Vendor560 problems· 4 reviewed

Cisco

560 incident problems in Cisco environments.

All problems (560)

NETWORK-1232A DHCP helper is reachable but one VLAN keeps getting addresses from the wrong subnetA user VLAN begins receiving the wrong address block even though the helper configuration still points at the same DHCP server.NetworkIntermediate16 minProNETWORK-1242A DHCP helper reaches the server but clients still receive no leasesA new VLAN is added and helpers look correct, but every client request lands on a DHCP scope that is disabled or exhausted.NetworkIntermediate16 minProNETWORK-1252A DHCP relay reaches the server but clients still get no leaseA new VLAN is introduced and requests hit the DHCP server, but the server still never hands out usable addresses to that segment.NetworkIntermediate16 minProNETWORK-1247A DHCP relay reaches the server but clients still receive no useful leaseA new VLAN is introduced and requests hit the DHCP server, but every reply attempt still fails or returns unusable state.NetworkIntermediate16 minProNETWORK-116A multi-auth 802.1X port authorizes the phone, but the PC loops through reauthentication when the data MAC ages outVoice stays online, yet desktop access flaps because the access policy handles multiple identities with different aging behavior.NetworkIntermediate16 minProNETWORK-1288A NAT exemption rule looks correct but VPN traffic still translatesA site-to-site VPN works on the old firewall and breaks after migration even though the visible exemption rule was recreated.NetworkIntermediate16 minProNETWORK-1279A policy-based route captures load-balancer health checks and sends replies out a different path, so the target never appears healthy even though the app works locallyThe server responds to the health endpoint, yet the reply exits a different interface because PBR catches that probe traffic and breaks symmetry.NetworkIntermediate16 minProNETWORK-147A stack member replacement preserves the running config, but the trust device list for MACsec was stored in startup only and secure links never return after rebootOperations seem fine until the mandatory reboot reveals that a security dependency was not restored in both config states.NetworkIntermediate16 minProNETWORK-264A TACACS fallback local user exists while the AAA method list order never actually reaches it during timeout during a failover rehearsalThe backup plan is configured and the evaluation chain never invokes it. Normal traffic masked the issue until the standby or alternate path became active under rehearsal conditions.NetworkIntermediate16 minProNETWORK-312AAA reachability survives while the method list order now prefers an unintended fallback before the authoritative server is tried during a failover rehearsalThe protocol path is there and the evaluation chain picks the wrong branch first. Normal traffic masked the issue until the standby or alternate path became active under rehearsal conditions.NetworkIntermediate16 minProNETWORK-1229DHCP relays look correct but one subnet never gets leasesA newly carved subnet forwards DHCP requests successfully, but clients still fail to obtain usable leases.NetworkIntermediate16 minProNETWORK-1272HSRP failover works but failback hurts one applicationA failover event is handled correctly and the return to normal causes a second, more confusing outage window.NetworkIntermediate16 minProNETWORK-1222HSRP state looks correct but one subnet still points at the old active routerA gateway transition works generally, but one user VLAN still reaches the old active router for several minutes.NetworkIntermediate16 minProNETWORK-128IPv6 ND inspection keeps a stale binding after renumbering, and hosts with new addresses cannot pass traffic on the access edgeSecurity stays enabled, but address lifecycle assumptions lag behind the renumbered endpoint state.NetworkIntermediate16 minProNETWORK-1262A failover test appears healthy until traffic returns to the primary HSRP router and static ARP state on one path keeps forwarding from fully recoveringThe standby takeover works, yet failback breaks specific traffic because static neighbor state tied to the old active path does not refresh the way operators expect.NetworkIntermediate17 minProNETWORK-1267A failover test appears healthy until traffic returns to the primary HSRP router and static ARP state on one path keeps forwarding from fully recoveringThe standby takeover works, yet failback breaks specific traffic because static neighbor state tied to the old active path does not refresh the way operators expect.NetworkIntermediate17 minProNETWORK-127A QoS policy references the correct class map, but after a subinterface migration it is attached in the wrong direction and voice jitter returnsConfiguration objects are present, yet the path where they matter no longer sees the service-policy.NetworkAdvanced17 minProNETWORK-252A QoS trust boundary shifts from phone to switchport while one access stack still rewrites DSCP at ingress during a failover rehearsalThe policy is consistent in design and one stack never received the new trust assumption. Normal traffic masked the issue until the standby or alternate path became active under rehearsal conditions.NetworkIntermediate17 minProNETWORK-491AAA succeeds on the core path (Permission Denied)AAA succeeds on the core path (Permission Denied) focuses on Network Services And Operations and asks the reader to isolate Permission Denied in Cisco. 실무에서는 auth-and-session-failure 이슈를 볼 때 DNS, 라우팅, ACL/방화벽, 목적지 응답을 계층별로 잘라서 확인하면 장애 구간을 훨씬 빠르게 좁힐 수 있습니다.NetworkIntermediate17 minProNETWORK-495AAA succeeds on the core path (Permission Denied)AAA succeeds on the core path (Permission Denied) focuses on Network Services And Operations and asks the reader to isolate Permission Denied in Cisco. 실무에서는 auth-and-session-failure 이슈를 볼 때 DNS, 라우팅, ACL/방화벽, 목적지 응답을 계층별로 잘라서 확인하면 장애 구간을 훨씬 빠르게 좁힐 수 있습니다.NetworkIntermediate17 minPro