User guide
27
Release Notes for Cisco Router and Security Device Manager 2.5
OL-5009-20
Caveats
• CSCsh31616
Because of Cisco IOS caveat CSCsh32935, when reordering class maps in the Edit Inspection Policy
Map dialog, the Cisco SDM-defined class map sdm-protocol-p2p may be removed if it was included
in the policy map being edited.
• CSCsh39685
Because of Cisco IOS caveat CSCek68311, a Certificate Authority (CA) server created using the
Cisco SDM CA Server wizard will be shown as stopped. This problem occurs when the router is
running a Cisco IOS 12.4(11)T image.
Workaround: Upgrade the Cisco IOS image on the router to version 12.4(11)T2.
• CSCsh41150
When the router is running a Cisco IOS image older than 12.4(11)T the Easy VPN Server Status
screen in Monitoring mode displays the IP address of a client configured with a Dynamic Virtual
Template Interface (DVTI) as 0.0.0.0.
• CSCsh46525
You may be unable to delete a DVTI-based Easy VPN Remote configuration using Cisco SDM.
Workaround: Click Refresh in the Cisco SDM toolbar and then delete the configuration.
• CSCsh57750
When starting Cisco SDM under Firefox 2.0, online help, IDS, and the Wireless Application open
as a tab in the Cisco SDM splash screen. This problem occurs because the default setting for Firefox
is to open a new page as a tab.
Workaround: Do the following.
–
Launch Firefox 2.0.
–
From the Tools menu, choose Options.
–
Click Tabs.
–
In the Open links from other applications box, choose a new window option and click OK.
• CSCsh62598
When the QoS wizard is used to give a WAN interface QoS configuration with the NBAR option,
the configuration is not completely delivered to the router because some of the match protocols are
not present in Cisco IOS.
• CSCsh96364
Multiple instances of Cisco SDM in the Firefox 2.0 browser can cause exceptions to be displayed in
the Java console.
Workaround: Start only a single instance of SDM in the Firefox browser.
• CSCsi03518
When a firewall is configured using Cisco SDM, and then Cisco SDM is used to create an SSL VPN
configuration on the router, a NAT passthrough configuration is added by the SSL VPN wizard. No
NAT passthrough configuration is added when creating an SSL VPN configuration using the SSL
VPN edit windows.
• CSCsi23696
Because of Cisco IOS caveat CSCsi23729, when Cisco SDM is used to restore the defaults to a
signature on a router running Cisco IOS 12.4(11)T2, signatures that were previously displayed no
longer appear in the signature list.