ExtremeXOS 32.4 RelNotes
ExtremeXOS 32.4 RelNotes
9037716-00 Rev AA
April 2023
Copyright © 2023 All rights reserved.
Legal Notice
Extreme Networks, Inc. reserves the right to make changes in specifications and other
information contained in this document and its website without prior notice. The reader should
in all cases consult representatives of Extreme Networks to determine whether any such changes
have been made.
The hardware, firmware, software or any specifications described or referred to in this document
are subject to change without notice.
Trademarks
Extreme Networks and the Extreme Networks logo are trademarks or registered trademarks of
Extreme Networks, Inc. in the United States and/or other countries.
All other names (including any product names) mentioned in this document are the property
of their respective owners and may be trademarks or registered trademarks of their respective
companies/owners.
For additional information on Extreme Networks trademarks, see: www.extremenetworks.com/
company/legal/trademarks
Overview.........................................................................................................................................10
Security Information....................................................................................................................11
Linux Kernel.............................................................................................................................................................................................11
OpenSSL Version.................................................................................................................................................................................11
Upgrading ExtremeXOS.............................................................................................................12
Newly Purchased Switches Require Software Upgrade................................................ 13
Default ExtremeXOS® Settings.............................................................................................. 14
Image File Names........................................................................................................................ 17
New and Corrected Features in ExtremeXOS 32.4.......................................................... 18
Auto-negotiation Enhancement.......................................................................................................................................... 18
Supported Platforms............................................................................................................................................................18
Direct Route Leaking Between Virtual Routers........................................................................................................18
Supported Platforms............................................................................................................................................................ 19
New CLI Commands.............................................................................................................................................................19
Changed CLI Commands................................................................................................................................................. 19
Limits............................................................................................................................................... 27
Limits Overview..................................................................................................................................................................................27
Value Edge License Limits........................................................................................................................................................ 29
Edge License Limits....................................................................................................................................................................... 42
Advanced Edge License Limits............................................................................................................................................. 67
Core License Limits......................................................................................................................................................................... 77
Notes for Limits Tables................................................................................................................................................................. 82
Conventions
To help you better understand the information presented in this guide, the following
topics describe the formatting conventions used for notes, text, and other elements.
Text Conventions
Unless otherwise noted, information in this document applies to all supported
environments for the products in question. Exceptions, like command keywords
associated with a specific software version, are identified in the text.
Table 2: Text
Convention Description
screen displays This typeface indicates command syntax, or represents
information as it is displayed on the screen.
The words enter and When you see the word enter in this guide, you must type
type something, and then press the Return or Enter key. Do not
press the Return or Enter key when an instruction simply
says type.
Key names Key names are written in boldface, for example Ctrl or Esc.
If you must press two or more keys simultaneously, the
key names are linked with a plus sign (+). Example: Press
Ctrl+Alt+Del
Words in italicized type Italics emphasize a point or denote new terms at the place
where they are defined in the text. Italics are also used
when referring to publication titles.
New information. In a PDF, this is searchable text.
Platform-Dependent Conventions
Unless otherwise noted, all information applies to all platforms supported by
Switch Engine software, which are the following:
• ExtremeSwitching® switches
• SummitStack™
Terminology
When features, functionality, or operation is specific to a device family, such
as ExtremeSwitching, the family name is used. Explanations about features and
operations that are the same across all product families simply refer to the product
as the device.
Send Feedback
The Information Development team at Extreme Networks has made every effort to
ensure that this document is accurate, complete, and easy to use. We strive to improve
our documentation to help you in your work, so we want to hear from you. We welcome
all feedback, but we especially want to know about:
• Content errors, or confusing or conflicting information.
• Improvements that would help you find relevant information.
• Broken links or usability issues.
Provide the publication title, part number, and as much detail as possible, including
the topic heading and page number if applicable, as well as your suggestions for
improvement.
Before contacting Extreme Networks for technical support, have the following
information ready:
• Your Extreme Networks service contract number, or serial numbers for all involved
Extreme Networks products
• A description of the failure
• A description of any actions already taken to resolve the problem
• A description of your network environment (such as layout, cable type, other
relevant environmental information)
• Network load at the time of trouble (if known)
• The device history (for example, if you have returned the device before, or if this is a
recurring problem)
• Any related RMA (Return Material Authorization) numbers
1. Go to The Hub.
2. In the list of categories, expand the Product Announcements list.
3. Select a product for which you would like to receive notifications.
4. Select Subscribe.
5. To select additional products, return to the Product Announcements list and repeat
steps 3 and 4.
Related Publications
ExtremeXOS Publications
• ExtremeXOS 32.4 Command Reference Guide
• ExtremeXOS 32.4 Feature License Requirements
• ExtremeXOS 32.4 User Guide
• ExtremeXOS Release Notes
• ExtremeXOS Quick Guide
• ACL Solutions Guide
• Extreme Hardware/Software Compatibility and Recommendation Matrices
• Extreme Optics Compatibility
• Switch Configuration with Chalet for ExtremeXOS 21.x and Later
• Using AVB with Extreme Switches
The following section covers important security information for ExtremeXOS 32.4.
Linux Kernel
ExtremeXOS 32.4 uses Linux Kernel 5.4 for ExtremeSwitching X465, X590 and X695
series switches, and Linux Kernel 4.14 for all other switches.
OpenSSL Version
ExtremeXOS 32.4 uses FIPS openssl-fips-2.0.16.
An ExtremeXOS core image (.xos file) must be downloaded and installed on the
alternate (non-active) partition. If you try to download to an active partition, the system
displays the following error message: Error: Image can only be installed to the
non-active partition. An ExtremeXOS modular software package (.xmod file) can
still be downloaded and installed on either the active or alternate partition.
Note
New ExtremeSwitching X435 PoE switches with a Giga device MCU part
(switch default ships with supported EXOS versions from the factory) will
prevent the switch downgrade to older EXOS versions.
The following error message is displayed during the downgrades to older
versions:
Error: Failed to download image - summitlite_arm-31.6.1.3.xos does not
include compatible PoE microcontroller support. See the User Guide for
information on installing a newer software release. See the
Hardware/Software Compatibility and Recommendation Matrices to verify the
supported releases.
The switch can be identified for the inclusion of the Giga device MCU by
checking the PoE firmware revision (5.0 or later) by entering the show inline-
power stats command (line four):
# show inline-power stats
Inline-Power Slot Statistics
Firmware status : Operational
Firmware revision : 5.0.0b4
Total ports powered : 3
Total ports awaiting power : 20
Total ports faulted : 0
Total ports disabled : 1
For information about upgrading the ExtremeXOS software, see the ExtremeXOS
Upgrade Process topic in the Software Upgrade and Boot Options chapter of the
ExtremeXOS 32.4 User Guide.
a If you choose enhanced security mode when initially setting up the switch or after running unconfigure
switch all.
This section lists the new and corrected features supported in the 32.4 software:
Auto-negotiation Enhancement
Beginning in version 32.4, Auto-negotiation defaults to ON for SFP28, QSFP+, and
QSFP28 ports (25G/40G/50G/100G).
Supported Platforms
ExtremeSwitching X460-G2, X465, X590, and X695 series switches.
Note
This feature is an additional method for achieving Inter-VR routing without an
external router. You can also allow a static route's gateway to be in a different
VR by entering the configure iproute add command and specifying vlan
egress_vlan, or redistribute routes from one OSPF instance to another
OSPF instance in a different VR by entering the enable ospf export {vr}
command.
Leaked direct routes are created with origin direct-inter-vr in the leak-to-VR. These
routes have a lower route priority than direct routes and a higher route priority than any
other route type.
The route priority of direct-inter-vr can be modified using the iproute priority
command. These routes can be redistributed to the OSPF protocol in the leak-to-VR
like any other routes in the VR. OSPF’s route redistribution command is also extended
as part of this feature and includes the direct-inter-vr route type.
Note
To ping a directly attached host from the switch command line successfully,
the ping command must specify the correct VR name (or use the correct
command line VR context) containing the VLAN with that subnet. If another
VR name or VR context is used, the ping will not be successful.
Supported Platforms
All platforms.
Important
Check the ExtremeCloud IQ release notes to ensure support for your version
has been added before upgrading.
This release supports device discovery, basic monitoring, visibility into homogenous
stacking, and the ability to configure an optional user-defined virtual router (VR) and
server address for ExtremeCloud IQ agent to connect to. These values are used instead
of any auto-detected values.
To find the recommended ExtremeXOS versions for specific hardware platforms, see
ExtremeXOS and Switch Engine Release Recommendations.
The latest versions of this and other ExtremeXOS guides are at:
www.extremenetworks.com/documentation/.
When you provide your serial number or agreement number, the MIBs are available
under each release.
For detailed information on which MIBs and SNMP traps are supported, see
the Extreme Networks Proprietary MIBs and MIB Support Details sections in the
ExtremeXOS 32.4 User Guide.
This chapter summarizes the supported limits in ExtremeXOS and Switch Engine 32.4.
Limits Overview
The limits data is grouped by license level that contains the associated features:
• Value Edge License Limits on page 29
• Edge License Limits on page 42
• Advanced Edge License Limits on page 67
• Core License Limits on page 77
Note: * The X435 is the only switch that supports the Value Edge license level.
The following figure illustrates that each license level builds on the features of the
license level below it. For example, the Advanced Edge license includes all of the
features in the Edge license, plus the features in the Advance Edge license level.
The following tables summarize tested metrics for a variety of features, as measured
in a per-system basis unless otherwise noted. These limits may change, but represent
the current status. The contents of this table supersede any values mentioned in the
ExtremeXOS books.
The scaling and performance information shown in the following tables is provided
for the purpose of assisting with network design. It is recommended that network
architects and administrators design and manage networks with an appropriate level
of network scaling “head room.” The scaling and performance figures provided have
been verified using specific network topologies using limited switch configurations.
There is no guarantee that the scaling and performance figures shown are applicable
to all network topologies and switch configurations and are provided as a realistic
estimation only. If you experience scaling and performance characteristics that you feel
are sufficiently below what has been documented, contact Extreme Networks technical
support for additional assistance.
The route limits shown in the following tables for IPv4 and IPv6 routing protocols
are software limits only. The actual hardware limits may be higher or lower than
the software limits, based on platform. The hardware limits for specific platforms are
specified as "IPv4/IPv6 routes (LPM entries in hardware)" in the following tables.
In the Extended Edge Switching architecture, Layer-2, Layer-3, and multicast packet
forwarding and filtering operations take place on the controlling bridge. The controlling
bridge switch and attached BPEs (V400 Virtual Port Extenders) constitute a single,
extended switch system. Therefore, the Extended Edge Switching system assumes the
scale and limits from the specific controlling bridge model in use. For applicable limits,
see the following tables for the controlling bridge you are using.
Note:
• The internal lookup table
configuration used is "l2-
and-l3”.
• IPv6 and IPv4 L2 IPMC
scaling is the same for this
mode.
• Layer-2 IPMC
forwarding cache limits—
(IGMP/MLD/PIM snooping)
in mixed-mode are the
same.
Note:
• Limit value is the same
for MVR senders, PIM
Snooping entries. PIM SSM
cache, IGMP senders, PIM
cache.
• Assumes source-group-
vlan mode as look up key.
• Layer 3 IPMC cache limit in
mixed mode also has the
same value.
Note:
• Limit value is the same
for MLD sender per switch,
PIM IPv6 cache.
• Assumes source-group-
vlan mode as lookup key.
ExtremeSwitching X620
ExtremeSwitching
a The table shows the total available. When installing ACL rules bound to a set of ports, rules are replicated
for each port if there are ACL counters and counter compression is not enabled, or if the ports are
Extended Edge Switching extended ports.
c When there are BFD sessions with minimal timer, sessions with default timer should not be used.
f Effective capacity varies based on actual MAC addresses and VLAN IDs used and hash algorithm selected.
g Based on "configure forwarding internal-tables more l2".
h Based on "configure forwarding internal-tables more l3-and-ipmc".
j The limit depends on setting configured with configure iproute reserved-entries.
m The IPv4 and IPv6 multicast entries share the same hardware tables, so the effective number of IPv6
multicast entries depends on the number of IPv4 multicast entries present and vice versa.
n If IGMP and MLD are simultaneously configured on the switch, the number of effective subscribers
supported are lessened accordingly.
o The total of all PBR next hops on all flow redirects should not exceed 4,096.
p The number of XNV authentications supported based on system ACL limitations.
q Based on "configure forwarding internal-tables more routes".
r Based on configure forwarding internal-tables more routes ipv6-mask-length 128.
s Based on configure forwarding internal-tables more l3-and-ipmc or configure
forwarding internal-tables l2-and-l3.
This chapter lists open software issues, limitations in ExtremeXOS and Switch Engine
system architecture (known issues), and resolved issues in ExtremeXOS and Switch
Engine.
Open Issues
There are no open issues in this release.
Known Behaviors
There are no known issues in this version.
Table 11: Resolved Issues, Platform-Specific, and Feature Change Requests (CRs) in
32.4
Defect Number Description
General
EXOS-29649 Web-based netlogin is not enabled even though authentication
mode is required.
EXOS-32089 PIM router stops the stream after IGMP leaves on another router
despite there being an active subscriber on the port.
EXOS-32191 MVRP not correctly applying VLANs to ports with MLAG.
Table 11: Resolved Issues, Platform-Specific, and Feature Change Requests (CRs) in
32.4 (continued)
Defect Number Description
EXOS-32535 SNMP trap gets the wrong key after restart.
EXOS-32703 Valid LLDP Packet gets processed as an STP packet.
EXOS-32832 VLAN auto-move deletes VLANs on ports even if the VLAN is
tagged on the port.
EXOS-32866 During TFTP get operations, if the local file name is mentioned
as just a period ("." ), then the permissions for home directory are
changed.
EXOS-33017 Fabric Attach Auth-Key length of 32 characters doesn't work.
EXOS-33041 Traffic loss after VPWS instance is removed from a port.
EXOS-33071 Last successful login time is not same as system time.
EXOS-33082 The show fdb stats command doesn't show display strings for
LAG master port.
EXOS-33118 Stack not sending extremeStackMemberOverheat trap for
individual members.
EXOS-33131 The policy process crashes with signal 6 when the ports are
restarted.
EXOS-33222 IdMgr process crashed with signal 11 on reception of invalid UDP
packet length.
EXOS-33227 PoE show outputs Missing in Show Tech when the switch is
loaded with a default config.
EXOS-33283 IP security crash observed on MLAG peer while DHCP ACK
packet with option 61 is checkpointed.
EXOS-33310 PIM cache entry was not cleared when anycast RP was
configured.
EXOS-33311 0A HEX Value appended to the end of
extremeLastChangeConfigTime OID.
EXOS-33386 ZTP DHCP with DHCP option 43 does not work on switches that
don't support VR-management.
EXOS-33423 During the execution of the show access-list counter command
in a stack, a HAL process crash occurs.
ExtremeSwitching X435 Series Switches
EXOS-33200 On the ExtremeSwitching X435-8P-4S switch, downgrading
EXOS from a higher version to a lower version may render PoE
permanently inoperable.
EXOS-33241 Adding a debug CLI command to correct bad portmap in
ExtremeSwitching X435 switches for PoE issues.
ExtremeSwitching X440-G2
EXOS-32655 On an ExtremeSwitching X440-G2-24X/48X switch, Finisar
1000BASE-T optic will not link up when configured for 100 Mbps
with Auto-Negotiation disabled and speed set to 100 Mbps.
Table 11: Resolved Issues, Platform-Specific, and Feature Change Requests (CRs) in
32.4 (continued)
Defect Number Description
ExtremeSwitching X465 Series Switches
EXOS-31734 Half-duplex not working with speed 100 auto-off in the
ExtremeSwitching X465 switch.
EXOS-32792 100G to 25G Amphenol Break-out cables are displayed as
unsupported.
ExtremeSwitching X695 Series Switches
EXOS-32721 IGMP joins are not forwarded by ExtremeSwitching X695 when
the port is part of both a VMAN and a VLAN.
EXOS-33024 Incorrect error message logged when a 40G optic is inserted
into a 100G non-partitionable port.
Extended Edge Switching
EXOS-32654 VPEX Controlling Bridge reboots due to memory depletion.
EXOS-33223 Random BPE slots rebooting with a CSP SR Wait Timer
expired for BPE message.