Cisco Blog » The Platform

2015年10月1日星期四

Cisco Notification Alert -Cisco UCS Director - For Large Scale DC-01-Oct-2015 16:50 GMT

 

 

 

 

 

 

 


Security Advisories & Responses - UCS Director

Title:
Cisco Integrated Management Controller Supervisor and Cisco UCS Director Remote File Overwrite Vulnerability
Description:

Cisco Integrated Management Controller (IMC) Supervisor and Cisco UCS Director contain a remote file overwrite vulnerability that could allow an unauthenticated, remote attacker to overwrite arbitrary system files, resulting in system instability or a denial of service (DoS) condition.

Cisco has released software updates that address this vulnerability.

Workarounds that mitigate this vulnerability are not available.

This advisory is available at the following link:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150902-cimcs

Date:
02-SEP-2015

Find additional information in Cisco Security Advisories & Responses

Software Updates for UCS Director

Product Name:
UCS Director 5.3
Software Type:
UCS Director Virtual Appliance Software
Release Version:
5
Alert Type:
New File
File Name:
cucsd-open-auto-sdk-sample-5.3.2.0.zip
File Description:

Cisco UCS Director 5.3.2.0 Open Automation SDK sample

File Release Date:
16-SEP-2015
Find additional information in Software Downloads index.

Software Updates for UCS Director

Product Name:
UCS Director Express for Big Data 1.1
Software Type:
UCS Director Virtual Appliance Software
Release Version:
1
Alert Type:
New File
File Name:
cucsde_bma_patch_5_3_1_2.zip
File Description:

Cisco UCS Director Bare Metal Agent Patch for Cisco UCS Director Express For Big Data (Patch need to be applied on top Cisco UCS Director BMA 5.3. MD5 Checksum - 1508fa6d0500e3c35562e3b8dd953ea3)

File Release Date:
09-SEP-2015
Alert Type:
New File
File Name:
cucsde_patch_1_1_0_3.zip
File Description:

Cisco UCSD Express For Big Data Patch (Patch needs to be applied on 1.1. MD5 Checksum - ca8cf907f36df09e90a89f3870aceea3)

File Release Date:
09-SEP-2015
Find additional information in Software Downloads index.

Known Bugs - UCS Director

Alert Type:
Updated *
Bug Id:
CSCuv03354
Title:
Unable to Add UCSM 2.2-(5a) Account in UCSD 5.3 Appliance.
Status:
Fixed
Severity:
2 Severe
Description:

Symptom:
Unable to Add UCSM Account Version 2.2 (5a) in the UCSD Version 5.3.

Conditions:
In the UCSD , Administration -> Physical Accounts, While Try to add the UCSM Account Version 2.2 (5a) will show 'Account Not Reachable' Message.

Workaround:
Apply UCSD Version : 5.3.1.1 Patch.

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.3(0.0), 5.3(1.0), 5.3(2.0)
Known Fixed Releases: *
5.3(1.1), 5.3(1.2), 5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuv40866
Title:
Workflow Input type VMwareDatastoreClusterName returns no values
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
Workflow Input type VMwareDatastoreClusterName returns no values

Conditions:
In 5.3.0, when trying to add an input parameter to a workflow with type VMwareDatastoreClusterName or any VMWare Datastore cluster type of parameter, the type does not return any values.

Workaround:
Manually type in the VMWare Datastore cluster name. But, it must be exact spelling/case/spaces/etc.

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.3(0.0)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuv19568
Title:
Rollback via REST-api Returns an Error
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
When trying to do a rollback, via REST-api, of a workflow that has provisioned a server, the request returns an error.

Conditions:
There is an option to skip user approval. Not enabling this tries to send to hit to SMTP thereby the operation fails.

Workaround:
None

Further Problem Description:
None

Last Modified:
02-SEP-2015
Known Affected Releases:
5.3(0.0)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuv18496
Title:
Hyper-V: VM provisioning failing at resource allocation
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
SR fails with network adapter not reachable

Conditions:
If subnet information is not configured in logical networks in SCVMM

Workaround:
Create a new logical network with subnet - vLAN information.

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.3(0.0)
Known Fixed Releases: *
5.3(1.2), 5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuv43000
Title:
Resource Limit check is showing wrong error msg during VM provisioning
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
Resource Limit check is showing wrong error message if failed during VM provisioning

Conditions:
VM provisioning with resource limit check

Workaround:
Check the resource limit configuration

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.3(0.0)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuu88072
Title:
Attach host to host profile task is taking longer time due to inventory.
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
Adding Host to Host Profile task is taking longer time

Conditions:
Because of triggering account level host profile inventory it consumes more time ,Now instead we are triggering only selected host profile inventory alone.This will solve the problem

Workaround:
None

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.2(0.0), 5.3(0.0)
Known Fixed Releases: *
5.3(1.2), 5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuw01424
Title:
VSAN;VC account addition thru SSO not working in Vmware 5.5
Status:
Fixed
Severity:
3 Moderate
Description: *

Symptom:
VCenter Account additon

Conditions:

Workaround:

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.4(0.0)
Known Fixed Releases:
Alert Type:
Updated *
Bug Id:
CSCuu86347
Title:
Register host with vCenter task is taking longer time.
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
Register Host with vCenter task is taking longer time

Conditions:
The issue is noticed if the vCenter has large number of host, host profiles, cluster, DVswitches etc to collect inventory. In such cases we can see that inventory is taken longer time to complete

Workaround:
None

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.2(0.0), 5.3(0.0)
Known Fixed Releases: *
5.3(1.2), 5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuw26228
Title:
CPU, Memory Utilization, Eth, FC Port are not displayed onSummary of FI
Status:
Open
Severity:
3 Moderate
Description: *

Symptom:
CPU, Memory Utilization, Eth, FC Port are not displayed onSummary of FI

Conditions:
1. Login into the UCS Director with admin Credentials.
2. Go to Physical -> Compute -> Click on UCS Mini -> navigate to Fabric Interconnect Tab -> Click on Active Fabric Interconnect.
3. Double click on Fabric Interconnect.
4. In Summary Tab there will be Graph Listing the Memory, CPU, Ethernet Ports, FC Ports.
5. The Graph Utilization is missing

Workaround:
NA

Further Problem Description:

Last Modified:
28-SEP-2015
Known Affected Releases:
5.4(0.0)
Known Fixed Releases:
Alert Type:
Updated *
Bug Id:
CSCuw04834
Title:
UCSD - GUI is not accessible
Status:
Terminated
Severity:
3 Moderate
Description: *

Symptom:
UCSD - GUI is not accessible

Conditions:
The appliance minimum memory configuration are missing.

Workaround:
Reservation need to be applied in the vCenter for memory and vCPU.

Depending upon the appliance load the appliance memory needs to be increased.

Further Problem Description:

Last Modified:
24-SEP-2015
Known Affected Releases:
5.3(0.0)
Known Fixed Releases:
Alert Type:
New
Bug Id:
CSCuw17950
Title:
RN Mandatory parameters missing in APIC config while configuring protocols
Status:
Open
Severity:
3 Moderate
Description:

Symptom:
1. Configurations not pushed in APIC
2. Faults seen on APIC
3. VIP/SNIP only seen after clearing faults manually.
4. Protocols on which the issue can be seen are rdp, dns,tftp.

Conditions:
Protocols on which the issue can be seen are rdp, dns,tftp.

Workaround:
Add the service type in Apic configuration manually to clear graph rendering defects from APIC.
After the alarms are cleared the said protocol & port would be configured accordingly.
The protocol can be verified in VPX VM with show ns runningconfig | grep

Further Problem Description:

Last Modified:
16-SEP-2015
Known Affected Releases:
5.3(2.0)
Known Fixed Releases:
Alert Type:
Updated *
Bug Id:
CSCuv11072
Title:
Email are not sent correctly with HTML tags
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
After upgrade from 5.3.0.0 to 5.3.1.0 the problem with email notification formatting after upgrade - email are not sent correctly with HTML tags

Conditions:
Email are not sent correctly with HTML tags

Workaround:
None

Further Problem Description:
None

Last Modified:
14-SEP-2015
Known Affected Releases:
5.3(0.0)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuv99860
Title:
Access Denied trying to connect to NetApp with VSC
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
When running custom workflow task we are hitting access denied issue

Conditions:
None

Workaround:
None

Further Problem Description:

Last Modified:
14-SEP-2015
Known Affected Releases:
5.2(0.2)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuu84946
Title:
WINS Server list in System policy is not getting applied to Windows VMs
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
WINS Server list does not get applied to Windows VM

Conditions:
None

Workaround:
None

Further Problem Description:

Last Modified:
02-SEP-2015
Known Affected Releases:
5.2(0.0), 5.3(0.0)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuv36102
Title:
Form validation broken when upgraded to 5.3.0.2/5.3.1.0
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
Form validation is not correct when the workflow is executed as Advance Catalog

Conditions:
Executing the workflow as Advance Catalog

Workaround:
None

Further Problem Description:

Last Modified:
08-SEP-2015
Known Affected Releases:
5.3(1.0)
Known Fixed Releases: *
5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuu50802
Title:
Powershell agent log shows username and password in clear text
Status:
Fixed
Severity:
3 Moderate
Description:

Symptom:
PowerShell agent logs shows the AD username and password in the log in clear text

Conditions:
Passing credentials through powershell agent commands

Workaround:
None

Further Problem Description:

Last Modified:
08-SEP-2015
Known Affected Releases:
5.2(0.0)
Known Fixed Releases: *
5.3(1.2), 5.3(2.0)
Alert Type:
Updated *
Bug Id:
CSCuu43643
Title:
VMRC console is not working when UCSD running on Internet Explorer
Status:
Fixed
Severity:
3 Moderate
Description: *

Symptom:
Unable to open VMRC window from UCSD

Conditions:
Internet Explorer browser is used to access UCSD

Workaround:
Use other web-browsers

Further Problem Description:
If the VMRC plug-in still does not work even with a version of UCS Director containing the fix for this defect, then please try the following:
- install the VMRC plug-in as Administrator
- run Internet Explorer as Administrator
- run Internet Explorer in compatibility mode

Last Modified:
08-SEP-2015
Known Affected Releases:
5.2(0.2), 5.3(0.0)
Known Fixed Releases:
5.3(1.0)
Alert Type:
New
Bug Id:
CSCuw17551
Title:
Commandlets specified wrongly on UCSD BMA Configuration GUide
Status:
Open
Severity:
3 Moderate
Description:

Symptom:
Commandlets specified wrongly on UCSD BMA COnfiguration GUide

Conditions:
BMA

Workaround:

Further Problem Description:

Last Modified:
10-SEP-2015
Known Affected Releases:
5.4(0.0)
Known Fixed Releases:
Alert Type:
New
Bug Id:
CSCuw23732
Title:
HyperV Host group identity user input is showing empty
Status:
Terminated
Severity:
3 Moderate
Description:

Symptom:
HyperV Host group identity user input is showing empty

Conditions:
after deleting the existing SCVMM cloud.

Workaround:
have to run"Deleted Hyperv Desktop Cloud Cleanup Task"

Further Problem Description:

Last Modified:
14-SEP-2015
Known Affected Releases:
5.3(2.0)
Known Fixed Releases:
Alert Type:
New
Bug Id:
CSCuw29933
Title:
End User License Agreement for UCS firmware download opens on same Tab
Status:
Open
Severity:
4 Minor
Description:

Symptom:
End User License Agreement for UCS firmware download opens on same Tab

Conditions:
End User License Agreement for downloading the UCS C Series Firmware opens the License Agreement on the same Tab instead of different Tab.

Steps to reproduce the Issue:

1. Login into the UCS Director with admin Credentials.
2. Navigate to Administration -> Physical account.
3. Select Images Local and create a new Images by providing the required details (Profile name, username, password, c series platform, available firmware,)
4. When we select the End User License Agreement Terms and Condition, it will open the terms and condition on the same Tab instead of different Tab.

This will make the end customer to open the UCS Director page once again and once again provide all the required details.
Hence this License Agreement Terms and COndition can be opened on the different Tab.

Attached the screenshot for the reference.

Workaround:
NA

Further Problem Description:

Last Modified:
18-SEP-2015
Known Affected Releases:
5.4(0.0)
Known Fixed Releases:
Alert Type:
Updated *
Bug Id:
CSCuw35503
Title:
Default field length is 128 for most of tasks cloned from task library
Status:
Fixed
Severity:
4 Minor
Description: *

Symptom:
When custom task is used in a workflow where the FCAlias has a variable string > 64 characters (which the UI allows, because it now things the max length of this field is 128)

Conditions:
Clone task from library for custom task creation

Workaround:
Use a variable string of less than 64 characters in the FCAlias input of "Create Device FCAlias" task.

Further Problem Description:

Last Modified:
28-SEP-2015
Known Affected Releases:
5.3(2.0)
Known Fixed Releases:
Alert Type:
Updated *
Bug Id:
CSCup96957
Title:
Interface coloured icons not showing when connection status shown
Status:
Open
Severity:
5 Cosmetic
Description: *

Symptom:
Physical > Network > Switch > Interfaces shows for interfaces that are "up" a green icon and for interfaces that are down, a "red" icon.

If the interface connection status is there too, there's no icon shown. For example "up (connected" or "down (disconnected)".

Conditions:
N/A

Workaround:
N/A

Further Problem Description:

Last Modified:
11-SEP-2015
Known Affected Releases:
4.1(0.4)
Known Fixed Releases:
Alert Type:
Updated *
Bug Id:
CSCun07230
Title:
Need a way to transfer logs from shelladmin
Status:
Open
Severity:
6 Enhancement
Description: *

Symptom:
Currently there's no way to fetch logs without GUI. There needs to be an option to fetch a complete logbundle from shelladmin CLI.

Conditions:

Workaround:
N/A

Further Problem Description:

Last Modified:
11-SEP-2015
Known Affected Releases:
4.100
Known Fixed Releases:
Alert Type:
New
Bug Id:
CSCuw12689
Title:
"always execute during system initialization" not included in OrchGuide
Status:
Open
Severity:
6 Enhancement
Description:

Symptom:
"always execute during system initialization" not included in Orch Guide

Conditions:
n/a

Workaround:
n/a

Further Problem Description:

Last Modified:
05-SEP-2015
Known Affected Releases:
5.3(1.2)
Known Fixed Releases:
Alert Type:
New
Bug Id:
CSCuw15724
Title:
Enhancement to Create VLAN groups on UCSM
Status:
Open
Severity:
6 Enhancement
Description:

Symptom:
When we use Global Service profiles and use VLAN groups configured locally, The Global VLANs will not pushed to UCSM until added to the Service profile/ Vnic templates in the Service profile.

In case we need to add a new vlan, the new vlan can be pushed only through service profile/ vnic template.
This causes traffic disruption until the VLAN is added to the VLAN group and if all the uplinks are added to a VLAN group.

Conditions:
We use VLAN groups ( Might be due to Disjoint L2)
All available uplink has VLAN group added
A new vlan is added to the GSP.
The traffic is dropped as no uplink is present that carries all the vlan.

Workaround:
Use VLAN pinning rather than VLAN group.

Further Problem Description:
Enhance request to add VLAN groups on UCS-Central

Last Modified:
09-SEP-2015
Known Affected Releases:
5.4(0.0)
Known Fixed Releases:

Find additional information in Bug Search index.

 

2013 Cisco and/or its affiliates. All rights reserved. Terms & Conditions | Privacy Statement | Cookie Policy | Trademarks

 

没有评论:

发表评论