Release Notes for Cisco Catalyst IE31xx Series Switches, Release 26.2.x

Available Languages

Download Options

  • PDF
    (289.8 KB)
    View with Adobe Reader on a variety of devices
Updated:September 27, 2026

Bias-Free Language

The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.

Available Languages

Download Options

  • PDF
    (289.8 KB)
    View with Adobe Reader on a variety of devices
Updated:September 27, 2026
 

Cisco Catalyst IE31xx Series Switches, Release 26.2.x. 3

New software features. 3

New hardware features. 4

Change in behavior 4

Resolved issues. 5

Open issues. 6

Known issues. 6

Supported hardware. 6

Supported software packages. 8

Related resources. 9

Legal information. 10

 


 

 

Cisco Catalyst IE31xx Series Switches, Release 26.2.x

This document provides release information for the following Catalyst IE31xx Series Switches:

●     Cisco Catalyst IE3100 Rugged Series

●     Cisco Catalyst IE3100 Heavy Duty Series

The Cisco Catalyst IE31xx Series Switches deliver mainstream adoption of Gigabit Ethernet connectivity in a compact, fixed form-factor switch that is purpose-built for a wide variety of extended enterprise and industrial applications in the most space-constrained scenarios.

New software features

This section provides a brief description of the new software features introduced in the Cisco IOS XE 26.2.x release.

IOS XE 26.2.1

Table 1.             New software features in release 26.2.1

Product Impact

Feature

Description

Security

Resilient Infrastructure

As part of Cisco’s Resilient Infrastructure program and Cisco’s commitment to secure infrastructure, this release includes additional changes aimed towards continuing to make Cisco IOS XE more secure by default. Note that some of these changes may require operational changes if you are not following secure best practices. This release includes the following changes:

●  The RADIUS client appends the Message-Authenticator attribute (Attribute 80 HMAC-MD5) to all outgoing Access-Request packets to mitigate cryptographic forgery and  Blast-RADIUS vulnerabilities (CVE-2024-3596).
●  The RADIUS client drops incoming Access-Accept, Access-Reject, and Access-Challenge packets if the Message-Authenticator is absent or invalid. Ensure AAA servers (example, Cisco ISE) are configured to return Attribute 80.
●  Outbound SSH connections enforce Trust-On-First-Use (TOFU). The device prompts to verify and store remote server host keys in the known-hosts database on first connection and validates against them on subsequent sessions.
●  Proxy ARP is disabled by default across all routed interfaces, SVIs, and sub-interfaces to reduce Layer 2 broadcast domains and prevent ARP spoofing. Configure the  ip proxy-arp command explicitly if required.
●  The embedded web server daemon is disabled by default on factory configurations to restrict unauthenticated management access. Web UI and RESTCONF require explicit enablement of the  ip http secure-server command.
●  The IOS XE device rejects unauthenticated NTP Mode 6 and Mode 7 control queries (monlist) to prevent NTP reflection and amplification DDoS attacks. Standard time synchronization (Modes 3 and 4) is unaffected.
●  System logging timestamps automatically include the four-digit calendar year (service timestamps log datetime msec year) to standardize multi-year audit logs and SIEM compliance.
●  Integrates Linux auditd inside Cisco IOx Guest Shell. All commands, system calls, and privilege escalation events (sudo) executed inside the container are forwarded to the host syslog facility.
●  Warning messages are emitted on the console and logged to syslog whenever legacy insecure protocols (telnet, ftp, tftp, http) are enabled in the configuration.
●  Real-time tracking of active insecure services is published to the operational database (operDB) and YANG data models, allowing management controllers (such as Cisco Catalyst Center) to monitor security compliance.

Upgrade

CIP password encryption

This feature provides enhanced security by converting legacy CIP passwords to the irreversible Type 8 (SHA-256) algorithm to resist cryptographic attacks. It ensures credential integrity and uninterrupted authentication across industrial deployments.

Enhanced Reliability

FlexLink+

FlexLink+ provides Layer 2 link redundancy without using STP. It supports active-standby failover on physical interfaces and EtherChannel bundles. VLAN load balancing lets both links forward traffic for different VLANs. After a failed link recovers, the preferred VLAN forwarding can be restored manually or automatically after a configured delay.

Security

HTTPS servers disabled by default except for express setup

Starting with Cisco IOS XE 26.2.1, HTTPS servers remain disabled by default, excluding express setup deployments which retain existing settings.

New hardware features

This section provides a brief description of the new hardware features introduced in the Cisco IOS XE 26.2.x release.

IOS XE 26.2.1

There are no new hardware features in this release.

Change in behavior

WebHelp documentation discontinued

Starting with Cisco IOS XE Release 26.2.1, WebHelp documentation is not available for Industrial Ethernet switches. We recommend using the product documentation available on Cisco.com.

MRP uses the VLAN 1 MAC address

Starting with Cisco IOS XE Release 26.2.1, MRP uses the MAC address of the VLAN 1 interface to identify the best manager host.

Memory-optimized hardware revisions use 2 GB DRAM

Starting with Cisco IOS XE Release 26.2.1, Cisco Catalyst IE3100 Series Switches include memory-optimized hardware revisions that use 2 GB DRAM instead of 4 GB DRAM. See Table 2 for the affected PIDs. Before deployment or upgrade, ensure that the device runs the minimum supported Cisco IOS XE release for the platform.

Table 2.               Memory-optimized hardware revisions

Product ID

 Hardware revision

IE-3100-18T2C-CC-E

V05

IE-3100-18T2C-E

V05

IE-3100-3P1U2S-E 

V03

IE-3100-4P2S-E

V05

IE-3100-4P2S-E++

V05

IE-3100-4T2S-E 

V05

IE-3100-6P2U2C-E 

V03

IE-3100-8P2C-E 

V05

IE-3100-8P2C-E++ 

V05

IE-3100-8T2C-E

V05

IE-3100-8T4S-E 

V05

IE-3100-8T4S-E++

V05

IE-3105-18T2C-E 

V05

IE-3105-18T2C-E++

V05

IE-3105-8T2C-E 

V05

Resolved issues

This section lists resolved issues in Cisco IOS XE Release 26.2.x.

Note: This software release may contain bug fixes first introduced in other releases. To see additional information, click the bug ID to access the Cisco Bug Search Tool.

IOS XE 26.2.1

Table 3.               Resolved issues in release 26.2.1

Bug ID

 Description

CSCwu58296

A Cisco Catalyst IE3100 switch could repeatedly restart when an 802.1X supplicant disconnected or its authentication state changed.

CSCwt37847

Cisco Catalyst IE3100 Series Switches may duplicate or loop IPv6 Router Advertisement and Neighbor Advertisement packets.

CSCwt95175

A Cisco Catalyst Industrial Ethernet switch may appear as Device Unresponsive after it is added to the Cisco Catalyst Center inventory.

Open issues

This table lists open issues in Cisco IOS XE 26.2.x release.

Note: This software release may contain open bugs first identified in other releases. To see additional information, click the bug ID to access the Cisco Bug Search Tool.

IOS XE 26.2.1

Table 4.               Open issues in release 26.2.1

Bug ID

 Description

CSCwv01266

Multicast traffic might be lost on Cisco Catalyst IE3100 switches after a reload.

Known issues

This section lists the limitations.

PoE configuration on Cisco Catalyst IE31xx Switch

Cisco Catalyst IE3100 Rugged Series PoE models include an integrated PoE boost power supply and adjust the PoE power budget according to the input voltage. For configuration information, see the Power over Ethernet Configuration Guide, Cisco Catalyst IE3100 Rugged Series Switches.

Note: Before changing the power budget, the minimum power requirements for the switch need to be considered as well. Please refer to the data sheet for your switch for more details.

To use the power supply's maximum supported wattage for the PoE budget, configure the power supply max wattage in global configuration mode as follows:

1.     Verify the maximum amount that the power supplies support for the PoE budget.

2.     Subtract the operating power of the IE31xx switch according to its data sheet from the maximum capacity of the power supply. This is your maximum PoE budget.

3.     Enter power inline max max-wattage to increase the PoE budget based on the power supplies used.

4.     max-wattage is the maximum available PoE power.

Supported hardware

This section lists the hardware support information.

Cisco Catalyst IE31xx Series Switches: Model numbers

This table lists the supported hardware models and the default license levels they are delivered with. For information about the available license levels, see the below section License Levels.

Table 5.        Hardware models and their default license levels

Model Number

Default License Level          

Description

IE-3100-4P2S-E

Network Essentials

4 x Gigabit Ethernet 10/100/1000 PoE/PoE+ RJ45 ports, 2 x 100/1000 SFP ports

IE-3100-8P2C-E

Network Essentials

8 x Gigabit Ethernet 10/100/1000 PoE/PoE+ RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 100/1000 SFP ports

IE-3100-18T2C-CC-E

Network Essentials

18 x Gigabit Ethernet 10/100/1000 RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 100/1000 SFP ports, conformal coating

IE-3100-4T2S-E

Network Essentials

4 x Gigabit Ethernet 10/100/1000 RJ45 ports, 2 x 100/1000 SFP ports

IE-3100-8T2C-E

Network Essentials

8 x Gigabit Ethernet 10/100/1000 RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 100/1000 SFP ports

IE-3100-8T4S-E

Network Essentials

8 x Gigabit Ethernet 10/100/1000 RJ45 ports, 4 x 100/1000 SFP ports

IE-3100-18T2C-E

Network Essentials

18 x Gigabit Ethernet 10/100/1000 RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 x 100/1000 SFP ports

IE-3105-8T2C-E

Network Essentials

8 x Gigabit Ethernet 10/100/1000 RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 x 100/1000 SFP ports

IE-3105-18T2C-E

Network Essentials

18 x Gigabit Ethernet 10/100/1000 RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 x 100/1000 SFP ports

IE-3100H-8T-E

Network Essentials

8 x Gigabit Ethernet 10/100/1000 M12 X-coded ports

IE-3100H-6FT2T-E

Network Essentials

6 x 10/100 Fast Ethernet M12 D-coded ports, 2 x Gigabit Ethernet 10/100/1000 M12 X-coded ports

IE-3100-3P1U2S-E

Network Essentials

3 x Gigabit Ethernet 10/100/1000 POE/POE+ RJ45 ports, 1 x Gigabit Ethernet 10/100/1000 4PPoE RJ45 ports, 2 x 100/1000 SFP ports

IE-3100-6P2U2C-E

Network Essentials

6 x Gigabit Ethernet 10/100/1000 POE/POE+ RJ45 ports, 2 x Gigabit Ethernet 10/100/1000 4PPoE RJ45 ports, 2 x dual-purpose 1000Base-T RJ45 or 2 x 100/1000 SFP ports

WebUI system requirements

The WebUI is a web browser-based switch management tool that runs on the switch. These subsections list the hardware and software required to access the WebUI.

Minimum hardware requirements

Processor speed

DRAM

Number of colors

Resolution

233 MHz
(We recommend minimum 1 GHz)

512 MB

(We recommend 1 GB DRAM)

256

 1280 x 800 or higher

Software requirements

Operating systems

●     Windows 10 or later

●     macOS 10.9.5 or later

Browsers

●     Google Chrome: Version 59 or later (On Windows and Mac)

●     Microsoft Edge

●     Mozilla Firefox: Version 54 or later (On Windows and Mac)

●     Safari: Version 10 or later (On Mac)

Supported software packages

This section provides information about the release packages associated with Cisco Catalyst Series switches.

Finding the software version

●     The package files for Cisco IOS XE software can be found on the system board's internal flash memory device (flash:) or an external USB, depending on the platform configuration.

●     Use the show version privileged EXEC command to display the software version running on the switch. The model name displayed at the end of the output reflects the factory configuration and does not change after software license upgrades.

●     Use the dir filesystem: privileged EXEC command to view the names and versions of software images stored in flash memory.

Software images for Cisco IOS XE 26.2.x

This table provides the filename for the Cisco IOS XE 26.2.x software image.

Table 6.    Software packages in Cisco IOS XE Release 26.2.x

Release

Image Type

Platform

File Name

Cisco IOS XE 26.2.1

Universal

IE3100 and IE3105

ie31xx-universalk9.26.02.01.SPA.bin

Software installation options

      To install and activate the specified file, and to commit changes to be persistent across reloads, enter this command: install add file filename [ activate commit]

      Note: For the install command to be successful, ensure that available flash space is at least twice the image size. If there is not enough space available in flash, you are advised to free up space in flash either by issuing the install remove inactive command or to manually clean up the flash by removing unwanted core files or any other files that occupy a large amount of space in flash.

This table lists the options for the install command for the Cisco Catalyst IE31xx Series Switches.  

Table 7.             Summary of software installation commands for install mode

Option

Description

activate [auto-abort-timer]

Activates the file and reloads the device. The auto-abort-timer keyword automatically rolls back image activation.

add file tftp:  filename

Copies the install file package from a remote location to the device and performs a compatibility check for the platform and image versions.

commit

Commit the changes to the load path.

remove

Remove installed packages.

Related resources

Table 8.        Additional references for Cisco Catalyst IE31xx Series Switches

Document

Description

Cisco IOS XE

Provides information about Cisco IOS XE.

Cisco Catalyst IE3100 Rugged Series Switches

Provides product documentation and support information for Cisco Catalyst IE3100 Rugged Series Switches.

Cisco Catalyst IE3100 Heavy Duty Series Switches

Provides product documentation and support information for Cisco Catalyst IE3100 Heavy Duty Series Switches.

Cisco Validated Designs

Provides information about Cisco Validated Designs.

Cisco MIB Locator

Provides tools for locating and downloading MIBs.

Cisco Profile Manager

Provides timely and relevant information from Cisco.

Cisco Services

Provides services that help you deploy, manage, optimize, and secure Cisco technologies to achieve your business outcomes.

Cisco Support

You can submit a service request here.

Cisco DevNet

Provides APIs, documentation, learning labs, sandboxes, and sample code for Cisco platforms.

Cisco Press

Provides general networking, training, and certification titles.

Cisco Warranty Finder

Provides warranty information for a specific product or product family.

Cisco Support Community

You can ask and answer questions, share suggestions, and collaborate with your peers.

Cisco Feature Navigator

You can browse Cisco products and find relevant features. It also allows you to compare platforms, determine common features between products, and identify unique product features.

The CFN also has a tab that provides a MIB Locator.

Cisco TAC

Provides the most up-to-date, detailed troubleshooting information. Go to Product Support and select your product from the list or enter the name of your product. Look under Troubleshoot and Alerts to find information for the problem that you are experiencing.

Documentation Feedback

To provide feedback about Cisco technical documentation, use the feedback form available in the right pane of every online document.

Licenses

You can find information about the licensing packages for features here.

Legal information

Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: https://www.cisco.com/c/en/us/about/legal/trademarks.html.

Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R)

Any Internet Protocol (IP) addresses and phone numbers used in this document are not intended to be actual addresses and phone numbers. Any examples, command display output, network topology diagrams, and other figures included in the document are shown for illustrative purposes only. Any use of actual IP addresses or phone numbers in illustrative content is unintentional and coincidental.

© 2026 Cisco Systems, Inc. All rights reserved.

Learn more