Networking-Forums.com

Professional Discussions => Routing and Switching => Topic started by: LynK on February 02, 2017, 12:54:50 PM

Title: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: LynK on February 02, 2017, 12:54:50 PM
http://www.cisco.com/c/en/us/support/web/clock-signal.html (http://www.cisco.com/c/en/us/support/web/clock-signal.html)

https://www.reddit.com/r/networking/comments/5rmsw0/major_cisco_hardware_clock_issue_affecting/?st=iyoq6af1&sh=fe68de1e (https://www.reddit.com/r/networking/comments/5rmsw0/major_cisco_hardware_clock_issue_affecting/?st=iyoq6af1&sh=fe68de1e)

The following products are affected:
NCS1K-CNTLR
NCS5500 Line Cards
IR809/IR829
ISR4331, ISR4321, ISR4351
UCS-E120
ASA 5506, 5506W, 5506H, 5508, and 5516
Cisco ISA3000
N9K-C9504-FM-E/N9K-C9508-FM-E/N9K-X9732C-EX
MX 84
MS350 Series

Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: wintermute000 on February 02, 2017, 02:55:46 PM
I don't get the wording. Will devices keel over when running or only fail to come up after reboot?
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: mlan on February 02, 2017, 03:31:50 PM
@wintermute - It's unclear to me as well.  Based on the type of failure, I would guess some type of live crash/fault?

I have a few of the V02 ISR's that are affected by this.
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: LynK on February 02, 2017, 03:41:17 PM
I spoke with my REP. He says after 18 or so months, they will become bricks. I do not think it is caused by a reboot.
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: Otanx on February 02, 2017, 06:13:59 PM
Based on the below quote I take that as meaning as soon as the component fails that you are bricked. No reboot required.

Quote
Q: Is this a hazardous issue?
No, there is no risk of fire or other hazards. The only symptoms are that once the component fails the system will stop functioning, will not reboot, and is not recoverable.

-Otanx
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: deanwebb on February 02, 2017, 06:24:47 PM
That is a mess and a half, I'd say worse than the Samsung battery fiasco.
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: icecream-guy on February 03, 2017, 06:27:03 AM
who's running 100G cards in their 9K's?
All I got are possible 9K's affected but no 100G cards
<insert thumbs up smiley here>
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: mlan on February 06, 2017, 06:33:44 PM
Looks like the Intel Atom C2000 could be the root cause:

https://www.reddit.com/r/networking/comments/5sbh7u/cisco_clock_issues_caused_by_faulty_intel_atom/ddejo1e/

page 34 here:
http://www.intel.com/content/dam/www/public/us/en/documents/specification-updates/atom-c2000-family-spec-update.pdf
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: mmcgurty on February 07, 2017, 06:27:53 AM
We were a gnat's hair away from replacing about 1100 Cisco 2921's with Cisco 4321's.  Had it not been for the 4321's not supporting CBAC we would have pulled the trigger.  We got (3) 4321's when we were considering this move and all (3) were affected by this issue as they are all V02.  We would have been screwed had we done 1100 in the field.
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: SofaKing on February 07, 2017, 11:48:44 AM
Quote from: mmcgurty on February 07, 2017, 06:27:53 AM
We were a gnat's hair away from replacing about 1100 Cisco 2921's with Cisco 4321's.  Had it not been for the 4321's not supporting CBAC we would have pulled the trigger.  We got (3) 4321's when we were considering this move and all (3) were affected by this issue as they are all V02.  We would have been screwed had we done 1100 in the field.

Can't imagine 1100.  We have 5 to replace and I'm pissed about that small number.
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: wintermute000 on February 07, 2017, 01:57:30 PM
What? 4300s don't do zbfw??? Are you sure?



Or are you referring to CBAC as in the old style IOS firewall - mate that syntax was deprecated years ago, get with the times and migrate to ZBFW :p
same same anyway just syntax change
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: NetworkGroover on February 07, 2017, 04:36:09 PM
Quote from: wintermute000 on February 07, 2017, 01:57:30 PM
What? 4300s don't do zbfw??? Are you sure?



Or are you referring to CBAC as in the old style IOS firewall - mate that syntax was deprecated years ago, get with the times and migrate to ZBFW :p
same same anyway just syntax change

Either way... doesn't look like he would have wanted to make the move even if it did.
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: burnyd on February 09, 2017, 12:13:34 PM
RIP
Title: Re: Major Hardware Clocking Issue on Cisco Infrastructure
Post by: mmcgurty on February 27, 2017, 03:35:59 PM
Quote from: wintermute000 on February 07, 2017, 01:57:30 PM
What? 4300s don't do zbfw??? Are you sure?



Or are you referring to CBAC as in the old style IOS firewall - mate that syntax was deprecated years ago, get with the times and migrate to ZBFW :p
same same anyway just syntax change

4300's do Zone Based Firewall, I am talking CBAC (Context-Based Access Control).  I realize it was deprecated but old habits are hard to break.  We are working on converting the rule base from CBAC to ZBFW this year so we can migrate to different hardware once the ISR 2900's are replaced in our environment (next year? maybe?).