Guest

Cisco MDS 9000 SAN-OS Software

Cisco MDS 9000 Family Release Notes for Cisco MDS SAN-OS Release 2.1(1b)

Table Of Contents

Cisco MDS 9000 Family Release Notes
for Cisco MDS SAN-OS Release 2.1(1b)

Contents

Introduction

System Requirements

Components Supported

Determining the Software Version

Image Upgrade

Performing a Disruptive Upgrade on a Single Supervisor MDS Family Switch

New Features in Cisco MDS SAN-OS Release 2.1(1b)

Limitations and Restrictions

Caveats

Resolved Caveats

Open Caveats

Related Documentation

Obtaining Documentation

Cisco.com

Documentation DVD

Ordering Documentation

Documentation Feedback

Cisco Product Security Overview

Reporting Security Problems in Cisco Products

Obtaining Technical Assistance

Cisco Technical Support Website

Submitting a Service Request

Definitions of Service Request Severity

Obtaining Additional Publications and Information


Cisco MDS 9000 Family Release Notes
for Cisco MDS SAN-OS Release 2.1(1b)


Release Date: July 25, 2005

Text Part Number: OL-7411-02 S0

This document describes the caveats and limitations for switches in the Cisco MDS 9000 Family. Use this document in conjunction with documents listed in the "Related Documentation" section.


Note Release notes are sometimes updated with new information on restrictions and caveats. Refer to the following website for the most recent version of the Cisco MDS 9000 Family Release Notes: http://www.cisco.com/en/US/products/hw/ps4159/ps4358/prod_release_notes_list.html


Table 1 shows the on-line change history for this document.

Table 1 On-Line History Change

Revision
Date
Description

A0

7/25/2005

Created release notes

B0

08/04/2005

Added DDTS CSCed57251, CSCeh61610, CSCeh64080, CSCec31365, CSCeg20932, CSCeg53114, CSCeh52280, CSCeh56143, CSCeh82490, CSCeh83514, CSCeh87985, CSCeg90336, CSCeh52973, CSCeh87930, CSCeh90270, CSCeh93625, CSCei01431, CSCeh73101, CSCei29086, CSCeh39705, CSCeh49483, CSCeh70727, CSCeh71865, CSCeh73149, CSCeh85768, CSCeh87930, CSCeh90270, CSCeh91293, CSCeh93109, CSCeh95139, CSCei02196, CSCei18837, CSCeh08307, CSCeh79330, CSCeh82166, CSCei08541, CSCei22596, CSCei31020, CSCei32317, and CSCei50995

Added iSCSI information to the Limitations and Restrictions section.

C0

08/05/2005

Added DDTS CSCeh41099

D0

08/11/2005

Added DDTS CSCeh70232

E0

08/22/2005

Removed DDTS CSCeh61610

F0

08/23/2005

Added DDTS CSCeh61610

G0

09/20/2005

Added DDTS CSCei88345

H0

11/03/2005

Added DDTS CSCeh69186

I0

12/07/2005

Added DDTS CSCsc31424

J0

12/30/2005

Added DDTS CSCei91968

J1

02/22/2006

Added DDTS CSCsc23435

K0

05/26/2006

Added DDTS: CSCed16845, CSCeg12383, CSCeg33121, CSCeg37598, CSCeg53114, CSCeg72539, CSCeg82721, CSCeg84871, CSCeh30951, CSCeh65824, CSCeh70232, CSCeh92604, CSCei10774, CSCei19822, CSCei32317, CSCei36082, CSCei79457, CSCei91968, CSCei48889, CSCei57342, CSCei58652, CSCei67982, CSCei86399, CSCei91676, CSCej08751, CSCin92870, CSCin95879, CSCsb89732, CSCsc09732, CSCsc33788, CSCsc48919, CSCsc97070, CSCsd07246, CSCsd29338, CSCsd30165, CSCsd71701, CSCsd72822, CSCsd76429, and CSCsd89872

L0

06/06/2006

Removed DDTS CSCed16845

M0

8/7/2006

Added DDTS CSCse84811

Removed DDTS CSCeg33121, CSCeg84871, CSCeh30951, CSCei36082, CSCec31365, CSCeg12383, CSCeg53114, CSCeg55238, CSCeh34828, CSCei48889, CSCei91676, CSCej08751, CSCin92870, CSCin95879, CSCsd71701.

N0

09/05/2006

Added DDTS CSCsd78967

O0

09/13/2006

Added DDTS CSCsf21970

P0

11/07/2006

Added DDTS CSCsg15392 and CSCin95789

Q0

02/23/2007

Added DDTS CSCse99087, CSCsg03171, and CSCsh27840.

R0

04/04/2007

Added the section "Performing a Disruptive Upgrade on a Single Supervisor MDS Family Switch".

S0

08/24/2007

Added DDTS CSCsd83775.


Contents

This document includes the following sections:

Introduction

System Requirements

Image Upgrade

New Features in Cisco MDS SAN-OS Release 2.1(1b)

Limitations and Restrictions

Caveats

Related Documentation

Obtaining Documentation

Documentation Feedback

Cisco Product Security Overview

Obtaining Technical Assistance

Obtaining Additional Publications and Information

Introduction

The Cisco MDS 9000 Family of multilayer directors and fabric switches offers intelligent fabric-switching services that realize maximum performance while ensuring high reliability levels. These switches combine robust and flexible hardware architecture with multiple layers of network and storage management intelligence. This powerful combination enables highly available, scalable storage networks that provide advanced security and unified management features.

The Cisco MDS 9000 Family provides intelligent networking features such as multiprotocol and multitransport integration, virtual SANs (VSANs), advanced security, sophisticated debug analysis tools, and unified SAN management.

System Requirements

This section describes the system requirements for Cisco MDS SAN-OS Release 2.1(1b) and includes the following topics:

Components Supported

Determining the Software Version

Components Supported

Table 2 lists the software and hardware components supported by the Cisco MDS 9000 Family.


Note To use the Cisco Storage Services Enabler package, Cisco MDS SAN-OS Release 1.3(5) or later must be installed on the MDS switch.


Table 2 Cisco MDS 9000 Family Supported Software and Hardware Components  

Component
Part Number
Description
Applicable Product

Software

M95S1K9-2.1.1B

MDS 9500 Supervisor/Fabric-I, SAN-OS Software Release 2.1.1b

MDS 9500 Series only

M92S1K9-2.1.1B

MDS 9216 Supervisor/Fabric-I, SAN-OS Software Release 2.1.1b

MDS 9200 Series only

M91S1K9-2.1.1B

MDS 9100 Supervisor/Fabric-I, SAN-OS Software Release 2.1.1b

MDS 9100 Series only

License

M9500ENT1K9

Enterprise package.

MDS 9500 Series

M9200ENT1K9

Enterprise package.

MDS 9200 Series

M9100ENT1K9

Enterprise package.

MDS 9100 Series

M9500FIC1K9

Mainframe package.

MDS 9500 Series

M9200FIC1K9

Mainframe package.

MDS 9200 Series

M9100FIC1K9

Mainframe package.

MDS 9100 Series

M9500FMS1K9

Fabric Manager Server package.

MDS 9500 Series

M9200FMS1K9

Fabric Manager Server package.

MDS 9200 Series

M9100FMS1K9

Fabric Manager Server package.

MDS 9100 Series

M9500EXT1K9

SAN Extension over IP package for IPS-8 module.

MDS 9500 Series

M9200EXT1K9

SAN Extension over IP package for IPS-8 module.

MDS 9200 Series

M9500EXT14K9

SAN Extension over IP package for IPS-4 module.

MDS 9500 Series

M9200EXT14K9

SAN Extension over IP package for IPS-4 module.

MDS 9200 Series

M9500EXT12K9

SAN Extension over IP package for MPS 14+2 module.

MDS 9500 Series

M9200EXT12K9

SAN Extension over IP package for MPS 14+2 module.

MDS 9200 Series

M9500SSE1K9

Storage Services Enabler package.

MDS 9500 Series with ASM or SSM

M9200SSE1K9

Storage Services Enabler package.

MDS 9200 Series with ASM or SSM

Chassis

DS-C9509

MDS 9509 director, base configuration (9-slot modular chassis includes 7 slots for switching modules and 2 slots for supervisor modules—SFPs1 sold separately).

MDS 9509 only

DS-C9506

MDS 9506 director (6-slot modular chassis includes 4 slots for switching modules and 2 slots for supervisor modules—SFPs sold separately).

MDS 9506 only

DS-C9216-K9

MDS 9216 16-port semi-modular fabric switch (includes 16 1-Gbps/2-Gbps Fibre Channel ports, power supply, and expansion slot—SFPs sold separately).

MDS 9216 only

DS-C9216A-K9

MDS 9216A 16-port semi-modular fabric switch (includes 16 1-Gbps/2-Gbps Fibre Channel ports, power supply, and expansion slot—SFPs sold separately).

MDS 9216A only

DS-C9216i-K9

MDS 9216i 16-port semi-modular fabric switch (includes 14 1-Gbps/2-Gbps Fibre Channel ports, 2 Gigabit Ethernet ports, power supply, and expansion slot—SFPs sold separately).

MDS 9216i only

DS-C9120-K9

MDS 9120 fixed configuration, non-modular, fabric switch (includes 4 full rate ports and 16 host-optimized ports).

MDS 9120 only

DS-C9140-K9

MDS 9140 fixed configuration (non-modular) fabric switch (includes 8 full rate ports and 32 host-optimized ports).

MDS 9140 only

Supervisor modules

DS-X9530-SF1-K9

MDS 9500 Supervisor/Fabric-I, module.

MDS 9500 Series only

Switching modules

DS-X9016

MDS 9000 16-port 1-Gbps/2-Gbps Fibre Channel module (SFPs sold separately).

MDS 9500 Series and 9200 Series

DS-X9032

MDS 9000 32-port 1-Gbps/2-Gbps Fibre Channel module (SFPs sold separately).

Services modules

DS-X9308-SMIP

8-port Gigabit Ethernet IP Storage Services module.

DS-X9304-SMIP

4-port Gigabit Ethernet IP Storage Services module.

DS-X9032-SMV

32-port Fibre Channel Advanced Services Module (ASM).

DS-X9032-SSM

MDS 9000 32-port 1-Gbps/2-Gbps Fibre Channel Storage Services Module (SSM).

DS-X9560-SMC

Caching Services Module (CSM).

DS-X9302-14K9

14-port Fibre Channel/2-port Gigabit Ethernet Multiprotocol Services (MPS-14/2) module.

LC-type fiber-optic SFP

DS-SFP-FC-2G-SW

2-Gbps/1-Gbps Fibre Channel — short wavelength SFP.

MDS 9000 Family

DS-SFP-FC-2G-LW

2-Gbps/1-Gbps Fibre Channel — long wavelength SFP.

DS-SFP-FCGE-SW

1-Gbps Ethernet and 1-Gbps/2-Gbps Fibre Channel—short wavelength SFP.

DS-SFP-FCGE-LW

1-Gbps Ethernet and 1-Gbps/2-Gbps Fibre Channel — long wavelength SFP.

CWDM2

CWDM-SFP-xxxx-2G

Gigabit Ethernet and 1-Gbps/2-Gbps Fibre Channel SFP LC interface xxxx nm, where xxxx = 1470, 1490, 1510, 1530, 1550, 1570, 1590, or 1610 nm.

MDS 9000 Family

CWDM-MUX-4

Add/drop multiplexer for four CWDM wavelengths.

CWDM-MUX-8

Add/drop multiplexer for eight CWDM wavelengths.

CWDM-CHASSIS-2

Two slot chassis for CWDM add/drop multiplexer(s).

Power supplies

DS-CAC-300W

300-W3 AC power supply.

MDS 9100 Series only

DS-CAC-845W

845-W AC power supply.

MDS 9200 Series only

DS-CAC-2500W

2500-W AC power supply.

MDS 9509 only

DS-CDC-2500W

2500-W DC power supply.

DS-CAC-4000W-US

4000-W AC power supply for US (cable attached).

DS-CAC-4000W-INT

4000-W AC power supply international (cable attached).

DS-CAC-1900W

1900-W AC power supply.

MDS 9506 only

DS-CDC-1900W

1900-W DC power supply.

CompactFlash

MEM-MDS-FLD512M

MDS 9500 supervisor CompactFlash disk, 512MB.

MDS 9500 Series only

Port analyzer adapter

DS-PAA-2

A standalone Fibre Channel-to-Ethernet adapter that allows for simple, transparent analysis of Fibre Channel traffic in a switched fabric.

MDS 9000 Family

1 SFP = small form-factor pluggable

2 CWDM = coarse wavelength division multiplexing

3 W = Watt


Determining the Software Version


Note We strongly recommend that you use the latest available software release supported by your vendor for all Cisco MDS 9000 Family products.


To determine the version of the Cisco MDS SAN-OS software currently running on a Cisco MDS 9000 Family switch using the CLI, log into the switch and enter the show version EXEC command.

To determine the version of the Cisco MDS SAN-OS software currently running on a Cisco MDS 9000 Family switch using the Fabric Manager, view the Switches tab in the Information pane, locate the switch using the IP address, logical name, or WWN, and check its version in the Release column.

Image Upgrade

The Cisco MDS SAN-OS software is designed for mission-critical high availability environments. To realize the benefits of nondisruptive upgrades on the Cisco MDS 9500 Directors, we highly recommend that you install dual supervisor modules.

You can nondisruptively upgrade to Cisco MDS SAN-OS Release 2.1(1b) from any SAN-OS software release beginning with Release 1.3(x). If you are running an older version of the SAN-OS, upgrade to Release 1.3(x) and then Release 2.1(1b).

When downgrading from Cisco MDS SAN-OS Release 2.1(1b) to Release 1.3(x), you might need to disable new features in Release 2.1(1b) for a nondisruptive downgrade. Issuing the install all command from the CLI, or using Fabric Manager to perform the downgrade enables the compatibility check. The check indicates that the downgrade is disruptive and the reason is "current running-config is not supported by new image."

Compatibility check is done:
Module  bootable          Impact  Install-type  Reason
------  --------  --------------  ------------  ------
      2       yes      disruptive         reset  Current running-config is not 
supported by new image
      3       yes      disruptive         reset  Current running-config is not 
supported by new image
      5       yes      disruptive         reset  Current running-config is not 
supported by new image
      6       yes      disruptive         reset  Current running-config is not 
supported by new image

At a minimum, you need to disable the default device alias distribution feature using the no device-alias distribute command in global configuration mode. The show incompatibility system bootflash:1.3(x)_filename command determines which additional features need to be disabled.


Note Refer to the "Determining Software Compatibility" section of the Cisco MDS 9000 Family Configuration Guide for more details.


Performing a Disruptive Upgrade on a Single Supervisor MDS Family Switch

Cisco MDS SAN-OS software upgrades are disruptive on the following single supervisor Cisco MDS Family switches:

MDS 9120 switch

MDS 9140 switch

MDS 9216i switch

If you are performing an upgrade on one of those switches, you should follow the nondisruptive upgrade path listed in this section, even though the upgrade is disruptive. Following the nondisruptive upgrade path ensures that the binary startup configuration remains intact.

If you do not follow the upgrade path, the binary startup configuration is deleted because it is not compatible with the new image, and the ASCII startup configuration file is applied when the switch comes up with the new upgraded image. When the ASCII startup configuration file is applied, there may be errors. Because of this, we recommend that you follow the nondisruptive upgrade path.

New Features in Cisco MDS SAN-OS Release 2.1(1b)

This section describes the new features introduced in this release. For more information about the features listed, refer to the documentation set listed in the "Related Documentation" section.


Note This release note is specific to this release. For the Cisco MDS SAN-OS Release 2.x documentation set, see the "Related Documentation" section.


Limitations and Restrictions

iSCSI pass-thru forwarding mode requires Microsoft iSCSI driver version 2.0 and Cisco iSCSI driver version 4.2.1. There are no restrictions for iSCSI store-and-forward forwarding mode.

Caveats

This section lists the open and resolved caveats for this release. Use Table 3 to determine the status of a particular caveat. In the table, "O" indicates an open caveat, and "R" indicates a resolved caveat.

Table 3 Open and Resolved Caveats Reference 

DDTS Number
Software Release (Open or Resolved)
2.1(1a)
2.1(1b)

Severity 1

CSCsd29338

O

O

Severity 2

CSCed57251

O

O

CSCeg20932

O

O

CSCeg82721

O

O

CSCeh29872

O

O

CSCeh39705

O

O

CSCeh40138

O

O

CSCeh41947

O

R

CSCeh49483

O

O

CSCeh52973

O

O

CSCeh61610

O

O

CSCeh70232

O

O

CSCeh70727

O

O

CSCeh71865

O

O

CSCeh73149

O

O

CSCeh85768

O

O

CSCeh87930

O

O

CSCeh90270

O

O

CSCeh91293

O

O

CSCeh92604

O

O

CSCeh93109

O

O

CSCeh93625

O

O

CSCeh95139

O

O

CSCeh96928

O

O

CSCei01431

O

O

CSCei02196

O

O

CSCei10774

O

O

CSCei18837

O

O

CSCei19822

O

O

CSCei25319

O

O

CSCei79457

O

O

CSCei88345

O

O

CSCsd78967

O

O

CSCsh27840

O

O

Severity 3

CSCed14920

O

O

CSCef11644

O

O

CSCef56229

O

O

CSCef87845

O

O

CSCeg01551

O

O

CSCeg12962

O

O

CSCeg27584

O

O

CSCeg37598

O

O

CSCeg40856

O

O

CSCeg72539

O

O

CSCeg84853

O

O

CSCeh08307

O

O

CSCeh19639

O

O

CSCeh33448

O

O

CSCeh33548

O

O

CSCeh33814

O

O

CSCeh34275

O

O

CSCeh35859

O

O

CSCeh36025

O

O

CSCeh37066

O

O

CSCeh38055

O

O

CSCeh38123

O

O

CSCeh41099

O

O

CSCeh51924

O

O

CSCeh52280

O

O

CSCeh56143

O

O

CSCeh64080

O

O

CSCeh65824

O

O

CSCeh69186

O

O

CSCeh73101

O

O

CSCeh79330

O

O

CSCeh82166

O

O

CSCeh82490

O

O

CSCeh83514

O

O

CSCeh87985

O

O

CSCeh92843

O

O

CSCei08541

 

O

CSCei22596

O

O

CSCei29086

O

O

CSCei31020

O

O

CSCei32317

O

O

CSCei50995

 

O

CSCei57342

O

O

CSCei58652

O

O

CSCei67982

O

O

CSCei86399

O

O

CSCei91968

O

O

CSCin84965

O

O

CSCin87497

O

O

CSCin95789

O

O

CSCsb89732

O

CSCsc09732

O

O

CSCsc23435

O

O

CSCsc31424

O

O

CSCsc33788

O

O

CSCsc48919

O

O

CSCsc97070

O

O

CSCsd07246

O

CSCsd30165

O

CSCsd34882

O

O

CSCsd72822

O

CSCsd76429

O

O

CSCsd83775

O

O

CSCsd89872

O

O

CSCse84811

O

O

CSCse99087

O

O

CSCsf21970

O

O

CSCsg03171

O

O

CSCsg15392

O

O


Resolved Caveats

CSCeh41947

Symptom: An incorrect device instance on the MDS 9000 modules might get reinitialize from an error recovery mechanism, leaving the module in an unusable state. In some cases, the module may reboot. The system console reports that the module's ports are down due to a system health failure. The console and the switch log (sh logging logfile) will have the following error messages, which indicate that the switch is exhibiting this error:


Note From the switch log file you may see OHMS LB failures for the individual ports due to device 6 (Frontier D-CHIP)


2005 Jul 12 12:18:29 mds-a1-ut %SYSTEMHEALTH-2-OHMS_MOD_PORT_LB_TEST_FAILED: Module 1 
Port 1 has failed loop back tests.

2005 Jul 12 12:18:29 mds-a1-ut %MODULE-2-MOD_DIAG_FAIL: Module 1 reported failure on 
ports 1/1-1/1 (Fibre Channel) due to System Health failure in  device 6 (device error 
0x40730019)

2005 Jul 12 12:18:29 mds-a1-ut %MODULE-2-MOD_SOMEPORTS_FAILED: Module 1 reported 
failure on ports 1/1-1/1 (Fibre Channel) due to System Health failure in  device 6 
(error 0x40730019)

Workaround: Downgrade to a Cisco MDS SAN OS Release 2.0(x) version supported by your OSM. Or upgrade to Cisco MDS SAN OS Release 2.1.2 or 2.1(1b). Resetting the module will clear the problem, but the problem could reoccur unless you are using a SAN OS version with the bug fix.

Open Caveats

CSCsd29338

Symptom: The port manager might crash and a switchover might occur when FICON is configured and the MDS switch is interoperating with a CNT device. This occurs when a port is UP, a link failure happens, and the remote node ID (RNID) retry timer is activated.

Workaround: None.

CSCed57251

Symptom: In some rare instances in Cisco MDS SAN-OS Release 1.3, 2.0, and 2.1(1), when the IP Storage Services (IPS) module restarted after a failure, VSAN membership information about iSCSI interfaces was lost. However, a configuration saved with the copy running-config startup command was not lost.

Workaround: None.

CSCeg20932

Symptom: If an IPS module with operational FCIP PortChannels is reloaded, upgraded, or downgraded, the supervisor module may be reloaded causing the system to reboot.

Workaround: Before reloading, upgrading, or downgrading an IPS module, shut down all FCIP PortChannels on the line card.

CSCeg82721

Symptom: Under certain traffic patterns, the Gigabit Ethernet port can flap when auto compression mode is selected. This problem can also occur very rarely even when compression mode 1 is selected. This issue exists in Cisco MDS SAN OS Release 2.x releases after Release 2.0(1).

Workaround: Use mode 2 or mode 3 compression mode if the maximum throughput required is less than 25 Mbps. There is no workaround if the throughput requirement is > 25 Mbps.

CSCeh29872

Symptom: The ICMP path-MTU discovery might not work with IPsec depending upon the SPD policy that is created and where the ICMP error message originated.

Workaround: Identify the path MTU and set it as the local interface MTU in the switch.

CSCeh39705

Symptom: iSCSI immediate and unsolicited data is not allowed to be used when the data digest is turned on.

Workaround: None.

CSCeh40138

Symptom: If an IVR-enabled fabric running Cisco MDS SAN-OS Release 2.0 is merged with an IVR-enabled fabric running Cisco MDS SAN-OS Release 2.1 in NAT mode, then the IVR process on the 2.0 fabric may restart.

Workaround: Follow the IVR NAT guideline of not mixing fabrics in IVR NAT and non-NAT modes. For example, upgrade the fabric running Cisco MDS SAN OS Release 2.0 to Cisco MDS SAN OS Release 2.1 and have NAT mode enabled on that fabric before merging with another fabric where the NAT mode is already on.

CSCeh49483

Symptom: Traffic stops flowing when a member, who is not the first member, of a non-trunking PortChannel in an IVR zone set is flapped.

Workaround: None.

CSCeh52973

Symptom: The switch appears in two VSANs when connected through ISL.

Workaround: None.

CSCeh61610

Symptom: FCIP Write Acceleration does not work with certain storage replication subsystems.

Workaround: None.

CSCeh70232

Symptom: Under certain traffic patterns, the auto compression mode in MPS-14/2 modules can cause a packet buffer leak. This might lead to a drop in FCIP performance. A low free clusters count below 40000 in the output of the show ips stats buffer interface gigabitethernet x/y command indicates that the IPS port may potentially have hit this bug.

Workaround: Reload the MPS-14/2 module. Or use compression mode2 or mode3 to avoid the problem

CSCeh70727

Symptom: When many iSCSI sessions go up or down simultaneously, such as when a line card fails, the amount of syslog messages generated can overwhelm the supervisor and cause a new iSCSI session login to be delayed.

Workaround: None.

CSCeh71865

Symptom: If two IPS ports on an IPS module are configured in the same IP subnet, but put on different LAN segments, external iSNS clients may not be able to connect to the iSNS server on the IPS port.

Workaround: Put the IPS ports in the same IP subnet on the same LAN segment.

CSCeh73149

Symptom: The VSAN suspend/resume operation facilitates network level reconfiguration and is not often used. In MDS SAN-OS Release 2.1(2), the command should not be used on SANTap related VSAN.

Workaround: If VSAN suspend/resume must be used, first unprovision SANTap prior to using VSAN suspend/resume.

CSCeh85768

Symptom: During an upgrade of the firmware on an IBM tape drive, the tape utility program may hang after it resets and performs loop initialization. The tape drive sends OPN, FLOGI, and CLS. The switch sends OPN and ACC, but does not send CLS, which causes the tape utility to hang while it waits for CLS.

Workaround: After the firmware is correctly upgraded on the tape drive, follow these steps:

Disable the switch port using the shut command.

Enable the switch port using the no shut command.

CSCeh87930

Symptom: A newly configured FCIP link may fail to come up when running on an MPS-14/2 module. This symptom may occur following an upgrade of Cisco MDS SAN-OS Release 2.0(1b) to Release 2.0(3) and the configuration of a new FCIP link.

In the log on the switch, you may see the following messages:

%PORT-5-IF_DOWN_ELP_FAILURE_ISOLATION: %$VSAN xyz%$ Interface fcipabc is down (Isolation due to ELP failure)
%PORT-5-IF_DOWN_OFFLINE: %$VSAN xyz%$ Interface fcipabc is down (Offline)
%PORT-5-IF_DOWN_NONE: %$VSAN xyz%$ Interface fcipabc is down (None)

VSAN xyz is the allowed VSAN number for the FCIP interface and interface fcipabc is the configured FCIP interface number.

Workaround: Reload the MPS-14/2 module using the reload module module-number command, where module-number is a specific module.

CSCeh90270

Symptom: Two MDS 9000 switches configured with an FCIP bridge port (B port) tunnel may have problems with multi-frame sequences. You may notice this problem activating large zone sets when the SFC frame times out.

Workaround: If the connection is between two MDS switches, then the B port configuration is not required and should not be used. If B port is a requirement, then reduce the zone set length by not distributing the full database, or use VSANs.

CSCeh91293

Symptom: The output from the fcping and traceroute commands shows an incorrect MDS 9000 switch and password for enclosure fabrics.

Workaround: None.

CSCeh92604

Symptom: Enabling IVR NAT on the same switch where write acceleration is enabled over a PortChannel of multiple FCIP links might result in frames from the source to the destination not to transfer.

Workaround: Do not have the following on the same switch:

a. IVR NAT enabled

b. PortChannel of multiple FCIP links that can potentially carry IVR NAT traffic

c. FCIP write acceleration

However, any two of the above three configurations are supported on the same switch.


Note IVR in non-NAT mode can be configured with FCIP PortChannels and FCIP write acceleration on the same switch.


CSCeh93109

Symptom: When SANTap is unprovisioned without the appliance first deleting objects it had previously created, SANTap may have problems if the session objects are present.

Workaround: The appliance must delete all objects first before SANTap is unprovisioned.

CSCeh93625

Symptom: The line cards shut down after the supervisor module fails.

Workaround: Remove the failed supervisor module and reinsert the line card. Or enter the no poweroff module slot command in Exec mode on the switch, where slot is the slot number of the module that failed.

CSCeh95139

Symptom: If a Fibre Channel target goes offline while an iSCSI login is occurring, the IPS port will terminate the TCP session, but it will not return a login response PDU to the iSCSI initiator. As a result, some iSCSI initiators wait up to 30 seconds before they try to log in again.

Workaround: None.

CSCeh96928

Symptom: If your switch port is configured in auto speed (switchport speed auto) and auto mode (switchport mode auto), the switch port fails to establish a link with the device connected through Emulex HBA LP8000 and remains in link-failure state. The problem occurs with the following combination of HBA, driver, firmware, and OS configured at 1 Gbps.

Workaround: Configure the switch port speed to 1 Gbps (switchport speed 1000) to support the Emulex HBA LP8000.

CSCei01431

Symptom: An FCIP interface stays in the initializing state if it is part of a PortChannel and it is removed with the no fcip enable command.

Workaround: Remove the PortChannel that the FCIP interface previously belonged to.

CSCei02196

Symptom: When a default zoning policy is permitted and there is no active zone set, packets may drop on Fx ports if there are a lot of Fx and Nx ports going up and down.

Workaround: Configure and activate a zone set.

CSCei10774

Symptom: Disabling QoS does not remove the QoS attribute from an IVR zone set, and subsequent activation of the IVR zone set does not succeed.

Workaround: Remove the QoS attribute from the IVR zone set, both active and configured, before disabling QoS.

CSCei18837

Symptom: If the standby supervisor and the line cards are reloaded simultaneously, the line cards do not come online and reach the OK state.

Workaround: Perform a reload at the switch level to recover from this problem.

CSCei19822

Symptom: An active IVR zone set on the local switch is not propagated when the commit session contains any other configuration changes.

Workaround: For Cisco SAN-OS Release 2.1(2) and later, perform an implicit commit without any changes. In the case of a merge failure and the IVR zone set is not active on remote switches but is active on a local switch, issue an implicit commit from the local switch to propagate the active zone set to the remote switches.

For releases prior to Release 2.1(2), the workaround is different. Add either a dummy member to an existing zone or add a dummy zone with dummy members to the currently active IVR zone set, and then reactivate the IVR zone set. Then issue the commit command, which will propagate the active zone set to the other switches.

CSCei25319

Symptom: An error message in the log file occurs because the platform manager component passes the wrong parameter while responding to a SNMP query. In some cases, this results in the query not being responded to.

Workaround: Perform a refresh on the Device Manager to clear the problem.

CSCei79457

Symptom: During a long testing cycle involving various tests, the port manager process failed due to a NULL pointer access causing a system switchover.

Workaround: None

CSCei88345

Symptom: An Inter-Switch Link (ISL) flap resulting in fabric segmentation or a merge during or after an upgrade from Cisco MDS SAN-OS Release 2.0(x) to a later image where IVR is running might be disruptive. Some possible scenarios include:

FCIP connection flapping during the upgrade process resulting in fabric segmentation or merge.

ISL flap results in fabric segmentation or merge because of hardware issues or a software bug.

ISL port becomes part of PCP results in fabric segmentation or merge because of a port flap.

If this problem occurs, syslogs indicate RDI failure and the flapped lSL could remain in a down state because of a domain overlap. This is caused by conflicts between the allowed domains list and the virtual domain requested through RDI.

Workaround: There are four distinct scenarios for which the workarounds are provided.

1. If you are running Cisco MDS SAN-OS Releases 1.3(X) or 2.0(X) with IVR enabled, we recommend upgrading to Release 2.0(2b). Please contact your OSM for 2.1(2b) availability.

2. If you have already upgraded some or all of your Cisco MDS SAN-OS switches from Cisco MDS SAN-OS Release 1.3(X) or 2.0(x) to Release SAN-OS 2.1(1a), 2.1(1b), or 2.1(2a), a scheduled downtime is required to perform the following steps:

a. Configure static domains for all switches in all VSANs where IVR is enabled. Configure the static domain the same as the running domain so that there is no change in domain IDs. Make sure that all domains are unique across all of the IVR VSANs. We recommend this step as a best practice for IVR-non-NAT mode.

Issue the fcdomain domain {id} static vsan {vsan id} command to configure the static domains.


Note Complete Step 2a for all switches before moving to Step 2b.


b. b. Issue the no ivr virtual-fcdomain-add vsan-ranges 1-4093 command to disable RDI mode on all IVR enabled switches. This can cause traffic disruption.


Note Complete Step 2b for all IVR enabled switches before moving to Step 2c.


c. Check the syslogs for any ISL that was brought down.

Example Syslog Error Messages
2005 Aug 31 21:52:04 switch %FCDOMAIN-2-EPORT_ISOLATED: %$VSAN 2005%$ Isolation of 
interface port-channel 52 (reason: unknown failure)
2005 Aug 31 21:52:04 switch %FCDOMAIN-2-EPORT_ISOLATED: %$VSAN 2005%$ Isolation of 
interface port-channel 51 (reason: domain ID assignment failure)

d. Identify any switches isolated and issue the following commands for the affected switches:

switch(config)# vsan database
switch(config-vsan-db)# vsan { vsan ID} suspend
switch(config-vsan-db)# no vsan { vsan ID} suspend

e. Issue the ivr refresh command to perform an IVR refresh on all the IVR enabled switches.

f. Issue the copy running startup command to save the RDI mode in the startup configuration on all of the switches.

3. If you have already upgraded some or all of the switches from Cisco MDS SAN-OS Release 1.3(X) or 2.0(x) to Releases 2.1(1a), 2.1(1b), or 2.1(2a), with Interop-mode 2 or 3 enabled, issue the ivr refresh command to perform the IVR refresh on all the IVR enabled switches.

4. If you are adding new switches running Cisco MDS SAN-OS Releases SAN-OS 2.1 (1a), 2.1(1b), or 2.1 (2a) to your existing network running Releases 1.3(X) or 2.0 (X), disable RDI mode on your new switches before adding them to the existing network. Issue the no ivr virtual-fcdomain-add vsan-ranges 1-4093 command to disable RDI mode.


Note RDI mode should not be disabled for VSANs running in Interop-mode 2 or Interop-mode 3.


CSCsd78967

Symptom: If you remove a port from a port channel or shutdown a member port of a port-channel, the ConnUnitPortStatus/State trap is not sent.

Workaround: None.

CSCsh27840

Symptom: While using an FCIP link for remote SPAN, it is possible that the FCIP link may flap.

Workaround: Do not use FCIP links for Remote SPAN.

CSCed14920

Symptom: During a switch upgrade, a SAN Volume Controller (SVC) node may not save its entire state under rare circumstances. This results in that node not being part of the cluster after the switch upgrade. Verify this symptom by issuing the show nodes local command at the svc-config prompt—the command output displays the following information:

The cluster state of the affected SVC node is unconfigured.

The node state of the affected SVC node is free.

Workaround: Manually remove the SVC node from the cluster and then add the node back into the cluster. Refer to the Cisco MDS 9000 Family SAN Volume Controller Configuration Guide for procedural details.

CSCef11644

Symptom: VPN 4.0.1 does not work with large SNMP PDU packets.

Workaround: Upgrade to VPN 4.0.5.

CSCef56229

Symptom: If an iSCSI initiator is configured differently on multiple switches, iSNS might report more targets to the initiator than the initiator can access. An iSCSI initiator would get a target error if it attempts to establish a connection.

Workaround: None.

CSCef87845

Symptom: The CFS merge status as shown by the show cfs merge status name app-name command output may not reflect the correct merge status on certain switches while two fabrics are merging.

CFS merge is a protocol that runs between a designated switch in either fabric. Other switches do not participate in the merge process. While a merge is happening, the switches not merging do not reflect this, only the designated switches have the correct information. Once the merge is done, all switches would show the correct status. Usually, the merge completes in a very short time and this behavior is unlikely to be noticed.

Workaround: None.

CSCeg01551

Symptom: If you issue a dpvm commit command, the DPVM application implicitly activates the existing configuration database. The configuration database is activated only when the dpvm commit command is explicitly issued after the dpvm activate command.

Workaround: None.

CSCeg12962

Symptom: Some hosts may not accept IKE tunnel creation from Cisco MDS 9000 Family switches when an IKE session already exists in the switch. In such cases it may take more than the expected time for the IPsec session to come up. This scenario can happen when the Gigabit Ethernet interface on the switch fails and comes back up or if you issue a VRRP switchover to a different switch.

Workaround: For a faster recovery, disconnect and reinitiate the iSCSI session from the host.

CSCeg27584

Symptom: Creating a role that has VSAN policy as "deny" requires an Enterprise License on the switch. If such a role is created on a switch that does not have the license, the switch exhibits different behavior when distribution is turned on versus when distribution is turned off.

If distribution is turned off, creation of the role is rejected.

If distribution is turned on, creation of the role succeeds but the VSAN policy continues to be "permit".

Workaround: None.

CSCeg37598

Symptom: The iSNS server might crash when iSCSI is disabled and iSNS is enabled using Fabric Manager.

Workaround: None.

CSCeg40856

Symptom: In Fabric Manager, a null pointer exception error message might result in a zone merge recovery on an already recovered fabric.

Workaround: Close the dialog box and relaunch it.

CSCeg72539

Symptom: iSNS server functionality may not restore iSCSI initiator node detail properly after a system switchover. Under this circumstance, iSNS server will not respond correctly to a DevGetNext request from an iSNS client. This problem does not happen consistently.

Workaround: None

CSCeg66225

Symptom: Password recovery might fail if you use the copy config-url startup command to save the switch configuration, or if you boot a system image that is older than the image you used to store the configuration and did not use the install all command. The following message might display in syslog or on the console during the process of password recovery.

<<%ASCII-CFG-2-ACFG_CONFIGURATION_APPLY_ERROR>>

Workaround: Issue the write erase command from the switchboot prompt.


Note Using the write erase command will erase the configuration. You must reapply the configuration, if externally stored, after the switch login.


CSCeg81089

Symptom: A Windows host running Hummingbird 10 with Connectivity Secure Shell 9 cannot use SSH to connect to an MDS switch running Cisco MDS SAN-OS Releases 2.0(x) with the same host configuration used to connect to an MDS switch running 1.3(x) code.The host will display the error Authentication Failed, no more shared authentication methods.

Workaround: Reconfigure the client to use "keyboard-interactive" instead of "password" for authentication. To do this, go to tunnel profile settings, select Security Settings>Authentication. Ensure the "keyboard interactive" is the method used, "password" might be the currently configured method. Or upgrade to Cisco MDS SAN-OS Release 2.1(1a).

CSCeg84853

Symptom: If two fabrics merge, one with automatic VSAN topology and the other with configured VSAN topology, and if the autonomous fabric ID assignment configured by the user is not the same as the autonomous fabric ID assignment in the autonomous fabric ID table then sometimes the IVR zone set activation keeps waiting for the switch with the lowest WWW to modify the AFID table to correct the misconfiguration.

Workaround: Issue the clear ivr session command to clear the IVR session and reactivate the IVR zone set followed by the ivr commit command.

CSCeh08307

Symptom: The Fabric Manager server does not filter VSANs by each client's VSAN scope.

Workaround: None.

CSCeh19639

Symptom: The alias for a down endport is not shown and is referenced by its pwwn in the Edit FullZoneset screen of the Fabric Manager rather than the fcalias name. This does not affect the functionality of adding those members to the zones either in Fabric Manager or in the CLI.

Workaround: None

CSCeh33448

Symptom: The show version image command does not support the use of modflash:.

Workaround: Copy the image back to the supervisor to execute the show version image command.

CSCeh33548

Symptom: Tape devices can only be accessed over an FCIP tunnel in a PortChannel with write acceleration enabled if SID/DID based load-balancing is used in the VSANs.

Workaround: Disable write acceleration or enable SID/DID based load-balancing in the VSANs if you have tape device traffic going over a FCIP tunnel in a PortChannel.

CSCeh33814

Symptom: The RMON_ALERT e-mail does not send the variable or any information about what alarm is triggered.

Workaround: None.

CSCeh34275

Symptom: iSCSI initiators do not advertise their IQN names on the interop VSAN Fibre Channel name server (FCNS). Fabric Manager will not display them.

Workaround: None.

CSCeh35859

Symptom: After a process restart or merging with several fabrics simultaneously, the IVR zone set activation process might hang in the "ready to advertise" state.

Workaround: Clear the IVR session by issuing the clear ivr session command and then reactivate the IVR zone set by issuing the ivr zoneset activate name ivzs-name force" followed by the ivr commit command.

CSCeh36025

Symptom: iSNS server continues giving a list of iSCSI targets that are in the VSAN of an iSCSI interface even after the iSCSI VSAN membership feature is disabled.

Workaround: Explicitly put all ISCSI interfaces in VSAN 1 before disabling the iscsi interface vsan-membership command.

CSCeh37066

Symptom: If you have an SSM with Fibre Channel write acceleration enabled, flapping a port during heavy I/Os causes the DPP software to drain all the pending I/Os. If the draining process takes too long, it can result in timeouts for reconfiguration of the affected SCSI flows.

Workaround: After port flapping is done, disable the SCSI-flow features and reenable them.

CSCeh38055