Caveats for Cisco IOS Release 12.0 November 6, 2000 Text Part Number 78-6455-12 Note You can find the most current Cisco IOS documentation on Cisco Connection Online (CCO). These electronic documents may contain updates and modifications made after the hard-copy documents were printed. This document lists severity 1 and 2 caveats and select severity 3 caveats for Cisco IOS Release 12.0, up to and including Release 12.0(14). Caveats describe unexpected behavior or defects in Cisco IOS software releases.
If You Need More Information If You Need More Information The most up-to-date documentation can be found on the Web through Cisco Connection Online (CCO) and on the latest Documentation CD-ROM. These electronic documents might contain updates and modifications made after the paper documents were printed. For information on CCO, see the “Cisco Connection Online” section on page 158. For more information on the CD-ROM, see the “Documentation CD-ROM” section on page 159.
Open Caveats—Cisco IOS Release 12.0(14) Release Notes Cisco IOS Release Revision Date Release Notes for the Cisco AS5300 for Cisco IOS Release 12.0 Release 12.0(14) November 6, 2000 Release Notes for the Cisco AS5800 for Cisco IOS Release 12.0 Release 12.0(1) October 26, 1998 Release Notes for Cisco uBR7200 Series Release 12.0(3) for Cisco IOS Release 12.0 February 8, 1999 Open Caveats—Cisco IOS Release 12.0(14) This section describes possibly unexpected behavior by Cisco IOS Release 12.0(14).
Basic System Services • CSCdp32560 A Cisco router that is running Cisco IOS Release 12.0(5.5) with a Route Switch Processor (RSP) may see “output stuck” messages followed by a “CBus complex restart” message that clears the problem. There is no workaround. • CSCdp59691 A Cisco AS5800 series universal access server, a Cisco 7200 series router, a Cisco uBR7200 universal broadband router, or a Cisco 6400 series router may experience a memory leak.
Basic System Services • CSCds13085 A Cisco 7500 series router running Route Switch Processor (RSP1) and Cisco IOS Release 12.0(10) may experience the following reload and spurious alignments: System was restarted by bus error at PC 0x601B72E8, address 0x40000060 RSP Software (RSP-DSV-M), Version 12.
EXEC and Configuration Parser The complete advisory is available at http://www.cisco.com/warp/public/707/ioshttpserverquery-pub.shtml. • CSCds46280 TFTP will not transfer a file greater then 16 MB to or from a Cisco router. Workaround: Use remote copy protocol (RCP) or File Transfer Protocol (FTP) to transfer the file. • CSCds57060 Tracebacks appear when fair queueing is configured on an ATM interface. There is no workaround.
IBM Connectivity • CSCdr87403 When Advanced Peer-to-Peer Networking (APPN) virtual data-link control (VDLC) is configured between Cisco 3640 routers and AS/400s, there is a problem if all the network nodes (NN) are using High Performance Routing (HPR) and there is a data-link switching (DLSw) Lite circuit established between the Cisco 3640 data-link switching (DLSw) peers.
Interfaces and Bridging Interfaces and Bridging • CSCdk48089 Removing an ATM Deluxe card from a Cisco 7200 series router and inserting an ATM Lite card in the same slot may cause the router to fail. There is no workaround. • CSCdr47324 With fast switching (Optimum, Cisco Express Forwarding (CEF), or flow) enabled, a Cisco 7200 series router may fail to route packets larger than 1496 bytes from any Fast Ethernet (FE) interface and a Bridge Group Virtual Interface (BVI).
IP Routing Protocols %STANDBY-6-STATECHANGE: Standby: 1: Ethernet3/5 state Standby - > Active %CBUS-4-RSETFAIL: Interface Ethernet3/5 failed to reset properl y in cbus_mci_record_ether_address(), code 0x8010 There is no workaround. • CSCds37758 On a Cisco router that is running Cisco IOS Release 12.1(4.2) or a later release, Intermediate System-to-Intermediate System (IS-IS) will fail to form an adjacency over a 16 MB Token Ring link.
IP Routing Protocols • CSCdp71893 A (S,G) entry created by receipt of data on an interface will have a NULL outgoing interface list. Unless the X-flag is set for this entry, the entry expiration time will not be updated and X-flag will time out and then be recreated by the next data packet. This condition may increase the CPU usage on routers that see multicast packets for a large number of sources. There is no workaround.
Miscellaneous • CSCds38006 Unicast traffic fails on a specified interface when the ip mroute-cache command in interface configuration mode is used. Example: interface FastEthernet3/0/0 ip address 4.4.4.4 255.255.255.0 ip pim sparse-dense-mode ip route-cache distributed ip mroute-cache distributed ping 4.4.4.5 Type escape sequence to abort. Sending 5, 100-byte ICMP Echos to 4.4.4.5, timeout is 2 seconds: .....
Miscellaneous • CSCdk18888 A VIP Token Ring interface does not encrypt or decrypt IP packets containing a Routing Information Field (RIF), even though the initial encryption connection setup with the remote router is successful. Encryption and decryption for Token Ring IP packets without a RIF continue to function normally. There is no workaround. • CSCdm01831 A timing problem exists that is specific to the Route Switch Module (RSM).
Miscellaneous • CSCdp92097 Cisco Encryption Technology (CET) may not work when weighted fair queueing (WFQ) is configured on the interface of which crypto map is applied. There is no workaround. • CSCdp95227 If you make a call from a Cisco AS5300 series universal access server that is running Cisco IOS Release 12.0(7)T, you may not hear a ringback. The Cisco 3640 router that is running Cisco IOS Release 12.0(7)XK at the remote end rings, but there is no voice path.
Miscellaneous Workaround: Execute a write memory EXEC command or a copy running start command if you see this kind of error message. • CSCdr79628 When IP Security (IPSec) is being enabled on a Cisco 7507 router running Cisco IOS Release 12.0.
Miscellaneous • CSCds01012 When sending IPSec traffic across a second channel while the first channel is still up and passing IPSec traffic, a Cisco router may stop passing traffic altogether. This condition has been observed in the following situation: – There are two central sites (A and B in this example) with Cisco 3640 routers that are running Cisco IOS Release 12.0(7)XK1. – There is a remote site with a Cisco 2621 router that is running Cisco IOS Release 12.0(7)XK1.
Miscellaneous None of the point-to-point adjacencies show up in the VIP for the serial port when the show adjacency detail EXEC command is used in the VIP slot console. Valid adjacencies are present in the RP and are displayed when the show adjacency detail command is issued on the main console. Workaround: Enable only the ip cef global configuration command when you bring up the router. Then turn on the ip cef distributed command if needed. Pings are functional when just the ip cef command is configured.
Miscellaneous • CSCds41097 On a Cisco router, the Token Ring interface gets wedged after upgrading from Cisco IOS Release 11.2 code. Workaround: Reload the router each time the problem occurs. • CSCds41672 Upon reloading a Cisco router that is using multiple tunnel interfaces and Cisco Encryption Technology (CET) over Frame Relay it is possible that the router may experience only part of the CET tunnels responding.
Novell IPX, XNS, and Apollo Domain 172.16.153.0 0.0.0.255 log access-list 101 permit ip 192.168.158.4 0.0.0.3 host 192.168.158.13 log access-list 101 permit ip 10.30.0.0 0.0.255.255 172.16.153.0 0.0.0.255 log access-list 101 permit ip 10.30.0.0 0.0.255.255 host 192.168.158.
Protocol Translation • CSCds54821 A Cisco 4500 series router may have its memory fragmented because of Internetwork Packet Exchange (IPX). There is no workaround. • CSCds56020 A Windows PC with ISDN data Terminal Equipment Available (TA) dials into a Cisco AS5300 series universal access server for the purpose of receiving two ISDN calls for a PPP Multilink connection.
TCP/IP Host-Mode Services TCP/IP Host-Mode Services • CSCds29458 A Cisco 7500 series router with three Channel Interface Processor v2 (CIPv2) experiences a software-forced reload and the following error messages are produced: System was restarted by error - a software forced reload, PC 0x6023C070 Route/Switch Processor (RSP) Software (RSP-JSV-M), Cisco IOS Release12.
Wide-Area Networking • CSCdk53369 Under certain circumstances, a Cisco router will issue the following error message: "invalid P timer event". This can happen under certain versions of the code when X.25 switched virtual circuits (SVC) and a call are switched but not accepted. A call is received and forwarded, the reply is a clear packet that is returned to the originator.
Wide-Area Networking ..............*. 019D0C60: 0400C918 011E1001 00000000 0000011E ..I............. 019D0C70: 10054378 0000AA00 0400C918 011E1001 ..Cx..*...I..... 019D0C80: 00000000 0000011E 10054378 0000300E ..........Cx..0. 019D0C90: 300C0608 2B060102 01010200 05000500 0...+........... 019D0CA0: 636B0101 CD417A20 00000000 00000000 ck..MAz ........ 019D0CB0: 00000005 04B90000 00000000 00000000 .....9.......... 019D0CC0: 00000000 00000000 00000000 00000000 ................
Resolved Caveats—Cisco IOS Release 12.0(14) • CSCds10234 If you enter the shutdown interface configuration command on the E1 interface, it may cause a router to experience a software-forced reload. There is no workaround. • CSCds22874 When the LAN emulation layer on a Cisco 7200 series router receives wrongly formatted LAN emulation control frames, the following message is generated: %LANE-3-LEC_CONTROL_MSG: Received bad control message on interface ATM1/0.
Interfaces and Bridging Workaround: Use DLSw with TCP encapsulation instead of FST encapsulation, or use a different router platform. Interfaces and Bridging • CSCdm45164 Enabling Weighted Fair Queuing (WFQ) on an interface that belongs to a transparent bridging bridge group may cause packets that are egressing that interface to be sent out of order. This situation causes failure in terminated and bridged Logical Link Control 2 (LLC2) sessions.
Miscellaneous Miscellaneous • CSCdk58757 A Cisco router running Cisco IOS Release 12.0 and its branches reloads when a permanent virtual circuit (PVC) has more than one IP address associated with it. If one of the IP addresses is removed, an inarp command process is started. But if the PVC itself is removed the router will reload. There is no workaround. • CSCdk68700 Encryption over dialer profiles may cause a Cisco router to reload when fast switching is enabled.
Resolved Caveats—Cisco IOS Release 12.0(13) • CSCds34812 A Cisco router running a LAN emulation client sends a no-src LE_NARP message when it switches over to the standby mode. A no-src LE_NARP message is a LAN emulation version 2 message that is sent to advertise to the other LAN emulation clients that the binding between target-mac address and target-atm address is no longer valid.
Resolved Caveats—Cisco IOS Release 12.0(13) FP: 0 x6191E300[etext(0x60d9e4f0)+0xb7fe10], RA: 0x60A3B898[_MPget_clr(0x60a3b85c)+0x3c] FP: 0x6191E328[etext(0x60d9e4f0)+0xb7fe38], RA: 0x609E2FC8[xxxtpd01(0x609e2d58)+0x270] There is no workaround. There may be other symptoms present elsewhere in the network leading up to this reload, such as locates timing out and no new sessions being established. • CSCdr75809 A Cisco router running Cisco IOS Release 12.
Resolved Caveats—Cisco IOS Release 12.0(13) IP Routing Protocols • CSCdr27659 In Cisco IOS Release 12.1 and Release 12.1 T, the IP policy cache is not cleared when you use the no ip route-cache policy interface configuration command. Workaround: Use the clear ip cache [ address-prefix address-mask] privileged EXEC command for a specific cache. • CSCdr39819 A Cisco Catalyst 6000 family switch with a Multilayer Switch Feature Card (MSFC) might reload when the show ip pim neighbor EXEC command is issued.
Resolved Caveats—Cisco IOS Release 12.0(13) • CSCdr73314 A Cisco router that is running Open Shortest Path First (OSPF) on Cisco IOS Release 12.0(11) does not populate the routing table properly. When redundant paths exist, half of the paths are missing from the routing table. However, the missing networks appear in the OSPF database. Workaround: Run a full shortest path first (SPF) by doing clear ip route * EXEC command.
Resolved Caveats—Cisco IOS Release 12.0(13) There is no workaround. • CSCdp95498 Ciscoview 4.2 might not work properly on a Cisco 7513 router that is running Cisco IOS Release 12.0(9). This situation occurs when slots 0, 2, 5, and 9 are populated with VIP2 Versatile Interface Processors and PA-8T-V35 port adapter cards. CiscoView 4.2 might not show the PA-8T-V35 port adapter on slot 9. Other slots might also report incorrect information.
Resolved Caveats—Cisco IOS Release 12.0(12) • CSCdr16095 This defect provides ATM Signalling Control Plane Failure Detection through signalling diagnostic MIB objects so the Network Management Station can monitor and take appropriate corrective steps in erroneous situations. There is no workaround. • CSCdr53700 You may see the message "%ALIGN-3-SPURIOUS: Spurious memory access ..." when Microsoft callback is being used and a callback fails to complete.
Resolved Caveats—Cisco IOS Release 12.0(12) DECnet • CSCdr02921 A Cisco router that is running Cisco IOS Release 12.0(8) might experience an unexpected system reload when you use the clear decnet accounting EXEC command or the no decnet accounting interface configuration command. This situation will only occur if DECnet accounting has been enabled on at least one interface and DECnet traffic is being forwarded by the router at that point in time.
Resolved Caveats—Cisco IOS Release 12.0(12) ISO CLNS • CSCdm91745 On Cisco routers, if a DECnet packet is received on an ethernet interface and is converted to a CLNS packet, in the unlikely event that it cannot be routed to its destination, an unexpected reload might occur in ether_extract_addr. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(12) Novell IPX, XNS, and Apollo Domain • CSCdr46313 In Cisco IOS Release 12.0 and 12.1, but not in earlier releases, a Cisco router that is running Internetwork Packet Exchange-Enhanced Interior Gateway Routing Protocol (IPX-EIGRP) Service Advertising Protocol (SAP) on unstable WAN links might cause IPX EIGRP SAP packets to remain in memory, eventually exhausting processor memory.
Resolved Caveats—Cisco IOS Release 12.0(11) Resolved Caveats—Cisco IOS Release 12.0(11) All the caveats listed in this section are resolved in Cisco IOS Release 12.0(11). This section describes severity 1 and 2 caveats and select severity 3 caveats.
Resolved Caveats—Cisco IOS Release 12.0(11) • CSCdr22737 The dependent logical unit requester (DLUR) session status remains after you implement INACT on a local Systems Network Architecture (SNA) major node from virtual telecommunications access method (VTAM). There is no workaround. Interfaces and Bridging • CSCdk45616 Distributed switching is not supported for LAN Emulation (LANE) on a Cisco ATM Lite port adapter (PA). There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(11) • CSCdp81134 A Cisco router that is acting as an area border router (ABR) connected to a stub area might place an Open Shortest Path First (OSPF) external route into its routing table whose outgoing interface is in the stub area. This situation can cause a routing loop because the stub area routers do not know about the external route and will forward packets along their default route, which might be the ABR.
Resolved Caveats—Cisco IOS Release 12.0(11) • CSCdr13715 Due to new RFC 2328, the calculation of summary route costs have changed. This situation might create suboptimal routing, if all of the area border routers (ABRs) are not upgraded to the new code at the same time. Workaround: Upgrade all of the ABRs to the new code.
Resolved Caveats—Cisco IOS Release 12.0(11) • CSCdp86111 When Cisco Express Forwarding (CEF) is configured as part of a large configuration (typically with access lists), following boot traffic that is directly addressed to the interfaces of a router might not be received. This condition can be observed on enabled interfaces where IP interfaces appear to be up, but the CEF interfaces are down. Workaround: Perform one of the following steps. Boot without CEF enabled. Disable and then re-enable CEF.
Resolved Caveats—Cisco IOS Release 12.0(11) • CSCdr09895 Under heavy traffic, a PA-A3 port adapter might experience a SAR0 reload. If this condition occurs on a Cisco 7200 series router, you must reload the router to recover normal operation. On a Cisco 7500 series RSP, this situation might result in commands from the RSP to the port adapter failing, but the port adapter should be able to recover without a router reload. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(10) Resolved Caveats—Cisco IOS Release 12.0(10) All the caveats listed in this section are resolved in Cisco IOS Release 12.0(10). This section describes severity 1 and 2 caveats and select severity 3 caveats. Basic System Services • CSCdm81049 If a serial interface is frequently flapping, the router might pause indefinitely with a stack trace indicating that it is in usecdelay() as a result of cbus_mci_serial_reset() being called while at interrupt level.
Resolved Caveats—Cisco IOS Release 12.0(10) DECnet • CSCdp50978 A Cisco router might reload if it pings a DECnet address across an ISDN BRI connection. Pinging IP continues to work, as does DECnet routing. There is no workaround. IBM Connectivity • CSCdm66552 A Cisco 2500 series router might suddenly stop receiving or not forward packet frames while transferring files over data-link switching plus (DLSw+) link using Fast Sequenced Transport (FST) encapsulation.
Resolved Caveats—Cisco IOS Release 12.0(10) Interfaces and Bridging • CSCdp40908 A Cisco PA-A1 port adapter does not automatically switch to the internal clock during LOS (Loss of Signal) condition. There is no workaround. • CSCdp40929 A Cisco PA-A1 port adapter does not detect the Loss of Cell Alignment (LOCA) error. There is no workaround. • CSCdp51752 In Cisco 7100 and 7200 series routers, transparent bridging using the PA-DTR Token Ring Port Adapter does not operate properly.
Resolved Caveats—Cisco IOS Release 12.0(10) • CSCdp72137 When the Incoming Interface List (IIL) changes for a (S,G) state, the F flag is not updated. This situation might cause registers to be sent for sources that are not directly connected anymore. There is no workaround. • CSCdp99619 A Cisco RSP4 Route Switch Processor might reload if the managed timer does not work properly. This situation rarely occurs. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(10) • CSCdp43778 If you configure a subinterface on a Cisco 2600 series router for Operation, Administration, and Maintenance (OAM), and the permanent virtual circuit (PVC) bounces, the PVC and the interface will not come back up unless you enter the shutdown command followed by the no shutdown command on the interface. This situation does not occur if the PVC is configured without OAM. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(10) • CSCdp67615 You cannot use SNMP to partition the flash. Workaround: Partition the flash through the command-line interface (CLI). • CSCdp67643 On a Cisco router that is running Cisco IOS Release 12.0, a Cisco Encryption Technology (CET) encrypted packet coming in while the router is restarting might prevent encryption from working on that interface for 15 minutes.
Resolved Caveats—Cisco IOS Release 12.0(10) TN3270 • CSCdp50276 A TN3270 client on a Cisco access server might erroneously leave the keyboard in a locked state causing all keyboard input to be rejected until you press the master_reset keypress. This situation occurs when an application sends write-structured field commands with the keyboard-restore indicator on the associated write-control character. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(9) • CSCdp60104 A Cisco router that is running Cisco IOS Release 12.
Resolved Caveats—Cisco IOS Release 12.0(9) Workaround: Use the script startup line configuration command and the script reset line configuration command. Basic System Services • CSCdm20829 If you enter the show interfaces [type number] [first] [last] [accounting] EXEC command on a Cisco router that is running Cisco IOS Release 12.0(3)T, the accounting records are updated only when the first system interface is sampled, and all interfaces share the accounting record of the first interface.
Resolved Caveats—Cisco IOS Release 12.0(9) configuration command. When a network link goes up or down, one of the routers attached to that link might start sending DECnet traffic down the wrong route. You can enter the show decnet traffic EXEC command to show the number of messages that have been discarded with the “too many visits” count. If you enter the show decnet route configuration command, you can check the routes selected by the router.
Resolved Caveats—Cisco IOS Release 12.0(9) • CSCdp63021 A Cisco router might reload through the watchdog timer because Topology and Routing Services (TRS) is looping on a zero length cv46 subvector in unmap_cv46. There is no workaround. Interfaces and Bridging • CSCdm74213 A Cisco PA-A1 is subject to rx packets with bad aal5_length field. If the erroneous length is too small, it might corrupt memory and cause the router to reload. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(9) • CSCdp05306 After a link flap, the summary route might not appear in the routing table even though it appears in the OSPF topology table. Workaround: Restart the OSPF process, or reload the router.
Resolved Caveats—Cisco IOS Release 12.0(9) have: access-list 101 permit udp 200.200.20.0 0.0.0.255 ne 19 200.200.30.0 0.0.0.255 ne 19 access-list 101 deny udp 200.200.20.0 0.0.0.255 200.200.30.0 0.0.0.255 eq 19 access-list 101 deny udp 200.200.20.0 0.0.0.255 eq 19 200.200.30.0 0.0.0.255 • CSCdm36742 Formatting boot flash memory on a Cisco 7100 series router might disable access to boot flash memory. This situation occurs with crypto images in Cisco IOS Release 12.0(5)XE, Cisco IOS Release 12.
Resolved Caveats—Cisco IOS Release 12.0(9) • CSCdp17334 The second port on a Cisco router with a PA-2T3 port adapter and a PA-2E3 port adapter will not come up if the first port is in a shutdown state. Workaround: Enter the no shutdown interface configuration command on the first port. • CSCdp24644 If devices that can share the same IP address at different times are connected behind an MPC, some Multiprotocol over ATM (MPOA) shortcuts might not be valid after they switch over the IP address.
Resolved Caveats—Cisco IOS Release 12.0(9) • CSCdp60101 When configured to provide access control, the Kerberos client on Cisco products will fail all authentications when the expiration of the credential falls between January and February of a leap year. Workaround: Choose an alternate form of authentication such as Terminal Access Controller Access Control System Plus (TACACS+) or Remote Dial-In User Service (RADIUS).
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdp25693 The dialer idle-timeout might not reset for the inbound interesting packets on all serial interfaces except the first interface, which is configured with the dialer idle-timeout either interface configuration command for situations where fast switching is allowed. As a result, all interfaces except for the first serial interface drop the call.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdm40972 When an X.25 interface initially comes up, IP route entries for its subinterfaces (if any) are not added to the IP routing table. Workaround: Restart X.25 to cause the subinterface routes to appear. • CSCdm71463 When “chassisType” is polled on a Cisco 7200 series router, the chassisType OID is returned as “Unknown.” There is no workaround. • CSCdp13010 A Cisco router that is running Cisco IOS Release 11.1(28.
Resolved Caveats—Cisco IOS Release 12.0(8) EXEC and Configuration Parser • CSCdk64574 A Cisco AS5800 access server might reload with a bus error after an ASCII login. Workaround: Upgrade to one of the following Cisco IOS releases: Cisco IOS Release 12.0(7) and later releases, Cisco IOS Release 12.0(7)T, Cisco IOS Release 11.3(10.6)AA, or Cisco IOS Release 12.0(7)S and later releases.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdp04887 An Advanced Peer-to-Peer Networking/Dependent LU Requester (APPN/DLUR) router might reload with the following stacktrace: RA: RA: RA: RA: RA: RA: 0x60703538[h(0x6070345c)+0xdc] 0x607038E0[fsm_receive_router(0x607035b0)+0x330] 0x606E285C[upchuck(0x606e2654)+0x208] 0x606E2348[rcv_cls_msg(0x606e2080)+0x2c8] 0x606E1ED8[dlcdx_process_messages(0x606e1eb8)+0x20] 0x607027D0[xxxpcasm(0x60702440)+0x390] There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdm47892 A Cisco 7500 series router that is running the rsp-jsv40-mz (Enterprise 40) software image on Cisco IOS Release 11.3(9.2)T might experience a bus error.
Resolved Caveats—Cisco IOS Release 12.0(8) IP Routing Protocols • CSCdm82319 If you run an H323 application, such as NetMeeting, the deletion of Network Address Translation (NAT) entries created for H323 will not free the allocated buffer completely and will cause a memory leak. The NAT entry data structure that tracks H225 and H245 information is not being freed when the NAT entry is deleted. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(8) Miscellaneous • CSCdj88748 The individual timeslots in a fractional T1/E1 circuit emulation service (CES) circuit might get misaligned if an ATM uplink switchover or reroute occurs, and the content in each timeslot remains error free even though the whole fractional circuit cannot be synchronized.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdm86777 A Cisco 7200 series router might not switch packets when crypto map is configured. This situation occurs when you enable Cisco Express Forwarding (CEF) switching. Symptoms might include a connection activity display of twice the normal number of encrypted and decrypted packets than for the peer router when you enter the show crypto cisco connections privileged EXEC command. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdp21739 Changing the status of the interface on a PA-A3 port adapter might cause routes to be removed from the Enhanced Interior Gateway Routing Protocol (EIGRP) topology table. Workaround: Issue the shutdown interface configuration command followed by the no shutdown interface configuration command. • CSCdp23921 Under rare conditions, a Cisco RSP7000 router that is running Cisco IOS Release 12.0(6.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdk43155 After upgrading to Cisco IOS Release 11.3, you might occasionally experience the following error message: %X25-3-X25INT: Interface ?, X.25 internal error Invalid lock operation on an X.25 route -Process= “X.25 Background”, ipl= 2, pid= 69 Workaround: Remove the route entry associated with the destination from the X.25 routing table, and then add it back again.
Resolved Caveats—Cisco IOS Release 12.0(8) • CSCdm80044 A Cisco router might reload with a bus error in xot_cx_transition. The stack decodes might vary. There is no workaround. • CSCdm93360 A Cisco router that is performing X.25 permanent virtual connection (PVC) switching might experience the following error message if a resend is received on the incoming PVC while the outgoing PVC is not active: %X25-3-X25INT: Interface ?, X.25 internal error unable to walk VC output queue There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(7) • CSCdp21451 A console buffer overrun might occur on a Cisco 1600 series router, a Cisco 3800 series router, a Cisco 800 series router, or a Motorola SMC (MPC860)-based platform if you initiate a PAD or X.28 outgoing connection from the console terminal. This problem does not occur if you make a PAD or X.28 connection from the vty lines. Workaround: Exit the console session, and then restart the console session. Resolved Caveats—Cisco IOS Release 12.
Resolved Caveats—Cisco IOS Release 12.0(7) IBM Connectivity • CSCdm37638 A Cisco 4500 or 4700 series router with an NP-2R Token Ring might pause indefinitely approximately once a week and display the following error message: %SYS-2-INPUTQ: INPUTQ set, but no IDB This condition is not effected by the revision level of the motherboard. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(7) • CSCdm72581 After continuously looping in nns_olu_cdinit_reply_processing, an Advanced Peer-to-Peer Networking (APPN) router running Cisco IOS Release 11.2 might reload and exhibit the following error message: abort crashdump process_handle_watchdog signal_receive process_forced_here nns_olu_cdinit_reply_processing There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(7) IP Routing Protocols • CSCdk52593 An external SPF calculation might be triggered every 35 to 40 seconds if there is an OSPF external link-state advertisement (LSA) containing a forwarding address that OSPF has no route for and if there is a static route to this forwarding address pointing to an OSPF enabled interface. Workaround: Remove the static route, or prevent the unreachable forwarding address from being included in the external LSA.
Resolved Caveats—Cisco IOS Release 12.0(7) LAT • CSCdm82005 The following line commands are not supported in Cisco IOS Release 12.0(5.5) through 12.0(6): the session-limit command, the absolute-timeout command, and online help for the lat command. There is no workaround. Miscellaneous • CSCdk41197 A Multiport Basic Rate Interface (MBRI) might pause indefinitely in “awaiting establishment” and “tei assigned” modes.
Resolved Caveats—Cisco IOS Release 12.0(7) • CSCdm48366 When entering the crypto-map map-name command on a Versatile Interface Processor (VIP) interface, you must use a name that is not a subset of another crypto map’s name. For example, the interface recognizes “testtag1,” “testtag10,” and “testtag100” as the same crypto map names. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(7) • CSCdm72498 V.120 connections on a Cisco AS5800 access server might fail if you enter the vty-async virtual-template command and 144 or more virtual-access interfaces are in use and a new one is needed. On a failing connection, a “debug vtemplate” might show the following error messages: Vi202 VTEMPLATE: Messages from (un)cloning ... interface Virtual-Access1/0/58 Vi202 VTEMPLATE: Messages from (un)cloning ...
Resolved Caveats—Cisco IOS Release 12.0(7) Protocol Translation • CSCdm69108 TCP to X.25 permanent virtual circuit (PVC) translation might fail and cause the connection to be lost. There is no workaround. Wide-Area Networking • CSCdj39383 A Cisco router with over 180 data-link connection identifiers (DLCIs) cannot boot properly because of excessive console log messages related to the startup of Frame Relay PVCs. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(7) • CSCdm56000 Virtual EXEC leaves unusable memory when you issue the show tech-support command. There is no workaround. • CSCdm59077 If you upgrade to Cisco IOS Release 12.0(3)T, AIP might not properly recognize the “Burst size in number of 32 cell bursts” option configured under the interface: 7513#conf t 7513(config)#int atm 1/0.
Resolved Caveats—Cisco IOS Release 12.0(6) Resolved Caveats—Cisco IOS Release 12.0(6) All the caveats listed in this section are resolved in Cisco IOS Release 12.0(6). This section describes severity 1 and 2 caveats and select severity 3 caveats. Access Server • CSCdm42611 MICA Technologies portware parameters are extended to support V110, along with other newly planned activities.
Resolved Caveats—Cisco IOS Release 12.0(6) Timeout 04:00:00 Last input 00:00:09, output 00:01:45, output hang never Last clearing of “show interface” counters 00:03:17 Queueing strategy: fifo Output queue 40/40, 42 drops; input queue 0/75, 0 drops %PQUICC_ETHER-5-COLL: Unit 0, excessive collisions. Retry limit 15 exceeded There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm28939 When you configure DECnet on a router, it is possible to specify an Address Translation Gateway (ATG) network number in the range 0 to 3. If the ATG-network-number is specified incorrectly when you configure an interface, the router might reload. If ATG-network-number is not required, it does not need to be specified and the problem does not occur. If ATG-network-number is required, use the following workaround.
Resolved Caveats—Cisco IOS Release 12.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm40466 You might lose connectivity on Inter-Switch Link (ISL) trunk subinterfaces if you configure a bridge group on one of the subinterfaces and then reboot the router. This is a Route Switch Processor (RSP)-specific issue and the problem is not seen on other platforms. Removing the bridge group does not resolve the problem. Workaround: Reboot the router after removing all the bridging and Bridge-Group Virtual Interface (BVI) statements.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm45873 If you are redistributing OSPF routes into any other routing protocol, it does not include NSSA external routes. There is no workaround. • CSCdm51483 Executing the show ip igmp group command might cause a bus error reload if an IGMP entry is deleted during the command execution. This condition occurs intermittently. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm19457 A Cisco 7500 router with a VIP or ESA-PA port adapter suffers from buffer starvation because of incorrect MEMD reservation. This problem is observed in Cisco IOS Release 11.2(7)P crypto images. RSPs with an ESA-PA allocate a MEMD buffer pool of size 32 bytes, which would never be used. This also leads to a reduced number of buffer headers available to other interfaces in the system.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm36128 A Cisco 3600 series router with 4T dial out might go down when you issue the dialer dtr command. There is no workaround. • CSCdm37466 Spurious accesses, router hangs, or router reloads can occur if you use fair queuing. There is no workaround. • CSCdm38433 A VIP configured for Distributed Cisco Express Forwarding (CEF) and Cisco Encryption Technology chassis (CET) might reload after you remove and reapply the crypto maps.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm55716 An ATM subinterface might drop packets when Distributed CEF (DCEF) is disabled. This problem only occurs on subinterfaces created after DCEF is on, and then is turned off. Workaround: Enable, and then disable DCEF after creating a new subinterface. • CSCdm55823 Prior to Cisco IOS Release 12.0(6) tag forwarding fails. The show adjacency command shows that all of the tag adjacencies are marked incomplete. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(6) • CSCdm30090 When a Cisco router is operating as an X.25 switch, and forwards an X.25 call containing certain facilities not interpreted by the router, the facility values might be corrupted. The problem occurs most often when the call cannot be forwarded immediately (for example, when using X.25-over-TCP) with heavy traffic. The affected facilities include any local facilities and the Charging Information facility. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm48450 When stac compression is enabled on RSP routers configured for bridging with HDLC encapsulation, the router is unable to pass traffic.When checking the start of the HDLC packet to determine if it is a bridged packet board, encapsulations are not taken into account. Because of this, HDLC_BRIDGECODE is not read correctly. Workaround: Disable compression. • CSCdm54100 Autoselect functionality does not exist in Cisco IOS Release 12.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm21330 If you configure a maximum transmission unit (MTU) that is different from the serial interface default value that is created using a channelized group on an E1 four-port controller, the following error message is generated: %DSX1-3-M32_MEM_ALLOC: Munich 32 channel memory allocation error The serial interface is then put in an administrative shutdown state. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) The default priority of the SNMP process was changed (from medium to low) in early releases of Cisco IOS Release 11.1 to allow the scheduler to service other processes while SNMP is running. This change makes SNMP interference with normal routing functions rare, because packet forwarding and routing are medium- or high-level processes. The result is that SNMP relinquishes the processor if required.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm11467 When utilizing Network Time Protocol (NTP) private mode and control type messages for remote query, a router might reload or you might see traceback messages. There is no workaround. • CSCdm13269 If you configure the 128-kbps leased line on a Cisco 1003 router, and the router runs Cisco IOS Release 12.0(3), the following message might appear when the router boots: ASSERTION FAILED: file “../src-36/quicc_driver_lib.
Resolved Caveats—Cisco IOS Release 12.0(5) EXEC and Configuration Parser • CSCdj92253 A Cisco router might unexpectedly restart if multiple connections are made from a virtual terminal, and one of the connections is closed due to a session timeout while another connection is blocked from sending data due to being flow controlled. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm10184 A Cisco router might send an information frame with the poll bit set and then send a relative rate (RR) with the poll bit set. This causes the end station to send a window of information frames twice. There is no workaround. • CSCdm12293 In Cisco IOS Release 12.0(3.5), Release 11.3(8.5), and Release 11.3(9), features that use SDLC do not work. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm26717 APPN/DLUR experiences corruption when the total number of PUs and LUs approaches 8000. This problem is typically preceded by spurious memory accesses. The resulting failures are variable, such as a corrupt CVx’60’ on DLUR-DLUS flows, SESSEND failures from DLUR with sense code 0x1014023D, and PUs and LUs becoming stuck in “Stopping” state. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdk92089 If you have Integrated Routing and Bridging (IRB) configured on a Cisco 4500 router with two Token Ring interfaces (0 and 1) on bridge 1, when a PC is connected to interface 0 everything works fine (the MAC is on the bridge table and pings are successful). However, as soon as you change the connection to interface 1, the MAC does not show up on the bridge table and pings are not successful. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdk84841 When you configure an X.25 line as a passive interface for OSPF, the line might stay in an OSPF “down” state after a line flap, even though the line protocol is up. You can check the OSPF state in the output of the show ip ospf interface command. As a result, this line’s network number will not be advertised by OSPF. Workaround: Do not to make this interface passive for OSPF.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdk12480 A VIP encryption engine does not successfully negotiate an encryption connection with an encryption peer if traffic that needs to be encrypted or decrypted by the VIP is received at initialization time (such as after a reload or an OIR). After the VIP has reinitialized, the show crypto connection command shows an ID of “0.” However, show crypto map will show a negative connection ID.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdk75285 When a Certificate Revocation List (CRL) size is larger than 2 KB, the router might reload. Workaround: Have the server issue a smaller CRL. • CSCdk75500 The R2 signaling timeslots (or channels) on a Cisco AS5800 access server might lock up every two weeks. Workaround: Delete the CAS-group configuration item then put it back, or reload the access server.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdk92265 If online insertion and removal (OIR) is performed on a DMM card, autoselect fails. There is no workaround. • CSCdk93438 A VIP controller on a Cisco 7500 series router might hang when encryption is used. This condition is intermittent. Workaround: Reload the router.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm08164 When running Cisco IOS Release 12.0(3) on the Cisco 7200 series, it is possible to see periodic interface resets on DS3-speed links under high interface utilization. This can result in a loss of keepalives and output drops. There is no workaround. • CSCdm08728 Cisco router running Cisco IOS Release 11.3(6)T can experience unexpected system restarts when configured with the crypto IPSec commands. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(5) Workaround: Achieve control of the router from the console, (not from a vty connection) and perform the following steps, assuming the corrected image resides in Flash memory (bootflash, slot0, or slot1): a) router# configure terminal b) router(config)# config-register 0x0 c) Press Ctrl-C. d) Reload the router e) router> rommon > b slot1: new image (The “new image” is the name of Cisco IOS image, assuming it resides in slot1.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm23824 Using any form of RSP turbo switching (optimum/flow/CEF), on any type of Ethernet interface (10 Mb/100 Mb/Gigabit), can cause packet errors in the MAC address fields of packets that are input from any interface sharing the same MEMD packet free pools as the Ethernet interface.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm29693 The “cmCallDuration” variable returns wrong values for timeticks. When compared with system up-time, this variable increases 10 times faster for a call that is in progress during a period of 50 timeticks. There is no workaround. • CSCdm30609 Cisco routers that originate a L2F or L2TP packet over an ISL interface might reload. Workaround: Turn off fast switching.
Resolved Caveats—Cisco IOS Release 12.0(5) devices are trying to reach this network. If services are associated with this network, they time out of the service table, and SAP entries received for these services are rejected due to the “no network found” as seen with debug ipx sap event. Workaround: Clear the specific route entry using the clear ipx route {network[network-mask]|default|*} command, or clear the entire route table using clear ipx route.
Resolved Caveats—Cisco IOS Release 12.0(5) TCP/IP Host-Mode Services • CSCdm07904 Configuring an X.25 tunneling over TCP (XOT) session over an ISDN is problematic when the XOT sessions are closing. The ISDN session might hang up and come back up (on and off) periodically until the underlying TCP session gets completely closed. Usually, the TCP sessions should close, but due to a caveat in TCP for “simultaneous close,” the ISDN does not hang up until a timeout of 8 minutes is reached.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdk70598 When using Point-to-Point Protocol over Asynchronous Transfer Mode (PPP over ATM), or over Frame Relay (PPP over Frame Relay), enabling timeouts on the virtual template will cause the Network Control Protocol (NCP) layer to drop after the timeout. The Link Control Protocol (LCP) will remain open. No network layer traffic will be able to pass across this link.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm01992 When LECS mastership changes from Fast SSRP aware LECS to old-style LECS, and the LES changes from old-style to new-style LES, all clients should join to the new-style primary LES. However, in some situations the new-style clients (Fast SSRP aware clients) stay joined to the secondary LES (old style LES) instead of joining to the primary LES (new style LES). This problem occurs in Cisco IOS Release 11.3 and Release 12.0.
Resolved Caveats—Cisco IOS Release 12.0(5) • CSCdm19619 PPP is put into an “AUTHENTICATING” phase if virtual private dialup network (VPDN) authorization fails. This condition did not exist prior to Cisco IOS Release 12.0(3)T when VPDN is entered only if PPP is in “AUTHENTICATING” phase. Workaround: Restore the PPP phase after the VPDN authorization failure. • CSCdm22162 STAC compression LZS DCP gets stuck in an “R-Req” loop. This problem occurs with Cisco IOS Release 11.1 or Release 11.
Resolved Caveats—Cisco IOS Release 12.0(4) Resolved Caveats—Cisco IOS Release 12.0(4) All the caveats listed in this section are resolved in Cisco IOS Release 12.0(4). This section describes severity 1 and 2 caveats and select severity 3 caveats. Access Server • CSCdk11064 If DTR is low on a line to which a Microcom modem is attached (for example, because modem dtr-active is configured on the line), CSM nonetheless routes the call to the modem.
Resolved Caveats—Cisco IOS Release 12.0(4) Basic System Services • CSCdj84652 The maximum transmission unit (MTU) size of interfaces that use the encryption service adapter (ESA) is 16 Kbytes. Workaround: Configure the MTU to be no larger than 16K (16384) bytes on all interfaces that use ESA. • CSCdk28278 Currently generic traffic shaping and Frame Relay traffic shaping are not supported with turbo (optimum/Cisco Express Forwarding [CEF]) switching modes.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk93315 Any image which does not include the Layer 2 Forwarding Protocol (L2F) subsystem will reload when an L2F packet is received. When the system reloads, no crash information is obtained, and the fault history (obtained by issuing show context) is also often out of date. Workaround: Check for misconfigured tunnels on the network that might be sending L2F packets to the router.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk86081 The downstream physical unit (DSPU) does not allow any new DSPU connections, and the following messages appear in the router log: %DSPU-3-LSConnInFailedNoMem: Connect in from remote address 00104b0a60e0 failed ; insufficient memory %DSPU-3-LSConnInFailedNoMem: Connect in from remote address 00105a00e326 failed ; insufficient memory There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdm05685 A Cisco router might reload if DLSw priority peers and Downstream Physical Unit (DSPU) over virtual data-link control (VDLC) are configured together. This condition also occurs when DLSw priority peers and Systems Network Architecture (SNA) over VDLC are configured together. Workaround: Use regular DLSw peers.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk79774 Under heavy load conditions, a Cisco 7000 family router with VIP-based PA-4R, PA-4R-FDX, or PA-4R-DTR Token Ring interfaces may forward packets containing four extra bytes. The four bytes are appended to the end of the packet. This might adversely affect protocols that are sensitive to frame lengths (for example, IBM SNA sessions may fail). There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk64629 NAT only translates the first address entry in a NetBIOS Name Service (NBNS) group name response message. Other group name address entries are not translated, and therefore the NetBIOS client is only able to reach the first group address host. This happens because the client would be using an inside local address from the outside for the other members of the NBNS group name. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(4) ISO CLNS • CSCdk00465 If you convert from DECnet phase IV to DECnet phase V with multiple paths, you might experience routing loops. Workaround: Configure equal metrics for all paths. Miscellaneous • CSCdj22429 Under rare circumstances, the Cisco AS5200 access server might issue the following message: %SYS-3-BADMAGIC: Corrupt block at 20000000 (magic xxxxxxxx) The Cisco AS5200 crashes with a software forced error. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk66567 If Token Ring is the endpoint of an encrypted tunnel, extra packets are generated. The symptoms of this problem are a high CPU load (mainly taken by the Crypto Engine) and false addresses when enabling the debug tunnel command. Workaround: Use the tunnel sequence-datagrams interface command on both endpoints of the tunnel. • CSCdk69456 The data encryption service adapter (ESA) Crypto engine in a VIP2 is limited to 25 connections.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk79550 When a Cisco AS5800 access server is reloaded with the D-channel in a shut condition, issuing a no shut command on the D-channel does not bring the PRI back in service. This situation happens on both T1 and T3 feature boards. Workaround: Issue a shut command followed by a no shut command on the corresponding T1 controller to make the PRI operational.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk88225 An RSP might reload by software forced error when you use one the no mls rp ip or no interface FastEthernet commands. There is no workaround. • CSCdk89651 You might not be able to make two consecutive asynchronous calls from a Cisco AS5300 access server that runs Cisco IOS Release 11.3(7)T. The problem occurs whenever NFAS is configured. The problem goes away when NFAS is removed.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdm06225 Connectivity problems occur in Virtual Profile situations with a combination of V.120 and native sync-ISDN calls on a Cisco AS5800 access server. A dial-up interface, which last had an incoming V.120 call, can a have problem getting packets across on subsequent calls. This condition occurs if a AAA per-user configuration containing downloaded interface packet filter (access lists) is applied. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(4) Wide-Area Networking • CSCdj71680 In a DDR environment, a packet that starts a dial might use an incorrect dialer map to reach a remote destination. The problem is intermittent and the same packet might select the proper dialer map upon the next try. There is no workaround. • CSCdj77057 Occasionally, the show dialer map command causes a Cisco router to reload. This condition only occurs when connections are dropped during the execution of the command.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk75078 If you observe an increase in the number of retransmission requests (REJs) sent out of a router interface, an acknowledgment for a received frame was not sent out. This causes a remote station timer to expire and resend the data. There is no workaround. • CSCdk75490 A Cisco AS5300 access server that runs Cisco IOS Release 11.3(7.1)T or later releases might have problems bringing up Layer 2 after ISDN is configured for the first time.
Resolved Caveats—Cisco IOS Release 12.0(4) • CSCdk85274 When attempting to bring up more than just a few tunnels with Virtual Private Dial-Up Networking (VPDN), CPU utilization rises to nearly 100%. If a single tunnel is used, no performance degradation is noticed. There is no workaround. • CSCdk86557 When running PPP in conjunction with NFAS on PRIs the NFAS interfaces that are configured to have 24 B-channels will only be able to negotiate and pass PPP data on the first 23 channels.
Resolved Caveats—Cisco IOS Release 12.0(3) Resolved Caveats—Cisco IOS Release 12.0(3) All the caveats listed in this section are resolved in Cisco IOS Release 12.0(3). This section describes severity 1 and 2 caveats and select severity 3 caveats. Access Server • CSCdk66309 When the pri configuration command is issued for a T1/E1 controller, the following message might appear on the console: SYS-3-MGDTIMER There is no workaround. • CSCdk69102 A Cisco AS5800 access server that runs Cisco IOS Release 11.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk46621 When a Cisco router interface is configured as a DCE, it does not track the correct control lead coming from the DTE. The interface stays up and up when the DTR is low. There is no workaround. • CSCdk50924 If two users on different tty connections simultaneously attempt to issue commands that access NVRAM (for example, show startup-config), the router might reload. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk71921 AAA authentication method lists disappear when you upgrade from Cisco IOS Release 11.2 to Cisco IOS Release 11.3 or later IOS releases. When aaa authentication local-override is configured in a Release 11.2 image and AAA authentication method lists have three or more methods defined, upgrading to Cisco IOS Release 11.3 or later IOS releases generates a traceback. Workaround: Remove one or more of the methods before the upgrade.
Resolved Caveats—Cisco IOS Release 12.0(3) DECnet • CSCdk65997 This problem is specific to the Route Switch Module (RSM) platform and for DECnet over VLANs. The code for DECnet support over VLANs uses a cache to store VLAN-header information, and this cache is used in the fast-switch path. When there is a routing topology change, the fast-switching code continues to look at the stale cache entry, and as a result, packets destined by way of the new route are black-holed.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk71062 When using privileged-level commands to allow configuration of a command, the user is unable to configure specific privilege levels for the keywords of the channel interface subcommand commands. There is no workaround. • CSCdk77166 A Cisco router that runs DLSw with FST, Direct, or LLC2(Lite) encapsulations might reload. Workaround: Use DLSw with TCP encapsulation.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk63173 When ATM Lite tries to transmit a packet with multiple particles, in some applications such as L2F, particles after the third in the packet might not be 32-bit aligned. This causes the ATM Lite’s transmitter to stall. Once this happens, issuing the commands shutdown followed by no shutdown gets the transmitter out of the stall state until the next such packet arrives. Workaround: Run L2F in process switching mode.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdj88650 If OSPF has both an external and a summary route to the same network, and a partial SPF run deletes the summary route, the external route is not installed. The external LSA might have the routing bit set, even if it is not installed in the routing table. This is caused by a failure to reset the external’s routing bit when the summary route replaces the external route in the IP routing table.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk60926 A Cisco router might fail when executing the show ip route network command. There is no workaround. • CSCdk62939 Removing a static route pointing to the null interface (or loopback) can cause EIGRP instability. There is no workaround. • CSCdk63471 Multicast assertion does not correctly prune router interfaces when no host reports are received from a VLAN. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(3) LAT • CSCdk57205 Printing with LAT/TCP translation might produce an incorrect printout. There is no workaround. Miscellaneous • CSCdi72371 When any Cisco 2500 series router is run with asynchronous/synchronous-capable 5-in-1 type connector low-speed serial ports in asynchronous mode, modem control is only supported when DTE-style 5-in-1 cables are used (in order to connect to DCE devices).
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk59879 A Cisco 1600 series router fails when IPSec is configured over an ISDN link. This is caused by the IP route-cache, which is enabled by default on all interfaces. Disable fast switching on the dialer interface and the router stops failing. However, TCP packets now get out of order. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk70378 When MPOA configuration is removed under moderate to heavy traffic across a LANE network, the RSM might crash. There is no workaround for this problem, except to not remove the MPOA configuration once it is operational. • CSCdk71109 When CEF is on, if an outgoing interface does not have CEF on (for example, SMDS encapsulation), packets are process-switched. This is due to lack of IP cache creation. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(3) ! Deny all multicasts, and all unspecified-net broadcasts, to port 514 access-list 101 deny udp any 224.0.0.0 31.255.255.255 eq 514 ! Deny old-style unspecified-net broadcasts access-list 101 deny udp any host 0.0.0.0 eq 514 ! Deny network-specific broadcasts. This example assumes that all of ! the local interfaces are on the class B network 172.16.0.0, subnetted ! everywhere with mask 255.255.255.0. This will differ from network ! to network.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk85273 A Cisco 7505 router running Cisco IOS Release 11.2(15a)P with encryption “on” reloads when you perform an SNMP poll of the cieEngineStatusTable (from CISCO-IP-ENCRYPTION-MIB). This MIB object is queried by CiscoView, and might be queried by other network management tools. This behavior does not occur when encryption is “off.
Resolved Caveats—Cisco IOS Release 12.0(3) or “ALERTING” message while the call is in progress. The fix is for the router to allow but ignore the “NOTIFY” message, for the Primary Rate DMS-100 switch type only, in call state 3 or call state 4. • CSCdk42597 An incoming call does not route the called NSAP facility and calling NSAP facility on the outgoing side. There is no workaround. • CSCdk42780 A Cisco 3640 router rejects incoming calls even though there are free channels and good modems.
Resolved Caveats—Cisco IOS Release 12.0(3) • CSCdk64929 When you configure X.25-over-TCP (XOT) keepalives on the X.25 route statements, a router might restart with following (decoded) traceback: c3640-js-mz.113-6.1.
Resolved Caveats—Cisco IOS Release 12.0(2) Resolved Caveats—Cisco IOS Release 12.0(2) All the caveats listed in this section are resolved in Cisco IOS Release 12.0(2). This section describes severity 1 and 2 caveats and select severity 3 caveats. Access Server • CSCdk09732 R2 signaling is failing in Croatia. According to the ITU specification (page 60 Note II), the router needs to act on the SEIZURE signal between 100 to 200 msec. This occurs around 150 milliseconds, within specification.
Resolved Caveats—Cisco IOS Release 12.0(2) Basic System Services • CSCdj78490 Cisco 1003 routers sharing S bus frequently have problems. Even though diagnostics show that the router is responding to IDCKREQ from the ISDN switch, these responses are lost in collisions and never seen by the ISDN switch. • CSCdk08376 LANE clients might drop with the message “SNMP CPUHOG processing GetNext IfEntry” on the ATM subinterfaces.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk40393 A Cisco MC3810 with both multiflex trunk (MFT) and digital voice module (DVM) installed might see T1 clock slips on the T1 controllers under certain circumstances. Clock slips are reported when viewing the T1 controller statistics with the EXEC command show controller t1.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk51491 If a router is configured to support Layer 3 switching with in and out access filters on the HSSI and Frame Relay IETF encapsulation, subsequently trying to configure SMDS encapsulation causes the router to fail. • CSCdk53176 Issuing the no traffic-shape group command causes the router to fail. • CSCdk55115 V.120 users can now correctly configure autocommand ppp negotiate under vtys. • CSCdk57493 Starting with Cisco IOS Release 11.3(5.
Resolved Caveats—Cisco IOS Release 12.0(2) heavy traffic between the peers using the DLSw pipe, and a packet coming from the peer is 1 to 3 bytes in excess of the MSS (Maximum Segment Size) of the receiver. Under these conditions, the receiving TCP device does not give the assembled packet to DLSw, until another packet arrives. Workaround: Adjust the MAXDATA (MAX PIU) of the end node to the value of MSS-16 bytes (allowing 16 bytes for the DLSw header) in the case of SNA.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk53320 An APPN router might reload with the following traceback error in the show stacks log capture: %APPN-3-Error: INVALID LPID 61318C81 Pid 0020100C IPSname 1 -Traceback= 608E1EF0 608DAF04 608DB440 6081184C 60810D40 601D4EA8 601D4E94 %APPN-6-LogMsg: APPN Process ended abnormally. Name: psp00. RC: F0AA0000.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk10762 After a reboot, or CBUS complex restart, there is a small chance (one in several thousand) that one or more T1s in a CT3 IP will not come back up properly. There are a very specific set of symptoms for this failure: – The line comes up at both ends, so all is well physically. – No T1 alarms or performance monitoring errors are detected. – The line protocol is down (assuming keepalives are enabled).
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk36767 EIP interfaces on a Cisco 7500 series router running Cisco IOS Release 11.2.13 starts flapping and then goes into an up and down state. Issuing the shutdown command, followed by the no shutdown command does not bring them back. You must do a microcode reload to stabilize the box. Or a reload of the box also normalizes the status.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk12537 A router running Cisco IOS Release 11.3(3) and later, configured with a policy route map on a BRI interface, might not forward packets to the next hop as specified in the set ip next-hop command.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk45874 A Cisco MC3810 reloads with the error “CPU exception: reason = FORCE_CRASH(959fd4)” if policy routing is configured. • CSCdk47222 Beginning in Cisco IOS Release 11.3(5) and 11.3 (5)T, DNS A RR responses will be dropped by NAT, if the packet is going from NAT outside to NAT inside, and the inside source mapping has an access-list which permits any, and the embedded IP address is an OUTSIDE GLOBAL address.
Resolved Caveats—Cisco IOS Release 12.0(2) ISO CLNS • CSCdk37556 A router might fail if the distribute-list out command is configured with IS-IS as the routing protocol. For example: router protocol distribute-list acl out isis This failure can occur when configuring any IP routing protocol. The distribute-list command does not work with IS-IS, so the specification of IS-IS routing protocol in the distribute-list command is invalid. The failure occurs because the invalid input is not handled correctly.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk17038 The router reloads when configuring the crypto key and named-key commands. The router boots up after the reload, but it does not load the configuration from NVRAM even though the configuration register is set to 0xE002. • CSCdk19122 The CT1-PA and CE1-PA, when configured with the compress stac command, in a system with a CSA-PA (hardware compression PA), experiences memory leakage in the pool manager.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk34205 If you are using NFAS with a backup D-channel and the primary D-channel goes down, modem calls might fail to be accepted into the access-server. Enabling the debug modem csm command displays the “dchan_idb state is not up” error message. • CSCdk34893 A router fails right after the user configures an S/T BRI interface into the 128-kbps leased-line mode. There is no workaround.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk40947 When the link(s) between redundant ATM ARP servers breaks, then the ARP servers keep trying to contact each other to repopulate the ARP cache. Due to excessive signalling the CPU load on the routers and ATM switches can rapidly reach 99%. The workaround is to use only one ARP server or to put them on very stable links. • CSCdk41708 There is a limitation of 25 encryption maps on an any VIP.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk46577 On VIP interfaces where CEF is required to run encryption, a connection cannot be initiated from the VIP side. A workaround is to initiate the connection from a peer router (if the peer has a non-VIP interface). Encryption works properly in this case. On non-VIP interfaces with CEF enabled, encryption does not work properly, and packets are sent in the clear. CEF must be disabled for encryption to work.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk50099 Packets larger than 1010 bytes fail to be transmitted on the BRI interface of a Cisco 7200 series router when WFQ is enabled (default queuing). Workaround: Enable FIFO queuing on the interface. • CSCdk50394 If an Ethernet or FDDI interface goes down for any reason other than administrative shutdown (for example, a cable is pulled), when the interface comes up, CEF adjacencies that existed before the down event do not come up.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk54726 An LLC2 connection coming in from TR-ISL on a router and that should pass by way of DLSw can experience a setup failure. The debug command indicates “DLSw: failure - sap entry is not valid.” Workaround: Configure TR-ISL multiring on the FE subinterface although this is not normally required for SRB traffic. • CSCdk55854 The VIP fails when FEPA is configured for ISL and in the other bay a CT1 port adapter is installed.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk13645 When using IPX Enhanced IGRP incremental SAP updates (RSUP), the server tables between two or more Enhanced IGRP neighbors might become inconsistent. Specifically, the problem might occur when as few as three dozen servers go away at the same time, while the routes to those servers remain in the routing table, and if there are multiple Enhanced IGRP neighbors or paths to a neighbor.
Resolved Caveats—Cisco IOS Release 12.0(2) It is most easily seen by issuing the command show proc mem, and watching the growth of the “Holding” memory by the “IPX SAP In” process: PID TTY Allocated Freed Holding Getbufs Retbufs Process 44 0 14265416 201472 8360984 21924 0 IPX SAP In Also, memory is being allocated to large number of IPX SAP PH, IPX NDB PH, and IPX USV processes, as shown by the command show memory summary.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk33096 When the SERVICE messages are exchanged with the Routers for ISDN PRI interfaces, if the B-channels are transitioned from Out-of-service state to In-service state, the B-channel count does not get updated. This can prevent the router from dialing out or accepting incoming voice/modem calls. The remote callers get a fast busy signal. • CSCdk36358 On Cisco 3600 series routers, modems might repeatedly be unable to connect on the B-channel.
Resolved Caveats—Cisco IOS Release 12.0(2) • CSCdk46784 Router might fail when running VPDN L2F sessions over ISDN. • CSCdk46815 LANE client might be dropped on a Cisco 7200 router. The workaround is to disable the SSCOP quick poll. • CSCdk47523 An attempt to switch an incoming call, when all outgoing channels are in use, causes a memory leak. • CSCdk48335 You cannot send break signal to a device connected to the asynchronous port on a Cisco 2511, through a PAD connection.
Cisco Connection Online Cisco Connection Online Cisco Connection Online (CCO) is Cisco Systems’ primary, real-time support channel. Maintenance customers and partners can self-register on CCO to obtain additional information and services. Available 24 hours a day, 7 days a week, CCO provides a wealth of standard and value-added services to Cisco’s customers and business partners.
Documentation CD-ROM Documentation CD-ROM Cisco documentation and additional literature are available in a CD-ROM package, which ships with your product. The Documentation CD-ROM, a member of the Cisco Connection Family, is updated monthly. Therefore, it might be more current than printed documentation. To order additional copies of the Documentation CD-ROM, contact your local sales representative or call customer service. The CD-ROM package is available as a single package or as an annual subscription.
Documentation CD-ROM This document is to be used in conjunction with release notes for Cisco IOS Release 12.0.