Cisco Cisco IOS Software Release 12.4(4)T

Page de 314
1305
Caveats for Cisco IOS Release 12.4T
OL-8003-09 Rev. Z0
  Resolved Caveats—Cisco IOS Release 12.4(4)T4
Conditions: This symptom is observed in an LAC router when PPPoE session is disconnected before 
completing to establish the L2TP session.
Workaround: There is no workaround. 
CSCse20809
Symptoms: IKE SA processing stops at CONF_XAUTH state although the extended authentication 
(Xauth) username and password are configured on EzVPN Remote correctly.
Conditions: This symptom has been observed when load balancing is configured on a Cisco VPN 
3000 Series Concentrator.
Workaround: There is no workaround. 
CSCse34097
Symptoms: When a voice call is made to one of the busy channels of BRI/PRI port, the call gets 
rejected and then another call is made to the available port. The call gets connected, and the user 
hears an annoying hissing sound.
Conditions: The procedure to recreate this scenario is the following:
Phone a & b ---OGW --VoIP --TGW(2611) --BRI/PRI --PBX -- phone c & d
Phone a calls phone c;
Phone b calls phone c;
Phone b calls phone d;
Phone d picks up and hears a hissing noise.
Workaround: There is no workaround. 
CSCse45425
Symptoms: A VAM2 may reset when it receives a malformed ESP packet, and a “Free Pool stuck” 
error message may be generated. This situation causes high CPU usage in the encryption process 
while the software is handling the encryption as opposed to the hardware. Even when the VAM2 
recovers, the high CPU usage remains because the software-encrypted tunnels do not fall back to 
hardware encryption until the SA lifetime expires.
Conditions: This symptom is observed on a Cisco 7200 series that runs Cisco IOS Release 12.3(19) 
or Release 12.4(7a).
Workaround: There is no workaround to prevent the symptom from occurring. After the symptom 
has occurred and after the VAM2 has recovered, disable software encryption by entering the no 
crypto engine software ipsec
 command to force the encryption back to the hardware. 
CSCse47912
Symptoms: An MPF enabled Cisco 7200 or 7301 router that is running Cisco IOS 
Release 12.3(14)YM does not generate ICMP redirect, ICMP ttl exceeded, or ICMP unreachable 
message with “DF set fragmentation needed” code as it should. It does generate a corresponding 
ICMP message sometimes but with incorrect ICMP checksum.
Conditions: This symptom is observed on a Cisco 7200 or 7301 router with MPF enabled, and it is 
MPF platform dependent.
Workaround: Use TCP MSS adjustment to avoid fragmentation, or turn off MPF with the no ip mpf 
command. 
CSCse75492
Symptoms: A router may crash due to fixing the memory leak problem in “SSS Manager.”