The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
Contents
Cisco Evolved Programmable Network Manager, Release 8.1.1
Cisco Evolved Programmable Network Manager, Release 8.1.1
Cisco EPN Manager software is distributed with all the components necessary for its optimized and secure operation, including the Red Hat Linux operating system and the Oracle database. All security-related configurations, regression testing, performance, and scalability metrics are based on the set of components and configurations included in the original Cisco EPN Manager software distribution. Cisco provides periodic EPN Manager software updates that can also contain necessary updates to the packages installed on the operating system or to the database.
This section provides a brief description of the new software features introduced in this release.
New operating system support
This section lists the new OS support provided in this release. For a list of all support information, click the gear icon at the top-right of the web GUI and choose Help > Supported Devices.
Table 1. Cisco Network Convergence System 540/540L Series Routers
Device model |
Device OS |
Cisco NCS 540/540L Series Router |
IOS-XR 24.2.21 |
Cisco NCS 540/540L Series Router |
IOS-XR 24.4.2 |
Cisco NCS 540/540L Series Router |
IOS-XR 25.1.1 |
Table 2. Cisco Network Convergence System 560 Series Routers
Device model |
Device OS |
Cisco NCS 560 Series Router |
IOS-XR 24.2.21 |
Cisco NCS 560 Series Router |
IOS-XR 24.4.2 |
Cisco NCS 560 Series Router |
IOS-XR 25.1.1 |
Table 3. Cisco Network Convergence System 5500/5700 Series
Device model |
Device OS |
Cisco NCS 5500/5700 Series Router |
IOS-XR 24.2.21 |
Cisco NCS 5500/5700 Series Router |
IOS-XR 24.4.2 |
Cisco NCS 5500/5700 Series Router |
IOS-XR 25.1.1 |
Table 4. Cisco Aggregation Services Routers 9000 Series
Device model |
Device OS |
Cisco ASR 9000 Series Router |
IOS-XR 24.2.21 |
Cisco ASR 9000 Series Router |
IOS-XR 24.4.2 |
Cisco ASR 9000 Series Router |
IOS-XR 25.1.1 |
Table 5. Cisco 8000 Series Routers
Device model |
Device OS |
Cisco 8000 Series Routers |
IOS-XR 24.2.21 |
Cisco 8000 Series Routers |
IOS-XR 24.4.2 |
Cisco 8000 Series Routers |
IOS-XR 25.1.1 |
Table 6. Cisco IOS XRv 9000 Series Router
Device model |
Device OS |
Cisco IOS XRv 9000 Series Router |
IOS-XR 24.2.21 |
Cisco IOS XRv 9000 Series Router |
IOS-XR 24.4.2 |
Cisco IOS XRv 9000 Series Router |
IOS-XR 25.1.1 |
Table 7. Cisco Aggregation Services Routers 900 Series
Device model |
Device OS |
Cisco ASR900 Series Router |
IOS XE 17.15.3a |
Table 8. Cisco Network Convergence System 4200 Series
Device model |
Device OS |
Cisco NCS4200 Series Router |
IOS XE 17.15.3a |
Table 9. Cisco Network Aggregation Services Routers
Device model |
Device OS |
Cisco ASR902U Series Router |
IOS XE 17.15.3a |
Cisco ASR902U Series Router |
IOS XE 17.15.3b |
Table 10. Cisco Network Convergence System 2000 Series Routers
Device model |
Device OS |
Cisco NCS2000 Series Router |
NCS2000 25.1.1 |
This section provides a brief description of the new hardware features introduced in this release.
Table 11. Supported platforms and modules in EPN Manager
Platform/Module |
EPN Manager support type |
IOS-XR version |
8712-MOD-M |
New Device + Chassis View |
25.1.1 |
8011-4G24Y4H-I |
New Device + Chassis View |
25.1.1 |
A9K-4HG-FLEX-X-SE |
Chassis View |
25.1.1 |
Coherent pluggable optics modules
This release introduces support for new 100G and 400G coherent optics modules across multiple platforms. These modules are now fully supported by Cisco EPN Manager for inventory, fault, and performance management for the Cisco 8000 Series Routers, Network Convergence System 55/57 Series Routers and Network Convergence System 540 Series Routers.
Table 12. RON pluggable
Platform |
PID(s) |
Form factor |
Cisco 8000 |
DP04QSDD-ULH-19B |
400G DCO |
NCS55/57 |
DP04QSDD-ULH-19B |
400G DCO |
NCS 540 |
DP01QS28-E20 |
100G DCO.1.1 |
This table lists the resolved issues in this specific software release.
Note: This software release may contain bug fixes first introduced in other releases. To see additional information, click the bug ID to access the Cisco Bug Search Tool.
Table 13. Resolved issues for Cisco Evolved Programmable Network Manager, Release 8.1.1
Bug ID |
Description |
Evaluation of Evolved Programmable Network Manager for Apache Tomcat RCE 2025 Vuln |
|
Y1731 statistics service API with circuit name not returning value and stuck in scaled setup |
|
Radius connectivity check report Exception: Not a valid RADIUS Server |
|
PLDT setup MLT is failing to open for ODU Link E2E |
|
Cisco EPN Manager: OSPF instance change not reflected in Cisco EPN Manager GUI |
|
ORA-01795 error in IFMPostCollectionHook.java |
|
Route Target Direction values are incorrectly populated in VRF Addition for L3VPN Circuit modify |
|
Cisco EPN Manager RESTCONF API allows OTDR SOR file download even scan failure to align with GUI and CTC behavior |
|
Service discovery analyzer: Error in investigation: Error on validate DB Object |
|
Duplicate entries in CPU and memory dashlet in device details |
|
Inconsistent number of records in batch retrieval for API /restconf/data/v1/cisco-service-network:virtual-connection?type=carrier-ethernet-vpn&.startIndex=0&.maxCount=100&.skipRelatedVC=true& parallelism=true |
|
Inventory Page throwing error for Admin User |
|
Alarm and Events - Events- Tab- UI page consumes all available client device memory (RAM) |
|
Cisco EPN Manager Template: Partial-Success for IOS-XR when 'copy running-config to startup-config' is enabled |
|
Issue with TACACS Interface Selection in Cisco EPN Manager |
|
Missing Standby Path Details in Circuit History Export CSV |
|
Configuration Archive Advance filtering not working for "is not blank" and "blank" for Tag. |
Table 14. Closed issues for Cisco Evolved Programmable Network Manager, Release 8.1.1
Bug ID |
Description |
Click back to one level in the power module view provided front view rather than rear view |
|
Click on refresh, it brings up the “The interface is not supported in Chassis view” |
Software modification guidelines
Cisco EPN Manager is distributed with all required components, including Red Hat Linux and Oracle Database, fully optimized and tested for secure operation. Cisco will not support environments where any of the following changes are made:
● Modifications to software or operating system configurations.
● Installation of third-party software directly on the embedded OS.
● Application of patches or updates not provided by Cisco.
● Internal setting changes undocumented in official Cisco guides.
Limitations on carrier ethernet circuit provisioning
● Promotion of services using the old probe name format is now supported. These probes are listed in the user interface with the appropriate standard OAM Profile name after promotion.
Sample profile: profile PM2_3_8_CoS5_DM type cfm-delay-measurement.
● While custom profile names are supported in Cisco EPN Manager, modifying brownfield services with a different naming format deletes the existing custom profile and adds a new profile with a supported naming format.
● Inventory models do not correctly display the profiles that are not associated to a service.
● The validation limit for the number of profiles is 100. If you create a new SLA operation profile after 100 existing profiles, the device generates an error and deployment fails.
Securing user inputs to prevent XSS vulnerabilities
Cross-site Scripting (XSS) is a security vulnerability that allows attackers to inject malicious scripts into applications. These scripts can be used to steal information or perform other malicious actions. To safeguard the Cisco EPN Manager, it is crucial to avoid certain patterns in user input fields and POST/PUT payloads.
The following patterns have been identified as vulnerable and are blocked by the Cisco EPN Manager's XSS prevention feature. The Cisco EPN Manager will not execute the command or proceed to the next step if it finds these patterns; therefore, ensure they are not used in user inputs or API calls.
● src=’…’(multiline, case insensitive pattern): Avoid using src=followed by any text or newline within single quotes. For example,<img src='malicious_code'>.
● src=”…”(multiline, case insensitive pattern): Avoid using src=followed by any text or newline within double quotes. For example,<img src="malicious_code">.
● </script>(case insensitive pattern): Avoid using the closing script tag in any form.
● <script…>(multiline, case insensitive pattern): Avoid using the opening script tag with any content inside.
● eval(…)(multiline, case insensitive pattern): Avoid using the eval function in any context. For example, eval('malicious_code').
● expression(…)(multiline, case insensitive pattern).
● javascript(case insensitive pattern): Avoid using javascript: protocol in any field.
● vbscript:(case insensitive pattern): Avoid using vbscript: protocol.
● onload…=(multiline, case insensitive pattern): Avoid using event handlers like onload in any of the fields.
● <…>(multiline, case insensitive pattern).
● <script…/script>(multiline, case insensitive pattern): Avoid any complete script tags with content.
Upgrade issues
● Active Threshold Crossing Alarms (TCA) for temperature remain active and are not cleared automatically. Clear these alarms manually.
● You must resync your devices to view ISIS links.
● You must resync LDP-enabled devices to view LDP feature-related information.
● You must recreate the TCAs for inbound/outbound errors and inbound/outbound discards in the Interface Health monitoring policy.
Upgrade and downgrade paths
The following table lists the valid paths for installing/upgrading to Cisco EPN Manager 8.1.1 from previous versions.
Table 15. Upgrade path for Cisco EPN Manager 8.1.1
Current Cisco EPN Manager version |
Installation path to Cisco EPN Manager 8.1.1 |
Cisco EPN Manager 8.1 |
Cisco EPN Manager 8.1 > 8.11 |
Cisco EPN Manager 8.0 |
Cisco EPN Manager 8.0 > 8.1 > 8.1.1 |
CLI templates for configuring PTP commands
On ASR920 devices with software version 16.9.1, IEEE 1588-2008 BC/MC license is required to execute the 1588 PTP commands.
TLS 1.2 required for secured channel communication for HTTPS and TLS
Only Transport Layer Security (TLS) 1.2 is supported for HTTPS and TLS related secured communication, for example, RADIUS EAP-TLS.
Support for TLS 1.0, TLS 1.1, and all versions of SSL has been disabled due to security vulnerabilities.
All peer systems and clients that transact with Cisco EPN Manager using HTTPS/TLS must support TLS 1.2. If they do not support TLS 1.2, you must upgrade these systems. Wherever possible, the Cisco EPN Manager documentation highlights the potentially affected systems. Contact your Cisco representative for support in this regard, if necessary.
Unsupported hardware
● Cisco ME 1200 devices: The Y.1564 performance test does not work if the source/destination is a Cisco ME 1200 device.
● Cisco NCS 4200 devices with IOS-XE 16.8.1: The following features are not supported on Cisco NCS 4200 devices running IOS-XE 16.8.1.
Alarm profile
Configuration of SONET LOP and CT3 LOP from the GUI
Admin shut/no shut functionality on SONET/T1/T3 HOP/LOP
● Cisco NCS 540 and Cisco NCS 5500 devices: Cisco NCS 540 and Cisco NCS 5500 device series do not support Fault-OAM, Wrap-Protection, and BFD.
Unsupported software
● Configuration and inventory not supported for PTP templates: The behavior of modeling the configurations that are pushed through PTP templates may not work as expected because the model may not be in place for all the configurations that are pushed through PTP templates. Configuration/Inventory is not supported by these configurations.
● Deprecation of support for ONS 10.00.10, 10.01.00, 10.03.00: ONS 10.00.10, 10.01.00, 10.03.00 ONS 10.00.10, 10.01.00, and 10.03.00 are no longer supported on Cisco NCS 2002, Cisco NCS 2006, and Cisco NCS 2015 devices.
● Cisco EPN Manager provides essential support for a few selected UCS computer systems, Nexus series devices, and the CSR 1000v devices.
● LINK_DOWN alarms will not be generated when a link is down on sub interfaces in a Gig Port.
Table 16. Additional content
Document |
Description |
Cisco Evolved Programmable Network Manager 8.1 Installation Guide |
Cisco Evolved Programmable Network Manager 8.1 Installation Guide outlines system requirements, scalability limits, necessary prerequisites, and step-by-step instructions for installing Cisco EPN Manager 8.1. |
Cisco Evolved Programmable Network Manager 8.1 User and Administrator Guide |
Cisco EPN Manager Administrator Guide provides steps for getting started, configuring devices and inventory, setting up topology, monitoring health, managing alarms and circuits, and securing the system. |
A tool that enables the user to filter supported devices information in a user-friendly manner. It displays supported devices, device operating systems, and feature details for Cisco EPN Manager starting from 6.1 release onwards. |
|
Cisco Evolved Programmable Network Manager Supported SNMP Traps |
Cisco EPN Manager supported SNMP trap details—Descriptions, severities, and other trap information |
Cisco Evolved Programmable Network Manager Supported Syslogs |
Cisco EPN Manager supported syslog details—Descriptions, severities, and other syslog information |
Cisco Evolved Programmable Network Manager Supported TL1 Messages |
Cisco EPN Manager supported TL1 message details—Descriptions, severities, and other message information |
Cisco EPN Manager supported alarm details—Descriptions, severities, and other alarm information |
|
Cisco Evolved Programmable Network Manager 8.1 REST Conf NBI Guide |
RESTCONF Northbound APIs supported by Cisco EPN Manager, which OSS operators can use to integrate Cisco EPN Manager with their OSS system |
Cisco Evolved Programmable Network Manager 8.1 API Reference Guide |
Reference for the Cisco EPN Manager 8.1 application programming interface |
Cisco Evolved Programmable Network Manager 8.1 Command Reference Guide |
Instructions to configure and maintain the Cisco EPN Manager using the command-line interface (CLI) |
Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: www.cisco.com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R)
Any Internet Protocol (IP) addresses and phone numbers used in this document are not intended to be actual addresses and phone numbers. Any examples, command display output, network topology diagrams, and other figures included in the document are shown for illustrative purposes only. Any use of actual IP addresses or phone numbers in illustrative content is unintentional and coincidental.
© 2025 Cisco Systems, Inc. All rights reserved.