ExtremeXOS Release Notes Version 30.2.2
> Extreme Switch Security Assessment
Published August 2019
prev
|
next
Print this page
Email this topic
Feedback
View PDF
Download EPUB
Preface
Conventions
Text Conventions
Platform-Dependent Conventions
Terminology
Providing Feedback to Us
Getting Help
Related Publications
Overview
Security Information
OpenSSL Version
Linux Kernel
Upgrading ExtremeXOS
Default ExtremeXOS Settings
New Hardware Supported in ExtremeXOS 30.2.2
New and Corrected Features in ExtremeXOS 30.2
Fabric Attach Support for Multi-switch Link Aggregation Groups (MLAG) and Authentication
Ethernet Virtual Private Network (EVPN) Support for External Border Gateway Protocol (EBGP)
New Command to Configure Ethernet Ring Protection Switching (ERPS) Control MAC Address
Ability to Configure Ethernet Ring Protection Switching (ERPS) Ring ID
New Command for External Python Scripting Support
Stacking V400 Alternative Configuration Required for Certain Fiber Cables
New Command for Copying an Image from the Active to the Inactive Partition
ONEPolicy Classification Rule Precedence Re-ordering
CLI History Lookup
Command Line Interface (CLI) History Expansion
Support for Multiple Service-Unavailable VLANs for Network Login
Simple Loop Prevention Protocol (SLPP) Guard Feature
MAC Security (MACsec) Cipher Support
Remote End Advertised Ability
Dynamic Port Partitioning
Downloadable Optics Support (XMOD)
Dynamic Host Configuration Protocol (DHCP) Snooping and Address Resolution Protocol (ARP) Validation/Learning Configuration Persistence on Dynamic VLANs
New Policy Resource Profiles and Profile Modifier
Policy-Based Mirroring
Rule Trap and Syslog for Policy
New Access Control List (ACL) Match Condition
Enabling/Disabling Ports for a Multi-switch Link Aggregation Group (MLAG) ID
New Count Filter for Show Commands
Ability to Rename Existing MLAG Peers
Convergence End Point (CEP) Added to Network Login Authentication Protocol Order Command
Ability to Send Router Advertisements Only with Virtual Router Redundancy Protocol's (VRRP) Virtual Link Local Address (LLA)
Multiprotocol Label Switching (MPLS) Supported on ExtremeSwitching X590 Series Switches
Use Slot:Port Notation on Standalone Switches
New Command to Prevent Extended Edge Automatic Configuration from Running
Ability to Adjust Bootup Time
TLV Added for Interoperability between SLX and ExtremeXOS BGP Auto-peering Feature
New Hardware Supported in ExtremeXOS 30.2
Firmware Update Needed for ExtremeSwitching X465 Series Switches
Extreme Loop Recovery Protocol (ELRP) MAC Address Change
Changed Ping Behavior
Updating the Programmable Logic Firmware on the Summit X440-G2 and ExtremeSwitching X620 Series Switches
Extreme Hardware/Software Compatibility and Recommendation Matrices
Compatibility with Extreme Management Center (Formerly NetSight)
Supported MIBs
Tested Third-Party Products
Extreme Switch Security Assessment
Service Notifications
Limits
Open Issues, Known Behaviors, and Resolved Issues
Open Issues
Known Behaviors
Resolved Issues in ExtremeXOS 30.2.2
Resolved Issues in ExtremeXOS 30.2
Extreme Switch Security Assessment
DoS Attack Assessment
Tools used to assess DoS attack vulnerability:
Network Mapper (NMAP)
ICMP Attack Assessment
Tools used to assess ICMP attack vulnerability:
SSPing
Twinge
Nuke
WinFreeze
Port Scan Assessment
Tools used to assess port scan assessment:
Nessus