The following sections detail what is new in this document.
The following commands are newly added to this document:
DHCP and UDP Configuration:
Fabric IPsec Gateway:
Fragmented ICMP Packet Filtering
Ingress Flow Policer
MACsec
Link Debounce:
PIM Infinite Threshold Policy for IPv4 and IPv6
Segmented Management Instance:
MACsec Key Agreement (MKA)
Other new commands:
The following commands are updated in this document:
TCP MSS:
Command |
Update |
---|---|
auto-negotiation-advertisements |
Added 25000-full parameter. |
certificate subject-name |
Added subject-name parameter. |
certificate subject-alternative-name subject-name |
Added subject-name parameter. |
filter acl set |
Added policer parameter. |
ike certificate-identity cert-subject-name |
Added new certificate-identity cert-subject-name parameter. |
ipsec auth-method rsa-sig |
Added new cert-subject-name parameter. |
ip icmp |
Added new drop-fragments parameter also for VRF. |
macsec connectivity-association (globally) |
Updated the connectivity-association key value to WORD <10-64>. |
mgmt vlan |
Added new i-sid parameter. |
show boot config flags |
Added new flags macsec parameter. |
show certificate ca |
Added new SubjectName parameter. |
show certificate subject |
Added new SubjectName parameter. |
show filter acl statistics |
Added new policer parameter. |
show ip dhcp-relay fwd-path |
Added new SRC PORT 67 parameter. |
show ip pim |
Updated the command example. |
show ipv6 pim |
Updated the command example. |
macsec connectivity-association |
Included a note for the key-parity <even|odd> parameter. |
show macsec mka profile |
Added new Include-SCI parameter. |
show web-server |
Added the following new parameters:
|
sys sys-default |
This command is deprecated. |
The following commands are removed from this document:
show interfaces gigabitethernet mac-security