cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
400
Views
0
Helpful
12
Replies

WS-C3850-24P OS/Firmaware

QT76
Level 1
Level 1

Hi all,

i get a cisco switch, model WS-C3850-24P, and when i'm looking for a OS/firmware update i have to chose between:

 
but with show version i get just only "WS-C3850-24P". Which one i have to choose?
 
Thanks

 

 

1 Accepted Solution

Accepted Solutions

May be you can try delete all old certs :

no crypto pki trustpoint TP-self-signed

no ip http

no ip http secure

Then config :

ip http

ip http secure

You can issue below command check the ciphers : 

show  ip http server all    

or you can also configure ciphers you want to :

ip http secure-ciphersuite  ? (give you options)

and when i reload, my config is gone...is very frustrating sometimes..

If you do not read the documents then you will go more fustration.

show version ( check the config register - setup correctly to retain the config).

config-register 0x102

no system ignore startupconfig

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

12 Replies 12

balaji.bandi
Hall of Fame
Hall of Fame

Image  is universal so download from below link the stable cisco 5star

cat3k_caa-universalk9.16.12.10a.SPA.bin

https://software.cisco.com/download/home/284455435/type/282046477/release/Gibraltar-16.12.10a

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Thanks! Oke Now i have two choices:

CAT3850/3650 UNIVERSAL

or 

CAT3850/3650 UNIVERSAL W/O DTLS

Which one? What is he difference?

 

Pick Universal.

i have provided the image name - cat3k_caa-universalk9.16.12.10a.SPA.bin

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

thanks, i did. Now i have the newst version cat3k_caa-universalk9.16.12.11.SPA.bin installed. Everything is working but now i cannot access the webui. i get this message:

%WEBSERVER-5-LOGIN_FAILED: Switch 1 R0/0: nginx: Login Un-Successful from host 192.168.13.21 using crypto cipher 'ECDHE-RSA-AES128-GCM-SHA256'

any help? Sorry im just a beginner..

..and when i reload, my config is gone...is very frustrating sometimes..

May be you can try delete all old certs :

no crypto pki trustpoint TP-self-signed

no ip http

no ip http secure

Then config :

ip http

ip http secure

You can issue below command check the ciphers : 

show  ip http server all    

or you can also configure ciphers you want to :

ip http secure-ciphersuite  ? (give you options)

and when i reload, my config is gone...is very frustrating sometimes..

If you do not read the documents then you will go more fustration.

show version ( check the config register - setup correctly to retain the config).

config-register 0x102

no system ignore startupconfig

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Thank you! 

 

config-register 0x102

no system ignore startupconfig

 

this resolced the config issue, but i still cannot access the webui, and i get the same response if i change the crypto cypher..

....i solved! i missed this command:

ip http authentication local

 

Thanks a lot for your help!

sure that is basic setup we expected to configure any one before accessing the GUI

but you are more showing logs about cipher, never showed the config.

Glad all good at end. good luck.

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Thank you!

marce1000
VIP
VIP

 

  - Doesn't matter, take any of them and or the needed  (downloaded) firmware will be compatible , 

 M.



-- ' 'Good body every evening' ' this sentence was once spotted on a logo at the entrance of a Weight Watchers Club !