Download Print this page

Enterasys Matrix C2 C2K122-24 Release Note page 16

Enterasys matrix c2 c2k122-24: release note
Hide thumbs Also See for Matrix C2 C2K122-24:

Advertisement

Changes and Enhancements in 5.00.32
Issues have been resolved with loading saved configurations which contained the RADIUS option ―realm
network-access‖ or policy rules containing ―admin-profile vlantag <VLAN> admin-pid <PID>‖.
The switch now supports the ability to configure two default routes in the router CLI.
The output of the ―dir‖ command will display the active and backup image loaded on the device when they are
loaded via the CLI or SNMP.
When terminating an authenticated session from Policy Manager, both the 802.1X session and the dynamically
assigned policy are now removed from the port.
If access to the RADIUS server had been lost while an 802.1x supplicant tried to authenticate, when
connectivity to the RADIUS server is restored, the switch will now respond to the RADIUS access-challenge,
thus allowing the authentication process to proceed.
Once authenticated, a user will have the default policy assignment removed from their port, and the appropriate
dynamic policy, per their authentication credentials, applied to the port.
Mixed Stacking
5.0 will be required to mix C2 hardware with C3 hardware.
C3 stack containing C2H will impose:
1.
A single role (Policy) limitation of 100 rules and 10 masks.
2.
A system limitation of 100 unique rules and 18 unique masks.
3
No DA/SA, Ethertype or ICMP type rules
4.
Maximum of 15 roles
5.
No metering
C3 stack containing a C2G will impose:
1. A single role limitation of 100 rules and 10 masks.
2. A system limitation of 768 unique rules.
3. No DA/SA or Ethertype rules
4. Maximum of 15 roles
5. No metering
The C3 product should be the master when mixing with a C2 stack.
Corrected subneted rule precedence for Policy ipsourcesocket and ipdestsocket to be based on role
precedence and mask length instead of order of configuration.
802.1X clients MAC address database entries are no longer permanently learned if maclocking is enabled
globally and the individual port maclocking is disabled.
Enabling MAC Authentication on ports which already have learned MAC addresses will no longer cause
learned traffic to flood over stack.
The reserved multicast address 01-80-C2-00-00-11 will now be forwarded through the SecureStack C2.
After clearing port counters, the time displayed for ―Counter Discontinuity‖ is correctly reset to 0.
Resolved an issue which would cause the stack to reset after creating twenty-three routing interfaces.
Changes and Enhancements in 4.00.31
The switch will now include the correct port number in the NAS-Port-Id attribute field when sending a RADIUS
Authentication Request to a RADIUS server.
The CLI now supports the ―set tftp retries‖ and ―set tftp timeout‖ commands for configuring these settings to non-
default values.
Optimized the performance of the ―set port vlan‖ command to ensure the action completes its execution in a
timely manner when enforced within an environment containing a large number of VLANs.
The SecureStack C2 will now display all ports when accessing the FlexView ―Port Spanningtree Information‖
tab.
Support for the configuration of non-default UDP port settings for SNMP access has been added with this
release.
08/13/2008 P/N: 9038155-52
F0615-O
Subject to Change Without Notice
CUSTOMER RELEASE NOTES
Page: 16 of 41

Advertisement

loading