (MTP) does not store the DSCP for a session, but picks the value from an incoming packet and inserts it into an outgoing packet. Thus DSCP value from an endpoint can change in the middle of a session.

103New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 138: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Role-Based CLI Inclusive Views

For detailed information, see the following Cisco document:

www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cfg/configuration/xe-3s/sec-usr-cfg-xe-3s-book.html

www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cfg/configuration/xe-3s/asr1000/sec-role-base-cli.html

RSVP Over UDP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_rsvp/configuration/xe-3s/asr1000/rsvp_udp.html

Service Discovery Gateway

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_dns/configuration/xe-3s/dns-xe-3s-book_chapter_010.html

SIP ALG resilience to DOS attack

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sip-dos-nat-fw.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/zbf-enable-alg-aic.html

SIP Signaling Enhancements: URI based dialing, Pass-through of Unsupported and non-Mandatory Headers, CUBE Graceful Shutdown mode, Configurable SIP Error codes, SHA1_80 support in SRTP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_sip/configuration/xe-3s/voi-conf-pass-thro.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_sip/configuration/xe-3s/sip-supp-err-codes.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/sip-supp-srtp-term.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/sip-supp-uri-based-dialing.html

SP Wifi: Integrated Ethernet over GRE support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ir-eogre.html

104New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 139: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Support for adjustable statistics poll interval for SPA-8xCHT1E1

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/asrovwser.html

TCP MSS Adjust

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipapp/configuration/xe-3s/iap-xe-3s-book/iap-tcp.html

VRF aware BGP translate-update

The VRF aware BGP translate-update feature enables customer devices, that contain an old version of Cisco software that does not support multicast BGP routing, to advertise its routes to multicast VRF- Lite, multicast VPN for VPNv4 and VPNv6 neighbors, as well as through IPv6 over IPv4 tunnel. The "neighbor" command is modified to include the "translate-update" keyword that enables this feature and applies only to the VRF address families.

Weighted Fair Queueing, High Priority Policer and Configurable threshold for Pause Framesfeature for 40G Native Ethernet Line card on ASR1000

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/fixed_ethernet_linecard/ASRoveth.html

WSMA Enhancements for wireless management

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/wsma/configuration/xe-3s/asr1000/wsma-enhancements.html

http://www.cisco.com/en/US/docs/ios-xml/ios/wsma/configuration/xe-3s/wsma-enhancements.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

105New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 140: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.9S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S.

106New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 141: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 107

• Important Notes, page 123

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.10S:

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.2S, page 108

• New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S, page 108

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S, page 108

Note MLPPP Broadband functionality is not supported in release 3.10.1. It is recommended to use the feature with release 3.10.0.

Cisco Systems, Inc.www.cisco.com

Page 142: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.2S

WCCP with generic GRE Support

WCCP is extended to support generic GRE return method on Cisco IOS devices. Since GRE negotiated return is not supported on Cisco WAAS AppNav I/O module, customers need to use generic GRE tunnels (multipoint GRE) on the devices. That is, a mGRE tunnel needs to be configured manually on the device if the Cisco WAAS AppNav is configured with GRE return method.

Note Generic GRE tunnel does not work with loopback source address. Since the highest numbered loopback is reserved for WCCP, customers need to use the second highest loopback address.

Dropping TCP Packets During Router Reboot Process in AppNav Controller Group Scenario

For AppNav Controller Group (ACG) scenarios, a new CLI (service-insertion acg-reload-delay) provides a time delay before enabling WAN traffic for a router that has just rebooted. During the delay, the router drops all TCP packets passing through the WAN interface. This enables the router to synchronize flows before traffic is enabled, preventing unintended resetting of connections.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/routers/access/4400/appnav/csr-asr/apnavcsr.html

New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S

The following are the new hardware introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S.

Cisco ASR 1000 Series Fixed Ethernet Line Card

The Cisco ASR 1000 Series Fixed Ethernet Line Card (ASR1000-2T+20X1GE) is a fixed-port Ethernet line card for the Cisco ASR 1000 Series Aggregation Services Routers. The line card is capable of 40-Gbps full-duplex traffic forwarding using a fixed-port interface design. This line card has 20 1GigE ports and two 10GigE ports.The small form-factor pluggables (SFP and XFP modules) allow the line card to be configured for different media types (copper or fiber) and different optical requirements (single-mode fiber or multimode fiber), as available.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.10.0S.

108New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 143: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

1-port OC-192c/STM-64 POS/RPR Shared Port Adapter, XFP Optics

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

Add support for more than 32 FNF fields

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/fnetflow/configuration/xe-3s/asr1000/fnf-fnetflow.html

Aliases

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/AVC/configuration/xe-3s/asr1000/AVC-fld-alias.html

ASR1000 - 16k policy map scaling

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_mqc/configuration/xe-3s/asr1000/qos-apply.html

ASR-1000 Minimal Disruptive Restart (MDR) Phase 2 - POS SPA MDR

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/issu.html

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

ASR1000: 40G Native Ethernet Line card

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/fixed_ethernet_linecard/ASRfelcconf_guide.html

ASR1000-ESP200

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/install/guide/asr1routers/asr1ESP3.html

ATM support on SPA-24CHT1-CE-ATM on ASR1000

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

109New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 144: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Auto-IP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_ipv4/configuration/xe-3s/ipv4-xe-3s-book_chapter_011.html

BGP - L3VPN iBGP pe-ce (RFC 6368)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/L3VPN_iBGP_PE-CE.html

BGP NSR Support for MPLS VPNv4 and VPNv6 Inter AS Option B

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-bgp-nsr-inter-as-option-b.html

Bidirectional MPLS-TP LSP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-basic-xe-3s-book.html

Bowflex - NHRP snmp restructuring

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_dmvpn/configuration/15-mt/sec-conn-dmvpn-nhrp-mib.html

Bulk-logging and port block allocation

For detailed information, see the following Cisco document:

http://cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/iadnat-bpa.html

Cisco 8-Port Channelized T1/E1 Shared Port Adapter (SPA-8XCHT1/E1-V2)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

Configurable RTP port range per IP Address for RTP session connectivity

For ASR boxes, the RTP port range has been increased to a range of 8000 to 48200 to scale high call volumes. This port range allows up 10000 calls on a single interface.

110New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 145: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

CUBE Inter-Cluster Look up Service (ILS)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_interop/configuration/xe-3s/voi-cube-ils-service.html

CUBE Serviceability for event logging and debug classification

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_mgmt/configuration/xe-3s/asr1000/voi-cube-service-evntlog-debugclass.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_mgmt/configuration/xe-3s/voi-cube-service-evntlog-debugclass.html

CUCM Lineside support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_interop/configuration/xe-3s/voi-cucm-lineside.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_interop/configuration/xe-3s/asr1000/voi-cucm-lineside.html

Debuggability enhancement in IOS-XE Zone Based Firewall (Phase-II)

The Debuggability Enhancement Zone-Based Firewall provides the following functionalities:

• Severity levels for debug logs. For more information see the Firewall High-Speed Logging module at:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-zone-pol-fw.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-zone-pol-fw.html

• Conditional Debugging: Prior to the introduction of this feature, when firewall debug is enabled, debug messages are logged for all traffic passing through the firewall. To enable conditional debugging of a single flow of traffic, the following debug command was added: debug platform condition

• The following commands are also introduced in Cisco IOS XE Release 3.10S:

– show policy-firewall config platform

– show policy-firewall sessions platform

– show policy-firewall stats platform

DHCP-SIP and Walkby Integration

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/configuration/xe-3s/isg-wlkby-supp.html

111New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 146: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Disabling Flow Cache Entreis in NAT and NAT64

For detailed information, see the following Cisco document:

http://cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-disable-flow-ent.html

http://cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/iadnat-disable-flow-ent.html

Easy Performance monitor

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/AVC/configuration/xe-3s/asr1000/AVC-ezpm.html

Ethernet over GRE Tunnels

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ir-eogre.html

EVC On Port-channel

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/EVCs_on_portchannel.html

eiBGP multipath for non VRF interfaces (IPv4/IPv6)

For detailed information, see the following Cisco document:

www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-eibgp-multipath-for-nonvrf-interfaces.html

EIGRP Over the Top

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/15-s/ire-eigrp-over-the-top.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-eigrp-over-the-top.html

FlexVPN Mixed Mode support

The FlexVPN Mixed Mode feature provides support for carrying IPv4 traffic over IPsec IPv6 transport. This is the first phase towards providing dual stack support on the IPsec stack. This implementation does not support using a single IPsec security association (SA) pair for both IPv4 and IPv6 traffic.

This feature is only supported for Remote Access VPN with IKEv2 and Dynamic VTI.

112New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 147: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

GETVPN CRL Checking

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-crl-checking.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn-crl-checking.html

GETVPN Resiliency - GM Error Detection

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn-resiliency-gm-error-detection.html

GETVPN support with SuiteB

GETVPN support with SuiteB is supported only on ESP100, ESP200, ASR1002-x platform. When show crypto godi ks member command is executed, it will show 1.0.7 on non-suiteB supported platform and 1.0.8 in suiteB supported platform.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-suiteb.html

GTPv2 support in iWAG - Intelligent Wireless Access Gateway on ASR1K

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/iwag_asr1k.html#wp1092054

IKE Profile based tunnel selection

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_vpnips/configuration/xe-3s/sec-ipsec-virt-tunnl.html

IKEv1 SHA-2 support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn.html

IOS BGP - BGP C-Route Full SM Support

The IOS BGP - BGP C-Route Full SM Support feature introduces a new CLI command, mvpn single-forwarder-selection highest-ip-address, which configures the BGP MVPN UMH chosen via the highest ip address.

For detailed information, see the following Cisco documents:

113New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 148: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/command/irg-cr-book.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_mvpn/configuration/xe-3s/imc_bgp_croute.html

IOS-XE GTP TEID based ECMP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipswitch_cef/configuration/xe-3s/asr1000/isw-cef-load-balancing.html#GUID-8BDF5B19-7AA9-461D-9863-B56784C126D0

IP SLAs - Asymmetric probe support for UDP jitter

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_udp_jitter.html

IPSec debugability enhancement

The IPSec debugability enhancement feature implements the following:

• An unique session ID for IPsec and IKE debugs. This session is allocated for each active peer and groups the IPsec and IKE debugs.

• The session ID is displayed in the show crypto session command.

• Support for crypto IPsec event tracing.

• Conditional debugging and filtering mechanism for peer sessions.

For more information on these two commands, see the following:

Cisco IOS Security Command Reference: Commands S to Z

IPv6 SNMP MIB support for voice features

The MIB objects relevant to Cisco UBE that have transport-related information such as IPV6 address and type of IP (IPV4 or IPV6) have been verified.

The criteria used for the enhanced MIBs are:

• The MIB should have voice/video related information.

• MIB objects should have IP address element in them.

The following MIBs satisfied the above criteria:

• CISCO-VOICE-DIAL-CONTROL-MIB

• CISCO-RTTMON-MIB

• CISCO-RTTMON-IP-EXT-MIB

• CISCO-SIP-CALLS-MIB

• CISCO-POP-MGMT-MIB

IPv6 Static Route support for Object Tracking

For detailed information, see the following Cisco document:

114New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 149: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

iWAG - Intelligent Wireless Access Gateway SSO support for GTP on ASR1K

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/iwag_asr1k.html#wp1099408

iWAG Scale Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/iwag_asr1k.html#wp1099408

L2VPN Static to Dynamic PW Interconnection & PW Preferred Path for MPLS-TP Tunnels

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_transport_profile.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-mpls-tp.html#GUID-1A1B84C1-51B6-4A61-9E17-8B14109EDCA7

L3VPN per CE label

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l3_vpns/configuration/xe-3s/asr1000/mp-vpn-ce-label.html

LI support for IPoE sessions

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cfg/configuration/xe-3s/asr1000/sec-lawful-intercept-IPoE.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cfg/configuration/xe-3s/sec-lawful-intercept-IPoE.html

Loose Checking Option for TCP Window Scaling in ZBFW

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-loose-check-option-TCP.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-loose-check-option-TCP.html

115New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 150: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

MPLS Traffic Engineering Non-Stop Routing Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_ha/configuration/xe-3s/mp-nsr-supp.html

MPLS VPN over mGRE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/interface/configuration/guide/ir_mplsvpnomgre.html

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ir-mpls-vpnomgre-xe.html

MPLS VPN Per CE Label Allocation

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l3_vpns/configuration/xe-3s/asr1000/mp-vpn-ce-label.html

MPLS-TP OAM: Continuity Check via BFD

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-mpls-tp.html#GUID-5FAE56DC-1B64-474D-923E-AF54B9D8129D

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_transport_profile.html

MPLS-TP OAM: Fault Management

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_transport_profile.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-mpls-tp.html#GUID-5FAE56DC-1B64-474D-923E-AF54B9D8129D

MPLS-TP OAM: GACH

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_transport_profile.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-mpls-tp.html#GUID-5FAE56DC-1B64-474D-923E-AF54B9D8129D

MPLS-TP OAM: Ping/Trace

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_transport_profile.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-mpls-tp.html#GUID-5FAE56DC-1B64-474D-923E-AF54B9D8129D

116New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 151: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

MPLS-TP Path Protection

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_transport_profile.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/mp-mpls-tp.html#GUID-4E3C4BA8-0777-4CC3-9CC4-84D5956756E4

MVPN BGP C-Route Full SM Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_mvpn/configuration/15-s/imc_vpn_bgp_croute.html

MVPN mLDP Partitioned MDT including wildcard

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_mvpn/configuration/xe-3s/imc_mldp_mdt.html

NAT increase VRF scale to 4k

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-addr-consv.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/iadnat-addr-consv.html

Network-based recording of video calls using Cisco UBE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-ntwk-based-rec-video-calls.html

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/15-mt/voi-ntwk-based-rec-video-calls.html

NHRP SNMP Restructuring

The NHRP SNMP Restructuring feature provides hardening support to NHRP MIBs. The snmp mib nhrp command is disabled by default. To enable you must explicitly configure it using the snmp mib nhrp command.

The snmp mib nhrp status command displays information about the following:

• The state of the tree.

• The enable or disable status of the NHRP MIB.

• The number of allocation tree nodes.

The debug snmp mib nhrp command enables debugging for NHRP MIBs.

For more information, see the following documents:

117New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 152: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

• Cisco IOS Debug Command Reference - Commands S through Z

• Cisco IOS SNMP Support Command Reference

No Service Password-Recovery

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cfg/configuration/xe-3s/asr1000/sec-usr-cfg-xe-3s-asr-1000-book.html

OSPFv2 Cryptographic Authentication

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-ospfv2-crypto-authen-xe.html

OSPFv2 Multi Area Adjacency

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-multi-area-adj-xe.html

OTV Enhancements

The OTV enhancement include:

• OTV VRF Aware

OTV join interfaces can be part of a VRF. This allows for OTV forwarding of L2 packets via a VRF L3 domain.

• OTV Sub-interface as join interface

Sub-interfaces can be configured as OTV join interfaces. This allows more flexibility with the L3 side OTV configuration.

• OTV Port-channel as join interface

Port-channel interfaces can be configured as OTV join interfaces. This allows interface redundancy for L3 side OTV connections.

• OTV Port-channel as internal interface

Port-channel interfaces can be configured as OTV internal interfaces. This allows interface redundancy for L2 side OTV connections.

For detailed information, see the following Cisco document

http://www.cisco.com/en/US/docs/ios-xml/ios/wan_otv/configuration/xe-3s/wan-otv-confg.html

Per ACE QoS Statistics

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_mqc/configuration/xe-3s/qos-per-ace.html

118New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 153: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Per COS Storm Control for Broadcast/Unknown Unicast/Multicast for EVC ports in ASR1k

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/Storm_Control_ASR1K.html

PKI - New cert attributes

The PKI New Cert Attributes feature provides the following enhancements to Public Key Infrastructure (PKI):

• NVRAM Exhaustion

• Fresh Enrollment

NVRAM Exhaustion

Certificates and certificate revocation lists (CRLs) are used by devices when a certificate authority (CA) is used. Certificates and CRLs can be stored in NVRAM or an external database. If an external database is used to store certificates, there is no need to delete the expired certificates. Each certificate and CRL uses a moderate amount of memory. The following are stored in NVRAM:

• CA certificates and CRLs

• Certificates issued by CA server to clients

When a client renews its certificate, the new certificate, along with old certificates, is stored in NVRAM. This decreases the NVRAM space. As more certificates are stored, the NVRAM space is exhausted and this brings down the CA server, which then is unable to retrieve certificates. Manual intervention is required to restore space in NVRAM and bring the CA server up again.

To avoid NVRAM space exhaustion and manual intervention to bring up the CA server, a new timer triggers the database cleanup event. The timer starts when the first certificate is issued, and the timer interval is based on the client certificate life time configuration in the CA server. The timer scans the database and removes expired certificates that are not required, thereby preventing the CA server from going down because of NVRAM exhaustion. The timer information is displayed in the output from the show crypto pki timer command. Note that the timer applies only when certificates are stored in NVRAM and the database level is set to “complete.” However, when NVRAM is used to store certificates and the database level is configured with minimum or names, there is no need to delete the expired certificates because the certificates do not consume much space.

The certificates in the CA server can also be deleted by using the no crypto pki server name command. the following warning appears, when you configure this command:

Device(config)# no crypto pki server ABC-CACA certificate, Keypair, CRL and database files will be deleted. Do you wish to continue? [yes/no]:

If “yes” is entered, all files are removed from the database.

For more information on commands, see the following documents:

Cisco IOS Security Command Reference: Commands A to C

Cisco IOS Security Command Reference: Commands S to Z

119New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 154: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Fresh Enrollment

The auto-enroll feature helps the device to renew the router certificate when it expires. Sometimes, the router certificate may not be enrolled if the CA server is not reachable or if the client is shut down. The back off mechanism prevents the device from having an expired certificate by renewing the certificates. The certificates are renewed by continuous contact with the CA server at specific intervals by using the retry count and retry period keywords in the enrollment command.

When a device certificate expires, the back off mechanism does the following:

• Issues a fresh enrollment request and starts the default back off mechanism or follow the configured retry counts. This step is repeated to obtain a fresh certificate.

• The enrollment request does not contain expired certificate keys, if the trustpoint is configured with the regenerate command. The regenerate command assigns new keys. To issue an enrollment request with the expired certificate keys, do not specify the regenerate command.

The following example shows how to configure the retry count and period keywords:

Device(config)# no crypto pki server ABC-CA redundancy enrollment retry count 10 enrollment retry period 1 enrollment url http://ABC_CA:80 revocation-check crl auto-enroll 70 hash sha1end

The default retry count is 10. The following table provides information when the enrollment does not happen:

After the default retry count, the enrollment request is deleted. If the certificate expires, the 5-second interval is employed to reach the CA.

For more information on the commands, see the following documents:

Cisco IOS Security Command Reference: Commands D to L

Cisco IOS Security Command Reference: Commands M to R

Retry Timeout

1 1 minute

2 1 minute

3 2 minutes

4 5 minutes

5 10 minutes

6 20 minutes

7 40 minutes

8 60 minutes

9 90 minutes

10 120 minutes

120New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 155: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

PMIP: Multipath support on MAG

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mob_pmipv6/configuration/xe-3s/asr1000/imo-pmipv6-multipath-support.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mob_pmipv6/configuration/xe-3s/imo-pmipv6-multipath-support.html

Pseudowire Group Switchover

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/asr903/l2vpn-pw-group-switchover.html

RFC4303 IP Encapsulating Security Payload (ESP) dummy packet for traffic flow confidentiality (TFC)

The RFC 4303 IP Encapsulating Security Payload (ESP) dummy packet for traffic flow confidentiality (TFC) feature provides RFC 4303 support in Cisco software. RFC 4303 describes two methods to hide the characteristics of traffic that is passing through an IPsec flow. The first method involves adding extra padding beyond the allowed maximum of 255 bytes after the payload data when using the Encapsulating Security Payload (ESP) protocol for traffic confidentiality. The second method involves adding extra "dummy" packets to the traffic flow. The generation and transmission of dummy packets is implemented in Cisco software through the RFC4303 IP Encapsulating Security Payload (ESP) dummy packet for traffic flow confidentiality (TFC) feature. A dummy packet is designated by setting the next header field in the ESP packet to a value of 59. The dummy packets are discarded when the packets are received by the device. The standard ESP header and trailer fields are present in a dummy packet. The payload (plain text) in the dummy packet contains zero which becomes random data after encryption. You can specify the time interval at which to generate the dummy packets. You can enable generating dummy packets globally using the crypto ipsec security-association dummy command or you can enable dummy packets for a crypto map using the set security-association dummy command. When enabled for a crypto map, dummy packets are enabled for all flows that are created using the crypto map.

For more information on commands, see the following documents:

Cisco IOS Security Command Reference: Commands A to C

Cisco IOS Security Command Reference: Commands S to Z

Secure CDP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cdp/configuration/xe-3s/asr1000/nm-cdp-secure.html

Secure Shell-Configuring User Authentication Methods

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_ssh/configuration/xe-3s/asr1000/sec-ssh-config-auth.html

121New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 156: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_ssh/configuration/xe-3s/sec-ssh-config-auth.html

SPA-4XOC3-POS-V2 support on ASR-1000

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

Support for dynamic payload type interworking for DTMF and codec packets for SIP to SIP calls

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-negt-aud-code.html

TDOS Attack prevention on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-cube-tdos-attack-mitigation.html

TrustSec SGT Handling: L2 SGT imposition and forwarding

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/cts-sgt-handling-imp-fwd.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cts/configuration/xe-3s/asr1000/cts-sgt-handling-imp-fwd.html

UC GW Services - media forking service

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-cube-uc-gateway-services.html

VASI (VRF Aware Software Infrastructure) 2000 pairs scale

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/conf-vasi.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/conf-vasi.html

VP/VC Shaping for PPPoEoA/PPPoA

For detailed information, see the following Cisco document:

122New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 157: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-xe-3s-asr-1000-book.html

VRF-Aware IPv6 Rapid Deployment Tunnel

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ip6-6rd-vrf-tunnels-xe.html

VRRP aware PIM

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_pim/configuration/xe-3s/imc_vrrp_aware.html

VRRPv3: Object Tracking Integration

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipapp_fhrp/configuration/xe-3s/asr1000/fhrp-vrrpv3-obj-trk.html

WCCPv2 - IPv6 Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipapp/configuration/xe-3s/asr1000/iap-xe-3s-asr1000-book.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

123New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 158: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.9S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S.

124New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.10S

OL-26698-25

Page 159: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 125

• Important Notes, page 134

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.9S:

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S, page 125

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S, page 126

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S, page 126

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.2S.

Cisco Systems, Inc.www.cisco.com

Page 160: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

SFR Counter Support

Added support for collecting total L3 packets and total L3 bytes sent by client or server.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/access/ISRG2/AVC/api/guide/AVC_Metric_Definition_Guide.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.1S.

SP WiFi: Integrated Ethernet over GRE Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/EoGRE.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.9.0S.

ALG/AIC Serviceability

The ALG-AIC Serviceability feature performs packet filtering. When a packet matches the configured filters, debug messages are logged. The ALG-AIC Serviceability feature provides the following functions:

• Debugs a single traffic flow.

• Enables debug logs for specific application layer gateways (ALGs) and application inspection and control (AIC) policies.

The following commands were introduced or modified for the ALG-AIC Serviceability feature:

• show platform hardware qfp feature alg

• show platform hardware qfp feature td

• show tech-support alg

AppNav-XE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/routers/access/4400/appnav/csr-asr/apnAVCsr.html

126New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 161: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

AVC—Enhanced Connection/Transaction Metrics

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/solutions_docs/AVC/ios_xe3_9/AVC_soln_guide_iosxe3_9.html

AVC—Monitoring QoS Metrics

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/solutions_docs/AVC/ios_xe3_9/AVC_soln_guide_iosxe3_9.html

AVC—Enforcement of NBAR Advanced Mode

Note Beginning with the IOS XE 3.9 release, using NBAR advanced mode requires a license for AVC functionality. License details vary according to router model.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/solutions_docs/AVC/ios_xe3_9/AVC_soln_guide_iosxe3_9.html

BB/ISG IOSXE Serviceability Enhancement

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/command/isg_m1.html#wp3145726977

BFD Support for Multicast (PIM)

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_pim/configuration/15-s/imc_bfdpim.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_pim/configuration/xe-3s/asr1000//imc_bfdpim.html

BGP—IPv6 NSR

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-ipv6-nsr.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-ipv6-nsr.html

BGP—Local-AS Allow-Policy

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/15-s/irg-local-as-policy.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-local-as-policy.html

127New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 162: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-local-as-policy.html

BGP—RT or VPN-ID Attribute Rewrite Wildcard

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/15-s/irg-rtp-vpn-distinguisher.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-rtp-vpn-distinguisher.html

BGP—VRF Aware Conditional Advertisement

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/15-s/irg-vrf-conditional-adv.html For Cisco IOS Release 15.3(2)S

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-vrf-conditional-adv.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-vrf-conditional-adv.html

EIGRP Debug for EVN

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/evn/configuration/xe-3s/evn-mgt-ts.html

EIGRP Support for 6PE/6VPE

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/15-s/ire-15-s-book_chapter_010000.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-xe-3s-book_chapter_010010.html

Flexible NetFlow—Permanent Cache

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/fnetflow/configuration/guide/fnetflow_overview.html

Flexible NetFlow—MPLS Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/fnetflow/configuration/xe-3s/fnf-mpls-support.html

128New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 163: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

GTP v2 Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-zbf-gtpv2.html

IPSec Serviceability Debug

The IPSec Serviceability Debug feature enhances Cisco IOS XE software by improving the following areas:Packet tracing—Traces a packet through the data path and identifies the area where and why a packet was dropped.show commands—Provides accurate and relevant information in the command output. Cisco IOS XE software provide an easy means to locate feature specific commands.debug commands—Provides better control plane and data plane debugging.System trace files—Provides ability to log structured messages.

For more information on show commands, refer to the Cisco IOS Security Command Reference: Commands S to Z (http://www.cisco.com/en/US/docs/ios-xml/ios/security/s1/sec-s1-cr-book.html).

For more information on debug commands, refer to the Cisco IOS Debug Command Reference - Commands I through L (http://www.cisco.com/en/US/docs/ios-xml/ios/debug/command/i1/db-i1-cr-book.html).

IPv6 Destination Guard

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6/configuration/15-2s/ipv6-dest-guard.html

http://www.cisco.com/en/US/docs/routers/7600/ios/15S/configuration/guide/IPv6_Security.html

IPv6 Neighbor Discovery Multicast Suppress

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-3s/asr1000/ip6-nd-mcast-supp.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-3s/ip6-nd-mcast-supp.html

IPv6—RIPng VRF Aware Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_rip/configuration/15-s/irr-ipv6-ripng.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_rip/configuration/xe-3s/irr-ipv6-ripng.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_rip/configuration/xe-3s/asr1000/irr-ipv6-ripng.html

IP SLA - Service Performance Testing Infrastructure

For detailed information, see the following Cisco document:

129New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 164: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/15-s/sla_y1564.html

IPv6 Snooping

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6_fhsec/configuration/15-s/ip6-snooping.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-3s/asr1000/ip6-snooping.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-3s/ip6-snooping.html

IPv6 Source or Prefix Guard

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6_fhsec/configuration/xe-3s/ip6-src-guard.html

IPv6—Unicast Router Advertisement Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/configuration/xe-3s/isg-ipv6-unicast-ra.html

L2VPN Protocol Base CLIs

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-l2-vpns-xe-3s-book.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/l2vpn-prot-based.html

Layer 2 Local Switching—ATM to Ethernet

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios/12_0s/feature/guide/fslocal.html

LISP Host Mobility Extended Subnet

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-host-mob.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/15-mt/irl-host-mob.html

LISP Host Mobility Across Subnet

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-host-mob.html

130New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 165: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

LISP—SHA-2 Support for Site Registration

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-overview.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/15-mt/irl-overview.html

mDNS for kWAAS

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/wan_waas/configuration/xe-3s/wan-waas-mdns-kwaas.html

MediaTrace 3.0—MIB, IPv6, MIB Profiles and Reverse MediaTrace

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/media_monitoring/configuration/15-mt/mm-mediatrace.html

MPLS—TP: Linear Protection or PSC support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_basic/configuration/xe-3s/asr903/mp-basic-xe-3s-asr903-book.html

NAT—Paired Address Pooling Support

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-addr-pool.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/iadnat-addr-pool.html

Network-Based Recording Using Cisco UBE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-ntwk-based.html

NSR—LDP Support

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_ha/configuration/xe-3s/asr1000/mp-nsr-ldp-supp.html

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_ha/configuration/xe-3s/mp-nsr-ldp-supp.html

131New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 166: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

OTV Adjacency Server

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/wan_otv/configuration/xe-3s/wan-otv-adj-server.html

Parent Level Overhead Accounting

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/asr1000/qos-plcshp-ether-ohead-actg.html

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_plcshp/configuration/xe-3s/qos-plcshp-ether-ohead-actg.html

PMIP Mobility—3G Mobility Anchor

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/mob_pmipv6/configuration/xe-3s/imo-pmipv6-3gma-support.html

PPTP ALG for PAT Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-pptp-pat.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/iadnat-pptp-pat.html

RaBaPol Shorten Policy Map Names

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/command/isg_m1.html

Radius Event Timestamp Attribute Support

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_radatt/configuration/15-s/sec-rad-att-55-event-timestamp.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_radatt/configuration/xe-3s/sec-rad-att-55-event-timestamp.html

Recursive Static Route

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_pi/configuration/15-s/iri-15-s-book_chapter_01101.html

132New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 167: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_pi/configuration/xe-3s/iri-xe-3s-book_chapter_01110.html

Scale up to 128K for Bridge Domain Mac Address

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/cether/configuration/xe-3s/ce-mac-addlmt-bdsin.html

Simple Network Time ProtocolV4 (SNTPV4)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/bsm/configuration/15-s/bsm-sntpv4.html

SP or WiFi: iWAG Access Tunnels: PMIPv6 LMA (128k tunnels)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/iwag_asr1k.html

Storm Control for Broadcast or Unknown Unicast or Multicast For EVC Ports in ASR1K

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mpls/command/mp-cr-book.html

Unidirectional Link Detection Protocol (UDLD) on ASR 1000

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/udld_on_asr1k.html

ZBFW Serviceability Phase-1

The zone-Based Firewall Serviceability feature provides granular drop counters:

Prior to the introduction of the granular drop counters, only a globaldrop count was available. The granular drop counter provides more information about the reasons for packet drops, than the global drop count. See the show platform hardware qfp feature firewall drop command for more information about firewall drop counters.

The following commands were introduced or modified by this feature:

• show platform hardware qfp feature firewall

• show platform hardware qfp active feature firewall datapath

• show platform hardware qfp active feature firewall drop

• show platform software firewall

• show policy-firewall stats global

• show tech-support firewall

133New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 168: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.9S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S.

134New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.9S

OL-26698-25

Page 169: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 135

• Important Notes, page 147

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.8S:

• New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S, page 135

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S, page 136

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

The following are the new hardware features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S.

Cisco Systems, Inc.www.cisco.com

Page 170: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

8 port clear channel T3/E3 SPA - SPA-8XT3/E3

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/install_upgrade/ASR1000/asr_sip_spa_hw.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S.

8-Port Clear Channel T3/E3 SPA - SPA-8XT3/E3

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

Add Path Support in EIGRP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-add-path.html

Ambiguous VLAN Support for IP Sessions over ISG (Limited Feature Support)

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/configuration/xe-3s/isg-ambig-vlan.html

ASR1K-SIP40 ISSU MDR Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/issu.html

AVC Limited Availability

Note The AVC solution is currently in limited availability (LA) to control customer adoption, gain more visibility about technical issues, and improve general usability for Cisco Prime Infrastructure throughout the LA period. To ensure the smoothest possible implementation, please contact the AVC support team at the following address as you plan your deployment: [email protected].

BFD Dampening

For detailed information, see the following Cisco document:

136New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 171: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bfd/configuration/xe-3s/irb-bfd-damp.html

BGP—Multicast VPN BGP Dampening

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-mvpn-damp.html

BGP—Multiple Cluster IDs

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-multicluster-id.html

BGP—VPN Distinguisher Attribute

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-vpn-distinguisher.html

Call Escalation from Voice to Video

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/voice/cube/configuration/guide/vb-gw-sipsip.html

Cisco Data Collection Manager

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/bsdcm/configuration/15-mt/bsdcm-15-mt-book.html

http://www.cisco.com/en/US/docs/ios-xml/ios/bsdcm/configuration/15-mt/nm-bs-dcm.html

Classification Enhancements for IOS-XE3.8

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/prot_lib/config_library/xe38/configuration/nbar-prot-lib38.html

Configuring ITU-T Y.1731 Fault Management Functions

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-cfm-y1731-ieee.html

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-cfm-y1731-ieee.html

137New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 172: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Diffserv MIB

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_dfsrv/configuration/xe-3s/asr1000/qos-dfsrv-xe-3s-asr1000-book.html

Embedded Packet Capture (EPC)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/epc/command/monitor_capture_through_show_monitor_capture.html

Enable Visualization of Application Usage

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/AVC/configuration/xe-3s/AVC-xe-3s-book.html

Enable Visualization of Service Path

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/AVC/configuration/xe-3s/cfg-AVC2-xe.html

E-OAM-CFM CCM Hardware Offload

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/command/ce-cr-book.html

Ethernet Local Management Interface (LMI) at Provider Edge (PE)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-elmi-pe.html

Flexible NetFlow—Egress VRF Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/fnetflow/configuration/xe-3s/cust-fnflow-rec-mon-xe.html

iWAG – Intelligent Wireless Access Gateway

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/iwag_asr1k.html

138New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 173: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Excalibur Reverse L2GP

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/mpls_ps9343_TSD_Products_Configuration_Guide_Chapter.html

GDOI MIB Support for GET VPN

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn-gdoi-mib-support.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-gdoi-mib-support.html

GETVPN GM Removal and Policy Trigger

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn-gm-removal-and-policy-trigger.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn-gm-removal-and-policy-trigger.html

GETVPN Troubleshooting

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/asr1000/sec-get-vpn.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn.html

Graceful Shutdown Support for OSPFv3

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/15-s/iro-ospfv3-gshutdown.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/ip6-route-ospfv3-gr-rest-xe.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-ospfv3-gshutdown.html

3GPP Release 7 & 8 Support for GPRS Tunneling Protocol AIC

This feature provides support for the GPRS Tunneling Protocol (GTP) application inspection and control (AIC) parser upgrade according to 3rd Generation Partnership Project (3GPP) Technical Specification (TS) 29.060 release 7 and 8. All the configurations and restrictions that apply to the GTP AIC and Gateway General packet radio service (GPRS) Support Node (GGSN) pooling specifications also apply to this feature.

139New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 174: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

HSRP: Global IPv6 Address

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipapp_fhrp/configuration/15-s/ip6-fhrp-hsrp.html

H-VPLS N-PE Redundancy for MPLS Access

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-hvpls-npe-red-mpls-access.html

H-VPLS N-PE Redundancy for QinQ Access

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-hvpls-npe-red.html

IEEE 802.1ab LLDP (Link Layer Discovery Protocol)

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-lldp-multivend.html

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-lldp-multivend.html

IKEv1 Hardening

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/sec_secure_connectivity/configuration/guide/sec_call_addmsn_ike.html

IKEv2 Remote Access Hardware Client

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/sec-cfg-flex-clnt.html

Inter-Chassis HA Support in IPV6 ZBFW

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-data-ha-ipv6-zbf.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-data-ha-ipv6-zbf.html

140New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 175: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

IP Unnumbered Ethernet Polling Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_ipv4/configuration/xe-3s/IP-unnumbered-Ethernet.html

IPSLA Multicast Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/15-s/sla_mcast_suppt.html

IPV6 MVPN with MLDP

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_lsm/configuration/xe-3s/asr1000/imc_mldp-based_mvpn.html

IPv6 Remote Access for IPSec VPN

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-flex-clnt.html

IPv6 Transport for DMVPN

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/ipv6/configuration/guide/ip6-dmvpn.html

IPv6 ZBFW B2B HA Support

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/asr1000/sec-b2b-ha-ipv6.html

ISDN/Dialer Access-Link Support for Broadband Aggregation

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/vpdn/configuration/xe-3s/asr1000/vpd-isdn-access-bba.html

ISIS No Hello Padding Always

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_isis/command/irs-cr-book.html

141New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 176: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

ISSU—E-LMI Support

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-elmi-pe.html

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-elmi-pe.html

L2VPN VPLS Inter-AS, Option B

For detailed information, see the following Cisco documents:

www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/asr1000/mp-inter-as-option-b.html

Label Switched Multicast (LSM) Multicast Label Distribution Protocol (mLDP) based Multicast VPN (mVPN) Support

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/lsmmldp.html

LISP Delegate Database Tree (DDT)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-ddt.html

LISP Host Mobility Across Subnet

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-host-mob.html

LISP-SEC, LISP Control Plane Security

The LISP Security (LISP-SEC) feature enables a set of security mechanisms that provide origin authentication, integrity, and anti-replay protection for map-request/map-reply mapping resolution exchanges.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/command/ip-lisp-cr-book.html

Mapping of Address and Port Using Translation (MAP-T)

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/asr1000/ip-nat-divi-v4v6.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/ip-nat-divi-v4v6.html

142New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 177: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

MGRE Tunnel Support over IPv6

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios/ipv6/configuration/guide/ip6-dmvpn.html

http://www.cisco.com/en/US/docs/ios/ipv6/configuration/guide/ip6-tunnel.html

MLDP-Based MVPN

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_lsm/configuration/xe-3s/asr1000/imc_mldp-based_mvpn.html

MLDP In-Band Signaling / Transit Mode

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_lsm/configuration/xe-3s/asr1000/imc-inband.html

MPLS Virtual Private Networks

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l3_vpns/configuration/xe-3s/mp-cfg-layer3-vpn.html

MVPNv6 Extranet

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipmulti_mvpn/configuration/xe-3s/imc_mc_vpn_extranet.html

NETCONF XML PI

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cns/configuration/xe-3s/asr1000/cns-netconf.html

http://www.cisco.com/en/US/docs/ios-xml/ios/cns/configuration/xe-3s/cns-netconf.html

Network-Based Recording Using Cisco UBE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-ntwk-based.html

NSF/SSO—E-LMI Support

For detailed information, see the following Cisco documents:

143New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 178: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-elmi-pe.html

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-elmi-pe.html

OSPFv3 ABR Type 3 LSA Filtering

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-afsupport-v3.html

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-afsupport-v3.html

Per PW Layer 2 Service Policy in VFI

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/mpls/command/mp-s3.html

Per PW QOS in VFI

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-l2vpn-qos-pw-vfi.html

PfR Bandwidth Visibility Distribution for xDSL Access

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/pfr/configuration/xe-3s/asr1000/pfr-band-vis.html

PfR Scaling Improvement for Application Traffic Class (TC)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/pfr/command/pfr-cr-book.html

PPPoGEC—Per Session QoS [Include Model F Support]

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_mqc/configuration/xe-3s/asr1000/qos-pppgec.html

Prefix Suppression Support for OSPFv3

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-pref-supp-v3.html

144New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 179: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

SIP ALG Hardening for NAT and Firewall

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-fw-sip-alg-hardng.html

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/iadnat-fw-sip-alg-hardng.html

Suite-B Support in IOS SW Crypto

For detailed information, see the following Cisco document:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/asr1000/sec-pki-xe-3s-asr1000-book/sec-cert-enroll-pki.html

Support for Algorithms in the Suite B Specification for IPSec by the On-Board Crypto Engine in Cisco ASR 1000 Series Aggregation Services Routers

The IPSec algorithms required by Suite B are now supported by the hardware crypto engine on the Cisco ASR 1000 Series Aggregation Services Routers that have embedded hardware-accelerated VPN encryption.

Suite B requirements comprise four user interface suites of cryptographic algorithms for use with IKE and IPsec, which are described in RFC 6379 and RFC 6380 respectively. Each suite consists of an encryption algorithm, a digital signature algorithm, a key agreement algorithm, and a hash or message digest algorithm.

Suite B provides a comprehensive security enhancement for Cisco IPsec VPNs, and allows additional security for large-scale deployments. Suite B is the recommended solution for organizations requiring advanced encryption security for the wide-area network (WAN) between remote sites.

For detailed information, see the following Cisco documents:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_vpnips/configuration/xe-3s/asr1000/sec-sec-for-vpns-w-ipsec-xe-3s-asr1000-book/sec-cfg-vpn-ipsec.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/asr1000/sec-pki-xe-3s-asr1000-book.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/xe-3s/asr1000/sec-flex-vpn-xe-3s-asr1000-book/sec-cfg-ikev2-flex.html

Support for Negotiation of an Audio Codec from a List of Codecs on Each Leg of a SIP-SIP Call on the Cisco Unified Border Element

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/voi-negt-aud-code.html

TCP - Configurable Keepalive Timer

For detailed information, see the following Cisco document:

145New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 180: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/ipapp/configuration/15-2mt/iap-tcp.html

TCP Reset Segment Control

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/tcp-rst-seg-con.html

Unicast Reverse Path Forwarding Loose Mode

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_urpf/configuration/xe-3s/sec-unicast-rpf-loose-mode.html

VPLS BGP Signaling

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-vpls-bgp-sig.html

VPLS MAC Limit Enhancement

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/command/ce-cr-book.html

VRRPv3 Protocol Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipapp_fhrp/configuration/15-1sy/fhrp-vrrpv3.html

WebEx SPA

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRovwma.html

Y.1731 Performance Monitoring

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/asr1000/ce-y1731-perfmon.html

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-y1731-perfmon.html

146New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 181: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S.

End-of-Sale and End-of-Life of the Cisco Traditional NetFlow Feature

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on the Cisco ASR1000 platform. Cisco will not have any future development, CLI support, TAC support, and documentation pertaining to the Cisco TNF feature beyond Cisco IOS XE Software Release 3.10.

Customers with the Cisco TNF feature on the Cisco ASR1000 platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) feature on the Cisco ASR1000 platform.

For details on transition to Cisco FNF, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.8S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S.

147New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 182: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

148New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.8S

OL-26698-25

Page 183: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S. In addition, important notes about this release are also included.

This chapter contains the following sections:

• New and Changed Information, page 149

• Important Notes, page 158

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.7S:

• New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S, page 149

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S, page 150

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

The following are the new hardware features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S:

Cisco Systems, Inc.www.cisco.com

Page 184: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Cisco ASR 1002-X Router

The Cisco ASR 1002-X Router is a 3-SPA, 2-RU chassis. The embedded services processor and route processor are integrated into the chassis. There are 6 small form factor pluggable (SFP) Gigabit Ethernet ports. The router provides a forwarding bandwidth of up to 36 Gbps. The Cisco ASR 1002-X Router supports all the general-purpose routing and security features of the Cisco ASR 1000 Series Aggregation Services Routers.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/install/guide/asr1routers/asr1higV8.html

Cisco ASR 1000 Embedded Services Processor 100-Gbps

The Cisco ASR 1000 Series Aggregation Services Routers 100-Gbps Embedded Services Processor is a centralized forwarding engine option for the Cisco ASR 1006 and ASR 1013 Routers.

Note Availability of ASR1000 Series100-Gbps Embedded Services Processor is limited to those customers whose feature set profiles are validated and approved by the corresponding Cisco Business Unit.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/install/guide/asr1routers/asr1higV8.html

SPA-4XOC3-POS-V2 support on ASR-1000

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S:

ALG—H.323 vTCP with High Availability Support for Firewall and NAT

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-h323-vtcp-ha.html

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-fw-h323-alg.html

150New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 185: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

ASR1000 IPSec Debuggability Enhancement - Phase I

The IOS-XE IPSec Debuggability Enhancements in IPsec VPN reduces the overall debugging effort for customers by modifying the debug platform hardware qfp active feature (IPsec) command and merging the output of several show commands into the output of the following commands that were modified for this feature: show crypto engine accelerator statistic, show crypto ipsec sa, show crypto ruleset, and show tech-support ipsec.

For more information, refer to the Cisco IOS Security Command Reference: Commands S to Z (http://www.cisco.com/en/US/docs/ios-xml/ios/security/s1/sec-s1-cr-book.html), and Cisco IOS Debug Command Reference, Commands M through R (http://www.cisco.com/en/US/docs/ios-xml/ios/debug/command/m1/db-m1-cr-book.html).

BGP—Attribute Filter and Enhance Attribute Error Handling

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-attribute-filter.html

E-OAM : Multiple Port MAs Under Single MD

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-cfm-ieee-xe.html

BGP Support for the L2VPN Address Family

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3sg/irg-sup-l2vpn.html

CUBE(SP): H.248 BAC Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_h248.html

CUBE(SP): IMS: Support for RF Interface (charging)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_rx_diam.html

Flexible NetFlow: IPFIX Export Format

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/AVC/configuration/xe-3s/asr1000/cfg-AVC-xe.html

Flexible NetFlow: Export to an IPv6 Address

For detailed information, see the following Cisco document:

151New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 186: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/fnetflow/configuration/xe-3s/asr1000/cfg-de-fnflow-exprts-xe.html

FTP66 ALG support for IPv6 Firewall

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-ftp66-ipv6-fw.html

GRE IPv6 Tunnels

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/interface/configuration/xe-3s/ir-gre-ipv6-tunls-xe.html

IP SLA QFP Time Stamping

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/asr1000/sla_timestmp.html

IPv6 Firewall Support for Prevention of DDoS Attacks and Resource Management

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-ipv6-ddos-rman.html

IPv6 Zone-Based Firewall Support Over VASI Interfaces

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-fw-ipv6-vasi.html

Lawful Intercept License Monitoring Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/csa_rtu.html

NBAR Classification Enhancements for IOS-XE3.7

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/prot_lib/configuration/xe-3s/nbar-prot-lib.html

NBAR Multi-stage classification

For detailed information, see the following Cisco document:

152New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 187: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/configuration/xe-3s/Classifying_Network_Traffic_Using_NBAR_in_Cisco_IOS_XE_Software.html

Performance Routing (PfR) with NBAR/CCE Application Recognition

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/pfr/configuration/xe-3s/asr1000/pfr-nbar.html

Stateful NAT64—Interchassis Redundancy

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-stful-int-chas.html

Suite-B Support in IOS SW Crypto

For detailed information, see the following Cisco documents:

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_vpnips/configuration/xe-3s/asr1000/sec-sec-for-vpns-w-ipsec-xe-3s-asr1000-book/sec-cfg-vpn-ipsec.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_ikevpn/configuration/xe-3s/asr1000/sec-ike-for-ipsec-vpns-xe-3s-asr1000-book/sec-key-exch-ipsec.html

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/asr1000/sec-pki-xe-3s-asr1000-book.html

Unicast Reverse Path Forwarding ACL Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_urpf/configuration/xe-3s/urpf-acl-sup.html

Universal SIP40 support for ASR1K

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/install/guide/asr1routers/asr1higV8.html

VPLS Autodiscovery, BGP-based

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios/mpls/configuration/guide/mp_vpls_auto_bgp.html

Walk-By User Support for PWLAN

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/configuration/xe-3s/isg-wlkby-supp.html

153New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 188: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

GGSN Pooling Support for Firewalls

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-fw-ggsn-pool.html

IPv6 Over DMVPN

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6/configuration/xe-3s/ip6-ospf.html

IPv6 Remote Access for IPSec VPN

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_ike2vpn/configuration/15-2mt/sec-cfg-flex-clnt.html

Bandwidth Based Call Admission Control (CAC)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/asr1000/voi-cub-cac.html

Dynamic REFER Handling on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_sip/configuration/xe-3s/asr1000/voi-cub-sip-dyn-refer-handling.html

External: Support for Inclusion of Authorization Header in the Initial REGISTER Request

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_sipsip/configuration/xe-3s/asr1000/voi-sip-trunk-reg.html

Multiple Destination Pattern Support on Voice Dialpeer

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_fund/configuration/xe-3s/asr1000/vd-mdp-dialpeer.html

Supplementary Services Support on CUBE for RTP-SRTP calls

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/asr1000/voi-srtp-rtp-int.html

154New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 189: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Support for Populating Route Header Based on Proxy Server IP Address and Port, and Service-route Header Present in the REGISTER Response

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_proto/configuration/xe-3s/asr1000/voi-sip-trunk-reg.html

Support for SIP Registration Proxy on CUBE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/voice/cube_sipsip/configuration/xe-3s/asr1000/voi-sip-reg-proxy.html

E-OAM : Multiple Port MAs Under Single MD

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-cfm-ieee-xe.html

EIGRP IPv6 MIBs

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/eigrp-mib.html

Embedded Packet Capture (EPC)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/epc/configuration/xe-3s/asr1000/nm-packet-capture-xe.html

Flexible NetFlow: Extracted Fields Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/AVC/configuration/xe-3s/asr1000/cfg-AVC-xe.html

IPSLA 4.0 - IP v6 phase2

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_icmp_pathecho.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_ftp.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_dns.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_icmp_pathjitter.html

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_http.html

155New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 190: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

ISIS client for BFD c-bit support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bfd/configuration/xe-3s/irb-bfd-isis-cbit.html

MVPNv6

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/products/ps5845/products_installation_and_configuration_guides_list.html

OSPFv3 RFC 3101 Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-cfg.html

OSPFv3 MIB

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/asr1000/iro-ospfv3-mib.html

Perf-mon V3

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/media_monitoring/configuration/xe-3s/mm-pasv-mon.html

FRF.12 Support on MFR Interfaces

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/wan_frly/configuration/xe-3s/wan_ml_fr_frf161_xe.html

PfR Syslog and Trap enhancement

The PfR Syslog and Trap Enhancement feature introduces a new CLI command, trigger-log-percentage, that specifies the percentage of out- of-policy (OOP) PfR traffic classes that trigger a syslog. Enhanced error message descriptions are accessible from the Error Message Decoder tool.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/pfr/command/pfr-cr-book.html

PPPoGEC: Per Session QoS

For detailed information, see the following Cisco document:

156New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 191: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_mqc/configuration/xe-3s/asr1000/qos-eth-int.html

PWLAN ISG: Walking-by Sessions Scale Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/configuration/xe-3s/isg-wlkby-supp.html

Y.1731/CFM Test TLV support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/command/ce-cr-book.html

BGP - Add Path

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-additional-paths.html

BGP VPLS Auto Discovery Support on Route Reflector

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-int-features.html

BGP - mVPN SAFI-129 IPv6

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-mvpn-safi-ipv6.html

BGP - mVPN BGP sAFI 129 IPv4

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-mvpn-safi.html

BGP - multicast VPN auto-discovery and customer-multicast routing

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/asr1000/irg-mvpn-safi-ipv6.html

157New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 192: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

ISIS BFD TLV

The IS-IS Bidirectional Forwarding Detection (BFD) Tag Length Value (TLV) feature provides a faster method to detect a loss of an IS-IS adjacency. Before, when an IS-IS adjacency reached the UP state (and therefore could be used for forwarding), a BFD session needed to be established with that neighbor. Now, a BFD session is maintained as long as the hello holddown timer for the neighbor does not expire, which is new for BFD TLV. The BFD session is only deleted if the neighbor hello times out. If BFD signals to IS-IS that a session has gone DOWN, the adjacency associated with that session will transition to DOWN state. Once the BFD session goes back UP, the adjacency state can transition back to an UP state. For a given IS-IS topology, IS-IS determines if BFD is usable for a given neighbor on that topology. BFD is not usable when BFD is enabled on both sides and the BFD session is down. When there are multiple BFD sessions enabled for different address families, such as IPv4 and IPv6, if BFD is not usable for any address family, then BFD is consider not usable for the entire adjacency on that topology. For example, if both IPv4 and IPv6 BFD are enabled for single topology, if either the IPv4 BFD session is down or IPv6 BFD session is down, the neighbor state will be set to DOWN state. If BFD is not enabled for a given address family, then BFD is considered usable for that address family. For single topology mode, the neighbor state is down when either the IPv4 or IPv6 BFD session is not BFD usable, that is, if BFD is enabled on both sides and the BFD session is DOWN. If BFD is not enabled on either side, BFD will be set to TRUE. For multi-topology mode, IS-IS adjacency will be in UP state as long as any topology is UP . However, the neighbor for the topology where BFD is consider not usable is considered down for that specific topology. For example, if both IPv4 and IPv6 BFD are enabled, and the IPv4 session is DOWN and IPv6 session is UP, then the IS-IS adjacency is still UP. In this case, the IPv4 neighbor is considered DOWN and ipv6 neighbor is considered UP.

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S.

End of Sale and End of Life of Cisco Traditional NetFlow

Cisco announces the end-of-sale and end-of-life of the Cisco Traditional NetFlow (TNF) Feature on ASR1000 platform. Cisco will not have any future development, CLI support, TAC support and Documentation on the Traditional NetFlow (TNF) feature beyond the Cisco IOS Software release XE 3.10.

Customers with Cisco Traditional NetFlow (TNF) Feature on Cisco ASR1000 Platform are encouraged to migrate to the Cisco Flexible NetFlow (FNF) Feature on Cisco ASR1000 Platform.

For details on transition to Flexible NetFlow, see the Migrating from Traditional to Flexible NetFlow white paper:

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6555/ps6601/ps6965/white_paper_c11-545581.html

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

158New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 193: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.7S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.0S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.0S.

159New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 194: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

160New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.7S

OL-26698-25

Page 195: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

This chapter provides information about the new features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S. In addition, important notes about this release are also included.

Note For information about the features in and important notes about releases prior to Release 3.6.0, see Cisco IOS XE 3S Release Notes.

This chapter contains the following sections:

• New and Changed Information, page 161

• Important Notes, page 169

New and Changed InformationThe following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.6S:

• New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S, page 162

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S, page 162

• New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S, page 162

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S, page 162

• New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S, page 162

Cisco Systems, Inc.www.cisco.com

Page 196: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

• New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S, page 162

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S

There are no new hardware features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S

There are no new software features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.2S.

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S

There are no new hardware features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S

There are no new software features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.1S.

New Hardware Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S

There are no new hardware features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S.

New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S

The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S:

162New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 197: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

ACL syslog Correlation

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/sec-acl-syslog.html

Add Policy and Engineering Capabilities to PETR Usage

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/command/ip-lisp-cr-book.html

ALG: H.323 v6 Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-applvlgw.html

Audio and Video SPA Supports High-Definition (HD) Video

Effective from Cisco IOS XE Release 3.6S, the WebEx Node SPA supports the WebEx WBS27SP32 version. This WebEx version supports both High Quality (HQ) and High-Definition (HD) Video on the Audio and Video SPA.

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRovwma.html#wpaudio_and_video_SPA

IPsec Feature License for Monitoring and Reporting

From Cisco IOS XE Release 3.6S onward, you can test IPsec features by activating the built-in evaluation license and accepting the End User License Agreement (EULA). You must activate this license and accept the EULA to ensure that the crypto commands associated with an interface are not blocked. For more information about this feature, see the Software Activation Configuration Guide, Cisco IOS XE Release 3S at the following location:

http://www.cisco.com/en/US/docs/ios-xml/ios/csa/configuration/xe-3s/csa-xe-3s-book.html

BFD - BFD Hardware Offload Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/7600/install_config/ES40_config_guide/es40_chap4.html#wpxref23529

BFD C Bit Support - RFC5882

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bfd/configuration/xe-3s/irb-xe-3s-book.html

163New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 198: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

BFD Support for EIGRP IPv6

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-bfd-ipv6.html

BFD: BGP Multihop Client Support and C Bit (IPv4/IPv6)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-multihop-cbit.html

BGP - iBGP NSR

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-nsr-ibgp.html

BGP - mVPN BGP sAFI 129 - IPv4

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-mvpn-safi.html

BGP NSR - Autosense

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-nsr-autosense.html

BGP: Graceful Shutdown (GSHUT)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_bgp/configuration/xe-3s/irg-grace-shut.html

Carrier Grade Network Address Translation

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipaddr_nat/configuration/xe-3s/iadnat-cgn.html

CEM Support for SPA-2CHT3-CE-ATM

For detailed information, see the following Cisco documents:

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/configuration/ASR1000/ASRspasw.html

http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/install_upgrade/ASR1000/asr_sip_spa_hw.html

164New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 199: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

Cisco Unified Border Element (SP Edition): Common IP Address Media Bypass

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_pol.html

Cisco Unified Border Element (SP Edition): Via Header Passthrough

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_scf.html

Class Default Shaper on Physical Interface in Combination with Service Policy Applied to dMVPN Tunnel

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_dmvpn/configuration/xe-3s/sec-conn-dmvpn-xe-3s-book.html

CSL CallHome for the Cisco ASR 1001 Router

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/csa_callhome.html

EIGRP IPv6 NSF/GR

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/eigrp-ip6-nsf.html

EIGRP Route Tag Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-en-rou-tags.html

Enhanced Route Tags

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_eigrp/configuration/xe-3s/ire-en-rou-tags.html

Ethernet Operations, Administration, and Maintenance (OAM)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/cether/configuration/xe-3s/ce-oam.html

165New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 200: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

GEC VPWS Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/mpls.html

Group Encrypted Transport VPN Key Server

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_getvpn/configuration/xe-3s/sec-get-vpn.html

IOS ACL Support for Filtering IP Options

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_acl/configuration/xe-3s/sec-create-ip-al-filter.html

IP SLAs TWAMP Responder v1.0

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipsla/configuration/xe-3s/sla_twamp.html

IP Tunnel - SSO c7600

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/configuration/xe-3s/ir-impl-tun-xe.html

IPv6 ACL Extensions for Hop by Hop Filtering

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/ipv6/configuration/xe-3s/ip6-acl-ext-hbh-xe.html

IPv6 VRF-Aware PBR Next-Hop Enhancement

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l3_vpns/configuration/xe-3s/mp-mltvrf-slct-pbr.html

ISG Downstream Enhancements—Passthrough and Idle-Timer

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/isg/configuration/xe-3s/isg-acess-ip-sess.html

IS-IS IPv6 Administrative Tag

For detailed information, see the following Cisco document:

166New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 201: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/ip6-route-isis-adm-tag.html

IS-IS IPv6 Advertise Passive Only

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_isis/configuration/xe-3s/ip6-route-isis-adv-pass-onl.html

L2VPN Interworking: Frame Relay to ATM (Bridged Mode)

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/chassis/mpls.html

LISP Virtualization Support for Multiple Parallel RLOC Domains

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-xe-3s-book.html

MediaTrace 2.0

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/media_monitoring/configuration/xe-3s/mm-mediatrace.html

MPLS TE - TE Display Debug Info for PCALC Error Show Command

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/products/ps11174/prod_release_notes_list.html

MPLS Traffic Engineering - AutoTunnel Mesh Groups

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_te_path_setup/configuration/xe-3s/mp-te-autotun-mesh.html

MPLS Traffic Engineering - FRR Scalability Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_te_path_protect/configuration/xe-3s/mp-te-frr-node-prot.html

MPLS Traffic Engineering (TE) - Class-Based Tunnel Selection

For detailed information, see the following Cisco document:

167New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 202: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

New and Changed Information

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_te_path_setup/configuration/xe-3s/mp-te-tun-select-xe.html

NBAR Classification Enhancements

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/qos_nbar/prot_lib/configuration/xe-3s/proto_lib1.html

OSPFv3 VRF-Lite/PE-CE

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_ospf/configuration/xe-3s/iro-vrf-lite-pe-ce.html

Per Tunnel QoS

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_dmvpn/configuration/xe-3s/sec-conn-dmvpn-xe-3s-book.html

Perf-mon V3

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/media_monitoring/configuration/xe-3s/mm-pasv-mon.html

Performance Monitoring - IPv6 Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/media_monitoring/configuration/xe-3s/mm-pasv-mon.html

Proxy Mobile IPv6 Local Mobility Anchor

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/partner/docs/ios-xml/ios/mob_pmipv6/configuration/xe-3s/imo-pmipv6-lma-support.html

Route Server Based Provisioning for PITR

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/command/ip-lisp-cr-book.html

Routed Pseudowire and Routed VPLS

For detailed information, see the following Cisco document:

168New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 203: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_l2_vpns/configuration/xe-3s/mp-rt-pw-rt-vpls.html

SSO Support for MPLS-TE Autotunnel-Automesh Feature

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/mp_ha/configuration/xe-3s/mp-sso-supp-mpls-te-autotun-automesh.html

Support Multiple xTRs with Dynamic RLOCs at a Site

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_lisp/configuration/xe-3s/irl-xe-3s-book.html

USB eToken 64 KB Smartcard Support

For detailed information, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_conn_pki/configuration/xe-3s/sec-store-pki-cred.html

Zone-Based Policy Firewall IPv6 Support

The zone-based policy firewall provides advanced traffic filtering or inspection of IPv4 and IPv6 packets. In Cisco IOS XE Release 3.6S and later releases, both IPv4 and IPv6 packet inspection are enabled by default. If you need to bypass the IPv6 packet inspection, you need to configure the pass action. The pass action passes the traffic from one zone to another. When the pass action is configured, the firewall does not inspect the traffic; it passes the traffic. In the IPv6 firewall, you must explicitly configure the pass action for the return traffic by defining a zone pair and a policy map with pass action.

For detailed information about the Zone-Based Policy Firewall IPv6 Support feature, see the following Cisco document:

http://www.cisco.com/en/US/docs/ios-xml/ios/sec_data_zbf/configuration/xe-3s/sec-zbf-ipv6.html

Important NotesThe following sections contain important notes about Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S.

Deferrals

Cisco IOS software images are subject to deferral. We recommend that you view the deferral notices at the following location to determine whether your software release is affected:

http://www.cisco.com/en/US/products/products_security_advisories_listing.html

169New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 204: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Important Notes

Field Notices and Bulletins

• Field Notices—We recommend that you view the field notices for Release 3.6S to determine whether your software or hardware platforms are affected. You can find the field notices at the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

• Bulletins—You can find bulletins at the following location:

http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/prod_literature.html

Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S

There are no important notes specific to Cisco ASR 1000 Series Aggregation Services Routers Release 3.6.0S.

170New Features in and Important Notes About Cisco ASR 1000 Series Aggregation Services Routers Release 3.6S

OL-26698-25

Page 205: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats

Page 206: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 207: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Information about Caveats

Caveats describe unexpected behavior. Severity 1 caveats are the most serious caveats. Severity 2 caveats are less serious. Severity 3 caveats are moderate caveats. This chapter includes severity 1, severity 2, and selected severity 3 caveats.

Note For information about the caveats pertaining to releases earlier than Release 3.6S, see Cisco IOS XE 3S Release Notes.

We recommend that you view the field notices for the current release to determine whether your software or hardware platforms are affected. You can access the field notices from the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

Note If you have an account on cisco.com, you can also use the Bug Search Tool to find select caveats of any severity. To reach the Bug Search Tool, log in to cisco.com and go to https://tools.cisco.com/bugsearch/product?name=Cisco+ASR+1013+Router#search (If the defect that you have requested is not displayed, it may be due to one or more of the following reasons: the defect number does not exist, the defect does not have a customer-visible description yet, or the defect has been marked Cisco Confidential.) For details on how to use the Cisco Bug Search Tool, see “Using the Cisco Bug Search Tool” section on page 173.

The Dictionary of Internetworking Terms and Acronyms contains definitions of acronyms that are not defined in this document:

http://docwiki.cisco.com/wiki/Category:Internetworking_Terms_and_Acronyms_(ITA)

Using the Cisco Bug Search ToolFor more information about how to use the Cisco Bug Search Tool, including how to set email alerts for bugs and to save bugs and searches, see Bug Search Tool Help & FAQ.

Cisco Systems, Inc.www.cisco.com

Page 208: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Open and Resolved Bugs

Before You Begin

Note You must have a Cisco.com account to log in and access the Cisco Bug Search Tool. If you do not have one, you can register for an account.

Step 1 In your browser, navigate to the Cisco Bug Search Tool.

Step 2 If you are redirected to a Log In page, enter your registered Cisco.com username and password and then, click Log In.

Step 3 To search for a specific bug, enter the bug ID in the Search For field and press Enter.

Step 4 To search for bugs related to a specific software release, do the following:

a. In the Product field, choose Series/Model from the drop-down list and then enter the product name in the text field. If you begin to type the product name, the Cisco Bug Search Tool provides you with a drop-down list of the top ten matches. If you do not see this product listed, continue typing to narrow the search results.

b. In the Releases field, enter the release for which you want to see bugs.

The Cisco Bug Search Tool displays a preview of the results of your search below your search criteria.

Step 5 To see more content about a specific bug, you can do the following:

• Mouse over a bug in the preview to display a pop-up with more information about that bug.

• Click on the hyperlinked bug headline to open a page with the detailed bug information.

Step 6 To restrict the results of a search, choose from one or more of the following filters:

Your search results update when you choose a filter.

Open and Resolved BugsThe open and resolved bugs for this release are accessible through the Cisco Bug Search Tool. This web-based tool provides you with access to the Cisco bug tracking system, which maintains information about bugs and vulnerabilities in this product and other Cisco hardware and software products. Within the Cisco Bug Search Tool, each bug is given a unique identifier (ID) with a pattern of CSCxxNNNNN, where x is any letter (a-z) and N is any number (0-9). The bug IDs are frequently referenced in Cisco documentation, such as Security Advisories, Field Notices and other Cisco support documents. Technical Assistance Center (TAC) engineers or other Cisco staff can also provide you with the ID for a specific bug. The Cisco Bug Search Tool enables you to filter the bugs so that you only see those in which you are interested.

Filter Description

Modified Date A predefined date range, such as last week or last six months.

Status A specific type of bug, such as open or fixed.

Severity The bug severity level as defined by Cisco. For definitions of the bug severity levels, see Bug Search Tool Help & FAQ.

Rating The rating assigned to the bug by users of the Cisco Bug Search Tool.

Support Cases Whether a support case has been opened or not.

174Information about Caveats

OL-26698-25

Page 209: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Open and Resolved Bugs

In addition to being able to search for a specific bug ID, or for all bugs in a product and release, you can filter the open and/or resolved bugs by one or more of the following criteria:

• Last modified date

• Status, such as fixed (resolved) or open

• Severity

• Support cases

You can save searches that you perform frequently. You can also bookmark the URL for a search and email the URL for those search results.

175Information about Caveats

OL-26698-25

Page 210: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Open and Resolved Bugs

176Information about Caveats

OL-26698-25

Page 211: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.3S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.3S, page 177

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.3S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.6(1)S3

Status Fixed

Cisco Systems, Inc.www.cisco.com

Page 212: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S, page 178

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S, page 180

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Caveat ID Number Description

CSCuy96648 add a CLI to enable/disable per-filter counter

CSCvb01460 ASR 901 is crashing after 20mins of loading the latest XE316 image

CSCuz84796 NBAR does not support dialer interface support on IOS-XE

CSCuz22379 ASR1001-X "mcpcc-lc-ms" process high CPU

CSCva92726 AN: AN memory holding grows during longitivtiy test

CSCva29933 AN: ASR901 hangs after AN aborts setup dialogue

CSCuz76841 AN: ISR-G3 crashes after disabling autonomic

CSCva49849 AN: Nbr/ACP flap continuously when a rouge device tried to join

CSCuz88340 AN: ULA is configured on ANI & same ANI used for multiple neighbors

CSCuz74838 IOS-XE / Polaris Router Crashes When SNMP Polls CISCO-STP-EXTENSIONS-MIB

CSCuz56699 ISR 4k Paging over SIP / FXS phones have no audio

CSCuz96173 CFM RDI bit not clearly automatically after node reload

CSCuz80158 ISSU:XE316->XE314:IOSd Core@ecfm_get_evc_count during unconfig

CSCuz80524 RP_0_linux_iosd-imag crash in ASR920

CSCva91655 FIB recursive loop crash

CSCuz61109 Self ping to port channel sub interface dropped with LISP decap log

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.6(1)S2

Status Fixed

178Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 213: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S

Identifier Description

CSCuv93086 PPPoA sessions are not coming UP after the reload/interface flap

CSCuz54836 ASR1002-X with harddisk installed stuck in crash and reboot cycle

CSCuy74157 IOS-XE: 2KP/1NG espbase,sip info is not present in sh ver running

CSCux37457 Power supply status stuck on either "ps, fail" or "ok"

CSCux32911 2KP: Router crash at ptpd_mcp_rp while removing PTP clock config

CSCuy59471 erspan supports configure flexible mac for the wan interface

CSCuz34766 ASR1000-2T+20X1GE GE ports cause CRC errors when connected to some LCs

CSCuz47707 EPA 1GE Ports may cause CRC errors

CSCuw66285 ASR1001-X: Counters for Q-in-Q sub interface not working as expected

CSCuw97986 LLDP not working between ios-xe and ios-xr on subinterfaces

CSCuz09783 ZBFW asynchronous memory API change for USD platform

CSCuy06618 DMVPN Phase 3 Hub is not sending NHRP redirect with Shared IPsec profile

CSCux66017 ASR1K crash due to "SNMP engine" when polling ifEntry on sonet interface

CSCux68942 "debug platform software infrastructure punt mma" enhance for lost seq

CSCuz16934 PfRV3: Unexpected big byte lost report with NBAR based QoS integration

CSCux74788 ASR1002-X: Memory leak in IOSD: acl-handle

CSCuy38643 ESP PBR crash on interface delete

CSCux23929 DL RPC timeout during FPD upgrade of CEOP SPAs

CSCux36675 VLAN Unlimited not working in certain case with port-channel

CSCuu17470 XE314:1NGPacket drop Built-In interface configured with EVC and xconnect

CSCuy99086 Appnav with WAAS experiences an unexpected reload.

CSCuy41182 crash on RP forwarding manager due to cpp_ucode core on ISRG3

CSCux80430 Archive command broken when files removed by tracelogs rotation

CSCuz13399 ISSU XE316 ->XE317: ATMoMPLS ip ping failed CEoP link for port mode conf

CSCuy21483 ISR4451-X Crash at cpp_dsp_get_stream_stats

CSCuy37375 path-id cannot be discovered on branch sites without ipsec protection

CSCux43553 XE316: ASR1001X BR ucode crashed at ipv4_input_cent_rc_process

CSCuy89796 ASR1k cpp_cp_svr crash due to WRED mark prob set to 256

CSCuw11097 ASR one way audio due to incorrect provision by FMAN-RP

179Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 214: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.2S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Identifier Description

CSCuy68627 ASR1K-BB: double counting issue when ppp session in unbound state

CSCuz54836 ASR1002-X with harddisk installed stuck in crash and reboot cycle

CSCux37457 Power supply status stuck on either "ps, fail" or "ok"

CSCuz69316 MIP100/EPA-1X100GE SCOOBY-5-SERIAL_BRIDGE_BLOCK_EVENT messages

CSCuy49365 ASR1013 - ROMMON upgrade to 15.5(3r)S1 failed for LC in slot 0

CSCuz72439 Mark XE3.17.2/15.6(1)S2 as MDR break release for ASR1000-2T+20X1GE

CSCux57066 ASR1K : Lawful Intercept not working as expected for IPv6 traffic

CSCuy50888 ASR1k Console is getting stuck while downgrading to 3.13.3 from 3.16.2

CSCuz16934 PfRV3: Unexpected big byte lost report with NBAR based QoS integration

CSCuy90440 Performance monitor crashes with RTP traffic

CSCuz50915 Unexpected reboot on router due to flexible netflow

CSCux93176 ASR1k:stby RP stuck while bootup

CSCux56486 Rommon version 15.5(3r)S1 will not allow booting packages.conf

CSCuz22379 ASR1001-X "mcpcc-lc-ms" process high CPU

CSCuy93714 ASR1001-X, frame counter increased after reload

CSCuw81295 Ping fails on ASR 1001X when Cu SFP is replaced by Optical SFP

CSCuy99086 Appnav with WAAS experiences an unexpected reload.

CSCuz16259 router crashed with No such process 205 -Process= "SC CMM Recv Process"

CSCuy41182 crash on RP forwarding manager due to cpp_ucode core on ISRG3

CSCux09389 CWS Whitelist download fails if UTD is enabled on cws-tunnel out intf

CSCuz62942 UTD Snort: Show CLI will stop working after sometime

CSCul24641 ESP crashes due to BQS SRT stem memory parity interrupt

CSCuy21483 ISR4451-X Crash at cpp_dsp_get_stream_stats

CSCuz00895 ESP crash observed while testing with Orange Configs.

CSCuz51603 multicast crashed with invalid leaf pointer

CSCuz58499 ASR1K: Packets are not as expected on multilink interface

CSCux43553 XE316: ASR1001X BR ucode crashed at ipv4_input_cent_rc_process

CSCuy89796 ASR1k cpp_cp_svr crash due to WRED mark prob set to 256

CSCuz08730 MDR ISSU fails from XE3.16.3 to XE3.17.X for BUILT-IN-2T+20X1GE

180Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 215: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1aS, page 181

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S, page 181

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S, page 182

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1aS

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Identifier Description

CSCuz54836 ASR1002-X with harddisk installed stuck in crash and reboot cycle

CSCuz65079 SIP40: Support for new revision MPC8548 Rev.E CPUs

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.6(1)S1

Status Fixed

Identifier Description

CSCux88010 XE3.16: Optimize HSL Punt buffer size for high scale MMA punt records

CSCuw47720 ASR1001-X Mgmt port negotation issue with peer device

CSCuw30599 ISR4331-B: traceback occured when enabling Ethernet Data Plane Loopback

CSCux00303 Router crash after stopping EPC

CSCux29703 ASR1000-2T+20X1GE fails to boot on router reload with SPA-3-NULL_BAY_PTR

CSCux55692 TCAM Errors in NL11k TCAM of Fixed Ethernet Linecards

CSCut62449 Disable HTTP AIC support

CSCuw98135 ZBFW HA not replicating sessions when matching based upon L4 proto/port

181Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 216: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17.1S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCux50997 IOS crashes on bootup without any startup configuration

CSCux44606 Name ACL for Multicast Boundary Stops Working Upon Reload

CSCux33568 ESP crash while reconfiguring FR interface to MFR bundle

CSCux02656 ASR1K: Crash related to collecting NetFlow data for IPv6 flows

CSCux07224 ASR1K crash with OTV due to L2BD FIB entry change

CSCuw78755 IOS-XE need not require appxk9 license to support per-tunnel DMVPN QoS

CSCuw70220 IOSXE PACTRAC: cpp crash when packet trace enabled for MPLS and SSLVPN

CSCux43951 Packet drops on built-in 1Gig ports of ASR1001-X

CSCux42411 ASR1001-X Frame Relay with Fortitude NIM fails due to LMI packet padding

CSCux14860 ASR1K:Packet Tracing failed with FW,NAT&FW enabled.

CSCuw73223 Polaris : cpp_cp_svr crash when the interface goes down

CSCux10321 ASR1000 CLI hangs on executing the "show platform hardware qfp xxx"

CSCux40633 ISR 4451 Continuous Crash/ Core Crash File generated with WAAS/Appnav

Identifier Description

Identifier Description

CSCuw72655 RSP3: fman_fp crash on soak run with interface flaps

CSCuy09993 ASR1k: ucode crash with hal_abort called from cvla_free_reuse_internal

CSCuy38643 ESP PBR crash on interface delete

CSCux59115 ASR1002-X Crash with dpidb_tableid_params_initialize

CSCuy18665 CSR crashes on installing bb_1K license

CSCuy41182 crash on RP forwarding manager due to cpp_ucode core on ISRG3

CSCuy14366 ASR1001-X interrupt MBE exception crash with cpp-mcplo-ucode

CSCuy21483 ISR4451-X Crash at cpp_dsp_get_stream_stats

CSCux77255 ISR 4K - srtp ucode crash

182Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 217: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S, page 183

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S, page 185

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(2)S

Status Fixed

Identifier Description

CSCut68825 PFRv3: unexpected byte loss reported due to TCP packet flow out of order

CSCuv82778 PfRv3:CPP code crash with multiple ssrc per rtp flow

CSCuv79776 Router with Pfr feature crashed at cpp_free_exmem

CSCuu50189 ASR1K reported %LSMPI-4-INJECT_FEATURE_ESCAPE for PPPoE data packet

CSCuu13292 ASR1k ucode crash at ipv4_esf_portbundle_forus

CSCuv46318 ESP100 cpp_cp_svr crash issue due to invalid stats_sbs_entry data

CSCuv66011 ESP100: cpp_cp_svr crashed in function cpp_ess_ea_is_vsi_valid

CSCuj15099 ISG doesn't preserve PBHK port maping in lite to dedicated sesssion

CSCuv39347 bfd flapping on ISR4321 if monitor long time

CSCuv80911 change BFD timer granularity to 3ms for USD

CSCuv52648 ESP memory leak under cpp_cp_svr due to BFD feature

CSCuv61799 ASR1000 power supplies require SW debounce of PWR_OK signal

CSCuu55787 ASR1001-X: Router fails to come online with No Service Password Recovery

CSCuv14195 ASR1006-X and ASR1009-X Need to have RP2 CPLD upgrade support

CSCuu30999 Asset ID write not working on pluggable spa of Nightster

CSCuv18079 Chassis-X RP2 downrev CPLD indicate FRU's incompatible-misleading msgs

CSCuu49706 Consider reading power SPA power consumption from Inventory

CSCuu99672 False fan module missing alarm is raised

CSCut82336 ASR1002-X: Handle leap second in ToD IN

183Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 218: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

CSCuv87030 Clock recovery fails on 1gige interfaces of ASR1000-2T+20X1GE

CSCut87081 Broadcast counters issue for managment interface for incoming pkts

CSCuv25529 Remote MEPs 611/613/711/712 not found and unsuccessfull Traceroute

CSCuv84600 Netflow packets are dropped when EPC is enabled

CSCuv46022 10G and 100G EPA show slow CRC

CSCuu50769 ELC 100G: Support of Random Mode in MBFPGA I2C Kernel Driver

CSCuv71775 EPA:68byte padding works on port0 of bay but other ports won't work.

CSCuu76585 Error with 32K VLAN configured on Single EPA

CSCuv21977 EZman Show buffer FCU Tags output wrong

CSCuv83742 ICFD errors in NP5c has to be accounted in show CLIs

CSCuu96551 Runts with Bad/No CRC behavior on ASR1k.

CSCuu14809 Byte counters display incorrect value for multicast traffic over sub-int

CSCuu35042 CSR1000v Slow VRRP Failover to a BDI interface

CSCuu85007 split-horizon group communication failure

CSCuv91545 ESP continuous crash on ASR1013 using 03.13.03.S.154-3.S3-ext.bin

CSCuu59154 RP memory leak @[fw_config] type inspect_agg_age_cfg/0

CSCut21885 fman_fp_image and cpp_cp_svr memory leak - QFP PfR MP Prefix H...

CSCuu12008 rework CSCut21885: chunk_destroy memory leak.

CSCuu69670 ASR1K: Unable to ping contained application after reload

CSCuu21736 MCPDEV : CTS caching shows physical interface instead of tunnel

CSCut66894 evsi session fail to come up using multicast on all the virtual-access

CSCuq21350 First multicast rekey is not being received by the ASR GMs

CSCuu01093 ASR1k crash at imgr_ipsec_sa_cont_id_as_str

CSCuw66262 ASR1k: Memory Leak in cpp_cp_svr Process

CSCut91647 GETVPN on IOS-XE: GM incorrectly drops packets due to TBAR failure

CSCuu35388 IKEv1/2 - IPSec SA lifetime expires immediately after SA is established

CSCuu26053 Incorrect SPD ID in show platform software ipsec fp act flow id

CSCuv41763 invalid-spi drop as IN_US_V4_PKT_FOUND_IPSEC_NOT_ENABLED, ipsec UP-IDLE

CSCup14212 IOS-XE: IPv6 GETVPN dropped after un-configure then re-configure VRF

CSCuw21897 Traceback seen with ip cef accounting

CSCuc40262 Linux kernel cache is leading to confusion over memory usage

CSCuu36926 XE317:IP Ping connectivity failure with atm_pmcr_pcr configs

CSCuu91954 Fix potential crash in cable lawful intercept

CSCuu72025 Multiple ESP Core on ASR1006

CSCuv12943 Add cli support to enable cepThroughputNotif trap

CSCuu97063 Syslog trap support with IPbase license for ASR1k platforms

CSCuu92372 X-chassis MIB descriptions for power supplies are incorrect

Identifier Description

184Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 219: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCuv44159 MCP FME: skip jitter calculations for RTP dynamic payload types

CSCus85112 CGN, QFP: Show cmd display incorrect NAT trans stats for per-host IP add

CSCuu81682 IP getting NAT translated while its in DENY ACL list

CSCuu82192 NatGatekeeper performance degraded

CSCut76900 Unable to force clearing child(full-entry) if parent(half-entry) present

CSCuu05210 PfRv3: Not account controlled pkts if the src site is not self

CSCuu27197 ASR1K 1NG: set platform software trace doesn't show IOMD in nightster

CSCup42922 SASR1K1XU-312S does not support command to check ACT2 chip programming

CSCut50169 Mac src and dst based load balance not work on OTV port-channel

CSCuu16358 AQOS upper and lower range does not show correct value on ASR1k

CSCuv46771 CMTS: Results Mismatch in QoS Client

CSCut09922 cpp_cp traceback from qos cpp_qm_rm_tree_obj_add

CSCuu06642 IOSd memory leak in tdl_hqf_reparent_params

CSCut92421 ASR1002-X ROMMON 15.4(2r)S intermittently halts during autoboot

CSCuv59014 ASR1k ROMMON: Vulnerability in package codesign validation

CSCuu70271 ASR1k ROMMON: With NSPR, allow user to cancel factory default clearing

CSCuu75086 ROMMON should use the revocation key offered by the secure boot FPGA

CSCuu89720 crash found when remove ipv6 media pool

CSCuu30452 EVENTLIB-3-CPUHOG Traceback found when FPSO or bootup

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

CSCuu54317 Backout CSCur48133/CSCuu21225/CSCuu33633 from XE316 & mcp_dev

CSCuu03930 RPcrash while booting with 3.13.2IOSXE after SPA-4XCT3/DS0-V2 insertion

CSCup91567 ASR1001-X boot-loops with CMCC crash and XGM MAC10 block errors

CSCuo04588 Correct Settings for Nightster Vitesse 10G PHYs

CSCur95967 TB @fpd_ver_info_resync_resp_message_unmarshal during SSO on ASR1001-HDD

CSCut41815 Unable linkup on opposing unit of ASR1k built in port after "no shut"

CSCuv60858 SSL-GW doesn't listen to the new IP after SSL Port and IP addr change

CSCuv30194 crash at wccp stats handler

Identifier Description

Identifier Description

CSCuw39062 ASR1K: temperature sensor threshold values are showing wrong

185Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 220: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

186Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.17S

OL-26698-25

Page 221: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

This section lists the caveats fixed in Cisco IOS XE Release 3.16.4bS, which is a special release:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S, page 187

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S, page 194

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(3)S5

Status Fixed

Cisco Systems, Inc.www.cisco.com

Page 222: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

Caveat ID Number Description

CSCuz48415 "aaa authentication suppress null-username" not working as expected

CSCva47253 AAA crash on multiple username deletions - Part 2

CSCvb64818 ASR1k/ISG : 3.13.6 : Crash due to bad id in id_to_ptr when sending Accounting to non-existing group

CSCuz97414 Bulk-sync failure due to ip radius source-interface Vlan701 vrf VRF_MGMT

CSCuy27733 Continuous CPE request/solicit msgs causes CPU and Memory issues

CSCva32762 Radius packets are timed out caused link to go Critical-auth.

CSCuz04324 radius-server vsa send authentication lost after reload

CSCuz82218 TACACS Enable authentication fails with null pre shared key

CSCvb78833 Router crashes when RF/PPPoE link goes down

CSCvb79839 ASR1006-X: RP2%IOSXEBOOT-4-EUSB_PROVISIONING: (rp/0): Unsupported low capacityeUSB

CSCvb17224 cman_fp memory leak is seen on ESP

CSCva60854 SIP40: "sh plat hardware port <> plim statistics" not showing Tx Pkts

CSCvc06453 As1k @ CFM traffic frames being sent with 2 dot1q tags

CSCvb30256 ASR1000-2T+20X1GE: More than 1Gbps traffic is reported on 1GE port

CSCvb49832 ASR1k-ELC- XCVR disabled after router reload and interface is down

CSCva18748 EZMAN_RM-3-SERDES_AUTOTUNE_FAIL error msg seen on RP console

CSCva57167 Uneven traffic drops at ingress for 10G with ArgusX and ESP100

CSCvc01611 ASR1k Sub-interface packet counters incorrect when multicast traffic is present

CSCvb01450 IP/ARP connection failed between two direct-connected interfaces

CSCvc23830 Vlan Oversubscription packets are not working.

CSCuz86945 LACP/ESMC frames leak through EVC after pushed vlan tag

CSCuz86942 Untagged frames being dropped in EVC after pop tag

CSCva72065 IOS-XE Crash when Configuring Performance Monitor/Netflow

CSCvb95069 FTP Passive mode: NAT door limit being exceeded

CSCvb99872 ip nat service list generate traceback

CSCvb62767 NATed packets are dropped by ALG_PROCESS_TOKEN_FAIL due to NAT door limit being exceeded

CSCvb52499 SIP ALG: NAT door wrongfully created for the owner IP address

CSCvb82790 SIP ALG: non-standard port missing in header field after NAT translation

CSCvb84382 ASR1k does not mark some multicast packets with the correct MPLS EXP on imposition

CSCvb52198 Command "show policy-map multipoint" shows zero counters on ASR1k IOS XE

CSCvb50530 L2TP sessions cannot connect - Report Dataplane error

CSCvb36753 Ingress Unicast traffic not received on the BDI.

CSCvb21886 POS interface doesn't come up on clearing alarms

188Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 223: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCvc20910 VPLS transit packet drops - dropped silently in cpp

CSCva49806 AN NTP peer association on fresh device or device without valid clock

CSCvc26824 AN: ACP is not getting created after save & reload in some specific scenario

CSCux26863 AN: ANR should support syncing accepted DB from redundant ANR in domain

CSCvc08355 BGP table not displaying CIDR values or details for classful networks

CSCvb29541 Config replace with 2000 sites config, BGP router crash unexpectedly

CSCva75833 Huge Memory Holding and MALLOCFAIL Tracebacks seen while Churning PTA

CSCvb00288 CME No ringback after blind transfer

CSCvb22048 7821 CME 11 with FR locale display overlapped text and unwanted chars

CSCvb14350 7861 - Adding speed-dial on button 16 causes loss of blf-speed-dial keys

CSCuw91099 NGWC 5760 HA Crashed One After Another

CSCvb22903 RP3 fails to clear SA in the large scale IPSec SCM configuration

CSCvb19213 ISG/IWAG: 2 different source address used in the same DHCP transaction

CSCvb05465 Memory corrupt due to DHCP server

CSCuq56513 Prefix delegation failing on dialer

CSCus21944 The 4510 switch with 03.03.03.XO does not generate accounting updates

CSCvc47681 Increase Number of Supported DSP Conference Profiles

CSCvc16650 IOS secure conferencing leads to SRTP bandwidth and tunnels usage to exceed the license limits

CSCva39516 EIGRP /30 Serial Point-to-Point Subnet Not deleted after link down

CSCva35763 Incorrect subinterface enabled for EIGRP in vrf aware OTP

CSCvb51806 Router crash when removing EIGRP

CSCva00899 C841M crashes randomly during execution of the reload EEM script.

CSCvb59372 Double-free of VTY context causes a software-forced crash

CSCva42638 Traceback is seen when a EMM script runs on 3.6.4E

CSCva91655 FIB recursive loop crash

CSCuz61109 Self ping to port channel sub interface dropped with LISP decap log

CSCuw38090 No flow records sent when collect app http host/url and ssl added to FNF

CSCvb46106 Router crash when removing EzPM configs

CSCva17535 %SNMP-3-INPUT_QFULL_ERR: Packet dropped due to input queue full

CSCux38988 redundancy config-sync failures mcl define interface range adds fifth ,

CSCvb90646 SNORT status and flow counters are wrong

CSCvc05898 ISR4k NAT B2B+VRF Outside local address not reply VMAC

CSCvb18411 Static NAT with Route-map not preferred over Dynamic In-to-Out

CSCvb38269 Inter-vrf ping fails between sub-interfaces on 2 different port-channels

CSCvb36150 Specfic Config sequences causing vty lock up and high CPU.

CSCuz30491 High CPU Utilization with RIP Timers

Caveat ID Number Description

189Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 224: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCux55287 Address issues related to invalid port-info when processing acks

CSCvb56950 ASR1k crashed due to IPC

CSCuz63888 Crash in "show ipc all" @ ipc_print_ports_internal

CSCva55916 CUBE crash in resolve_sig_ip_address_to_bind NULL ccb

CSCva70943 CUBE DTMF p-type does not adhere to the signaling

CSCuv47984 CUBE fails to send INVITE to the session target

CSCvc24020 Media forking causes the interface to physically hang

CSCuy33804 Traceback seen @resolve_sig_ip_address_to_bind during SRTP calls

CSCvc34235 "crypto ipsec fragmentation before-encryption" command disappears after reload

CSCva17858 Duplicate SA causes tunnel interface down

CSCvb70426 GETVPN: crash due to unexpected exception to CPU during Reg/Rekey policies from KS

CSCva05558 IKEv2 IPv6 GRE IPSec fails to stabilize on asr1k on 16.3

CSCuw82187 IPSec MIB: Global IPsec Traffic counters are reported incorrectly

CSCva75125 L2TP/IPSEC from non-patted environment fails with set nat demux

CSCvc09368 Crash at update of context nhrp

CSCvb82361 Crash in IKEv2 when fragmentation is used

CSCvb24236 FlexVPN: remote auth method isn't accepted in ikev2 profile

CSCvb21220 G-IKEv2: GM fails to process rekey after coop failover to new primary KS

CSCvb22177 GETVPN: GM reuses old ip address for re-registration and fails

CSCvb81914 GETVPN: Post 15.2 GMs re-register after merge in certain conditions

CSCvc23390 Sig hash algorithm not detected correctly when SHA 256 is used

CSCvc27005 Stateless IPSec HA doesn't work when HSRP packets are being recirculated on VASI link

CSCvc11968 "clear crypto ikev2 stats" clears active SA and negotiating SA counter in "show crypto ikev2 stats"

CSCvb93733 "show crypto ikev2 stats" shows stale active SA count

CSCvb19485 IKEv2 - 2nd rekey fails if either or both peers do not support IETF frag

CSCvb51336 IKEv2 - Signature sign, verify failures seen with 4096 bit certificates with onboard crypto engine

CSCvb94852 IKEV2 Default Proposal Reset After Reload

CSCvc12306 Limit ike-init queue to improve performance in scaled scenarios

CSCva61415 Unable to initiate IKE sessions due to mismatch in CAC counters

CSCva44179 IKEv1 DPD delete logic causes stale phase 2

CSCuz15131 dqueue not empty prior to destruction crashes ipv4fib_les_switch_wrapper

CSCvb89154 Fragment packets are dropped in LISP + NAT + GETVPN network

CSCvb66239 Willr noL3 tunnel MTU is not signalled properly for locally-originated packets

CSCuz39721 ASR1K/RP2/SW 15.4(3)S4 crash

Caveat ID Number Description

190Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 225: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCvb58857 LDP NSR : Remote Side VCs stays up even with local access interface shut after SSO

CSCvb26398 New L2VPN MPLS PW does not come up with LDP NSR after SUPSO

CSCuw75352 ASR1k-lisp:Standby RP complains when eid-table removed from Active RP

CSCvb81094 lisp cli nvgen for default table instance id

CSCvb85039 LISP DDT: crash on removal of 'ddt' configuration

CSCva99178 LISP DDT: NMR for site EID prefix is returned for non-registered EIDs

CSCva93200 LISP: assert with DDT and multiple EID instances configured

CSCva43443 DNA/SA,Upon Quad SUP SSO,Mcast decap traffic black holing for ~50 sec

CSCvc10994 Crash when removing router mobile

CSCvb42533 EIGRP redistribute Mobile routes failing

CSCvc03552 ISR4K routing using PMIPv6 enabled PBR over BGP

CSCvb60498 Need to support SSMO Label format as per 3GPP TS 23.003/RFC 5149bis

CSCva52398 PMIP reverse-tunnel route disappears

CSCvc03651 SSH / Telnet / Console freezes while bringing up PMIPv6 tunnel interface

CSCva81160 PSK:- Boundary lifetime duration seconds not taking effect

CSCva32123 ALIGN-3-TRACE during boot on ISR-G2

CSCva99279 RSP3:Labels not getting assigned in spite of having free label space

CSCvb91885 Custom App TC marked with two DSCP values

CSCvb51688 stile_dns_parser may cause sporadic crashes

CSCux96341 3945 crash on flapping tunnels with traffic

CSCup19724 CENT: branch MC crashed at cent_pdp_msg_send_from_pickexit

CSCvb79930 collector cfg missing after border shutdown/no shutdown

CSCvc34452 Fatal Alignment Error Crash with Smart Probe Processing

CSCvc38951 Memory leak in Chunk Manager (List elements) in iWAN set-up

CSCvb18256 PfRv3 Channels Not Deleted Once TC is Removed

CSCvb54290 PfRv3 Password is overwritten by the global password, "password encryption aes"

CSCvb55519 PfRv3: Internet TC Not Created Due to Site-ID Timing Out

CSCuq92458 PfRv3: No Traffic-Classes Learned on Branch after Enabling Zero-SLA

CSCvb70355 Traffic does not move from stdby to active when it become available.

CSCvc07026 Crash for NHRP with evidence free memory blocks used as pointers in memory

CSCvb92697 High CPU due to NHRP when NHRP cache entry for remote spoke's tunnel address is deleted

CSCva70115 ISR4331 crash due to NHRP running 03.16.03.S

CSCva97469 VA stuck in protocol down state after failing to establish IPSec session

CSCvb64727 "no ntp allow mode control" does not seem to be working

CSCvb58392 Evaluation of NTP Trap Vulnerabilities

CSCvb48912 SNMP crashes getting ntpAssociationEntry with low/fragmented memory condition

Caveat ID Number Description

191Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 226: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCvc07577 Crash in BGP due to regular expressions

CSCvb75834 voice call is unable to complete dialing all of the destination digits

CSCvc12276 OSPF RLFA: rlfa/tilfa repair paths are not accurate in topologies with unequal cost parallel links.

CSCva88272 ASR crash with Segmentation fault(11), Process = Shell Pipeline Process

CSCum19502 Inconsistent behavior between telnet and ssh in low memory conditions

CSCva35194 PTF card is crashed while provisioning when all vty sessions exhausted.

CSCuu25580 VTY0-4 settings are modified if switch is accessed via WebUI

CSCvb17379 PFRv3 border will learn master prefix When the package is fragments.

CSCvb84388 Auth and CRL download fails with "There is another request in progress"

CSCvb96706 Client auth and enroll to subca fails

CSCuz22162 Digital certificates does not sync to standby

CSCvb92455 if cert has reachable and unreach CDP , crl download fails from 2nd time

CSCvb73018 PKI: Cannot import RSA SubCA signed by ECDSA

CSCvc01292 SSL can't be established while shadow certificate by auto-rollover on IOS Local CA server exists.

CSCva66819 Non-Vlan1 did not get initiated with pnp startup-vlan conf after reload

CSCva15013 AAA/RADIUS memory leak on IOS-XE

CSCva67564 No V-Cookie in accounting stop due to idle timeout or manual clearing

CSCvb72597 ASR1k crashes while collapsing a node after the # of subscribers falls below 4001.

CSCvc55747 ASR1K ESP100 - Both ESP crashing due to cpp_bqs_srt_yoda_place_child_internal: failed to grow tree

CSCvc22184 BQS Interrupt QSM_CSR32_QSM_LOGIC_ERR_LEAF_INT__INT_INCORRECT_POP_STATUS_ERR1

CSCvc48813 BQS unable to resume processing leading to pending objects constantly increasing

CSCvb82048 Dual QFP Crash triggered by removing service policy from interface with mixed shaper feature enabled

CSCvb16588 idx out of range cpp_qm_event_sch_data

CSCvb76638 POLARIS 16.4: fman_fp and cpp_cp core files seen with L3VPN profile

CSCvc35307 qfp-bqs-internal ucode crashed@Desc: SOR_CSR32_SOR_ERR_LEAF_INT__INT_SOR_OPF_GRANT_PTCL_UVF

CSCvb09881 IWAN NBAR may cause a reload with pa_offset_to_addr

CSCvc08848 CPP DRV: QFP memory initialization failure

CSCva47695 Entry leak in the SID_CAM leading to SID_CAM_OVERFLOW

CSCvb32672 Incorrect statistics on tunnel interface when WCCP configured

CSCvb29575 After reloading router, gatekeeper cache is turned on

CSCvb77570 ASR1K: Crash after upgrade to 3.16.3 at transmit_pkt_marmot_spa_d

Caveat ID Number Description

192Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 227: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCuw95297 ESP200 crash with 550K translations with cablevision config

CSCvb24139 H225 Sanity Check Failure

CSCvb75249 IOSXE NAT/NAT64 show platform pool issues

CSCva99822 ISR4400Err:%FMFP-3-OBJ_DWNLD_TO_CPP_FAILED:w/NAT prefix-length below /19

CSCvb28686 Throughput stuck after applying/removing qos policy

CSCvb16323 Prefixes missing under channels for spoke

CSCux03601 Esrst 2nd CFW doesn't ring all phones with the same shared line

CSCvb78593 CFM PM Sessions do not start as scheduled

CSCuw88140 IP SLA Responder Process crash

CSCvc40539 Caching skipped for p2p interfaces

CSCvb44207 CTS/SGT across GRE p2p tunnel broken when doing inline tagging

CSCuu13476 Cisco IOS & IOS XE Software OpenSSH TCP Denial of Service Vulnerability

CSCvb84451 Router may crash during SCP copy over WSMA

CSCvb22248 Crash seen when simulator push progile to the UUT

CSCvb16098 ISG:PMIPV6 subscriber awareness ipv4 to ipv6 => subscriber unstable

CSCvc34345 Executing "no line #" causes crash

CSCue25168 TPM reserves UDP/4500 for no apparent reason

CSCsq06282 Need ability to specify source address for HTTP messages from VXML GW

CSCvb27784 Router crashes when running the csim start command

CSCul74141 H245 Tunneling is FALSE even when enabled

CSCvc37836 AsmT tone not detected by IOS-XE running CPA feature

CSCvc49737 Transcoders in ISR4451 can't open the media port

CSCva54693 voip_rtp_allocate_port:Possible port leak? , when call goes on hold

CSCvb58179 add new cas-custom CLI clear-bwd-in-seize for E1-R2

CSCux44315 Per Call Debugging system restart by address error

CSCvb24266 ISR 4K Crashes When Running "Debug Voice Translation"

CSCva41070 Sip profile does not copy the second varible in INVITE message

CSCvc19209 SIP session between VXML GW and the Nuance server remains active after callback (CCB) is scheduled

CSCvb90483 VXML GW hardening changes for ICBC memory corruption issue

CSCva37722 ISG Accounting Accuracy is not worked on disconnecting PPP from client

CSCvb16274 PPTP Start-Control-Connection-Reply packet leaks router memory contents

Caveat ID Number Description

193Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 228: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Caveat ID Number Description

CSCux26195 "aaa accounting suppress null-username" not working as expected

CSCvc22376 ASR1k: Password complexity implementation does not match DISA requirements

CSCvc48752 VPDN not switching traffic to new path after link failover or routing protocol convergence

CSCvb80822 ASR1009X nplus1 - redundant allocation 0W

CSCuz30182 ASR1013: Fails to detect power supply at startup

CSCuz57513 ASR1K x86 based cards not logging ECC SBE errors to OBFL

CSCvc16495 Power supplies showing "ps fail" when they function fine

CSCvc07319 Random Netclock error messages appearing on console

CSCvc27692 hytop FPGA interrupt stuck leading to ASR crash

CSCvc62499 SPA Framing Errors (DIP2/Out Of Frame Errors) occurring silently on ASR running IOS-XE 3.11

CSCuw53453 "%EZMAN_RM-3-SERDES_AUTOTUNE_FAIL" error message with 100G CPAK

CSCuy95480 10G Link remains up in case of remote fault for MIP-100/1001-HX/1002-HX

CSCuz42253 ASR1000-MIP100: Random EPA-10X10GE link flap after reload

CSCuy49365 ASR1013 - ROMMON upgrade to 15.5(3r)S1 failed for ASR1000-2T+20X1GE

CSCvc48365 chunk corruption in XLIF pending process

CSCuz98080 Correct initialization of ZL registers in MIP100 rommon

CSCva42285 CRC errors seen during EPA reload/shutdown.

CSCuu76585 Error with 32K VLAN configured on Single EPA

CSCvc46122 Refix: Uneven traffic drops at ingress for 10G with ArgusX and ESP100

CSCvc24953 ASR-1001X: link does not come up in autoneg mode after cable pull and reinsert

CSCvb26643 RP crashed due to memory corruption while packet processing.

CSCvc39443 router may crash with ZBFW ACL modification

CSCvc57589 Source IP of RST from ZBFW due to invalid ACK not translated to PAT IP when inter VRF configured

CSCvb79182 IPSec GRE tunnel path-mtu-discovery does not work

CSCvc10866 ISATAP Server feature broken on ASR1K

CSCvc10618 [enhancement] incoming frame is punted on AC port in S1:down S2:down state

CSCvc14951 CSR crashes cpp_mma_policy_isd_free_exmem_entry

CSCvc15571 applying MPLS-TE command on an interface stops the complete traffic

CSCvc59706 %INFRA-3-INVALID_GPM_ACCESS: Invalid GPM Load

CSCvc26956 New Connection Count is Zero when Server/Client Network Delay is Non-Zero

194Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 229: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCut92421 ASR1002-X ROMMON 15.4(2r)S intermittently halts during autoboot

CSCuv59014 ASR1k ROMMON: Vulnerability in package codesign validation

CSCuu75086 ROMMON should use the revocation key offered by the secure boot FPGA

CSCux56486 Rommon version 15.5(3r)S1 will not allow booting packages.conf

CSCvb77495 ASR1K: Unexpected router reload after receiving invalid SPA IPC message

CSCva22194 ASR1002X - 6XGE-BUILT-IN module has inconsistent interface state changes

CSCuz84374 SPA modules on ASR1002-X show "missing"/"out of service" under show platform

CSCuy87204 AN: AN should not allow configuring "autonomic connect" on L2 interface

CSCuy35619 AN: Last Refreshed time in sh an nbr det prints wrong values sometimes

CSCva87987 ASR 902 crash on __be_bfd_fib_nh_change_cb

CSCvc62529 BGP crashed after 'no import' command when modifying existing VRF config

CSCvc58538 BGP crashes when removing advertise-map

CSCva55510 BGP IPv4 Flowspec AF - NEXT-HOP-SELF

CSCuz82551 BGP reflected RT Filter prefix per rfc 4684 should change next-hop

CSCuy28583 BMP(BGP Monitoring Protocol) should support on IP Base

CSCva00765 crash after no ipv4 multicast multitopology command

CSCvb11874 Crash seen when peer-group cmds are issued with bmp server configured

CSCux47208 routing loop when using iBGP between PE-CE with BGP PIC enabled

CSCuz83221 Seeing high BGP NSR convergence numbers

CSCum87883 XE312 TB@be_ip_route_update while changing BGP config

CSCuv69297 Catalyst 3850: SSH/VTY session hangs on show run or other show commands

CSCuz78357 Cisco 3850 crashed during configuration.

CSCvb31243 IOSd crash in QoS stats

CSCvb20224 Router crashes on configuring bandwidth on the Dialer interface

CSCva40531 Router crash on interface multilink removal

CSCuw09056 Config sync failure during creation of class-map through tcl prompt

CSCut87808 Crash While Accessing CallManager XML Config

CSCuy64509 CUCME enabled on 4321 supports 42 users only

CSCvc21836 SRST Clock is 9H faster on 200OK from Router

CSCvc48288 Router crash seen when IP FLOW MONITOR XXX was removed and applied back on the interface

CSCvb16454 ASR CRASHED AFTER CONFIGURING 200 BIDIRECTIONAL SXP WITH 350 BINDING.

CSCuu59472 CWS Router crash with Recursive routing loop

CSCuv11461 Dest Class in NSH was not set properly for the OOB Request

CSCut40756 ISR Crashing when upgrading image

CSCva13768 ISR 4K|PPPoE Interface|Not Forwarding all IP fragments

Caveat ID Number Description

195Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 230: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCvc15297 eigrp to mp-bgp redistribution issue when metric changed

CSCvb86484 wrong EIGRP redistribution statement in startup config breaks BGP settings atfer router reload

CSCva15084 Blocking Unsupported Port-Channel Load Balancing Configuration

CSCvb89528 GEC 1:1 limited redundancy - EC-5-MINLINKS_NOTMET

CSCvb58449 ethernet option is not present under TEFP

CSCux70821 HSRP crashed after changed serial int FR encap from IETF to HDLC

CSCvc55378 ASR1k crashed while unconfiguring Netflow

CSCva03535 HTTP closing newly opened connections due to duplicate FD

CSCvc26134 self-generated packets sent fail over PMIP-MUDP tunnel in LMA

CSCuu75193 No shut on interface, deletes Rx SC of session on other live interface

CSCvc06760 ICMP TTL messages not returned properly with NAT

CSCvc39783 ISR4K:ARP entry disappeared after delelte one of static port NAT entry

CSCus64035 EPC: mac-acl was written to running-config incorrectly in inline filter

CSCuz62942 UTD Snort: Show CLI will stop working after sometime

CSCva01398 Need to send GARP for IP unnumbered interface

CSCvc64601 ROUTE-MAP--system deletes the first prefix-list while deleting no existing access-list

CSCur47235 When one vrf deletes with "no vrf definition", ip vrf receive is removed

CSCvc35453 ISATAP Server feature broken on ASR1K

CSCvb50035 ASR - SRTP Crash during load

CSCva84569 ASR Cube - RTP/SRTP ROC not to reset for same SSRC with seq. no. reset

CSCvb80746 ASR1K CUBE Hung calls

CSCvc08361 Crash in XE3.17 in TCP-TLS B2B call scenario

CSCux25412 Crash with SIP subscribe notify enabled

CSCuu12283 CUBE failed to create DP session on STBY for Webex flow

CSCvc12716 IOSd crash @ cc_detect_mute_call with divide by zero

CSCuv90519 Map doesn't get updated with socket change on local address change

CSCvb25357 NHRP registration requests failed after ipv6 tunnel source change

CSCvc53164 ISR4321 Fails to complete phase 2 and immediately deletes the SPI

CSCvb65892 ISDN process crashed unexpectedly

CSCva59395 Crash seen after the command "no address-family ipv4 multicast"

CSCuw73532 ISIS multitopology not working if neighbor is sending IPv4 address

CSCvc49232 Crash in IWAG GTP on removing config

CSCvb85990 BDI goes down when when l2protocol peer lldp is removed from efp and added back

CSCux97236 Inter-OTV site multicast stream may not recover after AED failover

CSCvc58314 Encap modification of AC blocks further XC modification

Caveat ID Number Description

196Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 231: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.5S

CSCvc62468 Incorrect "last status change time" seen in show L2VPN VC detail

CSCuz42299 Crash when configuring CWS

CSCvb65024 LDAP authentication on CSR1000v reuses old TCP connection

CSCvb41889 leap sec insert happening on everyday's 23:59:60 in ASR903/1k after leap addition

CSCvb81728 Add 6.40 to CEL_CERTIFIED versions of polaris_dev branch

CSCvb34890 Wrong CEL version causing build failures

CSCvb84068 igmp ssm-map in VRF does not use the VRF name-server

CSCut24033 OIF not recreated for static IGMP group if flapping RPF intf AMT tunnel

CSCvc57774 HSRP PIM: new DR doesn't send IGMP query after failover

CSCvc18884 ISR4321 LSMPI-4-INJECT_FEATURE_ESCAPE: Egress IP packet delivered via legacy inject path

CSCvb47581 IWAG leak in MCSA component

CSCuz63930 mVPN Extranet mroute and mfib discrepancy

CSCvc21452 ASR903:ISIS routes are set with Max Metric due to IGP LDP Sync

CSCuv38604 IOS router reload due to arithmetic exception on 'event-log timelog'

CSCux38250 Router crashes when configuring MPLS Explicit Null

CSCux33019 Router may crash when loopbacks of its LDP neighbours are flapped

CSCvc05443 Inter-AS AB not setting label on prefix with different RD on the peers

CSCvb32611 Enable socket cache in fine grain

CSCvc37983 4431 crashes with IWAN configuration showing CENT-BR-0 mallocs

CSCuy39229 Border Parent Route not recovered after TAG CLASH

CSCvc46230 PfRv3: Crash While Evaluating/Moving TC's Between Channels

CSCvc23886 DMVPN : High CPU because of NHRP process, only with route-watch enabled

CSCuy11348 7600 constantly loses sync with NTP servers

CSCvb46984 Leap second is being set in spite of leap ignore being configured

CSCuu46111 onep: optimize route addition in ART

CSCuz86212 ISR4400 may crash while withdrawing 3.5M IPv6 BGP routes

CSCux97641 Syslog counter values from syslog server is not recorded in ASR platform

CSCvc12485 ASR1006 crash in ospfv2_print_db_simple on cmd "sh ip ospf retransmission-list"

CSCuv69650 OSPF Virtual-link using the lowest cost path

CSCuu82355 Cube should send disassociation time while sending metadata for BYE.

CSCux93045 ISG requests RADIUS although profile is configured locally - ppp changes

CSCvc71183 ASR1K ESP100 - Both ESP crashing due to cpp_bqs_srt_yoda_place_child_internal: failed to grow tree

CSCvb87341 Ping to ASR1k with a MTU of 10000 Bytes and record option set fails

CSCux11452 Cat3850 crash while executing "no queue-limit" command

CSCvc69916 Crash after primary member link goes down on port-channel and clear counters CMD

Caveat ID Number Description

197Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 232: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4bS

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4bS

This section lists the caveats fixed in Cisco IOS XE Release 3.16.4bS, which is a special release:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4bS, page 198

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4bS

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

CSCuv21984 Fair-queue queue-limit force adjust after change queue-limit.

CSCva95830 HQF not cleaned after invalid policy applied to vlan-manual GEC subintf

CSCuo15355 IWAN::AQOS: US7069 and issues found applying CLI at Hub

CSCvb82800 SRST Voicemail "vm-integration" command set missing from IOS-XE and 4k platform

CSCvb82039 ISR4331 as IP SLA Responder RTT value not correct in milliseconds

CSCuy62751 SADT throws Warnings more than one time for more iterations

CSCvb96130 Bounce/flap GRE p2p tunnel with cts causes routing to stop

CSCvb94261 Crash at fill_trap_timestamp_varbind when adding ports to MLACP

CSCvc72602 3.16.4 : Prepaid feature not installed if applied on service-stop evt

CSCvc29826 Crash with timed policy process timer expiry exception

CSCvb72458 Router repeatedly crashing with "%UTIL-3-TREE: Data structure error"

CSCva08142 IOSd crash on LISP enable router

CSCvb68201 DHCP relay option 82 for native vlan interface not working on ios-XE

CSCvb82446 voice-class busyout command removed after reload

CSCvc56866 ISR4xxx router crashed due to voice IVR script - AFW_application_process

CSCuy73642 Calls failing intermittently with cause code 47 on 4451 router

CSCvb97638 CCSIP_SPI_CONTROL memory usage leads to crash

CSCuz44452 EPA-10X10GE: Packet drops and CRCS are seen at very cold temperatures

Caveat ID Number Description

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

198Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 233: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS, page 199

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS, page 207

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Releases 15.5(3)S4b

Status Fixed

Caveat ID Number Description

CSCvb56102 Prime3.1.4:Topology not shown on PfR monitoring page on prime

CSCva99657 Dreamliner: reverse mac ppm ajustment causing issues on 2% boards

Field Name Information

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(3)S4a

Status Fixed

Caveat ID Number Description

CSCvb49344 AWS CSR: HA python script broken in container

CSCvb51688 stile_dns_parser may cause sporadic crashes

CSCva73821 ASR1K O/P session classifier counter not updating with L2TPv3 + PPPoE

CSCuz05035 ASR1K: L2TPv3 + PPPoE client scenario not working

CSCva13738 ISR4k dose not send SOLICIT msg in DHCPv6-PD over PPPoE

CSCva29616 ASR1k crash when BFD session came up triggered by OSPF

199Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 234: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCuz17963 plogd tracelogs getting generated causing high cpu in plogd process

CSCuz33638 %IOSXE-4-PLATFORM: R0/0: kernel: EXT2-fs warning:

CSCva90588 Xchassis keeps reloading after installing an RP2 with an old CPLD

CSCuz65809 Traffic stalls on Argus-X after both FP reload

CSCuy07808 ASR1002-HX/MIP100: CC crash seen on "sh hw-module subslot 0 tcam entry vlan"

CSCva37945 EPA10x10 and ASR1002-HX Built-in no-shut port impacts to neighbor port.

CSCuz69316 MIP100/EPA-1X100GE SCOOBY-5-SERIAL_BRIDGE_BLOCK_EVENT messages

CSCuy80622 PLIM send PAUSE flow control config failed in kahuna, SR & Argus-X

CSCva37982 [NTT-40k] When AC-side shut, packets stuck in QFP until no-shut

CSCvb15628 ASR1k Port channel: Deletion of VRRF MAC not happening

CSCuz67855 Incorrect Radius NAS-Port-Id with PPPoE sessions in ASR1001-X router

CSCva23372 L2-EoGRE:fman-fp crash when config VE instance with untagged encap

CSCuz75265 ASR1k: "sh plat software peer interface-manager rX" missing some info

CSCva85908 Ping fails from LMA with MUDP tunnels

CSCvb01460 ASR 901 is crashing after 20mins of loading the latest XE316 image

CSCuz72153 ASR1001-X//15.5(3)S 03.16.00//OSPF, GLBP flaps

CSCuw94493 Octeon core hang causing F1/F0 offline

CSCva41309 ESP Crash with FP Switchover observed with NTT Profile

CSCux37457 Power supply status stuck on either “ps, fail” or “ok”

CSCuz70797 AOR: extracted fields local memory initialization

CSCuy77620 Traceback is seen on %LSMPI-4-INJECT_FEATURE_ESCAPE

CSCuz53644 H.323 call is dropped after 20 minutes

CSCva58377 ISR4300- Static nat in global translate packets in VRF without config

CSCuz93698 PPTP Traffic issue with Carrier Grade NAT on IOS-XE

CSCva90029 Static NAT for a VRF removed when ceasing a different VRF

CSCuz43112 EFP deleted when unconfig otv overlay interface and then config back

CSCuz77691 OTV Non-AED forward traffic out of internal interface for about 20 secs

CSCuz17713 Router crashes with Ipsec/route map configuration changes

CSCue01951 Scrambling settings to be configurable from the CLI

CSCva87182 ASR1k: Router crash while configuring qos input policer bandwidth

CSCva36744 Router crashed at spa_ct3_process_dsx1_fe_mib_curr

CSCuz57825 10 Gig int with macsec config, not up with shut/no shut on both KS/NonKS

CSCuz22379 ASR1001-X "mcpcc-lc-ms" process high CPU

CSCuy93714 ASR1001-X, frame counter increased after reload

CSCuz03682 Router with ambiguous second vlan stops forwarding after config changes

CSCuz90934 ASR 1001-X VLAN Errors Incrementing Continuously with No Traffic

Caveat ID Number Description

200Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 235: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCuy46540 RP3: Traceback seen when executing show tech

CSCuv92652 asr1k crash when run show plat hard qfp ac feature wccp interface

CSCva61103 Config replace with 2000 sites config, BGP router crash unexpectedly

CSCuz58682 Incorrect VPN withdraw with overlapping RT on multiple RT Filter

CSCva86436 no export ipv4 unicast map triggered router to crash

CSCva24325 NSF/SSO feature not honouring TCP MSS

CSCva25965 Router may crash after multiple show ip bgp sum/neighbor

CSCva68623 [ASR1K] EBGP IPv6 NH changed global address after RPSO with NSR

CSCva03261 Memory Leak POLICYMAP_MODULE when VT having service policy unconfigured

CSCuy12658 Unexpected behavior and errors related to downstream voice flows on cBR8

CSCva07117 Layer 3 binding of BRI stays up during mgcp fallback in ISR 4000

CSCuw43266 BLF works without presence enable command under sip-ua with tcp

CSCuw49349 %ALIGN-3-SPURIOUS: Spurious memory access made at

CSCuw57474 CME Memory chunk Leak

CSCuz87695 SCCP Phones on CME not forwarding video packets on outbound calls

CSCva14170 + Dialing not work in SRST with overlap signal for sccp phones

CSCuz85779 CME getting crashed while running show ephone registered

CSCuu32404 dnd softkey issue if pressed during alerting and the line is part of VHG

CSCux27535 Lines on Sidecar will take long time to register, after ephone reset

CSCuw43408 CME 10.5 has CLI support for Jabber for Android/I-PHONE

CSCuw61375 CME software not updating xmit info and destination call id

CSCux77635 Incoming Delayed Offer SIP Trunk Call to Mixed Shared line fails

CSCva65425 IOS does not consider rule set containing translation and reject rule

CSCuy84435 shared line SIP-SCCP not working on ESRST gateway

CSCuy53662 SIP CME is not updating busy-trigger-per-button value

CSCva46047 SIP phones shows 1 hour time delay when summer time is configured

CSCuv00903 Transfer or Call forward to Parallel voice hunt groups fails.

CSCux98434 Loud click heard on SRST/CME Software Conference calls with PSTN callers

CSCva84324 ASR1K | CPP ucode crash triggered by unsupported options in GRE header

CSCuy94075 Crash at __be_cws_early_exit while running whitelist scripts

CSCva98977 CSR Ignores the ISR NSH headers because of invalid NSH length

CSCva80089 CWS configuration needs to be blocked on management interface Gig 0

CSCva88112 WL download process gets stuck forever if active tunnel goes down midway

CSCuz81585 CEF adjacency breaks with intervrf traffic in ASR920

CSCva00914 DHCP Relay Issue on CSR1kv DHCPD: SIOCSARP ioctl failed (error 22)

CSCux60876 Memory corruption due to DHCP

Caveat ID Number Description

201Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 236: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCva76745 show running-config | format with DHCP pool results in a reload

CSCva30873 hairpin call loop crash

CSCuw67294 4351 IOS MTP not relay T.30 messages

CSCva12036 DSP-MGMT MIB not hooked to the ISR4k IOS-XE code

CSCvb21776 Access-Request sends incorrect info for Framed-MTU

CSCux41072 EIGRP sending hello messages with interface in passive mode.

CSCuz81900 FlexVPN IPs stale in one EIGRP Topology table when redistributed on HUB

CSCux09085 Router reloads when cmd no key-string is configured

CSCur72967 43xx/44xx "show platform software cerm-information" not accounting pkts

CSCuz56699 ISR 4k Paging over SIP / FXS phones have no audio

CSCuz39061 "logging filter ...tcl" config crashes the router

CSCuz96173 CFM RDI bit not clearly automatically after node reload

CSCuz80158 ISSU:XE316->XE314:IOSd Core@ecfm_get_evc_count during unconfig

CSCuz80524 RP_0_linux_iosd-imag crash in ASR920

CSCuz96435 LLDP ports not listed in SNMP tables

CSCux99405 SNMP Notification Policies Are Not Triggered With IPv6

CSCva27557 ASR1k: IPv6 address with VRRS does not transfer traffic properly.

CSCun71347 3850 Crash in "CEF: IPv4" Process While Processing ARP Throttle Elements

CSCuz81292 IPv6 neighbor discovery packet processing behavior

CSCva14555 ASR1002-X router crashed on "fnf_mon_show_init_parsetree_sort"

CSCva16353 Fnf related tracebacks and fnf config issues during ISSU process

CSCuz48325 XE318SP - Memory leaks are observed after running cosmark suite

CSCut57456 copy run http command crash

CSCva31122 cpp_cp_svr crash at cpp_sc_service_ctx_stats_query_handler on ASR1000

CSCuu53233 l2_rewrite_feature core with interface AppNav-Compress1

CSCuz16259 router crashed with No such process 205 -Process= "SC CMM Recv Process"

CSCva15146 Tunnels created by AppNavXE should not be visible via SNMP

CSCuv10695 RP1 watchdog fixes

CSCuy08933 IOS-XE PAT NAT overload stops

CSCva69080 NAT process stops after dialer interface under vrf flaps.

CSCuy96461 IOS-XE EPC does not work on port-channel subinterfaces

CSCuz76293 ASR1001x cpp_cp_svr core

CSCuz20613 IOS-XE : Shell license bypass via LXC (2)

CSCuw49406 "no ip routing protocol purge interface" delete with reload

CSCuu77403 %LINK-4-TOOBIG Messages Seen on ISR 3945 with L2TPv3

CSCut77951 Arp entry changes to an encap type of 802.1Q

CSCva05149 Duplicate IPaddress assigned when the config downloaded via autoinstal

Caveat ID Number Description

202Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 237: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCut79680 ip default-gateway is not seen in running-config after AUTOINSTALL

CSCva27879 Memory Leak seen in Common ACL Show buffer while churning PTA sessions.

CSCva95795 (RC)ISR 4451 PfR Due to FP Route-Map (Modification of CSCva79279 fix)

CSCva79279 ISR 4451 Traffic Ping-Pong / Loop with PfR Due to FP Route-Map Issues

CSCuz32027 RIP is accepting the packets even if its not from RIP port

CSCuz71535 3945 CUBE crash when 302 is received without user part

CSCva39669 CPU hog in sip_tls_tcp_read_socket if sipContext is NULL.

CSCva33302 Crash in srtp lib in srtp_get_stream()

CSCuz46782 CUBE - No audio for DO-EO FA when PRACK enabled on incoming call leg

CSCuz91476 CUBE crashed if Invite receive with replaces and missing User in FromTag

CSCuz74014 CUBE responds 500 Internal Server Error to received= instead of via

CSCuz73328 CUBE returns wrong data for SNMP OID CvCallVolConnActiveConnection

CSCux55142 CUBE SIP UPDATE race condition.

CSCuz47777 DTMF issue on ISR G3/ASR during the prompt using TCL Script

CSCva80218 ISR4431 crashed due to possible memory leak issue due to CCSIP_SPI_CTRL

CSCva69488 Memory increase on CUBE with Media Forking Process

CSCuz73820 Memory Leak seen at CCSIP_SPI_CONTROL

CSCuy39729 MMoH fails. Gateway does not send IGMP join

CSCux32585 Random high CPU in CUBE due to AFW application process(3945/14.3(3)M3)

CSCuz85743 Response 404 received for busied dial-peer when 503 was expected

CSCuz71250 Router crashes when parsing ack for mid call

CSCuz42289 User-to-User header consumed by CUBE on 18x messages

CSCuv97379 [ST-P] STBY router crashed on disconnecting call on ACTIVE

CSCux42342 IOS mGRE tunnel-protection tunnel path-mtu-discovery calcs wrong MTU

CSCux16726 ipv6 OSPFv3 crypto session doesnt come UP after reload

CSCuz71889 SYS-3-BADLIST_DESTROY is seen when executing show crypto session brief

CSCva28243 Crash in IKEv2 when using FlexVPN + RADIUS

CSCtw74492 flexvpn: user authorization should work with local AAA

CSCuu44128 GETVPN on ASR with vasi interface fail to install the Rekey

CSCur15716 GETVPN: GDOI Event Trace issues on KS

CSCuu41857 Incorrect GDOI registration backoff timer calculation after crash/reload

CSCuu57594 protocol command does not set default values for timers in redundancy cfg

CSCvb29204 BenignCertain on IOS and IOS-XE

CSCva76131 Issuing "show crypto isa peer" or similar could trigger a crash

CSCuz99865 IPSec MIB queries results in memory leak and shows wrong SNMP value.

CSCuy11858 "%IPV6_INTF-3-MIN_MTU:link MTU is below 1280-byte minimum IPv6 link MTU"

Caveat ID Number Description

203Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 238: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCux99250 ASR 903 IPv6 Multicast crashes

CSCut84209 ASR1K 'ipv6 Input' high cpu with ISATAP tunnel

CSCuy14032 IPv6 loopback address not being advertised in isis

CSCux50135 ISIS Authentication TLV NOT included in initial version of LSP

CSCuz08440 TE tunnel should not be used for repair path

CSCuz91768 Tracebacks after isis config removed

CSCux42536 Polaris: Cannot execute Xconnect with pseudowire force switchover

CSCva15526 PW down after clear mpls ldp neighbor followed by RSP SSO

CSCuz33024 standby RSP failed to syncup if mix of manual and auto-discovered PW

CSCuz58940 LISP authentication-key configuration removed on reload

CSCva18067 CPU HOG and Crash by MFIB_rate

CSCuz28618 sup2t: sup crashed after MFIB errors

CSCuy45804 MCAST: PIM issue tracking RP source address

CSCuz98690 IWAN auto-tunnel - incomplete adjacencies on ISR G2

CSCuv00547 CRASH SEEN AFTER FLAPPING MPLS INTERFACES

CSCva17339 LDP session stuck in established with no TCP connection

CSCuz95908 Memory leak due to path querry with Null outgoing interface

CSCva44687 ASR 1K Running IOS-XE 3.16S w/ MPLS Crashes on 'clear ip route *'

CSCux47286 UMMT- ASR903 crashes at fib_chain_remove with periodic toggling of ports

CSCuz95541 branch MC memory corruption and couple of crashes with syslog TCA

CSCvb03588 load-balance policy cannot learn any traffic-class with differ releases

CSCva91676 PfRv3 MNH not moving traffic from OOP Link

CSCuz65182 pfrv3: config 0SLA capability to 0 on branch, chans still not disabled

CSCvb03553 PI28: snmp index: -1 and dst-site-id is 0.0.0.0 for egress TC export

CSCva98888 XE316: route change export interface snmp output is wrong

CSCva94962 XE316: unexpected Syslog Reason=Uncontrolled to Controlled Transition

CSCuz01454 DMVPN: Implicit NHRP Entry Persists if Crypto Fails to Build

CSCuy32325 DMVPN: NHRP route-watch does not delete NHO route after route change

CSCuz68398 FlexVPN:Spoke-spoke tunnel built over static tunnel instead of v-access

CSCva46399 Overriding the static nhs mapping with multicast doesn't take effect

CSCva40110 QoS Policy flap with every registration when NAT is involved

CSCuz66396 ASR1K: NTP: ntpq not able to retrieve delay/offset/jitter from router

CSCva35619 Cisco IOS Software Crafted NTP Packets Denial of Service Vulnerability

CSCuv87976 CLI Knob for handling Leap second Add/delee ignore/ handle

CSCux47463 RestAPI: rate-limit is trigger due to one request with wrong user/paswd

CSCuz62898 Crash in BGP due to regular expressions

CSCuz42995 CSCus79699 broke top allocators in crashinfo

Caveat ID Number Description

204Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 239: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCuw31413 Protect LC crash@ A critical process ubrclc_k9lc_ms has failed (rc 139)

CSCvb01610 XE316: Regular Expression Mismatch with include pattern

CSCvb00272 ASR920 : OSPFv3 IPSEC socket session is not coming up after reboot

CSCuz88848 OSPF route issue from interface vlan 1

CSCuy51091 rLFA tunnel to wrong PQ node after int removed from protection candidate

CSCuz99767 Router Crash in ospf on removal of vrf config twice

CSCuz76045 'Ctrl TC Message corrupted' messages seen with PfRv2

CSCuy22067 PfRv2 stream keep remaining in DEFAULT state

CSCuy72304 expired or corrupted certificate caused router to crash

CSCuy13701 IOS PKI: Crash while editing a VRF aware TP with enrollment profile

CSCuv44053 PKI Rollover: rollover cert is being added as active id cert

CSCva22317 PKI: CRL Fetch redirected to long URL causes crash

CSCuw42556 retry does not work in one scenario after renewal fail

CSCva17234 roll over to new certificate triggers "Crypto CA" to crash

CSCuz62115 Router crash due to PKI process

CSCux33909 T.38 fax call fails in polaris image

CSCva72564 Nike-PoC: Autoinstall obtained IP overrides USB bootstrap config

CSCuz87179 Crash observed while bringing up PTA sessions in SSS Manager

CSCur10056 Memory leak in SSS Manager

CSCuz47993 Missing Calling-Station-ID in Accounting Ticket

CSCuz81951 Sesssion not syncs to stnadby RP when control policy attached

CSCuz77746 16.3 throttle: serial interface goes down after enabling ppp

CSCuw10390 PPP Events Memory Leak

CSCuo76385 Router crashes at ic_dp_classify when Serial link flaps

CSCuz55555 "On ASR1k,Traffic rate getting effected due to qos policy.."

CSCva17867 ASR device is crashing on adding interfaces to AVC through Webui

CSCva00718 ASR1k crash after making MQC config changes

CSCva96791 ASR1k crash in cpp_qm_event_aggr_pend_del_cnt with reason LocalSoft

CSCva58151 ASR1K-ESP100 crash when a link with tunnels go down

CSCva49319 CPP Crash when flapping qos and interface speed on Yoda or Tunnel w/qos moves to vlan w/qos

CSCva63723 ASR1k memory leak in cpp_sp_svr

CSCuw16297 match protocol arp in copp doesn't work on ISR4451

CSCuz99848 Memory exhaustion traceback due to large and complex configuration

CSCuz84906 ZBF: SYN cookie hardening

CSCuz97019 Autorp Discovery packet loop

CSCva80209 cpp ipv4 multicast mLRE crash

Caveat ID Number Description

205Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 240: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCuz58499 ASR1K: Packets are not as expected on multilink interface

CSCva54632 corrupted memory crash cpp_ipsec_free_dnld_data

CSCuz01052 ISR4K: PPE crash from hal_abort with ice_tx_open_slots_thd_matched

CSCuv71273 fragmented packet cause high qfp load

CSCva64949 ASR1k crash executing NAT function

CSCuz40148 ASR1K Crashed after changing to CGN mode

CSCuz50443 ISR43xx crash when applying ZBFW

CSCva28875 NAT ALG fails on Multipart SIP Header

CSCuz82533 Router crashed when the virtual access interface comes up

CSCuu45832 STUN packets not handled properly by CPP SBC module in ASR CUBE

CSCva65990 'sh police int' hidden command causes RP to crash

CSCuz76821 tableid_ha: Memleak @ eobc_pool_getbuffer

CSCuy39110 ESRST voice gateway crash when SCCP phone goes off-hook

CSCuq39785 7841 9971 SIP Phones will not register to SRST when DN has prefix of # &

CSCux83359 COR List tag limit for SIP SRST not consistent with SCCP SRST

CSCuz10760 SIP SRST phone registration issues.

CSCux93752 SRST Double Ringback heard on blind transfer to PSTN

CSCva46459 SSH session hangs if its not closed properly

CSCuz52528 Evaluation of all for OpenSSL May 2016

CSCuz73897 ASR1k: ISG cannot assign QoS policy above 268Mbps

CSCuz85017 Memory leak at "IPSUB update In" while sending POD for Eogre sessions.

CSCuy38157 Router crash during handling L2 and L3 subscribers at the same time

CSCuv02189 ISR-WAAS installation on 4451 is gated - EZConfig workflow failure

CSCuv09032 Certain CDR fields not appearing

CSCva34472 ISR 4321 unexpected reload on h450ProcRcvdApdus

CSCva91735 Blind conferencing on 4451 may fail

CSCva72410 IOS-XE CFB fails with error "Send negative ack to CCM"

CSCuz62915 ISR4451 crash under load due to Segmentation fault(11), Process = DSMP

CSCva87849 RTCP enabled after t38 switchover, leading to t38 fax failure

CSCva22889 SWMTP route T.38 UDPTL Seq=65,72-79=RTP_Payload to (RTP UDP+1)=RTCP port

CSCuz74337 Convert cause value 86 to 16 when using MGCP

CSCuz58660 FXO port stuck with "Connection plar opx immediate " under CUCM

CSCuz42755 FXS Ports on VG320 registered on CUCM via MGCP stop working after reset

CSCuz74156 some Hootie calls are unable to mix the multicast stream after reboot

CSCuw71493 XE317 - One way voice is heard on LMR half duplex call with SCCP phone

CSCva34382 Caller continue to hear ringback tone even after agent answers call.

Caveat ID Number Description

206Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 241: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCva30483 IOS-XE 4321 Router crash with BRI interface going down

CSCuz92758 ISDN BRI layer stays down after busyout monitor interface comes back up

CSCva22751 Router crashing due to a watchdog in the ISDN process

CSCva42100 Call disconnect on SIP GW for FPI Hung connection for signaling forking

CSCuz72665 DATACORRUPTION-1-DATAINCONSISTENCY error when copying from PAI header

CSCva71465 Extend the clear FPI command to SIP-TDM cases

CSCva00551 ISR 4K Crash on SIP MA Process Due to sstrncpy()

CSCuz90873 ISR crashes in "CCSIP_TLS_SOCKET" Process

CSCux20199 Re-Invite with (main m line) dead audio stream (port 0) cause FPI hung.

CSCva00015 STBY SBC router crashing multiple times

CSCuz60446 TDM to SIP - Gateway views outgoing SDP content-length size inaccurately

CSCuy94750 ISR G4 / IOS XE MGCP controlled GW advertise G.723 codec

CSCuy83854 deb voip application vxml with 1 cvp call caused buffer overflow

CSCuv80673 TTS play not working and call disconnected abruptly

Caveat ID Number Description

Caveat ID Number Description

CSCux26195 "aaa accounting suppress null-username" not working as expected

CSCuz48415 "aaa authentication suppress null-username" not working as expected

CSCuy27733 Continuous CPE request/solicit msgs causes CPU and Memory issues

CSCuz82218 TACACS Enable authentication fails with null pre shared key

CSCuz57513 ASR1K x86 based cards not logging ECC SBE errors to OBFL

CSCvb17224 cman_fp memory leak is seen on ESP

CSCva60854 SIP40: "sh plat hardware port <> plim statistics" not showing Tx Pkts

CSCuw53453 "%EZMAN_RM-3-SERDES_AUTOTUNE_FAIL" error message with 100G CPAK

CSCuy95480 10G Link remains up in case of remote fault for MIP-100/1001-HX/1002-HX

CSCuz42253 ASR1000-MIP100: Random EPA-10X10GE link flap after reload

CSCuy49365 ASR1013 - ROMMON upgrade to 15.5(3r)S1 failed for ASR1000-2T+20X1GE

CSCuz98080 Correct initialization of ZL registers in MIP100 rommon

CSCva42285 CRC errors seen during EPA reload/shutdown.

CSCuu76585 Error with 32K VLAN configured on Single EPA

207Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 242: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCva57167 Uneven traffic drops at ingress for 10G with ArgusX and ESP100

CSCvb01450 IP/ARP connection failed between two direct-connected interfaces

CSCuz86945 LACP/ESMC frames leak through EVC after pushed vlan tag

CSCuz86942 Untagged frames being dropped in EVC after pop tag

CSCvb01992 Decrypted multicast traffic hits WAN interface ACL

CSCuz52901 ASR crash while removing crypto key from DMVPN tunnel

CSCvb33014 PerfMon causes memory exhaustion under stress tests

CSCvb04547 "ip flow monitor <> input" Multicast|unicast options don't work

CSCut92421 ASR1002-X ROMMON 15.4(2r)S intermittently halts during autoboot

CSCuv59014 ASR1k ROMMON: Vulnerability in package codesign validation

CSCuu75086 ROMMON should use the revocation key offered by the secure boot FPGA

CSCux56486 Rommon version 15.5(3r)S1 will not allow booting packages.conf

CSCva22194 ASR1002X - 6XGE-BUILT-IN module has inconsistent interface state changes

CSCuz84374 SPA modules on ASR1K show "missing"/"out of service" under show platform

CSCvb29026 udld err-disbale on remote device when reloading ASR1k

CSCva95827 Wrong values of input traffic.

CSCvb21886 POS interface doesn't come up on clearing alarms

CSCvb05362 RP crashed - UNIX-EXT-SIGNAL: Segmentation fault(11), Process = ANCP HA

CSCva55510 BGP IPv4 Flowspec AF - NEXT-HOP-SELF

CSCuz82551 BGP reflected RT Filter prefix per rfc 4684 should change next-hop

CSCuy28583 BMP(BGP Monitoring Protocol) should support on IP Base

CSCva00765 crash after no ipv4 multicast multitopology command

CSCvb11874 Crash seen when peer-group cmds are issued with bmp server configured

CSCux47208 routing loop when using iBGP between PE-CE with BGP PIC enabled

CSCuz83221 Seeing high BGP NSR convergence numbers

CSCum87883 XE312 TB@be_ip_route_update while changing BGP config

CSCuv69297 Catalyst 3850: SSH/VTY session hangs on show run or other show commands

CSCuz78357 Cisco 3850 crashed during configuration.

CSCvb20224 Router crashes on configuring bandwidth on the Dialer interface

CSCva40531 Router crash on interface multilink removal

CSCuw09056 Config sync failure during creation of class-map through tcl prompt

CSCuy64509 CUCME enabled on 4321 supports 42 users only

CSCvb16454 ASR CRASHED AFTER CONFIGURING 200 BIDIRECTIONAL SXP WITH 350 BINDING.

CSCuu59472 CWS Router crash with Recursive routing loop

CSCuv11461 Dest Class in NSH was not set properly for the OOB Request

CSCut40756 ISR Crashing when upgrading image

Caveat ID Number Description

208Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 243: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCvb22171 ASR1K : Crash related to dhcp_sip

CSCvb05465 Memory corrupt due to DHCP server

CSCvb22373 Unable to allocate resources for CF // be_dhcpv6_get_cf_buffer

CSCva13768 ISR 4K|PPPoE Interface|Not Forwarding all IP fragments

CSCtw50974 ASR/ISR4K DTMF 2833 to 2833 Not Working with MTP CoLocated and OOB+2833

CSCva15084 Blocking Unsupported Port-Channel Load Balancing Configuration

CSCux70821 HSRP crashed after changed serial int FR encap from IETF to HDLC

CSCva91655 FIB recursive loop crash

CSCug82912 RP crashes while create FR DLCI

CSCva65692 ASR1K: GARP not handled by OTV

CSCux87741 OTV router retains ARP ND cache after it becomes non-AED

CSCuu75193 No shut on interface, deletes Rx SC of session on other live interface

CSCvb18411 Static NAT with Route-map not preferred over Dynamic In-to-Out

CSCux36581 CSR1000v: part of MMA punt records lost and not accounted on LSMPI intf

CSCus64035 EPC: mac-acl was written to running-config incorrectly in inline filter

CSCuz62942 UTD Snort: Show CLI will stop working after sometime

CSCvb38269 Inter-vrf ping fails between sub-interfaces on 2 different port-channels

CSCva01398 Need to send GARP for IP unnumbered interface

CSCur47235 When one vrf deletes with "no vrf definition", ip vrf receive is removed

CSCuy80509 GRE tunnel goes DOWN with ECMP 10G interface

CSCva84569 ASR Cube - RTP/SRTP ROC not to reset for same SSRC with seq. no. reset

CSCux25412 Crash with SIP subscribe notify enabled

CSCva55916 CUBE crash in resolve_sig_ip_address_to_bind NULL ccb

CSCuu12283 CUBE failed to create DP session on STBY for Webex flow

CSCuz27252 Recmsp hung session seen when connection re-use via header is configured

CSCuv90519 Map doesn't get updated with socket change on local address change

CSCvb22177 GETVPN: GM reuses old ip address for re-registration and fails

CSCvb19485 IKEv2 - 2nd rekey fails if either or both peers do not support IETF frag

CSCvb11736 ASR920 : Config replace is getting failed with OSPFv3 configurations

CSCva59395 Crash seen after the command "no address-family ipv4 multicast"

CSCuw73532 ISIS multitopology not working if neighbor is sending IPv4 address

CSCux97236 Inter-OTV site multicast stream may not recover after AED failover

CSCva01379 VC traffic loss while doing clear xconnect peer for 10 or more VC

CSCuz42299 Crash when configuring CWS

CSCva25359 Evaluation of glibc vunlerabilities on IOS/IOS-XE

CSCva99178 LISP DDT: NMR for site EID prefix is returned for non-registered EIDs

Caveat ID Number Description

209Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 244: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.4aS

CSCva93200 LISP: assert with DDT and multiple EID instances configured

CSCva76185 Router running LISP may reload

CSCuz63930 mVPN Extranet mroute and mfib discrepancy

CSCux38250 ASR-903 crashes when configuring MPLS Explicit Null

CSCuv38604 IOS router reload due to arithmetic exception on 'event-log timelog'

CSCux33019 Router may crash when loopbacks of its LDP neighbours are flapped

CSCvb34966 ASR920 linux_iosd-image crash at fib_chain_remove (Part 3)

CSCux96341 3945 crash on flapping tunnels with traffic

CSCuy39229 Border Parent Route not recovered after TAG CLASH

CSCvb15658 Hub MC address definition cannot be changed on Branch BR

CSCva70115 ISR4331 crash due to NHRP running 03.16.03.S

CSCuy11348 7600 constantly loses sync with NTP servers

CSCuu46111 onep: optimize route addition in ART

CSCuz86212 ISR4400 may crash while withdrawing 3.5M IPv6 BGP routes

CSCux97641 Syslog counter values from syslog server is not recorded in ASR platform

CSCuz16437 OSPF TILFA: Subtract 3 labels instead of 2 from PD maximum label support

CSCuv69650 OSPF Virtual-link using the lowest cost path

CSCva88272 ASR crash with Segmentation fault(11), Process = Shell Pipeline Process

CSCva61896 Premature free of trustpoint metadata causes Crypto PKI RECV crash

CSCuu82355 Cube should send disassociation time while sending metadata for BYE.

CSCva15013 AAA/RADIUS memory leak on IOS-XE

CSCva67564 No V-Cookie in accounting stop due to idle timeout or manual clearing

CSCux93045 ISG requests RADIUS although profile is configured locally - ppp changes

CSCuz69987 PPP session termination incomplete - duplicate IP already in use by PPP

CSCvb16588 idx out of range cpp_qm_event_sch_data

CSCux82092 QOS tracebacks seen on CSR1000v when bringing up 8K PPP sessions

CSCvb28686 Throughput stuck after applying/removing qos policy

CSCvb09881 IWAN NBAR may cause a reload with pa_offset_to_addr

CSCva47695 Entry leak in the SID_CAM leading to SID_CAM_OVERFLOW

CSCvb37114 ASR1001-X / TCP drops as load increased / NAT overload

CSCuw95297 ESP200 crash with 550K translations with cablevision config

CSCvb24139 H225 Sanity Check Failure

CSCva99822 ISR4400Err:%FMFP-3-OBJ_DWNLD_TO_CPP_FAILED:w/NAT prefix-length below /19

CSCva73110 DNS customization might not work [3.16]

CSCux11452 Cat3850 crash while executing "no queue-limit" command

CSCuv21984 Fair-queue queue-limit force adjust after change queue-limit.

Caveat ID Number Description

210Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 245: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S, page 211

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S, page 218

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

CSCva95830 HQF not cleaned after invalid policy applied to vlan-manual GEC subintf

CSCuo15355 IWAN::AQOS: US7069 and issues found applying CLI at Hub

CSCva43719 "auto ip sla mpls-lsp-monitor" crashes with watchdog

CSCuy62751 SADT throws Warnings more than one time for more iterations

CSCvb16098 ISG:PMIPV6 subscriber awareness ipv4 to ipv6 => subscriber unstable

CSCva08142 IOSd crash on LISP enable router

CSCue25168 TPM reserves UDP/4500 for no apparent reason

CSCvb26045 missing "virtual-service install" command on ISR4k

CSCuy73642 Calls failing intermittently with cause code 47 on 4451 router

CSCvb24266 ISR 4K Crashes When Running "Debug Voice Translation"

CSCva37722 ISG Accounting Accuracy is not worked on disconnecting PPP from client

CSCuz44452 EPA-10X10GE: Packet drops and CRCS are seen at very cold temperatures

Caveat ID Number Description

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(3)S3

Status Fixed

Identifier Description

CSCuy21675 Crash@username_command with service pwd-encryption & common-criteria cfg

CSCuy46133 IOS-XE unable to parse automate-tester cmd after save, gone after reload

211Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 246: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCux69225 Mac filtering option "None" sends blank password

CSCuy01051 MPLS VPN over mGRE Routing issue after reload

CSCuz49841 For Template ACL members Stats Not incrementing when traffic is sent.

CSCuv93086 PPPoA sessions are not coming UP after the reload/interface flap

CSCuy68627 ASR1K-BB: double counting issue when ppp session in unbound state

CSCux98943 Padding for PPPoE over ATM should not be added for accounting

CSCuy74157 IOS-XE: 2KP/1NG espbase,sip info is not present in sh ver running

CSCux37457 Power supply status stuck on either "ps, fail" or "ok"

CSCux32911 2KP: Router crash at ptpd_mcp_rp while removing PTP clock config

CSCuy92938 Traceback is seen on cpp_cp during the router bootup

CSCuy77986 Traceback seen on configuring sgt-caching

CSCuv25529 Remote MEPs 611/613/711/712 not found and unsuccessful Traceroute

CSCuy86578 ASR1k: abnormal d-mac show running even pseudo d-mac not defined

CSCuy59471 erspan supports configure flexible mac for the wan interface

CSCuz34766 ASR1000-2T+20X1GE GE ports cause CRC errors when connected to some LCs

CSCuz47707 EPA 1GE Ports may cause CRC errors

CSCuw66285 ASR1001-X: Counters for Q-in-Q sub interface not working as expected

CSCuw97986 LLDP not working between ios-xe and ios-xr on subinterfaces

CSCuz09783 ZBFW asynchronous memory API change for USD platform

CSCuy06618 DMVPN Phase 3 Hub is not sending NHRP redirect with Shared IPsec profile

CSCux21257 DMVPN Spoke running IOS-XE fails to establish IPSec tunnel

CSCuz21435 IOS-XE: 'ACE event' process watchdog crash.

CSCux91300 Polaris 16.2: Traceback@be_ace_send_ikea with gre configs

CSCuy86812 Router crash when share tunnel protection with MGRE and GRE tunnels.

CSCuw40606 SpeedRacer: crypto backpressure cli does not work

CSCuy33103 incoming frame from AC is punted even though l2tp session is down

CSCux66017 ASR1K crash due to "SNMP engine" when polling ifEntry on sonet interface

CSCux84838 IOSXE_MLP-2-STATS_TIMED_OUT tracebacks

CSCux68942 "debug platform software infrastructure punt mma" enhance for lost seq

CSCuz16934 PfRV3: Unexpected big byte lost report with NBAR based QoS integration

CSCuz38068 SIP call losses one audio leg during RE-Invite when NAT is deployed

CSCuw95900 Throughput license breaks Dynamic NAT

CSCux74788 ASR1002-X: Memory leak in IOSD: acl-handle

CSCuy38643 ESP PBR crash on interface delete

CSCux23929 DL RPC timeout during FPD upgrade of CEOP SPAs

CSCux36675 VLAN Unlimited not working in certain case with port-channel

CSCuu17470 XE314:1NGPacket drop Built-In interface configured with EVC and xconnect

Identifier Description

212Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 247: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCux86297 show tech-support take long time due to "show crypto ssl stats"

CSCux68796 CPU usage 100% when do get-next entStateStandby on ASR1001/2-X

CSCuw97842 Standby RP crash at be_ancp_get_dsl_line_attrs

CSCux67975 AIGP for next-hop BGP route is not being used or its not deterministic

CSCuy03054 ASR1K IOSd may crash in BGP Accepter process due to segmentation fault

CSCux55351 ASR1K router crashed due to running BGP with AIGP

CSCuw92735 BGP multicast signalling is not working properly, Error: c-route type 7

CSCux70093 BGP RR does not advertise vpnv6 prefixes even all RT filters are learnt

CSCux97040 BGP: default RT filter flag not reset when <clear ip bgp > executed

CSCuy20481 Crash due to stale pointer after removing vrf command export AF map

CSCux76332 Deleting a statement in export map, removes other statement

CSCux91976 gateway route with AIGP metric only works for host route without supernet

CSCux96029 GR Non-restarting peer does not advertise VPN routes default RT filter

CSCuy03504 Incorrect prefix count upon clearing bgp peering

CSCux62094 Routes are not exported from vrf to global due to incorrect export limit

CSCuw99632 SUP crash @process bgp router when configure ng-mvpn

CSCuy40894 VPN routes may miss withdraws with RTC post route to peer disturbance

CSCuu79021 ASR1K: Aggr GEC QoS in Suspend state even after noshut the member link

CSCuy90036 Hostname not allowed beginning with numbers

CSCux97225 CDP-EV: Bad checksum in header

CSCux03010 Longest Idle voice hunt group is not working as expected on CME 10.5

CSCux75400 TDOS and silent-discard are impacting SIP SRST Phone Registration

CSCuj31339 Chunk memory leak in common flow table

CSCux37497 Malloc Issues with chunk manager perf_mon_async_cft_create_fo()

CSCuw02624 IOS:Cannot periodically establish SSL connection

CSCux47123 Polaris: In FIPS mode, router should crash if it can not get HW entropy

CSCux79855 TPS Server failure in crypto_engine_pk_decrypt breaking https post sso.

CSCuy01341 Crash on processing packet on cws-tunnel in

CSCuw43560 crash while running uid script.

CSCux77377 Traceback on Idle system with one lite session on continuous churn

CSCuz49548 MLPPP over dialer broken for all platforms

CSCuy46981 "no ip domain lookup" always in "sh run all"

CSCuw90662 MODEMPASS usage does not show up in show call active voice brief output

CSCux82241 $$TS: EIGRP SAF sequence not same for site-prefix and discovered site

CSCux92391 $$TS: SAF service 5 is not seen on 3945e branch after HUB MC reload

CSCuv85472 SR 635576687 6500 EIGRP VRF MD5 AUTHENTICATION ERROR AFTER RELOAD

CSCuv74256 IOS: HMAC key miscalculated with DH Group 21 and IPSec PFS enabled

Identifier Description

213Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 248: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCuw42626 ISR4451(overlord): Packet drop with AH Algorithm SHA384 and 512

CSCuw48857 UP23n : USD platforms crashes for "sh plat hard crypto-device util" cli

CSCux49494 'allow connections' or 'telephony-service' config is required on ISR4k

CSCuv40225 G8032 ring stuck on protection State

CSCuz50434 ISSU:XE314<->XE316 : IOSd Core@cfm_ha_issu_db_to_msg_pre_mpdb_transport

CSCux15954 EEM : fatal condition error from operating system

CSCux99594 EEM Policies May Not Be Able To Send Email

CSCux68976 Crash in fib_fib_get_fib_tableid

CSCux06777 Device crash with RPF configured.

CSCux91174 FNF: add show tech fnf

CSCuy99086 Appnav with WAAS experiences an unexpected reload.

CSCup74718 IOSd crashed due to watchdog timeout after the reload command was issued

CSCuy41182 crash on RP forwarding manager due to cpp_ucode core on ISRG3

CSCux40661 ASR1001-X should not allow macsec config on non-supported interfaces

CSCuy54218 ASRNAT: Memory leak caused by enabled snmp-server

CSCux80430 Archive command broken when files removed by tracelogs rotation

CSCuz39319 Part of CSCuy80664 for XE316_throttle

CSCuy38707 After RSP switchover, BFD hangs for up to 10 minutes before converging

CSCux39969 Redistribution 0.0.0.0/x to RIP doesn't work after clear ip route *

CSCuv86229 Interrupt stack overrun and crash due to recursive tunnel lookup, Part 2

CSCuz41999 Optimizing the EoGRE endpoint creation/deletion

CSCuy80664 VxLAN tunnel display issues

CSCuz07185 CDR field 71 (remote-media-address string) is 0.0.0.0

CSCuy21885 Changing "no monitor event-trace voip ccsip limit" to default limit

CSCut92547 Crash at pp_delete_socket

CSCuy48358 Crash during SIP subscribe notify ACK

CSCux01773 CUBE Anti-Tromboning C-Line Transition not properly handled.

CSCux73693 Cube doesn't handle notify 200 ok if it is received after the bye

CSCuy33237 CUBE not triggering reinvite during call resume

CSCuz14872 IOS Fails to correctly populate RTCP SSRC Field

CSCux05980 IOS-XE router has "[dsp] (ERR): TABLE DB LOOKUP: Invalid ID 0." error

CSCuw70011 NanoCUBE stale registration entries with options keepalive

CSCuy40672 One way audio in a DODO call after transfer with REFER disabled

CSCuz25416 ROC update for CUBE session refresh dspware and IOS code commit

CSCuy19738 sh dspfarm profile <id> shows active dsp resource even after call disconnect

CSCuv70862 [PI-29] CUBE doesn't update caller-id change from PAI / PPI from the UAS

CSCuw17287 [PI28 HARD]CUBE is sending wrong codec in 200OK resp ED UPDATE consume

Identifier Description

214Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 249: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCux16754 [Pluto2] Performance Improvements

CSCuy30957 For IPv6:Activate Under GDOI Fail-Close Disappears on Reboot

CSCuw79748 Cannot ping own tunnel interface

CSCuy43118 XE316: HubBR might be crashed@tunnel_protection_validate_shared_profile

CSCuw48400 GetVPN GM unable to register or rekey fails - sig-hash > default SHA-1

CSCuy01778 GETVPN KS reload after split and merge

CSCuz14788 New reg invoke PKI function breaks the GETVPN CRL Checking feature

CSCux83732 Pseudotime not being synchronized between GETVPN Key Servers

CSCux25628 Diffie Hellman computation fails due to leak in crypto engine

CSCuy41990 ikev2 2nd time rekey fails when rekey request packet is fragmented

CSCuz17348 IKEv2 lifetime resets to default after reboot

CSCuv31981 ISR Router Crashes When Trying to Delete a Freed SA

CSCuv26774 ISIS holds routes even after removing interface with config replace

CSCux59649 ISIS lsp-mtu size 128 removes TILFA and rLFA tunnels

CSCux29806 ISIS routes are not not installed in the routing table from isisdatabase

CSCuy37025 ISIS: Show ip route shows deleted route as still being advertised, even though it not advertised.

CSCux96625 paths not present under "show isis fast-reroute remote-lfa tunnels"

CSCuy12271 Wrong LSP Size Calculation Following MAC Move with OTV

CSCuy90947 ASR1K : GTP PDP context stuck in deleting state

CSCuz35203 SSM connection manager crash during VFI pseudowire bind

CSCuy02409 BDI not Passing VRRP Multicast Traffic

CSCuw14311 RSP2: Outgoing interface is not programmed in hardware

CSCuy60338 l2tp crashes during failover preceeded by a kernel panic

CSCux78294 Crash on router when removing L2VPN

CSCux58640 LDP NSR: Label Mapping Messages Not Sent on RP SSO and VCs Re-bind

CSCuz34243 the AC segment remains unprovisioned when 'no shut' is done

CSCut45177 CWS HTTPs traffic fails to load on ISR configured with NVI

CSCux73439 ASR - hpet2 increasing min_delta_ns to 33750 nsec

CSCuz18772 ASR1004:RP1 : Clock reset to 1 January, 1970 after reload

CSCux05579 IPCentral: Systemtap 1.4

CSCuy65618 LISP may put incorrect UDP checksum into control messages

CSCuy03680 V3Lite IGMP packets sent instead of V3 when UDP based feature is present

CSCuy51474 In-band signaling: mLDP database inconsistency causes RPF failures

CSCuz23933 Normal cache does not work if producer is pa-async

CSCux21746 NTT: CPU hog post SSO for 30K/50K scale

CSCux23839 MAG flaps bindings and tunnel for every mobile network update

CSCuy67265 MAG not advertising MNPs learned via BGP

Identifier Description

215Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 250: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCuz03252 PMIPV6 Thread process memory leak leads to crash

CSCut70077 Quintessa-Flex-central, pmipv6 clients failed roaming, no more SWIDB

CSCuw10271 Sending IMSI/MSISDN in PBU should be optional

CSCux34430 Traffic not flowing through for MAG MNP's with PBR

CSCuy27972 Router is not sending registration using collocated gateway

CSCuy87734 ASR1K RP crashes LCON Main process when heavily loaded

CSCuy81441 Router may crash due to LDP bindings

CSCuz04378 ICMP Time exceed dropped due to uRPF on the MPLS PE (per-ce label)

CSCuy05549 MPLS: ping mpls failed with no FEC mapping

CSCuz03646 match protocol "netbios-dgm" CLI not working for c800 NPE images

CSCuy31450 Router crashes after reload with protocol pack auto update config

CSCuy64209 3900 router crashes on enabling PFRV3

CSCuy42200 IOS-XE Watchdog Crash in cent_rpi_route_lookup_n_monitor_start

CSCuz22260 ISR G2: unexpected byte lost with PfRV3 and NBAR based QoS integration

CSCuy32099 ISR G2:WAN Intf withdrawn when channels in Init State become unreachable

CSCuy01555 PfRv3/MNH - branch to hub channel has wrong nexthop

CSCuy55876 PfRv3: OOP reason may show invalid reason or garbage output

CSCuy71712 FlexVPN: Spoke spawns a virtual access to connect to the hub

CSCux80450 %REGISTRY-3-STUB_CHK_OVERWRITE: error seen during boot up

CSCuy20654 ASR1k reply to NTP broadcast

CSCux99025 Evaluation of Cisco IOS and IOS-XEl for NTP January 2016

CSCuz24233 NTP process is getting stopped & not able to create server relationship

CSCuy68037 Crash due to IOS watchdog when deleting persistent logging files

CSCuy44377 Syslog: Source-Interface address change doesn't take effect in IPv6

CSCuy04757 Crash@ospfv3_router_process_mgd_timers on shut/no shut of sub-intf

CSCuy32709 R-LFA Tunnels not established on setting DS required attribute

CSCux19034 XE3.16 crashes when conf "distribute-list" under router ospf and sh run

CSCux82630 show version: system restart time changes by a second periodically

CSCuo61229 ASR1002 Crashed after "show pfr master active running"

CSCuy85870 Wrong TD next-hop for overlapping prefixes

CSCuy33129 G2 routers not able to download Trustpool due to nvram space

CSCuw15256 IOS PKI: Certificate validation fails after reload

CSCux52544 PnP Fails to Initiate with Non-VLAN1 Feature Configured

CSCux14863 AN : CSR & ASR1K crashes after "undebug all" or "show debugging"

CSCuy77179 Calling-station-id missing in web logon access-request

CSCuz41395 CoA Ack for service-logon does not have session ip addr

CSCuy26377 Memory leak observed after upgrade to XE 3.13.4

Identifier Description

216Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 251: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCuy40721 Not updated parameters when session is renewed in unauth state

CSCuy70502 show memory summary includes garbled characters

CSCuz13399 ISSU XE316 ->XE317: ATMoMPLS ip ping failed CEoP link for port mode conf

CSCuy08412 ASR1K fman_fp_image crash with ACL changes

CSCul24641 ESP crashes due to BQS SRT stem memory parity interrupt

CSCuy21483 ISR4451-X Crash at cpp_dsp_get_stream_stats

CSCuz10855 ASR1002x crash in crypto_pstate_dequeueue

CSCuy65506 ASR1K ESP200 QFP utilization intermittently spikes (CSCuw44791)

CSCux47830 ASRNAT: Pool leak in PAP mode leading to %NAT-6-ADDR_ALLOC_FAILURE

CSCux68096 ucode crash abort called from ipv4_nat_create_inside_addrport_bind

CSCux43553 XE316: ASR1001X BR ucode crashed at ipv4_input_cent_rc_process

CSCuy89796 ASR1k cpp_cp_svr crash due to WRED mark prob set to 256

CSCuw11097 ASR one way audio due to incorrect provision by FMAN-RP

CSCux77255 ISR 4K - srtp ucode crash

CSCuy16530 Crash after member link re-added to port-channel and clear counters CMD

CSCux89723 Error when service-policy at sub-interface/pvc/service-group is applied

CSCuz40368 ISR crypt map causes AppNav token to increase and AppNav policy to faill

CSCuy51825 Router crash in udpTrans_socket_get_data

CSCuw55717 Memleak @ pak_pool_cache_item_get : Scaled TFEX

CSCuy55849 RTR installs the ISIS(or OSPF) route with Higher Metric in the RIB

CSCux61417 Memory leak in IPPM Server due multiple timer registrations

CSCuy87697 Missing debug information for IP SLA select thread

CSCuw09694 Device crash when "ip host" used by an SSH sourced from CLI is removed

CSCuy45630 IOS SSH client incorrectly interprets version string and terminates sess

CSCuy38709 Memory leak with watcher_create_common.

CSCuy54623 Evaluation of all for OpenSSL March 2016

CSCuw86733 CSR1000v fails to hairpin AC SSL traffic through an IPSec VTI Tunnel

CSCux82377 ASR 1K ISG Router Crashes When Polling "csubSessionEntry" MIB

CSCux90880 ASR1004 memory leak due to SSS Manager

CSCuy69440 ISG Critical Exception and crashing with SSS-Manager holding memory

CSCuy14138 RFC 5515 : CSUN is triggered when IPBSA service is applied

CSCux81900 RFC 5515:ICRQ having Blank circuit-id and incorrectly formatted AVP's

CSCuy94842 Crash on router when using stcapp

CSCuv41355 Unable to telnet -- No wild listener: port 23

CSCuw94487 1GB OVA sometimes fails to install when 1GB quota available on ISR-G3

CSCux56741 2951 crashes every 15 min due to stacklow

CSCuz03079 ISR-4K Processing Error: H323 Setup parameter "mediaWaitForConnect TRUE"

Identifier Description

217Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 252: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCuv28454 T.38 FAX communication failure with GateKeeper

CSCuy87720 Commit libQsig for both 64bit and 32bit

CSCuy49600 ISR-4K libQsig.a library is missing *.o files

CSCuz23329 Many inactive sccp sessions in show sccp connections

CSCuy85653 One way audio via ISR 4K after call is resumed from IP phone after SNR

CSCuy65330 RSVP Reservation Failure Causes Call Drop on Voice to Video Calls

CSCus45019 Media loop detection failure

CSCuy14532 rtp/rtcp media activity timer doesn't trigger when only 1 rtp leg drops

CSCuy43633 Voice Gateways - SCCP Early Offer fails with IPv6 enabled.

CSCux54794 Configuration under the E&M voice-ports are missing after the reload

CSCux88265 DSP errors seen and audio fails for MGCP-FXO to IP Phone call

CSCuy16501 Static noise introduced on FXO after IOS upgrade

CSCuy80902 VG320 - voice-port power alarms and loud noise when call is answered

CSCuv87098 Connected number not populated in RPID correctly

CSCuy68921 Crash seen when forwarding of SIP MWI as qsig MWI on ISR4k and ISRG2

CSCuy82019 SIP UPDATE/Re-INVITE not passed onto forked media(recording) leg by CUBE

CSCuz22409 SIP UPDATE/Re-INVITE not passed to one of the recording legs by CUBE

CSCus03761 Stack overflow crash @ ip_epm_proxy_slow_check.

CSCum05146 NAT SIP ALG removes certain media attributes

CSCuw29082 VXML GW : Record element not recording more than 15min

CSCuz03703 EPA-10x10GE: interface CRC errors are seen

CSCuy38110 EPA-10X10GE: Interface Input errors are seen

Identifier Description

Identifier Description

CSCux26195 "aaa accounting suppress null-username" not working as expected

CSCuz44459 Account-stop sent without input output fields

CSCuz57942 Memory leak in AAA after many CoA

CSCuz22430 Router reload unexpectedly when received anomaly from TACACS+ server

CSCuy80703 ASR1K//03.10.05.S//Traceback & Error Logs seen as ESS TC CGM: seg_id

CSCuz05035 ASR1K: L2TPv3 + PPPoE client scenario not working

CSCuz33638 %IOSXE-4-PLATFORM: R0/0: kernel: EXT2-fs warning:

CSCuz37105 all LCs down to unknown when standby RP w/ on an old version is inserted

218Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 253: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCuz57513 ASR1K x86 based cards not logging ECC SBE errors to OBFL

CSCuu27478 XE316: Ovd crashes with multiple frequent SGT caching add/remove commands

CSCuz69316 MIP100/EPA-1X100GE SCOOBY-5-SERIAL_BRIDGE_BLOCK_EVENT messages

CSCuw53453 "%EZMAN_RM-3-SERDES_AUTOTUNE_FAIL" error message with 100G CPAK

CSCuy95480 10G Link remains up in case of remote fault for MIP-100/1001-HX/1002-HX

CSCuy49365 ASR1013 - ROMMON upgrade to 15.5(3r)S1 failed for LC in slot 0

CSCuu76585 Error with 32K VLAN configured on Single EPA

CSCuz52901 ASR crash while removing crypto key from DMVPN tunnel

CSCuy76865 Crypto session stuck after ESP get reloaded or crashed

CSCuz27907 IOS-XE: Issues with GETVPN and mGRE packet classification

CSCuz20165 XE316: cpp_cp crashed when shutdown 20 DMVPN ipsec tunnels

CSCuw94493 Octeon core hang causing F1/F0 offline

CSCuy50888 ASR1k Console is getting stuck while downgrading to 3.13.3 from 3.16.2

CSCuy77620 Traceback is seen on %LSMPI-4-INJECT_FEATURE_ESCAPE

CSCuv52997 /32 static route added without add-route enabled for outside dynamic nat

CSCuz53644 H.323 call is dropped after 20 minutes

CSCuz50915 Unexpected reboot on router due to flexible netflow

CSCuz17713 Router crashes with Ipsec/route map configuration changes

CSCut92421 ASR1002-X ROMMON 15.4(2r)S intermittently halts during autoboot

CSCuv59014 ASR1k ROMMON: Vulnerability in package codesign validation

CSCux93176 ASR1k:stby RP stuck while bootup

CSCuu75086 ROMMON should use the revocation key offered by the secure boot FPGA

CSCux56486 Rommon version 15.5(3r)S1 will not allow booting packages.conf

CSCuz22379 ASR1001-X "mcpcc-lc-ms" process high CPU

CSCuz03682 Router with ambiguous second vlan stops forwarding after config changes

CSCuo16316 1NG: Nightster explicit QinQ entry hitting QinAny entry in VLAN TCAM

CSCuz43479 ASR100X: Router crashes at sdb_handle_string

CSCuz05346 BGP needs to recognize 4-byte private ASN

CSCuy28583 BMP(BGP Monitoring Protocol) should support on IP Base

CSCuz58682 Incorrect VPN withdraw with overlapping RT on multiple RT Filter

CSCuz21120 IR:%BGP-6-MALFORMEDATTR: Wrong length 1 for COMMUNITY attribute seen

CSCux47208 routing loop when using iBGP between PE-CE with BGP PIC enabled

CSCum87883 XE312 TB@be_ip_route_update while changing BGP config

CSCuu37662 Unexpected Reboot during CoA Updates

CSCuy12658 Unexpected behavior and errors related to downstream voice flows on cBR8

CSCuy64509 CUCME enabled on 4321 supports 42 users only

CSCuu59472 CWS Router crash with Recursive routing loop

Identifier Description

219Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 254: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCuv11461 Dest Class in NSH was not set properly for the OOB Request

CSCux88022 ASR1K : Crash at dhcp_sip_get_config

CSCuz62786 ISR4K sccp based transcoding hanging dsp-session_leg on data-plane

CSCux09085 Router reloads when "no key-string" is configured

CSCuz52857 ISR 4K - Crash Due to Stuck Thread in Crypto IPC processing

CSCuz62911 ISR4K Stop Decrypting due to CERM Error - IN_PKT_CERM_DROP

CSCuz56699 ISR 4k Paging over SIP / FXS phones have no audio

CSCux70821 HSRP crashed after changed serial int encaps from frame-relay to DHCP

CSCut57456 copy run http command crash

CSCux87741 OTV router retains ARP ND cache after it becomes non-AED

CSCuz16259 router crashed with No such process 205 -Process= "SC CMM Recv Process"

CSCuu75193 No shut on interface, deletes Rx SC of session on other live interface

CSCux23610 Removing NAT statement in VRF-A impacts traffic flow in VRF-B

CSCuw85938 UP09c: ISR4300 & ISR4451 has performance drop for Basic NAT case

CSCux36581 CSR1000v: part of MMA punt records lost and not accounted on LSMPI intf

CSCus64035 EPC: mac-acl was written to running-config incorrectly in inline filter

CSCuy96461 IOS-XE EPC does not work on port-channel subinterfaces

CSCuz62942 UTD Snort: Show CLI will stop working after sometime

CSCuz57114 Crash in IPV6 ND process while bringing Up PTA sessions

CSCuz12967 Crash after show ip protocols vrf with RIP enabled

CSCuz63818 RIP won't delete prefixes after peering interface goes down

CSCuy80509 GRE tunnel goes DOWN with ECMP 10G interface

CSCuz45361 ASR disconnecting calls when there is a dtmf mismatch and no mtp/xcoder

CSCuy96064 Crash seen under load in CVP REFER_MIDCALL BLOCK scenario

CSCux25412 Crash with SIP subscribe notify enabled

CSCuz46782 CUBE - No audio for DO-EO FA when PRACK enabled on incoming call leg

CSCuz45207 Cube crash at skinny_codec_supported

CSCuu12283 CUBE failed to create DP session on STBY for Webex flow

CSCuz64285 Cube fails to send the SIP Error code response

CSCux55142 CUBE SIP UPDATE race condition.

CSCuz47777 DTMF issue on ISR G3/ASR during the prompt using TCL Script

CSCuz27252 Recmsp hung session seen when connection re-use via header is configured

CSCuz71250 Router crashes when parsing ack for mid call

CSCuz69975 Under load crash is seen in CVP REFER_PASSTHRU scenario

CSCux42342 IOS mGRE tunnel-protection tunnel path-mtu-discovery calcs wrong MTU

CSCux16726 ipv6 OSPFv3 crypto session doesnt come UP after reload

CSCur15716 GETVPN: GDOI Event Trace issues on KS

Identifier Description

220Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 255: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.3S

CSCuu41857 Incorrect GDOI registration backoff timer calculation after crash/reload

CSCux99250 ASR 903 IPv6 Multicast crashes

CSCuy83787 ISIS authentication problem even 'send-only' is configured

CSCuw73532 ISIS multitopology not working if neighbor is sending IPv4 address

CSCuz08440 TE tunnel should not be used for repair path

CSCux97236 Inter-OTV site multicast stream may not recover after AED failover

CSCuy19395 ASR1006 :crashes after running the "redundancy force-switchover" command

CSCuz39721 ASR1K/RP2/SW 15.4(3)S4 crash

CSCuz33024 standby RSP failed to syncup if mix of manual and auto-discovered PW

CSCuz42299 Crash when configuring CWS

CSCuw70229 Content of CISCO-USER-CONNECTION-TAP-MIB cannot be retrieved via snmpwalk

CSCuz58940 LISP authentication-key configuration removed on reload

CSCuy32696 Traceback after cmd 'redistribute lisp'

CSCuz63930 mVPN Extranet mroute and mfib discrepancy

CSCux38250 ASR-903 crashes when configuring MPLS Explicit Null

CSCuv38604 IOS router reload due to arithmetic exception on 'event-log timelog'

CSCuy12487 "ip nbar custom transport" vanishes from running config on reload

CSCut12616 SSTE: Crash is seen @multikey_hash_inc_reference_count

CSCuy39229 Border Parent Route not recovered after TAG CLASH

CSCuy03519 PFRv3 MC Policy name can cause policy advertisement problems to branch

CSCuz65182 pfrv3: config 0SLA capability to 0 on branch, chans still not disabled

CSCuz56504 Traffic black-holed on BR after brownout or hard reset on MC

CSCux88058 XE316:PfRV3 Channel next-hop not withdrawn with BGP down

CSCuz68398 FlexVPN:Spoke-spoke tunnel built over static tunnel instead of v-access

CSCuu46111 onep: optimize route addition in ART

CSCuz61339 BGP task crashed with common regular expression in run-configure

CSCuz62898 Crash in BGP due to regular expressions

CSCuz45888 C7200 - wr memory is causing OSPF flap when fast hellos are used

CSCuz16437 OSPF TILFA: Subtract 3 labels instead of 2 from PD maximum label support

CSCuv69650 OSPF Virtual-link using the lowest cost path

CSCuy51091 rLFA tunnel to wrong PQ node after int removed from protection candidate

CSCuy72304 expired or corrupted certificate caused router to crash

CSCuy13701 IOS PKI: Crash while editing a VRF aware TP with enrollment profile

CSCuz62115 Router crash due to PKI process

CSCuu82355 Cube should send disassociation time while sending metadata for BYE.

CSCuz47993 Missing Calling-Station-ID double accounting

CSCuz57124 Tracebacks *MSG 00001 TRUNCATED* on standby, after PTA Sess brought up

Identifier Description

221Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 256: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

This section contains the following topics:

CSCuy48871 XE313/XE316/XE317: L3 IP sessions are not authenticated

CSCux93045 ISG requests RADIUS although profile is configured locally - ppp changes

CSCuz69987 PPP session termination incomplete - duplicate IP already in use by PPP

CSCuz20424 Changing "shape average" on the fly causes router crash

CSCux82092 QOS tracebacks seen on CSR1000v when bringing up 8K PPP sessions

CSCuv50592 ASR1K RP2/ESP100 ACL traceback & crash @ acl_find_free_statsid

CSCuy41164 ISR 4351 crashed while IWAN app was pushing configs

CSCuz50443 ISR43xx crash when applying ZBFW

CSCuz51603 multicast crashed with invalid leaf pointer

CSCuz01052 ISR4K: PPE crash from hal_abort with ice_tx_open_slots_thd_matched

CSCuv71273 fragmented packet cause high qfp load

CSCuz40148 ASR1K Crashed after changing to CGN mode

CSCuw95297 ESP200 crash with 550K translations with cablevision config

CSCuv79772 UP29, UP30: Performance Degradation with ISR4400 on BasicFW+NAT of >-5%

CSCuu45832 STUN packets not handled properly by CPP SBC module in ASR CUBE

CSCuo15355 IWAN::AQOS: US7069 and issues found applying CLI at Hub

CSCuw50415 Crash seen @ hwidb_iftype_unlist while doing unconifg of channel-group

CSCuy39110 ESRST voice gateway crash when SCCP phone goes off-hook

CSCux86075 Unexpected crash during SSH operation

CSCuy14110 CPU Hike seen in XE 316 due to VTEMPLATE BKG OW Process

CSCuy38157 Router crash during handling L2 and L3 subscribers at the same time

CSCue25168 TPM reserves UDP/4500 for no apparent reason

CSCuv09032 Certain CDR fields not appearing

CSCuy73642 Calls failing intermittently with cause code 47 on 4451 router

CSCuz52693 ISR 4K Memory Holding in CCSIP_SPI_CONTROL

CSCux20199 Re-Invite with (main m line) dead audio stream (port 0) cause FPI hung.

CSCuz60446 TDM to SIP - Gateway views outgoing SDP content-length size inaccurately

CSCuz17364 DTMF Type ahead buffer on GW with Nuance not working

CSCuz44452 EPA-10X10GE: Packet drops and CRCS are seen at very cold temperatures

CSCuz08730 MDR ISSU fails from XE3.16.3 to XE3.17.X for BUILT-IN-2T+20X1GE

CSCus64226 vxlan encap adjacency error after rp switchover(RP HA not support)

CSCuz80158 ISSU:XE316->XE314:IOSd Core@ecfm_get_evc_count during unconfiguration

Identifier Description

222Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 257: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2bS, page 223

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S, page 223

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S, page 223

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2bS

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Identifier Description

CSCuz54836 ASR1002-X with harddisk installed stuck in crash and reboot cycle

CSCuz65079 SIP40: Support for new revision MPC8548 Rev.E CPUs

Identifier Description

CSCux75028 ASR1k ucode crash at fnf_aor_flow_extrfield_list_free

CSCux43407 router console hang and later crash - sensor related

CSCuu76585 Error with 32K VLAN configured on Single EPA

CSCux59115 ASR1002-X Crash with dpidb_tableid_params_initialize

CSCuv59014 ASR1k ROMMON: Vulnerability in package codesign validation

CSCuu75086 ROMMON should use the revocation key offered by the secure boot FPGA

CSCux56486 Rommon version 15.5(3r)S1 will not allow booting packages.conf

CSCuv29137 Tracebacks noticed @ "fman_identity_hw_secondary_init" function

CSCux77255 ISR 4K - srtp ucode crash

223Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 258: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.2S

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(3)S2

Status Fixed

Identifier Description

CSCux88010 XE3.16: Optimize HSL Punt buffer size for high scale MMA punt records

CSCuw47720 ASR1001-X Mgmt port negotation issue with peer device

CSCuw30599 ISR4331-B: traceback occured when enabling Ethernet Data Plane Loopback

CSCux00303 Router crash after stopping EPC

CSCux29703 ASR1000-2T+20X1GE fails to boot on router reload with SPA-3-NULL_BAY_PTR

CSCux55692 TCAM Errors in NL11k TCAM of Fixed Ethernet Linecards

CSCut62449 Disable HTTP AIC support

CSCux50997 IOS crashes on bootup without any startup configuration

CSCuv01168 SPA-2XCT3/DS0 controller is not coming up on fresh reboot.

CSCux44606 Name ACL for Multicast Boundary Stops Working Upon Reload

CSCux57066 ASR1K : Lawful Intercept not working as expected for IPv6 traffic

CSCux33568 ESP crash while reconfiguring FR interface to MFR bundle

CSCux02656 ASR1K: Crash related to collecting NetFlow data for IPv6 flows

CSCux07224 ASR1K crash with OTV due to L2BD FIB entry change

CSCuw78755 IOS-XE need not require appxk9 license to support per-tunnel DMVPN QoS

CSCuw70220 IOSXE PACTRAC: cpp crash when packet trace enabled for MPLS and SSLVPN

CSCux43951 Packet drops on built-in 1Gig ports of ASR1001-X

CSCux12259 pfrv3: pkt drops as "disable pkt" b/c encap value 0X00000013 in asr1001x

CSCux42411 ASR1001-X Frame Relay with Fortitude NIM fails due to LMI packet padding

CSCuv93130 Cisco IOS-XE 3S platforms Series Root Shell License Bypass Vulnerability

CSCux14860 ASR1K:Packet Tracing failed with FW,NAT&FW enabled.

CSCuw28179 CWS Whitelist download fails if UTD is enabled on cws-tunnel out intf

CSCuw73223 Polaris : cpp_cp_svr crash when the interface goes down

CSCux10321 ASR1000 CLI hangs on executing the "show platform hardware qfp xxx"

CSCux40633 ISR 4451 Continuous Crash/ Core Crash File generated with WAAS/Appnav

224Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 259: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS

This section contains the following topics:

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS, page 225

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS, page 225

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16.1aS

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Identifier Description

CSCuw47720 ASR1001-X Mgmt port negotation issue with peer device

CSCuw67873 Router crashed when enabling port monitoring

CSCuu76585 ArgusX- Error with 32K VLAN configured on Single EPA

CSCuw70220 IOSXE PACTRAC: cpp crash when packet trace enabled for MPLS and SSLVPN

CSCuu75086 ROMMON should use the revocation key offered by the secure boot FPGA

CSCuv88263 ASR1001-X TenGig port fails to come up

CSCuv29137 Tracebacks noticed @ "fman_identity_hw_secondary_init" function

CSCuw49281 webui transport configuration caused router to crash

CSCuw74399 %SYS-2-BADSHARE: Bad refcount in pool_enqueue_cache

CSCuw36887 Crash with with Flexible Netflow enabled

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(3)S1

Status Fixed

225Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 260: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

This section contains the following topics:

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S, page 227

Identifier Description

CSCuv46022 ArgusX:10G and 100G EPA show slow CRC

CSCuv82778 PfRv3:CPP code crash with multiple ssrc per rtp flow

CSCuv79776 Router with Pfr feature crashed at cpp_free_exmem

CSCuv66011 ESP100: cpp_cp_svr crashed in function cpp_ess_ea_is_vsi_valid

CSCuv52648 ESP memory leak under cpp_cp_svr due to BFD feature

CSCuv61799 ASR1000 power supplies require SW debounce of PWR_OK signal

CSCuv14195 ASR1006-X and ASR1009-X Need to have RP2 CPLD upgrade support

CSCuv87030 Clock recovery fails on 1gige interfaces of ASR1000-2T+20X1GE

CSCuv21977 Argusx-Kahuna: EZman Show buffer FCU Tags output wrong

CSCuv46022 ArgusX:10G and 100G EPA show slow CRC

CSCuv91545 ESP continuous crash on ASR1013 using 03.13.03.S.154-3.S3-ext.bin

CSCuv44159 MCP FME: skip jitter calculations for RTP dynamic payload types

CSCuw30982 XE316: if peering channels are discovery, force unreach cannot be punted

CSCuv46771 CMTS: Results Mismatch in QoS Client

CSCup91567 ASR1001-X boot-loops with CMCC crash and XGM MAC10 block errors

CSCuv30194 crash at wccp stats handler

CSCuv19154 After upgrade of IOS-XE software, appnav functionality maybe impacted.

CSCuv83793 AppNav-XE drop packets when traffic from WAAS has wrong ID

CSCuu82763 Evaluation of ciscossl in binos for OpenSSL June 2015 vulnerabilities

CSCuv05447 Tracebacks noticed @"fnf_build_do_appl_resp_time_ipv4" @IWAN-Akamai Hub

CSCuu92634 ASR1K:FP100: cpp_svr core file seen with uws_wan_xe311 profile

CSCuv09985 ESP100 crash if interface is going up/down CPPHA-3-FAULT: F0: cpp_ha

CSCuv56407 ASR1001-X crashed with "ip account mac output" config on interface

CSCuv36911 ASR1K active CGN ESP200 may crash when the CGN standby reloaded

CSCuv56368 dpss: dynamic class add/delete will cause router malfunction

CSCuv25212 ucode crashes with Fair Queue and FNF export is configured

CSCuu37728 ISR router reloaded during EzConfig installation

226Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 261: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Identifier Description

CSCuu85962 unable to remove flow monitor from interface

CSCuu69425 Handle multiple Neighbors cleanup on untagged CD channel

CSCuu45242 NGWC commands for easy diagnosis and analysis of memory leaks

CSCuu73005 PfRV3: unreachable TCA when detected when TC aging out on remote site

CSCuv02590 site-prefix update error when moving a prefix into enterprise-prefix

CSCuu90257 [DT]Memory leak at sg_pm_get_long_name

227Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 262: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

228Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.16S

OL-26698-25

Page 263: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S, page 229

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S, page 234

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Identifier Description

CSCuw38000 Password complexity implementation does not match DISA requirements

CSCuw59193 BRI link fails to come UP after OIR on NT + platform reload on User

CSCux29703 ASR1000-2T+20X1GE fails to boot on router reload with SPA-3-NULL_BAY_PTR

CSCux55692 TCAM Errors in NL11k TCAM of Fixed Ethernet Linecards

CSCut62449 Disable HTTP AIC support

CSCuw98135 ZBFW HA not replicating sessions when matching based upon L4 proto/port

CSCuv06782 [XE317] committed memory growing to critical caused router crash

Cisco Systems, Inc.www.cisco.com

Page 264: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

CSCux62928 IOS-XE IKE over 4500 & IKE nat-t keepalive drop with certain possibility

CSCux44606 Name ACL for Multicast Boundary Stops Working Upon Reload

CSCuw95617 QFP crash in NAT ALG after ipv4_nat_destroy_session

CSCux07224 ASR1K crash with OTV due to L2BD FIB entry change

CSCuw78755 IOS-XE need not require appxk9 license to support per-tunnel DMVPN QoS

CSCuw70220 IOSXE PACTRAC: cpp crash when packet trace enabled for MPLS and SSLVPN

CSCuw70038 RSP1: IOMD Crash on Egress IPv4 Flows Modify on MLPPP Sessions Flaps

CSCuv57383 RSP1: In rare situations , mpls is not enabled in hardware after upgrade

CSCuw39821 ASR903 acting as MVPN 'PE' device duplicates multicast traffic

CSCuw38880 Unable to create the 6th MTU on ASR-903

CSCuw64556 ACL validation check is not proper

CSCux19975 removing and reapplying ipv6 acl throws error when tcam sclices are full

CSCuw17562 stats not desplayed properly for IPV6 acl filter

CSCuw43438 Warning message is not seen for unsupported ACL fields/rules

CSCux87991 2nd Receiver is not receiving traffic in a particular condition

CSCuw75702 Error on unconfiguring route-map after configuring max route-maps

CSCuw57768 901 Crashed while applying clearance commands for parity errors

CSCuu62478 Licensing infrastructure is NOT initialized during boot up

CSCuw02746 1st policy-map is never been deleted, it requires Rtr Reload

CSCuu94709 Error not thrown & Policy-map is applied with wrong config in the intf

CSCux45218 mem leak " purac_qos_add_policer_to_class" is seen while detaching PMAP

CSCuv96421 PMAPs more than 32 are accepted and are shown in Running-config

CSCuj14713 purac_is_mpls_port message observed during ASR901 bootup

CSCux12759 qos-config scheduling-mode min-bw-guarantee to be enabled in 10G intf

CSCuv84967 QOS-EXP Marking is still works even after removing entry from table map

CSCux22506 rejected service-policy creating qos slice

CSCuw14541 ENTITY- MIB SNMP polling gives incorrect number of Fan in ASR901 10G box

CSCuv77632 Incorrect logic used to compute delta on rollover in platf TDM code.

CSCuw59591 Adding PTP causes to add L3entry in BCM for ptp ip,ptp LB in shut state.

CSCux21861 BDI Interfaces goes down during REP manipulation

CSCuw93763 Mac-learning stops triggers on with same mac learnt in diff efps in a BD

CSCuw64518 Storm-Control logs are seen on shut down interface

CSCut36166 [asr920] Punting of CD packets by PD to depend on AN PI punt registries

CSCuu30375 ASR900: Cylon_mgr crash on FRR cutover on IP Routes Flaps

CSCux98051 Transit packet drops in the network with certain packet sequences

CSCuw17316 ASR-920 becomes completely unresponsive on TCAM exhaustion

CSCuq19156 Error message is not displayed when scaling configurations are exceeded

Identifier Description

230Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 265: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

CSCuw14611 match-all class with > 1 value of the same type is accepted/works wrong.

CSCuv97402 memory leak on cgm_object_get function call

CSCuu61772 Sequence of Tracebk on EVC creation when o/p policy is present in interf

CSCuw93801 IOS Fix to unset BOOT_PARAM rommon variable

CSCuu80848 IOSXE_INFRA-6-PROCPATH_CLIENT_HOG message, while OIR of FAN

CSCuw50214 PID not displayed in third party optics

CSCuv11211 Temp raise syslog msg prints on console when PSU remove and insertion

CSCux67975 AIGP for next-hop BGP route is not being used or its not deterministic

CSCus94258 AIGP metric not used when NH has AIGP attribute

CSCux55351 ASR1K router crashed due to running BGP with AIGP

CSCux06508 ASR1K: after unconfig MPLS VPN, can NOT config OTV. MPLS still there.

CSCuw92735 BGP multicast signalling is not working properly, Error: c-route type 7

CSCux70093 BGP RR does not advertise vpnv6 prefixes even all RT filters are learnt

CSCso40779 BGP/max-prefix - incorrect warning max-prefix message

CSCux97040 BGP: default RT filter flag not reset when <clear ip bgp > executed

CSCuv36790 clear bgp command don't consider AFIs when used with update-group option

CSCuy20481 Crash due to stale pointer after removing vrf command export AF map

CSCux76332 Deleting a statement in export map, removes other statement

CSCux91976 gateway route with AIGP metric only works for host route without supernet

CSCux96029 GR Non-restarting peer does not advertise VPN routes default RT filter

CSCuw79017 MPLS VPN: Crash when rt import is added under vrf definition

CSCux62094 Routes are not exported from vrf to global due to incorrect export limit

CSCuu79021 ASR1K: Aggr GEC QoS in Suspend state even after noshut the member link

CSCuw40928 RSP720-10GE 10g queue mode does not allow to configure WRR

CSCuw40966 RSP720-10GE. cli "priority-queue cos-map" is not available on uplinks

CSCux86685 Put an altenate fix for CSCuw93863 (SIP400 crash at hqf_priority_remove)

CSCuw93863 SIP-400 crash after hqf_priority_remove

CSCux48343 cBR-8 cops listener access-list lost on reload

CSCux68016 CBR-CCAP-LC-40G linecard stuck with ubr_buffer_print not in MT! message

CSCut42645 input queue wedged on a SSLVPN enabled router

CSCuw88231 Router may crash after SSH RSA signature failures

CSCuv66659 CSR1KV: csr1kv stops Responding to ARP Requests

CSCux88022 ASR1K : Crash at dhcp_sip_get_config

CSCux02200 ASR1K seg fault crash on DHCP SIP process

CSCux33385 DHCP binding deletes cash after getting unicast DHCP request

CSCux15835 ISR4331/K9:Router fails to come online with No Service Password Recovery

CSCuw67873 ISR44xx Router crashed when enabling port monitoring

Identifier Description

231Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 266: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

CSCux35251 ISR 4K with NIM-ES2-8-P crashes during dot1x authentication

CSCux54451 "no cdp enable" added to subinterface on a 4300 after a reload

CSCux67959 "show vlans dot1q" provides incorrect statistics for non-native VLANs

CSCux91894 ASR9xx iomd memory leak

CSCux82128 Giant counters go to max value (4294967295) after crc received

CSCuy09394 NIM-ES2-8 Gigport link coming up with ethernet to fibre converter

CSCux68121 Can't ping through via SFP after router reload

CSCux15954 EEM : fatal condition error from operating system

CSCuw12720 MallocLite memory leak due to EEM when using "file open" action.

CSCuw53679 Dialer interface is introducing an extra decrement of IPv6 TTL value

CSCux38417 IOS and IOS-XE IKEv2 Fragmentation DoS

CSCux11291 OTV adjacency does not come-up with VRF

CSCux69222 Truncated counters/names in the 'show proc mem platform' output

CSCut55223 ISR4331/ASR1k : Crash at mcprp_dpidx_for_swidb

CSCux42411 ASR1001-X Frame Relay with Fortitude NIM fails due to LMI packet padding

CSCuv93130 Cisco IOS-XE 3S platforms Series Root Shell License Bypass Vulnerability

CSCuw48118 ASR920 - crash in bcopy called from 'addnew' during reassembly

CSCuv05226 ASR920 : VRF is not deleted after replacing default config

CSCux29974 ISR4k:UnconfiguredIpv4Fia drop seen for pkts transit via PPPoE

CSCux39969 Redistribution 0.0.0.0/x to RIP doesn't work after clear ip route *

CSCuq13031 [Beni]IOSD crash report@rip_add_idb in VSS setup on latest Beni [61.E]

CSCuv62299 CUBE crashed @ ccTDPvtGetTDObjectFromProfileTab AFW Process

CSCuu52012 Router crash when we execute show run | format command

CSCuv79429 IPSEC: static reverse-route is removed after retransmissions in IKMP

CSCuw74752 cpu hog and crash in isis_ip_xlfa_pq_ipaddr_usable

CSCuv26774 ISIS holds routes even after removing interface with config replace

CSCux59649 ISIS lsp-mtu size 128 removes TILFA and rLFA tunnels

CSCuv81298 LFA SPF causes cpuhog and crash in scaled test with 400 nodes

CSCuw47382 OTV:Local otv vlan inactive after ED reload

CSCux96625 paths not present under "show isis fast-reroute remote-lfa tunnels"

CSCuv16074 rLFA : PQ address not selected when PQ node has multiple nexthops

CSCuw97035 RPF fail when default originated from ISIS and egress is te-tunnel

CSCuy12271 Wrong LSP Size Calculation Following MAC Move with OTV

CSCuv59898 Kernel Watchdog crash at ktime_get

CSCuw65059 mfib on the line card stuck in Connecting state

CSCuy03680 V3Lite IGMP packets sent instead of V3 when UDP based feature is present

CSCuv02246 With access interface flap, traffic doesnt switch back to data mdt.

Identifier Description

232Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 267: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

CSCuv37022 Extranet MVPN traffic is getting dropped & not switched to data MDT

CSCuw31489 ME3600 ciscoEnvMonSupplyState value is wrong after reload

CSCuv27545 Polaris:MFIB subsystems take 2-3 secs more during RF Prog in SSO

CSCuw92679 IOS-XE crash at nhrp_iprib_lost_route when running "debug nhrp routing"

CSCuv56532 GS: Display inventory CLI is not showing expected output on DSLAM.

CSCuu92133 Onep:ART routes not installed in RIB even its shows active in ART table

CSCuu55332 OSPF NSR: Standby Crash on no shut of interface with ip address dhcp

CSCuv42560 Trustpool bundle fails to deploy on devices with smaller nvram space

CSCut64952 double access-request with same username with vpdn authen-before-forward

CSCuy26377 Memory leak observed after upgrade to XE 3.13.4

CSCuu20167 Radius-Proxy Session-Restart fails after ISG idle-timout

CSCuw53543 Stale entries for unauthenticated user in ISG dont clear .

CSCuw91822 vISG not sending COA Response

CSCuw94014 cpp_cp crashes with BB profile #6 48k PTA

CSCuw81487 Kahuna RP crash when bringing up PTA sessions with QoS

CSCuw73223 Polaris : cpp_cp_svr crash when the interface goes down

CSCux19336 XE316:cpp_cp_svr core files seen while removing mulitlink interface

CSCux53201 ASR1K: IPv6 traffic classification issue

CSCux10321 ASR1000 CLI hangs on executing the "show platform hardware qfp xxx"

CSCuy21483 ISR4451-X Crash at cpp_dsp_get_stream_stats

CSCuw70580 Router reboot when configuring firewall

CSCuw73226 GRE checksum is wrong for Fragmented packets

CSCux40633 ISR 4451 Continuous Crash/ Core Crash File generated with WAAS/Appnav

CSCuu37728 ISR router reloaded during EzConfig installation

CSCuv30117 ISR4000 routers lose SRST COR list config after reload

CSCuy01043 Wrong SNMP ID for serial interface on ISR4321

CSCuu74719 ISR 4331 - SRST - Router crash with PSTN conferencing (LocalSoft)

CSCuv22571 Memory corruption crash in slaJitterPacketBuild

CSCux05246 smnpwalk and snmpget have incorrect behavior on IP SLA

CSCuv62376 aaa_coa_request_set_error_reply AAA related Crash

CSCux82377 ASR 1K ISG Router Crashes When Polling "csubSessionEntry" MIB

CSCux90880 ASR1004 memory leak due to SSS Manager

CSCuv56698 ASR1k standby-hot RP crash at SSS Bad root chunk pointer

CSCuw47130 STCAPP commands gets removed after reloading 43XX/44XX routers

CSCux76134 Fortitude: Crash when 'encap ppp' after modude firmware updated

CSCux67491 Fortitude:All 15min buckets in last 24 hrs of 'sh controller' cleared up

CSCuv89158 Fortitude:Controller stays down after moving from unframed to framed

Identifier Description

233Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 268: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.3S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCuv80214 Router crash on removing dial peer

CSCuw60540 Invalid Input: Trailing space accepted on voice-card x/y command

CSCux07364 QoS settings on Cisco ISR-4K VG for TDM to IP

CSCux17945 Hootie call is unable to mix multicast streams

CSCuw54917 LMR port stuck in S_TRUNK_PEND after T1/E1 reports LOF

CSCux22874 On demand PCM captures needs to be available on ISR4k routers

CSCux20973 OPTIONS keepalives are sent to outbound-proxy when disabled at dial-peer

CSCuv93812 RTP ports hung on Router.

Identifier Description

Identifier Description

CSCux44780 ASR1K/ISR4K crashes after removing tunnel interface

CSCuw94493 Octeon core hang causing F1/F0 offline

CSCux57066 ASR1K : Lawful Intercept not working as expected for IPv6 traffic

CSCuu82192 NatGatekeeper performance degraded

CSCus66006 Incorrect alarm messages displayed for ZR optics

CSCus53278 IOMD crash @ iomd_bsess_open_callback_retry

CSCuv30635 RSP1: standby rsp led not glowing post ISSU

CSCuw50415 Crash seen @ hwidb_iftype_unlist while doing unconifg of channel-group

CSCuu76482 Cos Marking for LDP packets not set

CSCux85181 Self-IP ping failure on ASR920

CSCux42560 cBR8 IPDR issue with CMQosVersion on SAMIS-type-1

CSCuv26850 cBR8: allow enable/disable cable forwarding interfaces in CPP

CSCuv86049 isr4331 and isr4351 platforms crashed during GRE performance testing

CSCuy30460 CSR AX_100M license getting HSECK9 failure

CSCuw73152 Standby RP Silent reset

CSCuw14901 EIGRP topology table empty after VSS switchover

CSCux06777 Device crash with RPF configured.

CSCur72779 XE314 : B2B NAT : Stale NAT translations observed on Active rtr

CSCuw67113 crash seen in CVP load REFER scenarios

CSCuw39465 During a transfer CUBE doesnt update the media to the Recording server

CSCuu54392 Different Tunnel Protection with shared profile cannot be used

CSCuv08835 IPSEC key engine process leaks /w dynamic crypto map in scaled scenario

234Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 269: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S, page 236

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S, page 238

CSCuj55363 lispgetVpn traffic is dropped when getvpn profile is applied in wan intf

CSCus74666 Ezvpn NEM: NAT is not inserted due to duplicate ACE for split tunnel

CSCuv71979 FlexClient: IP address loss even after the CSCuj40010 fix

CSCuv51788 GM Router failed to register after reload.

CSCux99250 ASR 903 IPv6 Multicast crashes

CSCuu50269 RSP2: MSPW sessions down on S-PE after SSO

CSCuq72031 ASR1K FP crash due to watchdog timeout

CSCuw83770 MDT neig not formed when MDT is removed/re-added in MVPN setup.

CSCuv46139 DHCP relay does not remove Option82 in Offer forwarded to client

CSCuy16460 Incorrect thresholds set for GLC-FE-100BX-U and GLC-FE-100BX-D

CSCus39946 mediatrace caused router to crash during snmp walk

CSCuy87734 ASR1K RP crashes LCON Main process when heavily loaded

CSCux87822 MPLS TE Missing label on midpoint when same Tunnel ID resignalled

CSCux94588 RESV change during setup can cause TE / LFIB to become out-of-sync

CSCur01171 Memory leak in MRCP_CLIENT in add_to_hoststatus_table

CSCux80450 %REGISTRY-3-STUB_CHK_OVERWRITE: error seen during boot up

CSCuw24373 Called-station-id and NAS-ID via account profile satus query

CSCux52451 VRF Domain half open counter increments when aggressive aging occurs

CSCut96933 ASR1K ucode crash seen at mpls_icmp_create

CSCuw79438 NAT64: MAP-T 1300-bytes packet drop at high traffic rate

CSCup04090 asr920 throws error messages on snmp polling of a couple of MIBs

CSCuy74990 BGP not forming neighborship on ASR1k with dual RP

CSCus45019 Media loop detection failure

CSCus03761 Stack overflow crash @ ip_epm_proxy_slow_check.

CSCuu49038 Base Station Ping fails from the router

Identifier Description

235Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 270: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Identifier Description

CSCuu50189 ASR1K reported %LSMPI-4-INJECT_FEATURE_ESCAPE for PPPoE data packet

CSCuv46318 ESP100 cpp_cp_svr crash issue due to invalid stats_sbs_entry data

CSCuv66011 ESP100: cpp_cp_svr crashed in function cpp_ess_ea_is_vsi_valid

CSCuv52648 ESP memory leak under cpp_cp_svr due to BFD feature

CSCuu30999 Asset ID write not working on pluggable spa of Nightster

CSCuv87030 Clock recovery fails on 1gige interfaces of ASR1000-2T+20X1GE

CSCuu85007 split-horizon group communication failure

CSCuv91545 ESP continuous crash on ASR1013 using 03.13.03.S.154-3.S3-ext.bin

CSCuu69670 ASR1K: Unable to ping contained application after reload

CSCut66894 evsi session fail to come up using multicast on all the virtual-access

CSCuu26053 Incorrect SPD ID in show platform software ipsec fp act flow id

CSCuu91954 Fix potential crash in cable lawful intercept

CSCuu97063 Syslog trap support with IPbase license for ASR1k platforms

CSCuv44159 MCP FME: skip jitter calculations for RTP dynamic payload types

CSCus86476 ASR1K NAT ALG ucode crash @ipv4_nat_destroy_addrport_bind

CSCus85112 CGN, QFP: Show cmd display incorrect NAT trans stats for per-host IP add

CSCut09922 cpp_cp traceback from qos cpp_qm_rm_tree_obj_add

CSCup91567 ASR1001-X boot-loops with CMCC crash and XGM MAC10 block errors

CSCuv37192 ASR1001X duplex mismatch

CSCuv30194 crash at wccp stats handler

CSCuv19154 After upgrade of IOS-XE software, appnav functionality maybe impacted.

CSCuv83793 AppNav-XE drop packets when traffic from WAAS has wrong ID

CSCuu82763 Evaluation of ciscossl in binos for OpenSSL June 2015 vulnerabilities

CSCuu90168 CUBE crashed due to memory hoding @ TCP_SOCKET

CSCuu00050 CUBE with SRTP fallback is dropping SRTP RTP/SAVP from the 200 OK SDP

CSCuu89938 Hung call seen on CUBE when TCP timeout trigger

CSCuu44302 Memory leak under process RECMSPAPP with PC voip_rtp_create_fork_object

CSCuu29667 ASR1K crash when snmp setting cipSecTunnelEntry

CSCut95978 CBAC Pinholes in crypto-map access-group

CSCuu54392 Different Tunnel Protection with shared profile cannot be used

CSCut87217 GETVPN - ASR1K GM deny policy fails when the policy is updated by the KS

CSCus94957 gobal flow MIB table on CSR is not updated with counters

236Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 271: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S

CSCus68467 MDC: DMVPN Tunnel Path-mtu-discovery not working with Jumbo MTU size

CSCut32594 OSPFv3 encryption - Adjacency not up after reload

CSCus85701 AQoS peer mismatch with NAT

CSCuu93699 Crash on IKEv2 cluster hub when anyconnect client tries reconnect

CSCuu67867 IOS Anyconnect-EAP must send calling-station-id in radius access request

CSCtf30773 Bogus ip addresses shown in "SA has outstanding requests" debug message

CSCut32445 Crash - IPSec/ISAKMP Timer driven crash.

CSCut93050 IOS IPsec traffic statistics reported incorrectly by SNMP

CSCuv94992 Backing out CSCur27771 from v155_2_t_throttle

CSCur27771 FlexVPN tunnel mode gre ipv6 doesn't work

CSCut98036 ISR 4K Crash during Keychain Config w/ "Pass enc AES" Enabled

CSCuv26780 Memory leak when qos pre-classify is configured with Crypto

CSCuu88964 ASR1K Kernel crash at pidns_get()

CSCtz61014 f Linux kernel NTP leap second handling could cause deadlock

CSCuu41205 crypto pki crl request should have better input sanity

CSCuu95125 GetVPN KS lost certificate during rollover w/o auto-enroll configured

CSCuu26723 IOS PKI chain-validation may get anchored to Root TP causing IKE failure

CSCuu46926 IOS PKI default auto-rollover 30 is not displayed in running-config

CSCuu18348 IOS PKI HA fails to initialize on standby router after reload or upgrade

CSCuu81737 Router crashes when using crypto

CSCuu09050 asr1001x may crash when unconfiguring large QoS policy

CSCuu92634 ASR1K:FP100: cpp_svr core file seen with uws_wan_xe311 profile

CSCuv05361 cpp_cp_svr crash on AR1K

CSCut99067 ESP crashed desc:CPP Client process failed: cpp_cp

CSCuv09985 ESP100 crash if interface is going up/down CPPHA-3-FAULT: F0: cpp_ha

CSCuu57229 ESG: Packets are not getting Policed in expected class

CSCuv56368 dpss: dynamic class add/delete will cause router malfunction

CSCuv25212 ucode crashes with Fair Queue and FNF export is configured

CSCur24408 watchdog crash invoked after a CPU-HOG from "CC-API_VCM" process

CSCur67691 Continous reload issues seen on ASR1K B2B Redundancy

CSCuv76663 NIM T1/E1 firmware image release to XE IOS

CSCuu60542 Route crashed at KA in function flex_dsprm_send_vtsp_alarm_indication

CSCuu33464 Router crash due to a NULL access at line 3432 in dsmapi.c

CSCuu83604 [XE317] observing MallocLite chunk leaks with ds0-group under T1/E1

CSCut59448 Null0 interface disappear and Routes pointing to Null0 do not work

CSCuv34164 Crash after SCCP session tear down via no sccp command

CSCuv51463 Increase E1-R2 Stop Tone Timer

Identifier Description

237Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 272: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.2S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S, page 239

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S, page 241

CSCuv62322 MGCP controlled NIM-2BRI-NT/TE ports fail after reload of ISR4331

CSCuv01915 R2 MFC signal level is lower than regulatory limit

Identifier Description

Identifier Description

CSCuv46771 CMTS: Results Mismatch in QoS Client

CSCut44035 CPPOSLIB-3-ERROR_NOTIFY Traceback found when FPSO

CSCuu49902 Interface on SPA-1x10GE-L-V2 flaps during SVTI scale test

CSCut39538 vasi subsys not found in ipbasek9 image

CSCuw06084 DTMF not getting recognized on ISR G3 when using TCL Script

CSCut56684 Appnav Passthrough Counter goes to infinite

CSCuu66331 Battlestar:IPV6 Netflow on sub-bundle interfaces crashes both SUP's

CSCuq64416 ASR-1004 Call Failures with TCP as Session Protocol towards CVP/CUCM

CSCuu85777 Cube sends NOTIFY with invalid cause code value in refer to scenario

CSCuu71411 ASR1K DMVPN: Packets not getting decrypted with uws_vpn3 profile

CSCut13508 ASR1k crash due to Process = Crypto Support

CSCuv79429 IPSEC: static reverse-route is removed after retransmissions in IKMP

CSCur35396 Standby SUP reload because of KEEPALIVE_FAILURE on performance TB

CSCut02176 [XE15-ST]: No audio after SSO for transcoded call

CSCus87347 [XE15-ST]: Port leak seen for Audio+Video FA call

CSCut19243 $$SS: 4451 crashes @ stile_dpe_sync_flows.part.13

CSCuu90605 CPP crash in cpp_qm_event_proc_parent_update

CSCuw11097 ASR one way audio due to incorrect provision by FMAN-RP

CSCuu74719 ISR 4331 - SRST - Router crash with PSTN conferencing (LocalSoft)

238Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 273: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Identifier Description

CSCut68825 PFRv3: unexpected byte loss reported due to TCP packet flow out of order

CSCut68598 ASR1k BFD randomly down at NAT configured interface

CSCut52677 %SERVICES-3-NORESOLVE_ACTIVE: SIP0: linux_iosd-image after RP switchover

CSCur43882 %SERVICES-3-NORESOLVE_ACTIVE: SIP0: linux_iosd-image: in mcp_dev

CSCuu55787 ASR1001-X: Router fails to come online with No Service Password Recovery

CSCut82336 ASR1002-X: Handle leap second in ToD IN

CSCut65374 PTP Leap Second: ASR1002-X incorporate leap second addition 6/30/15

CSCut14946 CFM hw offload rmep error after reconfigure intervals

CSCut01865 XE315:Packet drop@MaxTu in Nightster

CSCut22976 ASR1k crash during monitor capture export FTP

CSCus62358 ASR1k: MAC based filter does not work with EPC

CSCuu14809 Byte counters display incorrect value for multicast traffic over sub-int

CSCuu12008 rework CSCut21885: chunk_destroy memory leak.

CSCut41985 ASR1K: QinAny over L2TPv3 not working

CSCuu72025 Multiple ESP Core on ASR1006

CSCus94195 ASR1K ip nat inside destination feature cannot work on 03.13.02

CSCut10922 CPP provisioning failed for SIP-TDM callflow (IWAN, voice interop)

CSCuu05210 PfRv3: Not account controlled pkts if the src site is not self

CSCuu27197 ASR1K 1NG: set platform software trace doesn't show IOMD in nightster

CSCus70057 Obsolete OTV route entries not deleted from TCAM

CSCut81614 OTV non-AED wrongly replies to ARP request received from internal intf

CSCut74937 ASR1K PBR VRF Selection not working when source is local router

CSCut65811 Fair-queue with byte-based qlimit will not display q-depth correctly

CSCuu06642 IOSd memory leak in tdl_hqf_reparent_params

CSCut77070 SPA-1xCHOC12/DS0 not supporting Framed E1 connections.

CSCut16173 "show interface" bits/sec and packets/sec counters stuck to non-zero

CSCur56087 ASR1001X: XE315 built-in interfaces are down after local switch is used

CSCus51303 Combi card ASR1000-2T+20X1GE Standby RP doesn't accept configuration

CSCut50228 ASR1001-X ping loss with peer ASR1k at fixed speed 10M

CSCut03205 SPA modules on ASR1002-X show "missing" under show platform output

CSCut41815 Unable linkup on opposing unit of ASR1k built in port after "no shut"

239Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 274: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

CSCut34273 ASR1K, "unknown" process leak under cpp_cp_svr

CSCus38037 crash with "show voice class ctl-file"

CSCut92745 Crash while placing MLPP calls

CSCur70959 Memory leak @ sipContentObjPvtSetBody

CSCus65095 SSTE: QoS Pre-classify was broken

CSCut26305 CSR1000V: next reload license level is NOT working.

CSCur49548 Upgrade from 3.4.6S to 3.13.0S doesn't work with traceback and error log

CSCur60251 appnav cluster will in degrade state due to sequence number 32 bit

CSCut46126 MARCH 2015 OpenSSL Vulnerabilities

CSCut41061 ESP crash with monitor capture and debug platform-trace

CSCur96943 CCSIP_SPI_CONTROL leak in sippmh_parse_record_route

CSCus73488 CUBE doesn't send H245 CLC for outstanding OLC if TCS is received

CSCus92857 Crypto Stateless redundancy causing "IPSEC install failed" after preempt

CSCut50109 CSR 1Kv radius ipsec accounting - packet count gets doubled

CSCus96078 duplicated ipsec sa does not fully delete isakmp sa

CSCuq91734 NHRP Packets are dropped after EzVPN decryption

CSCut13375 Ping across AN created ipsec tunnels is not working

CSCuq01701 TRACEBACK seen while unconfiguring ezvpn general and cert testcases

CSCus87215 EzVPN Proxy DNS not installed on client post 12.4

CSCus88307 GETVPN - GIKEv2 does not work when using IKEv2 identity of fqdn

CSCut19255 IKEV2 should send IKE identity in AAA access request

CSCut75076 IOS Anyconnect-EAP accounting IKE-ID used as username

CSCuu08603 IOS Anyconnect-EAP: Multiple connection with same IKE-ID fails

CSCuu24977 Packet accouting of IKEv2 stops when IKEv1 client is provisioned

CSCus30128 RRI dynamic L2L after client change ip address Ipsec rekey lost routes

CSCus97802 CISCO3945-HSEC+/K9 Crash constantly with crypto engine

CSCun57148 High CPU in FNF Cache Ager P

CSCuu60301 ESP100 crash because of hardware interrupt

CSCut48055 ESP100 periodically crashes with hardware interrupt

CSCut64644 ASR1K goes to crash after TCAM messages appearing

CSCuu24757 ASR1k QFP leak with cpp_sp_svr at module FM CACE

CSCuu14494 FP crash after pasting the config that consumes a lot of TCAM

CSCut41684 ASR 1K crash due to CCM_ACK interupt

CSCus25255 ASR1K IPSEC - Traffic sent in cleartext after clearing IPv6 neighbors

CSCus13117 Boadcast to multicast helper results in low receive rate

CSCus51647 IOS-XE devices may loose BGP routes in the large scale IPSec GRE tests

CSCus88851 IOS-XE IPSec serviceability - improve datapath HMAC drop debugs

Identifier Description

240Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 275: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15.1S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search

CSCut41377 OSPFv3: 2nd interface inbound traffic drop by IN_V6_POST_INPUT_POLICY_FA

CSCut72639 ASR1k CPP crash with IP Options

CSCut56117 ASR NAT timeouted out sessions not cleared.

CSCur31425 ASRNAT: PPTP ALG: Incorrect UNNAT of Peer-Call-ID in Outgoing-Call-Reply

CSCut78774 Static NAT statment over vrf caused FP to reload

CSCur78648 SSLVPN should use consume instead of drop reasons

CSCuu55761 DSPware 39.1.2 Release IOS Commit

CSCuu68017 ISR4331 no audio and static on calls through NIM-2BRI-NT/TE ports

CSCul48509 CUBE should send the last response code 4XX/5XX/6XX to CVP in NOTIFY

CSCuu55545 Disable Keep Alive between host and DSP Cores

CSCut08626 DSMP crash at DSP packet buffer allocation

CSCut58604 Publish new Fortitude firmware

CSCuu29539 voice statistics CLIs are missing in ISR4k image

CSCut18365 Tracebacks found @ moh_multicast_recv_input

CSCut94062 Answering Machine tone not detected during AMD / CPA

CSCus89791 g722-64 codec crash during dial tone with country code

CSCut39017 Remove DC from NIM-4FXO or VIC2-4FXO

CSCut13290 "P-Associated-URI" handling on CUBE should follow rfc3455

CSCut97997 ISR 4K Crashes Due to "CCSIP_TLS_SOCKET" Process

CSCut66144 VXML GW fails to handoff call to VXML Application on second VRU leg

CSCur55347 app-fax-detect does not detect CNG tone after IOS upgrade to 15.4(2)T1

Identifier Description

Identifier Description

CSCus11939 up mep over vpls flapping @4k session

CSCuu71411 ASR1K DMVPN: Packets not getting decrypted with uws_vpn3 profile

CSCuu35388 IKEv2 - IPSec SA lifetime expires immediately after SA is established

CSCut44035 CPPOSLIB-3-ERROR_NOTIFY Traceback found when FPSO

CSCuu68669 ASR1001x ping failure when config negotate-auto to FastEthernet

CSCut39538 vasi subsys not found in ipbasek9 image

CSCut19243 $$SS: 4451 crashes @ stile_dpe_sync_flows.part.13

CSCus91187 XE315: invalid table_id for ipv4_input_cent_rc_process under stress

241Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 276: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S, page 242

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S, page 249

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(2)S

Status Fixed

Identifier Description

CSCek10384 7200 NAT dropping Out to In ESP Packets

CSCtw74124 ASR1002-X/SIP-40G/ASR1001-X:sh plat..plim buf set:Fill Status Max:Not fn

CSCub50654 Connected Number not forwarded from ISDN to SIP

CSCud67560 Rotate Command for Trace files does not rotate PMAN Logs on FRU

CSCuh17896 show crypto gdoi ks policy causes CPU hog and traceback with 100 ACEs

CSCui62452 Issues with 'silent-discard untrusted' CLI

CSCuj10443 Standby sw crash@crypto_engine/sw/src/keylib/lib_key_storage.c:646

CSCuj13127 SSTE: DNS IPv6 traffic fails with IKEv2 and ZBFW configured

CSCuj50209 Memory leak @ voip_rtp_recv_fs_input

CSCul23249 Appnav PT statistic show wrong number after addition and removal of SN

CSCul37241 Memory leak seen @SDP Library

CSCul79546 GEC pactrac: show fia-traced packet has unexpected unformatted output

CSCum25373 XE310/XE314, FW: traceback is seen when firewall is configured

CSCum73170 Unable to collect sufficient entropy

CSCum94541 Split Source-interface missing in PKI Enrollment profile

CSCun13772 NHRP: CPUHOGs seen when many child entries expire simultaneously

CSCun20989 %FLEXDSPRM-5-OUT_OF_RESOURCES: No dsps found either locally or globally

CSCun32287 SW: ASR1002-X ifHCInOctets can decrease before wrapping around.

242Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 277: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

CSCun72450 IPv6 GETVPN traffic dropped after unconfigure then re-configure VRF

CSCun86062 TS:SS:XE3.13: CUBE phone-proxy does not follow PKCS1 form CTL signature

CSCun89616 IOS Does Not Properly Respond to TLS 1.2 Client Hellos

CSCun96847 IOS-XE : Zone mismatch vulnerability in Zone Based Firewall

CSCuo59226 pactrac: incorrect hexdump display with terminating 3-byte boundary

CSCuo67247 High CPU due to NHRP process on ASR in DMVPN ph3 after upgrading IOS-XE

CSCuo77017 tcam resource has not been released after 32k efp deleted

CSCuo89653 FP80: Pending ack on removing nat64 configuration

CSCuo91514 While writing event-trace voip CUBE doesn't respond to SIP messages

CSCuo99846 XE3.13: default interface error with virtual-reassembly max-fragments

CSCup01088 CPUHOG and crash on 'clear dmvpn session' with large NHRP cache

CSCup05490 ST-XE313: Crash with "debug voip fpi error" under load

CSCup09848 CUBE Traceback seen during call connect possibility of RTP port leak

CSCup29922 Number of resources available is not shown for xconf xcode MTP for IOS

CSCup32700 FlexVPN spoke to spoke tunnels do not apply Authorization attributes

CSCup55040 "show crypto ipv4 datapath" to be more verbose

CSCup57389 Traffic drops while testing VRF Lite coexistance with SP NAT for LNS

CSCup57534 Serviceability: SSLVPN Add Conditional Support for datapath

CSCup67018 P-RTP Header is missing for Dragger proto for TDM_SIP Scenario

CSCup67354 ASR1001-X PLIM errors are displayed during bootup

CSCup68771 CUBE-ENT: dial-peer phone-proxy: CUCM node support as FQDN

CSCup77281 MediaSense Call Recording Not Working Correctly with ASR CUBE Forking

CSCup80449 1NG:With Cu-SFP inserted and port is shut, IDPROM shows it enabled.

CSCup82655 flow record output not seen correctly after applying input ACL deny TCP

CSCup95191 ENH: IKEV2 reconnect should use original EAP id for acct

CSCuq02180 crash seen in utah router after the call starts

CSCuq10236 LMR rtcp Packet are Sent to rtp Port using IOS 15.2.3T4-ED to 15.4.3M-ED

CSCuq15145 ASR1k: ART metrics problem in application-experience profile

CSCuq15567 Crash with %SYS-3-OVERRUN with crypto_ipsec_clear_peer_sas

CSCuq16646 SNMP traps not generated for Voice Quality

CSCuq16944 ASR1k-Both IPV4 & IPV6 BFD&BGP sessions down after "Clear crypto GDOI"

CSCuq18077 9971 phones can not pick up parked calls from directed park slots

CSCuq18492 GETVPN - COOP loses KS reachability during IKE rekey

CSCuq20216 GETVPN: Reduce Rate limit window size for IPSEC triggered registration

CSCuq23360 H323 GW plays ringback after H225 connect for PRI calls

CSCuq23502 ASR1k does not relatch properly after receiving relatch event on 3.12.1S

CSCuq24354 GETVPN KS rekeys without pol changes may cause IOS XE GMs to re-register

Identifier Description

243Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 278: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

CSCuq24971 ASR1k ucode crash with pa_get_state on using aggregate port-channel

CSCuq25008 Route/tunnel recursion leads to STACKLOW and crash

CSCuq25767 Shared-line queue cannot released if call is transferd from CUE

CSCuq30899 SIP GW reloads after dtmf path confirmation

CSCuq31542 CUBE sending T38 caps in mid-call INVITE for HOLD

CSCuq32792 Unexpected reload of CUBE with AQM+HA involved

CSCuq34654 [infotag get evt_handoff dnis] not working in 15.2.2 and 15.3.3

CSCuq36627 WAAS Express:Failed to create SSL session. (no available resources)

CSCuq36941 Issue with MRCPv2 tcpip with VXML 3945e gateway

CSCuq36983 Fix build breakage on t_base_5

CSCuq37551 white noise on SRTP-RTP call when placed on hold and resumed & DSP leak

CSCuq39075 In grant manual,IOS CA overwrite the pending request if hostname is same

CSCuq39216 Remote-Party-ID is Corrupt when Caller ID received in ISDN Connect

CSCuq40081 Crash on primary KS with suiteB configs

CSCuq42803 Less number of rtp connections obtained then expected

CSCuq43266 VXML gateway Crash @msw_recog_start process

CSCuq43357 ASR1K - Y1731 Frame Delay Measurement broken

CSCuq43909 SSTE: incremental memory leaks at Crypto IKEv2

CSCuq46922 CUBE not able to handle datagram size more than 320

CSCuq47742 CUBE not opening random UDP ports for SIP.

CSCuq49527 ASR1k IOSD crash while configuring IPSLA with Y1731

CSCuq53018 CUBE PhoneProxy: ASR router crash with tftp-server domain name config

CSCuq54538 Handle delete of key chain when in use with current macsec session

CSCuq54655 ASR1K: Ucode@PAR1_CSR32_PAR1_ERR_LEAF_INT__INT_PAR1_STEM_CB_SEL_INV_ERR

CSCuq54871 Crash seen when forwarding of SIP MWI as qsig MWI. 15.2M is NOT affected

CSCuq56763 Crash at dsmp_save_modify_packet_stream_caps with dsmp_session=0x0

CSCuq59131 IOS XE L4 Redirect Crafted Packet Denial of Service Vulnerability

CSCuq59361 O2 crashes if enabling "deb voice trans" for sip call

CSCuq60189 XE3.14: NMAP scan lisp udp port is open when lisp is not configured

CSCuq60563 clear sip-ua [tcp|udp] connection id command does not work on t_base_5.

CSCuq62373 SRST internal call from SIP phone to SCCP phone ring with external tone

CSCuq62772 DSPs stuck in OPEN State when being used with IOS Conference Bridges

CSCuq63167 XE313 : PAP address allocation issue - retry with mods to gaddr_unlock

CSCuq63782 ATM VCs flap when under a large amount of traffic

CSCuq64148 Pkt drops + CRC errors when connected to built-in ports on ASR1001-X

CSCuq64664 Changing CUBE version for pi26/XE3.14

Identifier Description

244Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 279: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

CSCuq65871 IKEV2 PoD/CoA should use audit-session-id instead of Calling-Station-ID

CSCuq66758 ASR1k - CPP ucode crashes on configuring OTV

CSCuq67023 SN group isn't getting removed from context in specific scenario

CSCuq68196 ASR1k RP crash with Segfault at Xfering_SetupDone

CSCuq69416 'show crypto session' does not ignore for ikev2

CSCuq70263 asr1k SIP CUBE Enterprise GW crashes due to memory chunk corruption

CSCuq70681 HostDB Timer Corruption Causing Firewall Crashes on ASR 1k

CSCuq71259 MKA session should re-establish automatically after clear mka session

CSCuq72520 SIP, SCCP Call Legs SYS-3-INVMEMINT, SYS-2-MALLOCFAIL Interrupt Level

CSCuq74176 PKI IOS removed valid CA certificate before expiry date

CSCuq74492 IOS/IOSd Multiple Vulnerabilities in OpenSSL - August 2014

CSCuq75166 Ucode Crash with highly overloaded IPSEC traffic + reset crypto session

CSCuq75436 SIP Register sent for dialplan-pattern with no-reg already configured .

CSCuq75633 BFD down sent from ASR5500 is not recognised by 1K, still sending UP

CSCuq76439 Cube adds a=inactive in SDP during resume operation (RTP-SRTP call)

CSCuq76470 nat64 switchover replicate http enable port only accepts port 80

CSCuq77550 TEK remaining lifetime not updated on GM

CSCuq77812 redundant code in vasi feature ucode

CSCuq80765 500 internal server error Occurring while update.

CSCuq80985 Traceback seen at AFW_Snr_IsSipSnr

CSCuq81305 GET COOP-KS: TEK not synced between KSs before rekey

CSCuq82536 ELC-40: Memory Leak when configuring MAC Filters on Port Channels

CSCuq85115 ASR1K enable "ip cef accounting non-recursive" cause fman_rp crash

CSCuq85189 Incremental chunk leak seen at ccsip_debug_compute_hdr

CSCuq85985 ASR1K:ESP80, 100, 200 crash on SSO when FRF.12 enabled on MFR bundle

CSCuq86186 Unable to specify destination location for PCM capture utility file

CSCuq86382 FLEXVPN IKEv2 auto reconnect | virtual-access | VRF lost | anyconnect

CSCuq87353 RRI static route not removed after the peer is removed from CMAP

CSCuq87715 multicast l2 head rewite via ppp half bridge interface

CSCuq88060 "no transport udp" is getting removed from "sip-ua" after reloading ASR

CSCuq88419 GETVPN Suite-B: Adding permit to KS ACL, wrong policy on GM & Sec KS

CSCuq88560 ASR CPP crashes due to stuck thread interrupt

CSCuq90913 OTV: CPP ucode crash in l2bd_forward on BD cond. debug enable

CSCuq91226 qos_sg: cpp-bqs warning msg when config member interface

CSCuq91488 not punt BFD packet to RP even BFD state changed from DOWN to UP

CSCuq91599 ASR1k wccp pending-ack in fman-wccp caused standby-fp reload every 1hr

CSCuq94185 Call forward is not updated, if SIP phone is restarted

Identifier Description

245Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 280: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

CSCuq94877 IKEV2 Anyconnect session reconnect fails on multiple reconnects

CSCuq95303 XE314:FP80:cpp_svr cores seen on attaching service-policy

CSCuq96691 Utah crash during ezconfig installation.

CSCuq97336 Crash on Crypto PKI Enrollment

CSCuq97925 cpp_cdm: CPP crashed after oir CLC

CSCuq99173 Conditions experienced parsing H225 pkt may cause crash.

CSCuq99660 Tracebacks observed during FPSO

CSCur00747 ROMMON Upgrade rolled back

CSCur00762 ASR1k - incorrect traffic classification after HW TCAM is exhausted

CSCur00890 Crypto Crash From Corrupted Memory

CSCur01849 ASR1K: FP crash @ipv4_nat_ha_bind_to

CSCur04788 DPDs are not in sync for duplicate IKEv1 SA (for a single session)

CSCur06477 DE383: EtherType of EAPOL pkts changed after enabling CTS on MACsec int

CSCur07193 ELC-40:Popinac Crash after CSCuq82536 commit when configured Portchannel

CSCur07203 CUBE: No audio after failed call transfer

CSCur07571 Processor memory leak with MRCP_Client at cc_api_get_call_active_entry

CSCur09465 router crash with chunk corruption

CSCur09782 XE3.13 ZBFW bulk sync to bypass selfzone sessions

CSCur09918 ASR1K: RP2 kernel crash

CSCur10058 IOS PKI : CRL parsing may fail if HTTP Content-Length is not specified

CSCur12089 MACsec does not show correct number of installed RX SC

CSCur12414 ASR ANAT Hold-Resume IPv4-IPv6 one way audio

CSCur12550 Cube hangs sip sessions when redirect ip2ip is configured

CSCur12555 IKEv1: Duplicate Phase1 can occur after rekey with periodic DPDs

CSCur13285 CUBE:Router crash seen at sip_mpa_free_event_info function

CSCur15400 CME crash when Motorola SIP soft client initiates call from shared line

CSCur16675 VXML gateway Crash @ms_handle_stream_timer

CSCur17355 ASR Crashes due to SRTP when Fax T38 Protocol Configured

CSCur18685 QOS SG: Lev1 shape rate is de-activated after dynamic config on the fly

CSCur19344 Cannot start timer on "CCSIP_SPI_CONTROL" process

CSCur20474 efp up mep ccm unexpected packet drop

CSCur21230 Codec preservation is not working for calls over hunt pilot on CME

CSCur21757 Memory leak *Dead* = AFW_application_process and QSIG-rose

CSCur22272 Configuring a BDI interface in domains would block any UP MEP within BD

CSCur23619 IKEv2 reconnect radius accounting stop should mention terminate cause

CSCur24793 l2protocol forward not work for STP, LLDP, PPTPv2 and E-LMI in EVC

CSCur26932 9951 video calls to CME over SIP trunk result in one way video

Identifier Description

246Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 281: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

CSCur27466 WebUI in IOS-XE : evaluation of SSLv3 POODLE vulnerability

CSCur29434 bad id in id_to_ptr error and traceback after config in trustpool

CSCur29582 IPSEC-VPN: removal of "crypto-map" kills BFD session forever

CSCur29861 Traceback seen on c2900 platform for ike_keepalives

CSCur31540 MMOH Over SIP CUBE does not work when there is an H323 call on hold

CSCur31700 STCAPP port becomes unresponsive after some time

CSCur33915 ASR1000 QFP crash due to stuck thread

CSCur35347 ASR1002-X "SBC File Daemon Crash" / High CPU During Harddisk Log Delete

CSCur35618 [XE 3.15] FP Crashed for SRTP Video Call + DSP

CSCur35923 Output MPLS Conditions Don't Match

CSCur36860 XE3.14 / PI26 - GETVPN KS Crash during Rekey for Multicast

CSCur37511 ESRST/CME SIP shared line subscription expires unexpectedly

CSCur42966 HW offload cfm up mep will timeout

CSCur44075 AC ICE+ ver <= 4.0 Client unable to connect to XE SSL Headend {CSR1K}

CSCur44103 ASR1k: Port leak while using NAT with interface mappings

CSCur44217 Receive SA Next PN counter is not increment

CSCur45249 linktrace fail with two remote mep sessions

CSCur46422 ASR1k - Uncomment the POST for 3DES, AES

CSCur46638 XE3.10+ Flapping ATM i/f or VC may cause small memory leak

CSCur46656 3.10.4S-UNIX-EXT-SIGNAL: Segmentation fault(11), Process = IOSD ipc task

CSCur47847 asr1k ecfm : minor fix for CSCuq43357

CSCur49432 pe bdi interface can not support ipv6 for the remote ce

CSCur51863 XE314: border router ucode crash@ipv4_input_cent_rc_process

CSCur53837 ASR1k: SIP can't be re-enabled with 'no hw-module slot X shutdown'

CSCur54389 SRTP-RTP Call with HOLD/RESUME disconnected

CSCur54411 Fman fp crash when VFI name length exceed 21

CSCur57558 To fix limitation of 20sec TBAR for ASR1K GM

CSCur59399 CUBE intermittently fails to release SUBSCRIBE

CSCur59627 CUBE has stuck/stale TCP socket opened by SIP TLS application

CSCur60180 Octeon platform display N2 drop counter

CSCur60943 Crash on ASR with OTV configured related to internal timer function

CSCur63068 Wrong ikev2 session-lifetime value calculations for larger vlaues

CSCur64006 CUBE crash in local_xcode_rtp_xmit similar to CSCui55556

CSCur64947 some fix to asr1k eoam conditional debug

CSCur65007 IKEv2 SA doesn't come up if invalid session-lifetime attribute is used

CSCur65486 GETVPN: Fail to delete GMs on sec-KS after 3 scheduled rekeys failure

CSCur67171 Dial-peer stats poll cause SNMP high CPU if 500+ dial-peers configured

Identifier Description

247Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 282: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

CSCur67418 packet-trace: EXP value in MPLS condition packet output might be wrong

CSCur69109 VXLAN Entropy Feature Support

CSCur70037 ASR1k-Frames>1518 not dropped by QFP with default MTU config on Gig port

CSCur73327 IKEv2 - AAA IPv6 route set local installed in wrong VRF

CSCur75764 MCID does not work on VG224 SCCP integration with CUCM

CSCur77743 ICMP packets generated by the router are wrongly NATted

CSCur78846 "%Error: this command line only support VoIP and POTs dial-peer"

CSCur80031 Enabling of PKI Trap alone through CLI

CSCur82431 Failure of Path Confirmation in Multiparty Adhoc Conference Call

CSCur84475 XE315, fw/hsl: ipv4 template is used for ipv6 session

CSCur85454 VXML GW fails to handoff call to VXML Application

CSCur86768 IKEv2 reconnect radius ACCT to have terminate cause for suspend/resume

CSCur90494 sbs_entry allocation failure causes ESP crash

CSCur94272 sip_get_sipspi_message memory leak in CCSIP_SPI_CONTROL

CSCur95957 Path confirmation fails while testing DTMF + Transrating Call Scenario

CSCur97707 ASR1001-X show env all missing re-seated PS fan status

CSCur97728 ASR1001-X show platform hardware slot Px fan status displays removed fan

CSCur99303 Calls are being disconnected after receive A3-B7.

CSCus00058 Invalid ip address is accepted as mta send server

CSCus00801 ASR1002-X cpp crash while processing ICMP Unreachable

CSCus02640 SPA-DSP shows "out of service" after an IOS upgrade

CSCus03277 ASR1K: Ucode core file seen with EVC L2 Bridging in MCP_DEV

CSCus04476 Unable to remove the g.723 codec from the dspfarm profile

CSCus04750 Old Crypto GDOI version seen and Suite-B not supported with USD

CSCus06430 FP generate cpp-mcplo-ucode with interrupt INT_GTR_PKT_TOO_LARGE

CSCus09942 ASR Crash on ipv4_nat_ha_upd_to

CSCus22776 ICMP packets cannot be counted in channel packet sent

CSCus30280 CTS PD show command not displaying ingress/egress config status

CSCus32530 ASR1K ESP crash in internal L4R removal feature routine

CSCus34765 Crash@cpp_mma_policy_table_find_new_size

CSCus34817 OTV isis hello packets received on STP BLK port incorrectly punted to RP

CSCus37452 show QFP memory command rejects some valid addresses

CSCus51038 Media forking fails for a Do-EO call in flow through mode

CSCus51697 BDI not working correctly on ipbase license

CSCus53913 AppNav: Tunnel MTU results in fragmentation after Tunnel interface flap

CSCus60838 ASR1K:FP200:cpp_svr core on deleting policy-map

CSCus60868 ASR1K:cpp_cp_svr core seen while configuring Multilink interface

Identifier Description

248Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 283: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCus62591 ASR1K:Yoda:Model3 QoS shaping not working

CSCus66974 ASR1K QFP ESP 200 crashed in a B2B CGN NAT scenario with PAP+BPA

CSCus74006 Some protocols traffic is misclassified as SSL on XE3.15/PI27

CSCus78000 RAR PPPoE on CSR should support PPPoE TAG with PPP LCP

CSCus80096 FP Crashed for SRTP-RTP audio call load tests

CSCus83637 ASR1001x crashes after throwing traceback messages

CSCus85852 CPP DRV: Disable IIC Interrupts (Revert CSCuq05197)

CSCus92437 VXML Gateway Crashes when Video needs to be played to Caller in Queue

CSCut06783 Fortitude NIM does not come up on ASR1001x

CSCut14355 GETVPN - IOS-XE using SW-TCAM - Deny policy classification incorrect

CSCut14502 Address pool leak upon Anyconnect reconnect and subsequent disconnect

Identifier Description

Identifier Description

CSCut33087 ASR1K:fman_fp and ucode crash seen with Flexvpn-systest profile

CSCus11939 up mep over vpls flapping @4k session

CSCut16173 "show interface" bits/sec and packets/sec counters stuck to non-zero

CSCus74990 MKA sessions struck in "pending" state after clear MKA sess

CSCut13375 Ping across AN created ipsec tunnels is not working

CSCut24529 XE315:Config-sync@no crypto ikev2 keyring ikev2_keyring during unconfig

CSCut19255 IKEV2 should send IKE identity in AAA access request

CSCus92291 AN: Router (Registrar) crashes while bootstrapping

CSCus88851 IOS-XE IPSec serviceability - improve datapath HMAC drop debugs

CSCur78648 SSLVPN should use consume instead of drop reasons

CSCut17541 Archive CLI is broken with IOS XE 3.14

CSCut39017 Remove DC from NIM-4FXO or VIC2-4FXO

CSCut47403 Router crashing on entering the command "show voice call summary"

249Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 284: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

250Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.15S

OL-26698-25

Page 285: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S, page 251

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S, page 252

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Identifier Description

CSCut68825 PFRv3: unexpected byte loss reported due to TCP packet flow out of order

CSCuv66011 ESP100: cpp_cp_svr crashed in function cpp_ess_ea_is_vsi_valid

CSCut52677 %SERVICES-3-NORESOLVE_ACTIVE: SIP0: linux_iosd-image after RP switchover

CSCuu55787 ASR1001-X: Router fails to come online with No Service Password Recovery

CSCur24793 l2protocol forward not work for STP, LLDP, PPTPv2 and E-LMI in EVC

CSCuu85007 split-horizon group communication failure

Cisco Systems, Inc.www.cisco.com

Page 286: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search

CSCuv91545 ESP continuous crash on ASR1013 using 03.13.03.S.154-3.S3-ext.bin

CSCuu91954 Fix potential crash in cable lawful intercept

CSCuu72025 Multiple ESP Core on ASR1006

CSCus86476 ASR1K NAT ALG ucode crash @ipv4_nat_destroy_addrport_bind

CSCuu82192 NatGatekeeper performance degraded

CSCuu05210 PfRv3: Not account controlled pkts if the src site is not self

CSCut74937 ASR1K PBR VRF Selection not working when source is local router

CSCut77070 SPA-1xCHOC12/DS0 not supporting Framed E1 connections.

CSCuu03930 RPcrash while booting with 3.13.2IOSXE after SPA-4XCT3/DS0-V2 insertion

CSCup91567 ASR1001-X boot-loops with CMCC crash and XGM MAC10 block errors

CSCuv37192 ASR1001X duplex mismatch

CSCut03205 SPA modules on ASR1K show "missing" under show platform output

CSCut41815 Unable linkup on opposing unit of ASR1k built in port after "no shut"

CSCuu60301 ESP100 crash because of hardware interrupt

CSCut96933 ASR1K ucode crash seen at mpls_icmp_create

CSCut72639 ASR1k CPP crash with IP Options

CSCur31425 ASRNAT: PPTP ALG: Incorrect UNNAT of Peer-Call-ID in Outgoing-Call-Reply

CSCuv82003 Router crash on updating/deleting route-map for static NAT

CSCuv25212 ucode crashes with Fair Queue and FNF export is configured

Identifier Description

Identifier Description

CSCur43882 %SERVICES-3-NORESOLVE_ACTIVE: SIP0: linux_iosd-image: in mcp_dev

CSCuv87030 Clock recovery fails on 1gige interfaces of ASR1000-2T+20X1GE

CSCuw47720 ASR1001-X Mgmt port negotation issue with peer device

CSCux00303 Router crash when running EPC

CSCuu12008 rework CSCut21885: chunk_destroy memory leak.

CSCuw94493 Octeon core hang causing F1/F0 offline

CSCuw85763 ESP crash on transmitting packet via etherchannel

CSCuw85853 ESP crash with ipv4_nat_extract_icmp_embedded | Single core

CSCuu81682 IP getting NAT translated while its in DENY ACL list

CSCux07224 ASR1K crash with OTV due to L2BD FIB entry change

CSCuw78755 IOS-XE need not require appxk9 license to support per-tunnel DMVPN QoS

252Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 287: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S

CSCuu89720 crash found when remove ipv6 media pool

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

CSCux05366 ASR1001x crashed in a scaled IKev2 Flexvpn solution

CSCue68124 PBR not work with null0 default route

CSCut24140 Old active not coming up after first sso also seeing a traceback.

CSCuu28199 [Amur-MR3]IOSD crash reported@spi_iosd_ipc_process_inbound_mts_msg

CSCuu56407 ASR1k Crashes with x-cisco-cpa in INVITE and when no DSP configured

CSCur96943 CCSIP_SPI_CONTROL leak in sippmh_parse_record_route

CSCuw67113 crash seen in CVP load REFER scenarios

CSCuu90168 CUBE crashed due to memory hoding @ TCP_SOCKET

CSCuu32159 CUBE do not checkpoint when conference create happens after call active.

CSCuu12283 CUBE failed to create DP session on STBY for Webex flow

CSCuu00050 CUBE with SRTP fallback is dropping SRTP RTP/SAVP from the 200 OK SDP

CSCuu26224 CUBE with SRTP fallback will crash when call hit on incoming dial-peer 0

CSCuv61186 DSP resources not relesed after Hold Resume

CSCuv37786 ISRG3 Core pointing to CCSIP_SPI_CONTROL process

CSCuu44302 Memory leak under process RECMSPAPP with PC voip_rtp_create_fork_object

CSCuu85691 Under load crash is seen at REFER based scenarios

CSCur35618 [XE 3.15] FP Crashed for SRTP Video Call + DSP

CSCuw99554 ASR crashes on removing the sub-interface on HSRP active router

CSCuv61208 ASR1k EasyVPN server looses RRI for clients behind PAT

CSCuj55363 lispgetVpn traffic is dropped when getvpn profile is applied in wan intf

CSCus79972 Crash on 'tunnel protection ipsec profile profile-name'

CSCuv66070 Crash on executing "show nhrp group-map" command

CSCuu17354 When "if-state nhrp" is enabled tunnel state is not updated at spoke

CSCut14502 Address pool leak upon Anyconnect reconnect and subsequent disconnect

CSCur65007 IKEv2 SA doesn't come up if invalid session-lifetime attribute is used

CSCur63068 Wrong ikev2 session-lifetime value calculations for larger vlaues

CSCuv94186 SNMPWALK crash at ipsmIPSec_policyOfTunnel

CSCuv79429 IPSEC: static reverse-route is removed after retransmissions in IKMP

CSCuw47382 OTV:Local otv vlan inactive after ED reload

CSCuw95692 ME 3600 observed crash after pulling the cable from the ports

CSCuv07441 ASR1k OTV FHRP packets are blocked even with 'no fhrp filter' CLI

CSCup51000 CEMoUDP: PW interface still being unprovisioned, retry later

CSCuq05073 IOSD crash, Malloc Fail Ping doesnt work after changing loopback ip

CSCuv29418 Router is continuously switching between active and standby EoMPLS PW

CSCuu92194 RSP3:HSPW PW-Group Switchover results in traffic blackhole with no scale

Identifier Description

253Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 288: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.3S

CSCuq70725 LDAP Address Error at ldap_clear_transaction_all

CSCuw65059 mfib on the line card stuck in Connecting state

CSCux08088 Memory leak due to PIM register asynchronous tunnel creation

CSCus62778 Stale Data MDT entry

CSCuw62168 MAC ACL does not work on ME3600X

CSCuv46139 DHCP relay does not remove Option82 in Offer forwarded to client

CSCuw99495 Certain directly connected /32 host entries are point to null MET

CSCus96411 Incorrect routing with static routes present

CSCuw41259 ME3600 forwarding breaks when MPLS and IP ECMP exist

CSCus30555 Mcast stops for bridge-domain if the 1st host joined mcast group leaves

CSCuu99395 BGP Flap seen with 64k ingress policer

CSCus68329 IPv6 traffic is classified when ipv4 policy is configured

CSCus68102 IPv6qosacl policy is not working properly when ipv4 policy is configured

CSCuw73651 ME-3600 has high cpu, console lockout out after making config change

CSCuv24255 ME3600X crashes when removing service instance

CSCuv00359 LAG data(ifType) is wrongly populating in IF-MIB for ME3800/3600.

CSCuu34964 1588 Hybrid clk not moving to PA, flapping between UNKNOWN & FL

CSCuu51972 CEM : Traffic loss with CESOPN serial interface

CSCur10311 MAG does not accept PBA without GRE key during de-registration

CSCuq66004 Peer removed from mka's live peer list but macsec's Rx SC is not updated

CSCur70478 Software crash at ldpx_mem_reallocz_grow due to insufficient memory

CSCut27625 Tunnels remains DOWN due to LDI even after SD alarm is turned off.

CSCur01171 Memory leak in MRCP_CLIENT in add_to_hoststatus_table

CSCus45548 Crash when running "show tech-support nbar" with specific configuration

CSCuv76175 Branch MC publish globals (5) service type override hub MC's publish

CSCup94040 hub MC IOSd memory exhuasted & crash under stress like blackout failure

CSCuu70896 PfRv3 - path-id 0:0 shows in output of sh domain iwan master status

CSCuu76169 PfRV3: Collocated hub MC/BR keep on publish site-prefix with enter-pfx

CSCut67137 Memory fragmentation on ASR903 due to OSPF

CSCuw57225 PFRv2 not work well for 10% inboud load-balance

CSCut22660 Session in attempting state on standby when method list is default

CSCuw91822 vISG not sending COA Response

CSCuw79412 %SYS-6-STACKLOW: Stack for process PPP SIP running low, 0/6000

CSCur60633 901:Slave not changing IP with two source vlan/loop from same BC master

CSCuu09050 asr1001x may crash when unconfiguring large QoS policy

CSCuv05361 cpp_cp_svr crash on AR1K

CSCuv09985 ESP100 crash if interface is going up/down CPPHA-3-FAULT: F0: cpp_ha

Identifier Description

254Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 289: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S, page 255

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S, page 256

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

CSCuw74399 %SYS-2-BADSHARE: Bad refcount in pool_enqueue_cache

CSCux10321 ASR1002-X hangs on executing the "show platform hardware qfp xxx"

CSCuv36911 ASR1K active CGN ESP200 may crash when the CGN standby realoded

CSCus00801 ASR1002-X cpp crash while processing ICMP Unreachable

CSCuw44791 ASR1K ESP200 QFP utilization intermittently spikes on normal operation

CSCuv02537 ASR1K ESP200 reload in a B2B CGN NAT scenario with PAP+BPA

CSCuu75584 cpp ucode crash related to Nat config changes

Identifier Description

Identifier Description

CSCut68598 ASR1k BFD randomly down at NAT configured interface

CSCut22976 ASR1k crash during monitor capture export FTP

CSCus62358 ASR1k: MAC based filter does not work with EPC

CSCus70057 Obsolete OTV route entries not deleted from TCAM

CSCut50228 ASR1001-X ping loss with peer ASR1k at fixed speed 10M

CSCut34273 ASR1K, "unknown" process leak under cpp_cp_svr

CSCus86256 uCode crash when MPLS packet received on LAN side of AppNav intercept

CSCut46126 MARCH 2015 OpenSSL Vulnerabilities

CSCut41061 ESP crash with monitor capture and debug platform-trace

CSCus83637 ASR1001x crashes after throwing traceback messages

CSCut48055 ESP100 periodically crashes with hardware interrupt

CSCut64644 ASR1K goes to crash after TCAM messages appearing

255Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 290: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.2S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S, page 256

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S, page 257

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

CSCut14355 GETVPN - IOS-XE using SW-TCAM - Deny policy classification incorrect

CSCut41684 ASR 1K crash due to CCM_ACK interupt

CSCus85852 CPP DRV: Disable IIC Interrupts (Revert CSCuq05197)

CSCus95855 ISR4451 FMAN-FP Crash

CSCus09942 ASR Crash on ipv4_nat_ha_upd_to

CSCut56117 ASR NAT timeouted out sessions not cleared.

CSCus66974 ASR1K QFP reload in a B2B CGN NAT scenario with PAP+BPA

CSCuq10904 ISR4331:MMA perf-mon out-of-order in punted packets

Identifier Description

Identifier Description

CSCur24793 l2protocol forward not work for STP, LLDP, PPTPv2 and E-LMI in EVC

CSCut21885 fman_fp_image and cpp_cp_svr memory leak - QFP PfR MP Prefix H...

CSCus13106 Error in generating keys:no available resources

Identifier Description

CSCus32530 ASR1K ESP crash in internal L4R removal feature routine

CSCuq75633 BFD down sent from ASR5500 is not recognized by 1K, still sending UP

CSCur53837 ASR1k: SIP cannot be re-enabled with 'no hw-module slot X shutdown'

256Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 291: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.1S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search

CSCun32287 SW: ASR1002-X ifHCInOctets can decrease before wrapping around.

CSCus51697 BDI not working correctly on ipbase license

CSCur84939 ISR4400 ping fails after applying FR encapsulation

CSCur27466 WebUI in IOS-XE : evaluation of SSLv3 POODLE vulnerability

CSCuq85115 ASR1K enable "ip cef accounting non-recursive" cause fman_rp crash

CSCur09918 ASR1K: RP2 kernel crash

CSCuq85985 ASR1K:ESP80, 100, 200 crash on SSO when FRF.12 enabled on MFR bundle

CSCuq66758 ASR1k - CPP ucode crashes on configuring OTV

CSCur60943 l2bd_bfib_timer_timeout_handler Crash due to problem in IOS internals

CSCur00747 ROMMON Upgrade rolled back

CSCun62047 ASR1k: Cleanup tracebacks seen while testing CEoP SPA-24CHT1-CE-ATM

CSCus28745 POS FRR issue with traffic loss around 1 sec instead of 50ms

CSCur46656 3.10.4S-UNIX-EXT-SIGNAL: Segmentation fault(11), Process = IOSD ipc task

CSCur54411 Fman fp crash when VFI name length exceed 21

CSCur49432 pe bdi interface can not support ipv6 for the remote ce

CSCus60868 ASR1K:cpp_cp_svr core seen while configuring Multilink interface

CSCus60838 ASR1K:FP200:cpp_svr core on deleting policy-map

CSCus62591 ASR1K:Yoda:Model3 QoS shaping not working

CSCuo51601 ISR4400 - Traffic incorrectly forwarded through class class-default

CSCuq77467 ipcstats- Internal inconsistency: counter would go negative

CSCul79546 GEC pactrac: show fia-traced packet has unexpected unformatted output

CSCur57558 To fix limitation of 20sec TBAR for ASR1K GM

CSCur90494 sbs_entry allocation failure causes ESP crash

CSCur33915 ASR1000 QFP crash due to stuck thread

CSCur51863 XE314: border router ucode crash@ipv4_input_cent_rc_process

Identifier Description

Identifier Description

CSCus78987 UDP port 2152 (GPRS) is open by default and can't be manually closed

CSCus62358 ASR1k: MAC based filter does not work with EPC

CSCur32505 ASR100x SBC ucode crashes @ dlist_add_obj_to_rear

257Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 292: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S, page 258

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S, page 262

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

CSCus67907 ASR1k ZBFW GTPv2: ESP crash - invalid primary_cb pointers

CSCut03813 ASR1K ucode crash seen at mpls_icmp_create

CSCus09942 ASR Crash on ipv4_nat_ha_upd_to

CSCus00801 ASR1002-X cpp crash while processing ICMP Unreachable

CSCus66974 ASR1K QFP ESP 200 crashed in a B2B CGN NAT scenario with PAP+BPA

Identifier Description

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.5(1)S

Status Fixed

Identifier Description

CSCuq88560 ASR CPP crashes due to stuck thread interrupt

CSCur01849 Cisco ASR 1000 Series Routers: FP crash @ipv4_nat_ha_bind_to

CSCum03117 Cisco ASR 1000 Series Routers: Traffic flood verification failed @ efp and vfi with same BD

CSCuo75126 Ucode crash seen with Firewall configs in B2BHA setup

CSCum67310 QFP needs to be modeled for ULTRA

CSCup64883 XE3.13: B2B NAT ZBFW : Crash @ha_sync_build_packets on Active

CSCuq95303 XE3.14: FP80:cpp_svr cores seen on attaching service-policy

CSCui45088 ASR921: Link flaps on changing the IP for mgmt interface

258Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 293: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCum53365 [AVC] SNMP index cannot be retrieved from uidb data-structure

CSCuo74920 flap flexvpn - memory leak CPP AEM SUB-TASK CHUNK and CPP AEM TASK CHUNK

CSCuq97925 cpp_cdm: CPP crashed after oir CLC

CSCuq15145 Cisco ASR 1000 Series Routers: ART metrics problem in application-experience profile

CSCuq23502 Cisco ASR 1000 Series Routers does not relatch properly after receiving relatch event on 3.12.1S

CSCuo36977 Traceback at cpp_mma_policy when flapping flexvpn sessions with AVC

CSCup34928 RP crash when config and unconfig a service continuously

CSCuo57286 dst_ip_known() API doesn't create preflow in PD during BICS demo

CSCup97104 Unknown USB container entries in entStateTable

CSCup48518 FTP ALG create incomplete token in case of EPSV passive

CSCup17566 PP crash caused by sessions renegotiating authentication

CSCuq14700 TDL message buffers memory leak

CSCum25373 XE310/XE314, FW: traceback is seen when firewall is configured

CSCup57389 Traffic drops while testing VRF Lite coexistence with SP NAT for LNS

CSCuo26237 yyTranslations are not synced on active and standby FP after changing mode

CSCup81591 XE314, vtcp: no default mss value when no option in syn ack

CSCuo94228 Periodic tail work to check mailbox for Yoda platforms with GPM keep

CSCuq05033 XE314: Memory Leak @ Exec

CSCur03851 SSTE: QOS-3-INVALID_QID: Queuing error for interface

CSCup81326 ESP/CPP crash due to SBC RTCP

CSCul33598 Cisco ASR 1000 Series Routers: Disable PEMs sensor polling on Standby RP

CSCui96224 show crypto IPsec interface platform is broken

CSCuq63782 ATM VCs flap when under a large amount of traffic

CSCuq70681 HostDB Timer Corruption Causing Firewall Crashes on Cisco ASR 1000 Series Routers

CSCup51926 NAT door creation may be possible getting failed

CSCul23249 Appnav PT statistic show wrong number after addition and removal of SN

CSCuo03834 Entity alias mapping and if table entry missing for USB ports ASR1002-X

CSCuo55412 Configured ACD value does not reflect in "show int" output

CSCun10115 Cisco ASR 1001-X Router: entPhysicalDescr of NIM subslot bay is shown as SPA bay

CSCup37801 PPPoE code incorrectly expands GPM

CSCuj39789 EDVT: normal condition: Error resolving active FRU: BINOS_FRU_RP

CSCup98776 Cisco ASR 1000 Series Routers outbound SA creation failure and ESP not processing further requests

CSCup29570 Cisco ASR 1000 Series Routers Port-Channel interface dropping packets with WCCP enabled

259Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 294: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCuo85606 ESP80 crash when tearing down PPP sessions on LNS

CSCuo09341 ESP crash on ASR due to esf_downstream_tc function

CSCuo40409 B2B NAT: TB @lst_gpm_addr_handler after inside intf flap on Active

CSCuj79520 PAP global address usage growing consistently over time.

CSCuo80873 Make fix for CSCun22771 more complete/robust

CSCup01105 XE314, VTCP: RST TCP packet is dropped

CSCup63197 show crypto ipsec sa interface with platform option cause IOSd reset

CSCun83128 PPTP fails with static PT for control and PAT for data

CSCup88496 630748069 Serial interface MTU issue on ASR1006

CSCuo55610 Active RP kernel core dump in dual RP2 system may not complete on time

CSCuo26733 CUBE-SP: CAC compound scope src-adj, dst-adj cannot be configured

CSCun99798 dot3Stats counters are not updating on Cisco ASR 1000 Series Fixed Ethernet Line Cards (ASR1000-2T+20X1GE and ASR1000-6TGE)

CSCum16005 Cisco ASR 1001-X Router: 10GE Eval license state not consistent after 2 SSO switchovers

CSCum50944 Cisco ASR 1001-X Router: Luke YSN block interrupts need to be enabled

CSCur18685 QoS SG: Lev1 shape rate is de-activated after dynamic config on the fly

CSCuo52384 ASR1000-RP2 failing to boot up - midplane locked

CSCuo04982 SSTE: continuously tracebacks@lst_gpm_addr_handler&do_print_ipv6_address

CSCuo41369 Cisco ASR 1001-X Router: VLAN errors seen on Native GE connected to C3750G switch

CSCun84194 show tech IPsec platform is looping forever in IPsec FP access-list all

CSCuq24505 show platform packet-trace code commands missing

CSCup81323 Additional support for filter combination(s) on IOS-XE

CSCuq43357 Cisco ASR 1000 Series Routers - Y1731 Frame Delay Measurement broken

CSCuo55508 CPP crash encountered with packet tracing enabled

CSCup50375 Process manager is exiting: critical process fault, fman_rp, rp_0_0,

CSCuo77017 Tcam resource has not been released after 32k EFP deleted

CSCuo31517 ELC: Auto negotiation status for copper SFP is always “completed”

CSCuq87715 Multicast l2 head rewrite via PPP half bridge interface

CSCup37676 OTV jumbo packet fragmentation and reassembly causes Cisco ASR 1000 Series Routers CPP crash

CSCul48593 Active FP crashed due to stuck threads @ipv4_nat_bpa_free_port

CSCup32129 Auto-rp announce packets replication

CSCuq05276 Cisco ASR 1000 Series Routers CPP crashes in ipv4_nat_esp_remove_conn

CSCuq02069 CUBE-SP HA Calls Fail/High CPU if CRYPTO PKI command entered on Standby

CSCuq49527 Cisco ASR 1000 Series Routers IOSD crash while configuring IPSLA with Y1731

CSCuo49765 CWDM-SFP SNMP power threshold discrepancy

CSCuo61455 Crash in NAT with ALG enabled

260Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 295: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCun96598 Cisco ASR 1000 Series Routers: DS3-MIB objects are showing value 'ZERO' on SPA-2XT3/E3

CSCur00762 Cisco ASR 1000 Series Routers - incorrect traffic classification after HW TCAM is exhausted

CSCuo61982 New platform specific command for uRPF loose sdrop counter increasing

CSCup54891 CPP crash due to race condition while release object

CSCun30311 'show platform soft stat control-processor brief' status 'unknown'

CSCup03197 Cisco ASR 1001-X Router--Streaming PLIM messages during stress/performance test

CSCuo56907 Add support for processing control plane packets on IOS-XE platforms

CSCun97477 ASR CUBE-ENT not sending RTP to end point in ACK w/SDP: DO-DO

CSCuo86424 ESP crash with ping while using packet-trace

CSCup76922 Aggr GEC: traffic sent via one memlink after reload due to Idx prg wrong

CSCup82655 Flow record output not seen correctly after applying input ACL deny TCP

CSCup40814 ESP-100/200: Fair Queue not applied correctly adding to existing policy

CSCun90447 FNF: Bad values reported for IPv6 BGP nexthop for MPLS PE egress monitor

CSCuo59226 pactrac: incorrect hexdump display with terminating 3-byte boundary

CSCun60555 ESP 40 crash seen during MFR unconfiguration

CSCup10251 QoS functionality breaks due to issues in TCAM, %CPPOSLIB-3-ERROR_NOTIFY

CSCun92244 Active router creates binds with same gaddr, gport for >1 lport

CSCuq24971 Cisco ASR 1000 Series Routers ucode crash with pa_get_state on using aggregate port-channel

CSCuq91488 Not punt BFD packet to RP even BFD state changed from DOWN to UP

CSCun23109 SSTE: XE_312: TBAR drops seen with over subscription

CSCur07193 ELC-40: Cisco ASR 1000 Series Fixed Ethernet Line Card ASR1000-2T+20X1GE crashes after CSCuq82536 commit when configured Port channel

CSCul77689 Cannot create context with name that is a part of other context name

CSCum54014 ESP100, ESP200, ASR1001-X, ASR1002-X: ESP crashes YIC_M40_TIMEOUT Interrupt

CSCuo61782 XE3.13: PAP address allocation issue

CSCuo50995 ASR1000 LI sets identification field of packet from IAP to MD to zero

CSCup39448 Show interface counter does not increase on ASR1001-8XCHT1E1

CSCuo99185 Multiple IOS-XE CPP Ucode crashes due to invalid static route

CSCup80449 1NG: With Cu-SFP inserted and port is shut, IDPROM shows it enabled

CSCuo65747 ESP-100/200: fair queue not applied correctly adding to existing policy

CSCuo47620 Cisco ASR 1000 Series Routers - session churn under scale leads to %CPPDRV-4-ADRSPC_LIMIT: F1:

CSCuo97597 ISSU/MDR XE313->mcp-dev: %CMRP-3-SIP_MDR_FAIL:SIP MDR restart timed out

CSCuq91599 Cisco ASR 1000 Series Routers wccp pending-ack in fman-wccp caused standby-fp reload every 1hr

261Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 296: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

CSCun86123 Port-mode ATOM VC sometimes does not come up after router reload

CSCuq63167 XE3.13: PAP address allocation issue - retry with mods to gaddr_unlock

CSCuo59556 FreeBSD-SA-14:08.tcp TCP reassembly vulnerability (CVE-2014-3000)

CSCun88935 “link down due to local/remote fault” message observed during local shut

CSCuq54655 Cisco ASR 1000 Series Routers: Ucode@PAR1_CSR32_PAR1_ERR_LEAF_INT__INT_PAR1_STEM_CB_SEL_INV_ERR

CSCun94073 SBC IPv6 traffic is not passing through hairpin pinholes

CSCuq90913 OTV: CPP ucode crash in l2bd_forward on BD conditional debug enable

CSCuq27271 fair-queue with time or byte based queue-limit encounters ucode crash

CSCuq09004 RP crashed with cpp_cp_svr crash in cpp_qm_event_insert_leaf_node

CSCuo29770 CPP DRV: intermittent atris memory initialization failures

CSCup79565 1NG_NATIVE_ERR:set_autoneg on optics failed:13 error on 1NG with CuSFP

CSCuq13494 Cisco ASR 1000 Series Routers-IPv6 egress ACL intermittently mis-classifies and drops ESP packets

CSCuq21258 ASR1002 crashed: fman_ipsec_pal_set_reply_ctx

CSCuj86660 show platform hardware [slot | subslot | port] xyz plim buffer mapping

CSCuo46375 Webui unavailable: authentication provided by IOS was malformed

CSCun39803 OTV drops ARP broadcasts due to corrupt flood list pointer

CSCuo89971 ELC: queue stuck ESI link permanently back pressured (refix CSCun01920)

CSCuo56943 ESP crash related to MPLS flow monitor feature

CSCup53658 Cisco ASR 1000 Series Routers QinQ subinterface stats do not work on Port Channel

CSCup22487 Multiple vulnerabilities in BinOS OpenSSL - June 2014

CSCuo19730 Cisco IOS XE is vulnerable to CVE-2014-0160 - aka heartbleed

Identifier Description

CSCuq52073 dIOL Standby RP exits shortly after boot up

CSCuq64148 dHuge pkt drops with CRC errors when ASR1001x connected to a 3925

CSCur46656 3.10.4S-UNIX-EXT-SIGNAL: Segmentation fault(11), Process = IOSD ipc task

CSCur25691 Back-out changes for CSCuq44352

CSCur49002 Juno crash seen with 10/8 image at high load/CPU with WAAS config

CSCur76372 SNMPWALK for cisco-user-connection-tap-mib is not working

CSCuq99312 show crypto GDOI missing in show tech output

262Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 297: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCur11277 Tracebacks @ vrf_interface_associate_internal

CSCur34594 Memleak seen on IOS RA while client enrol to msca via RA

CSCur06378 CENT: Bad chunk memory block corrupt under stress negative testing

CSCup83670 Fix breakage in CSCup50629

CSCuq77812 Redundant code in VASI feature ucode

CSCur13285 CUBE:Router crash seen at sip_mpa_free_event_info function

CSCul69077 SSH Protocol must point to IC2M for Key Derivation Function (KDF)

CSCuq60289 Traceback for command "nsf advertise holdtime 35"

CSCur03610 Scale with 2000 branches crash on IOL at saf_ipv4_process_services

CSCur07842 LISP control port closed to non-LISP packets

CSCuq25704 crash@mpls_foam_intf_notify_ep_lsps on multiple reloads

CSCuq60189 XE3.14: NMAP scan LISP UDP port is open when lisp is not configured

CSCur50395 atmVclLastChange does not get updated

CSCur24793 L2protocol forward not work for STP, LLDP, PPTPv2 and E-LMI in EVC

CSCur62610 More wrong metrics when Performance and Experience on same interface

CSCur54225 Intermittent ping failure on directly connected interface in RSP1

CSCur07203 CUBE: No audio after failed call transfer

CSCuo15355 IWAN::AQOS: US7069 and issues found applying CLI at Hub

CSCuq19221 [mLACP] VPWS VC states goes down while configuring lag priority on POAs

CSCur45152 Unwanted output is added to show process cpu/memory command

CSCuq58153 FMFP_ACL-3-ACL_PROTOCOL_CHECK when MAC ACL is removed and created again

CSCuq91738 Traceback @IFMGR-3-DUP_IFINDEX: Duplicate ifIndex (331) found for ifDesc

CSCur52300 ASR 1000 Series Routers: IOSd crash occurs on Standby RP with UWS-GETVPN profile

CSCur35923 Output MPLS conditions do not match

CSCur11350 "show macsec summary" caused %SYS-3-CPUHOG

CSCur12089 MACsec does not show correct number of installed RX SC

CSCur44190 MACsec enabled interface should self-adjust IP MTU

CSCur72779 XE 3.14: B2B NAT : Stale NAT translations observed on Active rtr

CSCur19785 10G scaling KS and nonKS routers are in SAK-REKEY loop

CSCur44217 Receive SA Next PN counter is not increment

CSCuq69566 Memory leak with CENT and Appnav interop testing

CSCur43251 CSR REST communication fails due to SSL error

CSCuq61948 VM class-map counters are not cleared for sub interfaces

CSCuq78198 Wrong metrics when Performance and Experience on same interface

Identifier Description

263Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 298: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCur28117 SSTE: Chunk leaks at ipmcast_mib_addr2os and mcast_pimmib_get_common_entry

CSCuq67005 DE318: Interface with MKA session goes down upon config of cts manual

CSCuq44352 Unwanted output is added to show process cpu/memory command

CSCuq85985 ASR 1000 Series Routers: FP80:ucode,fman, cpp_svr cores with MLFR-FRF12 configs on SSO

CSCuq99212 REGISTRATION_DONE count on GM,GM_REGISTERED count on KS not as expected

CSCup56045 Per-User ACL from Radius with Flexvpn session does not get applied

CSCuq85189 Incremental chunk leak seen at ccsip_debug_compute_hdr

CSCuq76425 SGToE functionality fails with dot1q sub-interfaces

CSCuq97984 Conform and violate action accept invalid TM exceed action reject TM

CSCuq15628 Syslogging for Service set enablement/disablement

CSCur39447 Call disconnected 2 of the 3 spa card is stopped from dspfarm

CSCur60180 Octeon platform display N2 drop counter

CSCur71827 ASR 920 support of cfm encap for EVC with untagged and range of vlans

CSCur11135 CEMoverUDP E1 alarms not propagated when PW is down

CSCuq02226 IP SLA latest operation start time displays wrong time

CSCuq65925 LISP control port closed to non-LISP packets

CSCup78067 Need show tech LISP support for IOS

CSCur41248 0-SLA: minimal react not work when app policy replaces dscp policy

CSCuq85648 IS-IS works with macsec only if clns mtu is reduced for macsec overhead

CSCur38610 No ARP resolution in vrf when "no ip cef optimize neighbour resolution"

CSCur12219 OnePK PfRv3 - MCP 10/1, Java CD8 - crash with invalid collector ip

CSCuq66017 DE309: MACsec RXSC counter reset for all peers when one peer remv/rejoin

CSCur45151 ASR 1001-X should not allow to install 9 RX SC on 1G port

CSCup45121 Not able to configure same source port on changing encapsulate UDP to MPLS to UDP

CSCuq92393 [XE3.14] NBAR activation process stuck on ESP-160

CSCuq66004 Peer removed from MKA's live peer list but macsec's Rx SC is not updated

CSCur02285 Issue with caqVccParamsInheritLevel and cell rates in CISCO-ATM-QOS-MIB

CSCuq21350 First multicast rekey is not being received by the ASR 1000 Series Routers GMs

CSCur36835 Stand alone KS will not become primary when there are no COOP peers.

CSCur44300 IPv6 autoconfig: client int shut when prefix deprecated, doesn't learn

CSCur04399 XE314: CPU hog and Tracebacks on Primary and COOP with clear ks members

CSCur09261 LISP: assert in lisp_rib_table_route_delete on LMGW on route clean

Identifier Description

264Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 299: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCur29346 Getting error from function EVENT_TRACE_PATH_ERR for dump all periodic

CSCum12569 GETVPN: GM doesn't show registration interface when registering

CSCup42525 ASR 920:system crash with smart license enable

CSCur01182 XE3.14:dmvpn per-tunnel-qos ESP20 crashed once in a while

CSCur67289 Watchdog timeout, process = CENT_PROBE@ cent_sm_dp_traffic_timer_handler

CSCur53721 ASR1000-2T+20X1GE:LED status flaps to green then to amber with RJ45 SFP

CSCur47304 0-SLA: migration not correct on channel when hub site is mixed

CSCur12200 OnePK PfRv3 - MCP 10/1, Java CD8 - tunnel being configured as source int

CSCuq57532 RESTAPI: "no attribute _IP_ACE_LOG_PRESENT" error for ACL GET APIs

CSCur34164 RIP offset-list is hidden from the conf when removing associated ACL

CSCuq10142 Aggr. GEC QoS service-policy in suspended after reload

CSCur37945 CENT: bypass packet loss metric by low rate SMPs per monitor interval

CSCup51000 CEMoUDP: PW interface still being unprovisioned, retry later

CSCuq92458 0-SLA: Out-of-order object create causing PD MMA error-object pending

CSCuq89916 show CDP neighbor fails with macsec enabled on both main and sub interface

CSCur33424 Undebug all under low memory condition crashes the box

CSCur15652 Custom-applications are not cached

CSCuq93221 OSPFv3 MPLS tunnel cost undetermined for forwarding adjacency

CSCuq05073 IOSD crash, Malloc Fail Ping does not work after changing loopback ip

CSCuq33079 GKM failed to add debug condition- message is seen in GETVPNTROUBLESHOOT

CSCur35114 0.0.0.0/1 is not redistributed into OSPF

CSCur47861 Cisco ASR 1001-X Router can crash upon deleting subinterfaces with Secured MKA session

CSCur43316 [XE3.14/ 3.15] CG counters are wrong after reload on ESP160

CSCuq96142 ESP crash on IPv6 GM when removing remark statmt frm KS (IPv6 ACL, suiteB)

CSCun04296 No traceback seen on CLC IOS with "service log backtrace" on.

CSCuq87709 XE 3.14: Wrong SA gets matched with multiple permits in KS-ACL

CSCuq19263 Unable to configure multiple LMA IP addresses in domain config on MAG

CSCur33350 ME3600 OSPF Prefix-suppression is not working after reload

CSCuq54134 SSTE: IPSec SA receives anti-replay error

CSCur60438 tefp_uni-c_to_uni-c test case is failing for the script CFM over dot1ad

CSCuq31164 MLPoEoA MUX sessions do not come by when DUT configured from scratch

CSCur28290 ASR 1002-x crashes after adding Adaptive QOS configuration

CSCuo39708 XOS CERRNO does not allow version 0.0 for error defs

Identifier Description

265Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 300: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

CSCur54077 GDOI: upon reload GM directly registers to the Secondary KS with a delay

CSCuq97514 Prefix is not redistributed into OSPF after BGP inter-VRF route leak

CSCur34335 Bridge domain entries not deleted properly in l2fib

CSCur74010 Fix for the bug CSCur59880 and CSCur34335

CSCur25277 FNF: long extracted fields are not exported

CSCur21419 XE 3.14: counter bytes are always 0 for Ingress MMA policy with TCP traffic

CSCuo97826 NBAR CFT client pending and not destroyed after disable all features

CSCuo49933 XE313: 21% packet loss seen in DMVPN scale configs with overlord as UUT

Identifier Description

266Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14S

OL-26698-25

Page 301: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7aS

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7aS, page 267

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7aS

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S7a

Status Fixed

Cisco Systems, Inc.www.cisco.com

Page 302: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S, page 268

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S, page 269

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Caveat ID Number Description

CSCvc95168 ASR1001-X 1G GigE Ports do not Link up with RevB L1 PHY

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S7

Status Fixed

Caveat ID Number Description

CSCvb30256 ASR1000-2T+20X1GE: More than 1Gbps traffic is reported on 1GE port

CSCvb49832 ASR1k-ELC- XCVR disabled after router reload and interface is down

CSCva23372 L2-EoGRE:fman-fp crash when config VE instance with untagged encap

CSCuz75265 ASR1k: "sh plat software peer interface-manager rX" missing some info

CSCux68796 IOS-XE Router - High CPU When Handling get-next on "entStateStandby" MIB

CSCuz22379 ASR1001-X "mcpcc-lc-ms" process high CPU

CSCvb36753 Ingress Unicast traffic not received on the BDI.

CSCvc48813 BQS unable to resume processing leading to pending objects constantly increasing

CSCvb16588 idx out of range cpp_qm_event_sch_data

CSCvb76638 POLARIS 16.4: fman_fp and cpp_cp core files seen with L3VPN profile

CSCvb54111 VPDN sessions unablle connect with "Dataplane down" error

268Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 303: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.7S

All open bugs for this release are available in the Cisco Bug Search Tool.

CSCvc08848 CPP DRV: QFP memory initialization failure

CSCuv71273 ASR 1000 Series Aggregation Services Routers Data-Plane Processing Denial of Service Vulnerability

Caveat ID Number Description

Caveat ID Number Description

CSCup82655 flow record output not seen correctly after applying input ACL deny TCP

CSCux98943 Padding for PPPoE over ATM should not be added for accounting

CSCut70443 "request platform software console attach" command improvement

CSCuz33638 %IOSXE-4-PLATFORM: R0/0: kernel: EXT2-fs warning:

CSCtw74124 ASR1002-X/SIP-40G/ASR1001-X:sh plat..plim buf set:Fill Status Max:Not fn

CSCuz57513 ASR1K x86 based cards not logging ECC SBE errors to OBFL

CSCul33598 ASR1k: Disable PEMs sensor polling on Standby RP

CSCvb17224 cman_fp memory leak is seen on ESP

CSCuy74157 IOS-XE: 2KP/1NG espbase,sip info is not present in sh ver running

CSCux37457 Power supply status stuck on either "ps, fail" or "ok"

CSCui45088 ASR921:Link flaps on changing the IP for mgmt interface

CSCut87081 Broadcast counters issue for managment interface for incoming pkts

CSCvc06453 As1k @ CFM traffic frames being sent with 2 dot1q tags

CSCut01865 XE315:Packet drop@MaxTu in Nightster

CSCuy59471 erspan supports configure flexible mac for the wan interface

CSCvb26643 RP crashed due to memory corruption while packet processing.

CSCvc39443 router may crash with ZBFW ACL modification

CSCum53365 [AVC] SNMP indx can't be retrieved from uidb data-structure

CSCvb79182 IPSec GRE tunnel path-mtu-discovery does not work

CSCuy33103 incoming frame from AC is punted even though l2tp session is down

CSCus11391 ASR1k/3.10.2 : MLPPP packets incorrectly marked out of order and dropped

CSCux68942 "debug platform software infrastructure punt mma" enhance for lost seq

CSCuz16934 PfRV3: Unexpected big byte lost report with NBAR based QoS integration

CSCun90447 FNF: Bad values reported for IPv6 BGP nexthop for MPLS PE egress monitor

CSCuz67795 Polaris: different probing behavior with probe reduction between ISR/ASR

CSCux93176 ASR1k:stby RP stuck while bootup

269Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 304: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6bS

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6bS

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6bS, page 271

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

CSCue01951 Scrambling settings to be configurable from the CLI

CSCvb77495 ASR1K: Unexpected router reload after receiving invalid SPA IPC message

CSCva22194 ASR1002X - 6XGE-BUILT-IN module has inconsistent interface state changes

CSCuz03682 Router with ambiguous second vlan stops forwarding after config changes

CSCuz84374 SPA modules on ASR1002-X show "missing"/"out of service" under show platform

CSCuz90934 ASR 1001-X VLAN Errors Incrementing Continuously with No Traffic

CSCur95967 TB @fpd_ver_info_resync_resp_message_unmarshal during SSO on ASR1001-HDD

CSCuu66094 %INFRA-3-INVALID_GPM_ACCESS_INFO wiith multiprotocol traffic on IWAN BR

CSCus53913 AppNav: Tunnel MTU results in fragmentation after Tunnel interface flap

CSCva15146 Tunnels created by AppNavXE should not be visible via SNMP

CSCud67560 Rotate Command for Trace files does not rotate PMAN Logs on FRU

CSCum25373 XE310/XE314, FW: traceback is seen when firewall is configured

CSCvc71183 ASR1K ESP100 - Both ESP crashing due to cpp_bqs_srt_yoda_place_child_internal: failed to grow tree

CSCva58151 ASR1K-ESP100 crash when a link with tunnels go down

CSCvc86594 cpp_cp process crashed cpp_bqs_srt_yoda_destroy_tree

CSCvc83373 cpp_cp process crashes due to sw wdog expiring while creating a queue

CSCvc80135 Crash when bandwidth remaining percent <#> is removed then re-added to a class-map

CSCuo65747 ESP-100/200: Fair Queue not applied correctly adding to existing policy

CSCup40814 ESP-100/200: Fair Queue not applied correctly adding to existing policy

CSCvb09881 IWAN NBAR may cause a reload with pa_offset_to_addr

CSCva47695 Entry leak in the SID_CAM leading to SID_CAM_OVERFLOW

CSCuy21483 ISR4451-X Crash at cpp_dsp_get_stream_stats

CSCup32534 ASR 1001-X - Crypto throughput threshold messaging changes and errors

Caveat ID Number Description

270Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 305: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6bS

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S, page 271

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S, page 272

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S6b

Status Fixed

Caveat ID Number Description

CSCvc95168 ASR1001-X 1G GigE Ports do not Link up with RevB L1 PHY

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S6

Status Fixed

271Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 306: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.6S

All open bugs for this release are available in the Cisco Bug Search Tool.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5aS, page 273

Caveat ID Number Description

CSCuz17963 plogd tracelogs getting generated causing high cpu in plogd process

CSCuz34766 ASR1000-2T+20X1GE GE ports cause CRC errors when connected to some LCs

CSCux44606 Name ACL for Multicast Boundary Stops Working Upon Reload

CSCux66017 ASR1K crash due to "SNMP engine" when polling ifEntry on sonet interface

CSCuz43112 EFP deleted when unconfig otv overlay interface and then config back

CSCux74788 ASR1002-X: Memory leak in IOSD: acl-handle

CSCus35015 PFR - 'set trigger-log-percentage' not showing in config

CSCux12259 pfrv3: pkt drops as "disable pkt" b/c encap value 0X00000013 in asr1001x

CSCuw81295 Ping fails on ASR 1001X when Cu SFP is replaced by Optical SFP

CSCuu17470 XE314:1NGPacket drop Built-In interface configured with EVC and xconnect

CSCuz55555 "On ASR1k,Traffic rate getting effected due to qos policy.."

CSCva17867 ASR device is crashing on adding interfaces to AVC through Webui

CSCva49319 CPP Crash when flapping qos and interface speed on Yoda or Tunnel w/qos moves to vlan w/qos

CSCuw11097 ASR one way audio due to incorrect provision by FMAN-RP

Caveat ID Number Description

CSCva23372 L2-EoGRE:fman-fp crash when config VE instance with untagged encap

CSCuz16934 PfRV3: Unexpected big byte lost report with NBAR based QoS integration

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

CSCuz90934 ASR 1001-X VLAN Errors Incrementing Continuously with No Traffic

CSCuo65747 ESP-100/200: Fair Queue not applied correctly adding to existing policy

CSCup40814 ESP-100/200: Fair Queue not applied correctly adding to existing policy

272Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 307: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S, page 273

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S, page 274

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5aS

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S5a

Status Fixed

Identifier Description

CSCuz54836 ASR1002-X with harddisk installed stuck in crash and reboot cycle

CSCuz65079 SIP40: Support for new revision MPC8548 Rev.E CPUs

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S5

Status Fixed

Identifier Description

CSCuw89522 ASR IOSD crash because of AVC feature

CSCuw13407 PfRV3: transport bytes expected counters overflow and not expected

CSCuv79776 Router with Pfr feature crashed at cpp_free_exmem

CSCuw30599 ISR4331-B: traceback occured when enabling Ethernet Data Plane Loopback

CSCuv84600 Netflow packets are dropped when EPC is enabled

273Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 308: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.5S

All open bugs for this release are available in the Cisco Bug Search Tool.

CSCux29703 ASR1000-2T+20X1GE fails to boot on router reload with SPA-3-NULL_BAY_PTR

CSCuu48458 ASR1k/15.4(3)S QinQ frames are dropped under "TCAM Failure Drops"

CSCux55692 TCAM Errors in NL11k TCAM of Fixed Ethernet Linecards

CSCuw98135 ZBFW HA not replicating sessions when matching based upon L4 proto/port

CSCuw21897 Traceback seen with ip cef accounting

CSCux57066 ASR1K : Lawful Intercept not working as expected for IPv6 traffic

CSCux02656 ASR1K: Crash related to collecting NetFlow data for IPv6 flows

CSCuw36887 Crash with with Flexible Netflow enabled

CSCuw78755 IOS-XE need not require appxk9 license to support per-tunnel DMVPN QoS

CSCup91567 ASR1001-X boot-loops with CMCC crash and XGM MAC10 block errors

CSCux01133 interface counter stuck on build-in interfaces in ASR1001X

CSCux43951 Packet drops on built-in 1Gig ports of ASR1001-X

CSCuv26762 ASR1001X HMAN generating error msg when reading /proc/cpuinfo

CSCux42411 ASR1001-X Frame Relay with Fortitude NIM fails due to LMI packet padding

CSCuv93130 Cisco IOS-XE 3S platforms Series Root Shell License Bypass Vulnerability

CSCup70353 IOS-XE router reload due to WebUI log file leak

CSCuw49798 ASR1K: cpp_cp_svr core@cpp_qm_cmn_delete_queue

CSCuw94014 cpp_cp crashes with BB profile #6 48k PTA

CSCut49714 GEC:QoS: pkt buff util high after apply/remove flat policy w/ fair-queue

CSCuw81487 Kahuna RP crash when bringing up PTA sessions with QoS

CSCuw73223 Polaris : cpp_cp_svr crash when the interface goes down

CSCux10321 ASR1000 CLI hangs on executing the "show platform hardware qfp xxx"

CSCud50181 SBC srtp ucode crash doing srtp-rtp interworking

CSCuu45832 STUN packets not handled properly by CPP SBC module in ASR CUBE

CSCuw71226 Call stuck in a deactivating state (CUBE-SP)

CSCut78545 delegate registration failed after password change

Identifier Description

Identifier Description

CSCty45891 ASR1k RP2 punt/keepalives triggered crash due to Tx err

CSCux44606 Name ACL for Multicast Boundary Stops Working Upon Reload

CSCux33568 ESP crash while reconfiguring FR interface to MFR bundle

CSCux07224 ASR1K crash with OTV due to L2BD FIB entry change

274Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 309: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S, page 275

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S, page 277

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

CSCux59115 ASR1002-X Crash with dpidb_tableid_params_initialize

CSCux93176 ASR1k:stby RP stuck while bootup

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

Identifier Description

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S4

Status Fixed

Identifier Description

CSCuu50189 ASR1K reported %LSMPI-4-INJECT_FEATURE_ESCAPE for PPPoE data packet

CSCuu13292 ASR1k ucode crash at ipv4_esf_portbundle_forus

CSCuv46318 ESP100 cpp_cp_svr crash issue due to invalid stats_sbs_entry data

CSCuj15099 ISG doesn't preserve PBHK port maping in lite to dedicated sesssion

CSCuv52648 ESP memory leak under cpp_cp_svr due to BFD feature

CSCuu55787 ASR1001-X: Router fails to come online with No Service Password Recovery

CSCuu30999 Asset ID write not working on pluggable spa of Nightster

CSCut82336 ASR1002-X: Handle leap second in ToD IN

CSCut65374 PTP Leap Second: ASR1002-X incorporate leap second addition 6/30/15

CSCuu14809 Byte counters display incorrect value for multicast traffic over sub-int

CSCur24793 l2protocol forward not work for STP, LLDP, PPTPv2 and E-LMI in EVC

CSCuu85007 split-horizon group communication failure

275Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 310: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S

CSCuo77017 tcam resource has not been released after 32k efp deleted

CSCuv91545 ESP continuous crash on ASR1013 using 03.13.03.S.154-3.S3-ext.bin

CSCuu12008 rework CSCut21885: chunk_destroy memory leak.

CSCut66894 evsi session fail to come up using multicast on all the virtual-access

CSCut91647 GETVPN on IOS-XE: GM incorrectly drops packets due to TBAR failure

CSCuu26053 Incorrect SPD ID in show platform software ipsec fp act flow id

CSCup14212 IOS-XE: IPv6 GETVPN dropped after un-configure then re-configure VRF

CSCty26186 Enhancement request to capture watchdog reset on asr1k

CSCuu72025 Multiple ESP Core on ASR1006

CSCuu97063 Syslog trap support with IPbase license for ASR1k platforms

CSCuv44159 MCP FME: skip jitter calculations for RTP dynamic payload types

CSCus86476 ASR1K NAT ALG ucode crash @ipv4_nat_destroy_addrport_bind

CSCur44103 ASR1k: Port leak while using NAT with interface mappings

CSCut63804 CPP crashed when device in pair became active

CSCuu82192 NatGatekeeper performance degraded

CSCuu27197 ASR1K 1NG: set platform software trace doesn't show IOMD in nightster

CSCut74937 ASR1K PBR VRF Selection not working when source is local router

CSCut09922 cpp_cp traceback from qos cpp_qm_rm_tree_obj_add

CSCut65811 Fair-queue with byte-based qlimit will not display q-depth correctly

CSCuv74763 ASR 1K - SSH Hangs on "Show Logging Count" When SBC Errors Flood Console

CSCut77070 SPA-1xCHOC12/DS0 not supporting Framed E1 connections.

CSCuu03930 RPcrash while booting with 3.13.2IOSXE after SPA-4XCT3/DS0-V2 insertion

CSCuv37192 ASR1001X duplex mismatch when connected with ISR4331

CSCut03205 SPA modules on ASR1K show "missing" under show platform output

CSCuv30194 crash at wccp stats handler

CSCuu09050 asr1001x may crash when unconfiguring large QoS policy

CSCuu92634 ASR1K:FP100: cpp_svr core file seen with uws_wan_xe311 profile

CSCuv05361 cpp_cp_svr crash on AR1K

CSCut99067 ESP crashed desc:CPP Client process failed: cpp_cp

CSCuu60301 ESP100 crash because of hardware interrupt

CSCuv09985 ESP100 crash if interface is going up/down CPPHA-3-FAULT: F0: cpp_ha

CSCuu24757 ASR1k QFP leak with cpp_sp_svr at module FM CACE

CSCuu57229 ESG: Packets are not getting Policed in expected class

CSCut41377 OSPFv3: 2nd interface inbound traffic drop by IN_V6_POST_INPUT_POLICY_FA

CSCut72639 ASR1k CPP crash with IP Options

CSCuu75584 cpp ucode crash related to Nat config changes

CSCur77743 ICMP packets generated by the router are wrongly NATted

Identifier Description

276Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 311: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.4S

All open bugs for this release are available in the Cisco Bug Search Tool.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S, page 277

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S, page 278

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

CSCuv56368 dpss: dynamic class add/delete will cause router malfunction

CSCuv25212 ucode crashes with Fair Queue and FNF export is configured

Identifier Description

Identifier Description

CSCuw41346 ESP packets discarded during re-key with static NAT on ASR1k

CSCup57389 Traffic drops while testing VRF Lite coexistance with SP NAT for LNS

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

CSCup91567 ASR1001-X boot-loops with CMCC crash and XGM MAC10 block errors

CSCuu14810 LNS Setup Rate takes over one hour for 58K sessions (copy of CSCut20591)

CSCuv36911 ASR1K active CGN ESP200 may crash when the CGN standby realoded

CSCuv02537 ASR1K ESP200 reload in a B2B CGN NAT scenario with PAP+BPA

CSCuv82003 Router crash on updating/deleting route-map for static NAT

CSCuw36887 Crash with with Flexible Netflow enabled

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

277Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 312: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.3S

All open bugs for this release are available in the Cisco Bug Search Tool.

Releases 15.4(3)S3

Status Fixed

Identifier Description

CSCut68825 PFRv3: unexpected byte loss reported due to TCP packet flow out of order

CSCut68598 ASR 1000 BFD randomly down at NAT configured interface

CSCut22976 ASR 1000 crash during monitor capture export FTP

CSCus71003 ASR 1002-X - Kernel crash - general protection fault

CSCus70057 Obsolete OTV route entries not deleted from TCAM

CSCut81614 OTV non-AED wrongly replies to ARP request received from internal intf

CSCut50228 ASR 1001-X ping loss with peer ASR1000 at fixed speed 10M

CSCus28745 POS FRR issue with traffic loss around 1 sec instead of 50ms

CSCut34273 ASR 1000, “unknown” process leak under cpp_cp_svr

CSCut41061 ESP crash with monitor capture and debug platform-trace

CSCur69109 VXLAN Entropy Feature Support

CSCut48055 ESP100 periodically crashes with hardware interrupt

CSCut64644 ASR 1000 goes to crash after TCAM messages appearing

CSCut41684 ASR 1000 crash due to CCM_ACK interupt

CSCut92345 XE3.13: Traceback@cpp_ha_oor_svr_throughput_req_msg_hdlr during bootup

CSCut03813 ASR 1000 ucode crash seen at mpls_icmp_create

CSCut83522 Ultra CRPG simulation intermittently broken by CSCut03813

CSCut56117 ASR NAT timeouted out sessions not cleared.

CSCus00801 ASR1002-X CPP crash while processing ICMP is unreachable

CSCus66974 ASR 1000 QFP ESP 200 crashed in a B2B CGN NAT scenario with PAP+BPA

CSCur31425 ASR NAT: PPTP ALG: Incorrect UNNAT of Peer-Call-ID in Outgoing-Call-Reply

Field Name Information

Identifier Description

CSCut82336 ASR1002-X: Handle leap second in ToD IN

CSCut65374 PTP Leap Second: ASR1002-X incorporate leap second addition 6/30/15

CSCut21885 fman_fp_image and cpp_cp_svr memory leak - QFP PfR MP Prefix H.

CSCup57389 Traffic drops while testing VRF Lite coexistance with SP NAT for LNS

CSCut20591 LNS Setup Rate takes over one hour for 58K sessions

278Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 313: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S, page 279

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S, page 281

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

CSCut03205 SPA modules on ASR1002-X show "missing" under show platform output

CSCuu24757 ASR 1000 QFP leak with cpp_sp_svr at module FM CACE

CSCuo51601 ISR 4400 - Traffic incorrectly forwarded through class class-default

Identifier Description

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(3)S2

Status Fixed

Identifier Description

CSCus32530 ASR 1000 Series Routers, ESP crash in internal L4R removal feature routine

CSCuq75633 BFD down sent from ASR5500 is not recognized by ASR 1000, still sending UP

CSCur53837 ASR 1000 Series Routers: SIP can't be re-enabled with 'no hw-module slot X shutdown'

CSCuq43357 ASR 1000 Series Routers - Y1731 Frame Delay Measurement is broken

CSCur70037 ASR 1000 Series Routers-Frames>1518 not dropped by QFP with default MTU config on Gig port

CSCun32287 SW: ASR1002-X ifHCInOctets can decrease before wrapping around

CSCus03277 ASR 1000 Series Routers: Ucode core file seen with EVC L2 Bridging in MCP_DEV

CSCuq70681 Host DB timer corruption causing firewall crashes on ASR 1000 Series Routers

CSCuq31464 IOS-XE 3.13S "fman_fp_image" Kernel memory leak due to “fw-zone-pair”

CSCur09782 XE3.13 ZBFW bulk sync to bypass self-zone sessions

279Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 314: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S

CSCur46422 ASR 1000 Series Routers - Uncomment the POST for 3DES, AES

CSCur27466 WebUI in IOS-XE: evaluation of SSLv3 POODLE vulnerability

CSCuq85115 ASR 1000 Series Routers enable “ip cef accounting non-recursive” cause fman_rp crash

CSCur09918 ASR 1000 Series Routers: RP2 kernel crash

CSCuq88560 ASR CPP crashes due to stuck thread interrupt

CSCur09725 ASR 1000 Series Routers crash when loading Nbar pp version 10.0

CSCuq66758 ASR 1000 Series Routers - CPP ucode crashes on configuring OTV

CSCur60943 Crash on ASR with OTV configured is related to internal timer function

CSCur00747 ROMMON Upgrade rolled back

CSCur35347 ASR1002-X “SBC File Daemon Crash”/High CPU during hard disk log delete

CSCun62047 ASR 1000 Series Routers: Cleanup tracebacks seen while testing CEoP SPA-24CHT1-CE-ATM

CSCup67354 ASR1001-X PLIM errors displayed during boot up

CSCur46656 3.10.4S-UNIX-EXT-SIGNAL: Segmentation fault(11), Process = IOSD ipc task

CSCur54411 Fman fp crashes when VFI name length exceeds 21

CSCur49432 pe bdi interface cannot support ipv6 for the remote CE

CSCuq91599 ASR 1000 Series Routers: WCCP pending-ack in fman-wccp caused standby-fp reload every 1 hr

CSCuq68961 Update IC2M test harness to support AES KW algorithm validation testing

CSCuq36627 WAAS Express: Failed to create SSL session. (no available resources)

CSCul23249 Appnav PT statistic show wrong number after addition and removal of SN

CSCuq67023 SN group isn't getting removed from context in specific scenario

CSCur35923 Output MPLS conditions do not match

CSCur67418 packet-trace: EXP value in MPLS condition packet output might be wrong

CSCuq80765 500 internal server error occurs while updating

CSCur12414 ASR ANAT Hold-Resume IPv4-IPv6 one way audio

CSCur64006 CUBE crash in local_xcode_rtp_xmit similar to CSCui55556

CSCur12550 CUBE hangs SIP sessions when redirect IP2IP is configured

CSCur59627 CUBE has stuck/stale TCP socket opened by SIP TLS application

CSCur59399 CUBE intermittently fails to release SUBSCRIBE

CSCur13285 CUBE: Router crash seen at sip_mpa_free_event_info function

CSCuq85189 Incremental chunk leak seen at ccsip_debug_compute_hdr

CSCur54389 SRTP-RTP Call with HOLD/RESUME disconnected

CSCus13757 TLS socket read and hung DSP issues with Alert followed by FIN

CSCuq35431 DMVPN DHCP functionality is broken when Hub acts as DHCP Server

CSCur24855 Disable GETVPN optimization on 154.3M

CSCuq17828 ASR: Radius Accounting fails when using EDCSA certs

Identifier Description

280Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 315: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.2S

All open bugs for this release are available in the Cisco Bug Search Tool.

CSCur73327 IKEv2 - AAA IPv6 route set local installed in wrong VRF

CSCur23619 IKEv2 reconnect radius accounting stop should mention termination cause

CSCup09848 [Mang] Traceback seen during call connect

CSCuo81912 SSTE: Unable to remove performance-monitor once the interface is deleted

CSCur07571 Processor memory leak with MRCP_Client at cc_api_get_call_active_entry

CSCuq25008 Route/tunnel recursion leads to STACKLOW and crash

CSCur10058 IOS PKI: CRL parsing may fail if HTTP content-length is not specified

CSCuq74176 PKI IOS removed valid CA certificate before expiry date

CSCur46638 XE3.10+ Flapping ATM interface or VC may cause small memory leak

CSCuq77467 ipcstats- Internal inconsistency: counter would go negative

CSCuq99660 Tracebacks observed during FPSO

CSCul79546 GEC pactrac: show fia-traced packet has unexpected unformatted output

CSCur33915 ASR1000 Series Routers QFP crash due to stuck thread

CSCur17355 ASR 1000 Series Routers crash due to SRTP when Fax T38 Protocol is configured

CSCur44075 AC ICE+ ver <= 4.0 Client unable to connect to XE SSL Headend {CSR 1K}

CSCun89616 IOS does not properly respond to TLS 1.2 client hellos

CSCur78846 "%Error: this command line only supports VoIP and POTs dial-peer"

CSCuq99173 Conditions experienced parsing H225 packet may cause crash.

CSCuq23360 H323 GW plays ring wcvgsback after H225 connect for PRI calls

CSCur21757 Memory leak *Dead* = AFW_application_process and QSIG-rose

CSCur16675 VXML gateway Crash @ms_handle_stream_timer

CSCus02640 SPA-DSP shows "out of service" after an IOS upgrade

CSCur12978 Multicast MOH stops working after one call

CSCuq88060 "no transport udp" is getting removed from "sip-ua" after reloading ASR

CSCur19344 Cannot start timer on "CCSIP_SPI_CONTROL" process

CSCuq54871 Crash seen when forwarding of SIP MWI as qsig MWI. 15.2M is NOT affected

CSCur31540 MMOH Over SIP CUBE does not work when there is an H323 call on hold

CSCur94272 sip_get_sipspi_message memory leak in CCSIP_SPI_CONTROL

CSCus00058 Invalid IP address is accepted as MTA send server

Identifier Description

281Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 316: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S, page 282

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S, page 284

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Identifier Description

CSCus32530 ASR 1000 Series Routers ESP crash in internal L4R removal feature routine

CSCuq67798 XE3.13 Mcast Service Reflection: IpFormatErr packet drop seen in KP

CSCuo77017 TCAM resource has not been released after 32K EFP is deleted

CSCus22393 ASR 1001 Routers- fman_fp_image crash in DMVPN environment

CSCus13106 Error in generating keys: no available resources

CSCuj55363 lispgetVpn traffic is dropped when getvpn profile is applied in WAN interface

CSCus15668 ASR 1000 Series Routers/03.07.06 forwarding delay has increased drastically with NAT

CSCup57389 Traffic drops while testing VRF Lite coexistence with SP NAT for LNS

CSCur32505 ASR100x SBC ucode crashes @ dlist_add_obj_to_rear

CSCus17320 SBC crash

CSCur48133 ATM 3xOC3 SPA failed to program with IFCFG_CMD_TIMEOUT error

CSCus09942 ASR 1000 Series Routers Crash on ipv4_nat_ha_upd_to

CSCus00801 ASR1002-X Router CPP crash while processing ICMP is unreachable

CSCus10145 Forwarding Plane reloaded with scaled HTTP traffic running

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(2)S2

Status Fixed

282Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 317: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

Identifier Description

CSCur07193 ELC-40:Popinac Crash after CSCuq82536 commit when configured Portchannel

CSCuq05033 XE314: Memory Leak @ Exec

CSCup51926 NAT door creation may be possible getting failed

CSCuq97925 cpp_cdm: CPP crashed after oir CLC

CSCup48518 FTP ALG create incomplete token in case of EPSV passive

CSCup34928 RP crash when config and unconfig a service continuously

CSCuq86513 ASR 1k: Crash in packet classification

CSCuq14700 TDL message buffers memory leak

CSCuq63782 ATM VCs flap when under a large amount of traffic

CSCup88496 630748069 Serial interface MTU issue on ASR1006

CSCuj79520 PAP global address usage growing consistenly over time.

CSCup98776 ASR1K outbund SA creation failure & ESP not processing further requests

CSCun41391 FP crash on ASR1k after upgrade from 3.7.2S to 3.11.0S

CSCuq02069 CUBE-SP HA Calls Fail/High CPU if CRYPTO PKI command entered on Standby

CSCup32129 Auto-rp announce packets replication

CSCur00762 ASR1k - incorrect traffic classification after HW TCAM is exhausted

CSCul48593 Active FP crashed due to stuck threads @ipv4_nat_bpa_free_port

CSCuo61455 Crash in NAT with ALG enabled

CSCuq87715 multicast l2 head rewite via ppp half bridge interface

CSCuo61982 new platform specific command for uRPF loose sdrop counter increasing

CSCuq49527 ASR1k IOSD crash while configuring IPSLA with Y1731

CSCup54891 CPP crash due to race condition while release object

CSCuq05276 ASR1K CPP crashes in ipv4_nat_esp_remove_conn

CSCuq84284 IOS-XE crash while snmp polling cbQosMatchStmtCfgEntry with NBAR

CSCuq82536 ELC-40: Memory Leak when configuring MAC Filters on Port Channels

CSCuo99185 Multiple IOS-XE CPP Ucode crashes due to invalid static route

CSCuq91488 not punt BFD packet to RP even BFD state changed from DOWN to UP

CSCun92244 active router creates binds with same gaddr, gport for >1 lport

CSCuq24971 ASR1k ucode crash with pa_get_state on using aggregate port-channel

CSCuo97597 ISSU/MDR XE313->mcp-dev: %CMRP-3-SIP_MDR_FAIL:SIP MDR restart timed out

CSCuq09004 RP crashed with cpp_cp_svr crash in cpp_qm_event_insert_leaf_node

CSCuq90913 OTV: CPP ucode crash in l2bd_forward on BD cond. debug enable

CSCuq27271 fair-queue with time or byte based queue-limit encounters ucode crash

CSCuq54655 ASR1K: Ucode@PAR1_CSR32_PAR1_ERR_LEAF_INT__INT_PAR1_STEM_CB_SEL_INV_ERR

283Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 318: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13.1S

All open bugs for this release are available in the Cisco Bug Search Tool.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S, page 284

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S, page 324

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S.

• CSCto07376

CSCuq13494 ASR1k-IPv6 Egress ACL Intermittently miss classifies and Drops ESP packets

CSCup5365 ASR1k qinq subinterface stats do not work on Port Channel

Identifier Description

Identifier Description

CSCur24107 ASR crash at cpp_mutex_destroy

CSCuq26372 Tracebacks seen @ cpp_exmem_chunk_destroy in latest XE313 throttle

CSCup57389 Traffic drops while testing VRF Lite coexistance with SP NAT for LNS

CSCur09918 ASR1K: RP2 kernel crash

CSCuq67798 XE313 Mcast Service Reflection:IpFormatErr packet drop seen in KP

CSCuq43357 ASR1K - Y1731 Frame Delay Measurement broken

CSCup66865 hub MC BR channel status fail to sync

CSCur32505 ASR100x SBC ucode crashes @ dlist_add_obj_to_rear

CSCum80911 XE312: ESP100 TCAM limit exceeded: HW TCAM cannot hold with 2k tunnels

CSCuj55363 lispgetVpn traffic is dropped when getvpn profile is applied in wan intf

CSCuo77017 tcam resource has not been released after 32k efp deleted

CSCur33915 ASR1000 QFP crash due to stuck thread

CSCuq64148 dHuge pkt drops with CRC errors when ASR1001x connected to a 3925

284Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 319: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: The device reload when we grant certificates. crypto pki server <> grant all

Conditions: This symptom is observed when configured for crypto

Workaround: There is no workaround.

• CSCtz50465

Symptom: ISSU between incompatible images goes through.

Conditions: This symptom occurs for images between ISSU-break.

Workaround: There is no workaround.

• CSCtz59512

Symptom: Call threshold counter on an interface is not cleared. Seen in the output of "show call threshold status" command.

Conditions: IOS voice gateway with interfaces enabled to use the Call Threshold feature. Call is established over an interface and routing changes cause the disconnect message to be received on a different interface on the gateway.

Workaround: Reload the gateway to clear it permanently. or If not over a gigabitethernet interface, issue the "clear call threshold interface <interfacetype> <port>" command to clear the call.

• CSCtz97771

Symptom: During regular operations, a Cisco router running Cisco IOS release 12.4(24)T and possibly other releases experiences a crash. The crash info will report the following: %SYS-2-FREEFREE: Attempted to free unassigned memory at 4A001C2C, alloc 4180794C, dealloc 417616B0, %SYS-6-BLKINFO: Attempt to free a block that is in use blk 4A001BFC, words 134, alloc 4180794C, Free, dealloc 417616B0, rfcnt 0,

Conditions: This symptom is not observed under any specific conditions.

Workaround: There is no workaround.

• CSCua58402

Symptom: On recieving 200 OK with PAI, the connected number sent on the ISDN leg is the original called number and not the phone number answering the call.

Conditions: When remote-party-id is dislabed under sip-ua

Workaround: Enable remote-party-id under sip-ua

• CSCub72573

Symptom: encpas counter in "show crypto ipsec sa" may occasionly show incorrect value

Conditions: IPSec tunnels configured and used on the device

Workaround: There is no workaround

• CSCue23898

Symptom: A Cisco router running Cisco IOS Release 15.3(1)T may crash with a bus error immediately after issuing the 'write memory' command. Example: 14:44:33 CST Thu Feb 14 2013: TLB (load or instruction fetch) exception, CPU signal 10, PC = 0x228B2C70

Conditions: This symptom occurs while updating the router's running configuration with the 'write memory' command. It has been seen while updating various different commands such as, those under 'call-manager-fallback' ip route statements interface sub-commands

Workaround: There is no workaround.

• CSCue76929

285Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 320: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: enhance crypto-engine packet drop cause

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCuf44203

Symptom: AFW memory corruption

Conditions: AFW process crashes, when Request URI or other header string is of size greater than 1k

Workaround: N/A AFW process crashes, when string retrieved from container is of size greater than 1k. Mempool is created with 1k chunk size. Refer to CSCue97118.The issue is resolved in sip stack for this scenario. However we may hit this issue in AFW for some other corner cases (stress tests).

• CSCug72872

Symptom: Router outputting %SCHED-3-THRASHING: Process thrashing on watched queue 'Crypto IPC'. -Process= "Crypto IKMP", ipl= 6, pid= 360 followed by a traceback

Conditions: Was observed both on ASR and ISR during an OCSP revocation check for a revoked certificate during an GDOI registration. Might affect regular ISAKMP connections too.

Workaround: enabling path-mtu-discovery on the router with : ip tcp path-mtu-discovery has given good results.

• CSCuh07579

Symptom: An ISR/ISRG2/ASR router configured in a DMVPN setup may fail to create SAs during a rekey or new tunnel establishment.

Conditions: This symptom is observed when the router is configured as a DMVPN hub or spoke.

Workaround: There are no known workarounds. Try reloading the router to recover from the failure state. (Please note: the router may still run into this condition after a reload).

• CSCuh87195

Symptom: A crash is seen on a Cisco router.

Conditions: The device crashes with gw-accounting and call-history configured. The exact conditions are still being investigated.

Workaround: Perform the following workaround:

1) Completely remove gw-accounting

2) Disable call-history using the following commands: gw-accounting file no acct-template callhistory-detail

• CSCuh89946

Symptom: Customer may see the following error messages: %SYS-3-INVMEMINT: Invalid memory action (malloc) at interrupt level %SYS-2-MALLOCFAIL: Memory allocation of 80 bytes failed from0x5CEEBCC, alignment 0 Pool: Processor Free: 196745624 Cause: Interrupt level allocation Alternate Pool: None Free: 0 Cause: Interrupt level allocation -Process= "<interrupt level>", ipl= 3, pid= 147 %IPMCAST_RPF-3-INTERNAL_ERROR: An internal error has occured while obtaining RPF information (No memory available to create pathinfo for RPF lookup)

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCuh95602

286Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 321: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: Self bound traffic dropped by firewall

Conditions: NAT64 is configured and traffic is sent from IPv6 client (in) to IPv4 egress interface of UUT (self)

Workaround: There is no workaround.

• CSCui21549

Symptom: When CUBE received malformed form header it crashed

Conditions: Long form header cause cube to crash

Workaround: There is no workaround.

• CSCui22204

Symptom: Below mentioned internal IEC error seen in CUBE logs. Jul 22 14:50:28.377 IST: %VOICE_IEC-3-GW: CCAPI: Internal Error (Invalid arguments): IEC=1.1.180.1.9.6 on callID -1 CUBE#sh voice iec description 1.1.180.1.9.6 IEC Version: 1 Entity: 1 (Gateway) Category: 180 (Software Error) Subsystem: 1 (CCAPI) Error: 9 (Invalid arguments) Diagnostic Code: 6

Conditions: This IEC error would be seen while processing incoming SIP REFER for call transfer along with local consumption of REFER ('no supplementary-service sip refer' CLI) i.e CUBE is consuming REFER locally and generating INVITE to transfer target.

Workaround: There is no workaround.

• CSCui48606

Symptom: 3925 voice xml gateway crashed

Conditions: vxml configured: vxml tree memory 500 vxml version 2.0

Workaround: There is no workaround.

• CSCui59927

Symptom: A memory leak is observed on a Cisco device due to IPSec which causes free memory to deplete to an extent where the device becomes unreachable.

Conditions: This symptom occurs when IPSec scaling is high.

Workaround: Reduce scaling of IPSec sessions.

• CSCui70561

Symptom: Low performance for AVC 2.0 on ESP100 setup

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCui75238

Symptom: WIll see the memleaks when trying to use https application

Conditions: Leaks will seen only when trying to use https applications like webauth, web_exec etc over secure communication (https)

Workaround: Disable https(secure communication) and use http for http request.

• CSCui80379

Symptom: Can not update audio file using the "audio-prompt load" command.

Conditions: Using the B-ACD TCL scripts and loading the audio files from the local flash.

Workaround: Reload router.

• CSCui81336

287Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 322: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: After reload of DMVPN spoke fails MM-Key Exchange. Hub will show CRYPTO-4-IKMP_BAD_MESSAGE: IKE message from x.x.x.x failed its sanity check or is malformed

Conditions: 1921 IOS router Use the ; character at the beginning of the master encryption key. i.e. key config-key password-encryption <enter> new key:;cisco123 confirm key:;cisco123

Workaround: Change the key so that ; is not the first character. #key config-key password-encrypt Old key:;cisco123 New key:cisco123 Confirm key:cisco123

• CSCui95762

Symptom: EoMPLS performance downgrade

Conditions: On RP1/ESP10

Workaround: There is no workaround.

• CSCuj12588

Symptom: show crypto gdoi group <group-name> gm pubkey shows all groups instead of the group indicated in the command.

Conditions: GM has more than 1 group configured.

Workaround: There is no workaround.

• CSCuj19293

Symptom: Bindings are present after unconfiguring Static NAT mappings

Conditions: static NAT mappings with route-map

Workaround: There is no workaround.

• CSCuj20520

Symptom: GetVPN GM gdoi policy installation fails.

Conditions: This symptom is observed after reboot.

Workaround: Issue the command clear crypto gdoi after the reboot.

• CSCuj28444

Symptom: ASR1K:fn_crl_checking: Failed to clear gms database from KS.

Conditions: ASR1K:fn_crl_checking: Failed to clear gms database from KS.

Workaround: There is no workaround.

• CSCuj85340

Symptom: Enhancement request to improve datapath IPSEC debugs in XE3.11 and above

Conditions: Use of datapath IPSEC debugs

Workaround: There is no workaround.

• CSCuj87392

Symptom: IPSEC event-tracer messages can't be used for troubleshooting since most of them have no contextual information avalaible [ peer ip or sesssion ID]

Conditions: Troubleshooting ikev2 networks by leveraging ipsec event-trace

Workaround: Uses ipsec debugs instead when ever it's possible

• CSCuj91923

288Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 323: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: After adding SCCP/DSPFarm configuration and reloading the router, the NMS device reports that a configuration change has occurred because the config is displayed in a different order. This causes false alarms on the NMS.

Conditions: -IOS router with SCCP and DSPFarm configurations -Tested on 15.1(4)M and later -Other IOS versions are affected too.

Workaround: There is no workaround.

• CSCuj92813

Symptom: instead of triggering modem passthrough in srst mode modem relay is been triggered

Conditions: ios gateway runninbg 151-4M6 and modem passthrough configured for fax

Workaround: Remove the V.150.1 Modem relay configuration at VG2xx by configuring "no stcapp register capability <port>" and restart the SRST and VG2xx so that SRST does not remember the earlier MR capability of VG and it gets the fresh VG device capability which would be Modem paasthru with ?no stcapp register capability <port> ? configuration at VG.

• CSCuj94274

Symptom: Crypto Routes not getting populated under proper heading

Conditions: crypto route must get populated in proper vrf headings

Workaround: There is no workaround.

• CSCuj96595

Symptom: CUBE receives incoming SIP reinvite (due to SIP session refresh) and changes SDP version although there is no change in SDP attributes SDP version changes from 8863 to 8864

Conditions: Setup where this issue has been seen Rightfax - CUCM -- CUBE -- SIP SP

Workaround: There is no workaround.

• CSCuj97103

Symptom: Hung FPI sessions

Conditions: When doing multiple call transfers with REFER

Workaround: There is no workaround.

• CSCuj99605

Symptom: When a long very long Refer-To header is received, router crashes

Conditions: Long Refer-To header

Workaround: There is no workaround.

• CSCul02583

Symptom: Payload verification failed for fax calls not received fax calls

Conditions: TGW is sending re INVITE due to not receiving fax

Workaround: Do not use trancoded call.

• CSCul06522

Symptom: IOS routers can sometimes create duplicate IPSec SA pairs. This decreases platform scalability. Traffic flow is not affected.

Conditions: This was observed in IOS 15.2(4)M4, 15.2(4)M5, 15.3(3)M1. Other versions can be affected as well.

Workaround: There is no workaround.

289Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 324: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCul17089

Symptom: Video call legs are not displayed when video call is active

Conditions: Issue is seen when 2 Phones are in a video call over SIP Trunk

Workaround: There is no workaround.

• CSCul19668

Symptom: Crypto Map Leak seen

Conditions: Bring up a crypto session and delete it

Workaround: There is no workaround.

• CSCul33043

Symptom: Unable to get a DSP resources for a Transcoded call.

Conditions: During mid-call when there is a change in codec or DTMF or Hold/Resume with SRTP-RTP call then this issue will be seen. This is applicable only with LTI transcoding.

Workaround: There is no workaround.

• CSCul41263

Symptom: Midcall REINVITE is passed through when the UCM side puts a call on hold from a Video capable device.

Conditions: A video capable Device connects an audio only call via the ASR CUBE where the UCM facing dial-peers have " voice-class sip midcall-signaling passthru media-change" configured.

Workaround: If the calls routing via UCM to ASR CUBE does NOT require video capabilities, modify the SIP Trunk's Region settings on the UCM where it doesn't allow any video Bandwidth so the capabilities will never be transmitted to ASR.

• CSCul46066

Symptom: Hung Calls with SIP SPI with Refer Consume Load

Conditions: Description: observing hung calls with Refer Consume CVP load test. Hung calls observed with SIP SPI Steps to reproduce: 1. Configure max connection with 3 Refer to Dial-peer & outbound dial-peer towards CVP. 2. Run Load with 1000 calls for few hours. CPS: 10 CHT: 100 secs Total Number of active calls : 750 Issue observed with max-conn with multiple dial-peers

Workaround: Use dial-peers without max-conn

• CSCul48967

Symptom: After switch over to standby , IF-MIB count for cvCallVolMediaOutgoingCalls OID is less.

Conditions: After Switchover

Workaround: There is no workaround.

• CSCul57003

Symptom: ELC MDR:%MDR-3-RESTART_FAILED: SIP1: mdr_cc_client.sh: Failed

Conditions: When one of the ELC in disable state

Workaround: There is no workaround.

• CSCul65261

Symptom: write bus access failed with fpd upgrade

290Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 325: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Conditions: FPD bundled upgrade

Workaround: There is no workaround.

• CSCul68429

Symptom: FP crash while testing PPoE sessions

Conditions: Applying nat settings to CGN mode

Workaround: There is no workaround.

• CSCul69060

Symptom: On configuring the telephony-service for the first time onto the router, IP phones do not register despite of the correct configuration on the voice gateway. We have also seen where after a restart the same issue occurs where the IP phones fail to restart however the gateway is configured correctly. This can also happen with SRST fallback using port 2000.

Conditions: Configuring Telephony-service for the first time on the router or after a router restart. Device tested with a 2901 and 2851 running IOS version 15.1(4)M6. IP phones can be any IP phone where they are trying to register on port 2000

Workaround: 1. Under 'telephony-service' run a shut/no shut and check that the port has been opened. OR 2. under "Telephony-service" run "no ip address .. " and then re-configure the same ip address again. run 'show control-plane host open-ports' and check for port 2000 and the IP of CME.

• CSCul69623

Symptom: A PKI client (ASR router) fails auto renewal of the certificate if 'auto-enroll regenerate' is configured in the trustpoint.

Conditions: A router configured with a trustpoint that has regenerate enabled and a 'usage' key being used for the trustpoint.

Workaround: Remove the regenerate keyword.

• CSCul69990

Symptom: when flapping mpls mldp with scale v4 setup, the lspvif interface disappears in "show ip mfib" output, and packets are dropped.

Conditions: mldp flapping.

Workaround: There is no workaround.

• CSCul70801

Symptom: BADPAIR message generated .

Conditions: During DTMF interwork change

Workaround: There is no workaround.

• CSCul72683

Symptom: Callers receiving general voice-mail greeting when forwarded to CUE voice-mail

Conditions: If one "voice register dn" is forward all, or, forward unregistered to another voice register DN that is also forward all or forward unregistered to CUE voice-mail, there is no Diversion header in the SIP INVITE to CUE. This results in CUE returning the general voice-mail greeting.

Workaround: There is no workaround.

• CSCul77933

Symptom: The Shadow timer is not seen on the standby router. Even if we make the standby router active, the timer does not start.

291Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 326: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Conditions: Two routers in HSRP configured as CA servers in redundancy with auto rollover configured as described in http://www.cisco.com/en/US/customer/prod/collateral/iosswrel/ps6537/ps6586/ps6638/ps6664/configuration_guide__c07_621400.html

Workaround: In case the Standby router becomes Active, Auto-rollover would not work as the Shadow certificate generation timer is not seen on it. In such a case, we may manually rollover the CA server on the Standby router (now Active) to generate the Shadow CA certificate and the Shadow keypair. To manually rollover, run the command: "crypto pki server server_name rollover".

• CSCul81353

Symptom: ASR1006 with RP2 running ES version based of Version 15.3(1)S crash with Segmentation Fault

Conditions: This symptom is observed after two weeks of uptime and during normal load condition.

Workaround: Workaround is to reboot the box to recover from the situation.

• CSCul81777

Symptom: On an ASR1000 series router, the ESP can crash when packet trace is enabled.

Conditions: Conditional debug and packet-trace is enabled.

Workaround: There is no workaround.

• CSCul83474

Symptom: ESP crash

Conditions: Seen when executing "no ip cef load-sharing algorithm include-ports destination" with high throughput about 10Gbps

Workaround: There is no workaround.

• CSCul85526

Symptom: When we add multiple ports on the crypto acl on the primary KS the GM gets the acl without the ports. No syslog is generated on KS1 to show it does not support them and a new TEK is generated.

Conditions: Happens at all times.

Workaround: This is not a supported feature and it should not be used.

• CSCul86249

Symptom:For MPLSoDMVPN/FlexVPN feature specific G-ACh (Generic associated channel) type number need to be allocated by IETF for NHRP. Currently an experimental number is used. A CLI will be provided to configure the G-ACh type number so that the same can be configured on the old routers when we have specific G-ACh type number allocated for NHRP. refer RFC5586 MPLS Generic Associated Channel

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCul86992

Symptom: 894X show UTC time instead of configured olson timezone. 894X SCCP phones uses tzdatacsv.csv and not tzupdater.jar as Olson timezone database but on configuring Olson time-zone CME updates the 894X phone configuration file with tzupdater.jar instead of tzdatacsv.csv. Sample erroneous configuration file for 894X: <tzdata> <tzolsonversion>2013g</tzolsonversion>

292Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 327: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

<tzupdater>tzupdater.jar</tzupdater> </tzdata> <devicePool> <dateTimeSetting> <dateTemplate>M/D/YA</dateTemplate> <timeZone>Mexico Standard/Daylight Time</timeZone> <olsonTimeZone>Europe/Prague</olsonTimeZone> </dateTimeSetting> .

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCul88528

Symptom: On a GETVPN KS (Key Server), if there is a registration interface configured for the GDOI group, then GM registration to that group will fail with the following log message reported on the KS: %GDOI-1-UNREGISTERED_INTERFACE: Group getvpn-grp received registration from unregistered interface

Conditions: A registration interface is configured on the Key Server.

Workaround: Remove the registration interface configuration from the Key Server.

• CSCul89581

Symptom: Supervisor not able to monitor Agent conversation Remotely where CCE-CVP at higher version and RSM at 9.1(1)

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCul89998

Symptom: c3900 as RSVP agent crashed "%SYS-6-STACKLOW: Stack for process SCCP Application running low, 0/12000"

Conditions: IOS Image: 153-3.M1 CUCM Image: 10.0.1.10000-24 C3900 router configured as RSVP-Agent for CUCM feature e2eRSVP crashed under extended traffic load (3 days). The traffic was running at a rate of 250 concurrent RSVP sessions. Topology: Phone-A----------(Cluster-1)----------- SIP Trunk ------------(Cluster-2)--------Phone-B | | | | | sccp sccp | | | | | RTP------------(RSVP-Agent1)---------- IP/RSVP---------(RSVP-Agent-2)---- rtp Cluster-1 CUCM controls rsvp-agent-1 [c3800] Cluster-2 CUCM controls rsvp-agent-2 [c3900] --> Calls are made between Cluster-1 and Cluster-2 in both directions. Type of calls: Basic, and supplementary Services (Hold-resume, Transfers, Conferences)

Workaround: There is no workaround..

• CSCul93169

Symptom: Handling and Printing Multiple subscribe messages , CUBE crashed .

Conditions: Handling and Printing Multiple subscribe messages

Workaround: Don't Enable Debugs

• CSCul94606

Symptom: Standby CUBE crashed while handling Agent transfer.

Conditions: This symptom is observed when an agent transfers the call to another agent.

Workaround: There is no workaround.

• CSCul96190

Symptom: MDR RECONCILE: Failed to complete WARM sync

Conditions: During ELC MDR

293Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 328: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCul96421

Symptom: Outbound calls over SIP trunk to provider fails.

Conditions: SIP IP phone (99xx) ------> CME ---------> SIP Trunk --------> ITSP Cisco IOS - 15.3(3)M and 15.4(1)T versions.

Workaround: Downgrade Cisco IOS version to 15.2(4)M.

• CSCul96470

Symptom: CUBE crashed doing a "per-call shut".

Conditions: This symptom is observed when you configure CUBE for PCD buffer logging.

Workaround: There is no workaround.

• CSCul96947

Symptom: Traceback appears on standby RP during SPA OIR

Conditions: T1 channels are configured. Then a random t1 channel is deleted and spa soft oir is done.

Workaround: There is no workaround.

• CSCul97893

Symptom: In an IOS PKI HA setup, when the CA server is deleted on the Active router, the Standby router also prompts for confirmation, if logged in through Console. The following prompt is observed: % CA certificate, Keypair, CRL and database files will be deleted. Do you wish to continue? [yes/no]: Ideally, this should be seen on the Active router only. If the administrator is logged in through SSH or TELNET, the prompt is not seen and the CA server is not deleted on the Standby router.

Conditions: Two routers in HSRP (running 15.4(1)T or higher)configured as CA servers in redundancy as described in http://www.cisco.com/en/US/customer/prod/collateral/iosswrel/ps6537/ps6586/ps6638/ps6664/configuration_guide__c07_621400.html and the CA server is deleted on the Active router.

Workaround: When deleting the CA server on the active router, log on to the standby router as well, and answer 'yes' on the Standby router.

• CSCul98774

Symptom: ASR1K DSP MIB "cdspCardObjects" are not working after the RP2 switchover happens for various reasons.

Conditions: When RP switch over happens.

Workaround: workaround is to do a hw-module stop/start on the SPA-DSP cards .

• CSCum00348

Symptom: Incorrect primary and Secondary Dial-tone

Conditions: Cptone DE is configured under FXS ports

Workaround: Step1: Router# test voice tone DE dialtone 1 425 0 -200 -200 -240 0 0 0 200 300 200 300 200 800 0 0 Step2: Router# test voice tone DE 2nd_dialtone 1 425 0 -200 -200 -240 0 0 0 200 300 200 300 200 800 0 0 Step3: shut the voice-port Step4: Unshut the voice port

• CSCum00792

Symptom: Hung FPI session will be seen after agent answer and disconnect .

Conditions: Hung FPI session will be seen after agent answer and disconnect .

294Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 329: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCum01936

Symptom: IKEv2 SA does not come UP

Conditions: IKEv2 configured with Virtual-Template

Workaround: configure tunnel mode auto

• CSCum03513

Symptom: 3905 SIP show UTC time instead of configured olson timezone. 3905 SIP phones uses tzdatacsv.csv and not tzupdater.jar as Olson timezone database but on configuring Olson time-zone CME updates the SIP 3905 configuration file with tzupdater.jar instead of tzdatacsv.csv.

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCum03790

Symptom: Immediately after the 200 OK is sent in response to the Re-Invite the ITSP sends a BYE as they expected the origin version id to increment. The lack of incrementation cause the call to be torn down by the ITSP.

Conditions: This problem was observed in the following scenarios : - Switchover from voice to fax - Change in codec for voice calls SDP content-length size is different in initial outgoing Invite to perform call setup than it is in 200 OK response to an inbound Re-Invite which causes the origin (o=) version in the SDP not to increment. CUBE however sees the content-length sizes as the same size. Previous SDP content-length was 250, 399 was the current SDP content-length: SIP/Info/sipSPICheckForSDPModification: prev send SDP size = 399, curr send SDP size = 399 SIP/Info/sipSPICheckForSDPModification: prev send SDP and curr send SDP are same /SIP/Info/sipSPIHandleSDPOwnerVersionIDChange: SDP owner_version ID not incremented ..

Workaround: There is no workaround.

• CSCum04304

Symptom: Path-confirmation check failed on CUBE in DTMF_DO-EO scenarios

Conditions: Configure CUBE for dynamic pass through - DTMF in DO-EO scenario

Workaround: There is no workaround.

• CSCum05299

Symptom: SIP phones not able to dial out when registered to CME 10.0 with IOS version 15.3(3)M1 With output "Ip Trust List Authentication failed for Incoming Request, method = INVITE" when debug ccsip all enabled in the router.

Conditions: Voice router running in IOS version 15.3(3)M1, with IP address trust list enabled (default configuration) under voice service voip

Workaround: *) Disable "ip address trusted authenticate" *) Add SIP phone IP address to IP trust list. *) Downgrade the IOS version

• CSCum06516

Symptom: %CMCC-3-SIP_MDR_FAIL: SIP0: because ESI verification failed

Conditions: During ELC MDR

Workaround: There is no workaround.

• CSCum08864

295Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 330: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: When there is a policy change (either KS or GM) in Pre-PAL, the Cisco ASR 1000 router registers again. This is because in TCAM, SA cannot be inserted or moved. An ACL merge was done in the ACE driver, and reregistration was triggered from there. Post-PAL, ACL merge intelligence is moved to a control plane. ACL is changed and change flow priority occurs. The SA is inserted with second priority which cannot be handled by the device.

Conditions: This symptom occurs when an ACL changes on the KS or the GM.

Workaround: There are four workarounds: 1. Manually clear GetVPN registration on the Cisco ASR 1000 router using <CmdBold>clear crypto gdoi<noCmdBold>. 2. If permit ACL is appended to KS ACL or if ACL is removed from the bottom of KS ACL, then there is no flow priority change, and no issue is observed. The limitation with this workaround is that the group configuration on KS has only one SA. If "deny ACL" is added, a few packet drops are observed. 3. EEM script which monitors Rekey Syslog and clears the registration. This is the same as Workaround 1 but is automatically done. The disadvantage of this workaround is that Rekey syslog is same during normal rekey and policy change rekey. Hence reregistration occurs through normal rekey too. Sample EEM script: event manager applet GM_RE_REG event syslog occurs 1 pattern ".*GM_RECV_REKEY.*" action 10 syslog priority warnings msg "EEM trigger workaround for CSCum08864" action 20 cli command "enable" action 30 cli command "clear cry gdoi" pattern "Are you sure you want to proceed" action 40 cli command "yes" 4. The ACL is swapped on KS with the new ACL and Rekey is done. The Cisco ASR 1000 GM will reregister. A small packet drop during reregistration is observed.

• CSCum15066

Symptom: Memory leak observed in CUBE for BWCAC call-flow

Conditions: This issue is observed when initial INVITE is rejected by CUBE due to BWCAC criterion.

Workaround: Not known at this point of time.

• CSCum15364

Symptom: Router is getting crashed with basic call while MP4A-LATM codec is used.

Conditions: This symptom is observed when MP4A-LATM codec is used in the dial-peers.

Workaround: There is no workaround.

• CSCum15704

Symptom: ipsec sas are not coming up for ezvpn split acl

Conditions: ezvpn with split interface ipsec sas do not come up

Workaround: There is no workaround.

• CSCum18017

Symptom: FP Crashed for RTP-SRTP Call

Conditions: When RTP-SRTP call initiated .

Workaround: There is no workaround.

• CSCum18033

Symptom: CUBE crashed when debugs enabled for srtp passthrough call

Conditions: With service log backtrace configured

Workaround: There is no workaround.

• CSCum20746

296Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 331: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: Key Server (KS) fails to send rekey & Group Member (GM) fails to process rekey when "clear crypto gdoi ks members" is executed on the KS after changing the IPsec ACL with Suite-B configured on the KS. Secondary KSs don't show any TEKs after changing crypto ACL.

Conditions: Key Server (KS) has Suite-B configured with a certain IPsec ACL. Change the IPsec ACL on the KS so that the new ACL has no overlapping entries as the old ACL and issue "clear crypto gdoi ks members" on the Primary KS.

Workaround: Issue "clear crypto gdoi" on the GMs to force their re-registration.

• CSCum22661

Symptom: When a Peer sends a certificate with no CDP, the IOS PKI client will try to retrieve the CRL through SCEP [GetCRL] directed to CA, based on enrollment url value, however in case of enrollment profile [with a valid enrollment url], it complains that the enrollment url is not present

Conditions: IOS PKI Client configured with an Enrollment profile, which has enrollment url and authentication url to communicate with the CA using SCEP.

Workaround: a) configure the enrollment URL under the trustpoint directly instead of using it through enrollment profile or b) configure the CA to embed a CDP in the client certificates [an HTTP Server or SCEP URL]. Peer will need to be reenrolled afresh. SCEP URL looks like: crypto pki server IOS-CA cdp-url http://10.106.72.139/cgi-bin/pkiclient.exe?operation=GetCRL [Note: Before typing in ? next to pkiclient.exe in the URL above, type Ctrl V]

• CSCum23619

Symptom: No counter to show the ATM VC IFM call out and response

Conditions: ATM VC IFM call

Workaround: There is no workaround.

• CSCum24009

Symptom: Transfer scenarios fail with ANAT and VCC (No DSP) configured

Conditions: Issue is observed for DODO

Workaround: Apply DOEO configurations

• CSCum26501

Symptom: cefcFRURemoved traps are not generating for different SPA Cards.

Conditions: While testing hard OIR on CISCO-ENTITY-FRU-CONTROL-MIB

Workaround: There is no workaround.

• CSCum28569

Symptom: Called name not updated to the ephone

Conditions: Call Flow: CME -> INVITE CME <- 100 Trying CME <- 183 with no called name in RPID CME <- 183 with called name in RPID In such a scenario called name in not updated by CME.

Workaround: There is no workaround.

• CSCum30814

Symptom: When SIP Gateway sends INVITE to CVP, no response is received and call fails. CVP logs report the following error: CVP_9_0_SIP-3-SIP_CALL_ERROR Exception in invitation: com.dynamicsoft.DsLibs.DsSipParser.DsSipParserException: No closing boundary found. for INVITE:

Conditions: This symptom is observed in the call Flow: PRI - > Ingress GW >> SIP >> CVP IOS: 15.1.4M3 CVP: 9.0.1 SIP Profiles applied to outbound dial-peer or globally with SDP header rule manipulation, regardless of whether the rule is applicable to the message or not. "signaling forward

297Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 332: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

unconditional" configured under 'voice service voip' or inside the dial-peer SIP Gateway sends malformed SIP INVITE when "Content-Type: application/x-q931" has to be tunneled. The "--uniqueBoundary" is not properly closed causing interoperability issues with CVP. --uniqueBoundary Content-Type: application/x-q931 Content-Disposition: signal;handling=optional Content-Length: 48 ^B^AI^E^D^B^@^P^X^Da^@^C^B ^B.........................................................................................................................................................................................................................................................................................................................

Workaround: Perform the following workaround: 1. Configure a 'dummy' SIP Profile with no rules and apply it to the outbound dial-peer: voice class sip-profiles 3 ! dial-peer voice x voice voice-class sip profiles 3 2. In non-CVP call flows or if Courtesy CallBack (CCB) is not required the following can be configured under voice service voip or dial-peer: - signaling forward conditional - signaling forward none 3. Remove SIP Profiles completely from the call flow (dial-peer and Globally).

• CSCum34515

Symptom: QFP crash

Conditions: SIP ALG traffic with FW and NAT

Workaround: There is no workaround.

• CSCum37116

Symptom: Older version v1.8 is currently bundled with FPD for Jacaranda

Conditions: New version v1.9 is available

Workaround: There is no workaround.

• CSCum37662

Symptom: MAC Accouting Reconstruction of AVL tree takes long time

Conditions: Triggered on scaled MAC accouting during MDR replay

Workaround: There is no workaround.

• CSCum38420

Symptom: Run the refer consume case without TCL for 4 hours (10 cps & 2 mins hold time), then stop calls, wait for 15 mins to call gets cleared. Afer that observed hung calls & did test crash to get the info related to hung calls. Now, new active is handling calls, make new call, cube is rejecting the call with 488

Conditions: Issue observed only when switch over happens.

Workaround: There is no workaround.

• CSCum40306

Symptom: Router crashes during call transfer in SRST mode

Conditions: Call transfer in SRST mode, including SCCP phones

Workaround: There is no workaround.

• CSCum40363

Symptom: while making h323 call ,audio packets which are passing via ASR router not receiving at the endpoints.

Conditions: ASR router is configured with NAT Firewall

Workaround: There is no workaround.

298Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 333: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCum43752

Symptom: IOSD crash at ipv6_intf_mtu on flexvpn client

Conditions: Flapping flexvpn client configured with ipv6 on tunnel interface.

Workaround: There is no workaround.

• CSCum44590

Symptom: "ip load-sharing per-packet" is enabled on ASR1K

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCum46324

Symptom: GM re-registers to the KS after not receiving a rekey. The KS does not reset the counters for rekey Acks missed by the GM after the GM re-registers. This results in the GM being deleted after missing three rekeys, even though its registered.

Conditions: This symptom is observed when WAN failure and recovery on the GM interrupting rekey ACKs to reach back the KS.

Workaround: There is no workaround.

• CSCum46511

Symptom: High CPU utilization is seen on 2921 platform running 15.3(3)M1 while sending 2Mbps traffic.

Conditions: This symptom is observed with GETVPN crypto-map configured on the outbound interface send 2 Mbps of UDP based traffic, TBAR (time based anti-replay was turned on).

Workaround: Turn off TBAR (time-based anti-replay).

• CSCum48325

Symptom: ucode crash @dtl_poll_pending_tickle with 'ip nat sett mode cgn'

Conditions: ucode crash @dtl_poll_pending_tickle with 'ip nat sett mode cgn'

Workaround: There is no workaround.

• CSCum49437

Symptom: ucode crash@ipv4_nat_cgn_mode_dp_rel_mem on changing nat mode

Conditions: In a scaled setup on changing nat mode

Workaround: There is no workaround.

• CSCum52078

Symptom: DOEO call fails for ILBC codec(rtp-nte) with ANAT enabled.

Conditions: This symptom is observed when following conditions are met: 1. DOEO call 2. ANAT enable at outgoing leg 3. ilbc codec is configure for outgoing leg.

Workaround: This issue is not observed for DODO. <B>Symptom: DOEO call fails for ilbc codec(rtp-nte) with ANAT enabled

Conditions: When following conditions meet 1. DOEO call 2. ANAT enable at outgoing leg 3. ilbc codec is configure for outgoing leg.

Workaround: works for DODO

• CSCum54136

299Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 334: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: After a KS reload, or a network split or a coop configuration change or any condition that forces a GM to re-register to a different KS in a coop the snmpwalk for object cgmGdoiGmEntry will not return any values for that GM in the previously registered KS.

Conditions: In a coop if the GM re-registers to a new KS the snmpwalk -v 2c -c wells old_KS_IP 1.3.6.1.4.1.9.9.759.1.2.2.1 command will not return information for that GM on the KS the GM was previously registered at.

Workaround: There is no workaround.

• CSCum55299

Symptom: Path-confirmation check failed on CUBE in SRTP-RTP call

Conditions: Configure CUBE for SRTP-RTP call

Workaround: There is no workaround.

• CSCum55357

Symptom: CUBE crashes for SIP-H323 Transcoding call.

Conditions: The issue is seen while running regression for Cisco IOS Release 15.3(3)M1.9.

Workaround: There is no workaround.

• CSCum56779

Symptom: For a SIP - TDM call, early dialog caller-id update does not work

Conditions: Setup and call scenario: Sipp-----------GW---------------Callgen For an SIP UPDATE request received during ringback ( Early Dialog ), caller-id update should be sent in a FACILITY message on the TDM leg. The FACILITY message with caller-id update is not seen to be sent on the TDM leg.

Workaround: There is no workaround.

• CSCum57306

Symptom: SCB leak seen when the Refer Call with error condition is run under laod

Conditions: Refer Call flow which fails

Workaround: There is no workaround.

• CSCum60848

Symptom: Under certain conditions, a DSP will hang in certain call scenarios including REFER passthrough.

Conditions: This symptom is observed under heavy load.

Workaround: There is no workaround.

• CSCum61077

Symptom: Packets dropped while IPV4 to IPV6 translation with size above 1252.

Conditions: NAT64 on ASR1K.

Workaround: Decrease the IPV4 mtu size to 1252.

• CSCum61622

Symptom: Traceback may be seen with sip/sunrpc/rtsp/rcmd/msrpc

Conditions: scaled ALG

Workaround: There is no workaround.

• CSCum66182

300Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 335: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: SNMP Query on the object dot3StatsDuplexStatus is shown as unknown.

Conditions: While testing Ether-Like MIB for ASR1000-6TGE.

Workaround: There is no workaround..

• CSCum68074

Symptom: many packets are dropped for NatIn2out cause

Conditions: PAT, interface overload

Workaround: PAT pool overload

• CSCum68287

Symptom: GM reloads unexpectedly when enabling V6-crypto map on an interface with VRF-aware GDOI configs on the latest XE3.12 throttle images

Conditions: Seen on all ASR platforms, with latest XE3.12 throttle base images This is 100% reproducible and extremely service impacting. This happens only when you enable "ipv6 crypto map" which has a local GM deny ACL associated with it. Enabling v4-crypto map is fine

Workaround: Do not use the local GM ACL for IPV6 crypto map. This may not be a feasible workaround in the field.

• CSCum69152

Symptom: SIP SRST and adding more than one alias commands, only 'alias 1' command creates a dial-peer. voice register global mode srst system message SRST Active max-dn 20 max-pool 20 ! voice register pool 1 id network 1.1.1.0 mask 255.255.255.0 alias 1 1111 to 4444 alias 2 2222 to 4444 voice-class codec 1 Only the alias 1 dialpeer gets created and calls to that extension will work (as long as you also have the correct translation rule as per docs).

Conditions: CME in SIP-SRST mode.

Workaround: Use translation-rules to achieve this behavior. <B>Symptom: SIP SRST and adding more than one alias commands, only 'alias 1' command creates a dial-peer. voice register global mode srst system message SRST Active max-dn 20 max-pool 20 ! voice register pool 1 id network 1.1.1.0 mask 255.255.255.0 alias 1 1111 to 4444 alias 2 2222 to 4444 voice-class codec 1 Only the alias 1 dialpeer gets created and calls to that extension will work (as long as you also have the correct translation rule as per docs).

Conditions: 2900 series router running SIP SRST running version c2951-universalk9-mz.SPA.152-4.

Workaround: There is no workaround.

• CSCum70161

Symptom: CUBE 180 w/o SDP and 200OK need to send CPA details in MIME

Conditions: when CPA event to process with dialer

Workaround: There is no workaround.

• CSCum70245

Symptom: No FPI session created

Conditions: RTP loopback

Workaround: There is no workaround. None

• CSCum70828

Symptom: SNMP Query on dot3StatsDuplexStatus is shown as unknown on SPA-5X1GE-V2.

Conditions: While testing Ether-like MIB for SPA-5X1GE-V2.

301Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 336: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCum71485

Symptom: An increasing number of TEKs are generated every 30 seconds.

Conditions: This symptom occurs under the following conditions: 1. Change the Group Identity on the Secondary KS causing encryption failure. Change the Group Identity on the Primary KS. All the GMs are deleted from the KSs. 2. Restore the Secondary Key Server. Wait for it to come up as Primary for the Group : GETVPN-GROUP-1. 3. Restore the Primary Key Server with Group : GETVPN-GROUP-1. 4. This creats a new TEK policy every 30 seconds from the newly elected Primary Key Server KS2. The sequence number for rekey remains 1. 5. KS1 is restored to be the primary role. 6. After the existing TEKs from KS2 are expired, it behaves normally.

Workaround: There is no workaround. <B>Symptom: Increasing number of TEK generated every 30 secs

Conditions: 1. Change the Group Identity on the Secondary KS causing encryption failure, Change the Group Identity on the Primary KS. All the GMs are deleted from the KSs. 2. Restore the Secondary Key Server. Wait for it to come up as Primary for the Group : GETVPN-GROUP-1 3. Restore the Primary Key Server with Group : GETVPN-GROUP-1 4. This is creating a new TEK policy every 30 sec from the newly elected Primary Key Server KS2. The sequence number for rekey remains 1. 5. KS1 is restored to be the primary role. 6. After the existing TEKS from the KS2 are expired it behaves normally.

Workaround: There is no workaround.

• CSCum73172

Symptom: memory usage keep increase

Conditions: config ATM PVC bundle interface

Workaround: There is no workaround.:

• CSCum73773

Symptom: QFP crash

Conditions: remove ip nat setting mode and run "sh pl hard qfp ac statistics drop"

Workaround: There is no workaround.

• CSCum77922

Symptom: CUBE fails to perform 407 Error Message Passthrough if it receives a 100 Trying before the 407 Proxy Authentication Required and sends a 503 Service Unavailable to the UAC.

Conditions: ITSP sends a 100 Trying before the 407 Proxy Authentication Required

Workaround: Receive the 407 Proxy Authentication Required as first response to an Invite

• CSCum78260

Symptom: ASR1K:GM1 did not have 1 recovery registration to group GDOI_GROUP_1.

Conditions: Issue is newly seen only in ASR routers and not in ISR.

Workaround: There is no workaround.

• CSCum79817

Symptom: "488: Not acceptable media" message seen for DOEO ANAT calls with ILBC codec.

Conditions: This symptom is observed when following conditions are met: 1. DOEO 2. ANAT calls 3. ILBC codec (Did not test for other codecs)

Workaround: This symptom is not observed for DODO.

302Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 337: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCum81041

Symptom: One way audio incoming calls redirected through CVP.

Conditions: Call flow: ------------ Caller----G711----TDM GW----SIP-----ASR1K----SIP-----CUSP----SIP----CVP(Vz0)----IP-IVR | | -----SIP---CVP (BAMS) | |--------SIP---CUCM---Agent Phone (G729 only) Initially the caller is connected to IP-IVR, both ingress and egress leg of the CUBE is doing G711. Call is connected to the IP-IVR, then CVP sends a refer to the VXML GW for playing prompts and ringback tone etc. When the call is transferred to the agent, CUBE negotiated G729 at the sip level with the CVP, but because of mid-call signalling block on the ingress side, continue with the G711. Hence xcoder is invoked on the CUBE to handle G729 to G711 and vise versa, but CUBE is still sending G711 media to the agent phone side while the agent phone is sending G729 media to the CUBE.

Workaround: There is no workaround.

• CSCum81717

Symptom: 183 session progress is blocked by the sip gateway

Conditions: 183 session Progress is received with SDP and Require:100 rel header and "block 183 sdp absent" is configured

Workaround: There is no workaround.

• CSCum83957

Symptom: A router may crash due to a bus error when running "show sccp connections sessionid".

Conditions: This has been observed on a 3900e router running 15.3(2)T. SCCP features are configured on router.

Workaround: There is no workaround.

• CSCum84172

Symptom: Incorrect NHRP mapping information for a hub can be propagate throughout the DMVPN network and cause data packet forwarding via a spoke-hub-spoke path even when a spoke-spoke direct path has been built and the sending nodes "thinks" it is sending on the direct path.

Conditions: A DMVPN spoke node is mis-configured with the correct tunnel IP address, but the wrong NBMA address for a hub (hub1). In this case the incorrect NBMA address would be for a different hub (hub2). Hub1 is configured to be both a hub and a spoke. I.e. it can be the end-point for spoke-spoke tunnels.

Workaround: Fix the spoke that has the incorrect mapping and then shutdown the hub (hub1) that "thinks" it is behind NAT. This hub must be left in a down state for long enough to ensure that any copy of the mis-configured mapping times out on all nodes in the DMVPN network. In most cases two times the NHRP hold time should be sufficient.

• CSCum84999

Symptom: SUBSCRIBE received from CVP after BYE and NOTIFY with subscription-state : terminates is send by CUBE.

Conditions: This symptom is observed when SUBSCRIBE IS recieved after call is terminated with BYE.

Workaround: There is no workaround.

• CSCum85381

303Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 338: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: CUBE drops Method Notify (OOB Notify DTMF) in SIP to SIP call flows, when 183 Session Progress without SDP is received just after 183 Session Progress with SDP. For Example: CUCM --> SIP --> CUBE ---> ITSP When Cube receives 183 Session (with SDP) from ITSP, it sends out Method Notify back to CUCM. ITSP sends another 183 Session (without SDP), at this point, CUBE strips out NOTIFY towards CUCM. This causes CUCM to disable DTMF on this call.

Conditions: There are no know conditions

Workaround: Add method Notify manually on the first leg using a SIP Profile. voice class sip-profiles 99 response 183 sip-header Call-Info remove response 183 sip-header Call-Info add "Call-Info: <sip:10.1.1.1:5060>;method=\"NOTIFY;Event=telephone-event;Duration=500\""

• CSCum86159

Symptom:CPP crash

Conditions: Conditional debugging and packet tracing is enabled on join interface for OTV.

Workaround: There is no workaround.

• CSCum86411

Symptom: BGP performance will be slower on RP2 on 15.4(02)S release or newer images.

Conditions: Large scale BGP routes

Workaround: Use Image 15.4(01)S or older.

• CSCum88818

Symptom: memory leak in CPP List Hdr Chunk

Conditions: Flapping flexvpn sessions

Workaround: There is no workaround.

• CSCum90650

Symptom: When REFER based transfer failed with 503 in NOTIFY , CUBE tried to bridge the call , but CUBE retransmit REFER again even though got 503 service error :

Conditions: REFER passthrough

Workaround: refer consume

• CSCum93356

Symptom: CUBE doesn't send mp4a-latm fmtp attributes in early dialog UPDATE

Conditions: This issue is observed in DO-EO call with flow-around configured and the SDP negotiation happens in early dialog.

Workaround: If SDP is negotiated in confirmed dialog , then this issue is not seen.

• CSCum94408

Symptom: Intermittently, if a root's CRL to validate Sub does not get downloaded [Internal or External failures], and the CRL by Sub gets downloaded, the following message will be seen: [Debug crypto isakmp and Debug crypto pki m/t/v/c] ISAKMP (35845): adding peer's pubkey to cache ISAKMP:(35845): processing SIG payload. message ID = 0 %CRYPTO-3-IKMP_QUERY_KEY: Querying key pair failed.

Conditions: This symptom occurs in Cisco IOS configured with the IKEv1, Authentication mode RSA-SIG [Certificates]. PKI Infrastructure is as follows: Root -> Sub -> ID - Root and Sub Trustpoint have "revocation-check crl none". - Sub has "chain-validation continue Root".

Workaround: Disable Revocation-check and Chain-validation under Sub Trustpoint.

• CSCum94541

304Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 339: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: This is an Enhancement request on PKI Split-VRF Feature. Enrollment profile only allows us to source the enrollment traffic from a specific VRF, however it does not allow us to control the source-ip/interface

Conditions: PKI Split VRF Feature, where one is allowed to configure VRF for enrollment through enrollment profiles, and VRF for CRL checking through Trustpoint.

Workaround: There is no workaround.

• CSCum95078

Symptom: Large IPSEC packets get dropped when fragmentation is done after IPSEC encapsulation.

Conditions: This symptom is not observed under any specific conditions.

Workaround: There is no workaround.

• CSCum96146

Symptom: CUBE HA pair crashes with crashinfo file being generated.

Conditions: 3945E CUBE routers running as a redundant pair on IOS 15.2(1)T2.

Workaround: There is no workaround.

• CSCum96156

Symptom: IOS will fail to match the certificate map intermittently

Conditions: IOS PKI using certificate maps, to authorize the Peer certificates or override CDP. In this case: - if a certificate map is written on a PC, with upper case letters in them: Ex: crypto pki certificate map HR-Users 10 subject-name co ou = HR-Users - and this is a part of the configuration that is merged with the running config through IOS file-system [directly from flash or FTP/TFTP/HTTP etc], IOS retains the upper case letters. [contrary to certificate maps written through CLI, always converts everything to lower case letters]

Workaround: A) - copy the certificate maps [that have upper case letters in them] to a notepad - remove the certificate maps [that have upper case letters in them] - paste the certificate maps, through IOS CLI - wherever these cert maps were being called, they will stay intact, and this change will take effect immediately or B) - The certificate map needs to enter IOS in a manner that IOS would insert it if you were to enter it in a CLI I.e. Make sure the external config generators generate the certificate map in such a way that everything is in lower case, and it has white spaces between DN OID, '=' and the value.

• CSCum97856

Symptom: Traceback appears in the common setup affecting the test

Conditions: Attaching service policy to zone pair security

Workaround: There is no workaround.

• CSCum98149

Symptom: Astro is not being initialized in ROMMON

Conditions: Initialize ASTRO ECSR in ROMMON

Workaround: There is no workaround.

• CSCun00783

Symptom: channel group wil link id > 4 is not configurable.

Conditions: whiel configuring the vlan based load balance

Workaround: Use only link id 1-4

305Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 340: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCun02605

Symptom: ASR crashes with no known trigger in CCSIP_SPI_CONTROL process.

Conditions: It is an error scenario where crash occurs when router is not able to send ACK for 200 OK where branch parameters differ. CUBE INVITE | INVITE (Via branch=ABC) ----------------------------->| ----------------------------------------> | 200 OK (Via branch=DEF) | <----------------------------------------- | Cube fails to send ACK to 200 OK for some reason and causes a crash

Workaround: There is no workaround. <B>Symptom: ASR crashes ith no known trigger in CCSIP_SPI_CONTROL process

Conditions: It is an error scenario where crash occurs when router is not able to send ACK for 200 OK where branch parameters differ. CUBE INVITE | INVITE (Via branch=ABC) ----------------------------->| ----------------------------------------> | 200 OK (Via branch=DEF) | <----------------------------------------- | Cube fails to send ACK to 200 OK for some reason and causes a crash

Workaround: There is no workaround.

• CSCun02711

Symptom: observing cpp_cp_svr crash

Conditions: Interface Flap with Model4 QoS under Oversubscribe load

Workaround: There is no workaround.

• CSCun02772

Symptom: Part of the "MCSA Requst Parameters" are not updated when showing gtp pdp details

Conditions: When issuing show gtp pdp related commands with "detail" option

Workaround: There is no workaround.

• CSCun03189

Symptom: The test gtp commands are diasabled

Conditions: Issue test gtp commands.

Workaround: There is no workaround.

• CSCun05026

Symptom: Tracebacks @ ipnat_establish_alias seen with IPsec and NAT64 configs

Conditions: While bringing up IPsec sessions.

Workaround: There is no workaround.

• CSCun05121

Symptom: Memory leak at SRTP Keys in Dolby Feature.

Conditions: Memory leak seen in SRTP Call

Workaround: There is no workaround.

• CSCun07486

Symptom: "token" CLI is getting missed under Crypto pki .

Conditions: UUT is loaded with 15.4(1.20c)CEL5.5 .

Workaround: There is no workaround.

• CSCun08016

306Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 341: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: observing cpp_cp_svr crash

Conditions: on unconfiguration of IPHC scaled configuration

Workaround: There is no workaround.

• CSCun08423

Symptom: NIM Card type details are not specific in show command port details

Conditions: card type details are not specific in "show voice port x/x/x" in dynamo3 FXS cards. It is just mentioned as "NIM-FXS" in the show command output.

Workaround: There is no workaround.

• CSCun08855

Symptom: ASR router crash with iosd punting packet to port-channel with ERSPAN configured on the router

Conditions: port-channel and ERSPAN configured on the router

Workaround: There is no workaround.

• CSCun09014

Symptom: multiple crashes witnessed due to memory being freed.

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCun10115

Symptom: entPhysicalContainedIn of NIM Module is showing the spa bay on ASR1001-X Chassis.

Conditions: While testing EntityMIB for ASR1001-X Chassis.

Workaround: There is no workaround.

• CSCun12523

Symptom: packet dropped at interface

Conditions: encap change on tunnel

Workaround: remove the tunnel interface and config it again.

• CSCun13053

Symptom: clean up fail in fhs testing

Conditions: Tracebacks are seen

Workaround: There is no workaround.

• CSCun13772

Symptom: CPUHOG messages and watchdog timeout crashes are observed on an ASR1000 series router running DMVPN.

Conditions: This has been observed on a router with a very large NHRP table (10-20k individual entries) with a very high number (thousands) of child entries per parent entry.

Workaround: Reduce the number of child entries per parent entry through the use of supernetting.

• CSCun13800

Symptom:VG224 responds with a different RTP port each time for multiple StationPortReq messages from CUCM for the same call. Seen in 15.1(4)M7

Conditions: CUCM sending multiple StationPortRequest to VG VG224 registered SCCP to CUCM

307Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 342: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCun17831

Symptom: Modem Relay call fails with new NIM FXS card on O2 platform

Conditions: Modem Relay call fails

Workaround: There is no workaround.

• CSCun17913

Symptom: Invalid input after saving 68 byte feature config & reloading router

Conditions: Invalid input after saving 68 byte feature config & reloading router

Workaround:

• CSCun20232

Symptom: shutdown one tunnel interface ,the chassis crash

Conditions: Step 1 :Setup dmvpnv3 scenario with two spokes Step 2 :On spoke 2,tunnel100 and tunnel200 are a pair of DMVPN tunnels Step 3: unconfigure "maximum-paths ibgp *" to make the two tunnels with one route to hub Step 4: add spoke to spoke traffic and after the traffic is contronlled by cent ,shutdown tunnel100,the crash will be hit

Workaround: make sure the configuration is right

• CSCun20588

Symptom: When REFER is received on CUBE and CUBE send to ITSP where ITSP did not respond to the REFER and CUBE try to Resume the call Memory Leak seen .

Conditions: When REFER is received on CUBE and CUBE send to ITSP where ITSP did not respond to the REFER and CUBE try to Resume the call Memory Leak seen .

Workaround: There is no workaround.

• CSCun20719

Symptom: Reload the router, and check the system clock [it should be an authoritative source of time: show clock ? no * is printed before the clock]. However, 'show crypto pki timer' will not show the renew timer for the trustpoint.

Conditions: IOS is configured as SCEP client, with an auto-enroll timer. Also, instead of 'enrollment url' under the trustpoint, an enrollment profile is configured.

Workaround: Re-enter the 'auto-enrol <>' command under the trustpoint to trigger the renew timer.

• CSCun21918

Symptom: The fields in the result of "show gtp apn stats" are not updated correctly

Conditions: Issuing "show gtp apn stats" command.

Workaround: Try to get similar info from "show gtp path stat"

• CSCun22771

Symptom: An ASR 1002-X router might crash and reload writing a core file in the process.

Conditions: ASR1002-X running IOS XE in a NAT-HA B2B scenario

Workaround: There is no workaround.

• CSCun24310

Symptom: Some of the fields in "show gtp statistics" result are not updated.

Conditions: Issue "show gtp statistics" command.

308Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 343: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCun24490

Symptom: Invalid offers getting processed

Conditions: Invalid offers getting processed

Workaround: There is no workaround.

• CSCun24534

Symptom: Configuring "no aqm-register-fnf" doesn't disable the command in the router's running and startup configurations.

Conditions: The problem was observed in the following sequence : (1) Configure "no aqm-register-fnf" (2) Execute "show run", the command "aqm-register-fnf" is removed (3) Execute "show run" again, the command "aqm-register-fnf" re-appears

Workaround: There is no workaround.

• CSCun28796

Symptom: Active ESP reloads when churning ISG sessions

Conditions: Churn both regular and walk-by ISG sessions at scale.

Workaround: There is no workaround.

• CSCun30321

Symptom: Major alarm observed on ASR1001

Conditions: After upgrade to XE3.10.2

Workaround: There is no workaround.

• CSCun31644

Symptom: try to register gm

Conditions: registration succeeds and crashes

Workaround: There is no workaround.

• CSCun33934

Symptom: On standby RP, the remote restart counters on gtp paths are not synced from active RP and remain 0.

Conditions: After a back to back RP switchover

Workaround: There is no workaround.

• CSCun38059

Symptom: No way audio (Silence) issue is noticed on transcoded SIP-SIP calls on CUBE after mid-call codec change.

Conditions: IOS Relase 15.3(3)M1 and above Issue happens only under following condition. 1. Transcoder is allocated on CUBE for DTMF Interworking (Audio Codec Used on both inleg and outleg are same) 2. Due to supplementary services like "Hold" or "Transfer", one of the call leg negotiates different audio codec (Since the transcoder already allocated for DTMF interworking, it takes care of audio transcoding) 3. Later when the call is "Retrived" or "Transfer" is completed, both the call legs on CUBE negotiates same audio codec and transcoder needs to be updated for DTMF Interworking. At this point, CUBE fails to update transcoder causing no-way audio issues

309Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 344: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: 1. Try using the same DTMF method on both inleg and outleg, so that there is no transcoder allocation 2. Use same codec throughout the call Considering the following call flow PSTN -> SIP -> CUBE -> SIP -> CUCM -> IP Phone 1. Call was made from PSTN to IP-Phone via CUBE 2. Initial call gets established as G711 (alaw or ulaw) and CUBE allocates local transcoder for DTMF Interworking ( inband-voice to rtp-ntp) Media Path : PSTN [Codec-G711ulaw, DTMF-raw tone(inband-voice)] -> CUBE -> [Local Transcoder] -> [Codec-G711ulaw, DTMF- rtp-nte] -> IP-Phone 3. IP Phone places the call hold and this triggers call to be connected with MoH which is capable of streaming only G729 media Media Path : PSTN [Codec-G711ulaw, DTMF-raw tone(None)] -> CUBE -> [Local Transcoder] -> [Codec-G729, None] -> MoH Server 4. When IP Phone "Resume" or "Transfer" the call, the codec changes from G729 to G711ulaw. Media Path : PSTN [Codec-G711ulaw, DTMF-raw tone(inband-voice)] -> CUBE -> [Local Transcoder] -> [Codec-G711ulaw, DTMF- rtp-nte] -> IP-Phone 5. At this point, CUBE fails to update transcoder with updated media capability causing no-way audio

• CSCun45602

Symptom: Traceback appears in the section test

Conditions: Issuing more harddisk:tracelogs/ with debug packet trace enabled

Workaround: There is no workaround.

• CSCun46707

Symptom: When "crypto gdoi ks rekey" is issued on the KS with multiple groups, the GM does not receive the rekey

Conditions: Rekey

Workaround: There is no workaround.

• CSCun48579

Symptom: CUBE is not sending 200 OK for PRACK SDP when CPA enabled

Conditions: when CPA enabled

Workaround: Add some delay between 18X to 200 Ok

• CSCun50243

Symptom: When CED/ANSam/2100Hz answer tone is detected in the early media phase of the call, the gateway does not switchover and starts sending distorted audio to the originating fax. Fax transmission fails.

Conditions: This symptom is observed when modem passthrough nse codec g711ulaw is used as the fax protocol. Fax -> VG224 --SCCP--> CUCM -SIP--> 3945 GW--ISDN T1 PRI-->PSTN 3945 IOS: 15.1.4M5 VG224:15.1.4M2

Workaround: Perform the following workaround: - Use 'progress_ind' to strip PI=8 if the Early Media is opened via an ISDN ALERTING message: (config-dial-peer)#progress_ind alert strip - Check with Carrier if they can avoid opening early media for Fax/Modem calls.

• CSCun50538

Symptom: fman-fp log report traceback when loading fp card

Conditions: load or reload fp card

Workaround: There is no workaround.

• CSCun51932

Symptom: Incorrect internal and external Dialtone for CPTONE DE.

Conditions: Cptone DE is configured under FXS ports

310Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 345: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: Step1: Router# test voice tone DE dialtone 1 425 0 -200 -200 -240 0 0 0 65535 0 0 0 0 0 0 0 Step2: Router# test voice tone DE 2nd_dialtone 1 425 0 -200 -200 -240 0 0 0 200 300 200 300 200 800 0 0 Step3: shut the voice-port Step4: Unshut the voice port

• CSCun52009

Symptom: Traffic stats check failed after shutdown in Manual LB with multiple backup link configed

Conditions: Traffic loss is seen for PC_EVC_Manual_Loadbalance test

Workaround: There is no workaround.

• CSCun59253

Symptom: DMVPN spoke (ISR) gets stuck in NHRP state after config-unconfig-reconfing with TP.

Conditions: DMVPN with TP

Workaround: Reboot the router.

• CSCun61732

Symptom: Memory leak seen when CME will xfer the call followed by idivert .@ sippmh_parse_hi_token

Conditions: while doing idivert

Workaround: There is no workaround.

• CSCun62178

Symptom: Traceback @fp_ipsecmgr_init

Conditions: With policy-map configured on the egress GRE tunnels, perform RP switchover

Workaround: There is no workaround.

• CSCun62181

Symptom: ASR1002 running asr1000rp1-adventerprisek9.03.04.06.S.151-3.S6.bin crashes at crypto ipsec update peer path mtu

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCun62273

Symptom: MODEM Relay cannot be configured on VG224

Conditions: VG224 used for modem relay calls.

Workaround: There is no workaround.

• CSCun65380

Symptom: CME Crashed while Inbound SIP profile added globally.

Conditions: This symptom is observed when inbound SIP profile is added.

Workaround: Do not configure inbound sip profile.

• CSCun67176

Symptom: "No match found" message on the console.

Conditions: On issuing "show plat hard qfp act feat nat data port <proto>"

Workaround: There is no workaround.

• CSCun68489

311Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 346: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: reINVITE failure - hung calls

Conditions: reINVITE failure

Workaround: There is no workaround.

• CSCun73233

Symptom: No way audio (silence) issue is noticed on transcoded SIP-SIP calls on CUBE when supplementary services like Hold/Resume or Call Transfer is invoked. Issue is observed with both SCCP based transcoding and LTI (Local Transcoding Interface) based transcoding. When using SCCP Based Transcoding, "show sccp connection" output looks as below during no-way audio issue (Mode - Inactive, rport - Empty, ripaddr - Empty, conn_id_tx - Empty) CUBE-2#show sccp connections sess_id conn_id stype mode codec sport rport ripaddr conn_id_tx 65545 36 xcode inactive g729 16414 0 :: 65545 40 xcode inactive g711a 16412 0 :: When using LTI based transcoding, "show dspfarm dsp active" shows no entry of the call during no-way audio CUBE-2#show dspfarm dsp active SLOT DSP VERSION STATUS CHNL USE TYPE RSC_ID BRIDGE_ID PKTS_TXED PKTS_RXED Total number of DSPFARM DSP channel(s) 0

Conditions: IOS Release 15.3(3)M Issue happens only under following condition. 1. When "midcall-signaling passthru media-change" is configured on CUBE 2. There is change in codec in one of the call leg after invoking supplementary services like Hold/Resume or Transfer

Workaround: 1. Disable "midcall-signaling passthru media-change" Voice service voip Sip no midcall-signaling passthru media-change 2. Use same codec through-out the call (Avoid change in codec behavior by controlling supported codec list)

• CSCun73301

Symptom: FP Crashed while DTMF info message received for SRTP Passthrough call

Conditions: DTMF INFO received

Workaround: FP Crashed while DTMF info message received for SRTP Passthrough call

• CSCun76377

Symptom: On CUBE if MTP invoked for the call Forking packets showing 0 :

Conditions: On CUBE if MTP invoked for the call Forking packets showing 0 :

Workaround: There is no workaround.

• CSCun78843

Symptom: CUBE crashed while handling Flow around Call .

Conditions: CUBE crashed while handling Flow around Call .

Workaround: no Media flow around on CUBE

• CSCun79934

Symptom: qfp ipsec debug message format changed

Conditions: There are no know conditions

Workaround: There is no workaround. none

• CSCun83348

Symptom: IPsec configured router sees unauthenticated router in INIT stage of ospfv3

Conditions: Configure one router with ospfv3 auth and other router with no authentication

Workaround: There is no workaround.

• CSCun84429

312Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 347: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: ASR1k crashes.

Conditions: Deactivation of a container.

Workaround: There is no workaround.

• CSCun85566

Symptom: when a crl is downloaded using "cry pki crl download url <url1> and no command is done on same, memory leak is seen for cd p

Conditions: when a crl is downloaded using "cry pki crl download url <url1> and no command is done on same

Workaround: There is no workaround.

• CSCun85639

Symptom: when ASR1K receive a fragmented jumbo packets(pkt1:2002,pkt2:9000),router will report an refrag error and traceback.

Conditions: jumbo packet and VFR via CLI

Workaround: There is no workaround.

• CSCun85947

Symptom: When there is a dialer interface getting dynamic IP, SIP control and media binding is failing with that interface.

Conditions: IOS should be 15.1.2T or later (to configure binding at dial-peer level)

Workaround: Configure static IP for the dialer interface.

• CSCun88636

Symptom: Kingpin crashes @ cmcc_2kp_cli_show_plim_status_cb

Conditions: Kingpin crashes while issuing "show plat hard slot 0 plim status int"

Workaround: There is no workaround.

• CSCun89036

Symptom: Traceback when IPV6 traffic is transiting through ATM sub-interface

Conditions: Configuration of "atm route-bridged ipv6" configured at ATM sub-interface level

Workaround: There is no workaround.

• CSCun89879

Symptom: Some sip packets drop with B2B CGN BPA setup

Conditions: Some sip packets drop with B2B CGN BPA setup

Workaround: Reload router

• CSCun90108

Symptom: On CUBE there is a port leak seen for each audio video call negotiated to audio call.

Conditions: This symptom is observed when audio Video M line offer answered with only audio m line.

Workaround: Send answer with both audio m line and video, if video not supported send port 0. <B>Symptom: On CUBE there is a port leak seen for each audio video call negotiated to audio call

Conditions: When audio Video M line offer answered with only audio m line .

Workaround: send answer with both audio m line and video , if video not supported send port 0

313Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 348: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCun91087

Symptom: O2 router crashes with non-default firmware intermittently

Conditions: O2 router crashes with non-default firmware intermittently

Workaround:

• CSCun91923

Symptom: CUBE reloads intermittently while handling SIP call forking scenario.

Conditions: In SIP Call forking scenario, an INVITE sent from CUBE is routed to multiple SIP endpoints and multiple SIP provisional responses such as 183 Session Progress with different To tags are received.

Workaround: There is no workaround.

• CSCun92171

Symptom: CUBE's media anti-trombone feature does not work correctly when combined with the pass-thru content sdp feature. When the two features are enabled CUBE will return the wrong SDP on one call leg and does not properly switch from media flow-through to media flow-around.

Conditions: This was seen on 15.4(1)T with both media anti-trombone and pass-thru content sdp enabled.

Workaround: There is no workaround.

• CSCun92199

Symptom: ucode crash with sip traffic

Conditions: after doing couple of events like redudancy reload multiple times and with SIP traffic

Workaround: There is no workaround.

• CSCun93593

Symptom: Caller id is not received intermittently on FXO ports. we have dangling dsm_handle associated with this port and it is preventing from sending further dsp messages to start caller id. Mar 24 16:18:22.054: [0/1/1] htsp_start_caller_id_rx:BELLCORE Mar 24 16:18:22.054: htsp_start_caller_id_rx htsp->dsm_handle 2AC5E96C

Conditions: The symptom has been observed on IOS 150-1.M7, with PVDM3.

Workaround: Router reload fixes the issue.

• CSCuo00479

Symptom: Slow memory leak in small/middle I/O buffers. This can be identified by looking at the output of "show buffer" and "show buffer usage" commands You'll see the number of small and middle buffers incrementing to very high values VG224-1#sh buffer | inc peak Small buffers, 104 bytes (total 1116, permanent 50, peak 1242 @ 00:00:17): Middle buffers, 600 bytes (total 1937, permanent 25, peak 2217 @ 00:00:16): The output of 'show buffer usage' will show the SCCP Application as a Resource User of the buffers and increasing until memory is exhausted. Caller pc : 0x6238D4C8 count: 4454 Resource User: SCCP Appli count: 4455 Once memory is exhausted, telnet sessions will fail to establish. Console access may still be available.

Conditions: VG224 registered to CUCM and defined as a SCCP controlled gateway. This is seen when the CUCM rejects the registration attempts of the VG224 FXS ports due to it reaching the " Maximum Number of Registered Devices" value as defined in the CUCM Service Parameters. This can occur when devices fail-over from the primary to secondary CUCM and the proper device sizing has not been followed as per the CUCM SRND. Too many devices attempt to register and CUCM starts to reject their attempts.

314Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 349: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: Ensure that in fail-over scenarios, the number of devices that attempt to register to CUCM don't exceed the number set in "Maximum Number of Registered Devices" service parameter.

• CSCuo02270

Symptom: Issues with source VLAN numbers while using with ERSPAN.

Conditions: VLAN greater than 1005 were not displayed in the running config. There is no service impact.

Workaround: There is no workaround.

• CSCuo02726

Symptom: Memory Leaks seen at nhrp_cts_data_from_pak_wrapper

Conditions: The leaks are seen on the spoke of a DMVPN setup. The leaks are observed on booting up 15.4(2.8)T image

Workaround: There is no workaround.

• CSCuo02894

Symptom: Packet-trace statistics sometimes appear to report out-of-sync counts.

Conditions: Using packet-trace in IOS-XE3.11.

Workaround: There is no workaround..

• CSCuo03834

Symptom: entity alias mapping and if table entry missing for USB ports in ASR1002-X built-in RP

Conditions: ASR1002-X running with asr1002x-universalk9.03.08.01.S.153-1.S1.SPA.bin

Workaround: There is no workaround.

• CSCuo04053

Symptom: End to end ping fails for normal ATM and CC ATM

Conditions: Breakage on mcp dev

Workaround: There is no workaround.

• CSCuo05333

Symptom: Bogus counter reported by crypto engine

Conditions: When SHA384 algorithm , bogus counter is seen during show platform hardware crypto-device context output

Workaround: There is no workaround.

• CSCuo05957

Symptom: client bypass-policy is not enabled while configuring "default client bypass-policy" in the GM gdoi group.

Conditions: client bypass-policy is not enabled while configuring "default client bypass-policy" in the GM gdoi group when the client bypass-policy is already disabled.

Workaround: There is no workaround.

• CSCuo07408

Symptom: One-way audio when using SRTP when the master key begins with 00.

Conditions: Using any release that contains the fix for bug: CSCtj15884.

315Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 350: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: Put the call on hold and then resume. This will renegotiate the keys and restore two way audio.

• CSCuo12138

Symptom: One way audio when Agent blind-transfers a call from PSTN (h.323 gateway) to a second DN, which then CFNA's to Unity

Conditions: - the issue seems to be a race condition. - the call flow/scenario that seems to cause the race condition is as follows-

UCCE (CTI RP) Agent (x6420)---blind-xfer---> x6437-----CFNA---> CUC \ / ---- ----- \ / CUCM / / ----------------------/ / / / Gatekeeper h.323 \ / ------ ------------ \ / PBX---PRI--Gateway

Workaround: use consultive transfer

• CSCuo14538

Symptom: Outputs of the IPSEC event-monitor does not always include a session-id or local/remote peer ID

Conditions: After the fact troubleshooting of IPSEC sessions by looking at the recorded events

Workaround: There is no workaround.

• CSCuo16179

Symptom: BFD state down while config isis/ospf

Conditions: Bfd neighbors state down on POS interface with isis/ospf configuration.

Workaround: There is no workaround.

• CSCuo16200

Symptom: Multiple PTP stream creation happens on performing IOSD kill switchover, because of that PTP slave clock alwys stuck in ACQUIRING state

Conditions: IOSD kill switchover

Workaround: There is no workaround.

• CSCuo16728

Symptom: Control falls to Priviliged Exec mode

Conditions: When "exit" command is issued from voice register global

Workaround: There is no workaround..

• CSCuo17391

Symptom: GTP path is created even when create pdp fails.

Conditions: By removing the ggsn address from gtp config or any other scenarios which lead to pdp creation failures

Workaround: There is no workaround.

• CSCuo18931

316Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 351: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: DSCP values are set for the VoIP signalling and media packets using the "ip qos dscp" command under the dial-peer. The default value, in the absence of explicit configuration, should be "af31" for signalling and "ef" for media. When setting dscp values for signaling/audio/video under the dial-peer the media packets are marked with AF11 instead of AF33 with the following configuration ip qos dscp af11 media ip qos dscp af21 signaling ip qos dscp af33 video rsvp-none

Conditions: This occurs when configuration is applied on dial-peer with the following call flow and IOS CALL FLOW CTS endpoint - SIP - CUCM -SIP - CUBE -SIP- SME -SIP- ISDN Video Gateway CUBE Platform/IOS c2900-universalk9-mz.SPA.153-3.M1.bin

Workaround: Apply the qos configuration on the interface using class map and policy map.

• CSCuo21859

Symptom: "Show ephone register summay" command doesnot display ephones with ephone-tags beyond 165.

Conditions: There should be ephones configured with tag 165 onwards.

Workaround: Configure all the ephones with tags ranging below 165.

• CSCuo22593

Symptom: GTP Local interface cannot be removed even when there're no active pdps

Conditions: All the time

Workaround: use "no gtp" to unconfigure the whole gtp and then reconfigure

• CSCuo26237

Symptom: Trans on active and standby are not synced

Conditions: With AT&T set up

Workaround: There is no workaround.

• CSCuo27809

Symptom: iWAG-GTP does APN name resolution through DNS before using locally configured APN level ggsn address.

Conditions: When "ip domain lookup is enabled"

Workaround: There is no workaround.

• CSCuo28583

Symptom: Ring off/on period is not changed even we configure ring cadence as followings. - cptone KR - ring cadence pattern01 or - cptone KR - ring cadence define 20 40 or - cptone KR - ring cadence define 20 40 20 40 ======================= Apr 10 14:13:51.521: htsp_timer_stop3 htsp_setup_req Apr 10 14:13:51.521: htsp_process_event: [2/0, FXSLS_ONHOOK, E_HTSP_SETUP_REQ]fxsls_onhook_setuphtsp_progress Apr 10 14:13:51.525: [2/0] c2400_set_sig_state_intercept: ABCD=0, timestamp=0, sys_time=10443319 Apr 10 14:13:51.525: [2/0] c2400_get_ring_cadence: cadence: 2000, 4000, 0, 0, 0, 0 <<<<< Apr 10 14:13:51.525: [2/0] htsp_set_caller_id_tx calling num=2701 display_info= called num=1068 Apr 10 14:13:51.525: [2/0] Caller ID String 80 13 01 08 30 34 31 30 31 34 31 33 02 04 32 37 30 31 08 01 4F AE Apr 10 14:13:51.525: [2/0] voice port htsp_set_caller_id_tx_time: ring cadence not suitable for caller id. on_time_first=1000 off_time_first=2000 on_time_second=0 off_time_second=0 <<<<< Apr 10 14:13:51.529: [2/0] c2400_get_ring_cadence: cadence: 2000, 4000, 0, 0, 0, 0 <<<<< Apr 10 14:13:51.529: [2/0] c2400_set_sig_state: ABCD=0, timestamp=0, sys_time=10443319htsp_call_feature:feature 12

Conditions: VG224-MP 15.1(4)M5 cptone KR

Workaround: There is no workaround.

317Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 352: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCuo28914

Symptom: show Modem Relay statistics output doesnot show any parameters

Conditions: show Modem Relay statistics output doesnot show any parameters

Workaround: There is no workaround.

• CSCuo29084

Symptom: Call Flow: PSTN -H.323-GW - 3rd Party IVR System. When using payload type 97 & 96 for RTP-NTE with H.323 , gateway is found to set Marker bit as false, which caused 3rd party IVR not to recognize DTMF inputs provided by Caller.

Conditions: Call Flow: PSTN -H.323-GW - 3rd Party IVR System.

Workaround: There is no workaround.

• CSCuo31667

Symptom: "Badly formed RTP" drop counter increases unexpectedly. This issue is recovered by reloading the SBC.

Conditions: This issue is seen with tele-presence call.

Workaround: Reload the SBC.

• CSCuo33168

Symptom: There is a time difference printed in the CSV files generated by the hunt group stats reports. While the file shows that the collection of statistics took place at 8pm for example, the actual data shown is from 2-3 hours prior of that time, it could even be more some times. For example: 20:00:01 EST Tue Apr 15 2014 EPHONE HUNT GROUP STAT 1 Tue 16:00 - 17:00 HuntGp 2 0 0 0 0 0 0 0 0 0 0 0 0 1 Tue 16:00 - 17:00 Agent 3001 0 0 0 0 0 0 1 7 7 0 0 0 1 Tue 16:00 - 17:00 Agent 3002 0 0 0 0 0 0 1 4 4 0 0 0 This is happening due precise time condition checks while generating csv file.

Conditions: B-ACD is being used for call queuing. 'statistics collect' enabled inside ephone-hunt The following commands are included inside telephony-service: hunt-group report url prefix <URL> hunt-group report url suffix <number> to <number> hunt-group report every <Hours> hours

Workaround: There is no workaround.

• CSCuo34250

Symptom: Inbound and outbound calls through FXO ports are disconnecting always if "supervisory disconnect anytone" command is present in the FXO Voice-port. If we remove the command, calls would work without any issues. However, in 151-3.T1 calls would work fine with "supervisory disconnect anytone" command present in the voice-port. CSCum09273 fixed the issue with inbound calls through FXO port. Outbound calls are still not working.

Conditions: When "supervisory disconnect anytone" command is configured under voice-port

Workaround: Remove "supervisory disconnect anytone"

• CSCuo36965

Symptom: crypto-register packet-count CLI does not work on ASR1001-X platform

Conditions: transmitted and received packets always shows the same value

Workaround: There is no workaround. none

• CSCuo36977

Symptom: Traceback at cpp_mma_policy

Conditions: Flapping Flexvpn sessions with AVC service-policy applied via Radius

318Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 353: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCuo38818After configuring this command under ephone for static member, it is observed that sporadically it doesn't provide tone while logging in/out while ephone actually logs in/out in ephone-hunt. Also sometimes, ephone provides tone but doesn't log in/out in ephone-hunt. <B>Symptom: The login/logout status for a particular DN is not in sync between Ephone hunt group and Voice hunt group. If ephone hunt group shows the status of the DN as logged in, voice hunt group shows as logged out, or vice versa. Thus, always the status on the phone is updated as "logged out of hunt group"

Conditions: Same DN should be part of ephone hunt group and voice hunt group. And under the ephone hunt group, members logout and/or auto-logout should be configured.

Workaround: Do not configure members logout and auto-logout, when same DN is associated with ephone hunt group and voice hunt group simultaneously. :

• CSCuo40193

Symptom: traceback shows up

Conditions: reload

Workaround: There is no workaround.

• CSCuo40596

Symptom: when ping xtr to pxtr, the pxtr response message is LSB disabled,the packet was seen on punt path

Conditions: There are no know conditions

Workaround: it's random,sometimes will be hit, sometimes is not.

• CSCuo46913

Symptom: A crash is seen causing a system reload. The crash occurs in the Crypto IKMP process: Exception to IOS Thread: Frame pointer 0x3CEFFB58, PC = 0x164CC518 UNIX-EXT-SIGNAL: Segmentation fault(11), Process = Crypto IKMP

Conditions: This issue occurred after the following debug: debug cry condition peer subnet XXX.XXX.XXX.XXX XXX.XXX.XXX.XXX The exact conditions are still being investigated.

Workaround: There is no workaround. known

• CSCuo47484

Symptom: CPA event is enabled for non cpa dsp profile and transcoded calls.

Conditions: For basic Transcoded call, CPA event is send as enabled even for non CPA dsp profile configuration.

Workaround: There is no workaround.

• CSCuo51043

Symptom: The dynamic L2L peer will successfully bring up, both phase-1 and phase-2 although the isakmp profile does not cater to this new peer.

Conditions: IOS L2L end-point catering to dynamic peers, with a dynamic crypto map, under which we have: a) an isakmp profile that does not match the isakmp identity of this new peer b) no crypto ACL [i.e. no 'match address' statement] Note: a crypto ACL can be configured under the dynamic map, that is either an exact or a super-set mirror image of the peer's crypto ACL, although this is not mandatory.

Workaround: There is no workaround..

319Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 354: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Note Note: The non-matching isakmp profile blocks the peer if the dynamic map has a 'match address' statement.

• CSCuo51445

Symptom: The following are the issues identified with unicast and multicast rekey, re-transmission even trace 1. The order of rekey received and ack sent on the GM was out of order, with rekey ack event showing up first. 2. Ip address of source and destination showed up as 0.0.0.0 3. Seq number showed up as either 0 or very large number.

Conditions: Standard GETVPN deployment.

Workaround: There is no workaround.

• CSCuo52113

Symptom: Redundant Gatekeeper setup and high CPU is experienced from time to time during the GUP un-registeration operation.

Conditions: Traceback= 0x9434BECz 0x942BEC0z 0x942BFE8z 0x942C03Cz 0x9457E08z 0x93FE7CCz 0x94022F0z 0x4DD7EACz 0x4DBDD18z

Workaround: There is no workaround.

• CSCuo52384

Symptom: ROMMON get_mac_addr and IOSXE IDPROM access fail on booting standby RP2.

Conditions: External USB thumb drive used on RP2.

Workaround: Remove external USB thumb drive on RP2.

• CSCuo53570

Symptom: timestamp is garbage when show performance monitor history

Conditions: timestamp is garbage when show performance monitor history

Workaround: There is no workaround.

• CSCuo53594

Symptom: CUBE use early dialog Record-Route on ACK message.

Conditions: CUBE receive another Record-Route on 180 and 200

Workaround: There is no workaround.

• CSCuo54224

Symptom: Path-confirmation check failed on CUBE in SRTP-RTP call

Conditions: Configure CUBE for SRTP-RTP call

Workaround: There is no workaround.

• CSCuo54421

Symptom: DGT value displayed wrongly on FNF cache.

Conditions: The issue is seen intermittently on Overlord platform.

Workaround: There is no workaround.

• CSCuo55610

Symptom: Incomplete kernel core file with filename ending in .TEMP_IN_PROGRESS.

Conditions: Active RP kernel core dump in dual RP2 systems.

320Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 355: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCuo56272

Symptom: fman fp crash @in cpp_nat_client_ctrl_cmd_send_a

Conditions: on reloading router with attached config

Workaround: There is no workaround.

• CSCuo58017

Symptom: CUBE response both 481 and 200

Conditions: Receive PRACK with wrong Rack header

Workaround: There is no workaround.

• CSCuo59747

Symptom: Unexpected CANCEL message sent from CUBE

Conditions: Enclosed Configs

Workaround: There is no workaround.

• CSCuo61424

Symptom: Invalid cause code '0' sent in 503 response to INVITE received by CUBE

Conditions: Configure the CUBE for PCD buffer logging as per the enclosed configs

Workaround: There is no workaround.

• CSCuo61533

Symptom: ESP crash at cpp ace delete

Conditions: 10K flexvpn sessions up with traffic and then RP switchover down

Workaround: There is no workaround.

• CSCuo68028

Symptom: FP-Crashes@vc_show_alias_aom_cb

Conditions: while configuring encapsulation aal5mux ip in atm sub-interface

Workaround: There is no workaround.

• CSCuo68525

Symptom: Incorrect RTP connections seen for calls from SCCP-Jabber Video Phone

Conditions: Day 1 issue

Workaround: There is no workaround.

• CSCuo70773

Symptom: Confidence levels sent to ASR server from VXML gateway in the MRCPv2 messages are not the expected values. The values may appear to have had their leading zero after decimal place removed/trimmed.

Conditions: MRCPv2 Incoming confidence level in VXML document is less than 0.10

Workaround: Do not use a confidence level value smaller than 0.10 in VXML documents. Do not provide a confidence level that has a leading zero after the decimal point ex) 0.05

• CSCuo75390

Symptom: Ucode crash occurs with UWS-WAN_XE311 profile.

321Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 356: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Conditions: while verifying NAT64 with traffic on.

Workaround: There is no workaround.

• CSCuo85606

Symptom: ESP80 may crash when tearing down PPP sessions on LNS at scale.

Conditions: Tearing down PPP sessions on LNS.

Workaround: There is no workaround.

• CSCuo85705

Symptom: In a configuration where both Root and Sub have revocation check enabled, IOS PKI Client falls back to the older behavior of inheriting the Root trustpoint policy [while downloading CRL during cert validation] in the following situations: a) Both Root and Sub-CA CRLs are not yet downloaded b) Root CRL is available and Sub CRL is not yet downloaded

Conditions: IOS PKI Client configured with chain-validation: crypto pki trustpoint Root-CA vrf mgmt source-interface eth0/0 revocation-check crl crypto pki trustpoint Sub-CA vrf secure source-interface eth0/1 revocation-check crl chain-validation continue Root-CA

Workaround: There is no workaround.

• CSCuo86608

Symptom: Slow configurations

Conditions: High cpp data path utilization

Workaround: There is no workaround.

• CSCuo88991

Symptom: clid network-number not honored.

Conditions: Call flow:- PSTN T1PRI---- Cisco GW -- -T1PRI--PSTN Ver:- 151-4.M5 Details Cisco IOS GW receives incoming call through T1 PRI, IOS matches the incoming dial-peer completes digit manipulations. And matches the outbound dial-peer which is destined towards PSTN circuit. The outbound dial-peer is configured with clid network-number "XXXX'. Ideally Calling number should be changed based on clid network-number configuration, but it is not getting honored.

Workaround: Use translation profile instead of clid network-number.

• CSCuo90859

Symptom: Build breakge on xe313_throttle

Conditions: ABS daily build on xe313_throttle

Workaround: There is no workaround.

• CSCuo91733

Symptom: smp packets should not be via LAN interface when FIB updating

Conditions: smp packets should not be via LAN interface when FIB updating

Workaround: There is no workaround.

• CSCuo92907

Symptom: Multiple registration requests are observed on GM

Conditions: Multiple registration requests are observed on GM when the ACL on the KeyServer is modified and rekey is issued

Workaround: There is no workaround.

322Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 357: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCuo94228

Symptom: slow configurations

Conditions: High data path utilizations

Workaround: There is no workaround.

• CSCup09950

Symptom: Traceback was seen in overlord platform during call termination

Conditions: voice calls

Workaround: There is no workaround.

• CSCup11175

Symptom: A memory corruption crash on ASR.The crash is related to SIP Gateway.

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup15661

Symptom: tunnel holddown timer value is not stored in running or startup config and is not preserved on reload

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup17566

Symptom: CPP crash caused by sessions renegotiating authentication and applying QOS

Conditions: Having many CPE renegotiating authentication

Workaround: There is no workaround.

• CSCup18062

Symptom: Memory leak in MallocLite

Conditions: ASR running 03.07.05S

Workaround: There is no workaround. at this time

• CSCup18295

Symptom: A router will crash with a segmentation fault in IOSD: UNIX-EXT-SIGNAL: Segmentation fault(11), Process = CCSIP_SPI_CONTROL

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup21070

Symptom: The ESP module in an ASR1000 series router may reload unexpectedly.

Conditions: This has been observed on an ASR1002 running 15.3(3)S2 (03.10.02.S)

Workaround: There is no workaround. at this time

• CSCup27605

Symptom: SIP GW fails to send dtmf digits after NOTIFY msg

Conditions: SIP GW fails to send dtmf digits after NOTIFY msg while testing with failed image

Workaround: There is no workaround.

323Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 358: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCup30453

Symptom: Large multicast packets are not reaching the receiver.

Conditions: Using IPv6 VFR with multicast

Workaround: There is no workaround.

• CSCup38955

Symptom: master channel Operational state is not-available on USD

Conditions: basic cent topo

Workaround: There is no workaround.

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

This section documents the unexpected behavior that might be seen in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S.

• CSCum18091

Symptom: This is an enhancement request IOS IKEv2 VPN server in ikev2 cluster supports ipv4 address in the redirect payload. As per RFC 5685 section “9.2. REDIRECT”: “FQDN of the new VPN gateway” is a valid payload and should have an option to mention redirect-FQDN. If FQDN is not used then “Untrusted certificate warning” will appear even if gateway have valid trusted certificate installed.

Conditions: ** FQDN is used to connect to the VIP address of cluster ** Trusted valid wild card certificate installed on the gateway or subject alt name contain the FQDN equal to physical IP address of the gateway.

Workaround: Add in ipv4 addresses of all the gateways in the cluster in the SAN attribute of the certificate.

• CSCun87816

Symptom: SAs are not synced after rekey failover test

Conditions: After issuing clear crypto sa standby , show crypto ipsec sa standby | include Status should show the status of both the active and standby router's

Workaround: There is no workaround.

• CSCuo49933

Symptom: DMVPN tunnels down followed by traffic loss

Conditions: This condition is observed when setting scale configuration for DMVPN tunnels.

Workaround: There is no workaround.

• CSCuo52011

Symptom: dynamic tunnels are not formed after clearing crypto session

Conditions: The issue observed during clearing of crypto session with Traffic running.

Workaround: There is no workaround.

• CSCuo52097

Symptom: On the ASR1k router, with DMVPN setup ( hub ---- spoke), ipv4 traffic go through one DMVPN tunnel. ESP100 on hub router crashed every 2 hours.

324Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 359: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Conditions: This symptom was observed with DMVPN setup ( hub ---- spoke), ipv4 traffic go through one DMVPN tunnel. ESP100 on hub router crashed every 2 hours.

Workaround: There is no workaround.

• CSCuo58575

Symptom: Traceback NAT-3-HA_BULK_SYNC_FAIL seen doing redundancy switchover

Conditions: Traceback was observed while performing redundancy switchover and while changing NAT modes.

Workaround: There is no workaround.

• CSCuo61448

Symptom: SIP-SIP DO-DO Transcoded Coded Video Call failing

Conditions: This symptom is observed in image versions are 15.4(2.11)T and 15.4(2.13)T

Workaround: There is no workaround.

• CSCuo78046

Symptom: After chassis reload the standby RP was stuck in booting.

Conditions: RP in slot R1 is active and we reload the chassis

Workaround: Reload the router again.

• CSCuo86893

Symptom: Some SIP flows get classified as unknown in NBAR for Linux.

Conditions: This is relevant for NBAR linux 3.13 and 3.14.

Workaround: There is no workaround.

• CSCuo99846

Symptom: default interface error with virtual-reassembly max-fragments configuration like ip virtual-reassembly max-fragments 64 timeout 60

Conditions: This symptom is observed when no ip virtual-reassembly max-fragments 64 timeout 60 or default interface with ip virtual-reassembly max-fragments 64 timeout 60

Workaround: issue no ip virtual-reassembly instead of no ip virtual-reassembly max-fragments 64 timeout 60

• CSCup01589

Symptom: Traceback cpp_cent_handle_rc_tc_modify might thrownout when reset border router with scale of traffic-classes like 120K.

Conditions: This symptom is observed when you reset border router quickly with scale of traffic-classes like 120K.

Workaround: Shut and then no shut BR with longer time interval like 5~10s.

• CSCup01919

Symptom: cisco-phone maybe missclassifed by 1 packet to sip cisco-jabber-audio maybe missclassifed by 1 packet to unknown.

Conditions: This symptom may occur when there is cisco-jabber-audio or cisco-phone traffic in RP2-ESP160 platform.

• CSCup05051

325Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 360: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: Output of: show flow exporter option application table contains extra characters (spaces or ') in the output

Conditions: This symptom is observed when FNF record contains application name recognition field, parsing of the command output in an automated scripts might fail

Workaround: There is no workaround.

• CSCup05490

Symptom: Crash with "debug voip fpi error" under load

Conditions: Enable "debug voip fpi error" and start the load at 10 cps - 100 sec call hold time. Cube, immediately starts crashing.

Workaround: There is no workaround.

• CSCup05537

Symptom: 012859: May 28 18:15:44.567 IST: %CPPOSLIB-3-ERROR_NOTIFY: F0: cpp_cp: cpp_cp encountered an error -

Traceback= 1#f2ee657dc6dde00068e3d7bf77d48834 errmsg:C249000 2230 cpp_common_os:C916000 C660 cpp_common_os:C916000 C460 cpp_common_os:C916000 19D9C cpp_dsp_svr_lib:F818000 6900 cpp_dsp_svr_lib:F818000 92E8 cpp_sbc_svr_lib:FC2B000 32890 cpp_sbc_svr_lib:FC2B000 388EC cpp_sbc_svr_lib:FC2B000 22434 cpp_common_os:C916000 115D4 cpp_common_os:C916000 11C0C evlib:C621000 E1FC evlib:C621000 105E4 cpp_common_os:C916000 1337C :10 Traceback observed with load with transcoded calls.

Conditions: Traceback observed with the following call flow:

Topology: CUCM ---> SIP ---> CUBE ---> CVP | --------> Media Sense Call flow: 1. CUCM Call CVP via cube. 2. VXML on CVP answers the call & negotiates g711ulaw (rtp-nte) - g711ulaw (inband) Now cube starts the leg with Media sense & forks both leg audio 3. Then CVP transfers the call using REFER back to CUBE 4. CUBE consumes the refer & sends the triggered INVITE to refer-to leg. Refer-To negotiates the g711-g729r8. Now cube starts the leg with Media sense & forks both leg audio

Workaround: There is no workaround.

• CSCup06322

Symptom: Not all mka sessions brought up

Conditions: This symptom is observed after you reload the router

Workaround: There is no workaround.

• CSCup14212

Symptom: IPv6 GETVPN data plane traffic dropped

Conditions: In GETVPN VRF-lite configuration, after un-confgured and then re-configure VRF definition.

Workaround: There is no workaround.

• CSCup21021

Symptom: error overridden is not done .

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup23606

Symptom: Testcases failed since incorrect number of call_legs are obtained .

326Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 361: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup25298

Symptom: Crashes while changing PAP BPA settings.

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup31575

Symptom: HTTPS POST request fails

Conditions: Back to back HTTPS POST request

Workaround: There is no workaround.

• CSCup33329

Symptom: Crashes while changing PAP BPA settings.

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup34474

Symptom: %GDOI-5-GM_FAILED_TO_INSTALL_POLICIES: messages are seen on GM while removing the crypto map from the interface(no crypto map) and configuring a new crypto map to the interface.

Conditions: %GDOI-5-GM_FAILED_TO_INSTALL_POLICIES: messages are seen on GM while removing the crypto map from the interface(no crypto map) and configuring a new crypto map to the interface.

Workaround: There is no workaround.

• CSCup39458

Symptom: observing degradation for LISP feature with XE3.13 and latest mcp_dev image

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup41744

Symptom: The following message, that should appear if the key cannot be found in the IKEv2 keyring is not shown if a debug crypto condition is enabled. IKEv2:% Getting pre-shared key from profile keyring IKEv2_KEYRING IKEv2:% key not found. IKEv2:Failed to initiate sa

Conditions: Key cannot be found in the keyring debug crypto ikev2 enabled debug crypto condition enabled.

Workaround: There is no workaround.

• CSCup49925

Symptom: The GM is not able to process the rekey from the KS when "crypto gdoi ks rekey" is issued on the KS. the syslog IPSEC-3-RECVD_PKT_NOT_IPSEC is generated on the GM.

Conditions: When no client bypass policy is configured and a local ACL is not configured on the GM, the GM is not expected to received the rekey from the KS.

Workaround: After GETVPN config change, if there is issue with rekey, issue "clear crypto gdoi". It will let group member re-register.

327Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 362: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

• CSCup55373

Symptom: CSL Licenses are not presented with their correct status.

Conditions: This occurs following the enabling and disabling of Smart Licensing.

Workaround: If you reload the system in CSL mode, the problem is resolved.

• CSCup57389

Symptom: traffic through the PPP sessions drops

Conditions: While testing VRF Lite coexistance with ServiceProvider NAT for LNS

Workaround: There is no workaround.

• CSCup60370

Symptom: Crash with FTP traffic while B2B NAT redundancy switchover.

Conditions: There are no know conditions

Workaround: There is no workaround.

• CSCup64883

Symptom: Crash observed on clearing fw sessions in B2B HA

Conditions: Stateful traffic flowing through the router

Workaround: Shutdown inside and outside interfaces

• CSCup65311

Symptom: Unable to delete route-map NAT dynamic mapping in B2B HA even with no translations on the box

Conditions: There are no know conditions

Workaround: Use the 'no ip nat ___ force'

• CSCup66865

Symptom: under full scale 2000 branches,with 32k channel each border router, and 160,000 traffic class; on hub MC BR some channel status fail to sync, on hub MC it is ?Operational state: Not-Available(Channel in Initial state)?, but on hub BR the channel is Channel RX state: reachable Channel TX state: reachable

Conditions: There are no know conditions

Workaround: shutdown/no shutdown hub BR to trigger the channel status update to MC

• CSCup67018

Symptom: RTP Packet to DSP payload not seen

Conditions: RTP Packet to DSP payload not seen in dagger proto when making SIP call

Workaround: There is no workaround.

• CSCup70155

Symptom: On an IOS FlexVPN hardware client that's also configured as a DHCP server, when it receives 2 DNS server entries through IKEv2 configuration attributes, it can only import the first DNS server entry passed down from the FlexVPN server into DHCP.

Conditions: This problem is seen when a FlexVPN client is configured to import all DHCP options.

Workaround: There is no workaround.

• CSCup73495

328Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 363: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: Traffic encrypt/decrypt fails with UWS-GETVPN profile

Conditions: while sending traffic and verifying Dataplane counters of a group.

Workaround: There is no workaround.

• CSCup73645

Symptom: All the 4000 tunnels didnt come up on Initiator after rekey

Conditions: All the 4000 tunnels should nt come up on Initiator after rekey

Workaround: There is no workaround.

• CSCup73986

Symptom: Installation of Reg/Rekey policies from KS for group & gm identity has failed

Conditions: policy should not installed from KS for group & gm identity

Workaround: There is no workaround.

• CSCup76401

Symptom: When the “no crypto ikev2 proposal default” command is present in the startup-config, it is no present in the running-config after reload. On the console, the following error is generated at boot time: % Cannot remove as proposal is in use.

Conditions: “no crypto ikev2 proposal default” must be configured

Workaround: Re-enter the command after each boot.

• CSCup78705

Symptom: With crypto enabled on tunnel interfaces which is used by KWAAS to reach WCM, the registration which is https requests fail. but with Crypto disabled the registration is successful.

Conditions: IWAN performance and as part of advanced profile we have following features enable WAAS, PFRv3, AVC, Crypto, DMVPN, QOS, NBAR. Installed CCO image of KWAAS with XE3.13 throttle image. KWAAS image - ISR-WAAS-5.3.5a.5.ova XE3.13 image -isr4400-universalk9.BLD_V154_3_S_XE313_THROTTLE_LATEST_20140626_070148-ext.SSA.bin

Workaround: Remove crypto and then enable cms and things work fine and you will be able to import SSL AO without any issues. Once the AO is installed/imported crypto can be reinstalled once again.

• CSCup78877

Symptom: When the Group member (ASR) registers to the key server, after the installation policies syslogs, trace messages are seen.

Conditions: The group member and key server have GETVPN configurations.The group member registers to the key server

Workaround: There is no workaround.

• CSCup80547

Symptom: When a GETVPN GM receives an ESP packet with an invalid SPI, it generates an erroneous syslog with the following format: "CRYPTO-4-RECVD_PKT_NOT_IPSEC: Rec'd packet not an IPSEC packet. (ip) vrf/dest_addr= /x.y.z.w, src_addr= a.b.c.d, prot= 50"

Conditions: When a GETVPN GM receive an ESP packet with invalid SPI

Workaround: There is no workaround.

• CSCup82655

329Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 364: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Symptom: 1) No output is seen in the output “show performance monitor history interval all” after applying input ACL deny TCP rule on interface GigabitEthernet0/0/1 in UUT and sending the traffic from Pagent to UUT. 2) In TC_8 Current Cache entries not incremented to the value 10 in the output of Command “show performance monitor cache” after applying input ACL deny TCP rule on interface GigabitEthernet0/0/1 and sending traffic from Pagent to UUT. These behavior is observed on ASR1k Platform.

Conditions: 1) Configure static route and performance-monitoring in UUT. 2) Configure traffic stream on pagent with route-change drop option. 3) Configure ACL TCP deny rule on UUT. 4) Start sending traffic from pagent to UUT side. 5) check out the output of CLI “show performance monitor history interval all” and Counter packets value in each interval. The counter packets aggregated value must be 500. Unconfigure static route and performance-monitoring on UUT. Repeat the above steps for MMA traffic drop with flow aggregated and input ACL deny and check the output of “show performance monitor cache”. The current cache entries should reach the expected value 10 after 8 polls.

Workaround: There is no workaround.

• CSCup84620

Symptom: "show isakmp stats" should show counters for "ISAKMP cannot process that SA." "IKE message from x.x.x.x has no SA and is not an initialization offer?

Conditions: There are no know conditions.

Workaround: There is no workaround.

• CSCup86008

Symptom: Parsing error in custom notify payload

Conditions: peer should send custom notify with empty SPI and data

Workaround: There is no workaround.

• CSCup87747

Symptom: The 'Period Used' timer value is not consistent after several SSO switchover.

Conditions: An HA/SSO environment, along with enabled Suite licenses are needed.

Workaround: Do not perform any SSO switchover.

• CSCup90021

Symptom: - IOS sending multiple periodic DPDs at once for the same IKE session - peer responding to DPDs one by one resulting in IOS throwing below message due to received response not related to most recent DPD Jul 15 13:52:35.432: ISAKMP:(1001):R-U-THERE-ACK sequence number 0x7AA2567 does not correspond to expected value 0x7AA2568

Conditions: - on-demand DPDs configured (no matter if on-demand or periodic) - multiple IPsec SAs - loss of decrypts on those multiple SAs at the same time

Workaround: - disable DPDs

• CSCup91659

Symptom: Configure IPv6 address on the BDI interface.

Conditions: Support IPv6 Forwarding and existing IP protocols.

Workaround: There is no workaround.

• CSCuq02180

Symptom: Crash is seen after the call starts

Conditions: the stcapp summary is seen for the voice port.

330Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 365: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

Workaround: There is no workaround.

• CSCuq05961

Symptom: the total rate (offered rate - drop rate) in "show policy-map interface" does not match with the total out rate in "show interface". It seems like the drop rate in the grandparent class and parent class is different of show policy-map interface randomly.(child class is fine) But it does match with the result of IXIA real-time traffic rate with show interface.

Conditions: Environment Generate rate: 6.5Mbps from Gi0/0/1.70(connect to IXIA port 7) to Gi0/0/0.1990 ( connect to IXIA port 8). Packet size: 1340Byte Drop rate: 1.5Mbps in the class-map class-default.

Workaround: Release 15.4(2)S works fine.

331Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 366: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

332Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.13S

OL-26698-25

Page 367: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S. Caveats describe unexpected behavior.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.4S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.4S, page 333

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.4S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.3S

This section contains the following topics:

Identifier Description

CSCut34273 ASR1K, "unknown" process leak under cpp_cp_svr

CSCur31425 ASRNAT: PPTP ALG: Incorrect UNNAT of Peer-Call-ID in Outgoing-Call-Reply

Cisco Systems, Inc.www.cisco.com

Page 368: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.3S

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.3S, page 334

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.3S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search.

Identifier Description

CSCuj68160 iosd crashed @flow_def_field_list_lookup on doing RPSWO

CSCul46792 ISSU:XE311<>XE312 Vfi_qos packet drops after ISSU runversion

CSCul79546 GEC pactrac: show fia-traced packet has unexpected unformatted output

CSCum53269 no ip subnet in l3-custom results in creating custom protocol

CSCuo00449 Nightster- CRC errors on receive side of ten gig interfaces

CSCuo38164 ASR1K: H323 call fails & Traceback noticed with SBC config

CSCuq43357 ASR1K - Y1731 Frame Delay Measurement broken

CSCuq63167 XE313 : PAP address allocation issue - retry with mods to gaddr_unlock

CSCuq66758 ASR1k - CPP ucode crashes on configuring OTV

CSCuq70681 HostDB Timer Corruption Causing Firewall Crashes on ASR 1k

CSCuq75633 BFD down sent from ASR5500 is not recognized by 1K, still sending UP

CSCuq85115 ASR1K enable "ip cef accounting non-recursive” cause fman_rp crash

CSCuq88560 ASR CPP crashes due to stuck thread interrupt

CSCuq91599 ASR1k wccp pending-ack in fman-wccp caused standby-fp reload every 1hr

CSCur00747 ROMMON Upgrade rolled back

CSCur00762 ASR1k - incorrect traffic classification after HW TCAM is exhausted

CSCur09918 ASR1K: RP2 kernel crash

CSCur18685 QOS SG: Lev1 shape rate is de-activated after dynamic config on the fly

CSCur33915 ASR1000 QFP crash due to stuck thread

CSCur46638 XE3.10+ Flapping ATM i/f or VC may cause small memory leak

CSCur57558 To fix limitation of 20sec TBAR for ASR1K GM

CSCur60943 Crash on ASR with OTV configured related to internal timer function

CSCur90494 sbs_entry allocation failure causes ESP crash

CSCus28745 POS FRR issue with traffic loss around 1 sec instead of 50ms

CSCus32530 ASR1K ESP crash in internal L4R removal feature routine

CSCus51697 BDI not working correctly on ipbase license

CSCus62358 ASR1k: MAC based filter does not work with EPC

CSCus69732 IOS-XE: Evaluation of glibc GHOST vulnerability - CVE-2015-0235

CSCus85852 CPP DRV: Disable IIC Interrupts (Revert CSCuq05197)

334Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 369: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S, page 335

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S, page 337

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S

All resolved bugs for this release are available in the Cisco Bug Search Tool through the Resolved bug search. This search uses the following search criteria and filters:

Field Name Information

Product Series/Mode Cisco ASR 1000 Series Aggregation Services Routers

Releases 15.4(2)S2

Status Fixed

Identifier Description

CSCuh07579 IPSec fails to delete or create SAs due to IPSec background process stuck

CSCuj79520 PAP global address usage is growing consistently over time

CSCul48593 Active FP crashed due to stuck threads @ipv4_nat_bpa_free_port

CSCum14512 CRL download for SUBCA resulting in signature verification failure

CSCum84172 DMVPN: Need to protect nodes from being triggered as behind NAT

CSCun06260 Cisco IOS XE Release 3.13 gatekeeper hardening

CSCun82649 NAT-BPA standby crashes

CSCun92244 Active router creates binds with same gaddr, gport for >1 lport

CSCun96598 ASR 1000 Series Router: DS3-MIB objects are showing value 'ZERO' on SPA-2XT3/E3

CSCun99798 dot3Stats counters are not updating on Cisco ASR 1000 Series Fixed Ethernet Line Cards (ASR1000-2T+20X1GE and ASR1000-6TGE).

CSCuo05333 SDK: mcp_dev - crypto engine reports bogus counter with SHA-384 algorithm

CSCuo26237 yyTranslations are not synced on active and standby FP after changing modes

335Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 370: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S

CSCuo37411 Cisco ASR 1000 Series Router CPP crashes with stuck thread in ipv4_nat_pat_block_to_front

CSCuo46913 Crash after running debug cry condition peer subnet

CSCuo50995 Cisco ASR 1000 Series Router LI sets Identification field of packet from IAP to MD to zero

CSCuo61455 Router crashes in NAT with ALG enabled

CSCuo61982 New platform specific command for uRPF loose suppress drop counter increasing

CSCuo85982 High RP/ESP utilization due to unconditional ESS debug for v4 multicast

CSCuo95771 IPSec SA are deleted incorrectly by background process

CSCuo97597 ISSU/MDR XE313->mcp-dev: %CMRP-3-SIP_MDR_FAIL:SIP MDR restart timed out

CSCuo99185 Multiple IOS-XE CPP Ucode crashes due to invalid static route

CSCup10251 QoS functionality breaks due to issues in TCAM, %CPPOSLIB-3-ERROR_NOTIFY

CSCup17566 PP crash caused by sessions renegotiating authentication

CSCup32129 Auto-RP announces packets replication

CSCup34928 RP crashes when configuring and unconfiguring a service continuously

CSCup37676 OTV jumbo packet fragmentation and reassembly causes ASR 1000 Router CPP crash

CSCup48518 FTP ALG create incomplete token in case of EPSV passive

CSCup51926 NAT door creation may be possible getting failed

CSCup53658 Cisco ASR 1000 Series Router QinQ subinterface stats do not work on port channel

CSCup54891 CPP crash due to race condition while release object

CSCup88496 630748069 Serial interface MTU issue on ASR 1006 Router

CSCup98776 ASR 1000 Series Router outbounds SA creation failure, and ESP not processing further requests

CSCuq02069 CUBE-SP HA Calls Fail/High CPU if CRYPTO PKI command entered on Standby

CSCuq05276 ASR 1000 Router CPP crashes in ipv4_nat_esp_remove_conn

CSCuq09004 RP crashed with cpp_cp_svr crash in cpp_qm_event_insert_leaf_node

CSCuq13494 ASR 1000-IPv6 egress ACL intermittently misclassifies and drops ESP packets

CSCuq14700 TDL message buffers memory leak

CSCuq24971 ASR 1000 ucode crash with pa_get_state on using aggregate port channel

CSCuq27271 Fair-queue with time or byte based queue-limit encounters ucode crash

CSCuq49527 ASR 1000 IOSD crashes while configuring IPSLA with Y1731

CSCuq54655 ASR1K:Ucode@PAR1_CSR32_PAR1_ERR_LEAF_INT__INT_PAR1_STEM_CB_SEL_INV_ERR

CSCuq86513 Cisco ASR 1000 Series Router: crash in packet classification

CSCuq90913 OTV: CPP ucode crashes in l2bd_forward when BD conditional debug is enabled

Identifier Description

336Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 371: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.2S

All open bugs for this release are available in the Cisco Bug Search Tool through the Open Bug Search.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S, page 338

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S, page 347

Identifier Description

CSCuq64148 Huge packet drops with CRC errors when ASR 1001x Router is connected to a 3925

CSCum99115 E-Line: Default encapsulation-access interface connect to PE goes down on shut service Inst

CSCun41391 FP crashes on Cisco ASR 1000 Series Router after upgrade from 3.7.2S to 3.11.0S

CSCuj55363 lispgetVpn traffic is dropped when getvpn profile is applied in WAN interface

CSCum80911 Cisco IOS XE Release 3.12: ESP100 TCAM limit is exceeded; hardware TCAM cannot hold with 2000 tunnels

CSCur00762 Cisco ASR 1000 Series Router - incorrect traffic classification after hardware TCAM is exhausted

CSCup57389 Traffic drops while testing VRF Lite co-existence with SP NAT for LNS

CSCun62181 ASR 1000 Router crashes at crypto IPsec update peer path MTU

CSCuq22615 Re-registration after ACL change takes 1 to 2 seconds on ASR 1000 Router and traffic goes in clear

CSCuq82536 ELC-40: Memory leak when configuring MAC filters on port channels

CSCur07193 ELC-40: Cisco ASR 1000 Series Fixed Ethernet Line Card crashes after CSCuq82536 commit when port channel is configured

CSCuq63782 ATM VCs flap when under a large amount of traffic

CSCuq91488 Not punt BFD packet to RP even BFD state changed from Down to Up

CSCuq88560 ASR CPP crashes due to stuck thread interrupt

CSCuq84284 IOS XE crashes while SNMP polling cbQosMatchStmtCfgEntry with NBAR

CSCur09725 Cisco ASR 1000 Series Router crashes when loading NBAR Protocol Pack 10.0.0

337Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 372: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCuo85606

Symptom: ESP80 may crash when tearing down PPP sessions on LNS at scale.

Conditions: Tearing down PPP sessions on LNS.

Workaround: There is no workaround.

• CSCuo56943

Symptom: ASR 1000 ESP card crash, fman_fp_image core file and cpp-mcplo-ucode core file were generated.

Conditions: crash was seen when mpls flow monitor FLOW output command was issued on a interface with some traffic.

Workaround: Configure manually the following monitor/record for MPLS traffic (the native netflow ipv4 original-output doesn't include any MPLS field):

flow record mpls-record match ipv4 tos match ipv4 protocol match mpls label 1 details match ipv4 source address match ipv4 destination address match transport source-port match transport destination-port match interface output match flow sampler collect routing source as collect routing destination as collect routing next-hop address ipv4 collect ipv4 source mask collect ipv4 destination mask collect transport tcp flags collect interface input collect counter bytes collect counter packets collect timestamp sys-uptime first collect timestamp sys-uptime last flow monitor mpls-monitor record mpls-record

• CSCum54014

Symptom: ESP reloads after reporting one or both of the following interrupts:

– CGI_CSR32_CGI_OTHER_LEAF_INT__INT_YIC_M40_TIMEOUT

– PIT_CSR32_PIT_HPI_MISC_LEAF_INT__INT_HPI_ISN_INVALID_ADDRESS_INT

A ucode core file may or may not be created when this event occurs.

Conditions: Only applies to ESP100, ESP200 and ASR1002-X.

Workaround: There is no workaround. The issue is fixed in the following releases: 15.2(4)S6 / XE3.7.6S, 15.3(3)S4 / XE3.10.4S, 15.4(1)S3 / XE3.11.3S, 15.4(2)S / XE3.12.0S, 15.4(3)S / XE3.13.0S.

338Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 373: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCun39803

Symptom: Intermittent connectivity loss between hosts at different OTV sites. Pinging from one host to the other more than 8 times restores connectivity for about 8-10 minutes. The Packet captures show ARP request broadcasts from a host at one site not being received by the host at the other site for about 7-8s, and then suddenly starting to work. This problem has a tendency to get worse over time, with more and more hosts being affected over the course of a week or two until connectivity between sites is essentially gone.

Conditions: ASR1K running 15.4 or 15.3 code, possibly earlier code, with OTV configured.

Workaround: There is no workaround on the ASR 1000 platform so far. Statically configuring ARP entries on the hosts will work.

• CSCuo75390

Symptom: Ucode crash occurs with UWS-WAN_XE311 profile.

Conditions: While verifying NAT64 with traffic on.

Workaround: There is no workaround.

• CSCun60555

Symptom: An ESP crash may occur after removing an MFR interface soon after it was created.

Conditions: This behavior may be seen on IOS-XE platforms running software versions that support MFR. It may be dependent on the timing of the configuration and removal of the interface. The crash only affects the ESP card.

Workaround: It may be possible to avoid the crash by waiting a few seconds after creating an MFR interface before removing it.

• CSCum13378

Symptom: A Cisco ASR 1000 Series router configured as an IPSec endpoint may fail to reassemble fragmented ESP packets. During this failure state, the router will also log %ATTN-3-SYNC_TIMEOUT errors.

Conditions: This symptom occurs due to UDP packet of a specific size received on the clear side of the device.

Workaround: Use software crypto for large packets received on the clear side by configuring post-frag encryption - crypto ipsec fragmentation after-encryption. This will prevent the device from getting into the ATTN_SYNC state.

• CSCun28965

Symptom: The show ip nat translation filter range [inside | outside] [local|glocal] start-ip end-ip command does not filter the output as per the range specified.

Conditions: This symptom occurs on Cisco ASR 1000 Series router.

Workaround: There is no workaround.

• CSCuo41590

Symptom: There are compatibility issues between certain IOS-XE versions and SM-ES3X. With some combinations of SM-ES3X firmware and some releases of IOS-XE, the SM-ES3X will not boot. With the unsupported combinations, the SM-ES3X will not boot.

An error SPA-3-MSG_PARSE_FAILURE:iomd: Failed to parse incoming message from SM-ES3X-24-P slot 2 subslot 0 board 0. The module software may require an update and will be displayed on the IOS-XE console and the SM-ES3X will go into out of service state as shown in the show platform command.

339Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 374: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

router# show platform Chassis type: ISR4451-X/K9 Slot Type State Insert time (ago) --------- ------------------- --------------------- ----------------- 0 ISR4451-X/K9 ok 00:16:02 0/0 ISR4451-X-4x1GE ok 00:13:52 1 ISR4451-X/K9 ok 00:16:02 1/0 SM-X-1T3/E3 ok 00:12:29 2 ISR4451-X/K9 ok 00:16:02 2/0 SM-ES3X-24-P out of service 00:07:54 R0 ISR4451-X/K9 ok, active 00:16:02 F0 ISR4451-X/K9 ok, active 00:16:02 P0 Unknown ps, fail never P1 XXX-XXXX-XX ok 00:15:32 P2 ACS-4450-FANASSY ok 00:15:32

Conditions: Versions of SM-ES3X modules is incompatible with some earlier versions of IOS-XE. SM-ES3x version EJ1 is only compatible with the following major release versions of IOS-XE, or later: 15.3(3)S4 (XE 3.10.4), 15.4(1)S3 (XE 3.11.3), and 15.4(2)S (XE3.12.1).

Workaround: Ensure that a compatible combination of SM-ES3X and IOS-XE images are used. Upgrade/downgrade one or the other to get to a compatible pair.

• CSCuo09341

Symptom: ESP100 crashes while running IPoE subscriber traffic class features.

Conditions: IPoE subscriber traffic class features are configured on Cisco ASR 1000 Series Router platform with ESP100 board.

Workaround: There is no workaround.

• CSCuo11035

Symptom: One-way audio on some outgoing calls to PSTN across CUBE-SP. This is seen for call flow scenarios involving forking and with multiple call legs for the same call going through the SBC.

Conditions: Cisco ASR 1000 Series Router configured as CUBE SP SBC running IOS XE 3.10.1.

Workaround: There is no workaround.

• CSCun97966

Symptom: When packets are sent to crypto, a txnpMaxMtuExceeded message is seen.

Conditions: This symptom occurs only on Cisco ASR 1002x, ASR1000-ESP100, and ASR1000-ESP200 routers.

Workaround: There is no workaround.

• CSCul01335

Symptom: FP may crash.

Conditions: On changing pap limit from 30 to 60 with traffic on.

Workaround: There is no workaround.

• CSCun08855

Symptom: ASR router crashes with IOSd punting packet to port-channel with ERSPAN configured on the router.

Conditions: Port-channel and ERSPAN configured on the router.

Workaround: There is no workaround.

• CSCuo55508

Symptom: A cpp-ucode crash is encountered.

Conditions: Using packet-trace to trace packets in a feature environment where packets are replicated using egress conditions: debug platform packet-trace enable, debug platform packet-trace packet 16 fia-trace, debug platform condition egress, debug platform condition start.

340Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 375: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

Workaround: Do not use fia-trace.

• CSCuo52384

Symptom: ROMMON get_mac_addr and IOSXE IDPROM access fail on booting standby RP2.

Conditions: External USB thumb drive used on RP2.

Workaround: Remove external USB thumb drive on RP2.

• CSCuo55610

Symptom: Incomplete kernel core file with filename ending in TEMP_IN_PROGRESS.

Conditions: Active RP kernel core dump in dual RP2 systems.

Workaround: There is no workaround.

• CSCun04952

Symptom: Traffic which needs to be sent between AppNav-controllers will get lost. Received inter-appnav-controller packets are assigned to the shutdown tunnel interface. As a result, no flows will be synchronized between this appnav-controller and appnav-controllers in the same appnav-controller-group. Asymmetrically routed packet also fails due to lack of flow, and unable to query flow from other appnav-controller.

Conditions: Having a shutdown tunnel interface configured with tunnel source equals to the local appnav-controller IP and tunnel destination equals to the IP of another appnav-controller in the appnav-controller-group (i.e. another ASR router). To detect this problem, the following counter goes up for every dropped packet: show platform hardware qfp active statistics drop | i Disabled. Alternatively you can use a packet-trace feature on 3.10.2 and above to check the dropped reply getting sent to the shutdown tunnel interface.

Workaround: Remove the shutdown tunnel from configuration or un-shutdown it.

• CSCun99766

Symptom: A router crashes while making changes to an AppNav policy map or a class map.

Conditions: This symptom occurs under the following conditions:

– Multiple AppNav controllers are used.

– Sessions are created and can be seen using show service-insertion statistics sessions command.

– AppNav policy map and class map is modified when live traffic is redirected by AppNav.

– Policy map or class map change results in a mismatch between AppNav controllers.

Workaround: When using AppNav Controller Group with multiple ACs, avoid changing the policy map or class map when there are active sessions present (use show service-insertion statistics sessions command).

• CSCuo29770

Symptom: ESP fails to initialize and reboots. The following message will be seen on the IOS console:

*Jan 01 16:22:35.562: %CPPHA-3-INITFAIL: F0: cpp_ha: CPP 0 initialization failed - startup init (0x1) *Jan 01 16:22:35.562: %CPPHA-3-INITFAIL: F0: cpp_ha: CPP 0 initialization failed - start CPP (0x1) The cpp_driver tracelog contains an entry which lists an A41C error code, indicating that the driver was unable to turn on termination.

341Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 376: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

Here is an example: 01/01 16:22:35.120 [cpp-drv]: (ERR): COMP0053/dui/A41C: QFP0.0 - unable to turn on termination for DUI0. This is an intermittent failure, so the ESP will likely initialize successfully on the 2nd or 3rd attempt. This is an initialization issue, and once initialization completes successfully there are no further problems related to this condition.

Conditions: Only ASR1002-x, ESP100 and ESP200 are affected. Router configuration or traffic pattern do not affect this problem. The software is fixed in XE3.7.6S, XE3.10.4S, XE3.11.2S, XE3.12.0S and later releases.

Workaround: There is no workaround.

• CSCun83128

Symptom: PPTP sessions do not come up.

Conditions: Static translation for port 1723 for the inside server, and PAT for the data sessions.

Workaround: Use 1 to 1 mapping.

• CSCuo17719

Symptom: An ESP crash is seen with IPv6 ping to or from an interface configured with IPSec and FNF.

Conditions: The crash is seen when the size of the IPv6 ping is greater than the interface IPv6 MTU.

Workaround: There is no known workaround. However, this is not a common scenario for IPv6 as fragmentation is always handled by the sending host/application.

• CSCun88636

Symptom: Kingpin crashes @ cmcc_2kp_cli_show_plim_status_cb.

Conditions: Kingpin crashes while issuing the show plat hard slot 0 plim status int command.

Workaround: There is no workaround.

• CSCun85761

Symptom: L2 frame checks failure when payload length increases with LDAP algorithm

Conditions: Steps: Translate SIP address into longer address length.

Workaround: There is no workaround.

• CSCue27980

Symptom: A CPP crash triggered by NBAR may occur on Cisco ASR 1000 Series routers, Cisco 4000 Series ISR routers, and Cisco CSR 1000V routers.

Conditions: This symptom may occur under rare conditions of traffic mixture and rate when NBAR and NAT are both enabled.

Workaround: There is no workaround.

• CSCun10918

Symptom: Issue PPP subscribers cannot be terminated in ASR1K, due to object being locked.

Conditions: EVSI Delete Errors: Out-of-Order 0, No dpidb 0, Underrun 0, VAI Recycle Timeouts 90215 =======> large number of VAI recycle timeouts EVSI wrong dpidb type errors 0 EVSI Async Events: Total 92754, HW error 88050 =======> large number of HW errors as well.

Workaround: Remove QOS of the PPP

• CSCun97760

Symptom: ASR that runs 15.2(4)S4 encounters ESP crash due to corrupted H323 packet.

Conditions: ASR that runs 15.2(4)S4 encounters ESP crash due to corrupted H323 packet.

342Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 377: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

Workaround: If customer do not need h.323 algorithm, a workaround is to disable h.323 algorithm using the no ip nat service h225 command.

• CSCun89879

Symptom: Some SIP packets drop with B2B, CGN, and BPA setup.

Conditions: Some SIP packets drop with B2B, CGN, and BPA setup.

Workaround: Reload router.

• CSCum18039

Symptom: Traffic not flowing on a queue following QoS reconfiguration or new interface creation. Also possible inability to change QoS configuration on any interface or create new interfaces/sessions following occurrence of this condition.

Conditions: Queue was previously being over subscribed when it was deleted leaving it in a flowed off congested state such that it would never drain. This issue affects ASR1K using ESP100 or ESP200, ASR1002X, and ASR1001X platforms only (i.e. ASR1K using ESP5/10/20/40 are unaffected by this issue/change).

Workaround: There is no workaround.

• CSCun78318

Symptom: ACLs applied to the mgmte do not work on the new active RP after a RP switch over.

Conditions: After a RP switch over as the old standby RP becomes the new active RP.

Workaround: Remove then reapply the ACLs to the mgmte on the new active RP.

• CSCuo20090

Symptom: The saved ACLs applied to the mgmte from startup-config may not work after the system reload.

Conditions: After system reload.

Workaround: Remove and then reapply the ACLs to the mgmte after system reload.

• CSCun48994

Symptom: The CP process crashes while collapsing a hierarchy layer node that had once exceeded 4000 entries. The collapse occurs when the number of entries fall below 4000.

Conditions: This problem occurs while collapsing a node that had once exceeded 400 entries. The problem is specific to MLPPP, MFR and GEC aggregate because these features require notification when a schedule ID changes. The schedule ID changes when a scheduling node is reconstructed. The issue is hit when the operation involves both the flushing and SID notification.

Workaround: There is no workaround.

• CSCun49087

Symptom: A Cisco ASR 1002x router crashes.

Conditions: This symptom occurs during duty cycle testing with a lot of negative events in the DMVPN setup.

Workaround: There is no workaround.

• CSCum04528

Symptom: A Cisco ASR 1002-X router might crash and reload writing a core file in the process.

Conditions: This symptom occurs with a Cisco ASR1002-X router running NAT with ALG traffic.

Workaround: There is no workaround.

343Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 378: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCun37698

Symptom: An ESP might crash.

Conditions: The device has NAT and WCCP configured. It looks like WCCP fails to setup the output interface correctly. This leads to NAT accessing a bad location in memory which causes a crash. The exact conditions are still being analyzed.

Workaround: There is no workaround.

• CSCun36785

Symptom: A Cisco ASR1002X production router acting as a WAN-Aggregator reloads unexpectedly after pushing the AVC configuration from Cisco Prime infrastructure through an SSH session. The configuration push was successful onto the box, and the flow statistics were exported to the PI. However, after 30 minutes, the router reloaded with a "CPP mcplo_ucode" crash and a "fman_fp" crash. The box is configured with IKEv2 DMVPN and basic NAT, along with BGP and EIGRP. Four static NHRP tunnels from different branch locations terminated onto this box. All traffic from the branches were encrypted, decrypted on this router and NAT was applied to the decrypted traffic before sending it out of the port-channel interface towards the production network.

Conditions: This symptom is observed on a Cisco ASR 1002X router running CCO IOS-XE version 3.10.1. The crash has occurred only once. Currently AVC configurations have been backed out and the router is stable. This affects the AVC deployment on the network seriously.

Workaround: There is no workaround.

• CSCun26943

Symptom: In an INTRA-box redundancy configuration, the STANDBY FP and ACTIVE FP may not be syncing data plane. HA records robustly. The easiest way for the customer to recognize if this is happening is by examining the output of the show platform hardware qfp active system intra and the show platform hardware qfp standby system intra commands. If the output shows the counters "rx dropped" and/or "retx" continuously incrementing, then this problem may have been encountered.

Conditions: DUAL FP systems with stateful HA features such as NAT configured.

Workaround: There is no workaround.

• CSCun87685

Symptom: ASR1006/15.4(1)S crashed while adding port and host specific deny statements on specific lines for the WCCP-Redirect ACL.

Conditions: Adding port and host specific deny statements on specific lines for the WCCP-Redirect ACL.

Workaround: There is no workaround.

• CSCun83231

Symptom: After sub package ISSU operation is performed, ELC does not come up and the following error messages are seen:

*Mar 19 23:10:10.607 PDT: %PMAN-0-PROCFAILCRIT: SIP1: pvp.sh: A critical process mcpcc_lc_ms has failed (rc 127) *Mar 19 23:10:10.865 PDT: %PMAN-5-EXITACTION: SIP1: pvp.sh: Process manager is exiting: critical process fault, mcpcc_lc_ms, cc_1_0, rc=127

Conditions: Issue is seen specific to ASR1000 Ethernet Line Cards (ELC): ASR1000-2T 20X1GE and ASR1000-6TGE line cards, and sub package upgrade. Issue is seen across all releases that support ELC.

Workaround: Consolidated upgrade can be performed.

344Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 379: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCum99077

Symptom: fman_rp process crashes. RP card is reloaded.

Conditions: When routing loop occurs in network and causes massive routing information update, an internal logic error may be triggered.

Workaround: Avoid routing loop.

• CSCuo02558

Symptom: Crash in cpp_cp_svr when executing the show platform packet-trace packet all command.

Conditions: Crash can only occur when executing the show platform packet-trace packet all command.

Workaround: Display a single packet at a time using the show platform packet-trace packet num command instead of using all.

• CSCun32035

Symptom: Configured following features as part of IWAN performance testing for UTAH platform: AVC, PFR, QoS, AppNav, WAAS, DMVPN, and Crypto. Make sure DMVPN and MPLS tunnels are up and performance monitor, WAAS and crypto are enabled for these tunnels. Router crashes with traffic profile.

Conditions: Traffic profile includes, voice, http, and media traffic. A crash is seen as soon the traffic is initialized at less than 15% of load.

Workaround: There is no workaround.

• CSCum85493

Symptom: Ping fails with tunnel protection applied.

Conditions: Tunnel protection applied on GRE tunnel interface, using IKEv1 to negotiate IPsec SAs and remote node (IKEv1 responder) behind NAT.

Workaround: The users can switch to IKEv2.

• CSCun69811

Symptom: A customer on active box would only like to use the no activate commad for a single delegate registration entry below:

subscriber sip: [email protected] sip-contact sip: [email protected] adjacency CUCM-llab delegate-registration sip:test.site.com adjacency PSTN-lab-SIP-CONNECT-test-lab profile SIP-CONNECT_TIMERS activate

Conditions: Sessions are deactivated and the stand-by router crashes.

Workaround: The no activate command must be executed at the delegate-registration sub section. This will prevent the deactivation of the sessions.

• CSCum66182

Symptom: SNMP Query on the object dot3StatsDuplexStatus is shown as unknown.

Conditions: While testing Ether-Like MIB for ASR1000-6TGE.

Workaround: There is no workaround.

• CSCum81041

Symptom: One-way audio incoming calls are redirected through CVP.

Conditions: Call flow:

345Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 380: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

Caller----G711----TDM GW----SIP-----ASR1K----SIP-----CUSP----SIP----CVP(Vz0)----IP-IVR | | -----SIP---CVP (BAMS) | |--------SIP---CUCM---Agent Phone (G729 only)

Initially, the caller is connected to IP-IVR, both ingress and egress leg of the CUBE is doing G711. Call is connected to the IP-IVR, then CVP sends a refer to the VXML GW for playing prompts and ringback tone. When the call is transferred to the agent, CUBE negotiated G729 at the sip level with the CVP, but because of mid-call signaling block on the ingress side, continue with the G711. Hence, xcoder is invoked on the CUBE to handle G729 to G711 and vise-versa, but CUBE is still sending G711 media to the agent phone side while the agent phone is sending G729 media to the CUBE.

Workaround: There is no workaround.

• CSCun84368

Symptom: Net flow cache entry is not created for IPV6 flows, and entries for IPv4 entries is not accurate. For IPv4 entries, the BGP next hop is not updated and set to 0.0.0.0.

Conditions: Upon Execution of RP switchover.

Workaround: After RP switch-over, remove BGP configuration from Core router ("P"), and configure it back. Upon BGP update on PE router, the BGP-NH will appear in FNF records.

• CSCun02605

Symptom: ASR crashes with no known trigger in CCSIP_SPI_CONTROL process.

Conditions: It is an error scenario where crash occurs when router is not able to send ACK for 200 OK where branch parameters differ.

CUBE INVITE | INVITE (Via branch=ABC) ----------------------------->| ----------------------------------------> | 200 OK (Via branch=DEF) | <----------------------------------------- | Cube fails to send ACK to 200 OK for some reason and causes a crash.

Workaround: There is no workaround.

• CSCuo04588

Symptom: Signal quality on 10G port using SFP-10G-LR and SFP-10G-ZR are poor. Some packets are lost as CRC errors at 10G full bandwidth traffic test.

Conditions: This is seen on 1RU-VE built-in 10G ports with software version 15.4(02)S

Workaround: There is no workaround, except to upgrade the software.

• CSCuo00449

Symptom: CRC receive side errors have appeared on a variety of P4/P5 Nightster units utilizing both SR and LR optics during traffic flow tests. Not all units are experiencing the issue at present. Approximately, 10% of traffic are lost due to this issue at full 10G bandwidth traffic.

Conditions: This issue is seen on release 1RU-VE routers built-in 10G port running on software version 15.4(02)S.

Workaround: There is no workaround except to upgrade the software.

• CSCun73043

Symptom: Copper SFP (SFP-GE-T) interface in subslot 0/0 of Nightster does not come up with 10/100 mbps forced speed.

Conditions: The copper sfp (SFP-GE-T) interface hit this condition after router power cycle is issued.

Workaround: There is no workaround.

346Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 381: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCuo38164

Symptom: Traceback and log error is noticed.

Conditions: While initiating H323 call with the SBC feature.

Workaround: There is no workaround.

• CSCun86123

Symptom: ATOM port-mode xconnect is up, but all traffic under the l2 vc is dropped and statistics shown under show mpls l2 vc detail command are zero.

Conditions: On reloading the router multiple times continuously with traffic on port-mode ATOM vc, at times the VC does not come up. This issue is seen only on the SPA SPA-2CHT3-CE-ATM.

Workaround: Shut/no shut of the controller on which the port-mode ATOM vc is created.

Example:

Bnet-A1(config)#controller Bnet-A1(config)#controller E3 1/3/0 Bnet-A1(config-controller)#shu Bnet-A1(config-controller)#shutdown Bnet-A1(config-controller)#no shu Bnet-A1(config-controller)#no shutdown Bnet-A1(config-controller)#

• CSCuo89971

Symptom: When configured as virtual tunnel end point (VTEP), the Router stops processing any data. It even fails to establish the OSPF neighbor relationship post the reload.

Conditions: When configured as VTEP, traffic stops on all Ports of the Ethernet Line Card after sometime. The problem also happens with packets going out of the ELC Ports having Multicast MAC address as destination MAC in the Ethernet header. The problem occurs only with ASR1000-6TGE/ASR1000-2T 20X1GE if any of the 1G/10G ports have egress Multicast MAC traffic.

Workaround: Reload the Line card and stop egress Multicast MAC traffic.

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCum99115

Symptom: In EFP xconnect setup, if local access EFP is default encap, local EFP state change from up to down will trigger remote CE interface down. This is the remote host shutdown feature.

Conditions: Occurs under he following conditions:

– Xconnect configured under EFP

– EFP is default encapsulation type

– Local EFP is down

Workaround: There is no workaround.

347Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 382: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCun57777

Symptom: Broadcast Packets are dropped after adding EVC config to ASR 1002 Router. The issue happened on and before Release 3.09.02. The issue doesn't happen on and after Release 03.10.00. After adding evc config, broadcast packets are dropped, L2BDReplicationStart is counted, and replication tree information disappears.

Conditions: on and before 03.09.02.

Workaround: To execute no shutdown command under service instance before configuration change.

• CSCuo77017

Symptom: The team resource has not released after 32k EFP is configured and deleted on the ASR 1001 Router.

Conditions: With a configuration running 3.13 image, configure 32k EFP and check the tcam resource on the ASR 1K and delete the EFP. Then check the tcam on the asr1k, and will find the resource has not been released.

Workaround: Reload the router or FP.

• CSCue91054

Symptom: ESP Crashed when sending IPv6 fragmented traffic through dmvpn hub(mgre tunnel).

Conditions: This happens when sending big IPv6 packets (need to do IPv6 fragmenation after adding tunnel header) traffic through dmvpn hub (mgre tunnel). Large amount of IPv6 fragment traffic (for example, 5G on ESP20) which exceeds reassembly performance number (less then 2G).

Workaround: Change MTU to avoid IPv6 fragmentation.

• CSCup05568

Symptom: BFD failing on RSP Failover on ASR1K with scale configuration.

Conditions: RSP Failover.

Workaround: There is no workaround.

• CSCuo85191

Symptom: Crashes on ASR 1000 Router.

Conditions: Memory allocation is failed.

Workaround: There is no workaround.

• CSCuo85982

Symptom: High RP and ESP utilization and generation of many large (~ 1 MB) logging files with names of the form "cpp_cp_F*".

Conditions: IPv4 multicast packets received on interfaces configured for IP subscriber sessions.

Workaround: There is no workaround.

• CSCuj55363

Symptom: In the LISP getVpn solution test, when the getvpn profile is applied in physical interface in the data path flow (such as interface between GM1 to core), the traffic gets dropped with qfp error of IpsecIkeIndicate"/"OUT_V4_PKT_HIT_IKE_START_SP when the getvpn profile is applied to the LISP0 interface. The encrypted traffic flows in the LISP setup properly.

Conditions: getvpn profile is applied to the physical interface instead of lisp interface.

Workaround: Apply getvpn profile in the LISP interface.

348Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 383: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

• CSCum80911

Symptom: On ASR1006 system, on the DMVPN hub, with 2K ipv4 tunnel over ipv6 transport. When do clear crypto session on hub and spoke twice, ESP is crashed.

Conditions: On ASR1006 system, on the DMVPN hub, with 2K ipv4 tunnel over ipv6 transport. when do clear crypto session on hub and spoke twice, ESP is crashed.

Workaround: There is no workaround.

• CSCup17060

Symptom: ESP crashes at imgr_pktc_cmdsmapcreate_impl.

Conditions: Multiple RP switchovers with 10K flexvpn sessions with traffic

Workaround: There is no workaround.

• CSCun23996

Symptom: DPSS session is not cleared from the router when the dpss application ends gracefully. The session get cleared automatically after approx 3 mins. During this time, application with same application name cannot reconnect.

Conditions: Provide the conditions.

Workaround: Run the following command on router to clear the session immediately: one stop session all or Wait for the session to get cleaned automatically, or terminate the application ungracefully (ctrl + c).

• CSCun41391

Symptom: FP crash after the IOS-XE upgrade to 3.11.0S.

Conditions: ASR 1K router running 3.11.0S.

Workaround: There is no workaround.

• CSCuo22413

Symptom: ASR1000 may crash unexpectedly.

Conditions: The crash is due to Flexible Net flow aging timers.

Workaround: There is no workaround.

• CSCun62181

Symptom: ASR1002 running asr1000rp1-adventerprisek9.03.04.06.S.151-3.S6.bin crashes at crypto ipsec update peer path mtu.

Conditions: None.

Workaround: There is no workaround.

• CSCup19109

Symptom: ASR1k crashes in SIP code.

Conditions: None.

Workaround: There is no workaround.

• CSCun25912

Symptom: When using the Anyconnect autoreconnect feature on the ASR platform, configurations dynamically applied to the virtual-access interface might be lost over the reconnection.

Example, the interface after initial connection establishment would have a QOS service policy applied:

349Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 384: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.1S

ROUTER#sh derived-config int virtual-access 1 ! interface Virtual-Access1 ip unnumbered GigabitEthernet0/0/1 tunnel source 10.1.1.1 tunnel mode ipsec ipv4 tunnel destination 10.10.1.100 tunnel protection ipsec profile ipsec-profile no tunnel protection ipsec initiate service-policy input INPUT-POLICY end After reconnection the INPUT-POLICY is missing:

ROUTER#sh derived-config int virtual-access 1 ! interface Virtual-Access1 ip unnumbered GigabitEthernet0/0/1 tunnel source 10.1.1.1 tunnel mode ipsec ipv4 tunnel destination 10.10.1.100 tunnel protection ipsec profile ipsec-profile no tunnel protection ipsec initiate end

Conditions: This has been observed with configurations being applied from the user AAA profile over Radius authentication. Affected parameters observed are QOS service policies and access-group.

Workaround: Do not use the reconnect feature or apply those configurations directly to the Virtual-Template (if this is an option).

• CSCtx72973

Symptom: Config-sync failure is seen when unconfiguring the crypto gdoi group.

Conditions: Seen on HA setup.

Workaround: There is no workaround.

• CSCum25373

Symptom: Traceback is seen.

Conditions: MSRPC regression test (mcp_alg_msrpc.tcl) is run

Workaround: There is no workaround.

• CSCup37676

Symptom: ASR1K crashes when pinging end-to-end over OTV with a frame size greater than (MTU-42) bytes.

Conditions: This has been seen on two ASR1002-X's running IOS-XE 03.10.01.S. Crash was seen when passing large packets across an OTV topology.

Workaround: Limit oversize packets across overlay topology.

• CSCup38743

Symptom: FTP signaling goes through fine across the ASR in the broken state, but the FTP Data session ( for both active/passive) does not get established.

Conditions: ASR running any of the recent IOS XE code after 3.7.3 with CGN shows this problem after normal operations for about every 2-5 hours.

Workaround: Either clear all the NAT translations ( clear ip nat trans * ) or reload the ESP or issue is not seen on the IOS versions before XE 3.7.3 ( including).

• CSCup11246

Symptom: When doing ISSU super-pkg/sub-pkg upgrade/downgrade between XE3.12.0 CCO to/from latest XE3.12.1 throttle image with Broadband features, Stdby RP fails to come online within the expected time (around 10 mins) and it takes ~18 mins to come to STANDBY HOT state. Noticed that the process CCM RP(82) stucks about 8 mins.

Conditions: Fix for DDTS CSCuo84195 ISSU xe310<>xe311: STBY-RP stuck in process @CCM RF(82) after loadversion Is causing this DDTS.

350Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 385: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS

Though DDTS CSCuo84195 issue is introduced in XE3.11.0, but only identified and fixed recently. Without this DDTS there will be an ISSU issue between XE310 <-> XE311 (or XE312 or XE313)+ images.

After the fix following are the compatible and versions, XE3.10.3 <-> XE3.11.2 <-> 3.12.1 <-> 3.13

Since we cannot commit to already existing labels of XE3.11.0, XE3.11.1 XE3.12.0, this will be known breakages and issu between these image to any latter image will fail.

Workaround: There is no workaround.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS

This section contains the following topic:

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS, page 351

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS

This section documents the open issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS:

• CSCuj86660

Symptom: The CLI is currently not supported. The mapping option is not available if the user types a ? after the buffer keyword, as shown in the example below:

Router# show platform hardware slot 0 plim buffer ?

settings PLIM buffer settings

Router# show platform hardware subslot 0/0 plim buffer ?

settings PLIM buffer settings

| Output modifiers

<cr>

Router# show platform hardware port 0/0/0 plim buffer ?

settings PLIM buffer settings

The following list of CLIs will point the user to the show platform hardware port 0/0/0 plim buffer ? command:

– show platform hardware slot 0 plim qos input bandwidth

– show platform hardware subslot <slot/card> plim qos input bandwidth

– show platform hardware subslot <slot/card> plim qos input map counters

– show platform hardware port <slot/card/port> plim qos input map counters

– show platform hardware port <slot/card/port> plim qos input bandwidth

– show platform hardware interface <interfacename> plim qos input map counters

– show platform hardware interface <interfacename> plim qos input bandwidth

Conditions: An error would occur if the user tries to execute the CLI as below:

351Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 386: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.aS

Router# show platform hardware slot 0 plim buffer mapping ^ % Invalid input detected at '^' marker

Workaround: For the built in SPA ports (sub slot 0/0), use the following port mapping for PLIM commands:

• CSCuo41369

Symptom: VLAN error reported on the native GE port independent of port speed, which is connected to a C3750G GE switch.

Conditions: The configuration of the UUT port is default and the switch port is:

switchport access vlan 2 switchport mode dot1q-tunnel no cdp enable

Workaround: The current workaround is to implement a different GE Switch model in this environment.

• CSCum54014

Symptom: The router reloads randomly when the CPU utilization is near 100% and flexible Netflow with a sampler is configured.

Conditions: The router reloads randomly when running performance tests at near 100% CPU utilization with Flexible Netflow and 1-out-of-10 sampler. No configuration changes are seen at the time of the crash, only running traffic is seen at various levels and monitoring CPU/memory utilization. The sampler configuration seems to be the trigger, and the crash doesn't happen with plain Flexible Netflow. Also, the crash is only seen with IPv4 traffic. IPv6 traffic does not produce the crash with the same configuration.

Workaround: Use Flexible Netflow without the sampler configured.

• CSCuo44165

Symptom: The ASR 1001-X Router may reload when a very large scale IPv6 ACL/ACE configuration is utilized.

Conditions: Large scale IPv6 ACL config is used: 4000 IPv6 ACL (each ACL has 6 ACE) with total 24000 ACE per system.

Workaround: There is no workaround.

• CSCuo16316

Interface Number Interface Name

Interface 0/0/0 TenGigabitEthernet0/0/0

Interface 0/0/1 TenGigabitEthernet0/0/1

Interface 0/0/2 Crypto-Engine0/0/8

Interface 0/0/3 GigabitEthernet0/0/0

Interface 0/0/4 GigabitEthernet0/0/1

Interface 0/0/5 GigabitEthernet0/0/2

Interface 0/0/6 GigabitEthernet0/0/3

Interface 0/0/7 GigabitEthernet0/0/4

Interface 0/0/8 GigabitEthernet0/0/5

352Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 387: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Symptom: COS Based classification of Ethernet packets for the BUILT-IN-2T 6X1GE SPA might not work. Packets will hit the QIN-ANY entry if configured first, rather than explicitly configured QINQ entry and pick up the classification policy for QIN-ANY entry.

Conditions: This problem only occurs if the user configures the QINAny entry followed by an explicit QINQ entry. For example, encap dot1q 50 second-dot1q any encap dot1q 50 secnd-dot1q 10 encap dot1q 50 secnd-dot1q 50. So all the packets that have the outer VLAN tag as 50 will always hit the hardware entry corresponding to the entry 50-any which will cause the classification policy of 50-any to be applied to entry 50-10 and 50-50 as well.

Workaround: Configure explicit QINQ tagged entries first followed by the QINAny entry.For example, <Explicit tags should go first during configuration> encap dot1q 50 secnd-dot1q 10 encap dot1q 50 secnd-dot1q 50 <Make sure to configure the QINAny entry as the last entry> encap dot1q 50 second-dot1q any.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S, page 353

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S, page 361

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S.

• CSCuj04100

Symptom: ASR 1000 Router crashed with the following error message:

CPPHA-3-FAULT F0: cpp_ha: CPP:0.0 desc:INFP_INF_SWASSIST_LEAF_INT_INT_EVENT0 det:DRVR(interrupt) class:OTHER sev:FATAL id:2121 cppstate:RUNNING res:UNKNOWN flags:0x7 cdmflags:0x8

Conditions: ASR 1000 Router running 03.10.00.S with configured zone based firewall.

Workaround: There is no workaround.

• CSCun01152

Symptom: An IOS-XE router may reload unexpectedly when zone-based firewall is configured.

Conditions: Zone-based firewall is configured and may be dependent on many active MSRPC sessions.

Workaround: There is no workaround.

• CSCul06361

Symptom: When subscriber session is created with ip subscriber interface on subinterface in shutdown state, after bringing the subinterface up, the out packet counters are not increasing. Subscriber does not have IP connectivity, since traffic is going only in one direction.

Conditions: ASR 1K ISG running IOS XE 3.7.4.S (15.2(4).S4), with ip subscriber interface created from subinterface in the shutdown state.

353Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 388: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Workaround: Clearing subscriber session when subinterface is up/up will re-establish session when the connectivity is restored.

• CSCul48822

Symptom: While provisioning an ISG IP Subscriber session, it is possible to leak an ESS segment chunk (IOSXE ESS SEG).

Conditions: The memory leak may occur when there is an error provisioning an ISG IP subscriber session.

Workaround: There is no workaround.

• CSCuh03476

Symptom: Tracebacks are seen while configuring APS parameters on a PoS link.

Conditions: Occurs during normal CLI configurations.

Workaround: There is no workaround.

• CSCui22356

Symptom: When Subpackage ISSU Upgrade is performed on ASR1002-X router after upgrading the standby RP (R0/1) with new RP subpackages, switchover is forced from the active IOS process to the standby IOS process. During the switchover, new active RP performs configuration Bulk-Sync with the standby RP. During this Bulk Sync operation, the configuration related to the interfaces is not synced to the standby due to Bulk Sync MCL failures.

The following sample error message will be displayed when this error is present:

Config Sync: Bulk-sync failure due to Servicing Incompatibility. Please check full list of mismatched commands via: show redundancy config-sync failures mcl Config Sync: Starting lines from MCL file: interface Tunnel150 ! <submode> "interface" - tunnel source GigabitEthernet0/0/0.34 <..............> Standby takes more time(~744 seconds) for reaching terminal State.

Conditions: The symptom is observed after redundancy force-switchover step in ISSU upgrade procedure.

Workaround: Perform a standby IOS reload using the hw-module subslot R0/0 reload command.

• CSCui72473

Symptom: When the Traffic is flowing through ATM1xOC3, the rate of flow fluctuates very faster and the counters does not match. The show interface atm0/3/0 | i pack command can be used repeatedly to check the rate.

Conditions: The traffic should be flowing through ATM SPA.

Workaround: There is no workaround.

• CSCui76166

Symptom: TTB Rx information is not getting updated on one ASR 1000 Router serial interfaces - Bident.

Conditions: Range of framing type.

Workaround: Default interface and reconfigure OR OIR Bident.

• CSCui87851

Symptom: Incorrect end interface number range as 0 to 6.

Conditions: While trying to configure built-in GigE interfaces with interface range command

Workaround: There is no workaround.

• CSCui91872

354Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 389: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Symptom: When configuring the following commands on ASR 1000 platform, you get the errors mentioned below:

– exception memory ignore overflow io frequency 30 maxcount 5

– exception memory ignore overflow processor frequency 30 maxcount 5

Error:

. F340.09.25-ASR1000-1(config)#$re overflow processor frequency 30 maxcount 5 F340.09.25-ASR1000-1(config)# *Aug 22 12:54:24.920: exception configuration not implemented *Aug 22 12:54:24.920: PARSE_RC-4-PRC_NON_COMPLIANCE< http://www.cisco.com/cgi-bin/Support/Errordecoder/index.cgi?action=search&counter=0&paging=5&links=reference&index=all&query=PARSE_RC-4-PRC_NON_COMPLIANCE> ; `exception memory ignore overflow processor frequency 30 maxcount 5'

Conditions: Hardware and software on ASR1k and all IOS platforms, should have non zero values in following commands:

– exception memory ignore overflow io frequency 30 maxcount 5

– exception memory ignore overflow processor frequency 30 maxcount 5

Workaround: There is no workaround.

• CSCuj14019

Symptom: %CMRP-3-UDI_AUTH: F0: command: Quack Unique Device Identifier authentication failed, show up on ASR1001 Router.

Conditions: After reloading the box or inserting SFPs.

Workaround: There is no workaround.

• CSCuj30033

Symptom: ATM interface - SPA-1XOC3-ATM-V2 - shows counters frozen when interface is shut down.

Conditions: Running traffic over an ATM (SPA-1XOC3-ATM-V2) interface and then shutting down the interface.The interface counters remain frozen and do not return to zero.

Workaround: There is no workaround.

• CSCul35389

Symptom: Following error messages are observed with SPA reload: ================================================================== Nov 26 2013 15:14:31.496 EST: %SERVICES-3-NORESOLVE_ACTIVE: SIP0: mcpcc-lc-ms: Error resolving active FRU: BINOS_FRU_RP Nov 27 2013 17:31:42.464 EST: %SERVICES-3-NORESOLVE_ACTIVE: SIP0: mcpcc-lc-ms: Error resolving active FRU: BINOS_FRU_RP The process mcpcc-lc-ms is held down and the SIP is reloaded.

Conditions: Errors are observed when SPA is reloaded.

Workaround: There is no workaround.

• CSCul45015

Symptom: The show platform hardware port slot/bay/interface plim statistics command does not work correctly. In case of ingress plim classification, the RX high counters are always shown as zero. This is observed on ASR1002-X Router.

Conditions: Plim ingress classification classifies the ingress classification into two HIGH and LOW priority traffic. Note that this is not about the classification not happening correctly. Traffic is classified correctly, it is just that the 'RX high priority' counters under the show platform hardware port slot/bay/interface plim statistics command are not displayed (always shown as 0).

Workaround: There is no workaround.

355Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 390: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

• CSCul94622

Symptom: On an ASR 1000 router with CT3 SPA, Malloc Failures and SPA firmware download failures are seen.

Conditions: SPA should have many channels configured (more than 50% of its maximum capacity) and SPA soft reload is done.

Workaround: There is no workaround.

• CSCug91353

Symptom: Clear command for punt-policer statistics are not logical and located under: show platform hardware qfp active infrastructure punt policer command.

Conditions: Attempting to clear statistics of counters depicted using the show platform soft punt-policer command.

Workaround: Use the show platform hardware qfp active infrastructure punt policer clear command.

• CSCui77763

Symptom: The show platform software memory qfp-control-process qfp active command is not working.

Conditions: Execution of the show command.

Workaround: There is no workaround.

• CSCuj35119

Symptom: Upon installing metro ip services and performing a RP switchover, memory leak is noticed:

Address Size Alloc_pc PID Alloc-Proc Name 353DE1BC 76 10094D50 0 *Dead* open license master.i info

Conditions: When this condition occurs perform the following:

1. Install metroIPservices license.

2. Perform SSO.

3. Show memory debug leaks.

Workaround: There is no workaround.

• CSCul17693

Symptom: On the ASR1000 platform family, CISCO-ENHANCED-MEMPOOL-MIB & CISCO-MEMORY-POOL-MIB show lsmpi_io pool is available with little free memory. As a result, various SNMP management software applications may generate an error notification.

Conditions: This condition is shown from the moment the router boots up. The lsmpi_io pool is used on the Route Processor of all ASR1000 routers. Unlike other IOS versions, IOSd on the ASR is a process running on IOS XE. IOSd has a single logical interface, which communicates to IOS XE. This interface is called the Linux Shared Memory Punt Interface (LSMPI). When the ASR 1000 Router boots up, the lsmpi_io pool is created and nearly all of the memory is allocated up front by design. Therefore, the little free memory shown in the MIBs is by design and does not indicate an error condition.

Workaround: There is no workaround for the lsmpi_io pool having little free memory. If some other piece of software is generating alarms for this reason, the management software needs to be adjusted.

• CSCud63220

356Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 391: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Symptom: Tunnel interface QoS tail drop counter reported at physical interface. Service policy is applied on the tunnel 5432. Drops are seen on the output of show policy-map tunnel 5432 command. Drops are seen on the physical interface over which the tunnel is built. NO drops are seen on the Tunnel interface. From the output below, OQD is 0 for the tunnel interface.

Router# show platform hardware qfp active statistics drop ------------------------------------------------------------------------- Global Drop Stats Packets Octets ------------------------------------------------------------------------- TailDrop 753351 63281484 BGL.Q.20-ASR1K-1#show inter summary <snip> Interface IHQ IQD OHQ OQD RXBS RXPS TXBS TXPS TRTL ----------------------------------------------------------------------------------------------------------------- * GigabitEthernet0/0/1 0 0 0 753351 0 0 735000 1094 0 * GigabitEthernet0/0/2 0 0 0 0 8648000 18016 0 0 0 * Tunnel5432 0 0 0 0 0 0 12697000 22674 0

Conditions: When packets are dropped on a tunnel interface, the output of the show platform hardware qfp act interface all statistics drop_summary command and show interface summary would only show the dropped packets against the phsyical interface, which made it difficult to determine which tunnel the packets were being dropped on.

Workaround: There is no workaround.

• CSCui13063

Symptom: QoS on Service instances using COS matching in the child level of a hierarchical policy-map may fail to properly match traffic. Traffic may be classified into an incorrect QoS class.

Conditions: Using COS matching in the child level of a hierarchical QoS policy-map on a service instance.

Workaround: Use a flat policy map, if possible.

• CSCul03067

Symptom: Tunnel interface QoS tail drop counter reported at physical interface. Service policy is applied on the tunnel 5432. Drops are seen on the output of the show policy-map tunnel 5432. Drops are seen on the physical interface over which the tunnel is built. NO drops are seen on the Tunnel interface. From the output below OQD is 0 for the tunnel interface

Router# show platform hardware qfp active statistics drop ------------------------------------------------------------------------- Global Drop Stats Packets Octets ------------------------------------------------------------------------- TailDrop 753351 63281484 BGL.Q.20-ASR1K-1#show inter summary <snip> Interface IHQ IQD OHQ OQD RXBS RXPS TXBS TXPS TRTL ----------------------------------------------------------------------------------------------------------------- * GigabitEthernet0/0/1 0 0 0 753351 0 0 735000 1094 0 * GigabitEthernet0/0/2 0 0 0 0 8648000 18016 0 0 0 * Tunnel5432 0 0 0 0 0 0 12697000 22674 0

Conditions: When packets are dropped on a tunnel interface, the output of the show platform hardware qfp act interface all statistics drop_summary command and show interface summary would only show the dropped packets against the phsyical interface, which made it difficult to determine which tunnel the packets were being dropped on.

Workaround: There is no workaround.

357Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 392: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

• CSCul70833

Symptom: Byte-based queue-limit does not work correctly when fair-queue is configured.

Conditions: Using fair-queue feature simultaneously. The issue can happen on ASR 1000 Router. The issue is found on 15.3(3)S.

Workaround: Use packet-based queue-limit instead of byte-based queue-limit.

• CSCum66678

Symptom: When per-tunnel QoS is configured on a DMVPN hub, the ESP memory may become exhausted due to a memory leak. This could cause the ESP to reload.

Conditions: If there are a large number of DMVNP spokes and the spokes flap, then memory on the ESP is allocated and not freed. This could cause the memory exhaustion on the ESP and thus case the ESP to reload.

Workaround: One could monitor the ESP memory usage and if it is getting low, then reboot the ESP during a mainance window. The command show platform software memory qfp-control-process qfp act brief | inc I/F can be used to determine if memory is being consummed due to this issue.

Example:

Router# show platform software memory qfp-control-process qfp act brief | inc CPP I/F DB module allocated requested allocs frees ------------------------------------------------------------------------------ CPP I/F DB 128 48 5 0 <== normal condition is 5 allocs at bootup that is not freed (one spoke flapped) CPP I/F DB 8172 8076 6 0 <== 1 additional alloc of 8028 (2k spokes in network) - with this bug, this memory is not freed

• CSCui90224

Symptom: Using a performance monitor when the cache size is set to its default value may cause an error during the Cisco In-Service Software Upgrade (ISSU) process. An error in the console log will indicate a failure to update the monitor cache size.

Conditions: Occurs under the following conditions:

– Applicable to all Cisco IOS XE platforms.

– Occurs when running ISSU, which provides transparent router software upgrade or downgrade.

– May occur when doing either one of the following: - Upgrading from Cisco IOS XE 3.10 or earlier to IOS XE 3.11 or later version - Downgrading from IOS XE 3.11 (or later) to a version earlier than 3.11

Workaround: A preventive workaround and typical use case is to configure the cache size manually rather than using the default. If using the default cache size, use the following workaround to avoid the error:

1. Remove the service policy.

2. Run the system upgrade or downgrade.

3. Re-attach the service policy.

• CSCuj19865

Symptom: The cache size computed for an Easy Performance Monitor (EZPM) context when running on ESP100 or ESP200 supports 10G rate while it should support 15G.

Conditions: An ASR1K Router with ESP100 or ESP200 installed. Configure EZPM monitor context. Attach the monitor to an interface.

Workaround: The user can override the default value computed by EZPM.

• CSCuj39496

358Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 393: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Symptom: When configuring Input MPLS aware FNF (under interface config, mpls flow mon MON_NAME in) it can happen that FNF will cease to function due to cache entry leak/exhaustion.

Conditions: This can only occur with Input MPLS FNF and moreover only will occur with certain labels. In particular it will occur for MPLS labels for which the output of the show plat hard qfp active feature cef-mpls prefix mpls label num command does not have an IPV4 adjacency.

Workaround: There is no workaround other than to realize that this will only happen for MPLS FNF, Input FNF (not Output FNF), and for MPLS labels that no not have the IPV4_ADJACENCY.

• CSCul04783

Symptom: fman-fp crashes @ fman_fnf_object_walk.

Conditions: Test the avc_serviceability feature with ESP160.

Workaround: There is no workaround.

• CSCul22733

Symptom: ASR is seen to crash.

Conditions: Occurs under the following conditions:

1. Flow exporter defined with the Management interface GigabitEthernet0 configured as source.

2. An FNF record is configured to collect URL name.

3. FNF monitor using the above record and exporter is configured on an interface with MTU greater than 1500 bytes.

4. A packet with URL greater than 1500 bytes hits the monitor.

Workaround: Do not configure the Management interface as flow exporter source.

• CSCul25833

Symptom: Issue with Dual Collector FNFV9 in ASR 1002x only one collector is collecting and the second one is not. Happens when monitor has two collectors. The monitor is detached from interface and attached again immediately. Only one of the collector will continue to work correctly.

Conditions: Under flow-monitor provisioning.

Workaround: Apply each flow monitor with a gap of 5secs. If monitor was removed, wait for 5 secs before bringing it back.

• CSCul34776

Symptom: After ISSU process AOR and dependent fields are not working. Also, sampler granularity may be different from the configured.

Conditions: Happens sometimes.

Workaround: Remove AVC configuration and apply it again after the ISSU process is finished.

• CSCul38375

Symptom: FNF fields collect connection delay response to-server histogram. Shows wrong values.

Conditions: ASR1000 platform FNF fields "collect connection delay response to-server histogram all” are configured.

Workaround: There is no workaround.

• CSCul49581

Symptom: AVC metrics are wrong.

Conditions: One only performance monitor is configured on interface. AOR is enabled at policy level.

359Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 394: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Workaround: There is no workaround.

• CSCul62107

Symptom: When an MPLS egress interface is configured with a flow monitor that matches/collects BGP next hop, The FNF field BGP_NEXT_HOP should be the IP address of the PE-router, which generated the topmost label however, it is currently set to 0.

Conditions: MPLS egress interface on the PE router configured with a flow monitor that matches/collext BGP next hop.

Workaround: There is no workaround.

• CSCul92406

Symptom: FNF monitors updates are failing at ESP.

Conditions: Unconfigure the FNF monitor and configure again.

Workaround: There is no workaround.

• CSCum35386

Symptom: The AVC Sum Duration metric is incorrect on the Utlra platform.

Conditions: AVC Sum Duration metric is enabled via one of the AVC/EZPM tools (e.g. ART), and is assigned to an interface on an Ultra platform (however it works fine on ASR).

Workaround: There is no workaround.

• CSCum48124

Symptom: Occasional crash/traceback and router reload when performing config-replace while both performance monitor/s (e.g. EzPM) and native FNF monitors are assigned to the same interface.

Conditions: Performing a config-replace to a clean config (i.e. doesn't assign performance monitors or native FNF monitors), while there are both performance monitors (e.g. EZPM) and native FNF monitors assigned to the same interface in the current running config.

Workaround: First unassign either or both the performance monitors and the native FNF monitors before performing the config-replace. In that case, the config-replace works okay.

• CSCuh27266

Symptom: CPP core not generated when FP crash happens.

Conditions: Perform SPA OIR with Unicast/Multicast/Broadcast storm control on 32K EFPs

Workaround: There is no workaround.

• CSCui17100

Symptom: FP reloads with the corefile reporting a GIF_CSR32_GIF_LOGIC_ERR_LEAF_INT__INT_FBLK_CNT_LOW interrupt.

Conditions: This issue only applies to ASR1002-X, ESP100 and ESP200. This crash occurs when the amount of available QFP packet buffer memory falls below 3% of the total available. This can only happen if there is a combination of heavy traffic and a flood of control packets. An example action that could cause a flood of control packets is an OIR of the carrier card when using a scaled EVC-EOMPLS configuration.

Workaround: There is no workaround.

• CSCul23525

Symptom: Observing cpp_driver crash @ cpp_dsf_spi_get_status.

Conditions: On executing the show platform hardware cpp active infrastructure txspi 0 status command.

360Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 395: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Workaround: There is no workaround.

• CSCum75385

Symptom: The show platform hardware qfp active datapath utilization command displays wrong data. When high priority traffic (ip precedence 6,7) is sent, the counters against Input Non-Priority rows increment. When low priority traffic (ip precedence 0,1,2,3,4,5) is sent, the counters against Input Priority rows increment.

Conditions: This can occur when using ESP100.

Workaround: There is no workaround.

• CSCun32904

Symptom: Ping fails with packet size larger than 10000 with MPLS over mGRE.

Conditions: Configure the MPLS over mGRE and MPLS MTU MAX, Ping jumbo packet and mGRE peer side is also an IOS-XE based service router(ASR1K/ISR4400/CSR1000V)

Workaround: Remove mpls mtu max.

• CSCun17558

Symptom: COS markings not seen properly on the dot1q interface.

Conditions: The issues are seen if fragment happened in data plane on the dot1q interface.

Workaround: There is no workaround.

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

This section documents the open issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S.

• CSCun57359

Symptom: Complete or near-complete loss of traffic over an MLPPP bundle.

Conditions: If an MLPPP bundle is currently attempting to pass traffic beyond the physical bandwidth of the bundle and a new member-link is added, or an existing member-link is flapped a sudden and persistent loss of traffic for that bundle can occur.

Workaround: Configure a basic QoS policy that contains at minimum a class-default traffic police or shape restriction. Attach this policy as an output policy to the MLPPP bundle.

Example:

policy-map basic-output-policy class class-default shape average percent 90 interface Multilink1 ... service-policy output basic-output-policy

• CSCun02679

Symptom: The tracebacks were seen on Standby RP for this one time while bringing up GTP sessions.

Conditions: Just bring up the dhcp initiated GTP sessions and the tracebacks were seen on standby RP.

Workaround: There is no workaround.

• CSCun40443

Symptom: The "not supported on this platform" error message is displayed when doing platform CAC configuration on ESP-5 platform.

361Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 396: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Conditions: Set following platform CAC configuration on ESP-5 platform: FP CPU - FP MEM -CC MEM.

Workaround: Do not set following platform CAC configuration on ESP-5 paltform: FP CPU, FP MEM, and CC MEM.

• CSCun23996

Symptom: DPSS session is not cleared from the router when the dpss application ends gracefully. The session get cleared automatically after approx 3 mins.

Conditions: During this time, application with same application name cannot reconnect.

Workaround: Perform one of the following:

– Run the following one stop session all command on router to clear the session immediately.

– Wait for the session to get cleaned automatically

– Terminate the application ungracefully (Ctrl + C)

• CSCum95638

Symptom: Multiple tracebacks seen pertaining to uRPF component cannot allocate more memory. No functional issues are seen i.e. no session drops.

Conditions: TB is seen on Scaled Setup of 128K Autheticated Sessions and 256K Walkby sessions.

Workaround: Lower the session scale during RP Switchover. Tested 107K Authenticated Sessions, 223K Walkby Sessions with no issues.

• CSCum80911

Symptom: On ASR 1006 system, on the DMVPN hub, with 2K ipv4 tunnel over IPv6 transport.

Conditions: When do clear crypto session on hub and spoke twice, ESP crashed.

Workaround: There is no work around.

• CSCun59767

Symptom: Set egress interface MTU to less than 256. Send packets of size greater than 256. Packets were not dropped by UUT as "IpFragErr", but pass through successfully.

Conditions: Set MTU to 100 on the UUT egress interface, which is the same interface to which a crypto map is attached. DF Bit is set in the security-association for that crypto map. From end host, send packets of size 1000. Packets get fragmented to smaller packets of size 256 first, then encrypted. All the fragmented packets will have DF bit set in IP header. These fragmented packets should be dropped at the egress interface.

Workaround: Send packets of size lesser than MTU.

• CSCun23109

Symptom: Following error message is seen in log:

%IOSXE-3-PLATFORM: F0: cpp_cp: QFP:0.0 Thread:005 TS:00000006977394452567 %IPSEC-3-REPLAY_ERROR: IPSec SA receives anti-replay error, DP Handle 12, src_addr 192.1.2.0, dest_addr 192.1.1.0, SPI 0x250cc2eb

Conditions: Traffic with over subscription shows the TBAR drops. Eventually, all the traffic dropped.

Workaround: Increase anti-replay window size to 20sec.

• CSCun39959

Symptom: ASR1K can drop site-2-site IPSec packets with specific pad-lengths. The packets are size 47 bytes n*64 (where n is >=1)

362Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 397: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

Conditions: Site-2-site IPSec tunneled packets from 3rd-party CPE (not been seen with Cisco IOS based CPE as remote IPSec tunnel endpoints). The packet-sized being dropped are 111bytes in length (or 64-byte increments added to 111bytes).

Workaround: There is no workaround.

• CSCun45500

Symptom: Flow count value is incorrect in the show platform software ipsec F0 inventory command.

Conditions: Flow count values are incorrect for GETVPN Configuration.

Workaround: There is no workaround.

• CSCum81783

Symptom: Ping fails to go through the v4 over v6 mixed-mode tunnel.

Conditions: When Mixed-mode tunnel is configured and VPN connection is established.

Workaround: There is no workaround.

363Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 398: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12.S

364Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.12S

OL-26698-25

Page 399: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

This chapter provides information about the caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S. Caveats describe unexpected behavior. Severity 1 caveats are the most serious caveats. Severity 2 caveats are less serious. Severity 3 caveats are moderate caveats. This chapter includes severity 1, severity 2, and selected severity 3 caveats.

Note For information about the caveats pertaining to releases earlier than Release 3.6S, see Cisco IOS XE 3S Release Notes.

We recommend that you view the field notices for the current release to determine whether your software or hardware platforms are affected. You can access the field notices from the following location:

http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html

In each section, the following information is provided for each caveat:

• Symptom—A description of what is observed when the caveat occurs.

• Conditions—The conditions under which the caveat has been known to occur.

• Workaround—Solutions, if available, to counteract the caveat.

Note If you have an account on cisco.com, you can also use the Bug Search Tool to find select caveats of any severity. To reach the Bug Search Tool, log in to cisco.com and go to https://tools.cisco.com/bugsearch/product?name=Cisco+ASR+1013+Router#search (If the defect that you have requested is not displayed, it may be due to one or more of the following reasons: the defect number does not exist, the defect does not have a customer-visible description yet, or the defect has been marked Cisco Confidential.)

The Dictionary of Internetworking Terms and Acronyms contains definitions of acronyms that are not defined in this document:

http://docwiki.cisco.com/wiki/Category:Internetworking_Terms_and_Acronyms_(ITA)

Cisco Systems, Inc.www.cisco.com

Page 400: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S, page 366

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S, page 367

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S.

CSCuh95992 Packets are dropped with NAT +BPA +IPSEC with SIP traffic

CSCul01335 FP crashed on changing pap limit

CSCul48593 Active FP crashed due to stuck threads @ipv4_nat_bpa_free_port

CSCun39803 OTV Drops ARP Broadcasts due to corrupt Flood List Pointer

CSCun82649 NAT-BPA standby crashes

CSCun83128 PPTP fails with static PT for control and PAT for data

CSCuo37411 ASR1K CPP crashes with stuck thread in ipv4_nat_pat_block_to_front

CSCuo50995 ASR1000 LI sets Identification field of packet from IAP to MD to zero

CSCuo52384 ASR1000-RP2 failing to boot up - midplane locked

CSCuo56943 ESP crash related to MPLS flow monitor feature

CSCuo61455 Crash in NAT with ALG enabled

CSCuo85606 ESP80 crash when tearing down PPP sessions on LNS

CSCuo89971 ELC: Queue stuck ESI link permanently back pressured (refix CSCun01920)

CSCuo99185 Multiple IOS-XE CPP Ucode crashes due to invalid static route

CSCup10251 Qos functionality breaks due to issues in TCAM, %CPPOSLIB-3-ERROR_NOTIFY

CSCup17566 PP crash caused by sessions renegotiating authentication

CSCup32129 Auto-rp announce packets replication

CSCup37676 OTV jumbo packet fragmentation and reassembly causes ASR1K CPP crash

CSCup48518 FTP ALG create incomplete token in case of EPSV passive

CSCup54891 CPP crash due to race condition while release object

CSCup88496 630748069 Serial interface MTU issue on ASR1006

CSCuq02069 CUBE-SP HA Calls Fail/High CPU if CRYPTO PKI command entered on Standby

CSCuq05276 ASR1K CPP crashes in ipv4_nat_esp_remove_conn

CSCuq09004 RP crashed with cpp_cp_svr crash in cpp_qm_event_insert_leaf_node

366Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 401: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S

This section documents the open issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.3S.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S, page 367

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S, page 391

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S.

CSCuq13494 ASR1k-IPv6 Egress ACL Intermittently Mis-classifies and Drops ESP packets

CSCuq14700 TDL message buffers memory leak

CSCuq43357 ASR1K - Y1731 Frame Delay Measurement broken

CSCuq85115 ASR1K enable “ip cef accounting non-recursive” cause fman_rp crash

CSCuq88560 ASR CPP crashes due to stuck thread interrupt

CSCuq91599 ASR1k wccp pending-ack in fman-wccp caused standby-fp reload every 1hr

CSCur00762 ASR1k - incorrect traffic classification after HW TCAM is exhausted

CSCur33915 ASR1000 QFP crash due to stuck thread

CSCur41099 Squelch fails for CFP/Cable/Local shut/soft reload of 100G EPA

CSCur11538 ASR1k lldpMIB walk (1.0.8802.1.1.2.1.3.7.1) , but lldpMIB unsupported

CSCur09918 ASR1K: RP2 kernel crash

CSCuq24971 ASR1k ucode crash with pa_get_state on using aggregate port-channel

CSCuq01572 ASR1K:SPA-4XT-SERIAL System hang due to zero clock on DTE

CSCup40814 ESP-100/200: Fair Queue not applied correctly adding to existing policy

CSCun92199 ucode crash with sip traffic

CSCun41391 FP crash on ASR1k after upgrade from 3.7.2S to 3.11.0S

CSCuj82421 Shutdown action does not work w/ overheat on Cylons

367Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 402: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCtz97771

Symptom: During regular operations, a Cisco router running Cisco IOS release 12.4(24)T and possibly other releases experiences a crash. The crash info will report the following:

%SYS-2-FREEFREE: Attempted to free unassigned memory at 4A001C2C, alloc 4180794C, dealloc 417616B0,

%SYS-6-BLKINFO: Attempt to free a block that is in use blk 4A001BFC, words 134, alloc 4180794C, Free, dealloc 417616B0, rfcnt 0.

Conditions: These is no condition.

Workaround: There is no workaround.

• CSCud94511

Symptom: Multiple Tracebacks seen on Router reload

Conditions: router reload

The tracebacks are seen if a scaled config is present on any atm/gig spa with POS spa present in the system

Triggers can also vary from router reload to sip reload aur shut/no shut of larg number of tunnels.

Triggers increase the load on router processing which interferes with the working of POS spa and hence tracebacks are seen.

Workaround: There is no workaround.

• CSCue23898

Symptom: A Cisco router running Cisco IOS Release 15.3(1)T may crash with a bus error immediately after issuing the 'write memory' command.

Example:

14:44:33 CST Thu Feb 14 2013: TLB (load or instruction fetch) exception, CPU signal 10, PC = 0x228B2C70

Conditions: This symptom occurs while updating the router's running configuration with the 'write memory' command. It has been seen while updating various different commands

Workaround: There is no workaround.

• CSCue27980

Symptom: ASR1k suffers a CPP crash triggered by NBAR

Conditions: When NBAR and NAT are both enabled on the same interface there could be some rare conditions which could lead to the crash of the ASR.

Workaround: There is no workaround.

• CSCue99781

Symptom: VCD id is assigned to ATM pvc interface once it is created, so after remove the pvc and re-create it we will lost the previous VCD id as the handle, and cannot delete the corresponding condition except remove all the conditions at once.

Conditions: Delete intf before unconfig condition debug.

Workaround: Unconfigure condition debug at first

• CSCuf47613

Symptom: Call waiting tone is not played by the DSP if cptone gb is configured when the second SIP call arrives to the FXS port's number.

368Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 403: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: Issue was found with 15.2(4)M1 and dsapp.

Workaround: Disable cptone GB

• CSCuh87195

Symptom: A crash is seen on a Cisco router.

Conditions: The device crashes with gw-accounting and call-history configured. The exact conditions are still being investigated.

Workaround: Completely remove gw-accounting. Or disable call-history using the following commands:

– gw-accounting file

– no acct-template callhistory-detail

• CSCui22204

Symptom: Below mentioned internal IEC error seen in CUBE logs:

Jul 22 14:50:28.377 IST: %VOICE_IEC-3-GW: CCAPI: Internal Error (Invalid arguments): IEC=1.1.180.1.9.6 on callID -1CUBE#sh voice iec description 1.1.180.1.9.6 IEC Version: 1 Entity: 1 (Gateway) Category: 180 (Software Error) Subsystem: 1 (CCAPI) Error: 9 (Invalid arguments) Diagnostic Code: 6

Conditions: This IEC error would be seen while processing incoming SIP REFER for call transfer along with local consumption of REFER ('no supplementary-service sip refer' CLI) i.e CUBE is consuming REFER locally and generating INVITE to transfer target.

Workaround: There is no workaround.

• CSCui48606

Symptom: 3925 voice xml gateway crashed.

Conditions:

vxml configured:vxml tree memory 500vxml version 2.0

Workaround: There is no workaround.

• CSCui64059

Symptom: Router crashes during call forward scenario

Conditions: This symptom is observed when call forward is enabled.

Workaround: This issue is fixed.

• CSCui68757

Symptom: Enhancement of icmp message rate-limit, for protection of QFP from ICMPv4 Attack.

Conditions: In IPv4 ICMP, some types of ICMP packets will be generated in data plane. To protect QFP from IPv4 ICMP attack, we need a mechanism to do rate-limit of ICMP packets generated by data plane.

There is existing IPV4 ICMP rate-limit mechanism, which is only for ICMP unreachable type. In this fix, we expand this rate-limit mechanism to cover all IPv4 ICMP packets which are generated by data plane.

369Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 404: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCui73249

Symptom: NHRP local (no socket) entry gets converted to a socket entry causing matching traffic to be blackholed.

Conditions: DMVPN phase 3 network.

Workaround: Configure 'ip nhrp server-only' or remove 'ip nhrp shortcut' on the hub router.

• CSCui99433

Symptom:

1. INFO not being responded by CUBE (in race condition)

2. INFO not being passed to other leg (in race condition)

Conditions: Race condition - Recvd mid-call RE-INVITE and INFO at almost the same time

Workaround: There is no workaround.

• CSCuj13596

Symptom: Issuing a command crypto key move rsa aaa non-exportable" throws an error, Failed to move keypair aaa to device.

Conditions: Before issueing the above command, generate the rsa keys with label 'aaa'.

Workaround: There is no workaround.

• CSCuj19201

Symptom: Re-registration time is recalculated on GM nodes upon receiving a TBAR rekey, based on the remaining TEK lifetime at the time of the TBAR rekey.

This effectively causes a much-shorter re-registration window compared to the one obtained at the GM registration, even if the original TEK lifetime was configured with a long value.

Conditions: These is no condition.

Workaround: There is no workaround.

• CSCuj72342

Symptom: FP crash occurs with PPP sessions

Conditions: On applying nat settings to CGN mode

Workaround: There is no workaround.

• CSCuj80245

Symptom: No address prefix flow records get reported when packets get fragmented at Tunnel interface, which has enabled with AVC flow monitor.

Conditions: May occur when packet are fragmented due the maximum packet length limit, called the Maximum Transmission Unit (MTU).

When packet size is bigger than the interface MTU, the packet will be fragmented and will not be monitored by AVC.

Workaround: Increase the size of the MTU to accommodate larger packets. For example, configure an MTU of 3000 bytes with the following CLI:

Device(config)# interface Gig0/2/1Device(config-if)# mtu 3000

• CSCuj84035

370Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 405: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: Seeing Alignment errors on standby box that is a member of a CUBE-HA pair

000311: Jul 24 10:18:57.198 EDT: %ALIGN-3-CORRECT: Alignment correction made at 0x261B58E0z reading 0x3018F286000312: Jul 24 10:18:57.198 EDT: %ALIGN-3-TRACE: -Traceback= 0x261B58E0z 0x2617F4F8z 0x261801F4z 0x261811C8z 0x26181430z 0x23C3FF40z 0x23C3FF24z 0xFFFFBA20z000313: Jul 24 10:58:57.187 EDT: %ALIGN-3-CORRECT: Alignment correction made at 0x261B58E0z reading 0x2BAB686E000314: Jul 24 10:58:57.187 EDT: %ALIGN-3-TRACE: -Traceback= 0x261B58E0z 0x2617F4F8z 0x261801F4z 0x261811C8z 0x26181430z 0x23C3FF40z 0x23C3FF24z 0xFFFFBA20z

Conditions: ISRg2 using Box to Box CUBE-HA with HSRP.

Workaround: There is no workaround.

• CSCuj88820

Symptom: Router acting as a PKI client continues auto-enrollment to its CA even after the CA certificate has expired.

Conditions: Client router is configured with 'auto-enroll' under its trustpoint.

Workaround: Remove 'auto-enroll' from the trustpoint on the PKI client router, or,

Delete the trustpoint in question on the PKI client router.

• CSCuj93565

Symptom: %SPA_OIR-3-EVENT_DATA_ERROR: SPA OIR event data error - fail.

Conditions: None.

Workaround: There is no workaround.

• CSCul07137

Symptom: IFCFG timeouts will happen on Reload or Shut/No shut of Scaled Vlan Port.

Conditions: Ethernet Line card with Scale QinQ having fixed outer vlan and range of VLAN configuration on reload or Shut/No shut, IFCFG Timeouts are observed.

Workaround: There is no workaround.

• CSCul12835

Symptom: Crash with CGN/BPA configuration.

Conditions: IP pool was extended, single bit in BPA was set.

Not seen with 1000 users. Issue is seen with waround 8000 users.

Workaround: There is no workaround.

• CSCul27924

Symptom: Customer experienced crash on ASR-1001 during normal operation.

Conditions: These is no condition.

Workaround: There is no workaround.

• CSCul41442

Symptom: In the M train of IOS and the S train of IOS-XE the "media anti-trombone" feature added in 15.1(3)T CUBE does not appear as an option when configuring "voice class media" groups. It is not present as an option at the dial-peer level as well.

Conditions: This symptom is observed in any non "T" train of IOS and IOS-XE. IOS Tested 15.2(3)T - Available as media option Tested 15.3(3)M - Not there IOS-XE Tested 15.1(3)T - Available as media option Tested 15.3(3)S1 - not there

371Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 406: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: Customer has to have a "T" train IOS of Cisco IOS Release 15.1(3)T or higher. Impacts customers ability to deploy Cube Enterprise solutions.

• CSCul59525

Symptom: ASR1K cube running Cisco IOS Release XE3.8S, many hung calls are seen over a period of one week. There are three different symptoms of hung call legs. Example 1: One of the call leg is in stuck state Example 2: Both the call legs are active and connected and stuck for more than a week Example 3: Both call legs are stuck in disconnect state but one of the call is connecting and other leg is in active state. Topology: VzB ---sip----CUBE------sip------SME Cluster-----sip------Admin04 cluster---------IP Phones | | | ----------------sip trunk to fax server | | ------------------SIP trunk to Unity connection vm

Conditions: Though the reason for this issue is unknown, it is very random in nature. Hung calls are seen for a normal sip to sip calls going to IP phone, or calls that routes to unity connection voicemail and also stuck fax calls.

Workaround: There is no workaround.

• CSCul73789

Symptom: In an IPv6 IPSEC scenario we see code crashes with traffic flowing. This is seen even with a single tunnel with traffic flowing.

Conditions: The exact conditions under which this problem is seen in unclear.

Workaround: There is no workaround.

• CSCul81353

Symptom: ASR1006 with RP2 running ES version based on Version 15.3(1)S crash with Segmentation Fault ---snip-- UNIX-EXT-SIGNAL: Segmentation fault(11), Process = CCSIP_SPI_CONTROL -

Traceback= 1#9821b08208133f5124c039ddebb8173b :400000 347A664 :400000 7B14A0F :400000 7B0F5E7 :400000 8F6C8A :400000 9A8C4C :400000 9B6951 :400000 95F2A4 :400000 962772 :400000 BE9018 :400000 BE8E4F ---snip--

After the RP Switch over all the new calls were rejected with the following errors as well, which may be unrelated to the crash

--snip-- Dec 2 15:11:47: %VOICE_IEC-3-GW: SIP: Internal Error (INVITE, codec mismatch): IEC=1.1.278.7.110.0 on callID 17334189 Dec 2 15:11:49: %VOICE_IEC-3-GW: SIP: Internal Error (INVITE, codec mismatch): IEC=1.1.278.7.110.0 on callID 17334212 Dec 2 15:11:49: %VOICE_IEC-3-GW: SIP: Internal Error (INVITE, codec mismatch): IEC=1.1.278.7.110.0 on callID 17334218 ---snip---

Conditions: After two weeks of uptime and during normal load condition.

Workaround: Reboot the box to recover from the situation. The core file writing is incomplete as

TEMP_IN_PROGRESS ---- show stby-harddisk: all----- 142 2406627691 Dec 02 2013 14:11:14 00:00 /harddisk/core/kernel.rp_20131202191114.core.gz 149 79237120 Dec 02 2013 14:03:52 00:00 /harddisk/core/nyorbgdnesbc-dr_RP_0_linux_iosd-imag_6335.core.gz.TEMP_IN_PROGRESS

• CSCul84373

Symptom: Tech pubs will need to verify that there is no current documentation referencing the FPGA upgrade process for ASR1002-X utilizing the "upgrade hw-module subslot x/y fpd" command structure. This will be replaced with the new "upgrade hw-programmable..." process.

372Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 407: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: This DDTS brings in the support for upgrading the board FPGA on ASR1002-X using CLI 'upgrade hw-programmable fpga filename bootflash:image.pkg r0'. FPD support for BUILT-IN SPA will no longer be required after this so FPD is no longer supported for BUILT-IN SPA.

Workaround: There is no workaround.

• CSCul86646

Symptom: ESP reload when ping jumbo packet via gre tunnel.

Conditions: Ping packet size > 9800, tunnel mtu>9216 receive side will reload.

Workaround: Config IP MTU < 9216 in tunnel

• CSCul89581

Symptom: Supervisor not able to monitor Agent conversation Remotely where CCE-CVP at higher version and RSM at 9.1(1)Conditions: These is no condition.

Workaround: There is no workaround.

• CSCul96421

Symptom: Outbound calls over SIP trunk to provider fails.

Conditions: SIP IP phone (99xx) ------> CME ---------> SIP Trunk --------> ITSP

Cisco IOS - 15.3(3)M and 15.4(1)T versions.

Workaround: Downgrade Cisco IOS version to 15.2(4)M.

• CSCul96947

Symptom: Traceback appears on standby RP during SPA OIR.

Conditions: T1 channels are configured.

Then a random t1 channel is deleted and spa soft oir is done.

Workaround: There is no workaround.

• CSCum03790

Symptom: Immediately after the 200 OK is sent in response to the Re-Invite the ITSP sends a BYE as they expected the origin version id to increment. The lack of incrementation cause the call to be torn down by the ITSP.

Conditions: This problem was observed in the following scenarios :

Switchover from voice to faxChange in codec for voice calls

SDP content-length size is different in initial outgoing Invite to perform call setup than it is in 200 OK response to an inbound Re-Invite which causes the origin (o=) version in the SDP not to increment. CUBE however sees the content-length sizes as the same size.

Previous SDP content-length was 250, 399 was the current SDP content-length:

Workaround: There is no workaround.

• CSCum04325

Symptom: Duplicate entry seen in "sh lldp neighbor"

Conditions: if the physical link is a member of a etherchannel bundle. lldp packets are processed on the bundle UIDB.

Workaround: There is no workaround.

• CSCum04528

373Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 408: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: An ASR 1002-X router might crash and reload writing a core file in the process.

Conditions: ASR1002-X running NAT with ALG traffic

Workaround: There is no workaround.

• CSCum13378

Symptom: An ASR1K configured as an IPSec endpoint may fail to reassemble fragmented ESP packets . During this failure state, the router will also log %ATTN-3-SYNC_TIMEOUT errors.

Conditions: UDP packet of a specific size received on the clear side of the ASR is known to trigger this issue.

Workaround: Use software crypto for large packets received on the clear side by configuring post-frag encryption - crypto ipsec fragmentation after-encryption. This will prevent the ASR from getting into the ATTN_SYNC state.

• CSCum18039

Symptom: Traffic not flowing on a queue following QoS reconfiguration or new interface creation. Also possible inability to change QoS configuration on any interface or create new interfaces/sessions following occurrence of this condition.

Conditions: Queue was previously being over subscribed when it was deleted leaving it in a flowed off congested state such that it would never drain.

Workaround: There is no workaround.

• CSCum24009

Symptom: Transfer scenarios fail with ANAT and VCC (No DSP) configured

Conditions: Issue is observed for DODO.

Workaround: Apply DOEO configurations.

• CSCum40043

Symptom: Crypto sessions get stuck in UP-IDLE state in scale scenario on CSR platform.

Conditions: CSR with XE3.11.

Workaround: Bring the sessions up in very small increments e.g. of 40 sessions at a time initially and keep monitoring. When the sessions stop coming up for 40 sessions at a time, switch to smaller number e.g. 20.

• CSCum40306

Symptom: Router crashes during call transfer in SRST mode.

Conditions: Call transfer in SRST mode, including SCCP phones.

Workaround: There is no workaround.

• CSCum49213

Symptom: ESP crash

Conditions: None.

Workaround: Use debug platform hardware qfp active datapath trace packet for short periods of time.

• CSCum49437

Symptom: ucode crash@ipv4_nat_cgn_mode_dp_rel_mem on changing nat mode

Conditions: In a scaled setup on changing nat mode.

374Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 409: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCum55299

Symptom: Path-confirmation check failed on CUBE in SRTP-RTP call.

Conditions: Configure CUBE for SRTP-RTP call.

Workaround: There is no workaround.

• CSCum55357

Symptom: CUBE crashes for SIP-H323 Transcoding call.

Conditions: The issue is seen while running regression for Cisco IOS Release 15.3(3)M1.9.

Workaround: There is no workaround.

• CSCum56514

Symptom: A Cisco router running IOS XE may crash and reload after generating a ucode core file and logs similar to the following:

Notice 1531: KRZ: SIP0: pvp.sh: Process manager is exiting: process exit with reload fru codeError 1530: KRZ: SIP0: cpp_cp: cpp_cp encountered an error -Traceback=Error 1529: KRZ: SIP0: pman.sh: The process cpp_ha_top_level_server has been helddown (rc 69) Error 1528: KRZ: SIP0: pman.sh: The process cpp_cdm_svr has been helddown (rc 69) Informational 1526: KRZ: F0: cpp_ha: Shutting down CPP MDM while client(s) still connected Informational 1525: KRZ: SIP0: cpp_cdm: Shutting down CPP MDM while client(s) still connected Informational 1527: KRZ: F0: cpp_ha: Shutting down CPP CDM while client(s) still connected Error 1524: KRZ: F0: cpp_ha: CPP 0 microcode crashdump creation completed.

Conditions: A Cisco router running IOS XE and traffic passing through the NAT path.

Workaround: There is no workaround.

• CSCum57306

Symptom: SCB leak seen when the Refer Call with error condition is run under laod

Conditions: Refer Call flow which fails.

Workaround: There is no workaround.

• CSCum60848

Symptom: Under certain conditions, a DSP will hang in certain call scenarios including REFER passthrough.

Conditions: Under heavy load.

Workaround: There is no workaround.

• CSCum61595

Symptom: Alignment errors are observed after upgrading to Cisco IOS Release 15.2(4)M5.

Jan 9 19:42:59.623 GMT: %ALIGN-3-CORRECT: Alignment correction made at 0x6477F81Cz reading 0x6BE87495Jan 9 19:42:59.623 GMT: %ALIGN-3-TRACE: -Traceback= 0x6477F81Cz 0x647805D0z 0x6478FE70z 0x64751088z 0x64B99F4Cz 0x64B99FD4z 0x64752284z 0x647525ACz

Conditions: This symptom does not occur under specific conditions.

375Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 410: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCum66182

Symptom: SNMP Query on the object dot3StatsDuplexStatus is shown as unknown.

Conditions: While testing Ether-Like MIB for ASR1000-6TGE.

Workaround: There is no workaround.

• CSCum67150

Symptom: Ingress MAC Acct stops working after doing a no mac acc on egress.

Conditions: None.

Workaround: There is no workaround.

• CSCum68074

Symptom: many packets are dropped for NatIn2out cause

Conditions: PAT, interface overload.

Workaround: PAT pool overload.

• CSCum68287

Symptom: GM reloads unexpectedly when enabling V6-crypto map on an interface with VRF-aware GDOI configs on the latest XE3.12 throttle images

Conditions: Seen on all ASR platforms, with latest XE3.12 throttle base images

This is 100% reproducible and extremely service impacting. This happens only when you enable "ipv6 crypto map" which has a local GM deny ACL associated with it.

Enabling v4-crypto map is fine.

Workaround: Do not use the local GM ACL for IPV6 crypto map. This may not be a feasible workaround in the field.

• CSCum69887

Symptom: NAT cann't handle the tcp sequence properly with LDAP ALG after pdu size changed. NAT will not handle the delta value for the right ack message but thereafter messages, which may cause mis-acked message flows between two endpoints.

Conditions: Send LDAP traffic with empty comment item in LDAP ALG.

Workaround: There is no workaround.

• CSCum73167

Symptom: LDAP ALG will encode the packet even there is no need to translate them, this will not impact function, but it is not necessary.

Conditions: LDAP ALG will encode the packet even there is no need to translate them.

Workaround: There is no workaround.

• CSCum75385

Symptom: "show platform hardware qfp active datapath utilization" displays wrong data.

When high priority traffic (ip precedence 6,7) is sent, the counters against "Input Non-Priority" rows increment.

When low priority traffic (ip precedence 0,1,2,3,4,5) is sent, the counters against "Input Priority" rows increment.

Conditions: This can occur when using esp100.

376Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 411: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCum77922

Symptom: CUBE fails to perform 407 Error Message Passthrough if it receives a 100 Trying before the 407 Proxy Authentication Required and sends a 503 Service Unavailable to the UAC.

Conditions: ITSP sends a 100 Trying before the 407 Proxy Authentication Required.

Workaround: Receive the 407 Proxy Authentication Required as first response to an Invite.

• CSCum78930

Symptom: The ICMPv6 error packet (too-big packet) with icmpv6 echo reply as payload is dropped by ZBFW.

Conditions: If the intermediate hosts generate icmpv6 error packets with icmpv6 echo reply as

pay load without properly fragmenting the packets as per the mtu of the v6 packet

flow, such icmpv6 errors packets will be dropped.

Workaround: Adjust the mtu of the v6 pack flow so that packets, especially t he icmvp6 echo reply

does not generate an error (too-big message).

• CSCum80300

Symptom: ASR1k running XE3.10 may crash in RP on executing the CLI "show crypto session"

Conditions: More than 1000 crypto sessions and executing the cli "show crypto session".

Workaround: There is no workaround.

• CSCum81041

Symptom: One way audio incoming calls redirected through CVP.

Conditions: None.

Workaround: There is no workaround.

• CSCum81717

Symptom: 183 session progress is blocked by the sip gateway.

Conditions: 183 session Progress is received with SDP and Require:100 rel header and "block 183 sdp absent" is configured.

Workaround: There is no workaround.

• CSCum83957

Symptom: A router may crash due to a bus error when running "show sccp connections sessionid".

Conditions: This has been observed on a 3900e router running 15.3(2)T.

SCCP features are configured on router.

Workaround: There is no workaround.

• CSCum84999

Symptom: SUBSCRIBE received from CVP after BYE and NOTIFY with subscription-state : terminates is send by CUBE.

Conditions: when SUBSCRIBE IS recieved after call is terminated with BYE.

Workaround: There is no workaround.

• CSCum85381

377Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 412: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: CUBE drops Method Notify (OOB Notify DTMF) in SIP to SIP call flows, when 183 Session Progress without SDP is received just after 183 Session Progress with SDP.

For Example:

CUCM --> SIP --> CUBE ---> ITSP

When Cube receives 183 Session (with SDP) from ITSP, it sends out Method Notify back to CUCM.

ITSP sends another 183 Session (without SDP), at this point, CUBE strips out NOTIFY towards CUCM. This causes CUCM to disable DTMF on this call.

Conditions: These is no condition.

Workaround: Add method Notify manually on the first leg using a SIP Profile.

voice class sip-profiles 99response 183 sip-header Call-Info removeresponse 183 sip-header Call-Info add "Call-Info: <sip:10.1.1.1:5060>;method=\"NOTIFY;Event=telephone-event;Duration=500\""

• CSCum88058

Symptom: The following CLI does not work on ELC:-

no ip mac accouting ingress

no ip mac accouting egress

Conditions: Configure the MAC accounting for any direction.

Issue the corresponding "No CLI".

Although No Visible Impact to the operations of the system, a required cleanup

operation is not performed.

Workaround: There is no workaround.

• CSCum90650

Symptom: When REFER based transfer failed with 503 in NOTIFY , CUBE tried to bridge the call , but CUBE retransmit REFER again even though got 503 service error :

Conditions: REFER passthrough.

Workaround: Eefer consume.

• CSCum93356

Symptom: CUBE doesn't send mp4a-latm fmtp attributes in early dialog UPDATE.

Conditions: This issue is observed in DO-EO call with flow-around configured and the SDP negotiation happens in early dialog.

Workaround: If SDP is negotiated in confirmed dialog , then this issue is not seen.

• CSCum93484

Symptom: Cisco 7301 router running EzVPN leaks memory when Crypto IKMP calls AAA API's which allocates memory for AAA attribute list.

Conditions: This symptom is observed in device running EzVPN, when it tries to allocate memory for AAA attribute list.

Workaround: Reload the router.

• CSCum99077

Symptom: fman_rp process crash. RP card reload.

378Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 413: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: When routing loop occurs in network and caused massive routing information update, an internal logic error may be triggered.

Workaround: Avoid routing loop.

• CSCun00783

Symptom: channel group wil link id > 4 is not configurable.

Conditions: whiel configuring the vlan based load balance.

Workaround: Use only link id 1-4.

• CSCun04417

Symptom: GTP U packet forwarding capability is downgraded.

Conditions: 1 firewall session.

Workaround: There is no workaround.

• CSCun08855

Symptom: ASR router crash with iosd punting packet to port-channel with ERSPAN configured on the router.

Conditions: port-channel and ERSPAN configured on the router.

Workaround: There is no workaround.

• CSCun09640

Symptom: The following errors are seen when adding a child policy to a parent policy while configuring hierarchical QoS.

%CPPOSLIB-3-ERROR_NOTIFY: F0: cpp_cp: cpp_cp encountered an error %CPPOSLIB-3-ERROR_NOTIFY: F0: fman_fp_image: fman-fp encountered an error%PMAN-3-PROCHOLDDOWN: F0: pman.sh: The process cpp_ha_top_level_server has been helddown (rc 69)%PMAN-3-PROCHOLDDOWN: F0: pman.sh: The process cpp_cp_svr has been helddown (rc 134)

This can result in a ESP (F Fabric) reload, causing a traffic outage

*Feb 13 07:39:05.829: %IOSXE_OIR-6-ONLINECARD: Card (fp) online in slot F0

Conditions:

– An interface with a service-policy applied.

– Adding/removing child policies on the parent hierarchical policy applied to the interface.

Workaround: Remove the policy from the interface before making the changes to the child/parent policy then reapply the policy to the parent.

• CSCun09753

Symptom: Ping failed with input errors when HDLC interf MTU set/removed.

Conditions: 1. set MTU (more than 2950) on HDLC interface , then remove MTU;

2. ping failed to peer HDLC interface.

Workaround: There is no workaround.

• CSCun10918

Symptom: PPP subscribers cannot be terminated in ASR1K, due to object locked.

Conditions: EVSI Delete Errors: Out-of-Order 0, No dpidb 0, Underrun 0, VAI Recycle Timeouts 90215 =======> large number of VAI recycle timeouts

379Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 414: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

EVSI wrong dpidb type errors 0

EVSI Async Events: Total 92754, HW error 88050 =======> large number of HW errors as well.

Workaround: remove QOS of the ppp.

• CSCun17558

Symptom: COS markings not seen properly on the dot1q interface.

Conditions: The issues are seen if fragment happened in data plane on the dot1q interface.

Workaround: There is no workaround.

• CSCun20274

Symptom: Standy RP source is not participating in clocking selection

Conditions: Stanby RP bits must be configured

Workaround: Remove and re-apply the stby-network-clk Source with different framing.

• CSCun20279

Symptom: At uRPF loose mode, the suppress drop counter on ASR1K will count packets even in case the packets are symmetric flow. ASR1K should not count symmetric flow packets as sdrop at uRPF loose mode.

Conditions: uRPF loose mode

Workaround: There is no workaround. This ddts does not have any service/traffic impact.

• CSCun20776

Symptom: An ASR router may display the following logs continuously:

IOSXE-3-PLATFORM R0/0: kernel: Error -5IOSXE-3-PLATFORM R0/0: kernel: /auto/mcpbuilds14/release/03.11.00.S/BLD-03.11.00.S/os/linux/drivers/binos/ds31408/ds31408_driver.c:ds31408_ioctl (line 522): IDT_IOCG_INTR_STATUS failed, status -5IOSXE-3-PLATFORM R0/0: kernel: bullseye_altera_spi_rd_guts: Receiver-overrun error: Status = 0xffffffffIOSXE-3-PLATFORM R0/0: kernel: /auto/mcpbuilds14/release/03.11.00.S/BLD-03.11.00.S/os/linux/drivers/binos/ds31408/ds31408_pll.c:ds31408_get_intr_status (line 76): DS31408 Read failed for 56

Conditions: An ASR router running IOS XE with traffic flowing through it.

Workaround: There is no workaround.

• CSCun22771

Symptom: An ASR 1002-X router might crash and reload writing a core file in the process.

Conditions: ASR1002-X running IOS XE in a NAT-HA B2B scenario

Workaround: There is no workaround.

• CSCun23803

Symptom: Cisco isr4451-X unable to program extensive ACL entries into the forwarding engine. This is a to add an easy command to see how much of the router's sotware TCAM is available to estimate ACL planning.

Conditions: This is seen when the ACL entries are very long and more common when port ranges are used.

Workaround: Reduce ACL entries.

• CSCun24943

380Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 415: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: After route processor (RP) switchover, ezPM does not operate on the newly active RP. Records are not exported.

Conditions: Stateful switchover (SSO) is configured. Switchover occurs.

Workaround: Re-apply the ezPM configuration or switchover to the original RP after it recovers from failure.

• CSCun24965

Symptom: On the ASR1000 series router hen configuring a QoS service policy using the service-fragment type, the shaping value is not correct.

Conditions: A QoS Service Policy is applied using the service-fragment keyword, the shaped value is not correct.

Workaround: There is no workaround.

• CSCun25912

Symptom: When using the Anyconnect autoreconnect feature on the ASR platform, configurations dynamically applied to the virtual-access interface might be lost over the reconnection.

Example, the interface after initial connection establishment would have a QOS service policy applied:

ROUTER#sh derived-config int virtual-access 1

!interface Virtual-Access1 ip unnumbered GigabitEthernet0/0/1 tunnel source 10.1.1.1 tunnel mode ipsec ipv4 tunnel destination 10.10.1.100 tunnel protection ipsec profile ipsec-profile no tunnel protection ipsec initiate service-policy input INPUT-POLICYend

Conditions: This has been observed with configurations being applied from the user AAA profile over Radius authentication.

Affected parameters observed are QOS service policies and access-group.

Workaround: 1. Do not use the reconnect feature

2. Apply those configurations directly to the Virtual-Template (if this is an option).

• CSCun26943

Symptom: In an INTRA-box redundancy configuration, the STANDBY FP and ACTIVE FP may not be syncing dplane HA records robustly.

The easiest way for the customer to recognize if this *might* be happening is by examining the output of the

show platform hardware qfp active system intra and the show platform hardware qfp standby system intra CLIs.

If the output shows the counters " rx dropped" and/or "retx" continuously incrementing, then this problem may have been encountered.

Conditions: DUAL FP systems with stateful HA features such as NAT configured.

Workaround: There is no workaround.

• CSCun28965

381Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 416: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: show ip nat translation filter range [inside | outside] [local|glocal] <start-ip> <end-ip> was not filtering the output as per the range specified.Conditions: These is no condition.

Workaround: There is no workaround.

• CSCun30321

Symptom: Major alarm observed on ASR1001

Conditions: After upgrade to XE3.10.2.

Workaround: There is no workaround.

• CSCun32035

Symptom: Configured following features as part of IWAN performance testing for UTAH platform

1. AVC

2. PFR

3. QoS

4. Appnav + WAAS

5. DMVPN

6. Crypto.

Make sure DMVPN and MPLS tunnel are up and performance monitor, WAAS and crypto are enabled for these tunnels.

Router crashes with traffic profile.

Conditions: Traffic profile includes, voice + http + media traffic.

Crash is seen as soon the traffic is initialized at less than 15 % of load.

Workaround: There is no workaround.

• CSCun35149

Symptom: Enable performance monitor on local switching interface.

Conditions: Two interfaces are connected as local switching.

Workaround: There is no workaround.

• CSCun36785

Symptom: ASR1002X production router acting as WAN-Aggregator reloaded unexpectedly after pushing the AVC configuration from Cisco Prime infrastructure through SSH session.

The config push was successful onto the box, and the flow statistics were exported properly to the PI.

However after Half an hour, the router reloaded with CPP mcplo_ucode crash and fman_fp crash

The box is configured with IKEv2 DMVPN and basic NAT, along with BGP and EIGRP. We had around 4 static NHRP tunnels from different branch locations terminating onto this box. All traffic from the branches were encrypted, decrypted on this router and NAT was applied to the decrypted traffic before sending it out of the Port-channel interface towards production network.

Conditions: Seen on ASR1002X running CCO IOS-XE version 3.10.1

The Crash has occured only once. Currently AVC configs has been backed out and the router is stable. This is seriously affecting the AVC deployment on the network.

Workaround: There is no workaround.

• CSCun37698

Symptom: An ESP might crash

382Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 417: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: The device has NAT and WCCP configured. It looks like WCCP fails to setup the output interface correctly. This leads to NAT accessing a bad location in memory which causes a crash. The exact conditions are still being looked at.

Workaround: There is no workaround.

• CSCun44581

Symptom: FOs of CFT features might not be released in case the featrue has unregistered from CFT before the flow aged..

Conditions: Feature of CFT (Stile,FNF,FME,CENT..) that allocated FO in the flow and then un-registered from CFT (i.e feature has been disabled) while another feature is still registered to CFT, the FO of that feature won't be released.

Workaround: Stop traffic before disable the feature or reload.

• CSCun48994

Symptom: The CP process crashes while collapsing a hierarchy layer node that had once exceeded 4000 entries. The collapse occurs when the number entries falls below 4000.

Conditions: This problem occurs while collapsing a node that had once exceeded 400 entries. The problem is specific to MLPPP, MFR and GEC aggregate because these features require notification when a schedule ID changes. The schedule ID changes when a scheduling node is reconstructed. The issue hit when the operation involves both the flushing and SID notification.

Workaround: There is no workaround.

• CSCun49087

Symptom: ASR1002x crash.

Conditions: Duty cycle testing with a lot of negative events in DMVPN setup.

Workaround: There is no workaround.

• CSCun51932

Symptom: Incorrect internal and external Dialtone for CPTONE DE.

Conditions: Cptone DE is configured under FXS ports.

Workaround:

Router# test voice tone DE dialtone 1 425 0 -200 -200 -240 0 0 0 65535 0 0 0 0 0 0 0Router# test voice tone DE 2nd_dialtone 1 425 0 -200 -200 -240 0 0 0 200 300 200 300 200 800 0 0Router# shut the voice-portRouter# Unshut the voice port

• CSCun55310

Symptom: An ATM-port might show input-errors of type overrun.

Conditions: They get counted so, because they hit an on-demand AutoVC, where the nature of the packets (for example ILMI or BPDU) should not raise the VC.

Workaround: The concerning VC could be configured as permanent or the packets should be prevented on neighbor device as it is seen as unwanted or unexpected traffic.

• CSCun56044

Symptom: When there is a small network flap, ASR sends below traps to the Monitoring tool.

1. When the adjacency goes down;

383Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 418: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

13.2.2014 04:25:08.430 CISCO-SESS-BORDER-CTRLR-EVENT-MIB Enterprise specific=3 enterprises.cisco.ciscoMgmt.ciscoSessBorderCtrlrEventMIB 47 csbAlarmSubsystem=signaling csbAlarmSeverity=0 csbAlarmID=47 csbAlarmTime=Thu Feb 13 02:25:08 UTC 2014 csbSBCServiceName=lah1-sbc1 csbAdjacencyState=detached csbAdjacencyType=sip csbAdjacencyName=Savonvoima-Lync csbAlarmDescription=This alarm is generated when an adjacency is attached to or detached from the sbe.

2. When it comes back;

13.2.2014 04:28:38.126 CISCO-SESS-BORDER-CTRLR-EVENT-MIB Enterprise specific=3 enterprises.cisco.ciscoMgmt.ciscoSessBorderCtrlrEventMIB 48 csbAlarmSubsystem=signaling csbAlarmSeverity=cleared csbAlarmID=48 csbAlarmTime=Thu Feb 13 02:28:37 UTC 2014 csbSBCServiceName=lah1-sbc1 csbAdjacencyState=attached csbAdjacencyType=sip csbAdjacencyName=Savonvoima-Lync csbAlarmDescription=This alarm is generated when an adjacency is attached to or detached from the sbe.

3.13.2.2014 04:28:38.376 CISCO-SESS-BORDER-CTRLR-EVENT-MIB Enterprise specific=3 enterprises.cisco.ciscoMgmt.ciscoSessBorderCtrlrEventMIB 49 csbAlarmSubsystem=signaling csbAlarmSeverity=0 csbAlarmID=49 csbAlarmTime=Thu Feb 13 02:28:37 UTC 2014 csbSBCServiceName=lah1-sbc1 csbAdjacencyState=attached csbAdjacencyType=sip csbAdjacencyName=Savonvoima-Lync csbAlarmDescription=This alarm is generated when an adjacency is attached to or detached from the sbe.

Conditions: ASR Version: asr1000rp1-adventerprisek9.03.11.00.S.154-1.S-std.bin

"snmp-server enable traps sbc adj-status" is added in the ASR configuration.

Workaround: There is no workaround.

• CSCun58672

Symptom: VTCP not send tcp segments according adjustment mss.

Conditions: TCP sync with mss 1460 from interface B, and Interface A sent out sync with mss 1390

tcp segments (tcp payload 1390) come from interface A observed tcp segments with tcp payload 1460 sent out via interface B

Workaround: There is no workaround.

• CSCun69811

Symptom: Actually customer on active box would only like to "no activate" a single delegate registration entry below.

subscriber sip:[email protected] sip-contact sip:[email protected] adjacency CUCM-llab delegate-registration sip:test.site.com adjacency PSTN-lab-SIP-CONNECT-test-lab profile SIP-CONNECT_TIMERS activate

Conditions: Sessions are deactivated and the stand-by router crashes.

Workaround: "no activate" command must be executed at the "delegate-registration" sub section. This will prevent the deactivation of the sessions.

• CSCun73233

Symptom: No way audio (silence) issue is noticed on transcoded SIP-SIP calls on CUBE when supplementary services like Hold/Resume or Call Transfer is invoked. Issue is observed with both SCCP based transcoding and LTI (Local Transcoding Interface) based transcoding.

384Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 419: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

When using SCCP Based Transcoding, "show sccp connection" output looks as below during no-way audio issue (Mode - Inactive, rport - Empty, ripaddr - Empty, conn_id_tx - Empty)

CUBE-2#show sccp connections sess_id conn_id stype mode codec sport rport ripaddr conn_id_tx65545 36 xcode inactive g729 16414 0 :: 65545 40 xcode inactive g711a 16412 0 :: When using LTI based transcoding, "show dspfarm dsp active" shows no entry of the call during no-way audioCUBE-2#show dspfarm dsp active SLOT DSP VERSION STATUS CHNL USE TYPE RSC_ID BRIDGE_ID PKTS_TXED PKTS_RXEDTotal number of DSPFARM DSP channel(s) 0

Conditions: IOS Release 15.3(3)M

Issue happens only under following condition.

1.When "midcall-signaling passthru media-change" is configured on CUBE

2.There is change in codec in one of the call leg after invoking supplementary services like Hold/Resume or Transfer

Workaround: 1.Disable "midcall-signaling passthru media-change"

Voice service voip

Sip

no midcall-signaling passthru media-change

2.Use same codec through-out the call (Avoid change in codec behavior by controlling supported codec list)

• CSCun78318

Symptom: ACLs applied to the mgmte do not work on the new active RP after a RP switch over.

Conditions: After a RP switch over as the old standby RP becomes the new active RP.

Workaround: Remove then reapply the ACLs to the mgmte on the new active RP.

• CSCun83231

Symptom: After sub package ISSU operation is performed, ELC does not come up and following error messages are seen.

*Mar 19 23:10:10.607 PDT: %PMAN-0-PROCFAILCRIT: SIP1: pvp.sh: A critical process mcpcc_lc_ms has failed (rc 127)*Mar 19 23:10:10.865 PDT: %PMAN-5-EXITACTION: SIP1: pvp.sh: Process manager is exiting: critical process fault, mcpcc_lc_ms, cc_1_0, rc=127

Conditions: Issue is specific to ELC.

Issue is specific to sub package upgrade.

Issue is seen across all releases that support ELC.

ELC means ASR1000 Ethernet Line Cards - These are: ASR1000-2T+20X1GE and ASR1000-6TGE line cards.

Workaround: Consolidated upgrade can be performed.

• CSCun84368

Symptom: Netflow cache entry is not created for IPV6 flows and entries for IPv4 entries is not accurate . For IPv4 entries the BGP next hop is not updated and set to 0.0.0.0

Conditions: Upon Execution of RP switchover.

385Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 420: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: After RP switch-over, remove BGP configuration from Core router ("P") , and conifgure it back updaon BGP update on PE router, the BGP - NH will appear in FNF records.

• CSCun87352

Symptom: The ESP module in an ASR1000-series router may reload unexpectedly. In systems with an integrated ESP, such as the ASR1001 and ASR1002-X, this may result in a reload of the entire chassis.

Conditions: This has been observed on an ASR1001 running 15.3(3)S2 (IOS-XE 3.10.2S).

Flexible NetFlow is enabled.

Exact conditions currently unknown.

Workaround: Disabling Flexible NetFlow may prevent the crash.

• CSCun87685

Symptom: ASR1006/15.4(1)S crashed while adding port and host specific deny statements on specifc lines for the WCCP-Redirect ACL.

Conditions: Adding port and host specific deny statements on specifc lines for the WCCP-Redirect ACL.

Workaround: There is no workaround.

• CSCun89036

Symptom: Traceback when IPV6 traffic is transiting through ATM sub-interface

Conditions: Configuration of "atm route-bridged ipv6" configured at ATM sub-interface level.

Workaround: There is no workaround.

• CSCun91199

Symptom: NAT ALG not translating in case of multiple sip address in SDP.

Conditions: sip invite message containing oline and cline with different addresses and both need translationdynamic nat with acl configured.

Workaround: Simplify the ACL associated with NAT mapping configuration.

• CSCun92171

Symptom: CUBE's media anti-trombone feature does not work correctly when combined with the pass-thru content sdp feature. When the two features are enabled CUBE will return the wrong SDP on one call leg and does not properly switch from media flow-through to media flow-around.

Conditions: This was seen on 15.4(1)T with both media anti-trombone and pass-thru content sdp enabled.

Workaround: There is no workaround.

• CSCun96969

Symptom: During regular operations, a Cisco router running Cisco IOS release 12.4(24)T and possibly other releases experiences a crash. The crash info will report the following:

%SYS-2-FREEFREE: Attempted to free unassigned memory at 4A001C2C, alloc 4180794C, dealloc 417616B0,

%SYS-6-BLKINFO: Attempt to free a block that is in use blk 4A001BFC, words 134, alloc 4180794C, Free, dealloc 417616B0, rfcnt 0.

Conditions: These is no condition.

Workaround: There is no workaround.

386Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 421: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCtz97771

Symptom: The ASR1002 running IOS_XE 3.7.0 (15.2(4)S) crashed after a configuration change inf FNF.

%FMANRP_NETFLOW-3-INVALIDFLOWDEFCPP: CPP Flow definition can not be created 1Mar 19 12:18:33 lns3 1596693: -Traceback= 1#fcbfdf6899eea283341cebf8c5320ad1 :10000000+6FBFE8 :10000000+6FC394 :10000000+5B9F54C fnf_config:9DB4000+1B270 fman_rp:ED4B000+1D0764 fman_rp:ED4B000+1D0954 :10000000+3326E78 :10000000+330110CMar 19 12:18:33 lns3 1596694: Mar 19 12:18:32.268: %FMANRP_NETFLOW-3-INVALIDFLOWDEFCPP: CPP Flow definition can not be created 1Mar 19 12:18:33 lns3 1596695: -Traceback= 1#fcbfdf6899eea283341cebf8c5320ad1 :10000000+6FBFE8 :10000000+6FC394 :10000000+5B9F54C fnf_config:9DB4000+1B270 fman_rp:ED4B000+1D0764 fman_rp:ED4B000+1D0954 :10000000+3326E78 :10000000+330110CMar 19 12:18:38 lns3 1596696: Mar 19 12:18:35.546: %IOSXE_OIR-6-OFFLINECARD: Card (fp) offline in slot F0Mar 19 12:18:38 lns3 1596697: Mar 19 12:18:35.561: %ASR1000_RP_ALARM-6-INFO: ASSERT MAJOR module F0 Unknown stateMar 19 12:18:38 lns3 1596698: Mar 19 12:18:35.561: %ASR1000_RP_ALARM-6-INFO: ASSERT CRITICAL module R0 No Working ESPMar 19 12:18:47 lns3 1596699: Mar 19 12:18:46.919: %SYS-5-CONFIG_I: Configured from console by icuk on vty0 (46.33.130.1)Mar 19 12:19:50 lns3 1596700: Mar 19 12:19:49.743:

Conditions: An FNF record that includes one of the following key/non-key fields configured along with an extracted field will trigger the trace back.

one or more fields derived from the below:

match/collect routing source/destination [peer] as [4-octet]

along with an extracted field such as :

collect application http host

Example:

flow record test-rec match routing source as 4-octet collect application http hostflow monitor test-mon record test-rec

Workaround: There is no workaround.

• CSCun97294

Symptom: Core dump won't be generated after kernel crash in x86_64 platforms.

Conditions: Kernel crash.

Workaround: There is no workaround.

• CSCun97760

Symptom: ASR running 15.2(4)S4 saw ESP crash due to corrupted H323 packet.

Conditions: ASR running 15.2(4)S4 saw ESP crash due to corrupted H323 packet.

Workaround: If customer don't need h.323 alg, a workaround is to disable h.323 alg:

no ip nat service h225.

• CSCun97966

387Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 422: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: txnpMaxMtuExceeded message seen when packets sent to crypto.

Conditions: When nated packet is sent to crypto, txnpMaxMtuExceeded is seen for some packets. Applicable only asr1k-2x, ESP100 and ESP200.

Workaround: There is no workaround.

• CSCuo02270

Symptom: Issues with source VLAN numbers while using with ERSPAN.

Conditions: VLAN greater than 1005 were not displayed in the running config. There is no service impact.

Workaround: There is no workaround.

• CSCuo02558

Symptom: Crash in cpp_cp_svr when executing 'show platform packet-trace packet all'.

Conditions: Crash can only occur when executing 'show platform packet-trace packet all'.

Workaround: Display a single packet at a time using 'show platform packet-trace packet <num>' instead of using 'all'.

• CSCuo02894

Symptom: Packet-trace statistics sometimes appear to report out-of-sync counts.

Conditions: Using packet-trace in IOS-XE3.11.

Workaround: There is no workaround.

• CSCuo09341

Symptom: ESP crashed.

Conditions: ESP crash observed while running 3.11.1

Workaround: There is no workaround.

• CSCuo09390

Symptom: ASR1K crash on netflow configuration change.

Conditions: When all current CVLA client features are unconfigured and registration happens from beginning for a new client, allocating initial chunk memory fails.

Workaround: Do not unconfigure every existing CVLA feature at once. Leave atleast one feature configured so that when a new feature is configured, CVLA does not have to allocate the initial chunk memory again. Leaving out atleast one CVLA feature configured will avoid the crash.

• CSCuo17719

Symptom: An ESP crash is seen with IPv6 ping to or from an interface configured with IPSec and FNF.

Conditions: The crash is seen when the size of the IPv6 ping is greater than the interface IPv6 MTU.

Workaround: There is no known workaround. However, this is not a common scenario for IPv6 as fragmentation is almost always handled by the sending host/application.

• CSCuo19730

Symptom: Cisco IOS XE includes a version of OpenSSL that is affected by the vulnerability identified by the Common Vulnerability and Exposures (CVE) ID CVE-2014-0160.

This bug has been opened to address the potential impact on this product.

388Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 423: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: Cisco IOS XE devices running release 3.11.0S, 3.11.1S or 3.12.0S and with the WebUI interface over HTTPs enabled. No other versions of Cisco IOS XE are affected.

Devices with the WebUI interface enabled and using HTTPs as transport protocol will include the following configuration:

transport-map type persistent webui http-webui secure-serverip http secure-servertransport type persistent webui input http-webui

Devices running IOS XE release 3.11.0S, 3.11.1S or 3.12.0S but WITHOUT the WebUI interface enabled, or with the WebUI interface enabled but NOT using HTTPs as transport protocol are NOT AFFECTED by this vulnerability.

Devices running IOS XE release 3.11.0S, 3.11.1S or 3.12.0S and with the HTTPs server enabled (by including in their configuration the line "ip http secure-server") are NOT affected. Both the HTTPs server and the WebUI interface need to be enabled for a device to be vulnerable.

Workaround: There is no workaround.

• CSCuo20090

Symptom: The saved ACLs applied to the mgmte from startup-config may not work after system reload.

Conditions: After system reload.

Workaround: Remove then reapply the ACLs to the mgmte after system reload.

• CSCuo27542

Symptom: ASR router crashes when using local static hosts for GTP APN dns resolving.

Conditions: Local hosts statically configured in router.

Workaround: Use external DNS server.

• CSCuo29770

Symptom: ESP fails to initialize and reboots. A message like the following will be seen on the IOS console:

*Jan 01 16:22:35.562: %CPPHA-3-INITFAIL: F0: cpp_ha: CPP 0 initialization failed - startup init (0x1) *Jan 01 16:22:35.562: %CPPHA-3-INITFAIL: F0: cpp_ha: CPP 0 initialization failed - start CPP (0x1)

The cpp_driver tracelog contains an entry which lists an A41C error code, indicating that the driver was unable to turn on termination. Here is an example:

01/01 16:22:35.120 [cpp-drv]: (ERR): COMP0053/dui/A41C: QFP0.0 - unable to turn on termination for DUI0

This is an intermittent failure, so the ESP will likely initialize successfully on the 2nd or 3rd attempt. This is an initialization issue, and once initialization completes successfully there are no further problems related to this condition.

Conditions: Only ASR1002-x, ESP100 and ESP200 are affected. Router configuration or traffic pattern do not affect this problem. The software is fixed in XE3.10.4S, XE3.11.2S, XE3.12.0S and later releases.

Workaround: There is no workaround.

• CSCuo30472

389Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 424: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: On ASR1K configured to do PBR with over 3000 lines of ACL entries , after a change on the match ACE, it stops working.

Conditions: ASR 1000 RP1 configured with over 3000 ACEs.

Workaround: There is no workaround.

• CSCuo38164

Symptom: Traceback and log error noticed

Conditions: While initiating H323 call with SBC feature.

Workaround: There is no workaround.

• CSCuo41590

Symptom: There are compatibility issues between certain IOS-XE versions and SM-ES3X. With some combinations of SM-ES3X firmware and some releases of IOS-XE, the SM-ES3X will not boot.

With the unsupported combinations, the SM-ES3X will not boot. An error

?*May 7 19:44:32.785: %SPA-3-MSG_PARSE_FAILURE:iomd: Failed to parse incoming message from SM-ES3X-24-P slot 2 subslot 0 board 0. The module software may require an update?

will be displayed on the IOS-XE console and the SM-ES3X will go into 'out of service' state as shown in the 'show platform' command.

router#show platChassis type: ISR4451-X/K9Slot Type State Insert time (ago) --------- ------------------- --------------------- ----------------- 0 ISR4451-X/K9 ok 00:16:02 0/0 ISR4451-X-4x1GE ok 00:13:52 1 ISR4451-X/K9 ok 00:16:02 1/0 SM-X-1T3/E3 ok 00:12:29 2 ISR4451-X/K9 ok 00:16:02 2/0 SM-ES3X-24-P out of service 00:07:54 R0 ISR4451-X/K9 ok, active 00:16:02 F0 ISR4451-X/K9 ok, active 00:16:02 P0 Unknown ps, fail never P1 XXX-XXXX-XX ok 00:15:32 P2 ACS-4450-FANASSY ok 00:15:32

Conditions: Versions of SM-ES3X modules is incompatible with some earlier versions of IOS-XE. SM-ES3x version EJ1 is only compatible with the following major release versions of IOS-XE, or later.

15.3(3)S4 (XE 3.10.4)

15.4(1)S3 (XE 3.11.3)

15.4(2)S (XE3.12.1)

Workaround: Ensure that a compatible combination of SM-ES3X and IOS-XE images are used. Upgrade/downgrade one or the other to get to a compatible pair.

• CSCuo47620

Symptom: Memory is leaked during session tear down. The following error message is logged to the console after the address space limit is exceeded.

on standby-ESP:

%CPPDRV-4-ADRSPC_LIMIT: F1: cpp_cp: Address space limit

390Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 425: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: When a policy with conditional policing enabled is removed, the traffic manager leaks 16 bytes of resource DRAM per target. The leak increases exponentially when tearing down more than 20000 PPP sessions. Though the system may still be operation, the control plane performance becomes severely degraded causing subsequent configuration processing to become very slow.

Workaround: There is no workaround.

• CSCuo55508

Symptom: A cpp-ucode crash is encountered.

Conditions: Using packet-trace to trace packets in a feature environment where packets are replicated using egress conditions.

debug platform packet-trace enabledebug platform packet-trace packet 16 fia-tracedebug platform condition egressdebug platform condition start

Workaround: Do not use fia-trace.

• CSCuo64196

Symptom: When remove OSPF from OTV setting, saw CPP-uCode crash.

Conditions: These is no condition.

Workaround: There is no workaround.

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

This section documents the open issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S.

• CSCtd29571

Symptom: Fix warning message for the maximum MAC address filter supported

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCtt21586

Symptom: Kingpin "cc" bandwidth maxed out at 10G

Conditions: None.

Workaround: There is no workaround.

• CSCtw74124

Symptom: For a slot housing the Cisco ASR1000-SIP40, or on a Cisco ASR1002-X, the output of the show platform hardware slot <slot#> plim buffer settings detail command always shows the value of Max always as “0“ in the "Fill Status Curr/Max" filed, even when the Rx buffers have been utilized.

Conditions: When the SPA Aggregation ASIC has been flow controlled by the Network Processing Unit, the buffers inside the SPA Aggregation ASIC will start filling up.

Workaround: There is no workaround.

• CSCtx72973

391Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 426: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: Config-sync failiure is seen when unconfiguring the crypto gdoi group.

Conditions: Seen on HA setup.

Workaround: There is no workaround.

• CSCtz50465

Symptom: ISSU between incompatible images goes through.

Conditions: This happens for images between ISSU-break.

Workaround: There is no workaround.

• CSCua48282

Symptom: On ASR1K router, randomly observe the following error during ISSU MDR runversion, the error does not have funcationality impact.

*Jun 13 18:21:04.001 PDT: %CMCC-3-PLIM_STATUS: SIP2: cmcc: A PLIM driver informational error txnpMaxMTUExceeded, block 1e count 1

Conditions: None.

Workaround: There is no workaround.

• CSCua55528

Symptom: %SYS-3-CPUHOG Errors, and Trace backs seen while performing config replace

Conditions: Configurations are done on both ELC ports and 1 GIGE ports.

Workaround: There is no workaround.

• CSCua62284

Symptom: Can not synchronize SPI4 bus and PLIM error.

Conditions: None.

Workaround: There is no workaround.

• CSCub42703

Symptom: video_SDP_Passthru call are failing Bandwidth based on CAC.

Conditions: None.

Workaround: There is no workaround.

• CSCub71548

Symptom: On ANCP session, when DSLAM sends TCP-FIN, then ASR1K replies with TCP-ACK but does NOT send its own TCP-FIN. Or sometimes ASR1K replies, but with a delayed TCP-FIN.

Instead of graceful closure ANCP closed the connection later due to Keepalives Misssed.

Conditions: ANCP session established to DSLAM, and DSLAM terminates the TCP session with TCP-FIN.

Workaround: There is no workaround.

• CSCub87409

Symptom: Memory leak in oom.sh process RP and FP.

Conditions: None.

Workaround: There is no workaround.

• CSCuc82799

Symptom: MDR:A PLIM driver has critical error TXPA1 - txmcFifoEopMapUbe

392Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 427: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: None.

Workaround: There is no workaround.

• CSCuc91397

Symptom: When measuring No Drop Rate (NDR) with FNF configured on either a ESP100 or ESP200 can appear to be lower than expected particularly when compared with other ESP

forwarding cards. However, some of this is misleading as the method of computing NDR makes no distinction between startup effects and steady state peformance. Once traffic is flowing the steady state throughput is in line with what would be expected. Additionally, decreased export performance is seen, more significant in ESP200 then ESP100.

Conditions: Configuring FNF on ESP100 or ESP200 forwarding cards. If NDR script is run such that early drops (before system has reached steady state) are taken into account by the NDR

search then a misleading low NDR will be reported.

Workaround: Start traffic first before measuring NDR so that startup effects are avoided.

• CSCue61643

Symptom: When the encapsulation on pvc is aal5mux.

Conditions: Ping fails when encapsulation on pvc is aal5mux.

Workaround: Configure a different encapsulation aal2snap and make it default.

• CSCue76929

Symptom: enhance crypto-engine packet drop cause.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCue91054

Symptom: ESP crashed when sending IPv6-fragmented traffic through DMVPN hub (MGRE tunnel).

Conditions: This condition occurs when sending big IPv6 packets (need to do IPv6 fragmenation after adding tunnel header) traffic through DMVPN hub. Large amout of IPv6 fragment traffic, for example, 5G on ESP20, which exceeds re-assembly performance number that is less than 2G.

Workaround: Change MTU to avoid IPv6 fragmentation.

• CSCue92637

Symptom: Review comments for CSCue17512/CSCue93536 (Phy Interrupt Handler)

Conditions: None.

Workaround: There is no workaround.

• CSCuf14884

Symptom: dummy packet generation per SA does not follow configured interval.

Conditions: None.

Workaround: There is no workaround.

• CSCuf57507

Symptom: EVENTLIB-3-RUNHOG: SIP2: cmcc: undefined: 7179ms

Conditions: While performing an active RP failure during ASR1006 subpackage MDR upgrade

Workaround: There is no workaround.

393Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 428: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCuf73907

Symptom: asr1k:elc:wrong display for EVC in "sh bd" for Ten Gig links of ELC

Conditions: None.

Workaround: There is no workaround.

• CSCuf82128

Symptom: ASR-CUBE: Crash observed with DSMP.

Conditions: Load scenario issue is observed.

Workaround: There is no workaround.

• CSCug19588

Symptom: IKEv2 TPS performance degradation over time.

Conditions:This occurs in the lab under extreme test conditions with traffic running during session bring-up.

Workaround: Reduce traffic and or reduce session bring-up rate.

• CSCug42906

Symptom: eXpresso support for BelAir

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCug47592

Symptom: PLIM Driver Error Messages observe while booting.

Conditions: On ASR1002-X router during booting.

Workaround: There is no workaround.

• CSCug58572

Symptom: DM Funcunality collapsed for camaro devices.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCug60382

Symptom: NTE payload type is renegotiated as asymmetric which some device cannot support.

Conditions: Mid call late invite to trigger renegotiated and the answer in SDP from initiator has different nte payload type as nte payload from offer 200(invite) in other side.

Workaround: Remove nte payload in ACK using lua script.

• CSCuh11621

Symptom: Nightster: Shut/No-Shut on Nightster bay0/1 causes PLIM driver Errors

Conditions: None.

Workaround: There is no workaround.

• CSCuh23721

Symptom: %SNMP-3-DVR_DUP_REGN_ERR tracebacks seen on any-to-any oir, replaced 8CE1T1 (with max channels) with 1CE1T1 and on configuring max (31) channel-groups on 1CE1T1during any-to-any oir.

Conditions: Seen on any-to-any oir configured with max channels.

394Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 429: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCuh29125

Symptom: in meetme confernece calls, the call-id/tag modification for NOTIFY work for pre-INVITE NOTIFY, but it seems does not work pre-BYE NOTIFY

Conditions: There is no known condition.

Workaround: There is no workaround.

• CSCuh55816

Symptom: Ensure that all ios-xe image contain the CW_ strings during loadbuild

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuh62666

Symptom: All packets punt to RP for GEC interface.

Conditions: Config and remove ethertype for GEC interface.

Workaround: There is no workaround.

• CSCuh95602

Symptom: Self bound traffic dropped by firewall.

Conditions: NAT64 is configured and traffic is sent from IPv6 client (in) to IPv4 egress interface of UUT (self).

Workaround: There is no workaround.

• CSCui09671

Symptom: GEC: recycle bundle can't keep up on Yoda platforms

Conditions: None.

Workaround: There is no workaround.

• CSCui20319

Symptom: Pending issues/ack is observed on ESP

Conditions: Must meet all following conditions:

1. When port-channel vlan loadbalacing mode is enabled on Port-channel EVC with large scale of EFPs on one port-channel (8000 in this case)

2. EFPs on Port-channel are assigned to different links.

3. When the efps and port-channel are remove using one command "no int port-channel x"

4. Then the scale config and link assignment are added back by copying back the scale config

Workaround: Separate EFP removal and port-channel link removal (remove efps, the remove int port-channel) separate EFP config and port-channel link config (add EFP first, then add links to port-channel).

• CSCui43325

Symptom: Traffic blackhole for v6 SSM groups after flapping bgp loopback interface on the egress PE

Conditions: This condition is observed during BGP loopback interface flap

Workaround: Unconfigure-reconfigure the mdt default command under the v6 address-family for the vrf

395Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 430: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCui45088

Symptom: While changes the ip address configuration on Management interface we are seeing link flap from link down to link up.

Conditions: Management interface should be in up state.

Workaround: There is no workaround.

• CSCui57016

Symptom: Deactivating container takes long time due to symbolic link.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCui64579

Symptom: ping failed with packet size over 10184.

Conditions: MPLS mtu max enabled for MPLSomGRE tunnel

Workaround: Disable MPLS mtu max.

• CSCui96224

Symptom: show crypto ipsec interface <interface-name> platform is listing the output of show platform software ipsec fp active interface all instead of selecting the right interface ID

Conditions: Using the new platform command.

Workaround: There is no workaround.

• CSCuj19293

Symptom: Bindings are present after inconfiguring Static NAT mappings

Conditions: This symptom is observed when static NAT is mapped with route-map

Workaround: There are no workaround.

• CSCuj23729

Symptom: "uc wsapi" cannot be configured on S train platforms (juno)

Conditions: None.

Workaround: There is no workaround.

• CSCuj25221

Symptom: CPP process crash during a change in the loopback ip address used as a DNS NAT source.

Conditions: Change in the ip address.

Workaround: There is no workaround.

• CSCuj36793

Symptom: Commit of CSCud71821 is causing a problem during MDR; the reload causes the cc to go offline and a rommon status of bad_rommon is shown.

Conditions: None.

Workaround: There is no workaround.

• CSCuj38420

Symptom: No alias interface for dynamic NAT.

Conditions: Overload configured for dynamic NAT.

396Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 431: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: remove Overload.

• CSCuj44771

Symptom: Queue_depth value incorrect with FRR Scaling

Conditions: Queue_depth values are not getting back to the original value(0) while shuting the interface

Workaround: There are no workaround.

• CSCuj45924

Symptom: Kingpin : intermittent network boot slowdown

Conditions: None.

Workaround: There is no workaround.

• CSCuj55363

Symptom: In the lisp getVpn solution test, when the getvpn profile is applied in physical interface in the data path flow (such as interface between GM1 to core), the traffic got dropped with qfp error of "IpsecIkeIndicate"/"OUT_V4_PKT_HIT_IKE_START_SP" when the getvpn profile is applied to the LISP0 interface, Encrypted traffic flows in the LISP setup properly

Conditions: getvpn profile is applied to the physical interface instead of lisp interface.

Workaround: Apply getvpn profile in lisp interface.

• CSCuj55984

Symptom: GetVPN crypto gdoi re-reg fails

Conditions: When active traffic and when the WAN intf flaps

Workaround: Issue "clear crypto gdoi" on UUT.

• CSCuj56749

Symptom: SPA FPD Recovery Upgrade failure for SPA-4XT-SERIAL

Conditions: None.

Workaround: There is no workaround.

• CSCuj73916

Symptom: Traceback seen.

Conditions: while running ISAKMP D10 suite during codenomicon testing.

Workaround: There is no workaround.

• CSCuj76325

Symptom: Build issues occurs in CEL 5.5, as config.sh the older java compliler.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuj79520

Symptom: Increased use of global addresess over time while running PAP.

Conditions: NAT PAP enabled along with vrf on outside interfaces.

Workaround: If global address pool becomes deleted, it may become necessary to clear ip nat translations or reload the CPP.

• CSCuj82418

397Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 432: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: CUBE-SP data plane forwording capacity drops.

Conditions: NNI performance test.

Workaround: There is no workaround.

• CSCuj82421

Symptom: the board will not be shutdown expectedly

Conditions: configure "facility-alarm critical exceed-action shutdown". A sensor in remote FRU exceeded the shutdown temp.

Workaround: shutdown the remote board manually.

• CSCuj83079

Symptom: AVC performance results are not stable.

The deviation can be up to 13%.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuj84220

Symptom: Nightster: 10GE Eval license does not transition into In-Use status.

Conditions: None.

Workaround: There is no workaround.

• CSCuj89036

Symptom: IOSd crashes following an OIR of an eToken.

Conditions: OIR activity on either USB port of a single eToken.

Workaround: Do not OIR an eToken.

• CSCuj92874

Symptom: Matching ms-office-web-apps traffic under it's attributes doesn't work.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuj93637

Symptom: NBAR stop to work after reload with getvpn configuration.

Conditions: This symptom is observed when SSO is configure on the box.

Workaround: Remove the crypto map from the interface and attach it again.

• CSCul01335

Symptom: FP may crash

Conditions: This symptom is observed on changing pap limit from 30 to 60 with traffic on

Workaround: There is no workaround.

• CSCul01776

Symptom: Oracle-sqlnet signature may be to broad and needs some adjustment. Current implementation may cause some degradation in performance but has no impact on classification.

Conditions: Relevant where protocol discovery (or oracle-sqlnet QOS) is applied.

Workaround: There is no workaround.

398Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 433: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCul03480

Symptom: mcp_dev: Need to fix name of epoch file or change the tdlresolve.sh.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul10111

Symptom: Loopback Led is not changing to Amber in Javelin T3E3 spa in Encap PPP.

Conditions: None.

Workaround: There is no workaround.

• CSCul12632

Symptom: SPA-8XCHT1/E1: show version doesn't show serial i/f info sometimes.

Conditions: None.

Workaround: There is no workaround.

• CSCul16548

Symptom: The 'show crypto ipsec sa peer <address> platform command may be incorrect for ESP 200 on ASR1K.

Conditions: The crypto context information will be incorrect for all the IPSec SAs programmed on crypto device 1 on an ESP 200.

Workaround: Use the 'show platform software ipsec fp active encryption-processor 1 context <context id>' command manually to get the crypto context information.

• CSCul17693

Symptom: On the ASR1000 platform family, CISCO-ENHANCED-MEMPOOL-MIB & CISCO-MEMORY-POOL-MIB show lsmpi_io pool with little free memory. As a result, various SNMP management software applications may generate an error/notification.

Conditions: This condition is shown from the moment the router boots up.

The lsmpi_io pool is used on the Route Processor of all ASR1000 routers. Unlike other IOS versions IOSd on the ASR is a process running on IOS XE. IOSd has a single logical interface which communicates to IOS XE. This interface is called the Linux Shared Memory Punt Interface (LSMPI). When the ASR1000 boots the lsmpi_io pool is created and nearly all of the memory is allocated up front by design. Therefore, the little free memory shown in the MIBs is by design and does not indicate an error condition.

The LSMPI interface is described further in this document:

http://tools.cisco.com/squish/b64AB

Workaround: There is no workaround for the lsmpi_io pool having little free memory. If some other piece of software is generating alarms for this reason the management software needs to be adjusted.

• CSCul24025

Symptom: ASR1K crash @__be_slaComponentProcessEvent when unconfigure ip sla udp-jitter.

Conditions: configure 4000 CPP timestamp IP SLA udp-jitter and then unconfig all.

Workaround: There is no workaround.

• CSCul27478

Symptom: Time sync problem between QFP and IOS.

399Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 434: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

This out of sync appears at some platforms and causes complete breakage of punt performance monitors.

Conditions: asr1002 RP1 ESP5 and asr1004 RP2 ESP20 after system reload

Workaround: ntp server configuration is must.

delay after reload was done for a system 5-40 mins.

• CSCul29434

Symptom: ELC MDR: %CWAN_HA-4-IFEVENT_BULKSYNCFAIL: receive failed ifevent: 10 err

Conditions: This condition is observed during Consolidated MDR upgrade

Workaround: There is no workaround.

• CSCul38930

Symptom: SR 626723873 : Fix the ESP Crash seen with shared memory access.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul47786

Symptom: failed to initialize qos EA with rp2 super image in mcp_cable_xos branch.

Conditions: None.

Workaround: There is no workaround.

• CSCul48593

Symptom: Active FP crashed due to stuck threads @ipv4_nat_bpa_free_port.

Conditions: None.

Workaround: There is no workaround.

• CSCul48986

Symptom: cpuhog is seen when config lma network

Conditions: config pool ipv4 v4pool3 pfxlen 16

Workaround: There is no workaround.

• CSCul50470

Symptom: false pool exhaustion with route-map + dynmaic nat

Conditions: atleast two nat mapping are present.

Workaround: There is no workaround.

• CSCul57003

Symptom: ELC MDR:%MDR-3-RESTART_FAILED: SIP1: mdr_cc_client.sh: Failed.

Conditions: When one of the ELC in disable state.

Workaround: There is no workaround.

• CSCul65261

Symptom: write bus access failed with fpd upgrade

Conditions: This condition is observed during FPD bundled upgrade

Workaround: There is no workaround.

• CSCul65858

400Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 435: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: GARP for the NAT-inside-global-address is sent from a non-Active HSRP router.

The problem is seen when one of the redundancy pair is reloaded and the interface comes up.

Because of the behavior, traffic loss is seen on the NAT traffic.

When receiving the GARP, active router shows the duplicate address message like below.

%IP-4-DUPADDR: Duplicate address x.x.x.x on GigabitEthernetx/x/x, sourced by xxxx.xxxx.xxxx

Conditions: None.

Workaround: There is no workaround.

• CSCul66532

Symptom: Packet state was not initialized. This caused a NULLpointer reference when attempting to initialize the onefw packet state for debug.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul67817

Symptom: max nat translations with ACL not working.

Conditions: With PAT mapping using ACL nat limit config.

Workaround: There is no workaround.

• CSCul69572

Symptom: Warning messages observed when we configure 'source-interface loopback 'num' on the NVE interface.

Conditions: Issue observed whenever we configure the souce-interface command on the NVE.

Workaround: There is no workaround.

• CSCul69967

Symptom: Pending issues in show platform software object-manager fp standby stats

Conditions: None.

Workaround: There is no workaround.

• CSCul71859

Symptom: TCP checksum failure when virtio driver used on KVM.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul80669

Symptom: 2KP:%IOSXE-3-PLATFORM: R0/0: kernel: bullseye_i2c_ Error seen on mcp_dev

Conditions: None.

Workaround: There is no workaround.

• CSCul81116

Symptom: Xunlei-kankan signature needs to be strengthenged.

Conditions: Relevant to routers running NBAR2 protocol pack 4.0(0) and above.

Workaround: There is no workaround.

• CSCul84718

401Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 436: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: ASR1K MLPPP - " Multilink fastsend reentered " on LNS.

Conditions: None.

Workaround: There is no workaround.

• CSCul86977

Symptom: CSR1000 - Ubuntu + KVM interface stops responding during throughput test.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul87051

Symptom: ASR1k running 3.7.2S

Two inside global addresses for the same inside local address.

Sufficient pool to handle one-to-one translations.

Conditions: IPv4 nat - ip nat inside source route-map <route-map> pool <pool> reversible

SIP traffic.

Workaround: There is no workaround.

• CSCul90950

Symptom: re-commit the image file csr_mgmt_rel.tgz to mcp_dev.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul93069

Symptom: Multiple Tracebacks are seen.

Conditions: no ip arp inspection.

Workaround: There is no workaround.

• CSCul97900

Symptom: IPSUB EVSI Create Error counter is incremented post churn test.

Conditions: None.

Workaround: There is no workaround.

• CSCum03117

Symptom: Verify traffic not flood to fwd vfi when efp and vfi in same BD.

Conditions: traffic flood is wrong with same BD

Workaround: There is no workaround.

• CSCum03368

Symptom: Multiple Tracebacks are seen.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum03368

Symptom: CSR1000V crash upon applying policy-map.

Conditions: Normal testing condition.

Workaround: There is no workaround.

402Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 437: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCum09359

Symptom: Few sessions remain stuck in "ack-wait" state after overnight churn test.

Conditions: None.

Workaround: There is no workaround.

• CSCum12453

Symptom: ASR1K: Prowler SPA: Tail drop of imix traffic and ESP crash.

Conditions: None

Workaround: There is no workaround.

• CSCum25373

Symptom: Traceback is seen

Conditions: MSRPC regression test (mcp_alg_msrpc.tcl) is run.

Workaround: There is no workaround.

• CSCum52407

Symptom: $$IGNORE Code changes made to run on non-secureboot ARGUS do not work on Secureboot P2 cards.

Conditions: $$IGNORE modify existing rommon so that same code can be compiled to run on both SB and non-SB cards through a compile-time switch.

Workaround: There is no workaround.

• CSCum68577

Symptom: UCSE sub-interface configuration not available.

Conditions:

Router# conf tEnter configuration commands, one per line. End with CNTL/Z.4451-2013(config)#int ucse 1/0/0.1% Invalid input detected at '^' marker.4451-2013(config)#int ucse 1/0/1.1% Invalid input detected at '^' marker.4451-2013(config)#4451-2013(config)#end4451-2013#4451-2013#

Workaround: There is no workaround.

• CSCum68727

Symptom: Ulord: Utah & CSR hal_state_reset() called multiple times per packet

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum73773

Symptom: QFP crash

Conditions: remove ip nat setting mode and run "sh pl hard qfp ac statistics drop".

Workaround: There is no workaround.

• CSCum78764

Symptom: MTP dependent fix.

403Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 438: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum82701

Symptom: MPE max llength filter.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum89375

Symptom: Kingpin: no kernel core on Watchdog.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum91756

Symptom: Ultra: DOD part II performance improvements for 1/2/4vCPU.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum92033

Symptom: 3.13 nbar version needs update.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum94365

Symptom: 2KP:%IOSXE-3-PLATFORM: R0/0: kernel: bullseye_i2c_ Error seen on mcp_dev.

Conditions: None.

Workaround: There is no workaround.

• CSCum99115

Symptom: ELine:Def Encap-Access intf connect to PE goes downon shut service Inst.

Conditions: None.

Workaround: There is no workaround.

• CSCun01920

Symptom: When configured as VTEP [virtual tunnel end point] -Router stops processing any data. It even fails to establish the OSPF neighbor relationship post the reload.

Conditions: When configured as VTEP [virtual tunnel end point] -Traffic stops on all Ports of the Ethernet Linecard after sometime. The problem also happens with packets going out of the ELC Ports having Multicast MAC address as destination MAC in the Ethernet header.

Workaround: The problem occurs only with ASR1000-6TGE/ASR1000-2T+20X1GE if any of the 1G/10G ports have egress Multicast MAC traffic.

• CSCun09973

Symptom: esp reloaded when received incorrect l2tp packet.

Conditions: l2tp packet with incorrect udp length.

Workaround: enable the checksum ignore.

• CSCun15169

404Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 439: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Symptom: Tracebacks seen after router reload in scaled PPPoE Environment.

Conditions: None.

Workaround: There is no workaround.

• CSCun30311

Symptom: 'show platform software status control-processor brief' on ASR1K inserted with ASR1000-6TGE & ASR1000-2T+20X1GE will show the card status as unknown.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun31122

Symptom: Tracebacks are seen on a debug disable when conditions are set for ATM customers using PPPoE.

Conditions: When using debug conditions together with PPPoE debugs on undebug all the Tracebacks are thrown.

Workaround: Currently no workaorund present since also no visible service impact.

• CSCun32287

Symptom: The maximum number of ifHCInOctets is 2^64-1 but this counter can decrease before reaching the maximum number.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun39803

Symptom: Intermittent connectivity loss between hosts at different OTV sites. Pinging from one host to the other more than 8 times restores connectivity for about 8-10 minutes. Packet captures show ARP request broadcasts from a host at one site not being received by the host at the other site for about 7-8s, and then suddenly starting to work.

This problem has a tendency to get worse over time, with more and more hosts being affected over the course of a week or two until connectivity between sites is essentially gone

Conditions: ASR1K running 15.4 or 15.3 code, possibly earlier code, with OTV configured.

Workaround: None on the ASR thus far. Statically configuring ARP entries on the hosts will work.

• CSCun41391

Symptom: FP crash after the IOS-XE upgrade to 3.11.0S

Conditions: ASR1k router running 3.11.0S

Workaround: There is no workaround.

• CSCun48024

Symptom: SPA in one of the sub-slots of SIP remain in "inserted state" even after the removal and re-insertion. Also the "insert time" does not get reseted even after removal and re-insertion.

Conditions: The problem is seen when there is rapid insert and removal of SPA in a slot on ASR1000. The image in which problem seen is 15.1(3)S ( XE34) release. The problem is not seen in 15.2(4)S XE37 release.

Workaround: Reload of entire router.

• CSCun52653

Symptom: RP2:"cpp_cp_svr" core seen on XE311

405Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 440: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun56801

Symptom: Customer is trying to configure a new router with a 3g hwic integrated. When using command show cell 0 all , message error modem no present, but show inventory found modem PID is 819-3g-v.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun57777

Symptom: Broadcast Packets are droped after adding EVC config to ASR1002. The issue happens on and before 03.09.02. The issue doesn't happen on and after 03.10.00.

After adding evc config, broadcast packets are droped, L2BDReplicationStart is counted, and replication tree information disappears.

Conditions: on and before 03.09.02.

Workaround: To execute 'no shutdown' under service instance before configuration change.

• CSCun59468

Symptom: CSR1000v MinTu Drops for 1501 through 1505 Byte Packets.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun59544

Symptom: ASR1k stops processing new PPPoE sessions, IPoE ISG sessions are not affected.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun61454

Symptom: entPhysicalFirwareRev and entPhysicalHardwareRev is not correct for ASR1000-6TGE/ASR1000-2T+20X1GE.

Conditions: When ENTITY-MIB is queried through SNMP.

Workaround: There is no workaround.

• CSCun62047

Symptom: ASR1k: Cleanup tracebacks seen while testing CEoP SPA-24CHT1-CE-ATM.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun69752

Symptom: multicast packet is not reassembled(VFR) on lisp + getvpn.

Conditions: lisp+getvpn configuration, router receive multicast and fragmented packet.

Workaround: There is no workaround.

• CSCun75663

Symptom: ASR1K Stanbdby RP remains in init state for about 15 minutes during bootup.

Conditions: Atleast one of the SIP should be in shutdown/disabled state during bootup.

406Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 441: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCun83572

Symptom: Move the src/dst tmp storage out of the if (frag_info) {} scope.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun86123

Symptom: ATOM port-mode xconnect is up, but all traffic is under that l2 vc is dropped and statistics under "show mpls l2 vc detail" are zero.

Conditions: On reloading the router mutiple times continuously with traffic on port-mode ATOM vc, at times the VC does not come up.

This issue is seen only on the SPA SPA-2CHT3-CE-ATM.

Workaround: shut/no shut of the controller on which the port-mode ATOM vc is created.

Example:

Bnet-A1(config)#controllerBnet-A1(config)#controller E3 1/3/0Bnet-A1(config-controller)#shutdownBnet-A1(config-controller)#no shutdown

• CSCun88043

Symptom: Active router crashes in B2B scenariio when standby not syncing.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun88172

Symptom: Added counters for increased visibility of errors in Cablevision network.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun88935

Symptom: A log message %IOSXE_SPA-6-UPDOWN: Interface TenGigabitEthernet2/0/0, link down due to local fault is seen while 10G interface is configured for admin down.

Conditions: Seen only for 10G interface.

Workaround: There is no workaround.

• CSCun89310

Symptom: IPv6 DHCP PD based streams get dropped during RPSO due to IPv6 proc hike.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun90447

Symptom: For 6PE/6VPE MPLS configurations, FNF will report the BGP neighbor for IPv6 flows in the IPv6 BGP Nexthop field as the IPv4 neighbor address interpreted as an IPv6 Address. For example, an IPv4 BGP nexthop address of 107.0.0.2 will be reported as an IPv6 BGP nexthop address of 6B00:2::.

407Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 442: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: The mis-reporting happens when using an FNF MPLS flow monitor configured with a flow record containing an IPv6 BGP nexthop address field with IPv6 flows through an MPLS core configured as either 6PE or 6VPE.

Workaround: The IPv6 prefix value reported can be re-interpreted as an IPv4 address using the first 32-bits of the IPv6 prefix.

• CSCun91087

Symptom: O2 router crashes with non-default firmware intermittently.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun92140

Symptom: QFP memory depletion results after a number of NBAR configurations with the traffic flows.

Conditions: Provision and unprovision NBAR on interfaces a number of times with traffic flows.

Workaround: Wait about 3 minutes after unconfiguring complete NBAR feature.

• CSCun92199

Symptom: ucode crash with sip traffic.

Conditions: After doing couple of events like redudancy reload multiple times and with SIP traffic.

Workaround: There is no workaround.

• CSCun92244

Symptom: active router creates binds with same gaddr, gport for >1 lport.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCun96598

Symptom: SNMP query on DS3-MIB objects like dsx3LineLength, dsx3LineStatusLastChange, dsx3LoopbackStatus and dsx3Channelization are showing value 'zero' for SPA-2XT3/E3 card.

Conditions: Testing DS3-MIB objects on 2XT3/E3.

Workaround: There is no workaround.

• CSCun99798

Symptom: SNMP query on dot3Stats counters are not updating on ASR1000-6TGE card and ASR1000-2T+20X1GE.

Conditions: While testing EtherLike MIB.

Workaround: There is no workaround.

• CSCuo03834

Symptom: Entity alias mapping and if table entry missing for USB ports in ASR1002-X built-in RP.

Conditions: ASR1002-X running with asr1002x-universalk9.03.08.01.S.153-1.S1.SPA.bin.

Workaround: There is no workaround.

• CSCuo04629

Symptom: ISSU:XE310 ->XE311:SIP fails to come online after CC/SPA upgrade.

Conditions: There is no condition.

408Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 443: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCuo05164

Symptom: Sequence number reuse is disabled with anti-replay disabled.

Conditions: sequence number will not be reused.

Workaround: There is no workaround.

• CSCuo11149

Symptom: SPA FPD recovery fails for SPA-4XT-Serial on 1RU and 2KP if it is done second time.

FIrst time the recovery works fine, but ig the SPA is corrupted again then it is not recovered.

Conditions: OIR/removal of SPA during FPD upgrade send the SPA into out-of-service state.

You can recover it once. But if it again it went to out-of-service state then recovery doesn't works.

Workaround: Either reload the router or recover the SPA on nightster router.

• CSCuo11179

Symptom: stby-rp crashing with Process = SSS PM SHIM QOS TIMER during session churn + rp fail-over.

Conditions: Switch over with scale sessions.

Workaround: There is no workaround.

• CSCuo17427

Symptom: CFM ETHER Failed with EVC local connect on dot1q and untag.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo26733

Symptom: CAC compound scope src-adj,dst-adj cannot be configured

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo31506

Symptom: Traffic drop in getvpn and lisp scale setup.

Conditions: Traffic is dropped after ipsec flap.

Workaround: There is no workaround.

• CSCuo31517

Symptom: Autoneg status on copper SFP is always displayed as completed.

Conditions: ASR1k-BUILTIN-2x10GE-20x1GE ports with copper SFP (SFP-GE-T) inserted on 1GE port.

Workaround: There is no workaround.

• CSCuo31667

Symptom: Badly formed RTP" drop counter increases unexpectedly. This issue is recovered by reloading the SBC.

Conditions: This issue is seen with tele-presence call.

Workaround: Reload the SBC.

409Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 444: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

• CSCuo31931

Symptom: Fman-fp crash is seen @ aom_obj_str.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo37411

Symptom: ASR1K CPP crashes with stuck thread in ipv4_nat_pat_block_to_front.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo37461

Symptom: Tunnel interface QoS may not work after route distance change.

Conditions: This happens when there are multiple tunnel interfaces whose traffic is all tunneled to the same physical interfaces, with multiple routes for each tunnel traffic, where route distance determines the physical interface for the tunnel traffic.

With QoS applied to the tunnel interfaces, when the tunnel traffic route distance is changed to select different physical interface, the QoS on that tunnel interface no longer works, after the change.

Workaround: Change the routes for all tunnels to the same physical interface.

• CSCuo40409

Symptom: Traceback seen in B2B NAT when redundancy group flaps under heavy traffic load.

Conditions: Heavy Traffic Load, Active Router should go down and preempt its role as Active after it comes up.

Workaround: There is no workaround.

• CSCuo40653

Symptom: A traceback is seen, which is not really pointing to an error.

Conditions: The tracebacks were seen around ESP-crash.

Workaround: There is no workaround.

• CSCuo42772

Symptom: The user can't configure erspan session destination port.

Conditions: The user can not configure the erspan destination port when the port index exceed the 9215.

Workaround: Reload system.

• CSCuo43912

Symptom: SNMP Query on the object dot3StatsFrameTooLongs is showing the count of "0" on ISR4451 platform.

Conditions: While testing EtherLike-MIB.

Workaround: There is no workaround.

• CSCuo45683

Symptom: tail dropping for PPPoEoA sessions

used HW: SPA-3XOC3-ATM-V2.

Conditions: Wrong behavior or congestion although ATM interface load is clearly below any critical value.

410Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 445: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

conditions are not clear

Workaround: There is no workaround.

• CSCuo48252

Symptom: ATM SPA console (ipc-console x x; show log) log errors:

*Mar 27 14:47:27.310: tsp3_setup_egress_ch(SPA ATM1/0 SAR) Error: rc=2013 on line 225SPA ATM1/0 SAR: An error was reported by SAR driver, while executing a command:

Description: setup VC command failed, port 1 vpi/vci 19 / 61 [Error code 2013]SPA ATM1/0 SAR: An error was reported by SAR firmware while executing a command:

Description: rsy open chan: Channel Descriptor in use [Error code 2]*Mar 28 05:19:20.230: tsp3_setup_ingress_ch() Error: rc=2024 on line 474SPA ATM1/0 SAR: An error was reported by SAR driver, while executing a command:

Description: setup VC command failed, port 2 vpi/vci 13 / 141 [Error code 2024]SPA ATM1/0 SAR: An error was reported by SAR firmware while executing a command:

Description: rsy open chan: Channel Descriptor in use [Error code 2]

Conditions: Auto VC feature used; VCs set up / tear down at a high rate.

Workaround: There is no workaround.

• CSCuo49765

Symptom: There's a mismatch between the power threshold values in the "show hw-module subslot x/y transceiver z idprom detail"outputs and the power threshold values in the SNMP polling results.

Conditions: The router is using CWDM SFP.

Workaround: There is no workaround.

• CSCuo50995

Symptom: The IP Identification field of packets sent from a ASR1000 acting as an IAP to a Mediation Device/MD always have the value set to zero.

Conditions: This behaviour has been observed on multiple IOS-XE release, including the current latest 3.12S release.

Workaround: Configure the MTU of the IAP, MD and interconnecting devices to avoid fragmentation.

• CSCuo55610

Symptom: Incomplete kernel core file with filename ending in .TEMP_IN_PROGRESS.

Conditions: Active RP kernel core dump in dual RP2 systems.

Workaround: There is no workaround.

• CSCuo56920

Symptom: ULTRA XE313: KVM Cloned VM stuck in booting.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo58520

Symptom: XE313 : NAT Traceback @cpp_nat_ea_trans_common_cb ; changing NAT POOL.

Conditions: There is no condition.

411Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 446: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Workaround: There is no workaround.

• CSCuo60225

Symptom: XE313 : ucode crash while changing NAT mode with B2B HA

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo61455

Symptom: Crash of ASR1k running IOS-XE 3.10.2S or 3.11.1S with Carrier Grade NAT (CGN) configured.

Conditions: ASR1k running IOS-XE 3.10.2S or 3.11.1S with Carrier Grade NAT (CGN) configured.

Workaround: Disable CGN:

"ip nat settings mode default"

• CSCuo61782

Symptom: XE313 : PAP address allocation issue.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo61810

Symptom: XE313 : Crash @ipv4_nat_bpa_free_bpa while changing PAP limit and BPA

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo62650

Symptom: While testing ISSU for xe37_netflow_ipfix and xe37_nbar forwading feature , observing cache entries is missing with netflow feature , and nbar gig interface stats count were not shown with nbar feature after Final ISSU upgrade.

Conditions: Issue is seen in both upgrade and downgrade in 4RU-RP1 platform alone.

Workaround: There is no workaround.

• CSCuo63083

Symptom: Conditional Policing not working correctly.

Conditions: When a conditionally policed node is moved to a different congestion node, the conditionally policed node is still referencing the previous congestion node, resulting in incorrect conditional policing behavior.

Workaround: There is no workaround.

• CSCuo63433

Symptom: XE313 : ucode crash @ipv4_nat_cgn_mode_dp_rel_mem B2B + NAT + CGN

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo65747

Symptom: When adding a Fair-Queue QoS class to a existing QoS policy on a interface, the Fair Queue policy is not added correctly. This results in other queuing classes on the same policy not getting the expected behavior.

412Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 447: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: If the Fair Queue class is added to a existing policy-map which is attached to one or more interfaces.

Workaround: Problem can be overcome by simply removing and reapplying the service-policy to the interface.

• CSCuo72654

Symptom: On ASR1k copper port, the interface doesn't bring up when it has fixed configuration if taking the following steps.

Also the interface shows 100Mbps when connecting with a 1000Mbs port.

Conditions: The copper port has the following configuration;

interface GigabitEthernet0/0/5

speed 1000

no negotiation auto

1) Connect with a port with 100M speed,

2) Shutdown the peering interface or disconnect the cable,

3) Connect with 1000M full port and the interface doesn't bring up.

Workaround: Configure negotiation auto and then configure no negotiation auto.

shut/no shut doesn't work.

• CSCuo75385

Symptom: Multicast Extranet Traffic Drops.

Conditions: During RP switchover.

Workaround: There is no workaround.

• CSCuo76032

Symptom: The following message appears during session churn under scaleMultiple Tracebacks are seen.

Conditions:

May 8 22:05:37.410: %CPPDRV-4-ADRSPC_LIMIT: F1: cpp_cp: Address space limit 786432 KB reached, mapping block dram_dram size 524288 dynamically, over limit space: 108544 KBMay 8 22:05:43.374: %CPPDRV-4-ADRSPC_LIMIT: F1: cpp_cp: Address space limit 786432 KB reached, mapping block dram_dram size 524288 dynamically, over limit space: 109568 KBMay 9 09:48:15.082: %CPPDRV-4-ADRSPC_LIMIT: F1: cpp_cp: Address space limit 786432 KB reached, mapping block dram_dram size 524288 dynamically, over limit space: 110592 KBMay 9 12:17:23.034: %CPPDRV-4-ADRSPC_LIMIT: F1: cpp_cp: Address space limit 786432 KB reached, mapping block dram_dram size 524288 dynamically, over limit space: 111104 K

Scale testing with 27000 ppp session.

Tests are done in repetitive cycles.

Workaround: There is no workaround.

• CSCuo77017

Symptom: The tcam resource has not released after 32k efp configured and deleted on the asr1001

413Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 448: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: with a clear configuration running 3.13 img,configure 32k efp , check the tcam resource on the asr1k, and delete the efp then check the tcam on the asr1k, will find the resource hs not beem released.

Workaround: Reload the router or FP.

• CSCuo77698

Symptom: when we tried to change slot of SPA-1X10GE-L-V2.

Following messages can be seen continuously. after that SPA cannot boot up.

Step1:use < hw-module subslot 0/3 shutdown> to power off SPA

Step 2:unplug SPA from slot 0/3/0 then insert it into 0/1/0

*May 12 06:14:30.407: %FPD_MGMT-3-MAJOR_VER_MISMATCH: Major image version mismatch detected with 10GE I/O FPGA (FPD ID=1) for SPA-1X10GE-L-V2 card in subslot 0/1. Image will need to be upgraded from version 0.1292 to at least a minimum version of 1.9. Current HW version = 1.2.*May 12 06:14:30.408: %FPD_MGMT-5-UPGRADE_ATTEMPT: Attempting to automatically upgrade the FPD image(s) for SPA-1X10GE-L-V2 card in subslot 0/1. Use 'show upgrade fpd progress' command to view the upgrade progress ...*May 12 06:14:30.456: %FPD_MGMT-6-BUNDLE_DOWNLOAD: Downloading FPD image bundle for SPA-1X10GE-L-V2 card in subslot 0/1 ...*May 12 06:14:30.555: %FPD_MGMT-6-UPGRADE_TIME: Estimated total FPD image upgrade time for SPA-1X10GE-L-V2 card in subslot 0/1 = 00:00:20.*May 12 06:14:30.560: %FPD_MGMT-6-UPGRADE_START: 10GE I/O FPGA (FPD ID=1) image upgrade in progress for SPA-1X10GE-L-V2 card in subslot 0/1. Updating to version 1.9. PLEASE DO NOT INTERRUPT DURING THE UPGRADE PROCESS (estimated upgrade completion time = 00:00:20)

FPD upgrade in progress on hardware, reload/configuration change

on those hardware is not recommended as it might cause HW programming

failure and result in RMA of the hardware.

*May 12 06:14:31.989: %CMCC-3-PLIM_STATUS: SIP0: cmcc: A PLIM driver informational error SBM1 Signal Err_l detected on SPA I/F, block 3 count 1*May 12 06:14:45.345: %FPD_MGMT-6-UPGRADE_PASSED: 10GE I/O FPGA (FPD ID=1) image in the SPA-1X10GE-L-V2 card in subslot 0/1 has been successfully updated from version 0.1292 to version 1.9. Upgrading time = 00:00:14.785*May 12 06:14:45.345: %FPD_MGMT-6-OVERALL_UPGRADE: All the attempts to upgrade the required FPD images have been completed for SPA-1X10GE-L-V2 card in subslot 0/1. Number of successful/failure upgrade(s): 1/0.*May 12 06:14:45.345: %FPD_MGMT-5-CARD_POWER_CYCLE: SPA-1X10GE-L-V2 card in subslot 0/1 is being power cycled for the FPD image upgrade to take effect.*May 12 06:14:45.346: %SPA_OIR-6-OFFLINECARD: SPA (SPA-1X10GE-L-V2) offline in subslot 0/1*May 12 06:14:51.395: %FPD_MGMT-3-MAJOR_VER_MISMATCH: Major image version mismatch detected with 10GE I/O FPGA (FPD ID=1) for SPA-1X10GE-L-V2 card in subslot 0/1. Image will need to be upgraded from version 0.1292 to at least a minimum version of 1.9. Current HW version = 1.2.*May 12 06:14:51.395: %FPD_MGMT-5-UPGRADE_ATTEMPT: Attempting to automatically upgrade the FPD image(s) for SPA-1X10GE-L-V2 card in subslot 0/1. Use 'show upgrade fpd progress' command to view the upgrade progress ...*May 12 06:14:51.395: %FPD_MGMT-6-BUNDLE_DOWNLOAD: Downloading FPD image bundle for SPA-1X10GE-L-V2 card in subslot 0/1 ...*May 12 06:14:51.398: %FPD_MGMT-6-UPGRADE_TIME: Estimated total FPD image upgrade time for SPA-1X10GE-L-V2 card in subslot 0/1 = 00:00:20.*May 12 06:14:51.403: %FPD_MGMT-6-UPGRADE_START: 10GE I/O FPGA (FPD ID=1) image upgrade in progress for SPA-1X10GE-L-V2 card in subslot 0/1. Updating to version 1.9. PLEASE DO NOT INTERRUPT DURING THE UPGRADE PROCESS (estimated upgrade completion time = 00:00:20)

414Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 449: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.2S

Conditions: This issue can not be reproduced by 100%.

we tried to reproduce it with 3 other slots, the issue cannot be reproduce unless

unplug SPA from slot 0/3/0 then insert it into 0/1/0.

Workaround: change other SPAs.

• CSCuo80647

Symptom: Grub counters in mfib Transport VRF

Conditions: Scenario 1

ASR1K PE is configured with Multicast Extranet VPN to act as Multicast Source.

Transport VRF is configured with mdt default. Multicast vrf rpf select command is configured to do rpf check from Transport to Source VRF. Whenever we clear mfib Source VRF counters we can see grub numbers in Transport VRF mfib output.

Scenario 2

ASR1K PE is configured with Multicast Extranet VPN to act as Multicast Receiver.

Transport VRF is configured with mdt default. Multicast vrf rpf select command is configured to do rpf check from Receiver VRF to Transport VRF. Whenever we clear mfib Transport VRF counters we can see grub numbers in Receiver VRF mfib output.

Workaround: Clear Counters on Transport VRF.

• CSCuo80873

Symptom: Crash.

Conditions: In b2b or intra-box redundancy configurations with stateful features (ie NAT, FW, etc) and the ha_build_pkt function starts after processing a virtually reassembled pkt.

Workaround: There is no workaround.

• CSCuo81949

Symptom: Traceback during churng XE3.13 - %FMANRP_ESS-4-WRNPARAM_U.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo85982

Symptom: High RP and ESP utilization and generation of many large (~ 1 MB) logging files with names of the form "cpp_cp_F*".

Conditions: IPv4 multicast packets received on interfaces configured for IP subscriber sessions.

Workaround: There is no workaround.

• CSCuo88928

Symptom: POE Power bal card not bieng recognised on Greyhound P1A unit.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo90646

Symptom: Multiple Citrix ICA tags QOS may not work, showing only one of the ICA Tags configured.

Conditions: Applying more then one Citrix ICA Tags QOS rules.

Workaround: Use 15.2(2)S or 15.4(2)S and above images.

415Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 450: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCuo90700

Symptom: ELC: i2c read/write errors on popinac console logs for Cu/100FX SFPs.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo92505

Symptom: Could not create CSR.

Conditions: Create Ultra router using .ova file.

Workaround: There is no workaround.

• CSCuo94935

Symptom: Router generates BINOS_LOGIN-6-PAMAUTHDENY.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuo99185

Symptom: Multiple IOS-XE CPP Ucode crashes with IPSec + GRE + MPLS

Conditions: There is no condition.

Workaround: There is no workaround.

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S, page 417

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S, page 444

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S.

• CSCtk05154

Symptom: Not all dtmf is detected by the receiving endpoint. PCM analysis will show two tones too close together to be detected as two.

Conditions: Dial the same number rapidly. For example 99999999.

Workaround: There is no workaround.

• CSCue18556

Symptom: There is no RP CLI to dump drop counter due to High Priority Policer.

Conditions: On configuring the High Priority Policer there is no RP CLI to dump drop counters.

416Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 451: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: Using the CC CLI. Caveat: CC CLI show "other system drop" "High Priority Policer drop count"

• CSCue29595

Symptom: SRTP passthrough for h323 calls failing.

Conditions: h323 calls are failing when both the legs are h323 and its SRTP passthrough.

Workaround: There is no workaround.

• CSCuf51465

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S, page 417

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S, page 444

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S.

• CSCtk05154

Symptom: Not all dtmf is detected by the receiving endpoint. PCM analysis will show two tones too close together to be detected as two.

Conditions: Dial the same number rapidly. For example 99999999.

Workaround: There is no workaround.

• CSCue18556

Symptom: There is no RP CLI to dump drop counter due to High Priority Policer.

Conditions: On configuring the High Priority Policer there is no RP CLI to dump drop counters.

Workaround: Using the CC CLI. Caveat: CC CLI show "other system drop" "High Priority Policer drop count"

• CSCue29595

Symptom: SRTP passthrough for h323 calls failing.

Conditions: h323 calls are failing when both the legs are h323 and its SRTP passthrough.

Workaround: There is no workaround.

• CSCuf51465

Symptom: On ASR1000-2T 20GE Linecard, TCAM_VLAN_TABLE_FULL Error is not displayed.

417Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 452: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: when Maximum scale of 48K VLAN already configured and user attempts to add more than 48K VLANS on the card.

Workaround: There is no workaround.

• CSCug37057

Symptom: RSVP hello stays in "PASSIVE".

Conditions: Ospf send bdb packet error for incomplete adj.

Workaround: There is no workaround.

• CSCug73829

Symptom: Data Conversion Errors seen while configuration changes at Remote end device.

Conditions: Data Conversion Error & traceback can be seen while doing configuration changes on remote end device.

Workaround: There is no workaround.

• CSCuh03476

Symptom: Tracebacks seen while configuring APS parameters on a POS link.

Conditions: During normal CLI configurations.

Workaround: There is no workaround.

• CSCuh72004

Symptom: On the Cisco ASR1000 Series Router, the FPD upgrade on the Fixed Ethernet Line Card (ELC) causes line protocol to stay down on its Interfaces. The Route Processor (RP) card on the router goes out of sync. The line protocol status on ELC-console is shown as 'up'; but, the RP is unaware of this. As per RP, all the 1G ELC interfaces are in 'down' state. 'Shut/no shut' of the affected interfaces interface-config does not resolve the issue.

Conditions: FPD upgrade of the DB-FPGA on the Ethernet Line Card, performed via the router command: "upgrade hw-module subslot <> fpd bundled reload" or "upgrade hw-module subslot <> fpd file <filename> reload" causes the issue.

Workaround: Reload the Ethernet Line Card by either a manual removal/insertion of the line card or via the router command "hw-module slot <> reload" This issue happens because the SPA is reloaded after a successful DB-FPGA(FPD) on a line card. However on ELC, SPA OIR is not supported since since it is just a logical subslot. Hence, after a FPD upgrade, the SPA is left in an undefined state causing line protocol to stay down. To resolve this issue, the card is restarted (slot reloaded). As a result of this fix, after a successful FPD upgrade the user would see the following messages on the RP2 console: *<Date_Time>: FPD MSG HANDLER: upgrade result response from 0/0 received, card type=0x75F, fpd id=0x16, num retries=1, upgrade result=2, upgrade id=8

*<Date_Time>: %FPD_MGMT-6-UPGRADE_PASSED: DB FPGA (FPD ID=22) image in the

BUILT-IN-2T 20X1GE card in subslot 0/0 has been successfully updated from version 1.12

to version 1.13. Upgrading time = 00:03:51.518 *<Date_Time>:

%FPD_MGMT-6-OVERALL_UPGRADE: All the attempts to upgrade the required FPD images have

been completed for BUILT-IN-2T 20X1GE card in subslot 0/0. Number of

successful/failure upgrade(s): 1/0. *<Date_Time>: %FPD_MGMT-5-CARD_POWER_CYCLE:

BUILT-IN-2T 20X1GE card in subslot 0/0 is being power cycled for the FPD image upgrade

to take effect. *<Date_Time>: %SPA_OIR-6-OFFLINECARD: SPA (BUILT-IN-2T 20X1GE)

offline in subslot 0/0 *<Date_Time>: %IOSXE_OIR-6-OFFLINECARD: Card (cc) offline in

slot 0 *Oct 3 03:40:13.214: %IOSXE_OIR-6-REMSPA: SPA removed from subslot 0/0,

interfaces disabled *<Date_Time>: %IOSXE_OIR-6-ONLINECARD: Card (cc) online in slot

0 *<Date_Time>: %CMRP-5-PRERELEASE_HARDWARE: R1/0: cmand: 0 is pre-release hardware

*<Date_Time>: %IOSXE_OIR-6-INSSPA: SPA inserted in subslot 0/0 *<Date_Time>:

418Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 453: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

%CMRP-5-PRERELEASE_HARDWARE: R1/0: cmand: 0 is pre-release hardware *<Date_Time>:

%IOSXE_OIR-6-REMSPA: SPA removed from subslot 0/0, interfaces disabled *<Date_Time>:

%IOSXE_OIR-6-OFFLINECARD: Card (cc) offline in slot 0 *<Date_Time>:

%CMRP-5-PRERELEASE_HARDWARE: R1/0: cmand: 0 is pre-release hardware *<Date_Time>:

%CMRP-5-PRERELEASE_HARDWARE: R1/0: cmand: 0 is pre-release hardware *<Date_Time>:

%IOSXE_OIR-6-ONLINECARD: Card (cc) online in slot 0 *<Date_Time>:

%CMRP-5-PRERELEASE_HARDWARE: R1/0: cmand: 0 is pre-release hardware *<Date_Time>:

%IOSXE_OIR-6-INSSPA: SPA inserted in subslot 0/0 *<Date_Time>: %LINK-3-UPDOWN:

SIP0/0: Interface EOBC0/1, changed state to up *<Date_Time>: %SPA_OIR-6-ONLINECARD:

SPA (BUILT-IN-2T 20X1GE) online in subslot 0/0.

• CSCui14805

Symptom: Dubious QL-SEC seen on 10M src of MN spa after cable removal and reloadng spa.

Conditions: GPS 10M port connected to Symmetricom device.

Workaround: Remove and re-apply the config to go QL-FAILED state. network-clock input-source 3 External 2/0/0 10m

• CSCui48145

Symptom: On RP platform, the following multiple messages were observed after redundancy force-switchover:

*Jul 19 19:30:58.303: %CMANRP-6-CMHASTATUS: RP switchover, received fastpath \ becoming active event *Jul 19 00:53:28.384: %IOSXE-3-PLATFORM: R0/0: kernel: physmap-flash.0: Chip not \ ready for buffer write. Xstatus = c4, status = c4

This is not observed on ELC platforms. The root cause of the above messages on RP was found to be the following: Some revisions of the P30, P33, and J3 Flash memory devices can hang when an ERASE SUSPEND command is issued following an ERASE RESUME without waiting for the minimum delay time to elapse. The result is that when the ERASE appears to be complete (no bits are toggling), the contents of the Flash memory block on which the ERASE was executing could be inconsistent with the expected values. This causes ERASE operation to fail. This was fixed for RP via CSCub14611. However, the fix did not apply fro ELC platforms since ELC-specific changes use the CISCO_CONFIG_ELC instead of CISCO_CONFIG_MCP. This extends the fix for ELC platforms.

Conditions: Redundancy force-switchover on RP.

Workaround: There is no workaround.

• CSCui68187

Symptom: ASR1001 may reload while downloading a file to modify running config.

Conditions: This symptom is seen when a tftp server which is uncommon freeware for windows PC is used and not seen when the file transfer is done from unix machines.

Workaround: Not to use the particular tftp server.

• CSCui70561

Symptom: Low performance for AVC 2.0 on ESP100 setup.

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCui72473

Symptom: When the Traffic is flowing through ATM1xOC3 the rate of flow fluctuates very faster and the counters doesn't match.

419Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 454: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

sh int atm0/3/0 | i pack

Above command can be used repeatedly to check the rate.

Conditions: The traffic should be flowing through ATM SPA.

Workaround: There is no workaround.

• CSCui74020

Symptom: After configuring on ASR1k: cdp run ! interface gi0 dp enable ASR1k isn't able to find its CDP neighbor

(e.g. a Switch): ASR1k#show cdp nei Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge S - Switch, H - Host, I - IGMP, r - Repeater, P - Phone, D - Remote, C - CVTA, M - Two-port Mac Relay Device ID Local Intrfce Holdtme Capability Platform Port ID while the switch can find its CDP neigbor(ASR1k): Switch#show cdp nei Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge S - Switch, H - Host, I - IGMP, r - Repeater, P - Phone Device ID Local Intrfce Holdtme Capability Platform Port ID ASR1k Gig 1/0/19 134 R I ASR1006 Gig 0

Conditions: CDP enabled globally and on Mgmt Interface.

Workaround: There is no workaround.

• CSCui76166

Symptom: TTB Rx info not getting updated on one asr1k router serial interfaces - Bident

Conditions: ange of framing type

Workaround: default interface and re-configure OR OIR Bident.

• CSCui86755

Symptom: Add local GM ACL on the Cisco ASR 1000 Router, and remove it. Adding the ACL and removing it changes the flow priority that does not work on the Cisco ASR 1000 Router.

Conditions: When the ACL is changed on KS or GM.

Workaround: There are 2 workarounds:

1. If the permit ACL is appended to KS ACL, or if the ACL is removed from bottom of KS ACL, then there is no flow priority change, and the issue is not observed there. The limitation with this workaround is that the Group config on KS has only one SA. Also, if Deny ACL is added, some packet drops are observed.

2. Clear the GetVPN registration on the Cisco ASR 1000 Router using the clear crypto gdoi command.

• CSCui95762

Symptom: EoMPLS performance downgrade.

Conditions: On RP1/ESP10

Workaround: There is no workaround.

• CSCuj14019

Symptom:%CMRP-3-UDI_AUTH: F0: cmand: Quack Unique Device Identifier authentication failed, show up.on ASR1001.

Conditions: After reloading the box or inserting SFPs.

Workaround: There is no workaround.

• CSCuj14655

420Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 455: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: Traceback seen while boot up

Conditions: Load latest mcp_dev in 6RU-FP80 system.

Workaround: There is no workaround.

• CSCuj30033

Symptom: ATM interface - SPA-1XOC3-ATM-V2 - shows counters frozen when interface is shut down.

Conditions: Running traffic over an ATM (SPA-1XOC3-ATM-V2) interface and then shutting down the interface - interface counters remain frozen and do not return to zero.

Workaround: There is no workaround.

• CSCuj33901

Symptom: ASR1000-RP2's actual ACTV/STBY LED state is incorrect. Although RP2 state is active, STBY LED light up. This issue is seen while using V04 RP2.

Conditions: V04 RP2.

Workaround: Refer to Field Notice FN63704.

• CSCuj44148

Symptom: CPU hog on "SSS Manager" process.

Conditions: With a rate of 10 CoA/s over a period of 4 hours ISG. Issue can also reproduce with a rate of 40 CoA/s over 1 hour period.

Workaround: CPP to rate limit CoA may help to alleviate the issue. However, if the CoA burst remains for a extended period of time, it may not be possible to avoid. Standby RP Should be up to avoid this issue. Have a look Eng-Note-RCA enclosure for more detail.

• CSCuj44237

Symptom: With Suite-B configured (i.e. esp-gcm / esp-gmac transform) on a GETVPN Key Server (KS), Group Members (GM) the following error message is generated:

"*** SERIOUS ERROR: OVERLAPPING IV RANGES DETECTED ***"

Error message is generated when the following steps are performed:

– GM registers to KS and downloads ACL1

– KS configures ACL2 which is a subset of ACL1

– KS issues "crypto gdoi ks rekey" & GM receives rekey successfully, downloading ACL2

– KS configures the original ACL1 again

– KS issues "crypto gdoi ks rekey"

After this, the GM begins to re-register.

Conditions: Suite-B is configured (i.e. esp-gcm / esp-gmac transform) on a GETVPN Key Server (KS) with GM's registered The KS policy ACL is changed from ACL1 to ACL2 (where ACL2 is a subset of ACL1) & a rekey is sent from the KS using "crypto gdoi ks rekey" The KS policy ACL is reset back from ACL2 to ACL1 & a rekey is sent from the KS using "crypto gdoi ks rekey"

Workaround: If a KS policy ACL1 must be changed to ACL2 and then changed back to the original ACL1 while Group Members (GM) have already registered and downloaded GETVPN Suite-B policy (i.e. esp-gcm / esp-gmac transform), do one of the following:

– Wait for the TEK's of the original ACL1 to expire after the first rekey before changing back to the original ACL1

421Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 456: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

– Issue "crypto gdoi ks rekey replace-now" instead of "crypto gdoi ks rekey" after changing back to the original ACL1.

– If the above two workarounds do not work, issue "clear crypto gdoi" on the GM's with the error or "clear crypto gdoi ks members now" on the KS to reset the entire group.

• CSCuj45298

Symptom: With the ASR1k packet-trace feature, a packet may be shown as "Consumed Silently" in the packet state, where it really should be forwarded. This is only a problem with the packet trace output, and does not impact the actual forwarding functionality.

Conditions: This can happen when packet-trace is tracing a tunnel encapsulated packet.

Workaround: There is no workaround.

• CSCuj46984

Symptom: ASR1k FNF not possible to clear normal cache contents.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCuj49523

Symptom: On ASR1000-2T 20GE and ASR1000-6TGE line cards, on interfaces with MAC Loopback, the interface Counters are not updating correctly.

Conditions: After setting the MAC loopback on the interface.

Workaround: There is no workaround.

• CSCuj50396

Symptom: The flow exporter status becomes inactive.

Conditions: This symptom occurs after an RP switchover while checking flow monitor information.

Workaround: There is no workaround.

• CSCuj52382

Symptom: MAC acl drops on popinac with isis_frr configs.

Conditions: This symptom is observed when verfiying the isis neighbors.

Workaround: There is no workaround.

• CSCuj52396

Symptom: In a VPLS Inter-Autonomous System Option B configuration, the virtual

circuits between the Autonomous System Border Router (ASBR) and the PE may

fail to come up.

Conditions: This symptom is observed while initially establishing VCs after the ASBR has reloaded.

Workaround: The clear xconnect exec command can be used to clear

the VCs that are down.

• CSCuj57479

Symptom: Static Pat entries dont work and do not show up in the show ip nat translations output

Conditions: when using both TCP and UDP port on the physical interface in the static pat config

Workaround: instead of specifying interface x overload, use the ip address of the Interface.

• CSCuj61598

422Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 457: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: ASR1K cpp_cp_svr crash on ASR1002x or ASR1K using ESP100.

Conditions: This issue has only been see on bundle type interfaces such as MLPPP, MLFR, GEC and possibly ATM if a hierarchical QoS policy is replaced with a flat QoS policy and then a rate change event occurs on the interface (such as removing or adding a link on a bundle type interface). The trigger is the bandwidth change following replacement of the hierarchical QoS policy with a flat QoS policy.

Workaround: If a hierarchical QoS policy is replaced with a flat QoS policy this issue can be avoided by first deleting the bundle interface, adding it back, and then applying the flat QoS policy.

• CSCuj66067

Symptom: Router running out of memory after an upgrade to 15.3(1)S, 15.3(3)S, 15.4(1)S

Conditions: Huge number of Route server contexts configs in the router. Approximately 700+

Workaround: Reduce the number of Route server contexts. Downgrade the IOS version to 15.2(4)S or lower release

• CSCuj67593

Symptom: ASR1K:Mac-accounting counters are not updating after MDR on Gigabit Ethernet SPA module.

Conditions: This symptom is observed after completion of Minimal Disruptive Restart (MDR) procedure for a GigE SPA module running XE3.8 or higher release.

Workaround: Reload the SPA slots after the MDR.

• CSCuj68565

Symptom: ASR1000-2T 20X1GE and ASR1000-6TGE Card status will remain unknown in any slot post insertion in slot4/5 of ASR1013 with ESP40.

Conditions: Sequence of events needed: 1. Insert the ASR1000-2T 20X1GE and ASR1000-6TGE in Slot 4 or 5 of ASR1013 with ESP40 2. Remove the card 3. Insert in any other slot other than slot 4 and 5.

Workaround: Wait for minimum 1 minute before reinserting the card in slot other than 4 and 5 (ie 1 min wait between step 2 and 3 of Condition above)

• CSCuj71234

Symptom: Tracebacks with the following signature "%QFPOOR-4-LOWRSRC_PERCENT" are seen on the console with negative percentage complaining of resource depletion.

Conditions: These tracebacks are usually seen on a clean-up operation performed on a router i.e manual removal of all configs. But it's not limited to only this operation and could be seen with router configuration as well.

Workaround: There is no workaround.

• CSCuj71839

Symptom: CLI hang in SBC adjacency sip mode.

Conditions: This symptom is observed when over 2000 sbc sip adjacencies are configured.

Workaround: There is no workaround.

• CSCuj74513

Symptom: The ha test case about 96k sessions of EoGRE can not support on esp40 currently.It hit the system limitation.

423Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 458: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: When it reaches the upper limit, the router crashes. The exmem not enough is not the root cause of crash, but a trigger event. After analyzing, the traceback was caused by the code defect which was fixed in code diff. The exception handling is not very robust for out of memory.

Workaround: There is no workaround.

• CSCuj75952

Symptom: ASR1K route processor reloads.

Conditions: ASR1K is being used to terminate PPPoA sessions and Call Admission Control (CAC) has been enabled. The crash occurs during PPPoA session establishment if CAC determines that resources are low and HW assisted CAC needs to be enabled.

Workaround: Disabling Call Admission Control is the only known workaround.

• CSCuj77998

Symptom: All packets that need to be encrypted may be dropped.

Conditions: This happens when traffic is flowing for a long duration without any rekey when the crypto sequence number overflows

Workaround: Have a shorter rekey interval

• CSCuj78467

Symptom: Memory leaks are seen on exiting the output of "show perf mon cache"

Conditions: The issue is seen on ASR1006 platform with XE3.11 image

Workaround: Do not exit the output of "show perf mon cache"

• CSCuj79195

Symptom: ASR router crashes when platform hardware debug is enabled.

Conditions: Platform hardware debug is enabled.

Workaround: There is no workaround.

• CSCuj79732

Symptom: H323 HA adjustment.

Conditions: H323 HA adjustment.

Workaround: There is no workaround.

• CSCuj80062

Symptom: Unexpected RP reload in asr1k.

Conditions: Stream of corrupted ATM cells on idle VCC due to SIP hardware failure.

Workaround: There is no workaround.

• CSCuj81174

Symptom: Show commands for pools are incomplete leading to inability to debug pool related issues in the field

Conditions: This is a NAT related issue and only relevant with dynamic translations involving pools

Workaround: This DDTS is needed in order to view complete pool state

• CSCuj82468

Symptom: Enabling "debug plat pack drop" and pinging large packets (payload > 1500) may result in a CPP crash.

424Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 459: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: In order to hit this crash, either "debug platform packet-trace drop" or "debug platform packet-trace packet 256 circular" must be configured. The router may then crash if it receives a fragmented packet that it reassembles.

Workaround: Avoid configuring "debug plat packet drop" or circular tracing.

• CSCuj82693

Symptom: ESPs going offline and remaining in "disconnecting" state for a few minutes, until fman_fp and cppc_cp processes failures.

Conditions: This symptom is observed when %CPPBQS-3-QMOVESTUCK: Fx: cpp_cp: QFP 0 schedule xxx queue move operation is not progressing as expected.

Workaround: There is no workaround.

• CSCuj82922

Symptom: show platform software ip rp active mfib vrf * summary command fails to display multicast routing table of all VRFs.

Conditions: when global table of ip multicast is not enabled, sometimes not display.

Workaround: show ip vrf detailed xxx to get the vrf index.

• CSCuj85322

Symptom: show platform hardware qfp active inter if-name gi0/0/4 | i STILE IPV4_INPUT_STILE_LEGACY IPV4_OUTPUT_STILE_LEGACY IPV6_INPUT_STILE_LEGACY IPV6_OUTPUT_STILE_LEGACY

Conditions: Configured: policy in, policy out and PD on interface. After removing policies and PD from interface, I see FIAs of STILE still bound to interface.

Workaround: Configure "ip nbar protocol-dicovery" and "no ip nbar protocol-dicovery" on any interface

• CSCuj85408

Symptom: For VPLS mstp test Bpdus are not receiving.

Conditions: This symptom is observed when packet drops are seen.

Workaround: There is no workaround.

• CSCuj85993

Symptom: A Cisco ASR1006 (RP2) running Cisco IOS-XE Version: 03.07.04.S (asr1000rp2-adventerprisek9.03.07.04.S.152-4.S4) will crash after a recent High Availability (HA) fail-over event.

Conditions: High Availability (HA) fail-over is implemented with RP2 on the Cisco ASR. When a fail-over is initiated to the active RP2 module (for example by removing the active RP2 module), the ASR fails over fine, but once a hold resume is initiated on an existing call (that was preserved from the fail-over), the ASR reboots.

Workaround: The crash is not observed on IOS-XE version 03.07.03.S

• CSCuj86393

Symptom: cpp_cp process crashes on ESP100, ESP100 or ASR1002-X.

Conditions: Bring up 4k PPPoLNS sessions. Tear-down large number of sessions (eg. >3k) by performing "shut" on individual Dialer interfaces one-by-one on CPE.

Workaround: There is no workaround.

• CSCuj88292

425Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 460: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: Once you reboot router with XE3.11 BFD is getting disabled.

Conditions: BFD session showing down

Workaround: Remove interface BFD config and reapply it.

• CSCuj91680

Symptom: ESP crashes running 3.9.1 when NAT enabled.

Conditions: NAT must be enabled.

Workaround: There is no workaround.

• CSCuj92006

Symptom: memory leak when remove class map.

Conditions: remove last class class-default.

Workaround: remove policy-map directly.

• CSCuj92836

Symptom: The described issue is an XE only issue that impacts several AVC fields.

Fields list: Field Export id Introduced in RLS Fix RLS connection sum-duration 279 3.4 3.10.2, 3.11.1 connection new-connections 278 3.4 3.10.2, 3.11.1 connection client counter bytes network long 41106 3.9 3.10.2, 3.11.1 connection server counter bytes network long 41105 3.9 3.10.2, 3.11.1 policy qos queue drops 42129 3.9 3.10.2, 3.11.1

These fields show incorrect value. Problem cause: When cache record is reused, these fields are not cleared. Since they are accumulative fields, they report constantly increasing values. Full fix for this issue is clearing these fields using general FNF mechanism that does it. Since this fix has ISSU impact, we will do it in 3.12. In 3.10.2 and 3.11.1 we will provide a partial fix that clears these fields differently.

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCuj94188

Symptom: Unaccounted drops in Ethernet Line card for Multicast traffic.

Conditions: When Multicast traffic is sent more than the ESP performance limit, due to ingress back pressure from ESP causes overruns in the Line card but these drops are not showed in the overruns

Workaround: There is no workaround.

• CSCuj95903

Symptom: When executing Mediatrace poll from CLI, the following message is displayed:

Escape sequence received. Aborting poll...

However, no escape sequence has been sent.

Conditions: On the Mediatrace poll command, no timeout parameter is specified.

Workaround: Specify a timeout on the Mediatrace poll CLI:

mediatrace poll timeout 60 path-specifier name name perf-monitor profile name

• CSCuj96123

Symptom: ASR1000 crashed with following log in crashinfo file:

426Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 461: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

UNIX-EXT-SIGNAL: Segmentation fault(11), Process = SBC main process

Conditions: the ASR1000 router is the standby router in CUBE-SP setup.

Workaround: There is no workaround.

• CSCuj99471

Symptom: Attempting to configure a xconnect may fail and display the following

error message:

% Invalid i/f handle 0

Conditions: This symptom is observed when the peer address or VC ID of an existing

xconnect is configured to a new value, then the xconnect is removed and

reconfigured with the original values.

Workaround: Completely unconfigure the existing xconnect before configuring with a new

peer address or VC ID.

• CSCul00007

Symptom: Files cannot be downloaded via the management interface via FTP/HTTP/SCP. This can include firmware files, configuration files, or license files.

Conditions: This symptom occurs on using the management interface on a Cisco ASR 1000 or ISR 4450-X router.

Workaround: There are two workarounds for this issue.

1. Use an interface other than the management interface to download the file or use a protocol that does not use TCP as the session transport such as TFTP.

2. Set the IP_ADDRESS rommon variable to the IP address of the management interface.

• CSCul00709

Symptom: Cisco IOS XE Cisco Packet Processor (CPP) crashes on a device configured with MPLS IP.

Conditions: Device configured with mpls ip

Workaround: There is no workaround.

• CSCul02534

Symptom: Voltage Drop observed while issuing nominal to nominal command.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul03067

Symptom: Tunnel interface QoS tail drop counter reported at physical interface. Service policy is applied on the tunnel 5432. --Drops are seen on the output of "show policy-map tunnel 5432" --Drops are seen on the physical interface over which the tunnel is built. --NO drops are seen on the Tunnel interface. --From the output below OQD is "0" for the tunnel interface.

BGL.Q.20-ASR1K-1# show platform hardware qfp active statistics drop ------------------------------------------------------------------------- Global Drop Stats Packets Octets ------------------------------------------------------------------------- TailDrop 753351 63281484 BGL.Q.20-ASR1K-1#show inter summary <snip> Interface IHQ IQD OHQ OQD RXBS RXPS TXBS TXPS TRTL

427Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 462: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

----------------------------------------------------------------------------------------------------------------- * GigabitEthernet0/0/1 0 0 0 753351 0 0 735000 1094 0 * GigabitEthernet0/0/2 0 0 0 0 8648000 18016 0 0 0 * Tunnel5432 0 0 0 0 0 0 12697000 22674 0

Conditions: When packets are dropped on a tunnel interface, the output of: - show platform hardware qfp act interface all statistics drop_summary - show interface summary would only show the dropped packets against the phsyical interface, which made it difficult to determine which tunnel the packets were being dropped on.

Workaround: There is no workaround.

• CSCul04033

Symptom: LDP stays down over Multilink when connecting to Juniper router.

Conditions: Issue notice with latest IOS as same setup was working with 15.0(1)S1(3.1S) and earlier release.

Workaround: There is no workaround.

• CSCul06361

Symptom: When subscriber session is created with 'ip subscriber interface' on subinterface in shutdown state, after bringing the subinterface up, the 'out' pkt counters are not increasing. Subscriber does not have IP connectivity, since traffic is going only in one direction.

Conditions: ASR1k ISG running IOS XE 3.7.4.S (15.2(4).S4), with 'ip subscriber interface' created from subinterface in shutdown state.

Workaround: Clearing subscriber session when subinterface is up/up will re-establish session with connectivity restored.

• CSCul06398

Symptom: Reach max CPU utilization when rate is much below 500K CPS.

Conditions: Do 500K CPS rate performance test on ESP80.

Workaround: There is no workaround.

• CSCul06682

Symptom: Ixia1°™asr1k1---asr1k2---ixia2Ixia1 sends 10000pps traffic to ixia2ixia2 sends 10000pps traffic to ixia1only normal ip traffic, without labal... and there is no packet lostthe qfp datapath utilization input and output should 20000but the utilization summary displayed abnormal asr1k1shmcp-1013-1#sho platform hardware qfp active datapath utilization summary CPP 0: 5 secs 1 min 5 min 60 minInput: Total (pps) 10000 10000 10000 8015 (bps) 27235992 27239832 27234912 21826272Output: Total (pps) 10009 10004 10004 8022 (bps) 26757256 26739616 26739560 21434288Processing: Load (pct) 0 0 0 0shmcp-1013-1#sho platformChassis type: ASR1013

Slot Type State Insert time (ago)--------- ------------------- --------------------- -----------------0 ASR1000-2T+20X1GE unknown 00:42:521 ASR1000-2T+20X1GE unknown 00:42:522 ASR1000-SIP40 ok 00:42:52

428Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 463: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

2/0 SPA-1X10GE-L-V2 ok 00:40:502/1 SPA-1X10GE-WL-V2 ok 00:40:502/2 SPA-1X10GE-L-V2 ok 00:40:502/3 SPA-1X10GE-L-V2 ok 00:40:503 ASR1000-SIP40 ok 00:42:523/0 SPA-1X10GE-L-V2 ok 00:40:503/1 SPA-1X10GE-L-V2 ok 00:40:503/3 SPA-1X10GE-L-V2 ok 00:40:504 ASR1000-SIP40 ok 00:42:524/0 SPA-1X10GE-L-V2 ok 00:40:504/1 SPA-1X10GE-WL-V2 ok 00:40:505 ASR1000-SIP10 unknown 00:42:52R0 ASR1000-RP2 ok, standby 00:42:52R1 ASR1000-RP2 ok, active 00:42:52F0 ASR1000-ESP80 ok, active 00:42:52P0 ASR1013/06-PWR-AC ps, fail 00:41:42P1 ASR1013/06-PWR-AC ok 00:41:42P2 ASR1013/06-PWR-AC ok 00:41:41P3 ASR1013/06-PWR-AC ps, fail 00:41:41

Slot CPLD Version Firmware Version--------- ------------------- ---------------------------------------0 N/A N/A1 N/A N/A2 00200800 15.3(3r)S3 00200800 15.3(3r)S4 00200800 15.3(3r)S5 N/A N/AR0 10021901 15.3(3r)SR1 10021901 15.3(3r)SF0 11100400 12.2(20111018:223207) [gschnorr-mcp_...shmcp-1013-1#shdropGlobal Drop Stats Packets Octets---------------------------------------------------------------- The Global drop stats were all zeroshmcp-1013-1#sho versionCisco IOS XE Software, Version BLD_V154_1_S_XE311_THROTTLE_LATEST_20131015_120615-stdCisco IOS Software, ASR1000 Software (X86_64_LINUX_IOSD-ADVENTERPRISEK9-M), Experimental Version 15.4(20131015:142745) [v154_1_s_xe311_throttle-BLD-BLD_V154_1_S_XE311_THROTTLE_LATEST_20131015_120615-ios 174]Copyright (c) 1986-2013 by Cisco Systems, Inc.Compiled Tue 15-Oct-13 10:03 by mcpreAsr1k2shmcp-4ru-2#sho platformChassis type: ASR1004

Slot Type State Insert time (ago)--------- ------------------- --------------------- -----------------0 ASR1000-SIP40 ok 11:46:440/0 SPA-1X10GE-L-V2 ok 11:43:540/1 SPA-1X10GE-L-V2 ok 11:43:541 ASR1000-SIP40 ok 11:46:441/0 SPA-1X10GE-L-V2 ok 11:43:541/1 SPA-1X10GE-L-V2 ok 11:43:54R0 ASR1000-RP2 ok, active 11:46:44F0 ASR1000-ESP80 ok, active 11:46:44P0 Unknown ps, fail neverP1 ASR1004-PWR-AC ok 11:45:33

Slot CPLD Version Firmware Version--------- ------------------- ---------------------------------------0 00200800 15.3(3r)S1 00200800 15.3(3r)S

429Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 464: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

R0 10021901 15.3(3r)SF0 11100400 12.2(20111018:223207) [gschnorr-mcp_...

shmcp-4ru-2#sh platform hardware qfp active datapath utilization summary CPP 0: 5 secs 1 min 5 min 60 minInput: Total (pps) 10000 10000 10000 8136 (bps) 27127392 27040272 27050560 22108000Output: Total (pps) 7 3 3 3 (bps) 34520 17416 17376 15704Processing: Load (pct) 0 0 0 0

shmcp-4ru-2#shdropGlobal Drop Stats Packets Octets---------------------------------------------------------------- The Global drop stats were all zero

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul07210

Symptom: ASR1000-2T 20x1GE and ASR1000-6TGE cards can go into reload with certain combinations QinQ scale config.

Conditions: Card reload with scale config.

Workaround: There is no workaround.

• CSCul07295

Symptom: With L2TPv2, the LNS uses an incorrect mtu of 1464 bytes instead of 1460 bytes on Virtual-Access Interface.

This can cause large packets to be blackholed or post-encapsulation fragmentation.

Conditions: This problem occurs with "ip mtu adjust" under the vdpn-group.

Workaround: Instead of using "ip mtu adjust" under the vpdn-group, set the mtu manually under the virtual template interface.

• CSCul08311

Symptom: SIP ALG will drop NAT traffic.

Conditions: In a case, FQDN instead of IP address is included in the "c=" line of SDP in the 200 OK response, and SIP ALG will drop this message.

Workaround: Turn off SIP ALG if SIP server (VCS) can support NAT traversal by itself. Another way is to let VCS fill IP address instead of FQDN in the "c=" line of SDP if possible.

• CSCul11961

Symptom: ISSU xe311->xe312: Stadby FP not coming up after runversion

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul15444

Symptom: While testing ISSU from xe311<->mcp_dev(super-pkg) with security features, observing fman_fp crash followed by cpp-mcplo-ucode is seen.

Conditions: Issue is seen after issu runversion.

Workaround: There is no workaround.

• CSCul16541

430Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 465: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: cpp_cp_svr crash with model F QoS and multiple PPPoEoA/PPPoA VCs on one or more ATM PVPs.

Conditions: While bringing up multiple PPPoEoA/PPPoA sessions with model F QoS on one or more ATM PVPs.

Workaround: There is no workaround.

• CSCul18227

Symptom: A prefix containing the PMSI tunnel attribute (RFC 6513/6514) has the flags portion of the attribute cleared even though the sending peer had set them (the "leaf required" flag is turned into "leaf no required").

Conditions: This occurs upon receiving an MVPN prefix (RFC 6513/6514).

Workaround: There is no workaround.

• CSCul18806

Symptom: ELC MDR: Reconcile failed for int_num 0x1505F000 bitmap 0x00001E7F.

Conditions: Observed during one-shot consolidated MDR.

Workaround: There is no workaround.

• CSCul21158

Symptom: ESP crashes for IOS-XE based platforms.

Conditions: Crash may occur when executing the CLI command: show platform hardware qfp active infrastructure exmem map.

Workaround: There is no workaround.

• CSCul22381

Symptom: Unexpected tracebacks occur randomly at a very slow rate (i.e. once per day or even less). Normal processing will continue.

Conditions: This issue is specific to ESP100, ESP200 or ASR1002-VE.

Workaround: There is no workaround.

• CSCul24332

Symptom:

000080: *Nov 5 06:20:08.231 UTC: %OCE-3-MISSING_HANDLER_FOR_SW_OBJ_TYPE: Missing handler for 'non choice oce get next' function for type Loadbalance-Traceback= 1#fa53c8e50eb34ad6b14c6e73742aa633 :400000+8D10D1 :400000+33C98B4 :400000+441693F :400000+6CEEAC2 :400000+33E118C :400000+33ADE6F :400000+3355C80 :400000+335590D :400000+33A9B82 :400000+33A9299 :400000+33AF9C9 :400000+33AF82F :400000+34A0183 :400000+349FF99 :400000+346EE86 :400000+1622694

Conditions: in vrf Mgmt-intf, there are 8 prefixes referring to same adjacency.

Workaround: There is no workaround.

• CSCul25109

Symptom: AVC: Templates are not exported right after reload with RP1.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul25833

431Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 466: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: Issue with Dual Collector FNFV9 in ASR 1002x only one collector is collecting and the second one is not.

Conditions: under flow-monitor provisioning.

Workaround: Apply each flow monitor with a gap of 5secs. However, this will be customer impacting since many if this is controlled by scripts.

• CSCul26686

Symptom: Scaled vlan qinq config on SPA. If the TCAM of SPA becomes full and more qinq vlan is configured then TCAM_VLAN_TABLE_FULL message is not displayed.

Conditions: TCAM is full.

Workaround: For verification whether a new entry has been added or not, check for TCAM entry using CLI on SPA console.

• CSCul27037

Symptom: WebAuth sessions contain duplicate L cookies in accounting and interim watchdog aaa updates

RADIUS: Vendor, Cisco [26] 125 RADIUS: ssg-account-info [250] 119 "L,LoginType=LT1,LocationId=LID1,AccessLinkId=AID1,DeviceManufacturer=DM1,DeviceBrowser=DB1,DeviceOS=DOS1,WebProxy=WS1".

Conditions: If an enduser authenticates via a Portal-Page, the ISG (ASR1k) will send out duplicate L cookies to the Radius server.

Workaround: There is no workaround.

• CSCul27083

Symptom: Ucode crash seen.

Conditions: Ucode crash seen while doing RP switchover with 1000 ipv6_ipsec tunnels and acls with traffic.

Workaround: There is no workaround.

• CSCul31100

Symptom: COS markings not seen Proper on the dot1q interface.

Conditions: The issue will be seen if met any of following conditions:

1. Crypto-Map implemented in Transport mode implemented on Tunnel.

2. Fragment happened in data plane on the dot1q interface.

Workaround: Remove Encryption from the Tunnel or downgrade IOS to 15.0(1)S3 if the issue is happened with IPSec but no fragment; No workaround if the issue is happened with big enough packet(need fragment);

• CSCul31192

Symptom: ESP may crash @ipv4_nat_alg_prune_sd.

Conditions: seen with SIP traffic.

Workaround: There is no workaround.

• CSCul34313

Symptom: Active FP crash on removing nat mapping.

Conditions: Dynamic acl using route-map.

432Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 467: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCul34776

Symptom: After ISSU process AOR and dependent fields are not working. Also, sampler granularity may be different from the configured.

Conditions: Happens sometimes.

Workaround: Remove AVC configuration and apply it again after the ISSU process is finished.

• CSCul35389

Symptom: Following error messages re observed with SPA reload

==================================================================Nov 26 2013 15:14:31.496 EST: %SERVICES-3-NORESOLVE_ACTIVE: SIP0: mcpcc-lc-ms: Error resolving active FRU: BINOS_FRU_RP Nov 27 2013 17:31:42.464 EST: %SERVICES-3-NORESOLVE_ACTIVE: SIP0: mcpcc-lc-ms: Error resolving active FRU: BINOS_FRU_RP

The process mcpcc-lc-ms is held down and the SIP is reloaded.

Conditions: Error are observed when SPA is reloaded.

Workaround: There is no workaround.

• CSCul38081

Symptom: In a scaled environment, when a preferred path configuration is removed and is followed by a RP switchover the pseudowire interfaces goes down. The psudowire interface comes up if we add the preferred path or just remove and add the neighbor statement.

Conditions: This symptom is not observed under any specific conditions.

Workaround: There is no workaround.

• CSCul43587

Symptom: ucode crash.

Conditions: on removing at cgn mode.

Workaround: There is no workaround.

• CSCul47135

Symptom: On Cisco ASR 1000 routers, services are not removed or applied from the active subscriber sessions when CoA is sent from the radius server. The router sends wrong values in response to the CoA request packet.

Conditions: This symptom occurs when 15.2(20130918:081157) is run.

Workaround: There is no workaround.

• CSCul48822

Symptom: While provisioning an ISG IP Subscriber session it is possible to leak an ESS segment chunk (IOSXE ESS SEG).

Conditions: The memory leak may occur when there is an error provisioning an ISG IP subscriber session.

Workaround: There is no workaround.

• CSCul48865

Symptom: Some static vrf nat entries which are stored in the startup-config don't appear in the show running.

433Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 468: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: After reloading the router.

Workaround: N/A. Once hitting the symptom, reconfigure those nat entries.

• CSCul50570

Symptom: Ucode crash followed by cpp crash while scaling to 500 MLPoA bundles PTA.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul51296

Symptom: Connections timed out after RP switchover.

Conditions: The symptom is observed when connection reset after RP switchover. Not able to establish new connections.

Workaround:Re-enable Service Context. Problem happens in about 1 in 10 RP switchover on ESP20. This had not been with other ESP so far.

• CSCul54111

Symptom: This issue causes the ESP to crash while applying QoS Model F. The issue occurs with both small and scaling configuration. The problem occurs all ESPs including ISR and CSRs.

Conditions: The problem occurs with both small and large configurations. It is timing related as it occurs after running asynchronously in which case the code executes the deferral path which was not clear the event processing flags upon completion. When these flags are not cleared, the code treats the condition as fatal; hence the ESP crash.

While Model F is understood to be impacted by this problem it is conceivable this issue could occur with any configuration where the target interface handle for the policy is different from the parent interface handle, e.g. vlan queue on a GE interface.

Model F Sample Configuration:

policy-map grandparent class class-default shape average 10000000

class-map match-all p0 match precedence 0 class-map match-all p1 match precedence 1 class-map match-all p2 match precedence 2

policy-map child class p0 priority police cir 2000000 class p1 bandwidth remaining ratio 10 class class-default bandwidth remaining ratio 1

policy-map parent class class-default shape average 10000000 bandwidth remaining ratio 1 service-policy child

interface GigabitEthernet0/0/0.4 encapsulation dot1Q 2 service-policy output grandparent

434Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 469: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

The parent policy would typically be applied on a session on the vlan. The issue would typicall occur when the grandparent policy is processed on ESP.

Workaround: There is no workaround.

• CSCul55038

Symptom: In mpls-vpn scenario, when the size of packet coming from core network is bigger than mtu set on CE facing interface, the expected ICMPv6 TOO_BIG fail to return.

Conditions: The symptom is observed when 1. packet is bigger than mtu on CE facing interface. 2. the packet comes from core mpls network and try to go through CE facing interface. 3. the issue is found on PE in mpls-vpn scenario.

Workaround: Enable IPv6 on core facing interface, which is receiving the mpls packet to CE.

• CSCul55180

Symptom: Crash @ fmanrp_fnf_monitor_update seen on ASR1K - RP1 setup after reload.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul58940

Symptom: Consumed packets may be incorrectly traced when drop tracing is enabled.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul60101

Symptom: Possible tail drops at lower than expected data rate on an interface following a interface rate change.

Conditions: When the data rate of a interface is increased, the recalculated default queue queue-limit was not always applied. This problem only occurs on data rate increases, updated queue-limit is applied correctly if the data rate is reduced. This issue is mainly applicable to interfaces with no output QoS queuing policy applied.

In addition this issue is specific to interfaces where the bandwidth can change dynamically such as MLPPP, MLFR, and Aggregate GEC interfaces as links are dynamically added and removed from the bundle interface. Can also occur with other interface types such as ATM PVCs, Serial, and ethernet should the user reconfigure the interface data rate.

Workaround: For interfaces where the user can configure the interface speed, if possible configure a higher interface data rate and then reconfigure with the intended lower interface data rate. For interfaces types whose data rate can be changed dynamically (i.e. bundle type interfaces).

• CSCul61683

Symptom: Error messages similar to below may be displayed on the console due to stale stats usage:

SCOOBY-5-SERIAL_BRIDGE_EVENT_RATE:<Any_Message_Here>

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCul64097

435Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 470: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: ZBFW SYN cookie counter shows positive number although the real number of half open sessions have dropped to zero. Since the counter is used to trigger SYN cookie once it is over the configured limit, this is causing the SYN cookie protection to always kick in regardless of the real situation, which drags down the network performance.

Conditions: SYN cookie feature needs to be configured, and it is configured to protect per VRF or global number of half open sessions. The counter error only happens under some race condition which needs particular and supposedly high traffic load to trigger.

Workaround: Disable the SYN cookie. The counter problem only happens under certain corner case. When the counter goes wrong, the SYN cookie protection logic could be triggered erroneously.

• CSCul64664

Symptom: After VC goes down, the packets are received on xconnect interface are leaked.

Conditions: This symptom is observed when VC goes down -Unicast packet with TTL>=2 are received on that xconnect interface -When having the route for the destination of the unicast packets.

Workaround: Remove the route from the routing table -apply an ACL to deny these leaked packets.

• CSCul67310

Symptom: ASR1K microde crash with either of the following errors

SOR_CSR32_SOR_ERR_LEAF_INT__INT_SOR_OPF_GRANT_PTCL_UVF OPF_CSR32_OPF_LOGIC_ERR_LEAF_INT__INT_START_OF_BURST_MARKER_ERR

Conditions: This issue ONLY affects on ASR1002x and ASR1K RP2/ESP100 based platforms running 15.2(4)S, 15.3(1)S, 15.3(2)S, 15.3(3)S, and 15.4(1)S based images. This issue can occur on platforms with scaled sub-interface or broadband session configurations when the number of sub-interfaces or sessions on a interface is reduced from > 4000 to less than 4000 and moderate to heavy traffic flow is occurring at the time that the sub-interface or session count is reduced. If the the ASR1K is operating below this threshold or above this threshold this issue is not seen.

Workaround: There is no workaround.

• CSCul68308

Symptom: CPUHOGs will be observed on the system.

Conditions: When Ethernet line card is configured scaled QinQ configuration with inner vlan as a range with and without custom classification configuration, during Reload of linecard or Shut & no Shut of interface causes CPUHOG on the Linecard.

Workaround: Instead of using single sub interface with Range of inner vlan, divide this inner vlan into multiple ranges and configure multiple subinterfaces on the same interface.

• CSCul68429

Symptom: FP crash while testing PPoE sessions.

Conditions: Applying nat settings to CGN mode.

Workaround: There is no workaround.

• CSCul70378

Symptom: .Ping from peer PE with packet more than 9216 bytes over MPLSomGRE tunnel, 1002X kinpin crash.

Conditions:

1. only kinpin crash; ping from kinpin, 1002F no crash;

2. if both PES(1002X and 1002F) are running MCP latest image, no crash;

436Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 471: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

3. crash only when kinpin running MCP lastest image, the peer PE 1002F running old image(perhaps the image before 1029, without fix of CSCui64579);

4. two PEs are connected directly(no switch), and jumbo MTU is enabled on core faced interface;

5. ping packet size more than 9216 over MPLSomGRE tunnel from peer PE;

Workaround:

1. use asr1k for both PE, and running latest image;

2. or, do not enable jumbo MTU on core faced interface;

3. or, do not ping packet size over 9216 from PE to peer PE;

• CSCul70833

Symptom: Byte-based queue-limit does not work correctly when fair-queue is configured.

Conditions: -Using fair-queue feature simultaneously. The issue can happen on ASR1k. The issue is found on 15.3(3)S.

Workaround: Use packet-based queue-limit instead of byte-based queue-limit.

• CSCul71193

Symptom: counter is wrong.

Conditions: RAU traffic.

Workaround: There is no workaround.

• CSCul80160

Symptom: Ucode crash while disabling flow entry.

Conditions: With nat outside mapping.

Workaround: There is no workaround.

• CSCul81725

Symptom: cpp_cp_svr on ESP crashes.

Conditions: When configuring MLPoEoPTA, the control plane events generated to the data plane cause the data plane to crash if the events are generated in a certain order. This is highly dependent upon timing between the control plane and data plane.

Workaround: There is no workaround.

• CSCul81777

Symptom: On an ASR1000 series router, the ESP can crash when packet trace is enabled.

Conditions: Conditional debug and packet-trace is enabled.

Workaround: There is no workaround.

• CSCul83097

Symptom: "dot1q tunneling ethertype 0x88A8" CLI will work for port-channel, which crashes FP. This CLI is not supposed to work for port-channel on ASR1k.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCul83474

Symptom: ESP crash.

437Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 472: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: This symptom is observed when executing "no ip cef load-sharing algorithm include-ports destination" with high throughput about 10Gbps.

Workaround: There is no workaround.

• CSCul86211

Symptom: When LNS power-offs while the sessions keep on establishing at LAC, LAC finds the l2tp db memory exhausted after sometime. Due to this it failed to update the session in DB and during this period crash is observed.

Conditions: Crash is observed when LAC tries to add l2tp session in DB and failed to do so. In order to handle this error condition LAC frees the l2tp and l2x session twice. This double free is the reason for crash.

Workaround: There is no workaround.

• CSCul93292

Symptom: Ucode crash with alg traffic when there is flow passing through physical interface with nat configuration vasi interface with nat configuration in the same box.

Conditions: Ucode crash with alg traffic.

Workaround: Disable all the algs

• CSCul93523

Symptom: CPP 0 failure Stuck Thread(s) detected

Conditions: Setting up about 2.2kps traffic with both nat/non-nat packets.

Workaround: There is no workaround.

• CSCul94622

Symptom:On an ASR router with ct3 SPA, Malloc Failures and SPA F/W download failures are seen.

Conditions: SPA should have many channels configured (> 50 % of its max capacity) and SPA soft reload is done.

Workaround: There is no workaround.

• CSCul96767

Symptom: Add IPSLA dataplane timestamping support

Conditions: On Nightster.

Workaround: There is no workaround.

• CSCul98774

Symptom: ASR1K DSP MIB "cdspCardObjects" are not working after the RP2 switchover happens for various reasons.

Conditions: When RP switch over happens.

Workaround: workaround is to do a hw-module stop/start on the SPA-DSP cards.

• CSCul99801

Symptom: Following tracebacks may be seen:

002529: Nov 28 10:53:45.898 UTC: L2TP-3-ILLEGAL _____:_____:________:ERROR: L2TP session, no L2X

-Traceback= 1#fa53c8e50eb34ad6b14c6e73742aa633 :400000+8D10D1:400000+36F9F5C :400000+36F9D22 :400000+36F9AFA :400000+371DAF0:400000+3721419 :400000+370EFE7 :400000+370EF7B :400000+3713909

438Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 473: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

:400000+3713639 :400000+3714FC5 :400000+37165DF :400000+3717003:400000+3717F11 :400000+3714CF3 :400000+36FAEB4

002530: Nov 28 10:53:45.900 UTC: L2TP-3-ILLEGAL _____:_____:________:ERROR: L2TP session, no L2X

-Traceback= 1#fa53c8e50eb34ad6b14c6e73742aa633 :400000+8D10D1:400000+36F9F5C :400000+36F9D22 :400000+36F9AFA :400000+371DAF0:400000+371ED59 :400000+3720AFE :400000+370EF94 :400000+3713909:400000+3713639 :400000+3714FC5 :400000+37165DF :400000+3717003:400000+3717F11 :400000+3714CF3 :400000+36FAEB4

002531: Nov 28 10:53:45.902 UTC: L2TP-3-ILLEGAL _____:_____:________:ERROR: unexpected

-Traceback= 1#fa53c8e50eb34ad6b14c6e73742aa633 :400000+8D10D1:400000+36F9F5C :400000+36F9D22 :400000+36F9AFA :400000+3720B2B:400000+370EF94 :400000+3713909 :400000+3713639 :400000+3714FC5:400000+37165DF :400000+3717003 :400000+3717F11 :400000+3714CF3:400000+36FAEB4 :400000+3714E83 :400000+3716B29

Root cause is L2TP sessions being torn down at the moment the session is being renegotiated.

This is a very corner case and should remain very rare.

Tracebacks are harmless in this case. (As the L2TP session was being torn down anyway)

Conditions: * Seen on IOS XE 3.10.1

Workaround: There is no workaround.

• CSCum02221

Symptom: Memory Corruption crash: chunk accessing past redzone

Conditions: while running BGPv4 codenomicon suite; BGP receives an update with repeating valid attributes with flag lengths bigger than data in the packet.

Workaround: There is no workaround.

• CSCum02329

Symptom: Try to configure MPLS MTU on an interface that will not be programmed.

Conditions: When we configure MPLS MTU on an interface, MPLS MTU value is not programmed in the hardware and a packet larger than mpls mtu value is also allowed and doesn't get dropped.

Workaround: Use IP MTU or interface mtu instead of MPLS MTU.

• CSCum04298

Symptom: EVFC check is not working.

Conditions: With Priority traffic.

Workaround: There is no workaround.

• CSCum04414

Symptom: 20 VRFs, 5000 v4 mroutes and 5000 v6 mroutes per VRFs. mLDP based MVPN.

shutdown the physical interface of ingress PE. Ingress PE reload due to PD issue.

Conditions: There is no condition.

Workaround: There is no workaround.

• CSCum07119

Symptom: Router generates tracebacks or crashes depending on platforms when 'show application ip route' command is used concurrently with application route deletion.

439Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 474: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: show application ip route command is issued when JAVA onePK SDK is handling route replace operations

Workaround:

1. Use 'show ip route' to display the application routes and not 'show application ip route'.

2. Use onePK GET ROUTE API to get the status of application added route

3. Use 'show application ip route' only when there is no route delete is in progress

• CSCum09702

Symptom: OSPF neighbors can not establish FULL adjacency over dmvPN tunnels.

Conditions: This symptom is observed when dmVPN with OSPF is configured on IOS-XE platforms.

Workaround: There is no workaround.

• CSCum10676

Symptom: Router crashes during multicast replication.

Conditions: There are no known conditions.

Workaround: Following is the config to change the age timers. You can adjust this age time based on their requirement. ARP aging time config:

------------------- ASR(config)#int BDI164 ASR(config-if)#arp timeout ? <0-2147483> Seconds ASR(config-if)#arp timeout 1800 ASR(config-if)#end MAC aging time config: ------------------- ASR(config)#bridge-domain 164 ASR (config-bdomain)#mac aging-time ? <30-3600> Aging time in seconds, default 300 seconds (or 1800 seconds for overlay bridge domains) ASR(config-bdomain)#mac aging-time 1810

This problem will happen if the MAC entry is age out before the ARP entry of the given Host. So, if we configure the MAC age, slightly more than ARP age, then, the crash does not occur.

• CSCum13126

Symptom: After initiating an RP fail-over either through redundancy force-switchover or by using test crash, MLPPP interface remains down though T1's are up. Either shut/no shut of 1 of the member links or clear ppp all brings the MLPPP interface back up.

Conditions: Trigger: RP fail-over seems to be the Trigger, apart from which there do not have to be any associated config changes made.

Workaround: There is no workaround.

• CSCum22612

Symptom: Since the ASR fails to send MM6 [being a responder] in the absence of a valid certificate, IKE SAs start leaking and hence get stuck in MM_KEY_EXCH state. Multiple MM_KEY_EXCH exist for a single Peer on the ASR, however the Peer does not retain any SAs for ASR in this case.

Along with CAC for in-negotiation IKE SAs, these stuck SAs block any new SAs or IKE rekeys even after renewing the certificates on the ASR.

Conditions: ASR acting as IKEv1 termination point [sVTI for example] and is a responder.

IKE authentication mode is RSA-SIG [Certificates].

On the ASR, the ID-Certificate is either Expired or Not-present for a given sVTI tunnel

The ASR also has a IKE in-negotiation CAC of a certain value.

Example:

440Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 475: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

crypto call admission limit ike in-negotiation-sa 30

Workaround:

1. Manually delete stuck SAs by using:

clear crypto isakmp 12345

.. where 12345 is conn_id of a stuck SA.

Repeat this for each stuck SA

2. Temporarily increase CAC to accommodate new SA requests:

crypto call admission limit ike in-negotiation-sa 60

• CSCum23619

Symptom: No counter to show the ATM VC IFM call out and response

Conditions: ATM VC IFM call

Workaround: There is no workaround.

• CSCum25232

Symptom: ASR1K will fail to verify a message that is signed using a non-standard RSA key length (2024 for example). The failure is commonly seen during SCEP enrollment or when validating a peer certificate when RSA-SIG is used for phase 1 authentication.

Conditions: The failure has been observed on ASRs using an integrated ESP.

Workaround: There is no workaround.

• CSCum27490

Symptom: after reload, the tunnel traffic is not passed

Conditions: you have tunnel configured, and also have config with:

configure ip cef accounting per-prefix non-recursive

Then, reload the device. After the system is up again, you may find the tunnel traffic is not working.

Workaround: after reload,

Then, you have two options:

1. delete previous tunnel and re-config the same one

2. add a new tunnel with the same tunnel source as previous tunnel , then delete this new tunnel intf. After this config, everything will be recovered.

• CSCum35386

Symptom: The AVC Sum Duration metric is incorrect on the Utlra platform.

Conditions: AVC Sum Duration metric is enabled via one of the AVC / EzPM tools (e.g. ART), and is assinged to an interface on an Ultra plaform (however it works fine on ASR).

Workaround: There is no workaround.

• CSCum40367

Symptom: Traceback seen while adding fair queue on existing Subscriber child policy.

Conditions: This symptom is observed with background traffic flow.

Workaround: There is no workaround.

• CSCum42058

Symptom: These logs come up every 7 seconds filling up logging buffer:

441Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 476: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

001628: Jan 4 11:48:18.658 pst: UDLD-3-UDLD_IDB_ERROR UDLD errorhandling failed to get IDB subblock (rcv) interface: Gi0/0/1.100-Traceback= 1#bbfe8c0a51f338b185d077b248d1e545 :400000+13C8281:400000+662BBEC :400000+662A4DE :400000+662A36B

Conditions: Recieved an UDLD packets with VLAN tag.

Workaround: There is no workaround.

• CSCum44943

Symptom: ip mtu adjust feature should consider Ns/Nr 4-bytes sequencing field for auto calculation of vaccess mtu at LNS in the case where LAC wants to enable data packet sequencing by sending "Sequencing Required" AVP in ICCN towards LNS.

Now, the 4-bytes are not considered for the auto calculation of vaccess mtu at LNS in such a case.

Then, data packets having Ns/Nr 4-bytes sequencing fields in L2TP header may need to be fragmented after encapsulation at LNS.

Conditions: -ip mtu adjust is configured under the vdpn-group.

In a case where LAC wants to enable data packet sequencing by sending "Sequencing Required" AVP in ICCN towards LNS.

Workaround: Instead of using "ip mtu adjust" under the vpdn-group, set the mtu manually under the virtual template interface.

• CSCum48124

Symptom: Occasional crash/traceback and router reload when performing config-replace while both performance monitor/s (e.g. EzPM) and native FNF montor/s are assigned to the same interface.

Conditions:Performing a config-replace to a clean config (i.e. doesn't assign performance monitors or native FNF monitors), while there are both performance monitor/s (e.g. EzPM) and native FNF montor/s assigned to the same interface in the current running config.

Workaround: First un-assign ether or both the perfromance monitors and/or the native FNF monitors before performing the config-replace. In that case, the config-replace works ok.

• CSCum59909

Symptom: While testing ISSU from XE310<->XE312 with forwarding/security features,observing multiple features fails with both traffic and config failures followed by pendin-objects.

Conditions: Issue is seen after FP upgrade.

Workaround: There is no workaround.

• CSCum61622

Symptom: Traceback may be seen with sip/sunrpc/rtsp/rcmd/msrpc.

Conditions: scaled ALG.

Workaround: There is no workaround.

• CSCum66678

Symptom: When per-tunnel QoS is configured on a DMVPN hub, the ESP memory may become exhausted due to a memory leak. This could cause the ESP to reload.

Conditions: If there are a large number of DMVNP spokes and the spokes flap, then memory on the ESP is allocated and not freed. This could cause the memory exhaustion on the ESP and thus case the ESP to reload.

442Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 477: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: One could monitor the ESP memory usage and if it is getting low, then reboot the ESP during a mainance window. The command "show platform software memory qfp-control-process qfp act brief | inc I/F" can be used to determine if memory is being consummed due to this issue. Example:

mcp6ru-14#show platform software memory qfp-control-process qfp act brief | inc CPP I/F DB module allocated requested allocs frees ------------------------------------------------------------------------------ CPP I/F DB 128 48 5 0 <== normal condition is 5 allocs at bootup that is not freed

(one spoke flapped)

CPP I/F DB 8172 8076 6 0 <== 1 additional alloc of 8028 (2k spokes in network) - with this bug, this memory is not freed

• CSCum67637

Symptom: FP crash while clearing zone pair inspect session.

Conditions: With GTP configs in UUT.

Workaround: There is no workaround.

• CSCum74275

Symptom: In the current code expected time of the record is dependent on the start time of the first record.

As a result if there are mix and match of records from different interval, there is a possibility of expected record being changed. and the record getting dropped.

Conditions: Send records belonging to two different intervals simultaneously .

Workaround: Removing the dependency of the expected record time on start time of the first record.

Timer will look for the current interval packets and any future records will stored with the new code.

If the record time is lower than the current expected time than the record will be dropped.

• CSCum84228

Symptom: memory leak for GTP AIC req/res pool

Conditions: send GTP request message.

Workaround: There is no workaround.

• CSCum86411

Symptom: BGP performance will be slower on RP2 on 15.4(02)S release or newer images.

Conditions: Large scale BGP routes

Workaround: Use Image 15.4(01)S or older.

• CSCum88382

Symptom: BFD session not established upon RP Switchover and back

Conditions: RP switchover and switchback.

Workaround: There is no workaround.

• CSCum98137

Symptom: FP reloads due to cpp_cp process crash.

443Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 478: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: Creating a session w/QOS policy and applying a shaper on VLAN for the session where both of these events occuring at the same time.

Workaround: There is no workaround.

• CSCun00488

Symptom: Duplicate records are exported from MMA.

Conditions: set up a topolgy as below

SRC --- UUT --DST

|

collector

set the configuration at the UUT to export all the records to collector. At exporter notice duplicate records.

Workaround: There is no workaround.

• CSCun01152

Symptom: An IOS-XE router may reload unexpectedly when zone-based firewall is configured.

Conditions: Zone-based firewall is configured. May be dependent on many active MSRPC sessions.

Workaround: There is no workaround.

• CSCun02711

Symptom: observing cpp_cp_svr crash

Conditions: Interface Flap with Model4 QoS under Oversubscribe load.

Workaround: There is no workaround.

Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

This section documents the open issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S.

This section documents the unexpected behavior that might be seen in Cisco ASR 1000 Series Aggregation Services Routers Release 3.7.5S.

• CSCud94511

Symptom: Multiple Tracebacks are seen.

Conditions: Router reload.

Workaround: There is no workaround.

• CSCue61643

Symptom: When the encapsulation on pvc is aal5mux.

Conditions: Ping fails when encapsulation on pvc is aal5mux.

Workaround: Configure a different encapsulation aal2snap and make it default.

• CSCuh11621

Symptom: Nightster: Shut/No-Shut on Nightster bay0/1 causes PLIM driver Errors

Conditions: None.

444Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 479: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCuh18853

Symptom: The performance of a TFTP file transfer to/from an ASR1K running XE37 has severly decreased compared to older releases (e.g. XE 2.6.2).

Conditions: is has been observed on an ASR1K running XE373.

Workaround: There is no workaround.

• CSCui15609

Symptom: IDBINDEX_SYNC-4-RESERVE errors and IDBINDEX_SYNC-3-IDBINDEX_ENTRY_MISMATCH errors logging.

Conditions: ASR1006 running asr1000rp2-advipservicesk9.03.04.05 .S.151-3.S5.bin.

Workaround: There is no workaround.

• CSCuj43288

Symptom: with presence of POS spa and scaled DMVPN setup, errors and traceback showup, no more sessions come up

Conditions: This symptom is observed under the following conditions:

1) Presence of a POS SPA

2) ter-tunnel-qos applied to ipsec session on DMVPN HUB and flapping some sessions

And console stops to respond to command input.

Workaround: There is no workaround. Remove the SPA.

• CSCuj56749

Symptom: SPA FPD Recovery Upgrade failure for SPA-4XT-SERIAL

Conditions: None.

Workaround: There is no workaround.

• CSCuj93565

Symptom: %SPA_OIR-3-EVENT_DATA_ERROR: SPA OIR event data error - fail.

Conditions: None.

Workaround: There is no workaround.

• CSCul12632

Symptom: SPA-8XCHT1/E1: show version doesn't show serial i/f info sometimes.

Conditions: None.

Workaround: There is no workaround.

• CSCul38872

Symptom: Nightster:txmcbufferoverflow error while removing native GE loopback mac.

Conditions: None.

Workaround: There is no workaround.

• CSCul49215

Symptom: IOS-XE side code fixes for Phase transient issue in maverick V2 SPA

Conditions: None.

445Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 480: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCul83515

Symptom: B3 errors are continously seen on SPA-4XOC48POS/RPR connected to ONT

Conditions: None.

Workaround: There is no workaround.

• CSCum04518

Symptom: %IPC-2-CANT_SEND: SIP0/1: SPA-24CHT1-CE-ATM[0/1] err msgs seen on NG.

Conditions: %IPC-2-CANT_SEND: SIP0/1 err messages.

Workaround: There is no workaround.

• CSCum12453

Symptom: ASR1K: Prowler SPA: Tail drop of imix traffic and ESP crash.

Conditions: None

Workaround: There is no workaround.

• CSCue99781

Symptom: 310: Condebug: Cannot delete ATM pvc intf condition after remove pvc.

Conditions: None.

Workaround: There is no workaround.

• CSCum03117

Symptom: Verify traffic not flood to fwd vfi when efp and vfi in same BD.

Conditions: traffic flood is wrong with same BD

Workaround: There is no workaround.

• CSCul24853

Symptom: Whne the command "attribute nas-port format <x>" is configured under an "aaa group server", it is not used by the ASR1k.

Conditions: "attribute nas-port format <x>" is configured under "aaa group server" and no global command for this format is configured.

Workaround: Configure the global command: radius-server attribute nas-port format <x>

• CSCum03767

Symptom: During a EAPSIM re-authentication with a incomplete challenge, the ISG sends out a wrong Accounting Request to the AAA Server.

Conditions: This will happen only during EAPSIM re-authentication and incomplete call-setup

Workaround: There is no workaround.

• CSCue40782

Symptom: Traceback@cpp_tunnel_svr_disable_tunnel_protection

Conditions: While unconfiguring vrf vpn on spoke router of DMVPN.

Workaround: There is no workaround.

• CSCui64579

Symptom: ping failed with packet size over 10184.

446Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 481: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: MPLS mtu max enabled for MPLSomGRE tunnel

Workaround: Disable MPLS mtu max.

• CSCuj46462

Symptom: Local PBR route-map counter are double the packets sent on ASR1K

Conditions: None.

Workaround: There is no workaround.

• CSCul37377

Symptom: ESP crashed when receiving packets with 10 stacked labels

Conditions: None.

Workaround: There is no workaround.

• CSCul97328

Symptom: FP40: FPM IP packets not displayed in "show log" on XE311.

Conditions: None.

Workaround: There is no workaround.

• CSCum73080

Symptom: Traceback seen while doing a 'default range' on the control, data and InterLink interfaces on a RG Active Router.

Conditions: Stateful HTTP / FTP traffic was being sent through the router.

Workaround: Do a default on all the interfaces one by one instead of doing 'default range Gig x - y'.

• CSCuh62666

Symptom: All packets punt to RP for GEC interface.

Conditions: Config and remove ethertype for GEC interface.

Workaround: There is no workaround.

• CSCtz50465

Symptom: ISSU between incompatible images goes through.

Conditions: This happens for images between ISSU-break.

Workaround: There is no workaround.

• CSCub87409

Symptom: Memory leak in oom.sh process RP and FP.

Conditions: None.

Workaround: There is no workaround.

• CSCuj84220

Symptom: Nightster: 10GE Eval license does not transition into In-Use status.

Conditions: None.

Workaround: There is no workaround.

• CSCul17693

447Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 482: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: On the ASR1000 platform family, CISCO-ENHANCED-MEMPOOL-MIB & CISCO-MEMORY-POOL-MIB show lsmpi_io pool with little free memory. As a result, various SNMP management software applications may generate an error/notification.

Conditions: This condition is shown from the moment the router boots up.

The lsmpi_io pool is used on the Route Processor of all ASR1000 routers. Unlike other IOS versions IOSd on the ASR is a process running on IOS XE. IOSd has a single logical interface which communicates to IOS XE. This interface is called the Linux Shared Memory Punt Interface (LSMPI). When the ASR1000 boots the lsmpi_io pool is created and nearly all of the memory is allocated up front by design. Therefore, the little free memory shown in the MIBs is by design and does not indicate an error condition.

The LSMPI interface is described further in this document:

http://tools.cisco.com/squish/b64AB

Workaround: There is no workaround for the lsmpi_io pool having little free memory. If some other piece of software is generating alarms for this reason the management software needs to be adjusted.

• CSCty54912

Symptom: chunk sibling memory failure.

Conditions: Left the testbed idle for more than 10 hrs.

Workaround: There is no workaround.

• CSCud67669

Symptom: ASR1k: crash@Segmentation fault(11), Process=SSS Manager.

Conditions: None.

Workaround: There is no workaround.

• CSCuj51088

Symptom: traceback shown on console log.

Conditions: when clear radius proxy + dhcp sessions.

Workaround: There is no workaround.

• CSCum79612

Symptom: RADIUS(00000030): Send CoA Ack Response to x.x.x.x:41447 id 250, len 710

<snip> RADIUS: ssg-account-info [250] 79 "service-name;946;41791249308;37024;98648;2170218;130964086" <= this is the value for downstream bytes and not as document here for upstream:http://www.cisco.com/en/US/docs/ios/ssg/configuration/guide/ssg_radius_prof_attr_ps6350_TSD_Products_Configuration_Guide_Chapter.html#wp1055577.

Conditions: ASR1k is configured to function as an ISG.

Workaround: The admin can change the evaluation of these down-/upstream bytes on the portal server

g= <1;servicename;elapsed-time in seconds;username;downstream packets;upstream packets;downstream bytes;upstream bytes>.

• CSCud94511

Symptom: Traceback appeasrs in UUT.

Conditions: Unconfiguring firewall configs from UUT.

448Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 483: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCum22245

Symptom: Description:

1. Observing following DSP Errors

Dec 5 11:40:08.340 IST: %DSP_SPA-3-BUFF_FAIL: SIP0/1: Not Enough MEM Buffers at dsp receive

Dec 5 11:40:27.774 IST: %FARM_DSPRM-6-CALLDROPINFO: dspfarm active calls on this card dsp 2 channel 12 will be dropped.

2. Observing following memory leaks

ASR_1006#show memory debug leaks summary

Adding blocks for GD... lsmpi_io memory Alloc PC Size Blocks Bytes What Processor memoryAlloc PC Size Blocks Bytes What 0x73AC2C6 0000001492 0000000501 0000747492 DSMP0x740E000 0000000268 0000000028 0000007504 dsp_interfaceAlloc PC Size Blocks Bytes What0x740E000 0000000324 0000000172 0000055728 dsp_interfaceTracebacks:ASR_1006#show memory traceback totals-Traceback= 1#5b598b1360a2e5028a2d474cd717da72 [2] :400000+6FAC2C6 :400000+6FAC192 :400000+70089B2 :400000+6EE3088 :400000+6F6A920 :400000+705AD3D :400000+70596BD :400000+6F1F667 :400000+6F1F150 (529519 seen)Holding: 506864 Num of blocks: 338 Peak Holding: 1294872-Traceback= 1#5b598b1360a2e5028a2d474cd717da72 [1] :400000+700E000 :400000+6F6A26B :400000+705AD3D :400000+70594E7 :400000+6F1F667 :400000+6F1F150 (289981 seen)Holding: 111992 Num of blocks: 350 Peak Holding: 275720-Traceback= 1#5b598b1360a2e5028a2d474cd717da72 [3] :400000+6FAC2C6 :400000+6FAC192 :400000+70089B2 :400000+6EE3088 :400000+6F6AC9A :400000+705AD3D :400000+70596BD :400000+6F1F667 :400000+6F1F150 (2767 seen)Holding: 18192 Num of blocks: 12 Peak Holding: 739364

Conditions: With Contact center callflow:

3. Run Load with the following call flow

4. CPS: 30

5. Hold Time 33secs

Workaround: There is no workaround.

• CSCum51221

Symptom: Move reload log from /tmp to bootflash during performance analysis.

Conditions: None.

Workaround: There is no workaround.

• CSCuj82418

Symptom: CUBE-SP data plane forwording capacity drops.

Conditions: NNI performance test.

Workaround: There is no workaround.

• CSCuh95602

449Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 484: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: Self bound traffic dropped by firewall.

Conditions: NAT64 is configured and traffic is sent from IPv6 client (in) to IPv4 egress interface of UUT (self).

Workaround: There is no workaround.

• CSCui97375

Symptom: In-active time-based ACL causes traffic dropped.

Conditions: This symptom is observed on a Cisco ASR1000 series router when

– time-based Access list Control (ACL) is configured on an interface and the

– time-based ACL is not in configured time-range.

Workaround: There is no workaround.

• CSCuj02884

Symptom: Packet drop with fragmented ipsec and nat64.

Conditions: None.

Workaround: There is no workaround.

• CSCuj09540

Symptom: ESP remains in "init, standby".

Conditions: The issue is caused by a reset due to a crash.

Workaround: Reload the router.

• CSCuj38420

Symptom: No alias interface for dynamic NAT.

Conditions: Overload configured for dynamic NAT.

Workaround: remove Overload.

• CSCuj79520

Symptom: Increased use of global addresess over time while running PAP.

Conditions: NAT PAP enabled along with vrf on outside interfaces.

Workaround: If global address pool becomes deleted, it may become necessary to clear ip nat translations or reload the CPP.

• CSCul01335

Symptom: FP may crash

Conditions: This symptom is observed on changing pap limit from 30 to 60 with traffic on

Workaround: There is no workaround.

• CSCul12835

Symptom: Crash with CGN/BPA configuration.

Conditions: IP pool was extended, single bit in BPA was set.

Not seen with 1000 users. Issue is seen with waround 8000 users.

Workaround: There is no workaround.

• CSCul65858

Symptom: GARP for the NAT-inside-global-address is sent from a non-Active HSRP router.

450Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 485: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

The problem is seen when one of the redundancy pair is reloaded and the interface comes up.

Because of the behavior, traffic loss is seen on the NAT traffic.

When receiving the GARP, active router shows the duplicate address message like below.

%IP-4-DUPADDR: Duplicate address x.x.x.x on GigabitEthernetx/x/x, sourced by xxxx.xxxx.xxxx

Conditions: None.

Workaround: There is no workaround.

• CSCul67817

Symptom: max nat translations with ACL not working.

Conditions: With PAT mapping using ACL nat limit config.

Workaround: There is no workaround.

• CSCul87051

Symptom: ASR1k running 3.7.2S

Two inside global addresses for the same inside local address.

Sufficient pool to handle one-to-one translations.

Conditions: IPv4 nat - ip nat inside source route-map <route-map> pool <pool> reversible

SIP traffic.

Workaround: There is no workaround.

• CSCum56514

Symptom: A Cisco router running IOS XE may crash and reload after generating a ucode core file and logs similar to the following:

Notice 1531: KRZ: SIP0: pvp.sh: Process manager is exiting: process exit with reload fru codeError 1530: KRZ: SIP0: cpp_cp: cpp_cp encountered an error -Traceback=Error 1529: KRZ: SIP0: pman.sh: The process cpp_ha_top_level_server has been helddown (rc 69) Error 1528: KRZ: SIP0: pman.sh: The process cpp_cdm_svr has been helddown (rc 69) Informational 1526: KRZ: F0: cpp_ha: Shutting down CPP MDM while client(s) still connected Informational 1525: KRZ: SIP0: cpp_cdm: Shutting down CPP MDM while client(s) still connected Informational 1527: KRZ: F0: cpp_ha: Shutting down CPP CDM while client(s) still connected Error 1524: KRZ: F0: cpp_ha: CPP 0 microcode crashdump creation completed.

Conditions: A Cisco router running IOS XE and traffic passing through the NAT path.

Workaround: There is no workaround.

• CSCum61077

Symptom: Packets dropped while IPV4 to IPV6 translation with size above 1252.

Conditions: NAT64 on ASR1K.

Workaround: Decrease the IPV4 mtu size to 1252.

• CSCum69887

Symptom: NAT cann't handle the tcp sequence properly with LDAP ALG after pdu size changed. NAT will not handle the delta value for the right ack message but thereafter messages, which may cause mis-acked message flows between two endpoints.

451Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 486: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: Send LDAP traffic with empty comment item in LDAP ALG.

Workaround: There is no workaround.

• CSCum81447

Symptom: IPv4 fragment with non-zero offset not translated to ipv6 for nat64.

Conditions: None

Workaround: There is no workaround.

• CSCul47786

Symptom: failed to initialize qos EA with rp2 super image in mcp_cable_xos branch.

Conditions: None.

Workaround: There is no workaround.

• CSCun10918

Symptom: PPP subscribers cannot be terminated in ASR1K, due to object locked.

Conditions: EVSI Delete Errors: Out-of-Order 0, No dpidb 0, Underrun 0, VAI Recycle Timeouts 90215 =======> large number of VAI recycle timeouts

EVSI wrong dpidb type errors 0

EVSI Async Events: Total 92754, HW error 88050 =======> large number of HW errors as well.

Workaround: remove QOS of the ppp.

• CSCuh53255

Symptom: no media issue is encountered.

Conditions: By default, without "asymmetric payload full" configured, there will be no end-to-end PT negotiated. CUBE should do payload type interworking at RTP level. But right now, CUBE does not behave correctly, no media issue is encountered.

Workaround: configure "asymmetric payload full" under voice service voip -> sip

• CSCul48986

Symptom: cpuhog is seen when config lma network

Conditions: config pool ipv4 v4pool3 pfxlen 16

Workaround: There is no workaround.

• CSCul69967

Symptom: Pending issues in show platform software object-manager fp standby stats

Conditions: None.

Workaround: There is no workaround.

• CSCum95704

Symptom: iWAG doesn't handle update message received from p-GW/GGSN.

Conditions: None.

Workaround: There is no workaround.

• CSCun09973

Symptom: esp reloaded when received incorrect l2tp packet.

Conditions: l2tp packet with incorrect udp length.

452Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 487: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: enable the checksum ignore.

• CSCud29951

Symptom: Ucode Regression Failures (CPP10): ipsec tests.

Conditions: None.

Workaround: There is no workaround.

• CSCug53518

Symptom: DMVPN NDR drops on ASR1001 with a few feature combination in XE3.10 (FNF plays the major role in degradation).

Conditions: Compared to Version 15.3(20130416:060244) [mcp_dev-BLD-BLD_MCP_DEV_LATEST_20130416_040026-ios 179].

Workaround: There is no workaround.

• CSCui96224

Symptom: show crypto ipsec interface <interface-name> platform is listing the output of show platform software ipsec fp active interface all instead of selecting the right interface ID

Conditions: Using the new platform command.

Workaround: There is no workaround.

• CSCuj45711

Symptom: Packets from ASR with IPV6 and TBAR configurations, are not being forwarded, even though the packets are being decrypted on the ASR.

Conditions: ASR with IPV6 and YBAR enabled.

Workaround: There is no workaround.

• CSCul16548

Symptom: The 'show crypto ipsec sa peer <address> platform command may be incorrect for ESP 200 on ASR1K.

Conditions: The crypto context information will be incorrect for all the IPSec SAs programmed on crypto device 1 on an ESP 200.

Workaround: Use the 'show platform software ipsec fp active encryption-processor 1 context <context id>' command manually to get the crypto context information.

• CSCuc13721

Symptom: This is a modification on the product to adopt new secure code best practices to enhance the security posture and resiliency of the product.

This is a hardening defect and should not be made visible to customers.

Conditions: Device configured with default configuration.

Workaround: There is no workaround.

• CSCuj23729

Symptom: "uc wsapi" cannot be configured on S train platforms (juno)

Conditions: None.

Workaround: There is no workaround.

• CSCuh56746

Symptom: Crash observed when creating a zone for zone based firewalls

453Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 488: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: See when using standard or evaluation licenses.

Workaround: Apply the appropriate premium or advance license to configure zone based firewalls.

• CSCuh67020

Symptom: crash at add_zone.

Conditions: None.

Workaround: There is no workaround.

• CSCui72582

Symptom: Invalid CE table name using special characters should be rejected.

Conditions: None.

Workaround: There is no workaround.

• CSCun14279

Symptom: Traffic to and from a BDI Interface on an ASR 1000 stops.

The command 'show platform software l2fib fp active bd <BDI> unicast all' will show nothing when it should show the following:

Router#sh pla so l2fib fp active bd 2 unicast allMAC BD Nhop type Nhop Idx Flags ffff.ffff.ffff 2 olist 1026Router#sh pla so l2fib fp active mlist index 1026L2FIB Mlist entriesType Index AOM ID CPP Infoefp 1020010 aom id: 126, CPP info: 0x15929a4 (created)

Conditions: ISSU upgrade from 3.4.0 15.1(3)S2 to 3.10.0 15.3(3)S, followed by a shut / no shut of the BDI interface.

Workaround:

– Reload / Power Cycle the entire Router.

– Prior to the ISSU, remove all BDI configuration and replace it after the ISSU is completed.

– Create new bridge domains to replace misbehaving ones.

• CSCul95464

Symptom: CAC times of activation constant increment for IPv6 ND FSOL.

Conditions: None.

Workaround: There is no workaround.

• CSCum94111

Symptom: Breakup spa_generic_ngio.c and miscellaneous cleanup

Conditions: None.

Workaround: There is no workaround.

• CSCuf31885

Symptom: Users might experience slower network, specially on TCP connections. Delay in SYN/SYN ACK is reported by traffic generator.

Conditions: Heavy traffic and full AVC enabled (Config recommended by Marketing), QFP in ESP40 is higher than 7%. This can be verified by issuing the command of show platform hardware qfp active datapath utilization.

454Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 489: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: Use a less heavy AVC Config or disable AVC.

• CSCuf73907

Symptom: asr1k:elc:wrong display for EVC in "sh bd" for Ten Gig links of ELC

Conditions: None.

Workaround: There is no workaround.

• CSCun15914

Symptom: collapse contrib/openssl back to main.

Conditions: None.

Workaround: There is no workaround.

• CSCuf44203

Symptom: AFW memory corruption.

Conditions: None.

Workaround: There is no workaround.

• CSCub42703

Symptom: video_SDP_Passthru call are failing Bandwidth based on CAC.

Conditions: None.

Workaround: There is no workaround.

• CSCud32723

Symptom: [Skyrise]ASR1001: Performance degradation for IPV4-IPV4 FA and FT calls

Conditions: None.

Workaround: There is no workaround.

• CSCub72573

Symptom: encpas counter in "show crypto ipsec sa" may occasionly show incorrect value

Conditions: IPSec tunnels configured and used on the device

Workaround: There is no workaround.

• CSCui19103

Symptom: It is observed that no value is returned for an SNMP query (nhrpServerEntry) made by the SNMP server to the UUT (DMVPN Hub) in a Hierarchical DMVPN Scenario, where the HUB is an intermediate device which works as both DMVPN Hub and Spoke.

Conditions: None.

Workaround: There is no workaround.

• CSCuh81159

Symptom: XE 3.11 : Traceback seen during Xfer on CUBE.

Conditions: None.

Workaround: There is no workaround.

• CSCui80093

Symptom: CUBE not falling to FT mode for srtp-rtp call in no DSP case.

Conditions: This is seen when DSP resources are shutdown/unavailable in the router.

455Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 490: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: Configure dspfarm profile in the router if available or do not configure "media flow-around" CLI. This issue is particularly observed when Flow-around is configured for srtp-rtp call and when there are DSP resources in the router

• CSCui87426

Symptom: CUBE moving to FA with one call-leg as srtp and other call-leg as rtp which is wrong.

Conditions: This is seen in srtp-rtp call and in mid-call , inleg fallsback from srtp to rtp.

Workaround: There is no workaround.

• CSCul04900

Symptom: Hydrogen serviceability Feature crash in Xe 311 image As per crash decode snippet, serviceability/event trace code crashed

Traceback summary ----------------- % 0x8a57439 : __be_strcmp % 0x1372b17 : __be_sympBuffCallingNumCompare % 0x89884ce : __be_avl_search % 0x1373a99 : __be_symp_et_search_cover_buffer_in_filt_table % 0x1373b99 : __be_symp_et_insert_cover_buffer_to_filt_table % 0x13754fc : __be_symp_upd_event_trace_instance % 0x10417a9 : __be_ccsip_api_call_setup_ind % 0xf555a4 : __be_sipSPIContinueNewMsgInvite % 0xf54cf8 : __be_sipSPIHandlePostPreauthInvite % 0xf52a20 : __be_sact_idle_new_message_invite % 0xf523ad : __be_act_idle_new_message % 0xf5127a : __be_sipSPISipIncomingMsg % 0xf4f821 : __be_sipSPILocateInviteDialogCCB % 0xf4e5b5 : __be_ccsip_new_msg_preprocessor % 0xf4c55a : __be_ccsip_spi_process_event % 0xf4bedc : __be_ccsip_process_sipspi_queue_event Call flow : srv_dbg_cat_lvl_03 TC execution. ================================================= Topology sipp----ASRCUBE----SIPP Core file path :/auto/tftp-rts/ASR-CUBE_RP_0_linux_iosd-imag_16315_1382531279.core.gz Passed image :15.4(0.19)S0.4 failed Image :15.4(0.19)S0.8

Conditions: This symptom is observed under:

1. Trace commands enabled at common_setup section, monitor event-trace voip ccsip fsm monitor event-trace voip ccsip msg monitor event-trace voip ccsip misc monitor event-trace voip ccsip api monitor event-trace voip ccsip global monitor event-trace voip ccsip limit connections 1000 monitor event-trace voip ccsip stacktrace 8 monitor event-trace voip ccsip history enable" monitor event-trace voip ccsip history clear" monitor event-trace voip ccsip all enable"

2. By default all feature codes and log level are enabled at particular TC setup section

3. Single audio call is established, after 4 to 5 sec. crash occurred.

Workaround: Passed image :15.4(0.19)S0.4

• CSCul46066

Symptom: Hung Calls with SIP SPI with Refer Consume Load

Conditions: observing hung calls with Refer Consume CVP load test. Hung calls observed with SIP SPI

Steps to reproduce:

– Configure max connection with 3 Refer to Dial-peer & outbound dial-peer towards CVP.

– Run Load with 1000 calls for few hours.

CPS: 10CHT: 100 secsTotal Number of active calls : 750Issue observed with max-conn with multiple dial-peers

Workaround: Use dial-peers without max-conn.

456Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 491: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCuf14884

Symptom: dummy packet generation per SA does not follow configured interval.

Conditions: None.

Workaround: There is no workaround.

• CSCuh77330

Symptom: ASR1K XE 3.7.S3 [crypto_ipsec_pull_dp_sadb_counters]

Conditions: None.

Workaround: There is no workaround.

• CSCum94837

Symptom: ASR1K does not output %XCONNECT-5-PW_STATUS: message although remote xconnect device's interface is down or up.

Conditions: This happens only remote xconnect device's interface is down or up. When ASR1K xconnect interface is down or up this does not happen.

Workaround: There is no workaround.

• CSCui09671

Symptom: GEC: recycle bundle can't keep up on Yoda platforms

Conditions: None.

Workaround: There is no workaround.

• CSCum73445

Symptom: cpp_cp_svr crash.

Conditions: Problem has been intermittently seen when tearing down bundle type interfaces such as MLPPP and MLFR.

Workaround: There is no workaround.

• CSCum90878

Symptom: Ultra HQF Perf: Eliminate extra scheduling layer/overhead from HQF cfg

Conditions: None.

Workaround: There is no workaround.

• CSCum99180

Symptom: Latency in PQ gets high under a certain traffic condition

Conditions: In the QoS scenario bellow, latency in PQ gets high in specific situation.

This issue happens when specifically shape rates <= 1Mbps

The interface is shaped as to 1Mbps with "account user-defined 24" in PARENT policy.

CHILD policy has 2 classes which is configured with "priority percent", another is configured with "bandwidth remaining"

Here is configured priority percent and the rate of test traffic in each scenario.

Two streams with different rate and frame size( Both are classified into PQ)

The Maximum Latency is greater than 1100¶Ãs.

class-pq:89% (890 kbps).DSCP pps byte Maximum Latency(¶Ãs)CS6 409 85 1100

457Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 492: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

12 64 1133

Workaround: There is no workaround.

• CSCun09640

Symptom: The following errors are seen when adding a child policy to a parent policy while configuring hierarchical QoS.

%CPPOSLIB-3-ERROR_NOTIFY: F0: cpp_cp: cpp_cp encountered an error %CPPOSLIB-3-ERROR_NOTIFY: F0: fman_fp_image: fman-fp encountered an error%PMAN-3-PROCHOLDDOWN: F0: pman.sh: The process cpp_ha_top_level_server has been helddown (rc 69)%PMAN-3-PROCHOLDDOWN: F0: pman.sh: The process cpp_cp_svr has been helddown (rc 134)

This can result in a ESP (F Fabric) reload, causing a traffic outage

*Feb 13 07:39:05.829: %IOSXE_OIR-6-ONLINECARD: Card (fp) online in slot F0

Conditions:

– An interface with a service-policy applied.

– Adding/removing child policies on the parent hierarchical policy applied to the interface.

Workaround: Remove the policy from the interface before making the changes to the child/parent policy then reapply the policy to the parent.

• CSCui35958

Symptom: GLC-GE-100FX SFP state remains Enabled even when port status admin down.

Conditions: None.

Workaround: There is no workaround.

• CSCul10111

Symptom: Loopback Led is not changing to Amber in Javelin T3E3 spa in Encap PPP.

Conditions: None.

Workaround: There is no workaround.

• CSCum04472

Symptom: ASR1K: Pb-free Patriot Prowler: IDB errors on scaling ds0 channels.

Conditions: None.

Workaround: There is no workaround.

• CSCua48282

Symptom: On ASR1K router, randomly observe the following error during ISSU MDR runversion, the error does not have funcationality impact.

*Jun 13 18:21:04.001 PDT: %CMCC-3-PLIM_STATUS: SIP2: cmcc: A PLIM driver informational error txnpMaxMTUExceeded, block 1e count 1

Conditions: None.

Workaround: There is no workaround.

• CSCua62284

Symptom: Can not synchronize SPI4 bus and PLIM error.

Conditions: None.

Workaround: There is no workaround.

458Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 493: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCuf57507

Symptom: EVENTLIB-3-RUNHOG: SIP2: cmcc: undefined: 7179ms

Conditions: While performing an active RP failure during ASR1006 subpackage MDR upgrade

Workaround: There is no workaround.

• CSCuj94548

Symptom: Intermittently SCOOBY-3-SERIAL_BRIDGE_CRITICAL error observed on ASR1000-2T+20x1GE card.

Conditions: None.

Workaround: There is no workaround.

• CSCul32464

Symptom: ASR1K: ELC - Add new MB FPGA ver 1.22 bundle

Conditions: None.

Workaround: There is no workaround.

• CSCul79546

Symptom: pactrac: show fia-traced packet has unexpected unformatted output.

Conditions: None.

Workaround: There is no workaround.

• CSCum59137

Symptom: %ASR1000_SPA_ETHER-3-TCAM_VLAN_ERROR: SIP0/0: Failed to add.

Conditions: Seen at the time of port-channel config, viz shut/no shut multiple config calls are sent , hence gives error at the time of adding vlan-entry which is already added and deleting vlan entry which is already removed.

Workaround: There is no workaround.

• CSCum67150

Symptom: Ingress MAC Acct stops working after doing a no mac acc on egress.

Conditions: None.

Workaround: There is no workaround.

• CSCum70828

Symptom: SNMP Query on dot3StatsDuplexStatus is shown as unknown on SPA-5X1GE-V2.

Conditions: While testing Ether-like MIB for SPA-5X1GE-V2.

Workaround: There is no workaround.

• CSCul47786

Symptom: failed to initialize qos EA with rp2 super image in mcp_cable_xos branch.

Conditions: None.

Workaround: There is no workaround.

• CSCub00482

Symptom: 2 IKEv2 sa created on a crypto session at flexVPN Server

Conditions: system bootup with 4K activity flexVPN clients and data traffic.

459Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 494: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCui22804

Symptom: CLI: show crypto mib ike flowmib failure doesn't shows correct reason for failure

Conditions: Incorrect failure reason is shown in case when ikev2 profile is configured and shut command is issued on tunnel.

Workaround: There is no workaround.

• CSCuj73916

Symptom: Traceback seen.

Conditions: while running ISAKMP D10 suite during codenomicon testing.

Workaround: There is no workaround.

• CSCum80300

Symptom: ASR1k running XE3.10 may crash in RP on executing the CLI "show crypto session"

Conditions: More than 1000 crypto sessions and executing the cli "show crypto session".

Workaround: There is no workaround.

• CSCuh30746

Symptom: XE3.10 "show version" can not find license information

Conditions: None.

Workaround: There is no workaround.

• CSCun07481

Symptom: ASR1k - L2TP tunnel password char > 32 chars not working.

Conditions: None.

Workaround: There is no workaround.

• CSCuj42611

Symptom: MCP asr1k invisibility test for LI fails.

Conditions: None.

Workaround: There is no workaround.

• CSCue48471

Symptom: Currently, there is no way to detect ILAK OOB CRC error.

Conditions: None.

Workaround: So, a cli is implemented to check if we have any interrupt pending or not.

sh pl hard slot < slot num> plim statistics internal.

• CSCue92637

Symptom: Review comments for CSCue17512/CSCue93536 (Phy Interrupt Handler)

Conditions: None.

Workaround: There is no workaround.

• CSCuj36793

Symptom: Commit of CSCud71821 is causing a problem during MDR; the reload causes the cc to go offline and a rommon status of bad_rommon is shown.

460Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 495: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Conditions: None.

Workaround: There is no workaround.

• CSCuj83383

Symptom: This is not visible to customer as it prints a wrong reset cause on being reset through ELC console CLI. ELC Console is not present in production boards.

Conditions: This problem occurs when the user tries to reset the ELC through ELC console CLI.

Workaround: There is no workaround.

• CSCul09398

Symptom: Ping will not work after replacing Cu SFP with Optics SFP in the same port of ELC.

Conditions: When CU SFP was inserted, speed other than 1000 should be configured and then remove the SFP and insert Optics SFP.

Workaround: Unconfigure speed on CU SFP then remove the SFP or Reload the card.

• CSCul49981

Symptom: failed to initialize qos EA with rp2 super image in mcp_cable_xos branch.

Conditions: None.

Workaround: There is no workaround.

• CSCul80246

Symptom: FPD upgrade/downgrade, LC offline message is seen twice.

Conditions: None.

Workaround: There is no workaround.

• CSCum66182

Symptom: SNMP Query on the object dot3StatsDuplexStatus is shown as unknown.

Conditions: While testing Ether-Like MIB for ASR1000-6TGE.

Workaround: There is no workaround.

• CSCum85290

Symptom: IOSD Stack and Heap are R/W/X.

Conditions: None.

Workaround: There is no workaround.

• CSCui57809

Symptom: subscriber template cause session session teardown with no reason cause.

Conditions: None.

Workaround: There is no workaround.

• CSCuj09925

Symptom: In a PPPoE dual-stack environment, the Delegated-IPv6-Prefix is not sent to the start accounting record. The Delegated-IPv6 Prefix is logged only in the next Interim record, but this can take a long time depending on the configured update period.

Conditions: Delegated prefix allocated from an IPv6 pool which is configured via Cisco-AVPair "ipv6:delegated-ipv6-pool" in the RADIUS server.

Workaround: There is no workaround.

461Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 496: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCul38850

Symptom: Finding the actual root cause of CSCul30317.

Conditions: None.

Workaround: There is no workaround.

• CSCul97900

Symptom: IPSUB EVSI Create Error counter is incremented post churn test.

Conditions: None.

Workaround: There is no workaround.

• CSCum62975

Symptom: PPPoE session stuck in LCP,WT_ST upon establisment with CoA-LI noaction.

Conditions: None.

Workaround: There is no workaround.

• CSCui11721

Symptom: rLFA-FRR convergence time is over 50ms when primary path is ATM.

Conditions: None.

Workaround: config 3.33ms interval BFD in ATM port.

• CSCuj55984

Symptom: GetVPN crypto gdoi re-reg fails

Conditions: When active traffic and when the WAN intf flaps

Workaround: Issue "clear crypto gdoi" on UUT.

• CSCul72419

Symptom: GM doesn't process 'clear crypto gdoi ks members'.

Conditions: ASR1K GM configured with 1 GETVPN group.

GETVPN group uses client registration interface loopback.

Apply the crypto map to 2 sub-interfaces.

Workaround: There is no workaround.

• CSCul69572

Symptom: Warning messages observed when we configure 'source-interface loopback 'num' on the NVE interface.

Conditions: Issue observed whenever we configure the souce-interface command on the NVE.

Workaround: There is no workaround.

• CSCun06003

Symptom: OTV fragmentation join-interface command cannot be removed from the configuration. When the system is in this state the system fails to fragment large MTU packets.

Conditions: On a ASR1002-X running IOS-XE 03.10.01.S enable otv fragementation on a system with a dot1q sub interface as the join interface then recycle the power of the ASR.

Workaround: Replace the existing configuration.

• CSCtu43369

462Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 497: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: CFLOW ASR1K: with diff file, cflow image included un-changed functions.

Conditions: None.

Workaround: There is no workaround.

• CSCuj00564

Symptom: The PL can't add extracted fields for new protocols using ppack

Conditions: None.

Workaround: There is no workaround.

• CSCuj68160

Symptom: iosd may crash.

Conditions: on doing rpswo with avc config.

Workaround: There is no workaround.

• CSCul38819

Symptom: Crash on ASR1K with PfR enabled.

========= Exception Tracebacks ==================Exception to IOS:Frame pointer 0x7F83892D19D0, PC = 0x2BE0D68IOS Thread backtrace:UNIX-EXT-SIGNAL: Segmentation fault(11), Process = OER Border Router

Conditions: None.

Workaround: There is no workaround.

• CSCtu21992

Symptom: MLPPPoEoA: Pending AOM ack for ATM VC create on standby FP.

Conditions: None.

Workaround: There is no workaround.

• CSCug19720

Symptom: multiple tracebacks related to fman

Conditions: None.

Workaround: There is no workaround.

• CSCul84718

Symptom: ASR1K MLPPP - " Multilink fastsend reentered " on LNS.

Conditions: None.

Workaround: There is no workaround.

• CSCun15169

Symptom: Tracebacks seen after router reload in scaled PPPoE Environment.

Conditions: None.

Workaround: There is no workaround.

• CSCtt21586

Symptom: Kingpin "cc" bandwidth maxed out at 10G

Conditions: None.

463Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 498: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCtw74124

Symptom: For a slot housing the Cisco ASR1000-SIP40, or on a Cisco ASR1002-X, the output of the show platform hardware slot <slot#> plim buffer settings detail command always shows the value of Max always as “0“ in the "Fill Status Curr/Max" filed, even when the Rx buffers have been utilized.

Conditions: When the SPA Aggregation ASIC has been flow controlled by the Network Processing Unit, the buffers inside the SPA Aggregation ASIC will start filling up.

Workaround: There is no workaround.

• CSCua55528

Symptom: %SYS-3-CPUHOG Errors, and Trace backs seen while performing config replace

Conditions: Configurations are done on both ELC ports and 1 GIGE ports.

Workaround: There is no workaround.

• CSCud47058

Symptom: Committed Memory value 96% exceeds warning level 95% on 4RU ISSU SIP upgrade.

Conditions: This symptom is observed when performing a SIP ISSU upgrade in a 4RU.

Workaround: This is just a warning message. There is no impact on the functionality or the traffic.

• CSCuh36075

Symptom: NSPR: asr1k skips booting sometimes from USB after send break is initia

Conditions: None.

Workaround: There is no workaround.

• CSCuj44771

Symptom: Queue_depth value incorrect with FRR Scaling

Conditions: Queue_depth values are not getting back to the original value(0) while shuting the interface

Workaround: There are no workaround.

• CSCul25518

Symptom: Nightster: IOS and Linux mismatched detection of media size.

Conditions: None.

Workaround: There is no workaround.

• CSCul33598

Symptom: On a dual RP system such as ASR1006 and ASR1013 standby RP polls for power supply sensors along with local environment sensors.

Conditions: An ASR router with dual RPs.

Workaround: There is no workaround.

• CSCul33952

Symptom: FTP file-transfers running very slowly when source interface is management interface due to excessive check-sum failures.

Conditions: source-interface for the ftp file-transfer is management ethernet interface.

Workaround: There is no workaround.

464Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 499: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCul43601

Symptom: ASR 1RU IOS Boot time Excessive - eUSB File System Correction.

Conditions: None.

Workaround: There is no workaround.

• CSCul68223

Symptom: We saw RP CPU Spike using ASR1001/3.7.4S from "monitor platform software process rp active".

The config is very simple(the default config, almost).

When the CPU is high, the value is about 30-40%.

Conditions: None.

Workaround: There is no workaround.

• CSCul80669

Symptom: 2KP:%IOSXE-3-PLATFORM: R0/0: kernel: bullseye_i2c_ Error seen on mcp_dev

Conditions: None.

Workaround: There is no workaround.

• CSCum27365

Symptom: "show logging persistent" command unexpectedly occurs resource leak.

Conditions: None.

Workaround: There is no workaround.

• CSCum94365

Symptom: 2KP:%IOSXE-3-PLATFORM: R0/0: kernel: bullseye_i2c_ Error seen on mcp_dev.

Conditions: None.

Workaround: There is no workaround.

• CSCum75385

Symptom: "show platform hardware qfp active datapath utilization" displays wrong data.

When high priority traffic (ip precedence 6,7) is sent, the counters against "Input Non-Priority" rows increment.

When low priority traffic (ip precedence 0,1,2,3,4,5) is sent, the counters against "Input Priority" rows increment.

Conditions: This can occur when using esp100.

Workaround: There is no workaround.

• CSCug47592

Symptom: PLIM Driver Error Messages observe while booting.

Conditions: On ASR1002-X router during booting.

Workaround: There is no workaround.

• CSCui50772

Symptom: layer2_switching CPP10 Functional Regression Failure.

Conditions: None.

465Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 500: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCum46475

Symptom: TM VC object pending in AON

BRAA04-asr#show platform software object-manager f0 pending-ack-update Update identifier: 477862718 Object identifier: 227150073 Description: ATM PVC at ATM1/2/1.1, VCD 528, FCID 55163, Hw-FCID 65535, state 0x40608, dirty 0x0 Number of retries: 0 Number of batch begin retries: 0asr#show platform software object-manager f0 object 227150073Object identifier: 227150073 Description: ATM PVC at ATM1/2/1.1, VCD 528, FCID 55163, Hw-FCID 65535, state 0x40608, dirty 0x0 Status: Pending-acknowledgement, Epoch: 0, Client data: 0x13d55170 Issued action Update identifier: 477862718, Batch identifier: 0 Batch type: unknown Action: Create

Conditions: None.

Workaround: There is no workaround.

• CSCum73826

Symptom: Change LI ucode to use a union for 64-bit access vs. and type cast

Conditions: None.

Workaround: There is no workaround.

• CSCug60382

Symptom: NTE payload type is renegotiated as asymmetric which some device cannot support.

Conditions: Mid call late invite to trigger renegotiated and the answer in SDP from initiator has different nte payload type as nte payload from offer 200(invite) in other side.

Workaround: Remove nte payload in ACK using lua script.

• CSCuh29125

Symptom: in meetme confernece calls, the call-id/tag modification for NOTIFY work for pre-INVITE NOTIFY, but it seems does not work pre-BYE NOTIFY

Conditions: There is no known condition.

Workaround: There is no workaround.

• CSCul50470

Symptom: false pool exhaustion with route-map + dynmaic nat

Conditions: atleast two nat mapping are present.

Workaround: There is no workaround.

• CSCum03118

Symptom: A complete VRF NAT unconfiguration may take a long time (up to 1 hour or more in some cases).

Conditions: VRF-aware NAT is configured on IOS-XE based platforms.

Workaround: There is no workaround.

466Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 501: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCum49324

Symptom: 200 OK is dropped.

Conditions: 2+ contacts, ip address is to be modified.

Workaround: There is no workaround.

• CSCum68074

Symptom: many packets are dropped for NatIn2out cause

Conditions: PAT, interface overload.

Workaround: PAT pool overload.

• CSCuc59324

Symptom: Errors while executing the request platform software package clean command.

Conditions: After executing subpackage ISSU upgrade procedure, the request platform software package clean command is giving errors.

Workaround: There is no workaround.

• CSCud08001

Symptom: Copying image to the standby RP takes very long time comparing to copying same image to the active RP. For the ASR1K RP2 image, the time can be 20min vs 5 min.

Conditions: None.

Workaround: There is no workaround.

• CSCul65261

Symptom: write bus access failed with fpd upgrade

Conditions: This condition is observed during FPD bundled upgrade

Workaround: There is no workaround.

• CSCui20319

Symptom: Pending issues/ack is observed on ESP

Conditions: Must meet all following conditions:

1. When port-channel vlan loadbalacing mode is enabled on Port-channel EVC with large scale of EFPs on one port-channel (8000 in this case)

2. EFPs on Port-channel are assigned to different links.

3. When the efps and port-channel are remove using one command "no int port-channel x"

4. Then the scale config and link assignment are added back by copying back the scale config

Workaround: Separate EFP removal and port-channel link removal (remove efps, the remove int port-channel) separate EFP config and port-channel link config (add EFP first, then add links to port-channel).

• CSCul37689

Symptom: With 76xx, customer associates more service instances of each access point to the same bridge domain to create a point to point local switching.

Mac-learning in the bridge domain is disabled and therefore NOT limited by number of MAC addresses used.

For asr1k is expected to implement same behavior under this feature.

Conditions: None.

467Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 502: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Workaround: There is no workaround.

• CSCum91081

Symptom: CAM not getting flushed immediately after link flap on ASR1k.

Conditions: None.

Workaround: There is no workaround.

• CSCum99115

Symptom: ELine:Def Encap-Access intf connect to PE goes downon shut service Inst.

Conditions: None.

Workaround: There is no workaround.

• CSCue91054

Symptom: ESP crashed when sending IPv6-fragmented traffic through DMVPN hub (MGRE tunnel).

Conditions: This condition occurs when sending big IPv6 packets (need to do IPv6 fragmenation after adding tunnel header) traffic through DMVPN hub. Large amout of IPv6 fragment traffic, for example, 5G on ESP20, which exceeds re-assembly performance number that is less than 2G.

Workaround: Change MTU to avoid IPv6 fragmentation.

• CSCuh82039

Symptom: mldp: multicast data leaks into other vrfs in sparse-mode on ASR1K scale.

Conditions: None.

Workaround: There is no workaround.

• CSCui43325

Symptom: Traffic blackhole for v6 SSM groups after flapping bgp loopback interface on the egress PE

Conditions: This condition is observed during BGP loopback interface flap

Workaround: Unconfigure-reconfigure the mdt default command under the v6 address-family for the vrf

• CSCul61549

Symptom: The requirement is 7.5Mpps for nightster, but the actual is only 5.78Mpps.

Conditions: None.

Workaround: There is no workaround.

• CSCul69990

Symptom: LSPVIF missing in OIF on flapping mpls mldp for v4 traffic.

Conditions: None.

Workaround: There is no workaround.

• CSCum71765

Symptom: IGMP reports for autorp group is not punted on flapping BGP address.

Conditions: None.

Workaround: There is no workaround.

• CSCul40478

468Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 503: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: Crash was seen in periodic accounting process due to the stale reference of the attribute list with AAA accounting DB (this specific attribute list is used by the periodic accounting process for sending the interim accounting records).

Conditions: The trigger is currently unclear. Will update RN after our engineering provided me the final root cause analysis.

Workaround: There is no workaround.

• CSCul55275

Symptom: Stale shim-db entries on stby rp and same database corrupted.

Conditions: None.

Workaround: There is no workaround.

• CSCum03411

Symptom: Support for extended RTP ports.

Conditions: None.

Workaround: There is no workaround.

• CSCuj19293

Symptom: Bindings are present after inconfiguring Static NAT mappings

Conditions: This symptom is observed when static NAT is mapped with route-map

Workaround: There are no workaround.

• CSCul48593

Symptom: Active FP crashed due to stuck threads @ipv4_nat_bpa_free_port.

Conditions: None.

Workaround: There is no workaround.

• CSCum04528

Symptom: An ASR 1002-X router might crash and reload writing a core file in the process.

Conditions: ASR1002-X running NAT with ALG traffic

Workaround: There is no workaround.

• CSCun12095

Symptom: Pool exhaustion msg with 0 trans.

Conditions: unconfiguring 64 pools and re-adding 34 pools and sending traffic.

Workaround: There is no workaround.

• CSCum40972

Symptom: XE3.11 EoGRE - GTPv2 does not always authenticate session.t

Conditions: None.

Workaround: There is no workaround.

• CSCts56332

Symptom: ipsec client update platform_db items for Kingpin/FP80/FP160/Nightster.

Conditions: None.

Workaround: There is no workaround.

469Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 504: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCug19588

Symptom: IKEv2 TPS performance degradation over time.

Conditions:This occurs in the lab under extreme test conditions with traffic running during session bring-up.

Workaround: Reduce traffic and or reduce session bring-up rate.

• CSCui53563

Symptom: Crypto-Engine(h/w encryption) is inactive

Conditions: This condition is observed during rp_switchover the HUB and pass the traffic to bringup the tunnels UP

Workaround: There is no workaround.

• CSCuj55363

Symptom: In the lisp getVpn solution test, when the getvpn profile is applied in physical interface in the data path flow (such as interface between GM1 to core), the traffic got dropped with qfp error of "IpsecIkeIndicate"/"OUT_V4_PKT_HIT_IKE_START_SP" when the getvpn profile is applied to the LISP0 interface, Encrypted traffic flows in the LISP setup properly

Conditions: getvpn profile is applied to the physical interface instead of lisp interface.

Workaround: Apply getvpn profile in lisp interface.

• CSCuj67691

Symptom: Seeing performance drop with 82bytes for IPSEC dVTI feature for latest XE3.11 & mcp_dev images when compared to RLS3.8.0 & RLS3.10.0.

Conditions: None.

Workaround: There is no workaround.

• CSCul52578

Symptom: IPSec does not work properly for 1ru platform, de-capsulation feature is disabled

Conditions: None.

Workaround: There is no workaround.

• CSCum08112

Symptom: After IPsec tunnel flapping, ASR1k can't send packets over the tunnel though the tunnel seems to be established correctly.

When you encounter this problem, you can see the following syslog on the other side of IPsec.

%IOSXE-3-PLATFORM: SIP0: cpp_cp: QFP:0.0 Thread:147 TS:00000047580322122362 %IPSEC-3-HMAC_ERROR: IPSec SA receives HMAC error, DP Handle 7, src_addr 1.1.1.1, dest_addr 2.2.2.2, SPI 0x9aa8341e

Conditions: The "tunnel destination" and "tunnel source" are loopback interfaces.

And ASR1k has a backup route for the tunnel destination.

And the MTU of the outgoing interface of the backup route should be different from the MTU of outgoing interface of primary route.

In this situation, flapping a physical interface that is outgoing interface of an IPsec tunnel causes the symptom above.

Workaround: Making the MTU of outgoing interfaces of both primary and backup routes same can avoid this problem.

470Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 505: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Clearing SA on either end of IPsec can recover the situation.

• CSCum13378

Symptom: An ASR1K configured as an IPSec endpoint may fail to reassemble fragmented ESP packets . During this failure state, the router will also log %ATTN-3-SYNC_TIMEOUT errors.

Conditions: UDP packet of a specific size received on the clear side of the ASR is known to trigger this issue.

Workaround: Use software crypto for large packets received on the clear side by configuring post-frag encryption - crypto ipsec fragmentation after-encryption. This will prevent the ASR from getting into the ATTN_SYNC state.

• CSCum99823

Symptom: ASR1001 router FP crashed as DMVPN HUB.

Conditions: Crash happens randomly.

Workaround: There is no workaround.

• CSCun16532

Symptom: SSLVPN:disconnect from client not working

Conditions: None.

Workaround: There is no workaround.

• CSCun16538

Symptom: SSLVPN:ssl close not notified to control plane.

Conditions: None.

Workaround: There is no workaround.

• CSCue59450

Symptom: IOS XE Watchdog message seen along with RP and SIP crash

Conditions: This symptom is observed when continuous ARP request on the interface having VRF Receive configured on it.

Workaround: There is no workaround.

• CSCum81699

Symptom: ASR1000 with low memory on both the RP and ESP

Memory (kB)Slot Status Total Used (Pct) Free (Pct) Committed (Pct) RP0 Critical 8098040 7262040 (90%) 836000 (10%) 7964632 (98%)ESP0 Warning 2009452 1964836 (98%) 44616 ( 2%) 1886368 (94%)SIP0 Healthy 449328 338084 (75%) 111244 (25%) 358780 (80%)

Conditions: ASR1000 running 3.7.1S.

Workaround: There is no workaround.

• CSCuh83086

Symptom: XE311 RP crashes @%SCHED-2-NOTWATCHTIMER: managed timer not being watche.

Conditions: None.

Workaround: There is no workaround.

• CSCud77672

471Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 506: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: Add per subdevice IPC queues for FP80/FP160.

Conditions: None.

Workaround: There is no workaround.

• CSCul27478

Symptom: Time sync problem between QFP and IOS.

This out of sync appears at some platforms and causes complete breakage of punt performance monitors.

Conditions: asr1002 RP1 ESP5 and asr1004 RP2 ESP20 after system reload

Workaround: ntp server configuration is must.

delay after reload was done for a system 5-40 mins.

• CSCul59422

Symptom: Pending objects seen on ATM on booting mcp_dev image.

Conditions: None.

Workaround: There is no workaround.

• CSCum49213

Symptom: ESP crash

Conditions: None.

Workaround: Use debug platform hardware qfp active datapath trace packet for short periods of time.

• CSCum93027

Symptom: ASR1k running IOSXE 3.11.0 and above crashes under the following conditions.

Conditions: Do the following in the same order:

1. Configure a sub-interface with IPv6

2. Configure OSPFv3 on the sub-interface.

3. Configure IPSec auth for OSPFv3 on the sub-interface.

4. Shutdown the sub-interface.

5. Remove the sub-interface.

Workaround: There is no workaround.

• CSCun13772

Symptom: CPUHOG messages and watchdog timeout crashes are observed on an ASR1000 series router running DMVPN.

Conditions: This has been observed on a router with a very large NHRP table (10-20k individual entries) with a very high number (thousands) of child entries per parent entry.

Workaround: Reduce the number of child entries per parent entry through the use of supernetting.

• CSCum81041

Symptom: One way audio incoming calls redirected through CVP.

Conditions: None.

Workaround: There is no workaround.

• CSCum90509

472Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 507: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: No RTP Connections for RSVP Features in XE3.7 image

Conditions: None.

Workaround: There is no workaround.

• CSCun02605

Symptom: ASR crashes ith no known trigger in CCSIP_SPI_CONTROL process

Conditions: It is an error scenario where crash occurs when router is not able to send ACK for 200 OK where branch parameters differ.

Workaround: There is no workaround.

• CSCul46792

Symptom: VC's remain down on ISSU from pre XE3.12 to XE3.12

Conditions: VPLS BGP Signalling is configured. VC's are established in the Active RP

Workaround: There is no workaround.

• CSCun09149

Symptom: PW's down on ISSU from XE3.11/XE3.12 downgrade to XE3.10.

Conditions: LDP Signalling with LDP NSR enabled.

Workaround: Disable NSR during ISSU downgrade.

• CSCun10276

Symptom: VC's remain down on ISSU from Xe312 -- > XE311.

Conditions: Issue seen after ISSU runversion.

Workaround: There is no workaround.

• CSCuj94283

Symptom: 2048K clock (unframed)mode fails to come up on MN_BITS of Nightster if we have 2 src on MN SPA.

Conditions: 2048k + synce source config must be present on 1ng.

Workaround: There is no workaround.

• CSCuc82799

Symptom: MDR:A PLIM driver has critical error TXPA1 - txmcFifoEopMapUbe

Conditions: None.

Workaround: There is no workaround.

• CSCul29434

Symptom: ELC MDR: %CWAN_HA-4-IFEVENT_BULKSYNCFAIL: receive failed ifevent: 10 err

Conditions: This condition is observed during Consolidated MDR upgrade

Workaround: There is no workaround.

• CSCum86116

Symptom: IKEv2 static routes are present in the output of "show crypto ikev2 sa remote ... detail" but not in the IP routing table.

Conditions: In some cases with static tunnels, when a new IKEv2 SA is established, after a connectivity issue, the IKEv2 static routes are not present in the routing table.

Workaround: In some cases the customer may be able to manually add static routes.

473Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 508: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCua17796

Symptom: XE3.8: IOSXE-WATCHDOG: Process = Licensing Auto Update Process.

Conditions: None.

Workaround: There is no workaround.

• CSCum40181

Symptom: Router crash is seen while brining up 15k to 29K PPP ATM sessions using Profile 1b config.

Conditions: IOS image crash is seen on session flap, specifically when ANCP sessions are brought up. IOS image may also crash after HA Switch Test, and bringing up of ANCP Sessions

Workaround: There is no workaround.

• CSCue94537

Symptom: Tail drops are seen on FP 160 with HP traffic on ASR1000-2T 20X1GE Ethernet Line card.

Conditions: When ASR1000-2T 20X1GE Ethernet Line card interfaces are configured with Service-policy to classify the egress Traffic and sending 40gbps of bi-directional traffic causes Tail drop on the QFP

Workaround: Configure the Service-policy with larger q-limits. Policy-map test class prec1 priority level 1 q-limit 5000 packet More Info:

• CSCul07137

Symptom: IFCFG timeouts will happen on Reload or Shut/No shut of Scaled Vlan Port.

Conditions: Ethernet Line card with Scale QinQ having fixed outer vlan and range of VLAN configuration on reload or Shut/No shut, IFCFG Timeouts are observed.

Workaround: There is no workaround.

• CSCum52407

Symptom: $$IGNORE Code changes made to run on non-secureboot ARGUS do not work on Secureboot P2 cards.

Conditions: $$IGNORE modify existing rommon so that same code can be compiled to run on both SB and non-SB cards through a compile-time switch.

Workaround: There is no workaround.

• CSCuh60925

Symptom: IOSd will crash with the introduction of the two punt path streams with 321 and 1500 byte packets.

Conditions: Two punt path streams with 321 and 1500 byte packets and the policer set to the max. allowed of 146Kpps.

Workaround: Do not allow high traffic rates on the punt path.

• CSCul49852

Symptom: A router might see PPPoE-sessions in status WAITING_FOR_STATS (or WT_ST).

Conditions: The system is configured as BRAS aggregating PPPoEoA or -oE-sessions. The issue was seen for just specific users or possibly because of using a specific profile or service like ShellMaps and Radius.

Workaround: There is no workaround.

474Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 509: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCum00444

Symptom: Memory leaks after churning sessions (unclassified mac).

Conditions: Error condition in case of second stack (ipv4/ipv6)coming.Happening during session churn.

Workaround: There is no workaround.

• CSCtx72973

Symptom: Config-sync failiure is seen when unconfiguring the crypto gdoi group.

Conditions: Seen on HA setup.

Workaround: There is no workaround.

• CSCul14769

Symptom: SSH ver changed from 2 to 1 during upgrade/downgrade [3.4.0aS to 3.7.3]

Conditions: None.

Workaround: There is no workaround.

• CSCun00236

Symptom: MST TCNs are not sent over a port-channel access interface after an AED change.

Conditions: Dual-home AEDs at a site with port-channels used as the access links. The join or overlay interface goes down to cause an AED change.

Workaround: Use an EEM script to bounce the access interfaces (port-channels). This should cause the access switches to flush their MAC tables and redirect traffic to the new AED.

• CSCun05927

Symptom: Overlay with join interface in VRF does not come up and gives "overlay DIS not elected" message.

Conditions: Using ASR1002-X and ASR1001 there is a single physical interface to the SP. There are 2 dot1Q sub interfaces off the physical interface with one of the sub interfaces in a VRF and the other in the global table. Both sub interfaces are configured as join interfaces, each with it's own overlay interface.

Workaround: There is no workaround.

• CSCul27192

Symptom: Few thousand sessions are not synced to standby after session churn.

Conditions: None.

Workaround: There is no workaround.

• CSCum09359

Symptom: Few sessions remain stuck in "ack-wait" state after overnight churn test.

Conditions: None.

Workaround: There is no workaround.

• CSCul24025

Symptom: ASR1K crash @__be_slaComponentProcessEvent when unconfigure ip sla udp-jitter

Conditions: configure 4000 CPP timestamp IP SLA udp-jitter and then unconfig all

Workaround: There is no workaround.

• CSCtu47871

475Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 510: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

Symptom: ASR crashes without crashinfo and last reload reason as watchdog.

Conditions: Happened once and not been reproducible.

Workaround: There is no workaround.

• CSCuj45924

Symptom: Kingpin : intermittent network boot slowdown

Conditions: None.

Workaround: There is no workaround.

• CSCuj50118

Symptom: standby RP crash @mfib_backwalk_adj_notify on doing CC reload

Conditions: None.

Workaround: There is no workaround.

• CSCuj82421

Symptom: the board will not be shutdown expectedly

Conditions: configure "facility-alarm critical exceed-action shutdown". A sensor in remote FRU exceeded the shutdown temp.

Workaround: shutdown the remote board manually.

• CSCun06172

Symptom: Non unique region names used for DSO.

Conditions: None.

Workaround: There is no workaround.

• CSCug91498

Symptom: BFD session flap.

Conditions: When large programming message send down to CPP.

Workaround: There is no workaround.

• CSCuj96470

Symptom: On performing SPA OIR with configuration of Unicast/Multicast/Broadcast storm control on 32k EFPs,fman_fp core was observed

Conditions: This issue is seen on FP100 card.

Workaround: Stop the traffic before performing a SPA OIR.

• CSCuf82128

Symptom: ASR-CUBE: Crash observed with DSMP.

Conditions: Load scenario issue is observed.

Workaround: There is no workaround.

• CSCun08855

Symptom: ASR router crash with iosd punting packet to port-channel with ERSPAN configured on the router.

Conditions: port-channel and ERSPAN configured on the router.

Workaround: There is no workaround.

476Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 511: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11.1S

• CSCuc23941

Symptom: Our SIP to H323 calls, which are strictly G.729 w/o Annex B, ceased working following the ASR1006-based SBC upgrade from 3.2.1.S.151-1.S1 to 3.4.2.S.151-3.S2. Looks like the SBC now offers G.729wAnnexB at the H323 side, which is configured to reject anything but G.729 w/o Annex B. The calls resume working upon rollback to the old code.

When offering G.729 at the H323 side the SBC must not add AnnexB unless it is being explicitly requested by the caller or as per SBC config.

Conditions: Permanent.

Workaround: There is no workaround.

• CSCum19739

Symptom: fp crash with ip nat cgn mode enable.

Conditions: config NAT pool overload , start 300cps sip traffic including NAT and non-NAT, Enable cgn mode with "ip nat setting mode cgn"

Workaround: There is no workaround.

• CSCum73773

Symptom: QFP crash

Conditions: remove ip nat setting mode and run "sh pl hard qfp ac statistics drop".

Workaround: There is no workaround.

• CSCun04417

Symptom: GTP U packet forwarding capability is downgraded.

Conditions: 1 firewall session.

Workaround: There is no workaround.

• CSCuj89036

Symptom: IOSd crashes following an OIR of an eToken.

Conditions: OIR activity on either USB port of a single eToken.

Workaround: Do not OIR an eToken.

• CSCun07772

Symptom: Router crash

Conditions: Deleting subcriber's session in Attempting state by COA script below:

#!/bin/shCISCO=$1 # brasSessionID=$2CoaSecret='secret'#clear ISG session on BRAS/bin/echo "User-Name=\"undef\",Acct-Session-Id=\"$SessionID\",cisco-avpair=\"subscriber:command=account-logoff\"" | /usr/bin/radclient -x $CISCO:1700 coa $CoaSecret

Workaround: don't use COA script for deleting subscriber's session.

• CSCul48126

Symptom: Disambiguate address in gate keeper cache.

Conditions: None.

Workaround: There is no workaround.

477Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 512: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

This section contains the following topics:

• Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S, page 478

• Open Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S, page 541

Resolved Caveats—Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

This section documents the resolved issues in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S.

• CSCtw93694

Symptom: No calls shown in show call active voice brief, however many active calls may be running.

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCtz13023

Symptom: A crash occurs during registration in SRST mode.

Conditions: This symptom occurs during registration in SRST mode.

Workaround: This issue is fixed and committed.

• CSCtz14973

Symptom: When tunnel source pivoting is used, based on track object states with FlexVPN client, it does not change tunnel source when there is change in track object state. Instead, it only changes tunnel source subsequent due to a DPD failure. This can lead to potential one-way traffic and traffic blackholing from spoke to hub.

Conditions: This symptom occurs when tunnel sources are dynamically set using object tracking feature.

Workaround:

– Use IKE routes using config-set.

– Use RPF (reverse path forwarding) check on the spoke outside interfaces, so that when traffic arrives from a hub on a interface, and there is no route, it will get dropped, thus DPD on spoke will delete existing IKE SA and cause.

– Use periodic IKE DPD (dead peer detection) on spoke.

– Enable IKE DPD on Hub.

• CSCtz76181

Symptom: ASR1001 or ASR1002 may report the following message after booting IOS

%IOSXEBOOT-1-BOOTFLASH_FAILED_MISSING: (rp/0): Required Bootflash disk failed or missing, reloading system

478Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 513: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Conditions: This Error message is due to the internal eUSB memory device rarely not responding to the initial accesses. A reboot will address the issue.

Workaround: Rebooting the system will clear the condition.

• CSCua73834

Symptom: IOS CA issues incorrect rollover identity certificates to its clients; the rollover certificates issued will have an expiry date corresponding to the end-date of the currently active (and soon to expire) CA certificate. Thus, the rollover identity certificate will not be valid after the CA rollover takes place.

Conditions: The symptom is observed only if the clients have sent the rollover certificate request via an IOS RA certificate server.

Workaround: There is no workaround.

• CSCub14611

Symptom: %IOSXE-3-PLATFORM: R0/0: kernel: physmap-flash.0: Chip not ready

Conditions: This symptom occurs when performing redundancy force-switchover on ASR1006 (RP1).

Workaround: Reload ASR1006.

• CSCuc09667

Symptom: Router experiences crashes due to SIP due to a freed pointer in memory.

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCuc11809

Symptom: The number if IPSec SAs on the box keeps increasing.

Conditions: This symptom occurs when IPSec eekeys occurs due to volume lifetime exhaustion.

Workaround: Turn off the volume based rekey.

• CSCuc25582

Symptom: SIP secure phones drop calls when they Hold and Resume a call to a non-secure phone.

Conditions:

– CONDITION I (tested in lab) 8945 SIP Phone Reproduce steps:

3 phone A,B,C register to secure-SRST sip phone A B, sccp phone C. A,B in encrypted mode, phone C in non-secure mode. A call B, establish a secure call. B press transfer to C. After B and C establish a non-secure call, B press transfer. then B toast display call transfered successfully!, but A and C do not establish a call. phone A and C should establish a non-secure call.

– CONDITION II (Customer scenario) Secure SRST. SIP Phones registered to the router with secure and non-secure profiles. Call Flow:

SIP Phone A (secure) ---> SIP Phone B (non-secure). A pressed Hold, Resume. SIP Phone A (secure) ---> SIP Phone C (secure) -----> Transfers call to SIP Phone B (secure). Phone A is not asked by router to stop transmitting SRTP and switch to RTP. Problem has been observed on 6941, 7962 and 8945 SIP phones.

Workaround: There is no workaround.

• CSCuc25995

479Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 514: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Symptoms: A router unexpectedly reboots and a crashinfo file is generated. The crashinfo file contains an error similar to the following:

%ALIGN-1-FATAL: Illegal access to a low address 04:52:23 UTC Wed Sep 19 2012 addr=0x4, pc=0x26309630z , ra=0x26309614z , sp=0x3121BC58

Conditions: This symptom occurs when IPsec is used. More precise conditions are not known at this time.

Workaround: There is no workaround.

• CSCuc28077

Symptom: ASR router drops IPSEC packets that are larger than the MTU and no error message is logged. Following is the error message:

%CRYPTO-4-RCVD_PKT_INV_SPI

Error messages were available in earlier releases, but in the newer XE 3S releases no logs are available for troubleshooting even during drops.

Conditions: Router A and router B act as CE access routers in an MPLS/VPN network. The command ipsec fragmentation after-encryption is enabled on router A, but platform ipsec reassemble transit is not enabled on the peer router B.

Workaround: There is no workaround.

• CSCuc29179

Symptom: ASR1k filters out the ARP requests with its own src address. This leads to ping failure between two interfaces which belong to different vrf and own same IP subnet; vrf v1 1.0.0.1/24 and vrf v2 1.0.0.2/24, for instance.

Conditions: gig0/0/0 connected b2b to another interface on same router (with VRF configured on atleast one of the interfaces).

Workaround: Configure some mac on gig0/0/0 and then unconfigure the mac.

• CSCuc31339

Symptom: Console error message similar to the following:

%ASR1000_INFRA-3-EOBC_SOCK: R0/0: linux_iosd-image: Socket event for EO0, fd 16, failed to send 1472 bytes; Resource temporarily unavailable.

Conditions: This symptom is observed when large number of features are configured.

Workaround: There is no workaround.

• CSCuc44571

Symptom: Router crash related to DNS and VRF

Conditions: This symptom is observed in ASR running IOS XE image 03.07.03.S

Workaround: There is no workaround.

• CSCuc58220

Symptom: CME not pushing agent stats fields to tftp.(logged in and out times)

Conditions: This symptom is observed when Benelli specific fields not getting pushed.

Workaround: There is no workaround.

• CSCud30442

Symptoms: On ASR1002 system, show platform hardware crypto-device context packet count does not show correctly.

480Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 515: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Workaround: There is no workaround.

• CSCud33882

Symptom: SIP phones not registering to SRST when number cli with wild card configured under voice register pool.

Conditions: This symptom occurs when you configure number cli with wild card configuration under voice register pool. number 1 900....

Workaround: Create separate pools for all the phones without wild cards.

• CSCud68778

Symptom: Reset reason is not correctly displayed for some of the IOS-XE reloads.

Conditions: This symptom is observed when IOS-XE reloads due to punt path keepalive failure.

Workaround: There is no workaround.

• CSCud69110

Symptom: IKE_CP_ATTR_SPLIT_EXCLUDE support is needed on IOS side for anyconnect client.

Conditions: This symptom is observed when you include local LAN.

Workaround: There is no workaround.

• CSCud69349

Symptom: Ipsec-MIBs:- cikeTunHistPeerLocalValue and cikeTunHistPeerRemoteValue does not return an IP address

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCud87915

Symptom: EzVPN client cannot access the Internet over the VPN. Access to Hub internal resources works fine. The ZBF firewall on the Hub drops the encrypted ESP(udp) traffic from self to out containing reply from the host on the Internet. Log on the hub:

*Dec 28 15:34:51.189: %FW-6-DROP_PKT: Dropping udp session 8.8.8.2:0 8.8.8.1:53000 on zone-pair self-out class class-default due to DROP action found in policy-map with ip ident 0 source IP and port is incorrect.

Conditions: EzVPN client behind NAT and source port is PATed - is not udp 4500. EzVPN client reaching the Internet with u-turn on the Hub. Hub has ZBF policy from self to outside permitting VPN traffic. Hub has CEF enabled.

Workaround: Remove the ZBF policy from self to outside.

• CSCue14418

Symptom: Only single L2TP IPSEC vpn client can connect to vpn when they are behind PAT device even though NAT DEMUX is configured.

Conditions: VPN clients behind PAT device.

Workaround: There is no workaround.

• CSCue18003

Symptom: Packets drops occur when performing a ping-from an ASR1001 console with packets of large size (i.e. several kilobytes).

481Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 516: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Conditions: This issue is specific to the ASR1001 and requires a burst of data from the Control Plane to the Forwarding Plane such that internal hardware buffers are saturated. Normal processing will continue, however there will be drops when the hardware buffer is full.

Workaround: The is no workaround.

• CSCue22769

Symptom: The user should not be allowed to reconfigure an existing NAT64 dynamic mapping if the mapping has active translations.

Conditions: Issue occurs when modifying a dynamic NAT64 mapping with active translations to an overload NAT64 mapping.

Workaround: Clear the translations before modifying the mapping, or delete the mapping with a forced option before configuring overload.

• CSCue37000

Symptom: We saw again GTP-U drops for communication that should not have been dropped. Swisscom agrees that this might be related to some timers and pending PDP sessions that need to be terminated. Since local tests with mobile devices were all successful, Swisscom wants and needs to go for 24 h test to see if the GTP-U drops really lead to a service impact for mobile users. To document this issue, a SR was opened: SR 624629207 ASR1K? Release 3.7.2 -GTP?U drops due to missing pinholes All log files and a PCAP file are attached to that SR.

Conditions: There are no known conditions.

Workaround: There is no workaround.

• CSCue39456

Symptom: There is no CLI options and flags for enabling/disabling the EZchip provided debug levels.

Conditions: Popinac ELC.

Workaround: There is no workaround.

• CSCue40120

Symptom: Small packet performance for multicast traffic has unexpected dip with 03.07.01S on ESP40.

Conditions: A change made while optimizing performance for ESP80 and ESP160 was to use the internal recycle queue for the root of the replication tree instead of the leaves recycle queue used for all other nodes. Unknowingly, this resulted in a big performance impact on the ESP40.

Workaround: Small packet performance can be returned to acceptable levels by disabling MLRE with the configuration command platform multicast lre off. The downside of disabling MLRE is that large packet performance will be reduced by almost half for large packets.

• CSCue43682

Symptom: Transcoding sessions are intermittently becoming stuck after call is cleared.

Conditions: When transcoding configured in DSPfarm.

Workaround: Reload Gateway F.

• CSCue48419

482Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 517: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Symptoms: The Cisco AS5350 stops processing calls on PRI with a signaling backhaul from PGW. In the packet trace, there is no q931message from PGW. Further analysis shows that as5350 sends a q_hold (0x5)message in BSM, causing peer (PGW) to stop sending signaling traffic. However, there is no BSM_resume message or BSM_reset sent after it. Hence, PGW is stuck in this condition. There was earlier defect for CSCts75818 with similar symptoms in U-state.

Conditions: This symptom is observed due to some RUDP timing issues that cause BSM session switchover.

Workaround: Reload the Cisco AS5350 (but only when CU notices the outage). Also, shutting both Ethernet interfaces may help, but this workaround has not been tested.

• CSCue50255

Symptom: ASR1K ucode crash with interrupt cause REM_REM_MISC_ERR_LEAF_INT_INT_REM_POP_REQ_TO_EMPTY_SCHED

Conditions: Issue can be seen on when flapping a Multilink PPP or MLFR interfaces. Timing window to hit this issue is very small so not a common occurrence on a bundle flap.

Workaround: There is no workaround.

• CSCue50353

Symptom: Call failure / disconnect during Call hold seen after SSO.

Conditions: When call hold is with c-line=0.0.0.0 in flow around mode.

Workaround: There is no workaround.

• CSCue52278

RNE Enclosure Symptom: ASR cube-ent failover happens under heavy load conditions.

Conditions: This issue is caused due to glare condition while destructing an established call under heavy load.

Workaround: There is no workaround.

• CSCue52655

Symptom: No Video legs out put for DO-DO BWcac with multicodec call.

Conditions: No Video legs out put for DO-DO BWcac with multicodec call.

Workaround: There is no workaround.

• CSCue60469

Symptom: Asr1001 Series router throws error messages when a RP (IOS) switch over is done.

Conditions: Asr1001 Series router throws error messages when a RP (IOS) switch over is done along with traffic.

Workaround: There is no workaround.

• CSCue62227

Symptom: SIP PSTN gateway may delay response to BYE message at end of a T.38 call.

Conditions: Incoming call to SIP gateway goes out a PRI Call successfully switches no T.38 BYE is received by SIP gateway. 200 OK response is delayed by a few seconds.

Workaround: There is no workaround.

• CSCue68380

Symptom: CUBE fails to send options-keepalive after dnslookup.

483Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 518: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Conditions: Sending out Options works fine when Dns is configured to IPv4. When Dns is configured to resolve to IPv6 address, Dial-peer is Busied Out with out sending the Options.

Workaround: Disabling Options Keepalive.

• CSCue69906

Symptom: Video calls are failing with improper call legs.

Conditions: After doing test case specific configurations, basic call is done. while checking the call legs after call is connected improper call-legs are seen on CUBE3.

Workaround: There is no workaround.

• CSCue75072

Symptom: Consult transfer with remote optional-mandatory strength fails as SDP precondition does not match.

Conditions: This happens only for consult transfer but not for blind transfer.

Workaround: There is no workaround.

• CSCue75395

Symptom: It is very difficult to debug empty video recordings.

Conditions: For all video recording calls.

Workaround: Do packet capture.

• CSCue78517

Symptom: mem-leaks found. with eap authentication.

Conditions: flexvpn client using eap authentication. mem-leak at every clint connect

Workaround: There is no workaround.

• CSCue80506

Symptom: Traceback at DMVPN Spoke registration, DMVPN QoS policy not deployed to datapath component.

Conditions: When there is a routing issue such that the ASR1k acting as the DMVPN hub can receive spoke registrations but does not have a valid route to the spoke (i.e. the spoke's forwarding interface is Null0) and the spoke's QoS configuration include a queuing feature, then the QoS policy will fail to get applied and the ESP will be in a state that requires it to be reloaded to recover from this.

Workaround: There is no workaround, but the following actions can get the router operational again.

1. Correct routing issue and reload the ESP and/or

2. Remove the QoS queuing feature and reload the ESP

• CSCue83683

Symptom: The Agent Greeting is not played out.

Conditions: This symptom is observed with the Agent Greeting Call Flow using CVP.

Workaround: There is no workaround.

• CSCue85737

Symptoms: ASR with PKI certificate may crash when issuing show crypto pki certificate command.

484Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 519: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Conditions: This symptom is observed when the show crypto pki certificate command is issued on ASR with PKI certificate.

Workaround: There is no workaround.

• CSCue86166

Symptom: The interrupt infrastructure is in place; the user space handling of interrupt delivery to Aggregation ASIC userspace driver code is not being done correctly.

Conditions: This fixes the user space handling of interrupt delivery to Aggregation ASIC user space driver code.

Workaround: There is no workaround.

• CSCue86848

Symptom: After execution of 'show platform hardware qfp active feature mma client policy-map name <name> detail' wrong number of classes were presented in detailed view.

Conditions: FAll tools avc config.

Workaround: There is no workaround.

• CSCue89779

Symptom: A FlexVPN spoke configured with an inside VRF and front-door VRF may have problems with spoke-to-spoke tunnels if they are not the same. During tunnel negotiation, two Virtual-access interfaces are created (while only one is needed), the one in excess may fail to cleanup correctly. As a result, the routes created by NHRP process may lead to loss of traffic, or traffic may continue to flow through the Hub.

Conditions: This symptom occurs when the VRF used on the overlay (IVRF) and the VRF used on the transport (FVRF) are not the same.

Workaround: There is no workaround.

• CSCue94576

Symptom: Both outgoing RTP streams are dropped on the router interface. When looking into output, both incoming and outgoing RTP streams are clearly visible, however packet capture from the interface contains only two incoming RTP streams. What is more, router console presents the following error message:

IP-3-LOOPPAK Looping packet detected and dropped - src=172.22.233.65, dst=172.22.233.76, hl=20, tl=200, prot=17, sport=16390, dport=20832 in=GigabitEthernet0/1, nexthop=172.22.233.76, out=GigabitEthernet0/1 options=none -Process= "IP Input", ipl= 0, pid= 126 -Traceback= 21127EC4z 21129118z 2112A560z 2112AA38z 2112AFA4z 21110178z 2112C580z 21110918z 21110B58z 21110C38z 21110E50z 23C1ACA4z 23C1AC88z

Conditions: Defect was encountered in 2900 series routers with IOS version: 15.2-3.T2 when using no ip cef command.

Workaround: Issue the ip cef command.

• CSCue94694

Symptom: cpp_cp_svr crash @ cpp_ifm_if_delete_cntx is seen.

Conditions: While removing PVCs and invalid interfaces.

Workaround: There is no workaround.

• CSCue98604

Symptom: A Cisco 3845 that is running Cisco IOS Release 15.1(4)M2 may have a processor pool memory leak in CCSIP_SPI_CONTROL.

485Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 520: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Conditions: Seen while using DNS as target destination and DNS resolution failure occurs. Sample

config: sip-ua retry invite <snip> timers expires <snip> timers buffer-invite <snip> sip-server dns:<hostname removed>

reason-header override Leak can be seen in normal call flow if DNS configured and DNS resolution fails because of insufficient bandwidth, not able to create SDP or container.

Workaround: There is no workaround.

• CSCue99331

Symptom: if mnc code is 001, aic can not match it.

Conditions: match mcc or mnc.

Workaround: There is no workaround.

• CSCuf02551

Symptoms: TRP Sessions not found after making Basic SRTP Call.

Conditions: Router loaded with c2951-universalk9-mz.SSA.153-1.4.T.

Workaround: There is no workaround.

• CSCuf06495

Symptom: GDOI version mismatch on KS1.

Conditions: Script executing show logging | inc CTS-SGT on secp23-11 (KS1). And showing the GDOI ver as 0x13EBE8B0 but instead of this it should show 0x1000002.

Workaround: There is no workaround.

• CSCuf09056

Symptom: The traffic may not be shaped correctly resulting in more traffic to leak through or the router crashes when model 3/4 subscriber policy is applied.

Conditions: The model 3 and 4 hierarchy is built incorrectly on ESP-100/200 and ASR1002X when the subscriber policy is added after the main interface is already active.

Workaround: There is no workaround.

• CSCuf09938

Symptom: LSC installation fails if the RSA Key pair size associated with CAPF server is larger than 512 Bytes.

Conditions: Secure CME implementation. Sample config:

! crypto pki trustpoint capf enrollment url http://<ip-addr>:<port-num> serial-number revocation-check none rsakeypair capf 1024 1024 ! capf-server auth-mode null-string cert-enroll-trustpoint <trust-point> trustpoint-label capf source-addr <ip-addr> !

Workaround: Use 512 Bytes RSA key size crypto pki trustpoint capf enrollment url http://<ip-addr>:<port-num> serial-number revocation-check none rsakeypair capf 512 512

• CSCuf16514

Symptom: Only one call leg is shown at stand by router instead of 2 call legs.

Conditions: Issue is seen in HA set up on stand by router for fax call scenario between H323 <---> SIP.

Workaround: There is no workaround.

• CSCuf25027

486Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 521: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Symptom: Substantial drop of performance. High latency and packets drops.

Conditions: Router is configured with full AVC config (NBAR,ART,QoS) and Ipsec. This issue will be seen with high traffic (more than 500mbps). Packet drops can be verified by issuing this command.

show platform hardware qfp active statistics drop clear ------------------------------------------------------------------------- Global Drop Stats Packets Octets ------------------------------------------------------------------------- IpsecOutput 3250 3242721 Ipv4NoAdj 797 1056357 PuntErr 1 276

Workaround: Disable AVC from the interface.

• CSCuf35287

Symptom: Routes are not routed via the gateway being configured.

Conditions: Routes are not routed via the gateway being configured.

Conditions: There is no workaround.

• CSCuf39344

Symptom: In SBC-B2B, after no attach/attach an adjacency, calls rejected with 503 Service Unavailable.

Conditions:

– config vrf001 on BOX1(ACTIVE) then on BOX2(STANDBY).

– config adjacency's vrf&signaling-address and media-address ... vrf ... both refer to vrf001.

– switch-over.

– no attach/attach adjacency on BOX2(ACTIVE).

– later calls rejected with 503 Service Unavailable.

Workaround: Always add or change vrf related SBC config on the same box.

• CSCuf47227

Symptom: When the configuration option file verify auto is enabled and a local copy operation is done for a file that does not contain a signature, e.g. a log file or configuration back, the copy will fail.

Conditions: file verify auto is enabled in running configuration.

Workaround: Use copy /noverify or disable file verify auto.

• CSCuf49959

Symptom: A router may crash when the tunnel interface is flapped or while booting the router with VPN configs.

Conditions: The crash occurs in a VPN enabled scenario with either sessions being active and a shut/no shut is issued on the interface or the sessions coming up on the box after a reload.

Workaround: There is no workaround.

• CSCuf52756

Symptom:

%IOSXE_RP_SPA-4-IFCFG_CMD_TIMEOUT: Interface configuration command.

Conditions: Observed tracebacks and traffic drop during MDR upgrade.

Workaround: There is no workaround.

487Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 522: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

• CSCuf64333

Symptom: DND does not show any status update unless you are in a hunt group.

Conditions: 6945 phone, running 9.3.3.2 and some earlier loads.

Workaround: There is no workaround.

• CSCuf73628

Symptom: Trace back is seen when user portion is missing in Req-URI or To Header URI.

Conditions: This symptom is observed in a basic call.

Workaround: There is no workaround.

• CSCuf73889

Symptom: Copper SFPs always show Half-Duplex in show interface.

Conditions: Basic copper SFP bringup.

Workaround: There is no workaround.

• CSCuf74026

Symptom: When the ipsec lifetime is changed globally it does not take effect on the ipsec session.

Conditions: Any ipsec implementation with ipsec profile.

Workaround: Unconfigure the lifetime from the ipsec profile.

• CSCuf74266

Symptom: ASR-CUBE: Crash observed with DSMP.

Conditions: Load scenario issue is observed.

Workaround: There is no workaround.

• CSCuf78556

Symptom: UPDATE is not being forwarded to UAC and it is being responded with 200OK to UAS. This issue is seen when UPDATE is received from UAS, when 18X transaction is still pending on UAC side.

Conditions: 18x response is transmitted reliably on both call-legs.

Workaround: When UPDATE is received from UAS after some delay (i.e after completion of 18X ?PRACK transaction on UAC side), then CUBE is sending the early dialog UPDATE to the UAC side correctly.

• CSCuf84655

Symptom: One-way video is seen while CUBE is trying to negotiate packetization mode=1 for H264 video codec in both the legs and one video endpoint doesn't support packetization mode=1 for H264 video codec.

Conditions: When there is DO-DO video call from a video endpoint which supports only Packetization Mode=0 for H264 video codec to a video endpoint which supports both packetization modes like 0 & 1.

Workaround: Make an EO-EO video call from the endpoint which only support packetization mode=0,so that CUBE will negotiate packetization mode=0 for both the legs and two-way video will be seen.

• CSCuf93376

Symptom: CUBE reloads while testing SDP pass through with v6.

488Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 523: Cisco ASR 1000 Series Aggregation Services Routers Release Notes

Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

Conditions: The symptom is observed while testing SDP pass through with v6.

Workaround: Do not use SDP pass through and use normal SIP processing call flows.

• CSCuf93460

Symptom: Certain PKI CLIs may show wrong values.

Conditions: First found on IOS 15.1(4)M6 but not exclusive to it.

Workaround: There is no workaround.

• CSCuf93471

Symptom: After a brief unavailability of LDAP CRL, no new CRL fetches can be performed. The following messages are seen on the interface: ---- Mar 28 08:23:37.988: CRYPTO_PKI: Retrieve CRL using LDAP DIRNAME Mar 28 08:23:37.988: CRYPTO_PKI: Failed to send the request. There is another request in progress. -----

Conditions: This symptom was first seen in Cisco IOS Release 15.1(4)M6. The issue is not limited to this release.

Workaround: Configure the revocation-check none command under the affected trustpoint. Reload the router.

• CSCug12136

Symptom: On an ASR1K the clock timezone command is meant to be used as follows: clock timezone zone hours-offset [minutes-offset] where zone is a text field e.g. EDT, PST, and hours-offset and minutes-offset are integers. Incorrectly adding a hyphen or a dash in the zone text field causes unintended and harmful behavior.

Conditions: One way to cause this to happen (essentially a typo) is to configure clock timezone EST-5 0 0 where one really meant to type clock timezone EST -5 0.

Workaround: If 0 is the intended offset it is probably best to simply remove the config line entirely. If 0 is not intended then correcting the typo will correct the issue. In any case the root cause of the issue is the hyphen in the text field and should always be avoided.

• CSCug14423

Symptom: A packet gets dropped when a spoke-spoke session is triggered in Dynamic Multipoint VPN (DMVPN).

Conditions: This symptom occurs when a ping is sent using a tunnel interface as the source or the destination.

Workaround: Send traffic from host-host.

• CSCug15520

Symptom: Hit an ucode crash in lisp zbfw scaling case, scaling number is 500 lisp instances, 50k eid table, 500 pair zone. The crash is hit in unconfigure fw data stage. it is reproducible.

Conditions: Unconfigure the lisp fw.

Workaround: There is no workaround.

• CSCug18685

Symptom: An NHRP resolution request is forwarded to the first NHS on the tunnel interface instead of being forwarded along the routed path.

Conditions: DMVPN phase 3 implementation.

Workaround: There is no workaround.

• CSCug19697

489Caveats in Cisco ASR 1000 Series Aggregation Services Routers Release 3.11S

OL-26698-25

Page 524: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 525: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 526: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 527: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 528: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 529: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 530: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 531: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 532: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 533: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 534: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 535: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 536: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 537: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 538: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 539: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 540: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 541: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 542: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 543: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 544: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 545: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 546: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 547: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 548: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 549: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 550: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 551: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 552: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 553: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 554: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 555: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 556: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 557: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 558: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 559: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 560: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 561: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 562: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 563: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 564: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 565: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 566: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 567: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 568: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 569: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 570: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 571: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 572: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 573: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 574: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 575: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 576: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 577: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 578: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 579: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 580: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 581: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 582: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 583: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 584: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 585: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 586: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 587: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 588: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 589: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 590: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 591: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 592: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 593: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 594: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 595: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 596: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 597: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 598: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 599: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 600: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 601: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 602: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 603: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 604: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 605: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 606: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 607: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 608: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 609: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 610: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 611: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 612: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 613: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 614: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 615: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 616: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 617: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 618: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 619: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 620: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 621: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 622: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 623: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 624: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 625: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 626: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 627: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 628: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 629: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 630: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 631: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 632: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 633: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 634: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 635: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 636: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 637: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 638: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 639: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 640: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 641: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 642: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 643: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 644: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 645: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 646: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 647: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 648: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 649: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 650: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 651: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 652: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 653: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 654: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 655: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 656: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 657: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 658: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 659: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 660: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 661: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 662: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 663: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 664: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 665: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 666: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 667: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 668: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 669: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 670: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 671: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 672: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 673: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 674: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 675: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 676: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 677: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 678: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 679: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 680: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 681: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 682: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 683: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 684: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 685: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 686: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 687: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 688: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 689: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 690: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 691: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 692: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 693: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 694: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 695: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 696: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 697: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 698: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 699: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 700: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 701: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 702: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 703: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 704: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 705: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 706: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 707: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 708: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 709: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 710: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 711: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 712: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 713: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 714: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 715: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 716: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 717: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 718: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 719: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 720: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 721: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 722: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 723: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 724: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 725: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 726: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 727: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 728: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 729: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 730: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 731: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 732: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 733: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 734: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 735: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 736: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 737: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 738: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 739: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 740: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 741: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 742: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 743: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 744: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 745: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 746: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 747: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 748: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 749: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 750: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 751: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 752: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 753: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 754: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 755: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 756: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 757: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 758: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 759: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 760: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 761: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 762: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 763: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 764: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 765: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 766: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 767: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 768: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 769: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 770: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 771: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 772: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 773: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 774: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 775: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 776: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 777: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 778: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 779: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 780: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 781: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 782: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 783: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 784: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 785: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 786: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 787: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 788: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 789: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 790: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 791: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 792: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 793: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 794: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 795: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 796: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 797: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 798: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 799: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 800: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 801: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 802: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 803: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 804: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 805: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 806: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 807: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 808: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 809: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 810: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 811: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 812: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 813: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 814: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 815: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 816: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 817: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 818: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 819: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 820: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 821: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 822: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 823: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 824: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 825: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 826: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 827: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 828: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 829: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 830: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 831: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 832: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 833: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 834: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 835: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 836: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 837: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 838: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 839: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 840: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 841: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 842: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 843: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 844: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 845: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 846: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 847: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 848: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 849: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 850: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 851: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 852: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 853: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 854: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 855: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 856: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 857: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 858: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 859: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 860: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 861: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 862: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 863: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 864: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 865: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 866: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 867: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 868: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 869: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 870: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 871: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 872: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 873: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 874: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 875: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 876: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 877: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 878: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 879: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 880: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 881: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 882: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 883: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 884: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 885: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 886: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 887: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 888: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 889: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 890: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 891: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 892: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 893: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 894: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 895: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 896: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 897: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 898: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 899: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 900: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 901: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 902: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 903: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 904: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 905: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 906: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 907: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 908: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 909: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 910: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 911: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 912: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 913: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 914: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 915: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 916: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 917: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 918: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 919: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 920: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 921: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 922: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 923: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 924: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 925: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 926: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 927: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 928: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 929: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 930: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 931: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 932: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 933: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 934: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 935: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 936: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 937: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 938: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 939: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 940: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 941: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 942: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 943: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 944: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 945: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 946: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 947: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 948: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 949: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 950: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 951: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 952: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 953: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 954: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 955: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 956: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 957: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 958: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 959: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 960: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 961: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 962: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 963: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 964: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 965: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 966: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 967: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 968: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 969: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 970: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 971: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 972: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 973: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 974: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 975: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 976: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 977: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 978: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 979: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 980: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 981: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 982: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 983: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 984: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 985: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 986: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 987: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 988: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 989: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 990: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 991: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 992: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 993: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 994: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 995: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 996: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 997: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 998: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 999: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1000: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1001: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1002: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1003: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1004: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1005: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1006: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1007: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1008: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1009: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1010: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1011: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1012: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1013: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1014: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1015: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1016: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1017: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1018: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1019: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1020: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1021: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1022: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1023: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1024: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1025: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1026: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1027: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1028: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1029: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1030: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1031: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1032: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1033: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1034: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1035: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1036: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1037: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1038: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1039: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1040: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1041: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1042: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1043: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1044: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1045: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1046: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1047: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1048: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1049: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1050: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1051: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1052: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1053: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1054: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1055: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1056: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1057: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1058: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1059: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1060: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1061: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1062: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1063: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1064: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1065: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1066: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1067: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1068: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1069: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1070: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1071: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1072: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1073: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1074: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1075: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1076: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1077: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1078: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1079: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1080: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1081: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1082: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1083: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1084: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1085: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1086: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1087: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1088: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1089: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1090: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1091: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1092: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1093: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1094: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1095: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1096: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1097: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1098: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1099: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1100: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1101: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1102: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1103: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1104: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1105: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1106: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1107: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1108: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1109: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1110: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1111: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1112: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1113: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1114: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1115: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1116: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1117: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1118: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1119: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1120: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1121: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1122: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1123: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1124: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1125: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1126: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1127: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1128: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1129: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1130: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1131: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1132: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1133: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1134: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1135: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1136: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1137: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1138: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1139: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1140: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1141: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1142: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1143: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1144: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1145: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1146: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1147: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1148: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1149: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1150: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1151: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1152: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1153: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1154: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1155: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1156: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1157: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1158: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1159: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1160: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1161: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1162: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1163: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1164: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1165: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1166: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1167: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1168: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1169: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1170: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1171: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1172: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1173: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1174: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1175: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1176: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1177: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1178: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1179: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1180: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1181: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1182: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1183: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1184: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1185: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1186: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1187: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1188: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1189: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1190: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1191: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1192: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1193: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1194: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1195: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1196: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1197: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1198: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1199: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1200: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1201: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1202: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1203: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1204: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1205: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1206: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1207: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1208: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1209: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1210: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1211: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1212: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1213: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1214: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1215: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1216: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1217: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1218: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1219: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1220: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1221: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1222: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1223: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1224: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1225: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1226: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1227: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1228: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1229: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1230: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1231: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1232: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1233: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1234: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1235: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1236: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1237: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1238: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1239: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1240: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1241: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1242: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1243: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1244: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1245: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1246: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1247: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1248: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1249: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1250: Cisco ASR 1000 Series Aggregation Services Routers Release Notes
Page 1251: Cisco ASR 1000 Series Aggregation Services Routers Release Notes