Saturday, October 2, 2021

Cisco ASR 1001-X IOS-XE 3.x to 16.x Software Upgrade

Here's a link for the IOS-XE 16.x series and the procedure in upgrading ROMmon in a Cisco ASR 1000 series. Below is the IOS-XE upgrade from 3.x to 16.x that I performed in a Cisco ASR 1001-X router. You first upgrade the ROMmon to the compatible IOS-XE 16.x version.

ASR1K#show version

Cisco IOS XE Software, Version 03.13.03.S - Extended Support Release

Cisco IOS Software, ASR1000 Software (X86_64_LINUX_IOSD-UNIVERSALK9-M), Version 15.4(3)S3, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2015 by Cisco Systems, Inc.

Compiled Thu 28-May-15 14:26 by mcpre

 

 

Cisco IOS-XE software, Copyright (c) 2005-2015 by cisco Systems, Inc.

All rights reserved.  Certain components of Cisco IOS-XE software are

licensed under the GNU General Public License ("GPL") Version 2.0.  The

software code licensed under GPL Version 2.0 is free software that comes

with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such

GPL code under the terms of GPL Version 2.0.  For more details, see the

documentation or "License Notice" file accompanying the IOS-XE software,

or the applicable URL provided on the flyer accompanying the IOS-XE

software.

 

 

ROM: IOS-XE ROMMON

 

ASR1K uptime is 1 week, 1 day, 17 hours, 38 minutes

Uptime for this control processor is 1 week, 1 day, 17 hours, 39 minutes

System returned to ROM by reload at 12:12:44 UTC Mon May 24 2021

System image file is "bootflash:/asr1001x-universalk9.03.13.03.S.154-3.S3-ext.SPA.bin"

Last reload reason: Reload Command

 

 

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

 

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

 

If you require further assistance please contact us by sending email to

export@cisco.com.

 

License Level: adventerprise

License Type: Permanent

Next reload license Level: adventerprise

 

cisco ASR1001-X (1NG) processor (revision 1NG) with 6823656K/6147K bytes of memory.

Processor board ID FXS18351234

6 Gigabit Ethernet interfaces

2 Ten Gigabit Ethernet interfaces

32768K bytes of non-volatile configuration memory.

16777216K bytes of physical memory.

6688767K bytes of eUSB flash at bootflash:.

 

Configuration register is 0x2102

 

 

ASR1K#show platform

Chassis type: ASR1001-X          

 

Slot      Type                State                 Insert time (ago)

--------- ------------------- --------------------- -----------------

0         ASR1001-X           ok                    1w1d         

 0/0      BUILT-IN-2T+6X1GE   ok                    1w1d         

R0        ASR1001-X           ok, active            1w1d         

F0        ASR1001-X           ok, active            1w1d         

P0        ASR1001-X-PWR-AC    ps, fail              1w1d         

P1        ASR1001-X-PWR-AC    ok                    1w1d         

P2        ASR1001-X-FANTRAY   ok                    1w1d         

 

Slot      CPLD Version        Firmware Version                       

--------- ------------------- ---------------------------------------

0         14041015            15.4(2r)S

R0        14041015            15.4(2r)S

F0        14041015            15.4(2r)S                          

 

 

ASR1K#dir

Directory of bootflash:/

 

   11  drwx            16384   Oct 8 2014 19:44:23 +00:00  lost+found

482881  drwx             4096  May 24 2021 12:15:40 +00:00  .prst_sync

   12  -rw-        489848672   Sep 1 2015 08:24:44 +00:00  asr1001x-universalk9.03.13.03.S.154-3.S3-ext.SPA.bin

498977  drwx             4096   Oct 8 2014 19:48:02 +00:00  .installer

257537  drwx             4096   Oct 8 2014 20:15:24 +00:00  core

740417  drwx             4096   Oct 8 2014 20:15:24 +00:00  .rollback_timer

   13  -rw-                0   Oct 8 2014 20:15:32 +00:00  tracelogs.218

756513  drwx             8192   Jun 2 2021 04:25:11 +00:00  tracelogs

   14  -rw-        484898400  Oct 28 2014 09:38:03 +00:00  asr1001x-universalk9.03.13.00.S.154-3.S-ext.SPA.bin

   15  -rw-               30  May 24 2021 12:15:43 +00:00  throughput_monitor_params

   16  -rw-          6613972   Jun 1 2021 10:00:09 +00:00  asr1000-rommon.169_4r_SPA.pkg

   17  -rw-        762181641   Jun 1 2021 10:09:41 +00:00  asr1001x-universalk9.16.09.07.SPA.bin

 

6741659648 bytes total (4629876736 bytes free)

 

 

Use the upgrade rom-monitor filename bootflash:<NEW ROMMON>.pkg all privileged EXEC command. The ROMmon upgrade took around 10 minutes to complete. Reload the router for the new ROMmon version to take effect.

 

ASR1K#upgrade rom-monitor filename bootflash:asr1000-rommon.169_4r_SPA.pkg all   

Chassis model ASR1001-X has a single rom-monitor.

 

Upgrade rom-monitor

 

Target copying rom-monitor image file

File size : //tmp/rommon_upgrade/latest.bin

File size is : 3211264

FIPS File size is : 3211264

ROMMON Image Type : X86

File /tmp/rommon_upgrade/latest.bin is a FIPS ROMMON image

FIPS-140-3 Load Test on /tmp/rommon_upgrade/latest.bin has PASSED.

Authenticity of the image has been verified.

4259840+0 records in

4259840+0 records out

131072+0 records in

131072+0 records out

655360+0 records in

655360+0 records out

Checking upgrade image...

3211264+0 records in

6272+0 records out

Upgrade image MD5 signature is d4acb95f9a3e91236cae9a51cadc1234

Burning upgrade partition...

3211264+0 records in

3211264+0 records out

Checking upgrade partition...

3211264+0 records in

3211264+0 records out

Copying ROMMON environment

4259840+0 records in

4259840+0 records out

131072+0 records in

131072+0 records out

131072+0 records in

131072+0 records out

655360+0 records in

655360+0 records out

Upgrade flash partition MD5 signature is d4acb95f9a3e91236cae9a51cadca39d

ROMMON upgrade complete.

To make the new ROMMON permanent, you must restart the RP.


ASR1K#reload

Proceed with reload? [confirm]

 

*Jun  2 06:04:52.551: %SYS-5-RELOAD: Reload requested by console. Reload Reason: Reload Command.

 

Initializing Hardware ...

 

System integrity status: 00000610

 

System Bootstrap, Version 15.4(2r)S, RELEASE SOFTWARE (fc1)

Copyright (c) 1994-2014  by cisco Systems, Inc.

 

Current image running: Boot ROM1

Last reset cause: LocalSoft

 

ASR1001-X platform with 16777216 Kbytes of main memory

 

Rommon upgrade requested

Flash upgrade reset 1 in progress

.......

 

Initializing Hardware ...

 

System integrity status: 00000610

U

 

System Bootstrap, Version 16.9(4r), RELEASE SOFTWARE

Copyright (c) 1994-2018  by cisco Systems, Inc.

 

Current image running: *Upgrade in progress* Boot ROM0

Last reset cause: BootRomUpgrade

 

 

 ***          Incorrect BIOS parameters           ***

 *** Correcting the BIOS parameters and rebooting ***

 

Initializing Hardware ...

 

System integrity status: 00000610

 

System Bootstrap, Version 15.4(2r)S, RELEASE SOFTWARE (fc1)

Copyright (c) 1994-2014  by cisco Systems, Inc.

 

Current image running: Boot ROM1

Last reset cause: LocalSoft

 

ASR1001-X platform with 16777216 Kbytes of main memory

 

Rommon upgrade requested

Flash upgrade reset 2 in progress

.......

 

Initializing Hardware ...

 

System integrity status: 00000610

U

 

System Bootstrap, Version 16.9(4r), RELEASE SOFTWARE

Copyright (c) 1994-2018  by cisco Systems, Inc.

 

Current image running: *Upgrade in progress* Boot ROM0

Last reset cause: BootRomUpgrade

 

ASR1001-X platform with 16777216 Kbytes of main memory

 

File size is 0x1d327f60

Located asr1001x-universalk9.03.13.03.S.154-3.S3-ext.SPA.bin

Image size 489848672 inode num 12, bks cnt 119592 blk size 8*512

##################################################################

 

<OUTPUT TRUNCATED>

 


Use the show platform command to verify the new ROMmon version. The next step is to change the boot variable to point the new IOS-XE using the boot system flash bootflash:<NEW-IOS-XE>.bin command. Reload the router for the new IOS-XE version to take effect.

 

ASR1K#show platform

Chassis type: ASR1001-X          

 

Slot      Type                State                 Insert time (ago)

--------- ------------------- --------------------- -----------------

0         ASR1001-X           ok                    00:02:00     

 0/0      BUILT-IN-2T+6X1GE   ok                    00:01:08     

R0        ASR1001-X           ok, active            00:02:00     

F0        ASR1001-X           ok, active            00:02:00     

P0        ASR1001-X-PWR-AC    ps, fail              00:01:35     

P1        ASR1001-X-PWR-AC    ok                    00:01:34     

P2        ASR1001-X-FANTRAY   ok                    00:01:38     

 

Slot      CPLD Version        Firmware Version                       

--------- ------------------- ---------------------------------------

0         14041015            16.9(4r)

R0        14041015            16.9(4r)

F0        14041015            16.9(4r)                           

 

 

ASR1K#show run | inc boot

boot-start-marker

boot system flash bootflash:asr1001x-universalk9.03.13.03.S.154-3.S3-ext.SPA.bin

boot-end-marker

ASR1K#configure terminal

Enter configuration commands, one per line.  End with CNTL/Z.

ASR1K(config)#no boot system

ASR1K(config)#boot system flash bootflash:asr1001x-universalk9.16.09.07.SPA.bin

ASR1K(config)#end

*Jun  2 06:11:21.392: %SYS-5-CONFIG_I: Configured from console by console

ASR1K#write memory

Building configuration...

[OK]

 

ASR1K#show run | inc boot

boot-start-marker

boot system flash bootflash:asr1001x-universalk9.16.09.07.SPA.bin

boot-end-marker

ASR1K#

ASR1K#reload

Proceed with reload? [confirm]

 

<OUTPUT TRUNCATED>

 


The new IOS-XE upgrade took around 5 minutes to complete. Verify the new code using show version command.

 

ASR1K#show version

Cisco IOS XE Software, Version 16.09.07

Cisco IOS Software [Fuji], ASR1000 Software (X86_64_LINUX_IOSD-UNIVERSALK9-M), Version 16.9.7, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2021 by Cisco Systems, Inc.

Compiled Wed 10-Feb-21 09:19 by mcpre

 

 

Cisco IOS-XE software, Copyright (c) 2005-2021 by cisco Systems, Inc.

All rights reserved.  Certain components of Cisco IOS-XE software are

licensed under the GNU General Public License ("GPL") Version 2.0.  The

software code licensed under GPL Version 2.0 is free software that comes

with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such

GPL code under the terms of GPL Version 2.0.  For more details, see the

documentation or "License Notice" file accompanying the IOS-XE software,

or the applicable URL provided on the flyer accompanying the IOS-XE

software.

 

 

ROM: IOS-XE ROMMON

 

ASR1K uptime is 2 minutes

Uptime for this control processor is 3 minutes

System returned to ROM by Reload Command

System image file is "bootflash:asr1001x-universalk9.16.09.07.SPA.bin"

Last reload reason: Reload Command

 

 

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

 

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

 

If you require further assistance please contact us by sending email to

export@cisco.com.

 

License Type: Permanent

License Level: adventerprise

Next reload license Level: adventerprise

The current throughput level is 2500000 kbps

 

 

Smart Licensing Status: Smart Licensing is DISABLED

 

cisco ASR1001-X (1NG) processor (revision 1NG) with 6924986K/6147K bytes of memory.

Processor board ID FXS18351234

6 Gigabit Ethernet interfaces

2 Ten Gigabit Ethernet interfaces

32768K bytes of non-volatile configuration memory.

16777216K bytes of physical memory.

6688767K bytes of eUSB flash at bootflash:.

0K bytes of WebUI ODM Files at webui:.

 

Configuration register is 0x2102


Friday, September 3, 2021

Cisco Transceiver Module Group (TMG) Compatibility Matrix

I visited the Sungei Buloh Wetland Reserve to check out the mangrove forest, migratory birds and even crocodiles. This nature reserve is Singapore's first ASEAN Heritage park. Unfortunately, I was only able to spot a monitor lizard and a few migratory birds during my visit. There are walking trails, mangrove boardwalk and observation pods that you could use in your trek.




You can almost see Malaysia just across the Johor Straits.


After a long trek, I treated myself with a Jollibee Chickenjoy and Yumburger in Woodlands.


Here's a link for the Cisco Transceiver Module Group (TMG). Cisco TMG is a free online tool that allows you to search for genuine Cisco Small Form-Factor Pluggable (SFP) or transceiver and shows you a matrix of supported Cisco devices (usually Catalyst switches), its minimum IOS version, data rate and cable type/media.

 
In the example, I tried to verify if a Cisco Nexus 5K switch will support a GLC-TE copper SFP.



You can also export the search result either into an Excel or PDF file.



Friday, August 20, 2021

Cisco Commerce (CCW)

You can go to Cisco Commerce (a.k.a. Cisco Commerce Workspace or CCW) to compile a list of your needed Cisco hardware. This helps the IT or Project Manager create a Bill of Materials (BOM) to estimate the price (in USD) and lead time for their project. You'll need a valid CCO login to access this online tool.

In this example, I created an estimate quotation for a Cisco ASR 1001-X router. I go to Catalog > Products > Routers.


Click Service Provider Core Routers. It will redirect you to WAN Aggregation and Internet Edge Routers below.

Under WAN Aggregation and Internet Edge Routers > click Cisco ASR 1000 Series Aggregation Services Routers

Select ASR1001-X-5G-K9 > click Configure


Notice the Software License and power were already included in the sample quotation.

Go back to the Router list > select ASR1001-X-5G-K9 > click Add to Cart.

Notice there's an Estimate ID created, Estimated Lead Time (70 days) and Total Price (inclusive of Service charge).

 

You can Save/Email/Share/Delete the sample quotation.

 

Friday, August 6, 2021

Cisco Device Coverage Checker (SMARTnet Warranty)

There's a Cisco portal where you can find all their web tools such as the Download Software, ASA CLI Analyzer and Device Coverage Checker. The Cisco Device Coverage Checker is a quick way to verify the device serial number for Cisco SMARTnet coverage or warranty.

Once you're in the Cisco portal, click Device Coverage Checker (CCO login required) > type/paste the Serial Number > click Check.


I issued a show inventory to check if my lab switch is still covered.

SW1#show inventory

NAME: "1", DESCR: "WS-C3560-8PC"

PID: WS-C3560-8PC-S    , VID: V01, SN: FOC1238U123


Notice under Contract > Status: Not Covered.


I tried to check a device serial number with a valid SMARTnet. Notice under Contract > Status: Covered until 2023. It also provides the Contract number and site installation (with Google map).


 

Friday, July 2, 2021

Cisco ASR 920 Router 3.x to 16.12.x IOS-XE Upgrade

The IOS-XE 16.x series was first released in November 2015. It uses code names of famous mountains/places (Fuji, Everest, etc) and covers two minor release trains, i.e. Denali  covers 16.1.x to 16.3.x minor releases. The Cisco IOS XE 16.x and 17.x Software releases are time-based, each with a fixed release date. The schedule specifies 3 individual software releases per year at 4 month intervals.

Each Cisco IOS-XE software release is classified as either a Standard-Support release or an Extended-Support release.


Standard-Support Release
A sustaining support lifetime of 12 months from First Customer Shipment (FCS) with scheduled rebuilds.

Extended-Support release Details
A sustaining support lifetime of 36 months from First Customer Shipment (FCS) with scheduled rebuilds.

Note the Cisco IOS-XE Software Release 16.9 is the first Extended-Support release under the 16.x series to support 36 months and Cisco IOS-XE Software Release 17.3 is the first Extended-Support release under the 17.x series. Every subsequent third release (for example, Cisco IOS-XE Software releases 16.12, 17.6, 17.9 etc.) will also be an Extended Maintenance release.


I had to perform an IOS-XE upgrade on a Cisco ASR 920 router from 3.x to 16.12.x (Gibraltar). I upgraded the ROMMON firmware first to be compatible with the IOS-XE 16.12.x code.

ASR920#upgrade ?

  hw-module        Upgrade hardware module commands

  hw-programmable  Upgrade hw-programmable

  raid             Upgrade RAID1 capacity

  rom-monitor      Upgrade rom-monitor

 

ASR920#upgrade rom-monitor ?

  filename  ROMMON package filename

 

ASR920#upgrade rom-monitor filename ?

  bootflash:  RP-relative ROMMON package name

  flash:      RP-relative ROMMON package name

  tmpfs:      RP-relative ROMMON package name

 

ASR920#upgrade rom-monitor filename bootflash:asr920_15_6_32r_s_rommon.pkg ?

  0    SPA-Inter-Processor slot 0

  F0   Embedded-Service-Processor slot 0

  FP   Embedded-Service-Processor

  R0   Route-Processor slot 0

  RP   Route-Processor

  all  Upgrade ROMMON on all slots

 

ASR920#upgrade rom-monitor filename bootflash:asr920_15_6_32r_s_rommon.pkg all  

 

Upgrade rom-monitor on Route-Processor 0

 

Target copying rom-monitor image file

Checking upgrade image...

1966080+0 records in

3840+0 records out

Upgrade image MD5 signature is 40966c321c22ab1671ab5617c4ce3b79

Burning upgrade partition...

1966080+0 records in

1966080+0 records out

Checking upgrade partition...

1966080+0 records in

1966080+0 records out

Upgrade flash partition MD5 signature is 40966c321c22ab1671ab5617c4ce3b79

ROMMON upgrade complete.

To make the new ROMMON permanent, you must restart the RP.

 

ASR920#reload

 

System configuration has been modified. Save? [yes/no]: yes

Building configuration...

[OK]

Proceed with reload? [confirm]

Jan 28 14:11:01.392 R0/0: %PMAN-5-EXITACTION: Process manager is exiting: process exit with reload chassis code

 

System Bootstrap, Version 15.6(10r)S, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 2016 by cisco Systems, Inc.

Compiled Thu 24-Mar-16 15:38 by alnguyen

Boot ROM1

Last reset cause: RSP-Board

Rommon upgrade requested

Flash upgrade reset 1 in progress

.......

System Bootstrap, Version 15.6(32r)S, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 2018 by cisco Systems, Inc.

Compiled Thu 30-Aug-18 06:23 by pallavik

*Upgrade in progress* Boot ROM0

Last reset cause: BootRomUpgrade

link status 0

link status 0

UEA platform with 3670016 Kbytes of main memory

 

We're coming up from a flash upgrade reset cookie

Located asr920-universalk9_npe.03.16.07.S.155-3.S7-ext.bin

Image size 311284732 inode num 17, bks cnt 75998 blk size 8*512

#################################################################

 

<OUTPUT TRUNCATED>

 

#################################################################

Boot image size = 311284732 (0x128dd3fc) bytes

pid_str[ASR-920-24SZ-M]

 

ROM:RSA Self Test hash Mismatch in long long word No. 0

ROM:Sha512 Self Test

Package header rev 2 structure detected

Calculating SHA-1 hash...

 

You have been idle for 150 seconds. Your session will end in 150 seconds.

 

done

validate_package_cs: SHA-1 hash:

        calculated f756f0e3:ae1eae7c:5742c1a0:5ee42ff4:9fe87a1c

        expected   f756f0e3:ae1eae7c:5742c1a0:5ee42ff4:9fe87a1c

 

RSA Signed RELEASE Image Signature Verification Successful.

Image validated

Passing control to the main image..

%IOSXEBOOT-4-BOOT_ACTIVITY_LONG_TIME: (rp/0): Checking if a ROMMON upgrade is pending after a reboot took: 5 seconds, expected max time 2 seconds

 

 

              Restricted Rights Legend

 

Use, duplication, or disclosure by the Government is

subject to restrictions as set forth in subparagraph

(c) of the Commercial Computer Software - Restricted

Rights clause at FAR sec. 52.227-19 and subparagraph

(c) (1) (ii) of the Rights in Technical Data and Computer

Software clause at DFARS sec. 252.227-7013.

 

           cisco Systems, Inc.

           170 West Tasman Drive

           San Jose, California 95134-1706

 

 

Cisco IOS Software, ASR920 Software (PPC_LINUX_IOSD-UNIVERSALK9_NPE-M), Version 15.5(3)S7, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2018 by Cisco Systems, Inc.

Compiled Wed 07-Feb-18 21:52 by mcpre

 

 

It took around 10 minutes for the new ROMMON upgrade to complete (still using  the and old IOS-XE 3.x).

 

ASR920##show platform

Chassis type: ASR-920-24SZ-M

 

Slot      Type                State                 Insert time (ago)

--------- ------------------- --------------------- -----------------

 0/0      24xGE-4x10GE-FIXED-Sok                    07:10:00     

R0        ASR-920-24SZ-M      ok, active            07:14:05     

F0                            ok, active            07:14:05     

P0        ASR920-PSU0         ok                    07:12:09     

P1        ASR920-PSU1         ok                    07:12:11     

P2        ASR920-FAN          ok                    07:11:58     

 

Slot      CPLD Version        Firmware Version                       

--------- ------------------- ---------------------------------------

R0        19062614            15.6(32r)S

F0        19062614            15.6(32r)S

 

 

Change the router's boot varitable to use the new 16.12.4 IOS-XE. Save the config and perform a router reload afterwards.

 

ASR920(config)#no boot system

ASR920(config)#do show run | i boot

boot-start-marker

boot-end-marker

no ip bootp server

license boot level advancedmetroipaccess

 

ASR920(config)#boot system bootflash:asr920-universalk9_npe.16.12.04.SPA.bin

ASR920(config)#boot system bootflash:asr920-universalk9_npe.03.16.07.S.155-3.S7-ext.bin

ASR920(config)#

ASR920(config)#do show run | i boot

boot-start-marker

boot system bootflash:asr920-universalk9_npe.16.12.04.SPA.bin

boot system bootflash:asr920-universalk9_npe.03.16.07.S.155-3.S7-ext.bin

boot-end-marker

no ip bootp server

license boot level advancedmetroipaccess

ASR920(config)#end

ASR920#write memory

Building configuration...

[OK]

ASR920#reload

Proceed with reload? [confirm]

Jan 28 14:24:49.191 R0/0: %PMAN-5-EXITACTION: Process manager is exiting: process exit with reload

System Bootstrap, Version 15.6(32r)S, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 2018 by cisco Systems, Inc.

Compiled Thu 30-Aug-18 06:23 by pallavik

Boot ROM0

Last reset cause: RSP-Board

link status 0

link status 0

UEA platform with 3670016 Kbytes of main memory

 

Located asr920-universalk9_npe.16.12.04.SPA.bin

Image size 467318537 inode num 19, bks cnt 114092 blk size 8*512

#########################################################################################################

 

<OUTPUT TRUNCATED>

 

#########################################################################################################

Boot image size = 467318537 (0x1bdab709) bytes

pid_str[ASR-920-24SZ-M]

 

ROM:RSA Self Test hash Mismatch in long long word No. 0

ROM:Sha512 Self Test

Package header rev 2 structure detected

Calculating SHA-1 hash...done

validate_package_cs: SHA-1 hash:

        calculated 93d52b9c:88da0d2b:8dce19ea:db637a6a:1f59da0e

        expected   93d52b9c:88da0d2b:8dce19ea:db637a6a:1f59da0e

 

RSA Signed RELEASE Image Signature Verification Successful.

Image validated

Passing control to the main image..

Stage2 Bootldr for Polaris-image

 

 

              Restricted Rights Legend

 

Use, duplication, or disclosure by the Government is

subject to restrictions as set forth in subparagraph

(c) of the Commercial Computer Software - Restricted

Rights clause at FAR sec. 52.227-19 and subparagraph

(c) (1) (ii) of the Rights in Technical Data and Computer

Software clause at DFARS sec. 252.227-7013.

 

           Cisco Systems, Inc.

           170 West Tasman Drive

           San Jose, California 95134-1706

 

 

Cisco IOS Software [Gibraltar], ASR920 Software (PPC_LINUX_IOSD-UNIVERSALK9_NPE-M), Version 16.12.4, RELEASE SOFTWARE (fc5)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2020 by Cisco Systems, Inc.

Compiled Thu 09-Jul-20 17:13 by mcpre

 

 

PLEASE READ THE FOLLOWING TERMS CAREFULLY. INSTALLING THE LICENSE OR

LICENSE KEY PROVIDED FOR ANY CISCO SOFTWARE PRODUCT, PRODUCT FEATURE,

AND/OR SUBSEQUENTLY PROVIDED SOFTWARE FEATURES (COLLECTIVELY, THE

"SOFTWARE"), AND/OR USING SUCH SOFTWARE CONSTITUTES YOUR FULL

ACCEPTANCE OF THE FOLLOWING TERMS. YOU MUST NOT PROCEED FURTHER IF YOU

ARE NOT WILLING TO BE BOUND BY ALL THE TERMS SET FORTH HEREIN.

 

Your use of the Software is subject to the Cisco End User License Agreement

(EULA) and any relevant supplemental terms (SEULA) found at

http://www.cisco.com/c/en/us/about/legal/cloud-and-software/software-terms.html.

 

You hereby acknowledge and agree that certain Software and/or features are

licensed for a particular term, that the license to such Software and/or

features is valid only for the applicable term and that such Software and/or

features may be shut down or otherwise terminated by Cisco after expiration

of the applicable license term (e.g., 90-day trial period). Cisco reserves

the right to terminate any such Software feature electronically or by any

other means available. While Cisco may provide alerts, it is your sole

responsibility to monitor your usage of any such term Software feature to

ensure that your systems and networks are prepared for a shutdown of the

Software feature.

 

 

 

All TCP AO KDF Tests Pass

cisco ASR-920-24SZ-M (Freescale P2020) processor (revision 1.2 GHz) with 890398K/6147K bytes of memory.

Processor board ID CAT22041234

24 Gigabit Ethernet interfaces

4 Ten Gigabit Ethernet interfaces

32768K bytes of non-volatile configuration memory.

3670016K bytes of physical memory.

1328927K bytes of eMMC flash at bootflash:.

 

<OUTPUT TRUNCATED>

 

 

FPGA

System Bootstrap, Version 15.6(32r)S, RELEASE SOFTWARE (fc1)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 2018 by cisco Systems, Inc.

Compiled Thu 30-Aug-18 06:23 by pallavik

Boot ROM0

Last reset cause: PowerOn

link status 0

link status 0

UEA platform with 3670016 Kbytes of main memory

 

Warning: filesystem is not clean

Located asr920-universalk9_npe.16.12.04.SPA.bin

Image size 467318537 inode num 19, bks cnt 114092 blk size 8*512

#############################################################################

 

<OUTPUT TRUNCATED>

 

#############################################################################

Boot image size = 467318537 (0x1bdab709) bytes

pid_str[ASR-920-24SZ-M]

 

ROM:RSA Self Test hash Mismatch in long long word No. 0

ROM:Sha512 Self Test

Package header rev 2 structure detected

Calculating SHA-1 hash...done

validate_package_cs: SHA-1 hash:

        calculated 93d52b9c:88da0d2b:8dce19ea:db637a6a:1f59da0e

        expected   93d52b9c:88da0d2b:8dce19ea:db637a6a:1f59da0e

 

RSA Signed RELEASE Image Signature Verification Successful.

Image validated

Passing control to the main image..

Stage2 Bootldr for Polaris-image

 

 

The IOS-XE 16.12.4 upgrade took around 25 minutes. The license key (port license) remained intact. Note the tacacs-server host <TACACS IP> command was deprecated and replaced by the server-private <TACACS+ IP> key <TACACS+ KEY> under the aaa group server sub-command in IOS-XE 16.12.2

If you've been configuring Cisco devices long enough, you'll always see this log:

Warning: The cli will be deprecated soon
'tacacs-server host 10.1.1.1'
Please move to 'tacacs server <name>' CLI

 

ASR920#show version

Cisco IOS XE Software, Version 16.12.04

Cisco IOS Software [Gibraltar], ASR920 Software (PPC_LINUX_IOSD-UNIVERSALK9_NPE-M), Version 16.12.4, RELEASE SOFTWARE (fc5)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2020 by Cisco Systems, Inc.

Compiled Thu 09-Jul-20 17:13 by mcpre

 

 

Cisco IOS-XE software, Copyright (c) 2005-2020 by cisco Systems, Inc.

All rights reserved.  Certain components of Cisco IOS-XE software are

licensed under the GNU General Public License ("GPL") Version 2.0.  The

software code licensed under GPL Version 2.0 is free software that comes

with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such

GPL code under the terms of GPL Version 2.0.  For more details, see the

documentation or "License Notice" file accompanying the IOS-XE software,

or the applicable URL provided on the flyer accompanying the IOS-XE

software.

 

 

ROM: IOS-XE ROMMON

 

ASR920 uptime is 7 hours, 10 minutes

Uptime for this control processor is 7 hours, 16 minutes

System returned to ROM by reload at 18:25:43 UTC Thu Jan 28 2021

System restarted at 18:35:28 UTC Thu Jan 28 2021

System image file is "bootflash:asr920-universalk9_npe.16.12.04.SPA.bin"

Last reload reason: Reload Command

 

 

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

 

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

 

If you require further assistance please contact us by sending email to

export@cisco.com.

 

License Level: advancedmetroipaccess

License Type: Permanent

Next reload license Level: advancedmetroipaccess

 

 

Smart Licensing Status: Smart Licensing is DISABLED

 

cisco ASR-920-24SZ-M (Freescale P2020) processor (revision 1.2 GHz) with 890398K/6147K bytes of memory.

Processor board ID CAT2201234

24 Gigabit Ethernet interfaces

4 Ten Gigabit Ethernet interfaces

32768K bytes of non-volatile configuration memory.

3670016K bytes of physical memory.

1328927K bytes of eMMC flash at bootflash:.

 

Configuration register is 0x2102