New in this Document

The following sections detail what is new in this document.

Ability to Configure Area Names for Multi-area SPB

You can configure the area name for home and remote areas.

For more information, see Configure an IS-IS Area Name.

Advanced Feature Bandwidth Reservation Enhancements

In earlier releases, 5520 Series switches automatically reserved Universal Ethernet ports (24 ports: 1/25 and 1/26, 48 ports: 1/49 and 1/50) as loopback ports for advanced features. Now, if a VIM is not present, 5520 Series switches automatically reserve the VIM slot as loopback ports for advanced features. When used as regular ports, the Universal Ethernet port speed is 40 Gbps as a single channel port. Although the maximum supported single channel port speed is 40 Gbps, the ports can be channelized to operate as four 10 or 25 Gbps channels.

If a VIM is present, the Universal Ethernet ports are used for SPB internal loopback.

For more information, see, advanced-feature-bandwidth-reservation Boot Flag

Auto-sense Enhancements

This release includes the following Auto-sense enhancements:

For more information, see Auto-sense.

Extreme Integrated Application Hosting Enhancements

VOSS enhances Extreme Integrated Application Hosting with the ability to view the application name and version used by the virtual service, force overwriting a saved Fabric IPsec Gateway configuration without confirmation, and also with the ability to perform specific actions in a virtual machine (VM) from the VOSS CLI.

For more information, see Extreme Integrated Application Hosting.

ExtremeCloud IQ Agent Firmware

A command is available to return the ExtremeCloud IQ Agent firmware version on the switch to the version bundled with the VOSS image currently installed on the switch, for example, if you downgrade the VOSS image version and do not reconnect to ExtremeCloud IQ automatically.

For more information, see Reinstall ExtremeCloud IQ Agent Firmware.

IPsec Fragmentation Before Encryption Enhancements

VSP 4900 Series and VSP 7400 Series switches support IPsec fragmentation before encryption of Fabric Extend tunnels using Fabric IPsec Gateway. EDM support for IPsec fragmentation before encryption is also added for XA1400 Series.

For more information, see IPsec Fragmentation Before Encryption.

IS-IS Hello Padding

To detect maximum transmission unit (MTU) mismatches, Intermediate System-to-Intermediate System (IS-IS) pads hello packets to the full interface MTU.

For more information, see IS-IS Hello Padding.

Link Debounce

Link Debounce protects the upper layers from unnecessary state changes by delaying the change of a port link state when the following situations occur:

For more information, see Link Debounce.

Other Command Enhancements

The following enhancements were made for the show i-sid mac-address-entry command:

For more information, see View C-MACs Learned on T-UNI Ports for an I-SID.

Secure Shell (SSH) Enhancements

This release includes the following SSH enhancements:

TCP Maximum Segment Size

The ability to adjust the TCP maximum segment size (MSS) is added for VSP 4900 Series and VSP 7400 Series. This functionality was previously supported only on XA1400 Series; configuration commands are modified from the original support.

Note

Note

If you configured this feature on XA1400 Series prior to VOSS 8.3.1, after you upgrade to VOSS 8.4.2 and save the configuration, the configuration uses the new commands. If you enabled the feature using an auto-derived value, the value is updated to 200 less than the tunnel MTU.

For more information, see Adjusting the TCP Maximum Segment Size.

XA1400 Series IPsec-Related Enhancements

For XA1400 Series branch deployments, the VOSS routing IP stack requires the VLAN Management Instance to work in coexistence mode where both the management IP stack and the routing IP stack share the same IP address and default routes. This configuration is required if you need to use the management IP as IPsec source address. You can use the propagate-to-routing command to propagate the management VLAN IP and static routes from the management IP stack to the VOSS routing IP stack on the same VLAN ID.

For more information, see Configure Management VLAN and VOSS Routing VLAN Coexistence Through Propagation.

When you deploy the XA1400 Series in an environment where you need more than one provider connection with IPsec, you can configure a source IP address for each IPsec tunnel. You can configure a static source IP address or you can dynamically obtain the source IP address from DHCP.

For more information, see IPsec Source IP Address Per Tunnel Interface.