Thursday, June 15, 2017

Running Cisco Nexus 7K Titanium in VM Workstation, VirtualBox and GNS3

I went to Mumbai India a month ago for an IT project and it was my second time in the country. I wasn't able to travel around during my first visit due to work load and limited time. After my project was done, I visited famous landmarks like the Gateway of India (a.k.a Taj Mahal of Mumbai) and the Taj Mahal Palace Hotel which is just on the opposite side. The Gateway of India was built to commemorate the landing of the British King and Queen when they visited India in 1911. There's a large inscription on top of the arch which reads, "Erected to commemorate the landing in India of their Imperial Majesties King George V and Queen Mary on the Second of December MCMXI."



I've been a GNS3 user since it was still Dynamips back in the mid 2000s. GNS3 became more powerful and it can run IOU Layer 2 switch, ASAv firewall, CSR1000v router and Nexus 7000 (N7K) switch. The Titanium is the VM flavor for Cisco Nexus switch. I tried searching for a Nexus OVF file so I can run it directly in VirtualBox but I ended up exporting the OVF file from VM Workstation.


Open the Titanium file (.vmx) in WMware Workstation (I used version 10) by going to File > Open > search for the .vmx.



Edit the N7K settings to add a new Serial Port (console) by clicking Edit virtual machine settings under the N7K tab.
 



Click Serial Port > Add > Next.
 


Leave the default settings > click Next > Finish.
 



Click on the new Serial Port 2 > choose Use name pipe: > type and take note \\.\pipe\N7K > click OK. This is the text or string will be used to connect via Serial on the terminal emulation program (PuTTy). Test and power on the Cisco Nexus switch VM by clicking on Play (green arrow icon).
 


Just click I copied it to continue with the boot up process.
 


Open PuTTy and type the Serial Port string: \\.\pipe\N7K



To login type: admin / cisco (obviously displayed in the login banner)
 


Once the Titanium VM is confirmed working, you can power off the VM by doing a right-click on the N7K tab > Power > Power off.



To export the VM file to OVF (for Virtual Box), click on File > Export to OVF > save the exported file to a location > wait for export to finish.
 




Open Virtual Box > click File > Import Appliance > choose the exported .ovf file > click Next.




Click Reinitialize the MAC address of all network cards > Import



It defaults to the name vm and to edit the VM settings, click on the VM name (vm) > click Settings (gear icon above). Under General > Basic > type the new Name for the VM.



Go to Serial Ports > Port 1 > tick Enable Serial Port > choose Port Mode: Host Pipe > type Path/Address: \\.\pipe\N7K > click OK. Take not do NOT tick Connect to existing pipe/socket as it will cause Virtual Box not to power ON the VM.



Power on the VM by doing a right-click on N7K > Start > Normal Start.




Virtual Box VM opens in PuTTy.



Virtual Box works seamlessly with GNS3 and to add the Nexus 7K VM in Virtual Box, open GNS3 and go to Edit > Preferences.



Go to VirtualBox > VirtualBox VM templates > New.



Click N7K (it will show other VM on the list > Finish.



Click Apply > OK.



To automatically open PuTTy for Nexus switch in GNS3, click on N7K > Edit > General Settings > tick Enable remote console and Start VM in headless mode > click OK > Apply > OK.

You can also tick Use as a linked base VM (experimental) to clone Nexus switch in GNS3 without manually cloning in VirtualBox,



Power off the N7K VM in VirtualBox. Close and open again GNS3 (a PC restart is also good). Drag the N7K icon > right-click > Start > Console.


I already got SecureCRT integrated with GNS3 and it automatically opens after clicking on Console. You can also change the symbol for the N7K to a multilayer switch. To add and connect more Nexus switches on the topology, just clone the N7K VM in VirtualBox and add it to GNS3.


The Nexus switch will display a syslog message saying Application license will shutdown in x days (count down started from 120 days).


You could enable an eval license (good for 120 days) with the license grace-period global command. This will allow you to play around with the Nexus advanced features (such as OSPF).


Friday, June 2, 2017

Cisco Router FTP Command

I had a Linux server that's only routed to a remote Cisco router (R2). So I FTP first a small test file (this could be an IOS or a license file) from an FTP server going to the Linux server, then copy the same file using the copy ftp command on the Cisco router.


linux$ ftp 192.168.25.254      //  FTP TO  3CDAEMON
Connected to 192.168.25.254 (192.168.25.254).
220 3Com 3CDaemon FTP Server Version 2.0
Name (192.168.25.254:john): anonymous       // anonymous/anonymous IS THE DEFAULT USER/PASSWORD IN 3CDAEMON
331 User name ok, need password
Password: anonymous
230 User logged in
Remote system type is UNIX.
Using binary mode to transfer files.

ftp> ls         // POINT TO THE CORRECT DIRECTORY/FILES IN 3CDAMEON
227 Entering passive mode (192,168,25,254,199,61)
125 Using existing data connection
drwxrwxrwx 1 owner group         0 Nov 12 16:32 .
drwxrwxrwx 1 owner group         0 Nov 12 16:32 ..
-rwxrwxrwx 1 owner group   2936005 Nov 12 16:32 apps42.8-5-4TH1-6.sbn
-rwxrwxrwx 1 owner group  25629676 May 09 13:24 asdm-752-153.bin
-rwxrwxrwx 1 owner group   8212480 May 20 13:33 c1520-k9w8-tar.152-2.JB.tar
-rwxrwxrwx 1 owner group    524894 Nov 12 16:32 cnu42.8-5-4TH1-6.sbn
-rwxrwxrwx 1 owner group   2102234 Nov 12 16:32 cvm42sccp.8-5-4TH1-6.sbn
-rwxrwxrwx 1 owner group    342219 Nov 12 16:32 dsp42.8-5-4TH1-6.sbn
-rwxrwxrwx 1 owner group  16751957 Feb 21 16:56 evo_x7_rmt-15.0.2.1.pkg
-rwxrwxrwx 1 owner group   1756328 Nov 12 16:32 jar42sccp.8-5-4TH1-6.sbn
-rwxrwxrwx 1 owner group       670 Nov 12 16:32 SCCP42.8-5-4S.loads
-rwxrwxrwx 1 owner group       674 Nov 12 16:32 term42.default.loads
-rwxrwxrwx 1 owner group       674 Nov 12 16:32 term62.default.loads
-rwxrwxrwx 1 owner group      8393 Nov 12 16:32 XMLDefault.cnf.xml
226 Closing data connection

ftp> help
Commands may be abbreviated.  Commands are:

!               debug           mdir            sendport        site
$               dir             mget            put             size
account         disconnect      mkdir           pwd             status
append          exit            mls             quit            struct
ascii           form            mode            quote           system
bell            get             modtime         recv            sunique
binary          glob            mput            reget           tenex
bye             hash            newer           rstatus         tick
case            help            nmap            rhelp           trace
cd              idle            nlist           rename          type
cdup            image           ntrans          reset           user
chmod           lcd             open            restart         umask
close           ls              prompt          rmdir           verbose
cr              macdef          passive         runique         ?
delete          mdelete         proxy           send

ftp> get SCCP42.8-5-4S.loads
local: SCCP42.8-5-4S.loads remote: SCCP42.8-5-4S.loads
227 Entering passive mode (192,168,25,254,199,62)
125 Using existing data connection
226 Closing data connection; File transfer successful.
670 bytes received in 0.00894 secs (74.94 Kbytes/sec)

ftp> quit
linux$ ls
SCCP42.8-5-4S.loads


R2#dir
Directory of flash0:/

    1  -rw-    99139212  May 17 2014 04:14:50 +00:00  c2900-universalk9-mz.SPA.152-4.M6.bin
    2  -rw-        3064  May 17 2014 04:26:12 +00:00  cpconfig-29xx.cfg
    3  -rw-        2211  Jun 27 2014 08:50:34 +00:00  credential.lic
    4  drw-           0  May 17 2014 04:26:40 +00:00  ccpexp
  245  -rw-        2464  May 17 2014 04:28:26 +00:00  home.shtml
  246  -rw-    13348488  Sep 26 2014 06:01:38 +00:00  pcm.datX-0_1_1-05_57_26_Sep_26_14.dat

261201920 bytes total (146247680 bytes free)


R2#copy ftp://john:password@13.123.7.2/SCCP42.8-5-4S.loads flash    // USE LINUX USERNAME AND PASSWORD
Destination filename [SCCP42.8-5-4S.loads]?
Accessing ftp://*****:*****@13.123.7.2/SCCP42.8-5-4S.loads...
Loading SCCP42.8-5-4S.loads !
[OK - 670/4096 bytes]

670 bytes copied in 4.368 secs (153 bytes/sec)

R2#dir
Directory of flash0:/

    1  -rw-    99139212  May 17 2014 04:14:50 +00:00  c2900-universalk9-mz.SPA.152-4.M6.bin
    2  -rw-        3064  May 17 2014 04:26:12 +00:00  cpconfig-29xx.cfg
    3  -rw-        2211  Jun 27 2014 08:50:34 +00:00  credential.lic
    4  drw-           0  May 17 2014 04:26:40 +00:00  ccpexp
  245  -rw-        2464  May 17 2014 04:28:26 +00:00  home.shtml
  246  -rw-    13348488  Sep 26 2014 06:01:38 +00:00  pcm.datX-0_1_1-05_57_26_Sep_26_14.dat
  247  -rw-         670   Apr 7 2017 00:56:22 +00:00  SCCP42.8-5-4S.loads

261201920 bytes total (146243584 bytes free)


You can remove the file on the Linux server using the rm command to free up space.

linux$ rm SCCP42.8-5-4S.loads
linux$ ls

<EMPTY>


I also had a Linux server which has FTP passive mode off or disabled and only SCP only works.


ciscoasa# ping tcp 10.1.1.4 21     // FTP TCP PORT 21

Type escape sequence to abort.

No source specified. Pinging from identity interface.

Sending 5 TCP SYN requests to 10.1.1.4 port 21

from 10.23.24.2, timeout is 2 seconds:

!!!!!

Success rate is 100 percent (5/5), round-trip min/avg/max = 25/26/30 ms

ciscoasa# copy ftp://john:PW@10.1.1.4/asa917-20-smp-k8.bin disk0:

Address or name of remote host [10.1.1.4]?

Source username [john]?

Source password [PW]?

Source filename [asa917-20-smp-k8.bin]?

Destination filename [asa917-20-smp-k8.bin]?

Accessing ftp://johnl:PW@10.1.1.4/asa917-20-smp-k8.bin...
%Error reading ftp://johnl:PW@10.1.1.4/asa917-20-smp-k8.bin (No more processes)

linux2$ ftp
ftp> passive
Passive mode off.
 

ftp> ls
227 Entering Passive Mode (10,1,1,4,43,154).
150 Here comes the directory listing.
-rw-------    1 558      558      38338560 Mar 25 03:24 asa917-20-smp-k8.bin



linux2$ scp asa917-20-smp-k8.bin john@10.23.2.1:disk0:/asa917-20-smp-k8.bin
johnl@
10.23.24.2's password: <ASA PW>
asa917-20-smp-k8.bin          5% 2176KB  37.6KB/s   15:39 ETA

asa917-20-smp-k8.bin          100%   37MB  37.7KB/s   16:33


If the FTP or TFTP server is reachable via a VRF, you'll need to configure the ip <ftp or tftp> source-interface command then use the copy ftp://<USERNAME>:<PASSWORD>@<FTP IP ADDRESS>:<VRF NAME>/<IOS.bin> flash command.
 

Router(config)#ip ftp source-interface ?
  Async                    Async interface
  Auto-Template            Auto-Template interface
  BVI                      Bridge-Group Virtual Interface
  CDMA-Ix                  CDMA Ix interface
  CTunnel                  CTunnel interface
  Dialer                   Dialer interface
  Embedded-Service-Engine  cisco embedded service engine module
  GigabitEthernet          GigabitEthernet IEEE 802.3z
  LISP                     Locator/ID Separation Protocol Virtual Interface
  Lex                      Lex interface
  LongReachEthernet        Long-Reach Ethernet interface
  Loopback                 Loopback interface
  MFR                      Multilink Frame Relay bundle interface
  Multilink                Multilink-group interface
  Null                     Null interface
  Port-channel             Ethernet Channel of interfaces
  Tunnel                   Tunnel interface
  Vif                      PGM Multicast Host interface
  Virtual-PPP              Virtual PPP interface
  Virtual-Template         Virtual Template interface
  Virtual-TokenRing        Virtual TokenRing
  vmi                      Virtual Multipoint Interface

Router(config)#ip tftp source-interface ?
  Async                    Async interface
  Auto-Template            Auto-Template interface
  BVI                      Bridge-Group Virtual Interface
  CDMA-Ix                  CDMA Ix interface
  CTunnel                  CTunnel interface
  Dialer                   Dialer interface
  Embedded-Service-Engine  cisco embedded service engine module
  GigabitEthernet          GigabitEthernet IEEE 802.3z
  LISP                     Locator/ID Separation Protocol Virtual Interface
  Lex                      Lex interface
  LongReachEthernet        Long-Reach Ethernet interface
  Loopback                 Loopback interface
  MFR                      Multilink Frame Relay bundle interface
  Multilink                Multilink-group interface
  Null                     Null interface
  Port-channel             Ethernet Channel of interfaces
  Tunnel                   Tunnel interface
  Vif                      PGM Multicast Host interface
  Virtual-PPP              Virtual PPP interface
  Virtual-Template         Virtual Template interface
  Virtual-TokenRing        Virtual TokenRing
  vmi                      Virtual Multipoint Interface


Router#copy ftp://ftpuser:ftp123@172.27.5.4:Mgmt-intf/c2900-universalk9-mz.SPA.151-4.M6.bin flash
Destination filename [c2900-universalk9-mz.SPA.151-4.M6.bin]?
Accessing ftp://*****:*****@172.27.5.4:Mgmt-/c2900-universalk9-mz.SPA.151-4.M6.bin...
Loading c2900-universalk9-mz.SPA.151-4.M6.bin !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
[OK - 74581380/4096 bytes]

74581380 bytes copied in 1633.988 secs (45644 bytes/sec)


Friday, May 5, 2017

Displaying Configuration without Break/Pause on a Cisco Router, WLC and ASA Firewall

I visited the Museum of Modern Art (MoMA) while I was in Manhattan New York a month ago. There was one art piece that captured my interest and it was some server racks with network protocols and tools being displayed in one corner of the museum. Another interesting place I visited was the Intrepid Sea, Air & Space Museum at Pier 86 Hell's Kitchen which was only a 10 minute walk from my hotel in Times Square. There's a lot of vintage airplanes being displayed that were used during World War II and the Vietnam War. You'll also find NASA's Enterprise space shuttle located on the flight deck and a submarine (you can actually go inside) near the exit and souvenir shop.





There are times you'll need to backup a device configuration using a terminal emulation program (such as PutTTy, TeraTerm or SecureCRT). One way to prevent an admin from hitting Enter or spacebar when issuing the show running-config command is to use the terminal length or pager command on a Cisco device. This also prevents the -More- from showing up on the output.


Cisco Router/Switch

Router#terminal length ?
  <0-512>  Number of lines on screen (0 for no pausing)

Router#terminal length 0       // ISSUE IN PRIVILEGED EXEC MODE


Cisco WLC

(Cisco Controller) >config paging ?
              
enable         enable paging
disable        disable paging
              
(Cisco Controller) >config paging disable


Cisco ASA Firewall

ciscoasa# terminal pager ?

  <0-2147483647>  Pager lines, 0 means no page-limit
  lines           The number following this keyword determines the number of
                  lines in a page before ---more--- prompt appears, default is
                  24

ciscoasa# terminal pager 0

ciscoasa# more system:running-config    // DISPLAYS TUNNEL-GROUP PRE-SHARED KEY

Saturday, April 1, 2017

Cisco 3850 Switch IOS Upgrade (via software install command)

I had to upgrade a Cisco 3850 switch due to a high CPU issue via the software install command.


Switch#show processes cpu sorted
Core 0: CPU utilization for five seconds: 77%; one minute: 71%;  five minutes: 71%
Core 1: CPU utilization for five seconds: 28%; one minute: 71%;  five minutes: 78%
Core 2: CPU utilization for five seconds: 96%; one minute: 72%;  five minutes: 67%
Core 3: CPU utilization for five seconds: 99%; one minute: 90%;  five minutes: 91%
PID    Runtime(ms) Invoked  uSecs  5Sec     1Min     5Min     TTY   Process
5632   547159      38565649 240    73.91    73.47    73.38    1088  fed
9223   2869678     17955697 98     0.97     1.17     1.15     0     iosd              
6297   1592710     28366670 1186   0.14     0.15     0.14     0     cpumemd           
6278   403412      5609218  837    0.10     0.01     0.03     0     oom_poll.sh       
9219   3878616     89615676 25     0.10     0.10     0.10     0     wcm               
5633   2355637     33902453 13     0.05     0.14     0.12     0     platform_mgr      
5634   918091      19813894 41     0.05     0.06     0.05     0     stack-mgr         
6286   605408      34263960 50     0.05     0.09     0.10     0     pdsd              
6290   905582      23382817 22     0.05     0.01     0.01     0     netd              
1      1650        1056     1562   0.00     0.00     0.00     0     init              
2      0           126      0      0.00     0.00     0.00     0     kthreadd          
3      9620        1171075  8      0.00     0.00     0.00     0     migration/0       
4      0           3        0      0.00     0.00     0.00     0     sirq-high/0       
5      1139468     45134130 2      0.00     0.00     0.00     0     sirq-timer/0      
6      0           6        0      0.00     0.00     0.00     0     sirq-net-tx/0     
7      10          9636     1      0.00     0.00     0.00     0     sirq-net-rx/0     
8      1180        2734379  0      0.00     0.00     0.00     0     sirq-block/0      
9      0           8        0      0.00     0.00     0.00     0     sirq-block-iopo   
10     20          3286     6      0.00     0.00     0.00     0     sirq-tasklet/0

<OUTPUT TRUNCATED>


Once the IOS is copied to the switch's flash memory (via FTP or TFTP), you can issue the software install command from privileged EXEC prompt.

Switch#software install file flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin
Preparing install operation ...
[1]: Starting install operation
[1]: Expanding bundle flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin
[1]: Copying package files
[1]: Package files copied
[1]: Finished expanding bundle flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin
[1]: Verifying and copying expanded package files to flash:
[1]: Verified and copied expanded package files to flash:
[1]: Starting compatibility checks
[1]: Finished compatibility checks
[1]: Starting application pre-installation processing
[1]: Finished application pre-installation processing
[1]: Old files list:
    Removed cat3k_caa-base.SPA.03.02.03.SE.pkg
    Removed cat3k_caa-drivers.SPA.03.02.03.SE.pkg
    Removed cat3k_caa-infra.SPA.03.02.03.SE.pkg
    Removed cat3k_caa-iosd-universalk9.SPA.150-1.EX3.pkg
    Removed cat3k_caa-platform.SPA.03.02.03.SE.pkg
    Removed cat3k_caa-wcm.SPA.10.0.120.0.pkg
[1]: New files list:
    Added cat3k_caa-base.SPA.03.06.04.E.pkg
    Added cat3k_caa-drivers.SPA.03.06.04.E.pkg
    Added cat3k_caa-infra.SPA.03.06.04.E.pkg
    Added cat3k_caa-iosd-universalk9.SPA.152-2.E4.pkg
    Added cat3k_caa-platform.SPA.03.06.04.E.pkg
    Added cat3k_caa-wcm.SPA.10.2.140.0.pkg
[1]: Creating pending provisioning file
[1]: Finished installing software.  New software will load on reboot.
[1]: Committing provisioning file

[1]: Do you want to proceed with reload? [yes/no]: yes

System configuration has been modified. Save? [yes/no]: yes

Building configuration...
Compressed configuration from 10347 bytes to 4871 bytes[OK]
[1]: Reloading        // REMOTE ACCESS WAS LOST


<OUTPUT TRUNCATED>


The IOS upgrade took me around 15-20 minutes before I started to get ping replies on the switch.

Switch#show version | include INSTALL   
*    1 56    WS-C3850-48P       03.06.04.E        cat3k_caa-universalk9 INSTALL

Switch#show processes cpu     // CPU LOAD FOR THE 4 CORE SIGNIFICANTLY DROPPED
Core 0: CPU utilization for five seconds: 6%; one minute: 8%; five minutes: 46%
Core 1: CPU utilization for five seconds: 0%; one minute: 2%; five minutes: 36%
Core 2: CPU utilization for five seconds: 3%; one minute: 2%; five minutes: 42%
Core 3: CPU utilization for five seconds: 1%; one minute: 4%; five minutes: 36%


<OUTPUT TRUNCATED>


Issue the software clean command to remove unwanted package files after everything is verified. You can't do a software rollback once the unwanted package files are completely removed.

Switch#software clean
Preparing clean operation ...
[1]: Cleaning up unnecessary package files
[1]: No path specified, will use booted path flash:packages.conf
[1]: Cleaning flash:
[1]: Preparing packages list to delete ...
     In use files, will not delete:
       cat3k_caa-base.SPA.03.06.04.E.pkg
       cat3k_caa-drivers.SPA.03.06.04.E.pkg
       cat3k_caa-infra.SPA.03.06.04.E.pkg
       cat3k_caa-iosd-universalk9.SPA.152-2.E4.pkg
       cat3k_caa-platform.SPA.03.06.04.E.pkg
       cat3k_caa-wcm.SPA.10.2.140.0.pkg
       packages.conf
[1]: Files that will be deleted:
    cat3k_caa-base.SPA.03.02.03.SE.pkg
    cat3k_caa-drivers.SPA.03.02.03.SE.pkg
    cat3k_caa-infra.SPA.03.02.03.SE.pkg
    cat3k_caa-iosd-universalk9.SPA.150-1.EX3.pkg
    cat3k_caa-platform.SPA.03.02.03.SE.pkg
    cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin
    cat3k_caa-wcm.SPA.10.0.120.0.pkg
    packages.conf.00-

[1]: Do you want to proceed with the deletion? [yes/no]: yes
[1]: Clean up completed     


The same command is used to upgrade a stacked Cisco 3850 switches but using the switch <SWITCH NUMBER> keyword.

Switch#show switch
Switch/Stack Mac Address : c025.5c85.9123 - Local Mac Address
Mac persistency wait time: Indefinite
                                             H/W   Current
Switch#   Role    Mac Address     Priority Version  State
------------------------------------------------------------
*1       Active   c025.5c85.9123     10     V02     Ready              
 2       Standby  c025.5c85.f456     1      V02     Ready   


Swtich#software install file flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin switch ?
  Valid switch ids: 1,2

  Multiple switch ids may be specified using a
  comma separated list or  '-' separated range

  For example:
    1,3,4     specifies switch ids 1, 3 and 4
    1-3       specifies switch ids 1, 2 and 3

  WORD  Switch id(s)

Swtich#software install file flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin switch 1-2
Preparing install operation ...
[1]: Copying software from active switch 1 to switch 2
[1 2]: Starting install operation
[1 2]: Expanding bundle flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin
[1 2]: Copying package files
[1 2]: Package files copied
[1 2]: Finished expanding bundle flash:cat3k_caa-universalk9.SPA.03.06.04.E.152-2.E4.bin
[1 2]: Verifying and copying expanded package files to flash:
[1 2]: Verified and copied expanded package files to flash:
[1 2]: Starting compatibility checks
[1 2]: Finished compatibility checks
[1 2]: Starting application pre-installation processing
[1 2]: Finished application pre-installation processing
[1]: Old files list:
    Removed cat3k_caa-base.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-drivers.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-infra.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-iosd-universalk9.SPA.150-1.EX2.pkg
    Removed cat3k_caa-platform.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-wcm.SPA.10.0.111.0.pkg
[2]: Old files list:
    Removed cat3k_caa-base.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-drivers.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-infra.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-iosd-universalk9.SPA.150-1.EX2.pkg
    Removed cat3k_caa-platform.SPA.03.02.02.SE.pkg
    Removed cat3k_caa-wcm.SPA.10.0.111.0.pkg
[1]: New files list:
    Added cat3k_caa-base.SPA.03.06.04.E.pkg
    Added cat3k_caa-drivers.SPA.03.06.04.E.pkg
    Added cat3k_caa-infra.SPA.03.06.04.E.pkg
    Added cat3k_caa-iosd-universalk9.SPA.152-2.E4.pkg
    Added cat3k_caa-platform.SPA.03.06.04.E.pkg
    Added cat3k_caa-wcm.SPA.10.2.140.0.pkg
[2]: New files list:
    Added cat3k_caa-base.SPA.03.06.04.E.pkg
    Added cat3k_caa-drivers.SPA.03.06.04.E.pkg
    Added cat3k_caa-infra.SPA.03.06.04.E.pkg
    Added cat3k_caa-iosd-universalk9.SPA.152-2.E4.pkg
    Added cat3k_caa-platform.SPA.03.06.04.E.pkg
    Added cat3k_caa-wcm.SPA.10.2.140.0.pkg
[1 2]: Creating pending provisioning file
[1 2]: Finished installing software.  New software will load on reboot.
[1 2]: Do you want to proceed with reload? [yes/no]:yes
[2]: Reloading