Cisco Bug: CSCtb56607 - GETVPN: GM does not perform PMTUD correctly with TBAR
May 09, 2017
- Cisco IOS
Known Affected Releases
12.4(24.6)PI11u 12.4(24.6)PI11v 15.0M 15.1(0.2)PI12e
Symptom: On a Cisco IOS router configured with GET (Group Encrypted Transport), if Time Based Anti Replay is enabled, then upon receiving a large packet with the DF (Don't Fragment) bit set, the router does not send the correct next-hop-mtu value in the ICMP packet-too-large but DF bit set messages. This breaks PMTUD (Path MTU Discovery). Conditions: This is only a problem when Time Based Anti Replay is enabled.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases