Resolved Issues in ExtremeXOS 22.4

The following issues were resolved in ExtremeXOS 22.4. ExtremeXOS 22.4 includes all fixes up to and including ExtremeXOS 11.6.5.3, and earlier, ExtremeXOS 12.0.5, ExtremeXOS 12.1.7, ExtremeXOS 12.2.2-patch1-12, ExtremeXOS 12.3.6, ExtremeXOS 12.4.5, ExtremeXOS 12.5.5, ExtremeXOS 12.6.3, ExtremeXOS 12.6.5, ExtremeXOS 12.7.1, ExtremeXOS 15.1.5, ExtremeXOS 15.2.4, ExtremeXOS 15.3.3, ExtremeXOS 15.4.1, ExtremeXOS 15.5.1, ExtremeXOS 15.5.2, ExtremeXOS 15.6.1, ExtremeXOS 15.6.2, ExtremeXOS 15.7.1, ExtremeXOS 16.1, ExtremeXOS 16.1.2, ExtremeXOS 16.1.3, ExtremeXOS 21.1, ExtremeXOS 22.1, ExtremeXOS 22.2, and ExtremeXOS 22.3. For information about those fixes, see the release notes for the specific release.

Click to expand in new window

Resolved Issues, Platform-Specific, and Feature Change Requests (CRs) in 22.4

CR Number Description
General
xos0054568 ESVT fails to function with jumbo-sized loopback frames. The "show esvt traffic-test" output indicates the test completed successfully, but no frame counts are indicated.
xos0062785 Need a mechanism to avoid configuring static route gateway and local IP as the same.
xos0065833 Deleting user account causes ExtremeXOS to end unexpectedly with the message: "Process aaa pid 2251 died with signal 5".
xos0066935 Files are not deleted in standby nodes after removing files in master node which was created through "save" operation.
xos0066960 Setting a rate limit value, and then resetting back to default, does not return traffic back to 100% throughput. Traffic stops completely instead.
xos0067067 Need the ability to change a LAG‘s algorithm after LAG creation.
xos0067587 When running show tech-support command with user-created VRs, show configuration command does not display full configuration.
xos0067726 BOOTPRelay currently supports up to 4 servers per VR and 4 servers per VLAN. Need to increase support to up to 8 servers.
xos0067745 On ExtremeSwitching X690 and X870 series switches, "Rx Pkts Count" does not increment as shown in the command show port statistics when the L2 frame has EtherType as "none".
xos0068304 External PSU status appears as "failed" in "show power" command output even though it is not present.
xos0068323 In ExtremeXOS Python scripting, the argument sent to the command Exsh.clicmd is replicated 24 times.
xos0068810 SNMP walk on entPhysicalClass returns Other(1) instead of Fan(7) for fan trays.
xos0068888 When the command show tech-support all detail is executed after running enable cli-config-logging, messages beginning with "serial unknown" appear in the log. This issue also occurs when executed from a Telnet session.
xos0068902 On ExtremeSwitching X440-G2, X620, Summit X46-0G2 series switches, and SummitStack,configure port preferred medium copper on a disabled combo port makes its peer end active.
xos0069058 LACP packets are sent with VLAN tag 0 from backup node on a SummitStack.
xos0069070 The process BCMAsync stops processing with scaled route/ARP entries in hash table.
xos0069094 Unable to run the command unconfigure switch all on ExtremeXOS virtual machines.
xos0069114 The show configuration command output displays additional word "minutes" under "aaa" module when lockout-time-period is configured.
xos0069150 In the output of the show vlan command, ports can have both "!" and "*" flags set if the port is a share group port.
xos0069196 Inconsistent port learning flag appears in HAL with PVLAN and MLAG configuration.
xos0069206 After Enabling NTP on a VLAN, if the VLAN name is changed, the change is not reflected in show ntp.
xos0069210 Unable to create private VLAN with 32-character name if the first 31 characters match an existing private VLAN name.
xos0069450 Unable to filter link up/down log events based on port number.
xos0069580 The command show configuration bfd shows enable bfd vlan even though it is not explicitly enabled.
xos0069604 The process rtmgr ends unexpectedly with signal 11 after running "disable/enable ospf" in peer switch.
xos0069622 Process devmgr signal 11 crash occurs when executing debug cfgmgr command.
xos0069691 EXOS-VM displays coreDumpWrite failed error during bootup.
xos0069808 Kernel crash occurs when processing a IGMP packet with an invalid IP header length.
xos0069823 The output of the show fan command reports 0 RPM for other stack node‘s fans intermittently.
xos0066721 The command configure vlan untagged-ports auto-move needs to have inform as the default.
SummitStack
xos0057915 A SummitStack booted from factory default configuration (particularly after unconfigure switch all with no default or autoexec scripts) has the backup node with ports configured.
xos0058419
After rebooting a stack, error messages similar to the following appear for ports belonging to LAGs:
Erro:cm.sys.actionErr> Slot-2: Error while loading "ports": Speed change is not allowed on port 2:6 as it is a trunk member port.
xos0067001 With IPv4 bi-directional tarffic forwarded, rebooting the backup node causes the switch to stop responding and the message "Process epm pid 1393 died with signal 6" appears.
xos0068388 Unable to query objects in the extremeStackMemberTable and extremeStackingPortTable.
xos0068759 On Summit X460-G2 stacks, with IPv4 Unicast traffic, the backup node remains in the "present" state after rebooting.
xos0069761 Telneting to another slot does not work if the current logon user name has 6 or more greater characters.
xos0070043 In SummitStacks, backup nodes are frequently rebooted during SNTP updates.
ExtremeSwitching X440-G2 Series Switches
xos0062256 When auto-polarity is turned off, link comes up for straight cable rather than crossover connection.
xos0068490 On ExtremeSwitching X440G2-48P/48t switches, cable diagnostic script (cablediag.py) does not work.
xos0068737 PTPv2 packets are duplicated and egress at twice the incoming rate after enabling GPTP on the ingress ports.
ExtremeSwitching X690 Series Switches
xos0067675 EEE does not work on ExtremeSwitching X690-48t switches.
xos0067933 On ExtremeSwitching X690 series switches, the following behavior occurs when setting autonegotiation:
  • If you enable autonegotiation on a single port without specifying the advertised speed, the port is set to only advertise at 40Gb.
  • If you enable autonegotiation on multiple ports without specifying the advertised speed, the second port listed is only set to advertise at 40Gb, so the ports come up at 40Gb.
  • If you enable autonegotiation and specify the port speed, the port advertises both 40Gb and 100Gb.
xos0069669 ExtremeSwitching X690 stacks crash frequently when AoC QSFP28 cable is present in the stack.
xos0068870 BX40-D) transceivers, show port configuration display a media type of "NONE".
xos0068871 When using the OE Solutions RBT12SVX-IT4 (MGBIC-BX120-U) and RBT12SVX-IT5 (MGBIC-BX120-D) transceivers, media type appears as "NONE" when issuing the show port configuration command.
xos0068971 On ExtremeSwitching X690 series switches, port 72 configured for 25G does not link up with autonegotiation turned on.
ExtremeSwitching X620 Series Switches
xos0068344 On ExtremeSwitching X620 series switches, fiber combo ports do not come up when the preferred medium copper link is down.
xos0068874 On ExtremeSwitching X620 series switches, when using optic "SPG-DR-LX-IDFC-EX" from Source Photonics if auto-negotiation is turned "on" there is a traffic issue.
xos0069916 For ExtremeSwitching X620-10x, switches, frequent link flaps occur on 1m passive copper cable when connected with an Intel NIC card.
Summit X670-G2 Series Switches
xos0068353 For Summit X670-G2 series switches acting as a VRRP master, SSH session is not established for some prefixes after upgrading to ExtremeXOS 22.2.
Summit X770 Series Switches
xos0068553 The ARP learning rate on the Summit X770 series switches has decreased starting with ExtremeXOS 22.2 due to code infrastructure changes.
xos0069068 On Summit X770 and X670-G2 series switches with with IPv4 forwarding enabled and more than 32 ARPs, IPv4 unicast traffic destined to IPv4 addresses residing on port number 64 or higher may be dropped.
xos0069487 HAL process ends unexpectedly with signal 6 when switch boots up with PTP configurations.
ExtremeSwitching X870 Series Switches
xos0069072 On ExtremeSwitching X870 series switches, traffic ingressing ISC ports get forwarded on MLAG ports if ports are between 91–96.
Summit X460-G2 Series Switches
xos0069051 After 65,000 new FDB entries are learned, subsequent entries are continuously added and deleted.
xos0069998  
ACL
xos0048459 The following notification do not appear for all platforms while refreshing the policy.
<Noti:ACL.Policy.TotChanges> Policy:smart refresh:tmp_3198. Total number of changes 1.
xos0069576 Memory leak occurs in Policy process when flapping the interface.
BGP
xos0067757 After disabling BGP, and then executing <i>disable bgp neighbor all</i>, switch becomes unresponsive.
Identity Management
xos0066783 Using IDMgr, UPM, and Policy combination makes client not reachable untill IDMgr settles down.
MLAG
xos0066886 Continuously, restarting MLAG ports causes brief loops.
MPLS
xos0059159 An error message (EMS) is required when H-VPLS is down due to no pseudowire status support.
xos0068785 L2PT packets fail to switch over to backup path during failover.
xos0069696 Traffic is not forwarded in VPLS tunnel after disable/enable sharing on VMAN CEP ports.
xos0069800 After ESRP failover L2VPN session remain in signaling state with ESRP VPLS redundancy enabled.
NetLogin
xos0065868 With scaled NetLogin entries in policy mode, with convergence endpoint enabled, executing any show commands causes switch to stop responding.
Optics
xos0057140 Transceiver information for 40G Q+SR4 optic module shows invalid power and threshold values.
xos0067434 On ExtremeSwitching X440-G2 and X620 series switches, link flaps occur when inserting/removing the following optics: AFBR-709SMZ-EX1, AFCT-739SMZ-EX1, FTLX8574D3BCL-EX.
xos0067489 Link flaps occur when optic is removed, and then re-inserted, and after reboots.
xos0069737 The thresholds and status values shown in the command show ports transceiver information detail are not calculated properly for ExtremeSwitching X690 and X870 series switches.
xos0069888 Transceiver DDMI threshold, status, and measurement values on the ExtremeSwitching X870 and X690 series switches are incorrectly calculated.
xos0069657 When using 100FX with phy optic in ExtremeSwitching X620 series switches, false linkups occur after reboot.
OSPF
xos0066618 With OSPF enabled, the full length of long policy names do no appear in the output of show policy.
xos0068292 OSPF is not establishing session after deleting the policy and rebooting.
Policy
xos0066415 When configuring the maximum limit of 512 for FDB entries, if 600 MAC addresses are sent all the 600 MAC addresses are getting learned though the total users authenticated is only 512 in show netlogin. Also, after disabling policy, the rules are not unconfigured properly.
xos0068687 Multicast traffic sent to host randomly stops after enabling OnePolicy with PVID 4095.
xos0070546 If the configured web-redirect server IP address has a zero octect, all octets after the zero octet appear as zero as well in the redirect packet. For example, 10.10.0.10 appears as 10.10.0.0 on the client.
Security
xos0067280 Uploading a file using SFTP creates a read-only file on the switch.
xos0069140

The following are ExtremeXOS vulnerabilities due to scripting allowed when in FIPS mode:

Note: You must enable FIPS for this fix to take effect.
  • Escape from EXSH restricted shell (CVE-2017-14331)
  • Information disclosure (CVE-2017-14327)
  • Privilege Escalation (root interactive shell) (CVE-2017-14329)
  • Privilege Escalation (root interactive shell) (CVE-2017-14330)
The following are additional ExtremeXOS vulnerabilities:
  • Denial-of-service (CVE-2017-14328).
  • Session hijacking (CVE-2017-14332).
xos0069180 Cannot configure some IP security features after removing and adding ports from VLANs.
xos0069418 Policy, Python, and script files cannot be overwritten using SFTP in WinSCP client.
xos0070303 In the ExtremeXOS 22.4 User Guide, a note regarding MAC lockdown with Dot1x needs to be added. MAC lockdown feature does not work on static FDB entries.
SNMP
xos0061552

The ExtremeXOS SNMP client was adapted to work with Ridgeline, which had issues dealing with partial getbulk responses, so that you could either operate in standards-compliant mode or Ridgeline-compatible mode.

xos0062882 Whole MIB compilation gets stuck at EXTREME-V2-TRAP MIB.
xos0064666 ExtremeXOS can only return a limited set of values to indicate success or failure of the requested set/get operation, which is returned to the SNMP client as "commitFailed(14)".
xos0068767 Trap receiver configuration is not saved in ExtremeXOS when configured from Extreme Management Center.
xos0069715 Dynamically assigned IP addresses do not appear when an SNMP walk is done on OID 1.3.6.1.2.1.4.20 (IPAddrTable).
xos0069716 The IPAddrTable If index entry contains the Index value corresponding to the Rt-interface, and not to the corresponding VLAN interface.
SSH
xos0069061 Exsshd process ends unexpectedly with signal 11 during stack failover.
xos0069329 Disabling the MAC cipher "3des" with command configure ssh2 disable cipher 3des appears as configure ssh2 disable cipher 3des-cbc in output of show configuration exsshd command.
xos0069424 The output of the command show ssh2 private-key actually shows the private key, which could be a security threat.
xos0069476 A custom user cannot SSH into the switch if agent forwarding is enabled.
STP
xos0066518 LLDP packets are reflected back to the sender without echo kill in PVLAN.
xos0067824 STP BPDUs are continuously sent after enabling and disabling MSTP on an STP port.
xos0068911 After enabling STP auto-bind on a VLAN, removing all ports from the VLAN, and then adding them back, displays STP tag as "(none)" in the show ports information detail command.
xos0069755 Disabling an edge port incorrectly triggers a topology change.
xos0069318 When an ingress port is part of both tagged and untagged VLANs that are participating in MSTP, the BPDU is not processed.
VRRP
xos0067270 VRRP flap occurs with CPU congestion.