Guest

Preview Tool

Cisco Bug: CSCvv46454 - Switch does not accept AccessAccept if it arrives in fragments, resends duplicate AccessRequest.

Last Modified

Sep 01, 2020

Products (1)

  • Cisco IOS

Known Affected Releases

16.9.4

Description (partial)

Symptom:
DACL name being applied to the interface but the DACL is not

Switch can not read the Access-Accept packets that were fragmented and is duplicating the Access-Request to download the ACEs

Endpoint stays in an unauthorised state and can not get the network access

DACL is being pushed as fragmented traffic towards the switch

IP Device Tracking remains in the STALE state for this endpoint

Conditions:
DACL size is too big and the packet needs to be fragmented

Switch IP Device Tracking feature is in the STALE state

Switch in use : WS-C3850-12X48U 16.9.4
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.