New and Changed Information

This chapter contains the following sections:

New and Changed Information

This topic summarizes major new features and changes in Cisco APIC releases 6.2(1) through 6.2(3), including descriptions and links to relevant documentation.

Feature Changes by Release

Table 1. New Features and Changed Information for Cisco APIC Release 6.2(3)

Feature

Description

Where Documented

Support for running commands on multiple fabric nodes

Use the acidiag run fabriccmd command to run show commands on a single node, a list or range of nodes, all nodes in a pod, or all leaf or spine nodes, directly from the APIC. You can also run multiple commands in one operation by using a YAML input file.

fabriccmd command overview

MCP Support: Per-VLAN Disable Loop Protection Action

The MCP Support: Per-VLAN Disable Loop Protection Action feature is an enhancement to the ACI Miscabling Protocol (MCP), designed to prevent broad service outages caused by loop-detection actions. Previously, MCP loop protection only supported a "Port Disable" action, which shut down the entire physical port and affected all traffic, regardless of which VLAN was actually causing the loop. This new feature allows the fabric to selectively suspend only the specific VLAN where a loop is detected, ensuring that unaffected VLANs on the same port remain operational.

Mis-cabling Protocol Interface policy

Table 2. New Features and Changed Information for Cisco APIC Release 6.2(2)

Feature

Description

Where Documented

SNMP AES-256 Privacy Encryption

Added support for AES-256-bit encryption for SNMPv3 privacy. AES-256 can be configured as a privacy type via the APIC GUI or REST API. Requires NMS/SNMP poller stack version 5.8 or later. In mixed-mode fabrics, a fault is raised on nodes running versions earlier than 6.2(2).

Using SNMP

ERSPAN Type III (Version) Header Support

ERSPAN Type III introduces a flexible composite header designed to capture original frame parameters for improved network management, security monitoring, and precise latency analysis by providing deeper visibility into mirrored traffic.

About SPAN

SNMP AES-256 Privacy Encryption Support

The ACI fabric now includes support for the Advanced Encryption Standard (AES) 256-bit encryption algorithm for SNMPv3 privacy. AES-256, a symmetric encryption algorithm, utilizes a 256-bit key to ensure strong security for SNMP traffic. You can now choose AES-256 as a privacy type when configuring SNMP through the APIC GUI or REST API.

SNMP AES-256 Privacy Encryption

Table 3. New Features and Changed Information for Cisco APIC Release 6.2(1)

Feature

Description

Where Documented

TCP Syslog Sessions Support

APIC sends a KeepAlive packet over the syslog TCP sessions to ensure the connection is not considered idle or expired.

Creating a Syslog Destination and Destination Group

Local SPAN with the switch CPU as the destination

This feature allows you to send SPAN packets to the CPU port of the leaf switch for packet analysis.

CPU as a destination port for a SPAN session