User guide

27
Release Notes for Cisco Router and Security Device Manager 2.5
OL-5009-20
Caveats
CSCsh31616
Because of Cisco IOS caveat CSCsh32935, when reordering class maps in the Edit Inspection Policy
Map dialog, the Cisco SDM-defined class map sdm-protocol-p2p may be removed if it was included
in the policy map being edited.
CSCsh39685
Because of Cisco IOS caveat CSCek68311, a Certificate Authority (CA) server created using the
Cisco SDM CA Server wizard will be shown as stopped. This problem occurs when the router is
running a Cisco IOS 12.4(11)T image.
Workaround: Upgrade the Cisco IOS image on the router to version 12.4(11)T2.
CSCsh41150
When the router is running a Cisco IOS image older than 12.4(11)T the Easy VPN Server Status
screen in Monitoring mode displays the IP address of a client configured with a Dynamic Virtual
Template Interface (DVTI) as 0.0.0.0.
CSCsh46525
You may be unable to delete a DVTI-based Easy VPN Remote configuration using Cisco SDM.
Workaround: Click Refresh in the Cisco SDM toolbar and then delete the configuration.
CSCsh57750
When starting Cisco SDM under Firefox 2.0, online help, IDS, and the Wireless Application open
as a tab in the Cisco SDM splash screen. This problem occurs because the default setting for Firefox
is to open a new page as a tab.
Workaround: Do the following.
Launch Firefox 2.0.
From the Tools menu, choose Options.
Click Tabs.
In the Open links from other applications box, choose a new window option and click OK.
CSCsh62598
When the QoS wizard is used to give a WAN interface QoS configuration with the NBAR option,
the configuration is not completely delivered to the router because some of the match protocols are
not present in Cisco IOS.
CSCsh96364
Multiple instances of Cisco SDM in the Firefox 2.0 browser can cause exceptions to be displayed in
the Java console.
Workaround: Start only a single instance of SDM in the Firefox browser.
CSCsi03518
When a firewall is configured using Cisco SDM, and then Cisco SDM is used to create an SSL VPN
configuration on the router, a NAT passthrough configuration is added by the SSL VPN wizard. No
NAT passthrough configuration is added when creating an SSL VPN configuration using the SSL
VPN edit windows.
CSCsi23696
Because of Cisco IOS caveat CSCsi23729, when Cisco SDM is used to restore the defaults to a
signature on a router running Cisco IOS 12.4(11)T2, signatures that were previously displayed no
longer appear in the signature list.