User guide

33
Release Notes for Cisco Router and Security Device Manager 2.5
OL-5009-20
Caveats
CSCec31789
When you update Cisco SDM, if any of the uploaded files shows a size of zero bytes when show
flash is invoked, no operations such as copy or delete can be performed on flash memory. This
problem rarely occurs.
Workaround: Restart the router to be able to perform operations on flash memory. If files of zero
bytes are shown in a show flash display, restart the router before starting Cisco SDM.
CSCea90231
Router does not reload with default configuration when a’ user executes a Reset To Factory Defaults
operation in Cisco SDM.
If the router is running Cisco IOS Release 12.2(11)T6, and the last 4 bits of the config-register value
are set to 0, for example 0x2100 or 0x1100, the router does not reload when the user performs a
Reset To Factory Defaults. Cisco SDM indicates that it has sent a reload command to the router and
shuts down, and the default configuration is copied to the startup-config, but the reload command
has not executed, and the router is still using the running configuration that was present before the
Reset To Factory Defaults operation.
Workaround: Use the CLI config-register command to ensure that the last 4 bits of the config
register are not set to 0 (zero).
CSCea89054
If you delete a WAN connection that you created, an ip nat inside command may still remain in a
LAN interface configuration.
Workaround: To delete the ip nat inside command from the LAN interface configuration, go t o
Edit Interfaces and Connections, choose the LAN interface, click Edit, and delete the association in
the Association tab.
CSCin44264
Enabling AES encryption or IP compression in the Add/Edit IKE Policy or Add/Edit Transform Set
windows might not work even though the Cisco IOS image running on the router supports AES
encryption or IP Compression. This may happen in the following circumstances:
Hardware encryption is enabled.
The router has a VPN module that does not support AES encryption or IP compression.
Workaround: Do one of the following:
Disable hardware encryption by adding the no crypto engine accelerator command to the
configuration file using the CLI interface. This command tells the router to use Cisco IOS
software for encryption instead of using the encryption provided by the VPN module.
Upgrade your hardware VPN module to one that supports AES or IP compression.
For more info on VPN Modules, see the data sheet at the following link: VPN data sheet.
CSCdy80223
When Cisco SDM runs with a Cisco IOS image of a release earlier than 12.3T, or earlier than
Release 12.2(13)ZH, the HTTP server appends unnecessary characters to names of files it displays.
As a result, when Cisco SDM is started, the web browser displays the warning “Content does not
match the signature.
Workaround: Disregard the warning and click Ye s to continue.