Release Notes for Cisco Catalyst Blade Switch 3120 for HP, Cisco IOS Release 12.2(55)SE and Later
13
Release Notes for Cisco Catalyst Blade Switch 3120 for HP, Cisco IOS Release 12.2(55)SE and Later
OL-22860-04
Limitations and Restrictions
• The switch might display tracebacks similar to this example when an EtherChannel interface
port-channel type changes from Layer 2 to Layer 3 or the reverse:
15:50:11: %COMMON_FIB-4-FIBNULLHWIDB: Missing hwidb for fibhwidb Port-channel1
(ifindex 1632) -Traceback= A585C B881B8 B891CC 2F4F70 5550E8 564EAC 851338 84AF0C
4CEB50 859DF4 A7BF28 A98260 882658 879A58
There is no workaround. (CSCsh12472)
HSRP
• When the switch stack is in the HSRP active state and a master changeover occurs, you cannot ping
the stack by using an HSRP virtual IP address.
There is no workaround. (CSCth00938)
IEEE 802.1x Authentication
• If a supplicant using a Marvel Yukon network interface card (NIC) is connected to an
IEEE 802.1x-authorized port in multihost mode, the extra MAC address of 0c00.0000.0000 appears
in the MAC address table.
Use one of these workarounds (CSCsd90495):
–
Configure the port for single-host mode to prevent the extra MAC address from appearing in the
MAC address table.
–
Replace the NIC with a new card.
• When MAC authentication bypass is configured to use Extensible Authentication Protocol (EAP)
for authorization and critical authentication is configured to assign a critical port to an access
VLAN:
–
If the connected device is supposed to be unauthorized, the connected device might be
authorized on the VLAN that is assigned to the critical port instead of to a guest VLAN.
–
If the device is supposed to be authorized, it is authorized on the VLAN that is assigned to the
critical port.
Use one of these workarounds (CSCse04534):
–
Configure MAC authentication bypass to not use EAP.
–
Define your network access profiles to not use MAC authentication bypass. For more
information, see the Cisco Access Control Server (ACS) documentation.
• When IEEE 802.1x authentication with VLAN assignment is enabled, a CPUHOG message might
appear if the switch is authenticating supplicants in a switch stack.
The workaround is not use the VLAN assignment option. (CSCse22791)
Multicasting
• Multicast packets with a time-to-live (TTL) value of 0 or 1 are flooded in the incoming VLAN when
all of these conditions are met:
–
Multicast routing is enabled in the VLAN.
–
The source IP address of the packet belongs to the directly connected network.
–
The TTL value is either 0 or 1.










