Guest

Preview Tool

Cisco Bug: CSCvi73196 - Invalid characters in the running config after configuring RBAC roles and rules

Last Modified

Jun 06, 2018

Products (1)

  • Cisco Nexus 3000 Series Switches

Known Affected Releases

6.0(2)U6(7)

Description (partial)

Symptom:
Invalid characters were seen after configuring RBAC roles and rules.

The intent is to configure the below config:

role name azure-rw
  rule 3 permit command copy running * ;
  rule 2 permit command config t ; interface * ; no shutdown * ;
  rule 1 permit command config t ; interface * ; shutdown * ;
  interface policy deny
    permit interface Ethernet1/1-24
    permit interface Ethernet1/49/1-4
    permit interface Ethernet1/50/1-4
    permit interface Ethernet1/51/1-4
    permit interface Ethernet1/52/1-4
 
However, when the above config is pasted twice ( do not remove it after configuring it the first time) you see invalid or jibberish characters.

Nexus-3064(config)# sh version  | i bin
  kickstart image file is: bootflash:///n3000-uk9-kickstart.6.0.2.U6.10.bin
  system image file is:    bootflash:///n3000-uk9.6.0.2.U6.7.bin
 
Nexus-3064(config)# sh run
<<snip>>
role name azure-rw
  rule 3 permit command copy running * ;
  rule 2 permit command config t ; interface * ; no shutdown * ;
  rule 1 permit command config t ; interface * ; shutdown * ;
  interface policy deny
    permit interface ∞Tû˜√û >>>>>>>>>>>>>>>>>>>>>>>>>>>Invalid characters

Conditions:
Copy paste the below config twice overlapping the first time.

role name azure-rw
  rule 3 permit command copy running * ;
  rule 2 permit command config t ; interface * ; no shutdown * ;
  rule 1 permit command config t ; interface * ; shutdown * ;
  interface policy deny
    permit interface Ethernet1/1-24
    permit interface Ethernet1/49/1-4
    permit interface Ethernet1/50/1-4
    permit interface Ethernet1/51/1-4
    permit interface Ethernet1/52/1-4
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.