cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
832
Views
0
Helpful
4
Replies

CSCum62591 - Inconsistency in NMSP default behavior on NG3k

Christian Jorge
Level 1
Level 1

Gentlemen

I think this bug information is not clear.

Initially it describes about Cisco Catalyst, but in details section informs Wireless LAN Controllers. I also have doubts about version prior 15.2(02)E01.

For example, Catalyst switches with 12.x IOS version are affected? (case it's really related to catalyst switches)

Please Cisco, clarify

Regards

Christian

4 Replies 4

c.church
Level 1
Level 1

I agree.  It seems like it's just IOS-XE versions, which would mean 3650/3850 only I think.  But 15.2E exists for older switches too.  But the older switches don't include any wireless controller capability to my knowledge.

Chuck

gsctacsg
Level 1
Level 1

However if device itself not using this feature ,as this feature disabled by default,will it still impact ,and 'disable NMSP feature ' will be workaround

siddu_cisco
Level 1
Level 1

IF particular image have NMSP feature definitely chance of vulnerable .

However if device itself not using this feature ,as this feature disabled by default,will it still impact ,and 'disable NMSP feature ' will be workaround

Artifacts as below Switch3750#sh tcp brief all

TCB Local Address Foreign Address (state)

0736500C 192.168.133.6.22 192.168.0.5.46949 ESTAB 070D2B14 *.4786 *.* LISTEN

Switch3750(config)#nmsp enable Enabling NMSP functionality Switch3750

(config)# Switch3750#sh tcp brief all TCB Local Address Foreign Address (state) 0736500C

192.168.133.6.22 192.168.0.5.46949 ESTAB 0737A8B4 *.16113 *.* LISTEN 070D2B14 *.4786 *.* LISTEN

Switch3750(config)#no nmsp enable Disabling NMSP functionality

Switch3750#sh tcp brief all TCB Local Address Foreign Address (state) 0736500C 192.168.133.6.22 192.168.0.5.46949 ESTAB 070D2B14 *.4786 *.* LISTEN

David Johnson
Level 1
Level 1

I discovered this issue/bug, allow me to clarify the garbled description. The issue affects IOS classic and XE, including 12.x and 15.x across all Catalyst platforms - this has nothing to do with WLCs.

The NMSP feature is disabled by default and can be explicitly disabled with 'no nmsp enable' in global configuration mode.

See also related bug https://tools.cisco.com/bugsearch/bug/CSCuv50834.