Hardware Features in Cisco IOS XE Dublin 17.10.1
There are no new hardware features in this release.
The documentation set for this product strives to use bias-free language. For the purposes of this documentation set, bias-free is defined as language that does not imply discrimination based on age, disability, gender, racial identity, ethnic identity, sexual orientation, socioeconomic status, and intersectionality. Exceptions may be present in the documentation due to language that is hardcoded in the user interfaces of the product software, language used based on RFP documentation, or language that is used by a referenced third-party product. Learn more about how Cisco is using Inclusive Language.
There are no new hardware features in this release.
Feature Name |
Description |
---|---|
Custom EAPoL |
Allows customization of the default EAPoL EtherType to configure MACsec with EtherType as 876F.
|
DHCP Gleaning |
Introduces support for a read–only DHCP snooping functionality that allows components to register and glean only DHCP version 4 packets.
|
Enhanced Password Security Through Updated Combination Rule |
The character-repetition and restrict-consecutive-letters keywords were introduced for the aaa common-criteria policy command.
|
MACsec Fallback Key Support with High Availability |
Introduces support for the MACsec Fallback Key feature with High Availability. The MACsec Fallback Key feature establishes an MKA session with the pre-shared fallback key whenever the PSK fails to establish a session because of key mismatch.
|
Programmability
|
The following programmability features are introduced in this release:
|
RADIUS Automated Testing Probe-on |
The command automate-tester probe-on was introduced. It starts a dead timer and packets are sent to the external RADIUS server after the timer expires.
|
Reflexive Access Lists (IPv4) |
Reflexive access lists allow IP packets to be filtered based on upper-layer session information.
|
Secure Data Wipe |
Introduces support for performing factory reset by using the keyword all secure in the factory-reset command. This option performs data sanitisation and securely resets the device.
|
SHA256 based Password-masking support |
You can use the masked-secret keyword on the enable algorithm type command and username command. The keyword masks the secret input and converts to the selected encryption.
|
Standalone Mode on Layer 3 EtherChannels |
Introduces support for configuring standalone mode/independent mode on Layer 3 EtherChannels.
|
New on the WebUI |
|
There are no new WebUI features in this release. |
Behavior Change |
Description |
---|---|
debug platform command |
The debug platform software fed switch active inject packet-capture start command was modified. full-packet keyword was added. It allows you to capture 1500 bytes of packet. The default packet capture was only for 128 bytes of the packet prior to Cisco IOS XE Dublin 17.10.1. |