Cisco Bug: CSCvv03229 - Crash in sre_dp_traverse_dfa_legacy as SIP invite messages crosses a GRE Tunnel
Sep 15, 2020
- Cisco 4000 Series Integrated Services Routers
Known Affected Releases
Symptom: Device upgraded from 15.5(3)S7b to 16.9.4 to run the Umbrella feature Conditions: This issue only happens with below conditions, 1. Enable FW or NAT on the which will enable VFR (virtual fragement reassembly) on the interface 2. Enable NBAR or features (FNF/Performance monitor/ QoS match application) 3.Enable Umbrella on the box globally or on specific interface 4. The most necessary condition to trigger this issue is, There are 2 BRs on same site (auto-tunnel can redirect TC from one BR to another BR) The case is, only in this condition, the traffic from one BR to another BR will not run NBAR on LAN ingress for customer traffic and then NBAR do DPI on WAN egress side and then trigger the crash 5. A big packet than interface MTU(1500) which needs to be done VFR before NBAR on WAN interface.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases