Cisco
ASA Interim Release Notes
The software
images listed below are Interim releases.
They contain bug fixes which address specific
issues found since the last Feature or Maintenance release. The images are fully supported by Cisco
TAC and will remain on the download site only until the next Maintenance
release is available. If you do not have a specific problem
which is resolved by an Interim release, we recommend that you use the
Feature or Maintenance release images.
Important: These images were not fully regression
tested. Each individual fix was
unit tested, and the image has had a limited amount of automated regression
testing to confirm a baseline of functionality. Keep this testing status in mind if you decide to run them
in a production environment. We
strongly encourage you to upgrade to a fully tested Maintenance or Feature
release when it becomes available.
Revision: Version 9.1(3)2 – 10/28/2013
Files: asa913-2-smp-k8.bin
Defects resolved since 9.1.3:
DHCP relay binding limit of
100 should be increased to 500 |
|
ASA: multicast 80-byte
block leak in combination with phone-proxy |
|
ESP packet drop due to
failed anti-replay checking after HA failovered |
|
Traceback during child SA rekey |
|
ASA Management lost after a
few days of uptime |
|
Hostscan 3.1.03104 does not detect Kaspersky
AV 6.0 |
|
Watchdog due to access-list
change during uauth |
|
ASA: Data packets with
urgent pointer dropped with IPS as bad-tcp-cksum |
|
ASA traceback
with less PAT with huge traffic |
|
ASA does not send
Gratuitous ARP(GARP) when booting |
|
limitation of session-threshold-exceeded value is incorrect |
|
LU allocate xlate failed after Standby ASA traceback |
|
ASA: SIP inspection always
chooses hairpin NAT/PAT for payload rewrite |
|
ASA: HA state progression
failure after reload of both units in HA |
|
ASA: Watchdog traceback in DATAPATH thread |
|
ASA traceback
when using "Capture Wizard" on ASDM |
|
ASA TFW doesn't rewrite
VLAN in BPDU packets containing Ethernet trailer |
|
PP: VoIP interface fails
replication on standby due to address overlap |
|
ASA Assert in Checkheaps chunk create internal |
|
ASA A/A fover
automatic MAC address change causes i/f monitoring
to fail |
|
ASA-SM assert traceback in timer-infra |
|
ASA 9.0.3 traceback related to data-path |
|
Failover cluster traceback while modifying object groups via SSH |
|
ASA 8.2.5 snmpEngineTime displays incorrect values |
|
ASA/IKEv1-L2L: Do not allow
two IPsec tunnels with identical proxy IDs |
|
Traceback in Thread Name: DATAPATH-3-1281 Page fault: Address not mapped |
|
ASA 5585 - traceback after reconnect failover link and 'show run
route' |
|
ASA Traceback
When Debug Crypto Archives with Negative Pointers |
|
ASA 5512 - Temporary
security plus license does not add security context |
|
Safari crashes when use
scroll in safari on MAC 10.8 with smart-tunnel |
|
AnyConnect Copyright Panel and Logon Form message removed after upgrade |
|
ASA telnet limit reached
9.0.3 |
|
ASA after fover may not flush routes for an active grp in active/standby |
|
ASA traceback
in pix_startup_thread |
|
ASA drops packet as PAWS
failure after incorrect TSecr is seen |
|
ASA SCH Inventory message
incorrectly set at Severity 10 |
|
Failure when accessing CIFS
share with period character in username |
|
ASA does not pass
calling-station-id when doing cert base authentication |
|
ASA tears down SIP
signaling conn w/ reason Connection timeout |
|
Clientless SSL VPN:Unable to translate for
Japanese |
|
SNMP environmental
parameters oscillate on 5512,25,45 and 5550 platforms |
|
ASA traceback
when removing more than 210 CA certificates at once |
|
AnyConnect states: "VPN configuration received... has an invalid
format" |
|
ASA 5505: License Host
limit counts non-existent hosts |
|
ASA unable to remove ipv6
address from BVI interface |
|
ASA 8.4.7 Multi Context TFW
not generating any syslog data |
|
Certificate CN and ASA FQDN
mismatch causes ICA to fail. |
|
ASA - Default OSPF/EIGRP
route gone in Active unit |
|
ASA WebVPN:
Rewriter doesn't work well with Base path and HTTP POST |
|
Sustained high cpu usage in Unicorn proxy thread with jar file rewrite |
|
no debug all, undebug all CLI commands doesnt reset
unicorn debug level |
|
ASA:"IKEv2 Doesn't
have a proposal specified" though IKEv2 is disabled |
|
Add X-Frame-Options:
SAMEORIGIN to ASDM HTTP response |
|
ASA drops inbound traffic
from AnyConnect Clients |
|
Unable to launch ASDM with
no username/password or with enable password |
|
Crypto chip resets with
large SRTP payload on 5555 |