Multiple improved features and resolved cavities
Improvements
AP Fallback to Controllers Using AP Priming Profile
- This feature helps to configure primary, secondary, and tertiary controllers for a group of APs matching regular expression (regex) or for an individual AP using priming profiles.
IPv6 Address Tracking for Wireless Clients
- In Cisco IOS XE 17.9.2, the controller allows data traffic of the wireless clients coming with new IPv6 source addresses even after eight addresses have been learnt for respective wireless clients. The controller continues to learn new IPv6 addresses of the wireless clients from the wireless clients' control traffic (IPv6 NS/NA and DHCPv6), but keeps track of only a maximum of eight addresses (the latest) per wireless client.
UNII-3 Band on ROW Regulatory Domain for UK Cisco Catalyst 9136I and Cisco Wireless 916xI Access Points
- From Cisco IOS XE Cupertino 17.9.2, UNII-3 channels are enabled for the country code GB under the -ROW domain on the Cisco Catalyst 9136I and Cisco Wireless 916xI access points. The maximum Tx power on these non-Dynamic Frequency Selection (DFS) channels is 23dBm.
Wi-Fi Protected Access 3 Simultaneous Authentication of Equals Hash-to-Element Support with Identity PSK
- From Cisco IOS XE Cupertino 17.9.2, the iPSK passphrase is supported for SAE H2E authentication in local mode. During client SAE authentication, the Identity Preshared Key (iPSK) passphrase configured in the client authorization policy in the RADIUS server replaces the one in WLAN profile.
Bug fixes
- CSCwc75102 - Conversion of Mobility Express Access Points from ME to CAPWAP mode using DHCP option 43 does not work.
- CSCvx80422 - An access point fails to forward packets when using 10.128.128.127 or 10.128.128.128 addresses.
- CSCvz66623 -EAP-TLS clients behind the Mesh Access Point (MAP) experience authentication failure.
- CSCwc05350 - Cisco Wave 2 Access Points: CAPWAP MTU flapping occurs due to asymmetric MTU between Access Point to controller and vice-versa.
- CSCwc38912 - Changing an Access Point site or policy tag to a Flex local switching set intermittently causes client connectivity failure to local web auth WLANs.
- CSCwc56774 - Workgroup Bridge (WGB) with static IP loses IP address after multiple roams.
- CSCwc71198 - CAPWAP flapping is observed when VRRPv3 is present in the network.
- CSCwc73462 - Backslash "\" in the end of the RADIUS servers' shared secret is not allowed for FlexConnect groups configuration.
- CSCwd07572 - Access Point stops transmitting UBPR in 6-GHz when it is active in 2.4-GHz or 5-GHz band.
- CSCwc05366 - Wireless clients cannot reach each other as ARP resolution fails when performing dynamic VLAN assignment using AAA with SSID.
- CSCwc15533 - Continuous wncmgrd CPUHOG traceback with scale Flexible NetFlow (FNF) mapping to policy profile results in 100% wncd utilization.
- CSCwc15944 - Multicast data is not sent to clients and few Access Points are unable to join the controller.
- CSCwc22468 - Client traffic fails when client roams between access points with a transition between dot11r and dot11i.
- CSCwc26105 - High Availability split brain is observed due to multiple secondary addresses in the interface.
- CSCwc42784 - Client fails to connect when protocol based Quality of Service (QoS) is configured.
- CSCwc57227 - Controller experiences an unexpected reset resulting in a system report containing a wncd core file.
- CSCwc59518 - Cisco Catalyst 9800-80 Wireless Controller crashes when using WLAN profile with 32 characters and disabled voice Channel Availability Check (CAC).
- CSCwc68682 - Cisco Catalyst 9800 Wireless Controller - Link down due to local fault.
- CSCwb47040 - Controller does not update Radio Frequency Identification (RFID) location properly.
- CSCwb78191 - The AAA VLAN override is not considered with iPSK authentication and anchor WLAN.
- CSCwc17774 - Few OIDs in CISCO-ENHANCED-MEMPOOL-MIB display "No instance after switchover" in Cisco IOS-XE 17.6.1.
- CSCwc26819 - Controller does not send LLC or XID spoofed frames after a mobility event.
- CSCwc28408 - Controller crashes intermittently due to wncd critical process failure.
- CSCwc36125 - Radio Resource Management (RRM) startup mode gets triggered on every reboot as the controller does not keep track of the last state.
- CSCwc41358 - Controller MAC filtering: WLAN profile column displays the WLAN name and description.
- CSCwc41903 - Syslog "LISP RELIABLE REGISTRATION" needs to be enhanced.
- CSCwc57836 - Restore configuration by HTTP mode does not work in EWC.
- CSCwc62824 - Controller does not send LLC or XID spoofed frames after a mobility event.
- CSCwc72047 - Access Points operate in disabled RF profile channels in Cisco IOS-XE 17.6.2 release version.
- CSCwc74020 - Need to increase the 8 IP address limit in the controller datapath.
- CSCwc76905 - Switch Integrated Security Features (SISF) crash is observed when handling the DHCP messages.
- CSCwd17349 - Active chassis gets stuck during SSO failover in Cisco IOS-XE 17.9 release version.
Open issues
- CSCwc49992 - Timeout during Direct Memory Access (DMA) transaction causes kernel panic in Access Point.
- CSCwd05213 - Kernel panic crash observed when gRPC server process is executed.
- CSCwd22017 - Apple iOS devices are deleted due to IP Learn timeout.
- CSCwd26693 -The N+1 High Availability setup for FlexConnect access points is not working.
- CSCwd32215 - Clients are stuck in "S_CO_L2_AUTH_IN_PROGRESS" loop when completing authentication.
- CSCwd33981 - Kernel panic crash is observed when PC is at "cpuidle_not_available".
- CSCwd35577 - Double bit ECC error causes the standby controller to reload.
- CSCwd20476 - Wireless peers are unable to reach each other when passive client is enabled.
- CSCwd22430 - Access Points fail to view the backup image after using the "archive download-sw" command.
- CSCwd25931 - Wireless client does not receive IPv6 RA from wired FlexConnect local Dynamic Host Configuration Protocol (DHCP).
- CSCwd34908 - Dynamic Channel Allocation (DCA) debug in the controller does not display Slot 2 when nearby Access Point uses channel 36.
- CSCwd36187 - Controller does not regularly send license sync report to Cisco Smart Software Manager (CSSM).
- CSCwc97199 - Re-association request processing is delayed between the driver and wcp.