Guest

Preview Tool

Cisco Bug: CSCsy76997 - GET_VRF::SW, GDOI group registered with wrong Key server

Last Modified

Feb 11, 2018

Products (1)

  • Cisco IOS

Known Affected Releases

12.4(24.6)PI11f 12.4(24.6)PI11i 12.4(24.6)PI11n 12.4(24.6)PI11r 12.4(24.6.3)PIL12 12.4(24.6.7)PIL12 12.4TPI11

Description (partial)

Symptom:

1. When you add/remove local address or attach same CM on different interface; group member start registration to key server for some gdoi group it uses preferred server address and for some group it uses previous KS value it got registered with based on history. This behavior is inconsistent it should either use preferred list or last successful registration value. 

2. Also for gdoi group GetvpnAdvanced2 even though GM registered with KS 10.10.5.1 "show crypto gdoi" displays registered with KS 10.10.5.4.

 Group Name               : GetvpnAdvanced2
    Group member             : 10.10.5.3        vrf: red
       Registration status   : Registered
       Registered with       : 10.10.5.4 <----------- should be KS 10.10.5.1

Conditions:
 
Add/remove local address or attach same CM on different interface.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.