Cisco second leap SCV Bug - workaround other solutions possible

Can we change the NTP server to a non-existent IP address or block access to the NTP server to work around the Bug below.

Upgrade or a planned restart seems not feasible. Please suggest

Update the zone data to include adding that second leap introduced on 30 - Ju
Symptom:
There are leap second periodic events that can add or remove a second time overall.
When the second update occurs system may hang on because the operating system does not understand "60" seconds (normally clock goes from '59' then on '00' second).

Conditions:
The second update will be propagated via the Network Time Protocol (NTP).

Workaround solution:
Option #1: An upgrade is required.
Option #2: Shut down the system before the leap second occurs and commissioning the leap second event after event workaround.

Other Description of the problem:
Difficulty in the X8.5.2 code.

It will only be a problem on your device happens to interrogate the NTP server to the exact moment where he responds with "60" seconds... a second before, or a second later and he will be very well, so I think you must be pretty unlucky hit this bug.

But, Yes, you can assign the VCS a non-existent or inaccessible NTP server on that time period, in which case it then will not ask anything for the second time "60", and then send it to a normal operation afterwards.

Wayne
--
Remember the frequency responses and mark your question as answered as appropriate.

Tags: Cisco Support

Similar Questions

  • B210a Photosmart: Inks works do not on HP Photosmart B210 may apply to any other SOLUTION POSSIBLE

    Like many I had a headache in my case with the black ink doesn't work does not, all about he makes message boards, nothing helped, still no black - arrived to the conclusion No matter how hard I cleaned the print head, that color would come out.  Finally, I got all inks to work, and I'll explain as follows:

    As I said I did a full clean truck, but just in case, I ordered a refurbished on the NET, cost me £20 inc postage, but it was planned for 12 months, so more or less NEW.

    Then first remove the old Printhead and clean (although I replaced mine with a renovated as above), on the printer where you took the print head on, there is a plate of white color with metal connectors on this point

    At this point good idea to pull the plug on the back of the printer, transportation center remained on mine not moving not

    I put a little alcohol to burn on a tissue paper and brush contacts - NOT WET, damp and dry

    In the meantime if you have the time to thoroughly clean every bit of the print head several times so that the water runs clear - by all means follow the steps already mentioned in the comments, as said that I replaced it

    Using alcohol to burn again gently clean all metal connectors and dry - contacts on the head and the machine are now 100% clean, I hope that if you've been careful enough

    replace printhead (adopted) but without the inks and keep down the lever arm on the printer, then add the inks and ensure that they adapt to the House with a click

    close the lid, now reconnect the wire on the printer and let the machine warm up

    Once he settled, try printing a color image say about size A5 or A6, so not to exhaust all other inks

    You may have healed now, otherwise the chances are that you are missing a color or a black - no problem

    With the machine, disconnect the power supply again back and wait more than 30 seconds to reset

    Put power cord back in, let the machine warm up - will likely be asked to do an alignment, click NO,

    Print to try again in A5 or A6 (black Inc. photo all in) again may have worked, if not

    go to the TOOLS menu on the touch screen (or on some models computer screen) and click on CLEAN PRINT head

    Wait so that it can process the cleaning and try again to print an image - MINE WORKS PERFECTLY at this POINT a and the images were as good as they have ever been.

    (OTHERWISE, you will have to redo some CLEAN print head)

    It worked for me, very happy with the machine, and I'm not saying what I did.  For those who have a go, be careful electrical contacts, etc. and everything is completely dry before the arrival of the machine.

    Hope this helps.

    Thanks for sharing!

  • Second leap of UCS 2015

    I put this in the blog section already, but I want to be sure, you can see where you are not familiar with the directory/updated community page:

    Hello

    I just that everyone is aware of this bug on leap second:

    https://Tools.Cisco.com/bugsearch/bug/CSCus83447/?reffering_site=dumpcr

    Symptom:
    UCS fabric interconnect reload or failover can occur due to the update of the second leap.

    Conditions:
    UCS Version 2.2 (x).
    This problem does not occur under 2.1 or earlier.

    Workaround solution:
    Disable NTP at least one day (24 hours) before the event. In general, the NTP servers send information about the next second leap up to a full day in advance.
    After the appearance of the second leap you can safely re - enable NTP.

    Other Description of the problem:
    There is a drawback to kernel known Linux (discussed in a public forum to)
    http://ServerFault.com/questions/403732/anyone-else-experiencing-high-rates-of-
    Linux-server-accidents-today? answertab = # active tab - top). UCS 2.2.x version runs the affected almond version.

    -Kenny

    Thank you Kenny

    Just for the record: a leap second will be added on June 30, 2015 23: 59:60 UTC.

    http://www.timeanddate.com/time/leapseconds.html

    Walter.

  • My iPod Touch 4th generation cannot be upgraded beyond ios 6.1.6 and podcast Apple app requires ios 7.1 or later version.  Is there another app, workaround or solution that would allow me to download podcasts on Itunes?

    My iPod Touch 4th generation cannot be upgraded beyond ios 6.1.6 and podcast Apple app requires ios 7.1 or later version.  Is there another app, workaround or solution that would allow me to download podcasts on Itunes?

    You should be able to get the latest compatible version of the app Apple Podcast and other apps too:

    From when iOS 7 was released, Apple can now download the latest compatible version of some applications (iOS 4.2.1 and later only)

    Install the latest compatible version of an application on a previous version of iOS or OS X

    App Store: Download the old Versions applications

  • Problem status Microsoft 6to4 has a driver problem detected other Solutions to adapt Hardware Exchange may not detected

    Map Microsoft 6to4 has a driver problem Detected Other Solutions
    Hardware changes may not have been detected

    Hi M. - Tottimeemoo.

    According to the description of the problem, it seems that you are having problems with "Microsoft 6to4 adapt has a driver problems. I will defintiely help you with this question.

    -Did you do changes on the computer before this problem?
     
    Method 1: I suggest you to see link below and check if it helps.
    On a Windows Vista-based computer or on a Windows Server 2008-based computer, the Microsoft ISATAP map appears with a yellow exclamation mark next to it in Device Manager, and you also receive an error message
     
    Method 2: I also suggest you to uninstall and reinstall the network card and check if that helps.
     

    I hope this helps. Try the above steps and get back to us for assistance. We will be happy to help you.

  • impact of the second leap 2015 to Application Java on Oracle in AIX

    Hello:

    I would like to get advice more communities DBA for the "second leap in the year 2015 problem" for Java application on the 11.2.0.4 to the AIX operating system oracle database.  Our explicit questions are commissioned in Java application:

    1. any impact to Java time back and comparison?

    2. no impact in objects API JDBC timestamp?

    So we should close application when the time approaches midnight, June 30, 2015 (for example: after 23:30 to June 30)?

    Should we rebounce all application servers?

    Or any code change must be made in any class of the Java API?

    Or, no need for any action?

    We have collected a SR of survey-3 for oracle support, they have not confirmed any need for action of RDBMS Oracle, quick to answer me on the impact to the question of Java.  Here is the link for 'Java API for Date class' to the Oracle's Web site:

    https://docs.oracle.com/javase/8/docs/api/java/util/Date.html

    Someone at - it interest giving me advice?  Thank you very much!

    Well Yes, probably

    but I guess that's a lot of work to put in place

    and all this work will be to see what happens if something changes in this second 2 window...

    I outweigh the cost against the risk

    the risk being a transaction or a process that can potentially fail which explicitly check/use long?

    > the cost... depends on how many people next to you will work on this

    the work and the cost of this work really deserve the conclusions you might be able to do?

  • My subscription has ceased, even I made my last payment on 22.03.2016. My Plan marked as expired. The system is not providing any other solution but only update my payment information, I did. Nothing seems to happen. Online support is disabled. I have

    My subscription has ceased, even I made my last payment on 22.03.2016. My Plan marked as expired. The system is not providing any other solution but only update my payment information, I did. Nothing seems to happen. Online support is disabled. I have no choice but to ask here for help! I need to work, I need to work now!))

    This is an open forum, not Adobe support... below to connect with Adobe personnel to help

    While the forums are open 24/7 you can't contact Adobe support at any time

    Chat support: Mon - Fri 05:00-19:00 (US Pacific Time)<=== note="" days="" and="">

    Don't forget to stay signed with your Adobe ID before accessing the link below

    Creative cloud support (all creative cloud customer service problems)

    http://helpx.Adobe.com/x-productkb/global/service-CCM.html

  • Today PS CC 2014 started crashing seconds after opening? (All other work CC Apps)

    Today PS CC 2014 started crashing seconds after opening? (All other work CC Apps)

    MODEL: MacBookPro9, 2, MBP91.00D3.B09 of BootROM, 2 processors, Intel Core i7, 2.9 GHz, 8 GB, MSC 2.2f44

    Graphics card: Intel HD Graphics 4000, graphics Intel HD 4000

    I tried

    • Reset the settings.
    • Signed in and out of the creation account of Cloud.
    • I have not installed plugins


    Still does not work

    This crash is because Photoshop is trying to write to a file named 'pslog.txt' in your home directory, but the file cannot be created or written on a reason any.

    If you can fix the permissions on this file or your home directory, then the crash stops.

  • No workaround for the bug of image solution unique purchase right now?

    I need some pictures for the moment and the problem with purchasing images unique makes it impossible to carry out a project. There is no work around for this? Create an Adobe without buy CC and buy this way account? Any help is appreciated.

    Hi, Kaleb,.

    I am a member of the Adobe Stock Engineering team and we are working to solve this problem and apologize for the inconvenience. I gave you a few free licenses for your trouble. You will see them in the counter of the image at the top of the page when you next connect to Adobe Stock.

    EBQ

  • With the help of Cisco ACS 5.2 (GANYMEDE +) with other than Cisco devices

    Hi all

    I was hoping that someone could help me with what might be a silly question. I'm trying to implement a solution whereby an operator can control all their nodes (other than Cisco) network via GANYMEDE + involved nodes are

    Juniper M10i running Junos 9.2, M120

    M320 running Junos 8.5 Juniper

    Extremes of BD8810 and BD8806 running 12.4.1.17 XOS

    3804 Alpine extreme Extremeware 7.8.3.5 running

    My question is, can I use Cisco ACS 5.2 (or 4.2) to authenticate using GANYMEDE + to these other than Cisco devices. Has anyone else done this or I have to use RADIUS? If someone has done this are problems of interoperability with Cisco CS and Junos or XOS extreme. Thank you

    / John

    John,

    We have a very large deployment of Juniper (T-series, series MX, etc.). We use Cisco ACS and GANYMEDE to manage these devices. The configuration of the ACS is fairly simple. You'll want to create users to connect and match them to the classes on your JUNOS routers. Here is an example:

    set system login user uid of engineering 2000
    Set system login user engineering genius-class class
    set the connection user uid to NOC 2001 System
    Set system login user AC AC-class class

    define the system connection Engineering-class idle-timeout 15
    define a connection system class engineering-class permissions all
    define the system connection AC-class idle-timeout 15
    define the connection class AC system class view permissions
    Set connection AC-class permissions see the system configuration

    We use two classes of genius and NOC. One is defined as a read / write and the second read-only. This is in turn then mapped in ACS (in our case version 4.2) by user or group (preferred). First, you change the configuration of the interface and add a Ganymede junos-exec service and do not enter the Protocol field. Then, you change the attributes of the user group. I've attached screenshots for both on this subject.

    Hope this helps.

    Derek

  • Cisco ASR 1 k bug Bash

    https://Tools.Cisco.com/bugsearch/bug/CSCur02734

    http://Tools.Cisco.com/Security/Center/content/CiscoSecurityAdvisory/Cisco-SA-20140926-bash

    The ASR 1 k running 15.4 (1) based on this bug No. S shows that it is vulnerable to bash bug. Is there more information on this and is there a solution?

    Depending on the version of the software is affected by this bug?

    Software Cisco IOS, IOS - XE Software (X86_64_LINUX_IOSD-UNIVERSALK9-M), Version 15.3 (1) S1, VERSION of the SOFTWARE (fc1)

  • Mozilla use only processes that lead to crashes, bugs and other problems

    If there are 5 tabs running in mozilla it still use single parent process, which lead to any errors, bugs, etc.

    CROME to child process on the other hand, if 5 tabs are then run the process of 5 children, are all effective. Look at attached photos

    For more information on the future of several processes in Firefox, read this article as a starting point: https://developer.mozilla.org/Firefox/Multiprocess_Firefox

    Regarding the extension compatibility status: http://arewee10syet.com/

  • My site optimized (22-59K) uses a grid for layout system. It takes 10 + seconds in Firefox 7,8,9 to load, other browsers need less than 1 second. Y at - it other that to use a 2-column layout, some recommended grid with which Firefox gets along?

    Someone commented ago about 9 weeks for my site to load very slowly. I tried and had no problem.

    But a few days ago, I realized that the first call (after rebooting the system) in Firefox 7, 8 and 9 of Firefox Firefox takes 10 + seconds (white screen) while other browsers have need of about 1 second. After the initial call each page loads faster than in other browsers.

    Without content management system, I got the same results. In simply removing things from the grid of my stylesheet, pages loading less than a second. I tried other grids http://cssgrid.net/, http://www.webdesignerwall.com/demo/simpler-grid/940grid.html , but had the same number.

    A identify the extension that is causing the problem in your case?

    He is always unpredictable, how the extensions behave with a new version and in case of problems you can contact the developer of the extension to inform him about the problems.

  • Cisco ezvpn ASAs cannot ping each other inside interfaces

    I have a set ezvpn in place with a 5506 (position B) client-side and a 5520 (location A) server-side. I have successfully connected vpn, and traffic flows. My problem is that I can't SSH in the location b. investigate this more than I can not ping is within the interface of the ASA opposing, or the machines inside each ASA ASA.

    I found the following links that describes a scenario similar to mine, but nothing on one of them helped me.
    http://www.experts-exchange.com/questions/28388142/cannot-ping-ASA-5505-inside-interface-across-VPN.html
    https://www.fir3net.com/firewalls/Cisco/Cisco-ASA-proxy-ARP-gotcha.html
    https://supportforums.Cisco.com/discussion/11755586/Cisco-ASA-VPN-established-cant-ping

    I joined sanitized versions of these two configs. Any help is appreciated.

    Hi Adam

    The site of B I'm not able to see "management of access to inside. Please try to set up the same. He could solve the problem.

    Also on the instruction of the ASA takes place nat can you please try to add keywords 'search non-proxy-arp route'.

    something like:

    nat (inside,outside) source static (Location A)_Networks (Location A)_Networks destination static (location B)-remote_network (location B)-remote_network no-proxy-arp route-lookup
    as I have noted problems with inside access to interface via the VPN when those keywords are not applied. If I remember correctly 8.6.x ASA version had a bug regarding the same. Cordially Véronique
  • vShield Zones vs. other solutions

    I am looking for a high-level comparison of solutions (vshield zones, pvlans, VMsafe 3rd pary solutions, etc.).  to isolate a network of virtual machines within a vSphere environment.

    Here's the scenario:

    The physical LAN is divided into several VIRTUAL LANs already, but we do not rely on this alone to isolate groups of virtual machines, one of the other.  We also want to isolate traffic from groups of virtual machines that belong to similar groups in the same environment virtual and not necessary to create a separate vlan on the physical switches for each group of vm needs its traffic in isolated from other virtual machines.  (all the VMS need to internet connectivity)

    I know it can be done with vShield zones, but I would like to get a vision of the otherwise, that this can be done, and how they compare and the advantages and disadvantages of each.  In addition, no matter what other traps that I need to be wary as incompatibility with HA, FT, etc..

    If needed 10 new virtual machines to create and they will be distributed on between different groups and esx hosts, we want to have all the layer 2 chassis of these invisible to all other vm vm.  Facilitated internal management VLAN / vShield Zones and solutions that are free or equipped for business/business more versions are preferred.

    Any thoughts are appreciated.

    Hello

    Thanks - this is a useful article.  In this scenario, one of the objectives is to have a host group esx, clusters and vms, all on the same physical subnet with the IP on that subnet-, then this great group of VMS to separate groups of virtual machines and allow them to talk only to the virtual machine in their group.  For example, suppose that there are 200 vm on the 192.168.1.0/24 subnet.  They all go to keep their IP addresses.  Suppose that 20 are these vm "group a" and 20 are in "Group B".  Group A vm should be able to talk to the other group a Vm only.  Group B vm should be able to talk only to the other group B vm.

    Yes it is possible with many solutions virtualization security VMsafe if or not. It's area of area protections available to vShield App, vShield Zones, Altor networks, systems SLR, Trend Micro, IBM, Checkpoint, mocking, etc... Very basic requirement.

    However, it could be spread of Group A vm among different esx hosts and clusters.  But some management tool is to control isolation still monitors hence Group A vm is even if they are distributed among different ESX hosts and ESX clusters.  Amidst all this, it goes without requiring the creation of a separate subnet and keeping all the 192.168.1.0/24 subnet IP addresses.   The piece of management that administers the (vshield zones/vshield edge or what the solution is) for example, can a place manage virtual machines that are in these distinct groups and separate their traffic.

    One of the solutions can do it too... The traffic is not necessary 'isolated', as it might be on a VIRTUAL LAN, but if you think that it is quite distinct, so that is very good.

    Although the article mentioned some of these subjects from a high level perspective, I'm not quite clear on the distinctions between the products and what they can and cannot do to understand what product if none will actually just that.  Is this possible with Vshield Zones?  The next questioner talked vshield Edge "that separates traffic on layer 2" occupies Vshield edge with separation of traffic between virtual machines on the same subnet or subnets that separate as would a router logical?  (In this scenario all the vm could be created on and stay on the 192.168.1.0/24 subnet)

    vShield Edge is just an a little perimeter firewall as a PIX firewall, etc. Just a virtual version of such a firewall. He has other capabilities not found in physical firewall.

    The idea that you have a fluid network must be managed is why you need a virtualization within your network security device. All current devices require that you put at least one virtual device on each host which in turn talk to a console management for all devices. So if you have 200 guests you have 200 aircraft, talk with a single management node that controls what each of these devices can do and the policies to be applied on each host. So, let's assume the following:

    200 guests. 20 virtual machines by the Zone of confidence, confidence in 20 areas, no two areas of trust can talk to each other and 20 virtual machines can be spread over 200 guests, and there is no known place of the virtual machines. All the virtual machines on the same subnet.

    Your security Console would be the description of the policy that says that every trusted zone is separated from the other, etc. The policy is sent to the appliances on each of the 200 guests. and these devices apply policy denying access between areas of different trust virtual machines.

    The tools to do this. Some cela via VMsafe such as vShield App, Altor networks, reflex systems, TrendMicro, CheckPoint or IBM. Others do so via online/offline terminals vShield Edge, mocking, Trend Micro. And still others may make using PVLANS as the distributed virtual switch. Inline devices separate virtual machines by trade in order to provide the necessary protection, while the VMsafe style devices could do this within the hypervisor. In both cases your 'policy' would be applied.

    NOTE however that if the virtual machines are all on the same subnet, then while the policies will work with these tools, a misconfigured vSwitch Portgroup allow VM only, see all the traffic on a host given to the subnet. So now audit becomes an important requirement to ensure vSwtich and Portgroup settings do not allow such behavior.

    Best regards
    Edward L. Haletky VMware communities user moderator, VMware vExpert 2009, 2010

    Now available: url = http://www.astroarch.com/wiki/index.php/VMware_Virtual_Infrastructure_Security'VMware vSphere (TM) and Virtual Infrastructure Security' [/ URL]

    Also available url = http://www.astroarch.com/wiki/index.php/VMWare_ESX_Server_in_the_Enterprise"VMWare ESX Server in the enterprise" [url]

    Blogs: url = http://www.virtualizationpractice.comvirtualization practice [/ URL] | URL = http://www.astroarch.com/blog Blue Gears [url] | URL = http://itknowledgeexchange.techtarget.com/virtualization-pro/ TechTarget [url] | URL = http://www.networkworld.com/community/haletky Global network [url]

    Podcast: url = http://www.astroarch.com/wiki/index.php/Virtualization_Security_Round_Table_Podcastvirtualization security Table round Podcast [url] | Twitter: url = http://www.twitter.com/TexiwillTexiwll [/ URL]

Maybe you are looking for

  • Can't come back in a few pages.

    I have this problem where sometimes when you try to use the back button to return to the pages that formerly would have given a message "do you want to send data" when I'm home, nothing happens at all. I don't get a message, and I'm not returned to t

  • I went on the web site, major geeks, ended by unistalling a buch of things.

    I have a blank green screen.

  • Update the rate Num (smaller text?)

    Hello The large monitor works as it is supposed to be so. However, check if Acer will never consider the possibility to resize the number of refresh rate and also change its position? As it is now the number is too big and distracting. Not sure if th

  • Envy of devices not finding hp printer 5530

    We have been printing our ipad, kindle and galaxy phones for the last few months with no problems, but since there are two days all three are saying 'no air printer found. ' Have you tried switching devices, printer and router completely off but noth

  • Files to publish to the OTA install

    Hello I use the eclipse JDE plugin. I noticed the results folder contains the application files. If I want to use an installation OTA, what files and what folder structure must use to install? Thank you