Cisco Bug: CSCta05809 - GETVPN: GETVPN control-plane sensible to replay
Jan 28, 2017
- Cisco IOS
Known Affected Releases
12.2SXJ 12.2XN 12.4T
Symptoms: A group member on a GETVPN network may stop passing encrypted traffic. Conditions: A GETVPN group member (GM) may accept and process an old or duplicate rekey message from the designated key server (KS). If the rekey message includes a TEK which was previously used to encrypt data, but which has already expired, the GM may become unable to send and receive encrypted traffic.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases