The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
This chapter describes the Cisco NX-OS in-service software upgrades (ISSU) and includes the following sections:
In a Nexus 7000 series chassis with dual supervisors, you can use the in-service software upgrade (ISSU) feature to upgrade the system software while the system continues to forward traffic. An ISSU uses the existing features of nonstop forwarding (NSF) with stateful switchover (SSO) to perform the software upgrade with no system downtime.
An ISSU is initiated through the command-line interface (CLI) by an administrator. When initiated, an ISSU updates (as needed) the following components on the system:
In a redundant system with two supervisors, one of the supervisors is active while the other operates in the standby mode. During an ISSU, the new software is loaded onto the standby supervisor while the active supervisor continues to operate using the old software. As part of the upgrade, a switchover occurs between the active and standby supervisors, and the standby supervisor becomes active and begins running the new software. After the switchover, the new software is loaded onto the (formerly active) standby supervisor.
An ISSU-based upgrade is a system-wide upgrade that applies the same image and versions across the entire system, including all configured virtual device contexts (VDCs). VDCs are primarily a control-plane and user-interface virtualization and cannot run independent image versions per virtualized resource.
Note | For complete information on VDCs, see the Cisco Nexus 7000 Series NX-OS Virtual Device Context Configuration Guide. |
The following table shows the licensing requirements for system-level high availability features
The ISSU feature requires no license. Any feature not included in a license package is bundled with the Cisco NX-OS system images and is provided at no extra charge to you. |
|
For a complete explanation of the Cisco NX-OS licensing scheme and how to obtain and apply licenses, see the Cisco Nexus 7000 Series NX-OS Licensing Guide.
An ISSU has the following limitations and restrictions:
Do not change any configuration settings or network connections during the upgrade. Any changes in the network settings may cause a disruptive upgrade.
In some cases, the software upgrades may be disruptive. These exception scenarios can occur under the following conditions:
Configuration mode is blocked during the ISSU to prevent any changes.
For more information about compatible upgrades and downgrades, see Cisco Nexus 7000 Series NX-OS Release Notes.
On a Nexus 7000 series with two supervisors, the ISSU process follows these steps:
Verifies the location and integrity of the new software image files
Verifies the operational status and the current software versions of both supervisors and all switching modules to ensure that the system is capable of an ISSU
Loads the new software image to the standby supervisor and brings it up to the HA ready state
Loads the new software image to the (formerly active) standby supervisor and brings it up to the HA ready state
Performs a nondisruptive upgrade of each switching module, one at a time
Upgrades the Connectivity Management Processor (CMP)
CMP is a Supervisor 1 only feature.
During the upgrade process, the system presents detailed status information on the console, requesting administrator confirmation at key steps.
This chapter describes the Cisco NX-OS in-service software upgrades (ISSU) and includes the following sections:
An ISSU may be disruptive if you have configured features that are not supported on the new software image. To determine ISSU compatibility, use the show incompatibility system command.
This example shows how to determine ISSU compatibility:
switch# show incompatibility system bootflash:n7000-s1-dk9.4.1.4.bin The following configurations on active are incompatible with the system image 1) Service : vpc , Capability : CAP_FEATURE_VPC_ENABLED Description : vPC feature is enabled Capability requirement : STRICT Disable command : Disable vPC using "no feature vpc" 2) Service : copp , Capability : CAP_FEATURE_COPP_DISTRIBUTED_POLICING Description : Distributed policing for copp is enabled. Capability requirement : STRICT Disable command : Disable distributed policing using "no copp distributed-polici ng enable”
Cisco Nexus 7000 Series NX-OS Fundamentals Configuration Guide | |
Cisco Nexus 7000 Series NX-OS Virtual Device Context Configuration Guide | |
Cisco Nexus 7000 Series NX-OS Licensing Guide |
No new or modified standards are supported by this feature, and support for existing standards has not been modified by this feature. |
To locate and download MIBs, go to the following URL: http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml |