Skip to content

Commit 09f5aca

Browse files
authored
Merge pull request #3221 from CumulusNetworks/create-pull-request/patch
Changes by create-pull-request action
2 parents f2c13cb + abf6afb commit 09f5aca

30 files changed

Lines changed: 1754 additions & 1235 deletions

File tree

content/cumulus-linux-37/Whats-New/rn.md

Lines changed: 5 additions & 5 deletions
Large diffs are not rendered by default.

content/cumulus-linux-37/rn.xml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1958,8 +1958,8 @@ To work around this issue, change the TCAM profile to {{acl-heavy}} or {{ip-acl-
19581958
<td>3135801</td>
19591959
<td>Zebra rejects MAC IP updates from BGP when the MAC mobility sequence number that BGP sends is lower than the sequence number known to zebra.
19601960
When the MAC mobility sequence that BGP knows legitimately lowers (due to narrow timing conditions during convergence or after rebooting an MLAG pair one VTEP at a time), zebra rejects these updates and maintains a stale state. If the stale information that zebra uses points to the wrong VTEP address, traffic goes to the wrong VTEP and might drop.</td>
1961-
<td>3.7.12-4.3.0</td>
1962-
<td>4.3.1-4.4.5</td>
1961+
<td>3.7.12-3.7.15</td>
1962+
<td>3.7.16, 4.3.1-4.4.5</td>
19631963
</tr>
19641964
<tr>
19651965
<td>3129819, 3040075</td>
@@ -3955,8 +3955,8 @@ MAC learning looks correct, but traffic does not flow as expected.</td>
39553955
<td>3135801</td>
39563956
<td>Zebra rejects MAC IP updates from BGP when the MAC mobility sequence number that BGP sends is lower than the sequence number known to zebra.
39573957
When the MAC mobility sequence that BGP knows legitimately lowers (due to narrow timing conditions during convergence or after rebooting an MLAG pair one VTEP at a time), zebra rejects these updates and maintains a stale state. If the stale information that zebra uses points to the wrong VTEP address, traffic goes to the wrong VTEP and might drop.</td>
3958-
<td>3.7.12-4.3.0</td>
3959-
<td>4.3.1-4.4.5</td>
3958+
<td>3.7.12-3.7.15</td>
3959+
<td>3.7.16, 4.3.1-4.4.5</td>
39603960
</tr>
39613961
<tr>
39623962
<td>3073668</td>
@@ -5678,8 +5678,8 @@ MAC learning looks correct, but traffic does not flow as expected.</td>
56785678
<td>3135801</td>
56795679
<td>Zebra rejects MAC IP updates from BGP when the MAC mobility sequence number that BGP sends is lower than the sequence number known to zebra.
56805680
When the MAC mobility sequence that BGP knows legitimately lowers (due to narrow timing conditions during convergence or after rebooting an MLAG pair one VTEP at a time), zebra rejects these updates and maintains a stale state. If the stale information that zebra uses points to the wrong VTEP address, traffic goes to the wrong VTEP and might drop.</td>
5681-
<td>3.7.12-4.3.0</td>
5682-
<td>4.3.1-4.4.5</td>
5681+
<td>3.7.12-3.7.15</td>
5682+
<td>3.7.16, 4.3.1-4.4.5</td>
56835683
</tr>
56845684
<tr>
56855685
<td>3073668</td>
@@ -7611,8 +7611,8 @@ MAC learning looks correct, but traffic does not flow as expected.</td>
76117611
<td>3135801</td>
76127612
<td>Zebra rejects MAC IP updates from BGP when the MAC mobility sequence number that BGP sends is lower than the sequence number known to zebra.
76137613
When the MAC mobility sequence that BGP knows legitimately lowers (due to narrow timing conditions during convergence or after rebooting an MLAG pair one VTEP at a time), zebra rejects these updates and maintains a stale state. If the stale information that zebra uses points to the wrong VTEP address, traffic goes to the wrong VTEP and might drop.</td>
7614-
<td>3.7.12-4.3.0</td>
7615-
<td>4.3.1-4.4.5</td>
7614+
<td>3.7.12-3.7.15</td>
7615+
<td>3.7.16, 4.3.1-4.4.5</td>
76167616
</tr>
76177617
<tr>
76187618
<td>3073668</td>
@@ -9723,8 +9723,8 @@ MAC learning looks correct, but traffic does not flow as expected.</td>
97239723
<td>3135801</td>
97249724
<td>Zebra rejects MAC IP updates from BGP when the MAC mobility sequence number that BGP sends is lower than the sequence number known to zebra.
97259725
When the MAC mobility sequence that BGP knows legitimately lowers (due to narrow timing conditions during convergence or after rebooting an MLAG pair one VTEP at a time), zebra rejects these updates and maintains a stale state. If the stale information that zebra uses points to the wrong VTEP address, traffic goes to the wrong VTEP and might drop.</td>
9726-
<td>3.7.12-4.3.0</td>
9727-
<td>4.3.1-4.4.5</td>
9726+
<td>3.7.12-3.7.15</td>
9727+
<td>3.7.16, 4.3.1-4.4.5</td>
97289728
</tr>
97299729
<tr>
97309730
<td>3073668</td>

content/cumulus-linux-43/Whats-New/rn.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1064,14 +1064,14 @@ pdfhidden: True
10641064
| 3390022, 3323138 | When you restore the switch configuration after upgrading from Cumulus Linux 4.2.x to 4.4.5 and later with ONIE, the configuration lines under the <code>peerlink.4095</code> interface stanza are duplicated. Subsequent <code>ifreloads</code>, or <code>net commit</code> commands fail until you manually remove the duplicated lines from this interface and run <code>ifreload -a</code>. | 4.2.1-4.4.5 | |
10651065
| 3376798 | On Broadcom switches, Cumulus Linux does not create the hardware bridging domain for a traditional bridge with a VXLAN interface during <code>switchd</code> restart. The <code>/var/log/switchd.log</code> file includes the following exception logs shortly after <code>switchd</code> restarts:<pre>switchd&#91;30158&#93;: hal_bcm_l3.c:1617 find_egr_path_if_vxlan_overlay:vxlan overlay : nh PORT: port <#>, vlan <x>.<y> not yet ready</pre>MAC learning looks correct, but traffic does not flow as expected. | 3.7.0-4.3.1 | 4.3.2-4.4.5|
10661066
| 3364996 | Under certain conditions, BGP can allow a combination of EVPN and non-EVPN paths to be put into a multipath group together. This results in erroneous programming of EVPN symmetric next hops and RMACs, which can result in momentary traffic drops. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
1067-
| 3364717 | On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options. | 4.3.0-4.4.5 | |
1068-
| 3358865 | When you reboot a Broadcom switch with a static default route configured, the route might be installed in hardware without a next hop. This results in forwarded traffic to the CPU and drops. To recover from this issue, remove the default route configuration and reapply it. To prevent this issue, before rebooting the switch, split the default route configuration into two routes as below:<pre>ip route 0.0.0.0/1 10.1.1.1ip route 128.0.0.0/1 10.1.1.1</pre> | 4.3.1-4.4.5 | |
10691067
| 3339249 | The <code>sensors.conf</code> files in Cumulus Linux are out of date. | 4.2.1-4.4.5 | |
1068+
| 3336590 | On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
10701069
| 3334031 | When you configure or unconfigure a BGP peer and interface towards a host, memory corruption can cause BGP to crash. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
10711070
| 3330705 | When using TACACS+, a TACACS+ server name that returns more than one IP address, such as an IPv6 and IPv4 address, is counted many times against the limit of seven TACACS+ servers, which might cause some of the later listed servers to be ignored as over the limit. To work around this issue, you can set the <code>prefer_ip_version</code> configuration option (the default value is 4) to choose between an IPv4 or IPv6 address if both are present. | 3.7.0-5.3.1 | 5.4.0-5.16.1|
10721071
| 3327477 | If you use <code>su</code> to change to a user specified through TACACS+, the user becomes the local tacacs0 thru tacacs15 user instead of the named user to run <code>sudo</code> commands. As a result, the named user password might not match the local tacacs0 thru tacacs15 user password. | 3.7.0-3.7.16, 4.0.0-4.4.5, 5.0.0-5.16.1 | |
10731072
| 3319919 | Currently, the default core dump size limit on Cumulus Linux is 256M but the SDK generates core dumps around 800M. To avoid incomplete core files, you can increase the core dump size limit. | 4.2.1-4.3.1, 4.4.0-5.3.1 | 4.3.2, 5.4.0-5.16.1|
10741073
| 3288385 | On the EdgeCore AS7326-56X and AS7726-32X switch, the fan speed reports a minimum threshold in the logs. | 4.3.1 | 4.3.2-4.4.5|
1074+
| 3288343 | When you reboot a Broadcom switch with a static default route configured, the route might be installed in hardware without a next hop. This results in forwarded traffic to the CPU and drops. To recover from this issue, remove the default route configuration and reapply it. To prevent this issue, before rebooting the switch, split the default route configuration into two routes as below:<pre>ip route 0.0.0.0/1 10.1.1.1ip route 128.0.0.0/1 10.1.1.1</pre> | 4.3.1 | 4.3.2-4.4.5|
10751075
| 3269538 | The <code>cl-ecmpcalc</code> command prints the following error when the egress interface is a bond or SVI:<pre>ecmpcalc: will query hardwareTraceback (most recent call last):File “/usr/cumulus/bin/cl-ecmpcalc”, line 986, inisTrunkMbr, port = ecmp.getHdPort(hd_cmd)File “/usr/cumulus/bin/cl-ecmpcalc”, line 618, in getHdPortport = int(str4)ValueError: invalid literal for int() with base 10: ‘0t</pre> | 3.7.16-4.3.1 | 4.3.2-4.4.5|
10761076
| 3267353 | In a QinQ configuration, if the VLAN priority is a non-zero value, double-tagged packets are translated to triple-tagged packets. | 4.3.1 | 4.3.2-4.4.5|
10771077
| 3235956 | With certain triggers on Broadcom switches, such as adding or deleting a VNI or reloading the network, Cumulus Linux might consider the underlay routes as overlay routes. In this case, <code>switchd</code> allocates the overlay next hop, which is incorrect and might affect traffic forwarding. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
@@ -1383,8 +1383,8 @@ pdfhidden: True
13831383
| 3390022, 3323138 | When you restore the switch configuration after upgrading from Cumulus Linux 4.2.x to 4.4.5 and later with ONIE, the configuration lines under the <code>peerlink.4095</code> interface stanza are duplicated. Subsequent <code>ifreloads</code>, or <code>net commit</code> commands fail until you manually remove the duplicated lines from this interface and run <code>ifreload -a</code>. | 4.2.1-4.4.5 | |
13841384
| 3376798 | On Broadcom switches, Cumulus Linux does not create the hardware bridging domain for a traditional bridge with a VXLAN interface during <code>switchd</code> restart. The <code>/var/log/switchd.log</code> file includes the following exception logs shortly after <code>switchd</code> restarts:<pre>switchd&#91;30158&#93;: hal_bcm_l3.c:1617 find_egr_path_if_vxlan_overlay:vxlan overlay : nh PORT: port <#>, vlan <x>.<y> not yet ready</pre>MAC learning looks correct, but traffic does not flow as expected. | 3.7.0-4.3.1 | 4.3.2-4.4.5|
13851385
| 3364996 | Under certain conditions, BGP can allow a combination of EVPN and non-EVPN paths to be put into a multipath group together. This results in erroneous programming of EVPN symmetric next hops and RMACs, which can result in momentary traffic drops. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
1386-
| 3364717 | On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options. | 4.3.0-4.4.5 | |
13871386
| 3339249 | The <code>sensors.conf</code> files in Cumulus Linux are out of date. | 4.2.1-4.4.5 | |
1387+
| 3336590 | On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
13881388
| 3334031 | When you configure or unconfigure a BGP peer and interface towards a host, memory corruption can cause BGP to crash. | 4.3.0-4.3.1 | 4.3.2-4.4.5|
13891389
| 3330705 | When using TACACS+, a TACACS+ server name that returns more than one IP address, such as an IPv6 and IPv4 address, is counted many times against the limit of seven TACACS+ servers, which might cause some of the later listed servers to be ignored as over the limit. To work around this issue, you can set the <code>prefer_ip_version</code> configuration option (the default value is 4) to choose between an IPv4 or IPv6 address if both are present. | 3.7.0-5.3.1 | 5.4.0-5.16.1|
13901390
| 3327477 | If you use <code>su</code> to change to a user specified through TACACS+, the user becomes the local tacacs0 thru tacacs15 user instead of the named user to run <code>sudo</code> commands. As a result, the named user password might not match the local tacacs0 thru tacacs15 user password. | 3.7.0-3.7.16, 4.0.0-4.4.5, 5.0.0-5.16.1 | |

content/cumulus-linux-43/rn.xml

Lines changed: 22 additions & 22 deletions
Original file line numberDiff line numberDiff line change
@@ -7644,28 +7644,18 @@ MAC learning looks correct, but traffic does not flow as expected.</td>
76447644
<td>4.3.2-4.4.5</td>
76457645
</tr>
76467646
<tr>
7647-
<td>3364717</td>
7648-
<td>On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options.</td>
7649-
<td>4.3.0-4.4.5</td>
7650-
<td></td>
7651-
</tr>
7652-
<tr>
7653-
<td>3358865</td>
7654-
<td>When you reboot a Broadcom switch with a static default route configured, the route might be installed in hardware without a next hop. This results in forwarded traffic to the CPU and drops. To recover from this issue, remove the default route configuration and reapply it. To prevent this issue, before rebooting the switch, split the default route configuration into two routes as below:
7655-
7656-
ip route 0.0.0.0/1 10.1.1.1
7657-
ip route 128.0.0.0/1 10.1.1.1
7658-
</td>
7659-
<td>4.3.1-4.4.5</td>
7660-
<td></td>
7661-
</tr>
7662-
<tr>
76637647
<td>3339249</td>
76647648
<td>The {{sensors.conf}} files in Cumulus Linux are out of date.</td>
76657649
<td>4.2.1-4.4.5</td>
76667650
<td></td>
76677651
</tr>
76687652
<tr>
7653+
<td>3336590</td>
7654+
<td>On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options.</td>
7655+
<td>4.3.0-4.3.1</td>
7656+
<td>4.3.2-4.4.5</td>
7657+
</tr>
7658+
<tr>
76697659
<td>3334031</td>
76707660
<td>When you configure or unconfigure a BGP peer and interface towards a host, memory corruption can cause BGP to crash.</td>
76717661
<td>4.3.0-4.3.1</td>
@@ -7696,6 +7686,16 @@ ip route 128.0.0.0/1 10.1.1.1
76967686
<td>4.3.2-4.4.5</td>
76977687
</tr>
76987688
<tr>
7689+
<td>3288343</td>
7690+
<td>When you reboot a Broadcom switch with a static default route configured, the route might be installed in hardware without a next hop. This results in forwarded traffic to the CPU and drops. To recover from this issue, remove the default route configuration and reapply it. To prevent this issue, before rebooting the switch, split the default route configuration into two routes as below:
7691+
7692+
ip route 0.0.0.0/1 10.1.1.1
7693+
ip route 128.0.0.0/1 10.1.1.1
7694+
</td>
7695+
<td>4.3.1</td>
7696+
<td>4.3.2-4.4.5</td>
7697+
</tr>
7698+
<tr>
76997699
<td>3269538</td>
77007700
<td>The {{cl-ecmpcalc}} command prints the following error when the egress interface is a bond or SVI:
77017701

@@ -9853,18 +9853,18 @@ MAC learning looks correct, but traffic does not flow as expected.</td>
98539853
<td>4.3.2-4.4.5</td>
98549854
</tr>
98559855
<tr>
9856-
<td>3364717</td>
9857-
<td>On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options.</td>
9858-
<td>4.3.0-4.4.5</td>
9859-
<td></td>
9860-
</tr>
9861-
<tr>
98629856
<td>3339249</td>
98639857
<td>The {{sensors.conf}} files in Cumulus Linux are out of date.</td>
98649858
<td>4.2.1-4.4.5</td>
98659859
<td></td>
98669860
</tr>
98679861
<tr>
9862+
<td>3336590</td>
9863+
<td>On the Trident 2+ and Trident 3 switch when using VXLAN layer 2 VPNs and sending tunneled traffic where the inner IP header has a TTL of 1, the egress VTEP incorrectly forwards this traffic through the software path instead of the hardware data plane. This traffic is rate-limited to 100pps by default. To work around this issue, ensure that the traffic traversing the layer 2 tunnel has an inner IP header TTL value that is more than 1. If this workaround is not possible, contact Nvidia Support to determine other options.</td>
9864+
<td>4.3.0-4.3.1</td>
9865+
<td>4.3.2-4.4.5</td>
9866+
</tr>
9867+
<tr>
98689868
<td>3334031</td>
98699869
<td>When you configure or unconfigure a BGP peer and interface towards a host, memory corruption can cause BGP to crash.</td>
98709870
<td>4.3.0-4.3.1</td>

0 commit comments

Comments
 (0)