cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
418
Views
1
Helpful
6
Replies

Query on SMU patch upgrade for 9800-L-F wlc (17.5.3)

Bdas1
Level 1
Level 1

Hi Team,

I could see 3 SMU patches for the 17.15.3 version for 9800-L-F WLC.

Can anyone let me know which SMU patch to be installed. Or I have to install all the 3 SMUs? Is it mandatory to install SMU?

Bdas1_0-1759751963088.png

 

1 Accepted Solution

Accepted Solutions

As @Mark Elsen mentioned, every SMU serves a different purpose, provides fix to specific defects. Now the PSIRT bundle is for vulnerability fixes - which is applicable for most of the customers. If you are managing the WLC via CatC and doing provisioning then you can apply the 3rd one. But if you are not doing or having CatC, no need for this SMU. The 2nd one is for memory leak - which is not a catastrophic defect by nature - which means you can bypass this for the time being. There are other SMUs as well which are for specific use cases and available only through request. So long story short - first one you can apply. 3rd one you can apply if you have CatC and doing provisioning. 2nd one can be ignored for the time being.

View solution in original post

6 Replies 6

Mark Elsen
Hall of Fame
Hall of Fame

 

  - @Bdas1    Whether it's mandatory depends if you are experiencing the mentioned problem in the SMU
                     description or not (and want to fix it deciding yes or no)>
                               Each SMU is independent and must be installed individually for  it's purpose 

  M.
                     



-- Let everything happen to you  
       Beauty and terror
      Just keep going    
       No feeling is final
Reiner Maria Rilke (1899)

Thank you Mark for your response. The WLC is running on older version and I want to move to a suggested release. So far the bugs mentioned have not impacted. However, since going to a new version, I want to make sure I have all the patches also installed. So, wanted to make sure if it is better to install all the 3 SMUs?

As @Mark Elsen mentioned, every SMU serves a different purpose, provides fix to specific defects. Now the PSIRT bundle is for vulnerability fixes - which is applicable for most of the customers. If you are managing the WLC via CatC and doing provisioning then you can apply the 3rd one. But if you are not doing or having CatC, no need for this SMU. The 2nd one is for memory leak - which is not a catastrophic defect by nature - which means you can bypass this for the time being. There are other SMUs as well which are for specific use cases and available only through request. So long story short - first one you can apply. 3rd one you can apply if you have CatC and doing provisioning. 2nd one can be ignored for the time being.

Leo Laohoo
Hall of Fame
Hall of Fame

Do not install SMU nor APSP just for "sh*ts-n-giggles".  Install the SMU &/or APSP only when certain bugs have been encountered.  

There are several bugs/crashes which are caused by installing SMU or APSP.

Rich R
VIP
VIP

I would consider the security PSIRT SMU essential.

The other 2 address these bugs:
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwq73135
https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwo95396

All 3 of them are hitless - meaning WLC reload is not required.

You can see the TAC recommendations at https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/214749-tac-recommended-ios-xe-builds-for-wirele.html#toc-hId--2128232276


@Rich R wrote:
I would consider the security PSIRT SMU essential.

 


I agree and I completely forgot about to mention this.

Review Cisco Networking for a $25 gift card