Whats New in Cisco IOS XE Cupertino 17.9.8
There are no new features in this release.
The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
There are no new features in this release.
There are no new features in this release.
There are no new features in this release. This release provides a fix for CSCwm57734: Dot1x auth fail vlan can't assign IP with dhcp.
|
Feature Name |
Description |
||
|---|---|---|---|
|
Cisco SFP Modules for Gigabit Ethernet Applications |
Supported transceiver module product numbers:
Compatible Supervisor modules:
For information about the module, see Cisco SFP Modules for Gigabit Ethernet Applications Data Sheet. For information about device compatibility, see the Transceiver Module Group (TMG) Compatibility Matrix. |
There are no new software features in this release.
There are no new software features in this release.
There are no new hardware features in this release.
There are no new software features in this release.
There are no behavior changes in Cisco IOS XE Cupertino 17.9.5.
There are no new features in this release. This release provides a fix for CSCwh87343: Cisco IOS XE Software Web UI Privilege Escalation Vulnerability. For more information, see Security Advisory: cisco-sa-iosxe-webui-privesc-j22SaA4z.
There are no new hardware features in this release.
|
Feature Name |
Description |
|---|---|
|
Support for Wireless in a LISP VXLAN Fabric |
A LISP VXLAN Fabric supports wireless infrastructure and wireless clients through two modes: Fabric-enabled Wireless and Over-the-top (OTT) Centralized Wireless. In a Fabric-enabled Wireless deployment, the wireless infrastructure is integrated with the wired fabric network to provide a single overlay for the wired and wireless clients. In an OTT Wireless deployment, the wireless infrastructure uses the wired fabric network as a transport medium to carry the traditional wireless traffic. |
There are no behavior changes in Cisco IOS XE Cupertino 17.9.4.
There are no new hardware features in this release.
|
Feature Name |
Description |
|---|---|
|
LISP VXLAN Fabric for a Wired Network |
A LISP VXLAN fabric is an enterprise solution that enables policy-based segmentation over a LISP-based fabric overlay across a Campus and Branch network. It uses a LISP-based control plane and VXLAN-based data plane. |
There are no behavior changes in Cisco IOS XE Cupertino 17.9.3.
There are no new hardware features in this release.
There are no new software features in this release.
There are no behavior changes in Cisco IOS XE Cupertino 17.9.2.
|
Feature Name |
Description and Documentation Link |
|---|---|
|
Multi-rate SFPs on C9400X-SUP-2 and C9400X-SUP-2XL Supervisor Modules |
On Cisco Catalyst C9400X-SUP-2 and C9400X-SUP-2XL Supervisor Modules, the following multi-rate SFPs are supported:
For information about the modules, see Cisco 25GBASE SFP28 Modules Data Sheet and Cisco 40GBASE QSFP Modules Data Sheet. For information about device compatibility, see the Transceiver Module Group (TMG) Compatibility Matrix. |
|
Feature Name |
Description |
|---|---|
|
Auto Negotiation on Cat9400X |
Introduces support for auto negotiation on Copper-based SFP modules for speed 25G and above, on Cisco Catalyst C9400X-SUP-2 and C9400X-SUP-2XL Supervisor Modules. (Network Essentials) |
|
BGP EVPN VXLAN: TCP MSS Adjustment |
TCP MSS Adjustment: Introduces support for IPv4 and IPv6 TCP MSS Adjustment for EVPN Routed Overlay. |
|
DHCP Snooping with Egress SPAN on the same interface |
Introduces support for configuring concurrent DHCP Snooping and egress SPAN on the same interface for non-SDA deployments. |
|
MACsec HA on 9400X Linecard Ports |
Introduces support for MACsec high availability on the line card ports on system configured with C9400X-SUP-2 and C9400X-SUP-2XL supervisor modules. |
|
MACsec XPN Support on 9400X Supervisor ports |
Introduces support for MACsec Extended Packet Numbering feature on the C9400X-SUP-2 and C9400X-SUP-2XL supervisor modules. |
|
Perpetual PoE Support on 9400X |
Introduces support for Perpetual POE on the C9400X-SUP-2 and C9400X-SUP-2XL supervisor modules. Perpetual POE provides uninterrupted power to a connected powered device even when the power sourcing equipment switch is booting up. Support for this feature has been introduced (Network Essentials) |
|
Programmability
|
The following programmability features are introduced in this release:
|
|
Smart Licensing Using Policy
|
The following Smart Licensing Using Policy features are introduced in this release:
|
|
SMU Installation disabled in bundle mode |
Support for SMU installation is disabled in bundle mode. Installation is supported only in install mode. (Network Advantage) |
|
Support for 432 Port Channels on 9400X |
On Cisco Catalyst C9400X-SUP-2 and C9400X-SUP-2XL Supervisor Modules, Cisco StackWise Virtual supports up to 432 MECs deployed in Layer 2 or Layer 3 modes. EtherChannels 127 and 128 are reserved for SVL connection. The EtherChannel ports can be configured as follows:
|
|
Support for 4K VLANs on 9400X |
Introduces support for 4K active VLANs on Cisco Catalyst C9400X-SUP-2 and C9400X-SUP-2XL Supervisor Modules. |
|
Support for PI SSH |
Cisco IOS SSH Server and Client support for the following encryption algorithms have been introduced: |
|
SVL support on uplink and downlink with 9400X |
From Cisco IOS XE Cupertino 17.9.1, the SVL and DAD links are supported on the following SUP-2 and SUP2-XL and the already listed line cards:
(Network Advantage) |
|
SXP Version 5 |
SXP version 5 has been designed to export and import SXP mappings between specified SXP peers. (DNA Advantage) |
|
New on the WebUI |
|
| There are no WebUI features in this release. | |
|
Behavior Change |
Description |
|---|---|
|
Custom SDM Templates: Default FIB MAC Address Value |
The custom FIB MAC address minimum/default value is 16K. The configurable range for the number of 1k entries is 16 to 128. From Cisco IOS XE Cupertino 17.9.1, this is applicable to all subsequent releases. |
|
DHCP Egress Packets Captured in SPAN Sessions |
SPAN sessions capture Dynamic Host Configuration Protocol (DHCP) egress packets when DHCP snooping is enabled on the device. |
|
Disable 1G and lower speed SFPs/interfaces |
1G and lower speeds SFPs/interfaces are not supported on Cisco Catalyst 9400X Series Switches. From Cisco IOS XE Cupertino 17.9.1, this is applicable to all subsequent releases. |
|
MTU Packet Length |
Prior to 17.9.1, the device was sending four bytes more than the maximum allowed packet length. Starting this release, the device sends packets as per the standard allowed packet length. |
|
PTP: BMCA Tree Hierarchy |
PTP (Precision Time Protocol) profile is modified to create tree from Best Master Clock Algorithm (BMCA). To avoid faulty ports in the PTP topology, BMCA is made independent of the Spanning Tree Protocol (STP). |
|
RUM report throttling |
For all topologies where the product instance initiates communication, the minimum reporting frequency is throttled to one day. This means the product instance does not send more than one RUM report a day. The affected topologies are: Connected Directly to CSSM, Connected to CSSM Through CSLU (product instance-initiated communication), CSLU Disconnected from CSSM (product instance-initiated communication), and SSM On-Prem Deployment (product instance-initiated communication). This resolves the problem of too many RUM reports being generated and sent for certain licenses. It also resolves the memory-related issues and system slow-down that was caused by an excessive generation of RUM reports. You can override the reporting frequency throttling, by entering the license smart sync command in privileged EXEC mode. This triggers an on-demand synchronization with CSSM or CSLU, or SSM On-Prem, to send and receive any pending data. RUM report throttling also applies to the Cisco IOS XE Amsterdam 17.3.6 and later releases of the 17.3.x train, and Cisco IOS XE Bengaluru 17.6.4 and later releases of the 17.6.x train. From Cisco IOS XE Cupertino 17.9.1, RUM report throttling is applicable to all subsequent releases. |
|
show vlan mapping command output |
The show vlan mapping command output is modified. Information about Five GigabitEthernet interface is displayed in the output. |