New and Changed Information
The following sections list the new hardware and software features that are supported by the Cisco ASR 1000 Series Routers for Cisco IOS XE Release 3.14.0S:
New Hardware in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S
No new hardware features were introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S.
New Software Features in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S
The following are the new software features introduced in Cisco ASR 1000 Series Aggregation Services Routers Release 3.14.0S:
DSP SNMP MIB
The DSP SNMP MIB feature provides additional DSPFARM profile objects to the CISCO-DSP-MGMT-MIB, which enables the profile objects to monitor and extract specific DSPFARM profile usage and have better control of resources. To locate and download MIBs for selected platforms, Cisco IOS XE software releases, and feature sets, use Cisco MIB Locator found at the following URL:
http://www.cisco.com/go/mibs
REST API Support for XE Platforms
Beginning with Cisco IOS XE 3.14.0S, the Cisco ASR 1000 Series Routers support REST APIs in the following functional areas:
- Save Configuration
- L2 Interfaces
- Bridge Domain
- VxLAN
- Multicast
- VRF
- VRF-Aware DNS
- OSPF
- BGP
- EIGRP
- VRF Routing Table
- NAT
- VPN site-to-site interface state
- LISP
- QoS
- HSRP
SSL Support for HSM/ACT2
For detailed information, see the following Cisco document:
Effective with Cisco IOS XE Release 3.14S, SSL VPN extends support for Hardware Service Module (HSM) through the SSL Support for HSM/ACT2 feature. This feature enables SSL VPN to establish SSL session with a peer when the cryptographic module is an HSM. HSM is a physical computing device that safeguards and manages digital keys for strong authentication and provides crypto processing. An example of HSM is e-token. These devices are either plug-in cards or external devices attached to computers or network devices. The HSM performs the following functions:
- Generates the cryptographic key
- Stores and manages the cryptographic key
- Proper use of cryptographic key and sensitive data
ZBFW Serviceability Phase III
The ZBFW Serviceability Enhancement feature enhances output of existing show commands and introduces new show and debug commands to display all the Zone-Based Firewall configuration information. The following commands were introduced or modified: debug platform condition feature fw controlplane level, show platform hardware qfp feature firewall, show policy-firewall config, show platform software firewall.
For detailed information, see the following Cisco document:
http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/security/s1/sec-s1-cr-book.html