Resolved Issues
The following are the resolved issues in this release:
| Issue ID | Description |
|---|---|
|
CNX-49260 |
When an uplink of the stack member was down, the Stack card displayed the offline error message for the conductor instead of the member. The fix ensures that when an uplink of the stack member is down, the Stack card displays the offline error message for the member. |
|
CNX-71355 |
The Connection Steps and Experience cards were not available for IPv6 clients. The fix ensures that the IPv6 client support is enabled by extending the Connection Steps and Experience card. |
|
CNX-73097 |
For authentication and DHCP scenarios, in the Site > Client Planet > Connectivity Card, the Connection Steps for AOS-CX switches previously displayed stale data during certain state transitions. The fix ensures that the connection steps are properly grayed out when the data is unavailable. |
|
CNX-206693 |
Users were unable to reduce or expand the port range in a configured Interface profile in HPE Aruba Networking Central. This issue occurred when they interchanged uplink and downlink ports or delete uplink ports and reassign them to expand downlink ports within the same WebUI edit flow. The fix ensures that the user is allowed to edit the port range for uplink and downlink port through both API and WebUI. |
|
CNX-99278 |
The Reports card was incorrectly displayed on the Global Menu page to users who did not have create, read, and/or delete permissions. The fix ensures that the Reports card is not displayed and navigating to the Reports page displays a Current User does not have read permission. Please contact administrator error message. |
|
CNX-101793 CNX-101813 |
The Actions card on the Sites > Alerts page did not display the ESS profile tunnel type (overlay or underlay). The fix ensures that clients can obtain an IP address in both Tunnel and Bridge mode configurations. |
|
CNX-146503 |
When creating an alias profile, users were unable to configure an IPv6 address as the network destination for an Instant AP through the WebUI. The fix ensures that users can now configure IPv6 addresses as network destinations. |
|
CNX-151710 |
When the user hovered over the Missing Access Point icon, the status appeared as Unknown in WebUI. The fix ensures that the AP status appears as expected. |
|
CNX-195158 |
The tooltips on the Troubleshooting page for all bars and charts were not aligned and displayed inconsistent timestamps. This misalignment and timestamp discrepancy became more frequent as the selected time range increased. The fix ensures that the tooltips are aligned as expected. |
|
CNX-195390 |
The VLAN profile at the Devices scope displayed the alias profile created at the Sites scope instead of the one created at the Devices scope, even after overriding the alias profile inherited from the higher scope. This was a label issue in the UI and did not affect the actual VLAN profile reference or configuration functionality. The fix ensures that the system works as expected. |
|
CNX-196795 |
Descriptions using a port-profile were pushed to switch interfaces, despite deletion. The fix removes lingering interface descriptions upon port-profile deletion. |
|
CNX-197324 |
GraphQL mutations failed whenever a string field contained an escaped double quote (\\\") or HTML <body> tags, causing malformed JSON when attempting to read those values back. The fix ensures that the response body is properly parsed and encoded before being returned, preventing JSON parsing errors and allowing GraphQL to safely handle and retrieve these fields. |
|
CNX-199699 |
In Central NAC > Configuration > Authentication Profile, Simple Certificate Enrollment Protocol (SCEP) URL was not displayed while converting BYOC/EAP authentication profile into a UEM (Intune) enabled authentication profile. This issue occurred because the SCEP URL field displayed a message Fetching SCEP URL… instead of displaying the SCEP URL. The fix ensures that the WebUI displays the SCEP URL. |
|
CNX-200070 |
Net-destination rules failed to generate CLIs for netgroup-to-netgroup NACL and role-based policies on AOSS switches. The fix ensures that the UI and backend produce valid rules to then generate CLI payloads. |
|
CNX-202183 |
When a device was unassigned or removed from a cluster, child devices linked to the unsubscribed device were incorrectly displayed in the topology. This fix ensures that isolated child devices are no longer displayed on the Link Topology page. |
|
CNX-205495 |
HPE Aruba Networking Central did not enforce address-family consistency when policy rules were configured. This allowed IPv6 address aliases or net-groups to be used even when the policy’s address-family was set to, or defaults to IPv4, and the same issue occurred when IPv4 objects were used with an IPv6 address-family. The issue occurred because of a missing or inadequate validation at configuration level. |
|
CNX-206778 |
DHCP Timeout events that occurred during client onboarding were not reflected in the dashboard metrics, which resulted in a mismatch between actual onboarding failures and what was shown in the analytics. Although these failures were visible in the event logs, they were not represented in the reported metrics. The fix ensures that the errors are displayed correctly on the metrics dashboard. |
|
CNX-206859 |
Immediately after temporarily unassigning the scope, the reference between a role and its associated policy was removed. This allowed deletion of a role assigned at the Global or Site scope even when it was still referenced by a policy. This fix ensures that role deletion is prevented until all references associated with the role-based policy are removed. |
|
CNX-209545 |
When a policy rule was created with invalid address combinations like source as host-ipv4-address and destination as IPv6 network destination with ADDRESS-FAMILY configured as IPV6, there was no validation error and configuration was successful. The fix ensures that invalid address combinations are blocked with clear validation and prevents incorrect rules from being saved. |
|
CNX-210210 |
The Auto Scope Map did not accept the Authentication Server because the alias profile was not recognized as the correct type for Overlay WLANs, even though the alias itself was valid. This caused the system to reject the configuration during scoping. The fix ensures that alias profiles are properly scoped and recognized. |
|
CNX-210987 |
Under Clients > Summary view, clicking a client in the Top Clients card returned the corresponding client page with no data displayed in the subsequent cards. The fix ensures that the Top Clients > client page displays the related client information correctly. |
|
CNX-211275 |
When a user-role was configured with a scope limited only to the gateway, it was not automatically applied to the gateway or any other device type, such as Access Points or switches. This behavior was consistent across all device categories. The user-role was only applied to the intended device type after a firewall policy was created and the user-role was associated with that firewall policy. Once the firewall policy was created, it had to be scoped to the gateway or the desired device type to ensure the user-role was applied to the respective device, and this was Day 01 behavior. |
|
CNX-211979 |
The STP Anomaly Recommender on the AI-Powered Network Optimization page incorrectly displayed the stack ID instead of the device serial number for stacked switches. The fix ensures that the device serial number is now retrieved and displayed. |
|
CNX-212190 |
After creating a PIM router profile, the profile counter incorrectly displayed a value of 0 instead of 1. The fix ensures that the correct profile count is shown. |
|
CNX-214891 |
When a user deleted an IP Prefix-Priority configuration across a device group that included unsupported platforms, the unsupported switch entered a conflict state. This issue is resolved by performing a complete configuration sync on the affected switch to restore it to a healthy and consistent state. |
|
CNX-215507 |
Gateways experienced configuration failures when netgroups with net destination type, IPV4_IPV6_MIXED, were assigned to mobility gateway personas. Although this configuration was allowed, it was not valid for gateways and therefore was not pushed to the devices, resulting in the failures. The fix ensures that the assignment no longer triggers configuration failures. |
|
CNX-216264 |
HPE Aruba Networking Central did not support Passphrase configuration. This issue occurred because the requirement for alias support was missed during implementation. The fix ensures that the configuration is added in relevant WLAN profile. |
|
CNX-217702 |
Users encountered an error message when attempting configuration changes, which blocked them from taking further actions. This issue occurred because the system exceeded API call limits when applying changes across multiple devices. The fix ensures that the API limits are increased. |
|
CNX-218842 |
The Radios table in the Unified Device List could not be sorted or filtered by Site due to an infrastructure upgrade. The fix ensures that the Radio table can be sorted and filtered by Site. |
|
CNX-218842 |
The Radio card table sorting by site name in the Global view of UDL was not functioning due to a database query error caused by incorrect field sorting. The fix ensures that the database query is corrected to use the proper field for sorting. |
|
CNX-219681 |
When configuring a webhook with an invalid client ID and secret key, the system displayed a misleading error message: Invalid wellknown URL. The fix ensures that the correct error message is displayed: Invalid client-id or credentials. |
|
CNX-219784 |
The alert count shown on the Alerts card in the Network Overview page did not match the actual number of alerts displayed in the Site view. The fix ensures that the alert count are same in both Alerts card and Site view. |
|
CNX-220840 |
Under Sites > Profiles > Edit Profile, when a user changed the management IP mode from DHCP to Static and added default gateway and DNS entries, the devices went into Out of Sync state. This issue occurred because static IP mode requires an IP address for dependent settings to be applied, but static IP cannot be configured in higher scopes. The fix ensures that the devices do not go into Out of Sync state. |
|
CNX-221647 |
The WLAN overlay assignment failed when a server group included the alias of the authentication server. This issue was seen on the Device Group page during the assignment of overlay WLAN profile. The fix ensures the validation recognizes alias-based authentication for server entries and allows the overlay assignment. |
|
CNX-221677 |
A field for Max Authenticated Data clients was missing within the AAA profile > Multi-Domain Mode selection. The fix ensures support for Multi-Domain authentication. |
|
CNX-221793 |
There was a mismatch in the client count between Unified Device List (UDL) in HPE Aruba Networking Central and the device list in Classic Central. The fix ensures that the client count is same between HPE Aruba Networking Central and Classic Central. |
|
CNX-222040 |
An Early Preview label was displayed for LAG in the Port profile. The fix ensures that no label is displayed for LAG in the Port profile. |
|
CNX-226079 |
In the global context, multiple user operations in the Alerts table intermittently failed or remained stuck in the Processing state. This fix ensures that user operations in the Alerts table complete successfully. |
|
CNX-226240 |
APs that were physically swapped between switches displayed the wrong switch-port in the WebUI. The fix ensures the WebUI displays the correct switch-port even after APs are physically swapped. |
|
CNX-226580 |
When executing the Clear Override operation for a helper-address at the Device Group scope, the system failed to generate the expected no ip helper-address <IP> configuration. This issue occurred because the Device Group configuration was not deleted. The fix ensures that the Clear Override generates the correct configuration as expected. |
|
CNX-226686 |
On CX switches, when a trunk is configured using the keyword 'all', the interface automatically inherits any newly created VLANs. However, if the trunk is configured with specific VLAN IDs or ranges, it is restricted to those defined values and does not automatically include unconfigured or future VLANs. |
|
CNX-227279 |
In HPE Aruba Networking Central WebUI, there was a delay in opening of the Port profile for wired AP overlay. The fix ensures that the Port profile for wired AP overlay opens instantaneously. |
|
CNX-227712 |
The troubleshooting card was not displaying alerts due to mismatched alert start times and alert framework issues. The fix ensures that the troubleshooting cards displays correctly with alert framework and timestamp validation. |
|
CNX-228726 |
The system displayed an incorrect error when referencing VLAN 20 across different scopes. The fix provides a clear message explaining that VLAN20 is not available in the current scope and advises users to map the VLAN to the appropriate scope before referencing. |
|
CNX-228977 |
When a scope group included only All Site Collections, the RBAC hierarchy was not honored, causing the Sites table to not display the expected sites for the RBAC user and preventing correct site visibility through the hierarchy. The fix ensures that the RBAC hierarchy is correctly applied when the scope group includes All Site Collections, allowing the Sites table to display only the sites permitted through the hierarchy. |
|
CNX-230665 |
Feature flag added for Device Assignment with a note for APIGW json support. |
|
CNX-229454 |
Non-failsafe upgrades are not supported on AOS-CX devices running firmware version 10.14. |