Views
2

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

Update Summary

Release Notes for Cisco Catalyst 8200 and Catalyst 8300 Series Edge Platforms, Cisco IOS XE 17.16.x. Cisco IOS XE 17.16.1a adds new SD-WAN, security, logging, and routing features, and includes multiple resolved and open bugs.

Update Details

Security

  • Disablement of weak SSH algorithms: ssh-rsa is disabled by default on port 22 to improve security.
  • Configure source interface for High-Speed Logging and Syslog for security logging, including firewall message logging with minimal packet-processing impact.
  • UTD Container Management for SD-Routing devices to detect, upgrade, and manage Unified Threat Defense security virtual images.
  • Support for Enrollment over Secure Transport (EST) using HTTP-based authentication.
  • Cisco Unified Border Element (CUBE) adds Secure Communications Interoperability Protocol (SCIP) support in preview mode.

Bug Fixes

  • Resolved issues include crashes, trace decode errors, PKI trustpoint password handling, crypto profile push failures, config sync problems, and NHRP-related reloads.
  • Open issues include MACsec lockups, authentication failures after power cycle, PPPoE session hangs, BFD/TLOC-Ext problems, and traffic blackholing after power-cycle.

New Features

  • Configure cellular interfaces using Feature Parcels in Cisco SD-WAN Manager without CLI dependency.
  • Asymmetric carrier delay for separate link-up and link-down notification timing.
  • Enhanced show power output with detail and history keywords.
  • Support for monitoring TCP and RTP traffic on DMVPN tunnels using ART monitor and Media monitor.
  • Cisco ThousandEyes Enterprise Agent onboarding on SD-Routing devices.
  • Speed test enhancement for site-to-site bandwidth testing over DMVPN tunnels.
  • Support for network slicing on 5G standalone networks.
  • Enhanced Segment Routing over IPv6 data plane support, including eBGP Inter-AS, PCE-delegated path computation, and OAM traffic engineering.

Known Issues

  • SCIP support in CUBE is available in preview mode with limited functionality and no service-level objective for support response times.
  • Open bugs remain in 17.16.1a, including ROMMON auto-upgrade failures, MACsec issues, authentication failures after power cycle, and traffic loss scenarios.

Hints

  • Cisco IOS XE 17.16.1a is the first release in the 17.16.x series for these platforms.
  • Review Cisco Field Notices before upgrading to determine whether your platform is affected.
  • ROMMON compatibility is required; Cisco provides minimum and recommended ROMMON versions for each platform.
  • For some Catalyst 8200/8200L platforms, upgrading via IOS XE 17.12.4 or manually upgrading ROMMON to 17.6(8.1r) may be required before moving to 17.15.1a or later.
  • ROMMON upgrade steps include checking the current version, downloading the package, copying it to flash, running upgrade rom-monitor, and reloading.

Links

Product Information

Vendor: Cisco

Product: IOS XE

Version: Cisco IOS XE 17.16.1a

Release date: Dec 22, 2024