Whats New in Cisco IOS XE Cupertino 17.9.7
There are no new features in this release.
The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
There are no new features in this release.
There are no new features in this release. This release provides a fix for CSCwm57734: Dot1x auth fail vlan can't assign IP with dhcp.
There are no new hardware features in this release.
There are no new software features in this release.
There are no new software features in this release.
There are no new hardware features in this release.
There are no new software features in this release.
There are no behavior changes in Cisco IOS XE Cupertino 17.9.5.
There are no new features in this release. This release provides a fix for CSCwh87343: Cisco IOS XE Software Web UI Privilege Escalation Vulnerability. For more information, see Security Advisory: cisco-sa-iosxe-webui-privesc-j22SaA4z.
There are no new hardware features in this release.
Feature Name |
Description |
---|---|
Support for Wireless in a LISP VXLAN Fabric |
A LISP VXLAN Fabric supports wireless infrastructure and wireless clients through two modes: Fabric-enabled Wireless and Over-the-top (OTT) Centralized Wireless. In a Fabric-enabled Wireless deployment, the wireless infrastructure is integrated with the wired fabric network to provide a single overlay for the wired and wireless clients. In an OTT Wireless deployment, the wireless infrastructure uses the wired fabric network as a transport medium to carry the traditional wireless traffic. |
There are no behavior changes in Cisco IOS XE Cupertino 17.9.4.
There are no new hardware features in this release.
Feature Name |
Description |
---|---|
LISP VXLAN Fabric for a Wired Network |
A LISP VXLAN fabric is an enterprise solution that enables policy-based segmentation over a LISP-based fabric overlay across a Campus and Branch network. It uses a LISP-based control plane and VXLAN-based data plane. |
There are no behavior changes in Cisco IOS XE Cupertino 17.9.3.
There are no new hardware features in this release.
There are no new software features in this release.
There are no behavior changes in Cisco IOS XE Cupertino 17.9.2.
Feature Name |
Description and Documentation Link |
---|---|
Cisco Catalyst 9300LM Series Switches |
The following new models have been introduced in the series:
For more information about the hardware, see the Cisco Catalyst 9300 Series Switches Hardware Installation Guide. |
C9300X-24HX |
Stackable 24 Multigigabit Ethernet (100 Mbps or 1/2.5/5/10 Gbps) UPOE+ ports; PoE budget of 735W with 1100WAC power supply; supports StackPower+, StackWise-1T and C9300X-NM network modules. For more information about the hardware, see the Cisco Catalyst 9300 Series Switches Hardware Installation Guide. |
Cisco 10GBASE-LR/10GBASE-BR/25GBASE-BR Modules on C9300-NM-2Y |
On C9300-NM-2Y network module, the following SFPs are supported.
For information about the modules, see Cisco 25GBASE SFP28 Modules Data Sheet. For information about device compatibility, see the Transceiver Module Group (TMG) Compatibility Matrix. |
Feature Name |
Description |
---|---|
BGP EVPN VXLAN: TCP MSS Adjustment |
TCP MSS Adjustment: Introduces support for IPv4 and IPv6 TCP MSS Adjustment for EVPN Routed Overlay. |
DHCP Snooping with Egress SPAN on the same interface |
Introduces support for configuring concurrent DHCP Snooping and egress SPAN on the same interface for non-SDA deployments. |
Programmability
|
The following programmability features are introduced in this release:
|
Smart Licensing Using Policy
|
The following Smart Licensing Using Policy features are introduced in this release:
|
SMU Installation disabled in bundle mode |
Support for SMU installation is disabled in bundle mode. Installation is supported only in install mode. (Network Advantage) |
Support for PI SSH |
Cisco IOS SSH Server and Client support for the following encryption algorithms have been introduced: |
IPsec
|
The following IPsec features are introduced in this release:
|
SXP Version 5 |
SXP version 5 has been designed to export and import SXP mappings between specified SXP peers. (DNA Advantage) |
New on the WebUI |
|
There are no WebUI features in this release. |
Behavior Change |
Description |
---|---|
DHCP Egress Packets Captured in SPAN Sessions |
SPAN sessions capture Dynamic Host Configuration Protocol (DHCP) egress packets when DHCP snooping is enabled on the device. |
Last Reload Reason in show version command output |
The show version command output in User EXEC mode is modified. This applies only to stacked switches. Last reload reason does not display error now. |
MTU Packet Length |
Prior to 17.9.1, the device was sending four bytes more than the maximum allowed packet length. Starting this release, the device sends packets as per the standard allowed packet length. |
PTP: BMCA Tree Hierarchy |
PTP (Precision Time Protocol) profile is modified to create tree from Best Master Clock Algorithm (BMCA). To avoid faulty ports in the PTP topology, BMCA is made independent of the Spanning Tree Protocol (STP). |
RUM report throttling |
For all topologies where the product instance initiates communication, the minimum reporting frequency is throttled to one day. This means the product instance does not send more than one RUM report a day. The affected topologies are: Connected Directly to CSSM, Connected to CSSM Through CSLU (product instance-initiated communication), CSLU Disconnected from CSSM (product instance-initiated communication), and SSM On-Prem Deployment (product instance-initiated communication). This resolves the problem of too many RUM reports being generated and sent for certain licenses. It also resolves the memory-related issues and system slow-down that was caused by an excessive generation of RUM reports. You can override the reporting frequency throttling, by entering the license smart sync command in privileged EXEC mode. This triggers an on-demand synchronization with CSSM or CSLU, or SSM On-Prem, to send and receive any pending data. RUM report throttling also applies to the Cisco IOS XE Amsterdam 17.3.6 and later releases of the 17.3.x train, and Cisco IOS XE Bengaluru 17.6.4 and later releases of the 17.6.x train. From Cisco IOS XE Cupertino 17.9.1, RUM report throttling is applicable to all subsequent releases. |
show vlan mapping command output |
The show vlan mapping command output is modified. Information about Five GigabitEthernet interface is displayed in the output. |