Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

These notes summarizes PICOS 4.4.4 (Special Release) new features, new hardware, known bugs, and bug fixes. Best practices recommend that you read all the content before upgrading to this release. For more detailed feature information, refer to the configuration guides.

Table of Contents

Info
titleNOTEs:
  • PICOS 4.4.4.2 is only released for FS switches 5850-48S6Q, N8550-48B8C, N8550-32C, S5870-48T6BC-U and S5870-48T6BC.
  • PICOS 4.4.4.4 is only released for FS switches N5850-48S6Q, N8550-48B8C, N8550-32C, S5870-48T6BC-U, S5870-48T6BC and N5850-48X6C.

Hardware 


New Features

Layer 2 and Layer 3

Ticket IDReleaseDescription
-163434.4.4.49

Support

FS Model N5850-48X6C
-4.4.4.2

Support FS Models S5870-48T6BC-U and S5870-48T6BC

-4.4.4

Support FS Models S5860-24MG-U, S5860-24XMG, S5860-48XMG-U, S5860-48XMG, S5860-48MG-U and N8560-32C

PICOS 4.4.4 release for FS models S5860-24MG-U, S5860-24XMG, S5860-48XMG-U, S5860-48XMG, S5860-48MG-U and N8560-32C.

S5860-24MG-U has 24x5G copper ports, 4x25G SFP28 ports.

S5860-24XMG has 24x10G copper ports, 4x10G SFP+ ports and 4x25G SFP28 ports. 

S5860-48XMG-U/S5860-48XMG has 48x10G copper ports, 4x25G SFP28 ports and 2x40G QSFP+ ports. 

S5860-48MG-U has 48x5G copper ports, 4x25G SFP28 ports and 2x40G QSFP+ ports.

N8560-32C has 32x100G QSFP28 ports.

New Features

Layer 2 and Layer 3

...

Support IP Source Guard (IPSG)

IP Source Guard is a network traffic filtering technology that is based on IP/MAC. It helps to prevent IP address spoofing attacks within a local area network (LAN). For more information, see the  IP Source Guard (IPSG) documentation.

...

Support Loopback Detection (LBD)

Loopback Detection is a technology that periodically sends a special detection message from an interface, and then checks whether the message is returned to the device (without requiring the receiving and sending interfaces to be the same interface), in order to determine whether there is a loop between the interface, the network or device attached to the device, and the dual interface of the device. For more information, see the Loopback Detection documentation.

...

Support Policy-Based Routing (PBR)

Policy-Based Routing is a networking technique used to change the next hop IP address for traffic matching certain predefined policies or rule, rather than relying solely on traditional routing protocols and routing table entries. With PBR, administrators can direct traffic along specific paths according to various factors such as source/destination IP address, source/destination port, or packet attributes. For more information, see the Policy-Based Routing (PBR) documentation.

...

PICOS Switch Supports Functioning as a Telnet Server

To enable the telnet server function, users have to enable telnet service by using the command set system services telnet disable true.

Web GUI

Ticket IDReleaseDescription
-4.4.4

Support PICOS Layer 2 and Layer 3 WEB GUI

From 4.4.4 PICOS supports simple configuration through the WEB GUI, and the supported platforms include S5810 and S5860 series switchesLDAP CLI Feature

LDAP protocol is based on the client/server structure to provide directory information binding and querying, with all directory data stored on the LDAP server. It is commonly used for authentication and storing information about users, groups, and applications. An LDAP directory server is a general-purpose data store that can be used in a wide variety of applications.

163104.4.4.6

[New Feature] LDAP Support Management VRF

Add a CLI command “set system aaa ldap vrf mgmt-vrf” to support the LDAP service in the management VRF configuration.

162434.4.4.3
[New Feature] Support LDAP Feature
PICOS utilizes Pluggable Authentication Modules (PAM) and Name Service Switch (NSS) for user authentication. NSS allows PAM to leverage LDAP for user authentication, group mapping, and providing information for other services within the system.

16244

4.4.4.3
[New Feature] Support nslookup Command
Added support for the nslookup command. The nslookup command is a network administration tool used in a command-line interface to query the Domain Name System (DNS). It obtains the mapping between domain names and IP addresses, as well as other DNS records.


Feature Enhancement

Ticket IDReleaseDescription16232
Ticket IDReleaseDescription
442171014.4.4.1

PICOS Reboots Automatically when Stop PICOS or Restart PIOCS

[S5860]: sometimes PICOS reboots automatically when stop PICOS or restart PIOCS, with return 'Job for picos.service canceled'. This bug only occured on the lower-performance switch, such as S5860 Series switch, when stop PICOS switch will be reboot sometimes. This bug is fixed in 8
The Hostname Defined in DHCP Server Does not Work
When many breakout ports are configured, the system rewrites the hostname obtained through DHCP. This issue is fixed in version 4.4.4.
1
8.
408149604.4.4.1

[AS5835-54T]: Restart Switch Needs so Long Time

[AS5835-54T]: restart switch needs so long time for 10min on AS5835-54T. This bug only occured on AS5835_54T, sometimes PICOS boots up time will be 10 minutes. This bug is fixed in 8
ZTP Disable Does not Work
The PicOS monitor process tracks changes to the /etc/picos/picos_start.conf file. If this file is modified before the PicOS monitor starts, the monitor will revert it to its original state upon launch, overwriting any changes. This issue is resolved in version 4.4.4.
1
8.
-4.4.4ERPSv2 Enhancement
ERPSv2 supports sub-ring, revertive and non-revertive mode, WTB timer, FS (Force Switch) and MS (Manual Switch) mode in PICOS 16311
4.4.4.-4.4.4

GVRP Enhancement

PICOS switch supports to selectively advertise specific VLANs through GVRP in version 6

Private MIB Support for Dell Service Tag

Add to the SNMP private MIB to support Dell switches. The service tag of the Dell switches can be obtained using either the Zabbix agent or the SNMP agent.

162404.4.4. GVRP VLAN registration typically occurs without the need for manually configuring VLANs on the access interfaces of the switches on both end of the network.-6

Expand the Configuration Range for Aggregated Ethernet Interfaces Naming

Removing the Aggregate-Ethernet interface naming limitation, allowing the name of an aggregate interface to be ae1 to ae4094, regardless of the hardware model.

162464.4.4

Add Password for Entering Linux Shell 

Superuser can set shell password in CLI with the command set system start-shell-sh password <password>, which is used when entering shell with the command run start shell sh <password>.

Fixed Issues

Layer 2 and Layer 3

.3
Support for Obtaining Hostname via DHCP Server
When fetching the hostname from the DHCP server using DHCP option 12, the system can set the hostname as assigned by the DHCP server.
162474.4.4.
2

Modify Pre-Emphasis (Signal Integrity) Port Settings

 [FCS error] Pre-emphasis's value on physical port is wrong, result in FCS errors. Because of the pre-emphasis settings are incorrect in some switches, packets loss occurs when all ports of the switch forward traffic at line speed. It is fixed in PICOS 4.4.4.2.

16089
3
Support for Setting NTP Server via DHCP Server
When fetching the NTP server address from DHCP option 42, the system as a DHCP client can synchronize the date and time with the NTP server.
162454.4.4

System Hang Due to CLI in an Infinite Loop

[AS5835_54T/4.4.0] Program enters loop and keeps printing 'local0.err : tcgetattr error' when the sub-process pica_sh exits. This bug is fixed in 4.4.4.

160704.4.4

S5232F-ON Should Support to the No-Me Configuration

On S5232F-ON, by default, management-port-mapping set is Front-Panel which leading the port xe-1/1/32 cannot be breaked out. If using command 'picos_boot management-port-mapping No-Me ' modify the mode as No-Me,  then the port xe-1/1/32 can be breaked out. This bug is fixed in 4.4.4.

Known Limitations

Ticket IDReleaseDescription
-4.4.4

In 4.4.4, AS4625-54P/AS4625-54T is not Released.

Do not release PICOS 4.4.4 image for AS4625-54P/AS4625-54T.3

[Installation]: Removal of Automatic Reboot and Support for 'nos-boot-mode cancel'

Removed automatic reboot. Without a console, the nos-boot-mode now supports installing an image from the management network and removing all installed images. Additionally, 'nos-boot-mode cancel' can be used to cancel the operation.