<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Security — RUCKUS Networks Community</title>
        <link>https://community.ruckuswireless.com/</link>
        <pubDate>Wed, 23 Sep 2026 00:45:26 +0000</pubDate>
        <language>en</language>
            <description>Security — RUCKUS Networks Community</description>
    <atom:link href="https://community.ruckuswireless.com/discussions/tagged/security/feed.rss" rel="self" type="application/rss+xml"/>
    <item>
        <title>How to Remediate TLS/SSL Vulnerabilities on SmartZone 144 Version 6.1.2.0.404</title>
        <link>https://community.ruckuswireless.com/discussion/115585/how-to-remediate-tls-ssl-vulnerabilities-on-smartzone-144-version-6-1-2-0-404</link>
        <pubDate>Mon, 21 Sep 2026 09:07:22 +0000</pubDate>
        <category>ZoneDirector</category>
        <dc:creator>Jerayuth</dc:creator>
        <guid isPermaLink="false">115585@/discussions</guid>
        <description><![CDATA[<p>The following vulnerabilities were identified:<br />
1. Weak TLS/SSL Ciphers<br />&#13;
2. TLS 1.3 Not Supported<br />&#13;
3. TLS 1.0 Enabled</p>]]>
        </description>
    </item>
    <item>
        <title>Next step when a Rogue AP has been detected (Ruckus R650)</title>
        <link>https://community.ruckuswireless.com/discussion/105744/next-step-when-a-rogue-ap-has-been-detected-ruckus-r650</link>
        <pubDate>Thu, 22 May 2025 01:27:07 +0000</pubDate>
        <category>Unleashed</category>
        <dc:creator>hits2024</dc:creator>
        <guid isPermaLink="false">105744@/discussions</guid>
        <description><![CDATA[<p>We got this alert from our Ruckus Unleashed email notification.</p><p>Subject: <span>[Ruckus-Unleashed@192.168.xxx.xxx] Alarm 'SSID-spoofing AP Detected' generated</span><br />"An alarm 'SSID-spoofing AP Detected' was triggered."</p><p>What would be the best practice for checking what triggered this alert? Can you recommend what things we need to look at? Thank you!</p>]]>
        </description>
    </item>
    <item>
        <title>Separate or same SSID for 5GHz capable IoT devices?</title>
        <link>https://community.ruckuswireless.com/discussion/80857/separate-or-same-ssid-for-5ghz-capable-iot-devices</link>
        <pubDate>Wed, 05 Jun 2024 17:44:13 +0000</pubDate>
        <category>Access Points - Indoor and Outdoor</category>
        <dc:creator>rajdude</dc:creator>
        <guid isPermaLink="false">80857@/discussions</guid>
        <description><![CDATA[<p>Hello everyone!</p><p>What is the best practice to to keep traffic from my IoT devices which are capable of connecting to 5GHz away from my main network?</p><p>Actually my question is a little bit more involved. Years ago, I separated my 2.4 GHz and 5GHz bands on my R550 at home. This is what my home network looks like currently:</p><p>IoT SSID is 2.4 GHz only and on VLAN 2<br />Home SSID is 5 GHz only and on VLAN 1<br />Guest SSID (Rucks handles it)<br />Side business SSID for members on VLAN 3</p><p>VLAN 2 &amp; 3 have no ports open to VLAN 1. I have a router - Firewalla Purple which handles those rules.</p><p>Everything works "almost" fine but many times while using the microwave in the kitchen the Amazon echo and firesticks disconnect. They are on the IoT network (as they should) but the microwave interferes with 2.4. The devices on 5 keep on working fine. These Amazon devices "are" fully capable of using 5.</p><p>So what I am wondering is this:</p><p>Should I create a third SSID - IoT2 for VLAN 2 and have 5GHz on it? Or should I go old school and enable both 2.4 &amp; 5 bands on the existing IoT SSID. I am afraid that all the plug-in switches, receptacles, lights and crappy old IoT devices which are strictly 2.4 GHz only and use that IoT SSID will then have connectivity issues.</p><p>I do want (eventually) the Amazon devices to be able to use my home server (via Plex) and show photos and movies stored there. But that is a firewall config thing, which I can handle on my router (Firewalla Purple). But that is why I was thinking: Why not put the Amazon devices on the home network. Are they "that insecure"? I mean, I am sure I would keep the crappy no name IoT switched-sockets &amp; bulbs totally separate but..... ummm..not sure about the Amazon devices.</p><p>What do others do?</p><p>Your suggestions are most welcome!</p><p>Thanks</p>]]>
        </description>
    </item>
    <item>
        <title>Enabling SSH Communication Between 09.0.10 Devices and 08.0.95 Devices</title>
        <link>https://community.ruckuswireless.com/discussion/77477/enabling-ssh-communication-between-09-0-10-devices-and-08-0-95-devices</link>
        <pubDate>Fri, 29 Mar 2024 18:58:28 +0000</pubDate>
        <category>RUCKUS Self-Help</category>
        <dc:creator>Sgatjens</dc:creator>
        <guid isPermaLink="false">77477@/discussions</guid>
        <description><![CDATA[<p><span>Devices running different FastIron releases may encounter SSH connection issues due to differences in default key exchange and host key algorithms.</span></p>
<p><span>For devices running FastIron release 09.0.10a to 09.0.10h, attempting to establish an SSH connection with a device running FastIron release 08.0.95 or earlier can lead to a mismatch in algorithms, preventing the SSH connection from being established. This problem occurs during the negotiation phase, where the server offers key exchange and host key algorithms that are not compatible with the default settings of the device running FastIron release 09.0.10a to 09.0.10h.<br /><br />For devices running FastIron release 09.0.10j and later, RUCKUS recommends configuring specific key exchange and host key algorithms on the devices to resolve this issue and enable SSH communication. Please follow the procedure below to enable SSH communication with devices running FastIron release 08.0.95 or earlier:<br /><br /></span><span style="font-family: courier new,courier;">device# configure terminal</span><br /><span style="font-family: courier new,courier;">device(config)# ip ssh key-exchange-method</span><br /><span style="font-family: courier new,courier;">ASCII string Enter algorithms separated by a space:</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;diffie-hellman-group-exchange-sha256</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;diffie-hellman-group14-sha256</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;diffie-hellman-group16-sha512</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;diffie-hellman-group18-sha512</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;curve25519-sha256@libssh.org</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;diffie-hellman-group14-sha1</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;ecdh-sha2-nistp256</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;ecdh-sha2-nistp384</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;ecdh-sha2-nistp521</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;curve25519-sha256</span><br /><span style="font-family: courier new,courier;">device(config)# ip ssh key-exchange-method diffie-hellman-group14-sha1</span><br /><span style="font-family: courier new,courier;">device(config)# ip ssh host</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp;host-key-method&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;SSH host key method</span><br /><span style="font-family: courier new,courier;">device(config)# ip ssh host-key-method</span><br /><span style="font-family: courier new,courier;">ASCII string Enter algorithms separated by a space:</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;ecdsa-sha2-nistp256</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;ecdsa-sha2-nistp384</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;rsa-sha2-512</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;rsa-sha2-256</span><br /><span style="font-family: courier new,courier;">&nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp; &nbsp;ssh-rsa</span><br /><span style="font-family: courier new,courier;">device(config)# ip ssh host-key-method ssh-rsa</span><br /><br /></p>]]>
        </description>
    </item>
    <item>
        <title>How to recover a password from version 9010 and later</title>
        <link>https://community.ruckuswireless.com/discussion/77476/how-to-recover-a-password-from-version-9010-and-later</link>
        <pubDate>Fri, 29 Mar 2024 18:31:28 +0000</pubDate>
        <category>RUCKUS Self-Help</category>
        <dc:creator>Sgatjens</dc:creator>
        <guid isPermaLink="false">77476@/discussions</guid>
        <description><![CDATA[<p><span>Before proceeding with the following steps, please note that the example resets the username to "super" and the password to "sp-admin," which is the default for FastIron 09.0.00. Ensure to press<strong> Ctrl</strong> and <strong>Y</strong> before executing the steps below:<br /></span></p>
<ol>
<li>You must access the switch via console.</li>
<li>Press Ctrl + Y.</li>
<li>Enter "reset_login"</li>
<li>Exit the console.</li>
<li>Try logging in using the default credentials: username "super" and password "sp-admin."</li>
</ol>
<p><span><span style="font-family: courier new,courier;">OS&gt; reset_login</span><br /><span style="font-family: courier new,courier;">This is a temporary login. Please reconfigure users once you login.</span><br /><span style="font-family: courier new,courier;">OS&gt; exit</span></span></p>]]>
        </description>
    </item>
    <item>
        <title>Find Answers Faster: RUCKUS Lennar Knowledge Base Self-Help Articles – Check Here Before You Post</title>
        <link>https://community.ruckuswireless.com/discussion/74988/find-answers-faster-ruckus-lennar-knowledge-base-self-help-articles-check-here-before-you-post</link>
        <pubDate>Tue, 23 Jan 2024 14:58:51 +0000</pubDate>
        <category>RUCKUS Support for Lennar Homes</category>
        <dc:creator>Imran_ruckus</dc:creator>
        <guid isPermaLink="false">74988@/discussions</guid>
        <description><![CDATA[<p><span style="font-size: large;">Hello RUCKUS Lennar Homeowners,</span></p>
<p><span style="font-size: large;">Greetings from RUCKUS!</span></p>
<p><span style="font-size: large;">We’re glad to have you here! To make your experience smoother, we’ve created the <strong><a rel="nofollow" href="https://community.ruckuswireless.com/t5/RUCKUS-Lennar-Support-Knowledge/tkb-p/lennar_tkb" target="_blank">RUCKUS Lennar Knowledge Base,</a></strong> a dedicated self-help section with step-by-step guides, solutions to common issues, and troubleshooting resources for your RUCKUS devices.</span></p>
<p><span style="font-size: large;">Before posting a new question, we kindly encourage you to:</span></p>
<p><span style="font-size: large;"><strong>1.</strong>&nbsp;<strong>Visit the <a rel="nofollow" href="https://community.ruckuswireless.com/t5/RUCKUS-Lennar-Support-Knowledge/tkb-p/lennar_tkb" target="_blank">RUCKUS Knowledge Base</a></strong> to check if your issue is already addressed.</span></p>
<p><span style="font-size: large;"><strong>2. Use the search bar</strong> or browse <strong>related content links</strong> to see if other users have discussed the same issue.</span></p>
<p><span style="font-size: large;"><strong>3. Join existing discussions</strong> where you can find valuable insights or share your experience.</span></p>
<p><span style="font-size: large;">If you don’t find a solution, please post your query in the <strong><a rel="nofollow" href="https://community.ruckuswireless.com/t5/RUCKUS-Support-for-Lennar-Homes/bd-p/lennar?emcs_t=S2h8ZW1haWx8Y3dmX3RvcGljX3N1YnNjcmlwdGlvbnxMUDAyNVFFOFdIWENJMXw3MTM1M3xTVUJTQ1JJUFRJT05TfGhL" target="_blank">RUCKUS Lennar Support section</a></strong>, and our team will be happy to assist you in resolving issues with your Lennar Home RUCKUS devices.</span></p>
<p><span style="font-size: large;">Thank you for being part of the RUCKUS Lennar Community, your contributions help make this space a richer resource for everyone!</span></p>
<p>&nbsp;</p>
<p>&nbsp;</p>]]>
        </description>
    </item>
    <item>
        <title>CVE-2023-49225: RUCKUS AP Stored Cross-Site Scripting Vulnerability</title>
        <link>https://community.ruckuswireless.com/discussion/72725/cve-2023-49225-ruckus-ap-stored-cross-site-scripting-vulnerability</link>
        <pubDate>Thu, 07 Dec 2023 16:06:46 +0000</pubDate>
        <category>RUCKUS Self-Help</category>
        <dc:creator>syamantakomer</dc:creator>
        <guid isPermaLink="false">72725@/discussions</guid>
        <description><![CDATA[<p>Hello All,</p>
<p>This is an important security announcement.</p>
<table style="width: 208px;">
<tbody>
<tr>
<td style="width: 104.219px; height: 57px;">CVE number</td>
<td style="width: 102.869px; height: 57px;">CVE-2023-49225</td>
</tr>
<tr>
<td style="width: 104.219px; height: 30px;">Severity</td>
<td style="width: 102.869px; height: 30px;">Medium</td>
</tr>
<tr>
<td style="width: 104.219px; height: 30px;">Workaround</td>
<td style="width: 102.869px; height: 30px;">Available</td>
</tr>
<tr>
<td style="width: 104.219px; height: 30px;">Fix</td>
<td style="width: 102.869px; height: 30px;">Available</td>
</tr>
</tbody>
</table>
<p>A vulnerability in the web-based management interface of the RUCKUS AP product line could allow an<br />unauthenticated, remote attacker to execute a cross-site scripting (XSS) attack against a user that’s<br />logged on to the interface of an affected device.</p>
<p>A security bulletin was posted by RUCKUS Networks Security team on 28 Nov 2023. Please refer the same from the below link.</p>
<p><a title="Security Advisory: ID 20231128" href="https://support.ruckuswireless.com/security_bulletins/323" target="_blank" rel="noopener noreferrer nofollow">Security Advisory: ID 20231128</a></p>
<p>Fix is already available and customers are advised to upgrade to recommended version.</p>
<p>While you check and plan to upgrade your devices, we strongly recommend you to implement the workaround first, as this will immediately block the possibility of this security vulnerability.</p>
<p><strong>Workaround:</strong><span>&nbsp;</span>This vulnerability can be mitigated by disabling the web services (HTTP and HTTPS) on the AP. This can be done by using the AP CLI commands "set https disable" and "set http disable".</p>
<p><strong>Note:</strong><span>&nbsp;</span>For ZoneDirector and SmartZone APs, the web services components are disabled by default, once AP joins the controller.</p>
<p><strong>Some quick facts:</strong></p>
<ol>
<li>Only Access Points are impacted due to this security vulnerability, not the controllers.</li>
<li>Disabling web server on AP (HTTP and HTTPS) guaranties no further possibility of an attack.</li>
<li>By default, any AP joining a RUCKUS Controller disables the AP web service, so your AP will only be impacted if you are using it in standalone mode or enabled the HTTP or HTTPS manually.</li>
<li>Only SmartZone, Zonedirector and solo (standalone) access point software versions are impacted.</li>
<li>RUCKUS Cloud and Unleashed APs are NOT impacted.</li>
</ol>
<p><strong>FAQs</strong></p>
<ul>
<li><strong>Q: What if I don’t have an active Support contract with RUCKUS – will I be able to upgrade my software?</strong><br />A: Yes. You will be able to obtain the recommended software that are available for your platform even if you don’t have a current support contract. At this time, a limited time manual support entitlement (1 day validity) will be provided, if your controller falls into the eligibility criteria for the upgrade. Option to upgrade with one day entitlement will be valid only for 30 days from the date of this post.</li>
<li><strong>Q: What is the eligibility criteria to get one time support exception?</strong><br />A: Your Controller (Not Access Point version) should be on a version which is impacted.<br />B: Access Point model(s) for which you want to apply the fix should be supported by the recommended firmware version.</li>
<li><strong>Q: Post upgrade if I am facing any issues (other than controller/AP firmware upgrade) with my controller/Access points, am I eligible to get support?</strong><br />A: No, limited time support entitlement is valid only for obtaining the upgrade files and entitlement, so that controller/APs can be upgraded. No additional issues can be reported under limited time support entitlement. We strongly recommend you to purchase the support entitlement for your product, to get all the support benefits.&nbsp;</li>
</ul>
<p>If you have any queries, please use the comment section on this thread and we will be happy to answer and assist.</p>]]>
        </description>
    </item>
    <item>
        <title>Upgrade path from older images ICX</title>
        <link>https://community.ruckuswireless.com/discussion/63735/upgrade-path-from-older-images-icx</link>
        <pubDate>Thu, 20 Jul 2023 19:26:00 +0000</pubDate>
        <category>ICX Switches</category>
        <dc:creator>josue_jimenez_c</dc:creator>
        <guid isPermaLink="false">63735@/discussions</guid>
        <description><![CDATA[<p>Hello dear team,</p><p>&nbsp;</p><p>Just for an update about the upgrade path process when upgrading from older software versions. Based on these documents&nbsp;</p><p>&nbsp;</p><p><a href="https://docs.commscope.com/bundle/fastiron-09010-upgradeguide/page/GUID-7894E17A-26A1-4094-BE3A-279649D8E05B.html" target="_blank" rel="noopener noreferrer nofollow">https://docs.commscope.com/bundle/fastiron-09010-upgradeguide/page/GUID-7894E17A-26A1-4094-BE3A-279649D8E05B.html</a></p><p><a href="https://docs.commscope.com/bundle/fastiron-08090-upgradeguide/page/GUID-5DD7EE86-6988-4CA7-81D2-22EA77BD1992.html" target="_blank" rel="noopener noreferrer nofollow">https://docs.commscope.com/bundle/fastiron-08090-upgradeguide/page/GUID-5DD7EE86-6988-4CA7-81D2-22EA77BD1992.html</a></p><p><a href="https://docs.commscope.com/bundle/fastiron-08095-upgradeguide/page/GUID-5DD7EE86-6988-4CA7-81D2-22EA77BD1992.html" target="_blank" rel="noopener noreferrer nofollow">https://docs.commscope.com/bundle/fastiron-08095-upgradeguide/page/GUID-5DD7EE86-6988-4CA7-81D2-22EA77BD1992.html</a></p><p>&nbsp;</p><p>The upgrade process is this one</p><p>&nbsp;</p><p><strong>"The upgrade path is 08.0.70 or prior -&gt; 08.0.80f (non-UFI) –&gt; target release (UFI)”</strong></p><p>&nbsp;</p><p>So the correct upgrade process is this one <strong>“08.0.70 or prior -&gt; 08.0.80f (non-UFI) –&gt; target release (UFI)”</strong></p><p>&nbsp;</p><p>Of course, there are some scenarios where it may change a bit like this one:</p><p>&nbsp;</p><p>Note: If you are upgrading an ICX switch for the first time from a version earlier than FastIron 08.0.95, RUCKUS recommends that you upgrade to FastIron 08.0.95d as the intermediate version and then upgrade to FastIron 09.0.10a or later. This step is required to ensure that the FPGA version is compatible with the target release.</p>]]>
        </description>
    </item>
    <item>
        <title>CVE-2023-25717 - RUCKUS AP Web Vulnerability (RCE/CSRF)</title>
        <link>https://community.ruckuswireless.com/discussion/58793/cve-2023-25717-ruckus-ap-web-vulnerability-rce-csrf</link>
        <pubDate>Mon, 15 May 2023 23:02:26 +0000</pubDate>
        <category>RUCKUS Self-Help</category>
        <dc:creator>syamantakomer</dc:creator>
        <guid isPermaLink="false">58793@/discussions</guid>
        <description><![CDATA[<p>Hello All,</p>
<p>This is an important security announcement.</p>
<p>A critical vulnerability was found in the web services component in earlier RUCKUS AP software. If the<br />affected web services component is enabled on the AP, this vulnerability allows an attacker to perform<br />remote code execution (RCE) and cross-site request forgery (CSRF).</p>
<p>A security bulletin was posted by RUCKUS Networks Security team on 8th Feb 2023. Please refer the same from the below link.</p>
<p><a href="https://support.ruckuswireless.com/security_bulletins/315" target="_blank" rel="noopener noreferrer nofollow">https://support.ruckuswireless.com/security_bulletins/315</a></p>
<p>You can also refer our&nbsp;Technical Support Response Center page from the below link. It has more information.</p>
<p><a id="LPNoLPOWALinkPreview_1" href="https://support.ruckuswireless.com/rce-csrf-ruckus-tech-support-response-center" target="_blank" rel="noopener noreferrer nofollow">https://support.ruckuswireless.com/rce-csrf-ruckus-tech-support-response-center</a></p>
<p>Please be informed, all the impacted devices were already fixed long back. However, if you are running your RUCKUS APs on an impacted version, please refer our <a href="https://support.ruckuswireless.com/rce-csrf-ruckus-tech-support-response-center" target="_self" rel="noopener noreferrer nofollow">Technical Support Response Center page</a>&nbsp;and upgrade your controller/APs to the recommended versions.</p>
<p>While you check and plan to upgrade your devices, we strongly recommend you to implement the workaround first, as this will immediately block the possibility of this security vulnerability.</p>
<p><strong>Workaround:</strong> This vulnerability can be mitigated by disabling the web services (HTTP and HTTPS) on the AP. This can be done by using the AP CLI command "set https disable" and "set http disable" command.</p>
<p><strong>Note:</strong> For ZoneDirector and SmartZone APs, the web services components are disabled by default, once AP joins the controller.</p>
<p><strong>Some quick facts:</strong></p>
<ol>
<li>Only Access Points are impacted due to this security vulnerability, not the controllers.</li>
<li>Disabling web server on AP (HTTP and HTTPS) guaranties no further possibility of an attack.</li>
<li>By default, any AP joining a RUCKUS Controller disables the AP web service, so your AP will only be impacted if you are using it in standalone mode or enabled the HTTP or HTTPS manually.</li>
<li>Only SmartZone, Zonedirector and solo (standalone) access point software versions are impacted.</li>
<li>RUCKUS Cloud and Unleashed APs are not impacted.</li>
</ol>
<p>If you got any queries, please use the comment section on this thread.</p>
<p>Thank you!</p>]]>
        </description>
    </item>
    <item>
        <title>Unable to boot after power outage. Management port not responding. Ping failed; Is not Alive</title>
        <link>https://community.ruckuswireless.com/discussion/57598/unable-to-boot-after-power-outage-management-port-not-responding-ping-failed-is-not-alive</link>
        <pubDate>Tue, 25 Apr 2023 08:05:12 +0000</pubDate>
        <category>RUCKUS Support for Lennar Homes</category>
        <dc:creator>mmmaynard</dc:creator>
        <guid isPermaLink="false">57598@/discussions</guid>
        <description><![CDATA[<p>Hello,</p><p>Experienced a brief power outage today, 4/24, around 3:45 PM PDT. Since then the RUCKUS switch (ICX7150-C12P) has been unable to reboot. APs are also down without any lights.</p><p>I attempted to perform a software recovery by following the instructions closely from the following post/URL:&nbsp;<a rel="nofollow" href="https://community.ruckuswireless.com/t5/RUCKUS-Support-for-Lennar-Homes/How-to-perform-a-Software-recovery-on-an-ICX7150-switch/m-p/47483" target="_blank">RUCKUS Forums - How to perform a Software recovery on an ICX7150 s... - CommScope RUCKUS Community Forums (ruckuswireless.com)</a></p><p>When I reached the step to ping 192.168.0.2, I received a "ping failed; host 192.168.0.2 is not alive." I went back and double-checked each step to ensure I did not make a mistake. I also tried using different equipment (laptop/desktop, ethernet cable, etc.) but to no success.</p><p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/6050i9EA302937A7E9E98/image.png" role="button" title="Screenshot 2023-04-25 004733.png" alt="PuTTY terminal" /><span>PuTTY terminal</span></span></p><p>In researching my issue, I was able to find another community's member's post below and it appears I am running into the same issue and that a possible RMA may be required.</p><p>URL:&nbsp;<a rel="nofollow" href="https://community.ruckuswireless.com/t5/RUCKUS-Support-for-Lennar-Homes/ICX7150-stuck-in-boot-mode-quot-is-not-alive-quot-when-trying-to/m-p/51583" target="_blank">Solved: RUCKUS Forums - ICX7150 stuck in boot mode - "is not alive" when t... - CommScope RUCKUS Community Forums (ruckuswireless.com)</a></p><p>Here are some additional photos of the setup:</p><p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/6051i8E77AAE5A0F0A1AD/image.jpg" role="button" title="Laptop.jpg" alt="Laptop - Red USB-A to USB-C cable (connecting to Switch) and Ethernet port and yellow ethernet cable (connecting to Management Port on Switch)" /><span>Laptop - Red USB-A to USB-C cable (connecting to Switch) and Ethernet port and yellow ethernet cable (connecting to Management Port on Switch)</span></span><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/6053i9801242C9C0DFD20/image.jpg" role="button" title="Overall.jpg" alt="Overall - Laptop &amp; Switch" /><span>Overall - Laptop &amp; Switch</span></span><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/6052iA408EC08055B46E4/image.jpg" role="button" title="Switch.jpg" alt="Switch - Red USB-A to USB-C cable connecting to console and yellow ethernet cable connected to Management Port" /><span>Switch - Red USB-A to USB-C cable connecting to console and yellow ethernet cable connected to Management Port</span></span></p><p>Please advise.</p>]]>
        </description>
    </item>
    <item>
        <title>How to Upgrade a RUCKUS ICX-7150-C12P Switch using a USB flash drive</title>
        <link>https://community.ruckuswireless.com/discussion/46781/how-to-upgrade-a-ruckus-icx-7150-c12p-switch-using-a-usb-flash-drive</link>
        <pubDate>Tue, 04 Oct 2022 17:49:54 +0000</pubDate>
        <category>RUCKUS Support for Lennar Homes</category>
        <dc:creator>Vásquez_Fer</dc:creator>
        <guid isPermaLink="false">46781@/discussions</guid>
        <description><![CDATA[<p><span style="font-size: large;"><span data-contrast="none">This article provides a step-by-step guide on upgrading a switch from a non-UFI version to the recommended 08.0.95g UFI version using a USB Flash Drive and PuTTY Applications.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><strong><span data-contrast="auto">Note:</span></strong><span data-contrast="auto"> The USB flash drive must be formatted in </span><strong><span data-contrast="auto">FAT32</span></strong><span data-contrast="auto"> and should be a </span><strong><span data-contrast="auto">Standard Type-A USB</span></strong><span data-contrast="auto">.</span><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">For detailed instructions on how to format the drive on Windows and macOS systems, please refer to the following guide:</span><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">Ensure the USB drive is </span><a href="https://www.sony.com/electronics/support/home-video-blu-ray-disc-players-recorders/ubp-x800/articles/S1F1413" target="_blank" rel="noopener nofollow noreferrer"><span data-contrast="none">formatted to FAT32</span></a><span data-contrast="auto"> and is a standard USB.</span></span></p>
<p>&nbsp;</p>
<h1 id="toc-hId-477064909"><strong><span data-contrast="auto">Steps to upgrade:</span></strong><span data-ccp-props="{&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></h1>
<h3 id="toc-hId-2044626960">A. Initial version upgrade:&nbsp;</h3>
<p><span style="font-size: large;"><span data-contrast="auto">When upgrading from a non-UFI version, we must first upgrade to the initial version (08.0.80f) before proceeding to the recommended version (08.0.95g).</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="none">The Upgrade path would be:</span><strong><span data-contrast="none"> Non-UFI version before 08.0.80f version&gt;&gt;08.0.80f&gt;&gt;08.0.95g</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">1. Download and extract/unzip the initial version </span><a href="https://support.ruckuswireless.com/software/2463-ruckus-icx-fastiron-08-0-80f-ga-software-release-zip" target="_blank" rel="noopener noreferrer nofollow"><span data-contrast="none">08.0.80f</span></a><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15580i385C9E5C9FE45746/image.png" width="843" height="474" role="button" title="Imran_ruckus_0-1748374844988.png" alt="Imran_ruckus_0-1748374844988.png" /></span><span style="font-size: large;"><em><span style="color: #999999;">Figure 1: Download path for the initial version</span></em><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335551550&quot;:2,&quot;335551620&quot;:2,&quot;335559685&quot;:720,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15581i2E5EC28114849CAE/image.png" width="847" height="477" role="button" title="Imran_ruckus_1-1748374844993.png" alt="Imran_ruckus_1-1748374844993.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 2: Accepting the download agreement</em></span></p>
<p><span style="font-size: large;"><span data-contrast="none">2. Navigate to the </span><strong><span data-contrast="none">ICX 7150 &gt; Boot</span></strong><span data-contrast="none"> directory and copy the </span><span style="font-family: courier new,courier;"><strong><span data-contrast="none">mnz10114.bin</span></strong></span><span data-contrast="none"> file.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15579i64AF1496C62727A8/image.png" width="892" height="477" role="button" title="Imran_ruckus_2-1748374844995.png" alt="Imran_ruckus_2-1748374844995.png" /></span><em>Figure 3: Downloading the boot file&nbsp;</em></p>
<p><span style="font-size: large;"><span data-contrast="auto">3. Navigate to the ICX 7150&gt;Images folder and copy </span><strong><span data-contrast="auto">SPS08080f.bin</span></strong><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15583iF72934CF8D769815/image.png" width="857" height="482" role="button" title="Imran_ruckus_3-1748374844998.png" alt="Imran_ruckus_3-1748374844998.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 4: Copy the initial version image&nbsp;</em></span></p>
<h3 id="toc-hId--1362836655">B. Download 08.0.95g version images:</h3>
<p><span style="font-size: large;"><span data-contrast="auto">1. Log in to the </span><a href="https://support.ruckuswireless.com/software" target="_blank" rel="noopener noreferrer nofollow"><span data-contrast="none">RUCKUS Support Downloads</span></a><span data-contrast="auto"> page .</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">2. Select </span><strong><span data-contrast="auto">RUCKUS ICX7150 Campus Switches</span></strong><span data-contrast="auto"> from the ‘Choose A Product’ menu. </span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15584i61F72EA51EF61423/image.png" width="868" height="488" role="button" title="Imran_ruckus_4-1748374845002.png" alt="Imran_ruckus_4-1748374845002.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 5: Download path for recommended version&nbsp;</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">3. Select </span><strong><span data-contrast="auto">08.0</span></strong><span data-contrast="auto"> from the Version menu.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:720,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15582i52CDDC1657F382BC/image.png" width="894" height="503" role="button" title="Imran_ruckus_5-1748374845004.png" alt="Imran_ruckus_5-1748374845004.png" /></span><span style="font-size: large;"><em><span style="color: #999999;">Figure 6: Choosing Download version</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">4. Select </span><a href="https://support.ruckuswireless.com/software/3409-ruckus-icx-fastiron-08-0-95g-ga-software-release-zip" target="_blank" rel="noopener noreferrer nofollow"><span data-contrast="none">RUCKUS ICX FastIron 08.0.95g (GA) Software Release (.zip)</span></a><span data-contrast="auto">.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:720,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">5. Click </span><strong><span data-contrast="auto">Download software.</span></strong><span data-contrast="auto"> </span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:720,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15586i5376A4B0D255C510/image.png" width="922" height="492" role="button" title="Imran_ruckus_6-1748374845008.png" alt="Imran_ruckus_6-1748374845008.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 7: Downloading the recommended 08.0.95g version&nbsp;</em></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15587i05798DA6175BFED6/image.png" width="896" height="477" role="button" title="Imran_ruckus_7-1748374845013.png" alt="Imran_ruckus_7-1748374845013.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 8: Accepting the Download agreement&nbsp;</em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">6. Unzip the downloaded file and extract all contents.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559685&quot;:720,&quot;335559740&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">7. Navigate to the</span><span data-contrast="auto"> </span><span data-contrast="auto">ICX 7150</span><span data-contrast="auto"> </span><span data-contrast="auto">&gt;</span><span data-contrast="auto"> </span><span data-contrast="auto">Images folder and copy</span><span data-contrast="auto"> </span><strong><span data-contrast="auto">SPS08095gufi.bin</span></strong> <span data-contrast="auto">and paste in the same folder we created previously.</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15585i9103B2CD48EC96C8/image.png" width="963" height="737" role="button" title="Imran_ruckus_8-1748374845015.png" alt="Imran_ruckus_8-1748374845015.png" /></span><em><span style="font-size: large;"><span style="color: #999999;">Figure 9: Copying the download image 08.0.95g version</span>&nbsp;</span></em></p>
<p><span style="font-size: large;"><span data-contrast="auto">8. Create a new folder named </span><strong><span data-contrast="auto">Upgrade</span></strong><span data-contrast="auto"> and copy the following files into it: </span><span data-contrast="auto">mnz10114.bin</span><span data-contrast="auto">, </span><span data-contrast="auto">SPS08080f.bin</span><span data-contrast="auto">, and </span><span data-contrast="auto">SPS08095gufi.bin.</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15588i5C23E0C2A228F40C/image.png" width="893" height="679" role="button" title="Imran_ruckus_9-1748374845016.png" alt="Imran_ruckus_9-1748374845016.png" /></span><em><span style="font-size: large; color: #999999;">Figure 10: Copying the downloaded images&nbsp;</span></em></p>
<h3 id="toc-hId--475332974"><strong>C.&nbsp;&nbsp; Connect the USB drive to the RUCKUS ICX-7150 Switch&nbsp; </strong></h3>
<p><span style="font-size: large;"><span data-contrast="auto">Insert the USB drive into the designated USB port on the ICX-7150 switch. (Figure 11)</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15589i6AD47389FBE27DD8/image.png" width="858" height="266" role="button" title="Imran_ruckus_10-1748374845018.png" alt="Imran_ruckus_10-1748374845018.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 11: Physical USB Port&nbsp;</em></span></p>
<h3 id="toc-hId-412170707"><strong><span data-contrast="auto">D. Accessing the Switch</span></strong><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></h3>
<p><span style="font-size: large;"><span data-contrast="auto">1. Connect to the switch using </span><a rel="nofollow" href="/kb/articles/8-how-to-access-the-command-line-interface-cli-of-the-ruckus-icx-7150-c12p-switch" target="_blank"><span data-contrast="none">SSH, Telnet, or a console connection</span></a><span data-contrast="auto">.</span><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335551550&quot;:0,&quot;335551620&quot;:0,&quot;335559738&quot;:240,&quot;335559739&quot;:240}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">2. Enter the </span><span data-contrast="auto">'enable’ </span><span data-contrast="auto">command to switch to User EXEC mode:</span><span data-contrast="auto">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15590i35B401769515A6AA/image.png" width="853" height="186" role="button" title="Imran_ruckus_11-1748374845021.png" alt="Imran_ruckus_11-1748374845021.png" /></span><span style="font-size: large;"><em><span style="color: #999999;">Figure 12: Accessing the Switch CLI&nbsp;</span></em></span></p>
<h3 id="toc-hId-1299674388"><strong><span data-contrast="auto">E.&nbsp;&nbsp; Verify USB Recognition</span></strong><span data-ccp-props="{}">&nbsp;</span></h3>
<p><span style="font-size: large;"><span data-contrast="auto">1. Use the '</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">mount disk0'</span></strong></span><span data-contrast="auto"> command to ensure the Switch recognizes the USB.</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15592i9C145AFF66ADA167/image.png" width="851" height="96" role="button" title="Imran_ruckus_12-1748374845023.png" alt="Imran_ruckus_12-1748374845023.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 13: Switch recognizing the USB&nbsp;</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto"> 2.&nbsp;Use the '</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">show files disk0'</span></strong></span><span data-contrast="auto"> command to view the contents of the USB drive.</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15591i2977E1DB8AF003E9/image.png" width="859" height="335" role="button" title="Imran_ruckus_13-1748374845023.png" alt="Imran_ruckus_13-1748374845023.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 14: Viewing the contents of USB</em></span></p>
<h3 id="toc-hId--2107789227"><strong><span data-contrast="auto">F. Upgrade to Intermediate version</span></strong><span data-ccp-props="{}">&nbsp;</span></h3>
<p><span style="font-size: large;"><strong><span data-contrast="auto">Note:</span></strong> <span data-contrast="auto">The switch has two flash storage partitions, Primary and Secondary.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<ul>
<li data-leveltext="o" data-font="Courier New" data-listid="1" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" aria-setsize="-1" data-aria-posinset="1" data-aria-level="1"><span style="font-size: large;"><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">'show flash'</span></strong></span><span data-contrast="auto">&nbsp;command will show the codes installed on both partitions of the switch.</span><span data-ccp-props="{}">&nbsp;</span></span></li>
</ul>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15593i596A9A55CFA88A39/image.png" width="852" height="328" role="button" title="Imran_ruckus_14-1748374845024.png" alt="Imran_ruckus_14-1748374845024.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 15: Display codes on both partitions&nbsp;</span></em></span></p>
<ul>
<li data-leveltext="o" data-font="Courier New" data-listid="2" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Courier New&quot;,&quot;469769242&quot;:[9675],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;o&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" aria-setsize="-1" data-aria-posinset="1" data-aria-level="1"><span style="font-size: large;"><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">'show version'</span></strong></span><span data-contrast="auto">&nbsp;command will display the actual version on the switch. </span><span data-ccp-props="{}">&nbsp;</span></span></li>
</ul>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15594iD1ED628258DB82F9/image.png" width="844" height="351" role="button" title="Imran_ruckus_15-1748374845026.png" alt="Imran_ruckus_15-1748374845026.png" /></span><em><span style="font-size: large; color: #999999;">Figure 16: Display Switch version&nbsp;</span></em></p>
<p><span style="font-size: large;"><span data-contrast="auto">1. Upgrade the bootrom using the command “</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">copy disk0 flash mnz10114.bin bootrom</span></strong></span><strong><span data-contrast="auto">”</span></strong><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15595iBA0C05F989372685/image.png" width="835" height="318" role="button" title="Imran_ruckus_16-1748374845027.png" alt="Imran_ruckus_16-1748374845027.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 17: Copying the Initial version boot file&nbsp;</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">2. Upgrade to intermediate version 8080f using the command </span><strong><span data-contrast="auto">“</span></strong><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">copy disk0 flash SPS08080f.bin secondary</span></strong></span><strong><span data-contrast="auto">” </span></strong><span data-contrast="auto">(Can install in both primary and secondary partitions)</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15596i8947A1EBD53BABF4/image.png" width="889" height="271" role="button" title="Imran_ruckus_17-1748374845028.png" alt="Imran_ruckus_17-1748374845028.png" /></span><em><span style="font-size: large; color: #999999;">Figure 18: Copying initial version image&nbsp;</span></em></p>
<p><span style="font-size: large;"><span data-contrast="auto">3.Use the command "</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">show flash</span></strong></span><span data-contrast="auto">" to check if it was installed correctly in the right partition.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15597i4B11912727C2CC53/image.png" width="874" height="332" role="button" title="Imran_ruckus_18-1748374845029.png" alt="Imran_ruckus_18-1748374845029.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 19: Check if version was installed&nbsp;</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">4. Use the command </span><strong><span data-contrast="auto">“</span></strong><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">boot system flash secondary yes</span></strong></span><strong><span data-contrast="auto">”</span></strong><span data-contrast="auto"> to boot the Switch from the secondary partition to make sure the image was installed correctly.</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15598iDFCB29CC647D57EF/image.png" width="845" height="451" role="button" title="Imran_ruckus_19-1748374845030.png" alt="Imran_ruckus_19-1748374845030.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 20: Boot Switch from Secondary partition</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">5. Use the '</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">show version'</span></strong></span><span data-contrast="auto"> command to check the current version once the boot process is complete and the version should be 08.0.80f</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15599iB8577C667F77362B/image.png" width="861" height="382" role="button" title="Imran_ruckus_20-1748374845036.png" alt="Imran_ruckus_20-1748374845036.png" /></span><span style="font-size: large;"><em><span style="color: #999999;">Figure 21: Checking the current Switch version&nbsp;</span></em></span></p>
<h3 id="toc-hId--1220285546"><strong><span data-contrast="auto">G.&nbsp;&nbsp; Upgrade to recommended version</span></strong><span data-ccp-props="{}">&nbsp;</span></h3>
<p><span style="font-size: large;"><span data-contrast="auto">1. Use the command “</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">copy disk0 flash SPS08095gufi.bin secondary</span></strong></span><span data-contrast="auto">” to copy from intermediate 08.0.80f to recommended version 08.0.95g.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15600i82CE93697EA45628/image.png" width="887" height="320" role="button" title="Imran_ruckus_21-1748374845037.png" alt="Imran_ruckus_21-1748374845037.png" /></span><span style="color: #999999;"><em><span style="font-size: large;">Figure 22: Copying recommended version image&nbsp;</span></em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">2. Use the command “</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">boot system flash secondary yes</span></strong></span><span data-contrast="auto">” to boot from the secondary partition once the copy is complete.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15601iE0E15BBAD369B80E/image.png" width="936" height="366" role="button" title="Imran_ruckus_22-1748374845038.png" alt="Imran_ruckus_22-1748374845038.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 23: Boot System from secondary partition&nbsp;</em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">3. Use the '</span><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">show version'</span></strong></span><span data-contrast="auto"> command to check the current version once the boot process is complete and the version should be 08.0.95g</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15602iE56BDA04C27F58D5/image.png" width="914" height="409" role="button" title="Imran_ruckus_23-1748374845041.png" alt="Imran_ruckus_23-1748374845041.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 24: Checking the Switch version&nbsp;</em></span></p>
<h3 id="toc-hId--332781865"><strong><span data-contrast="auto">H. Synchronize the partitions:</span></strong><span data-ccp-props="{}">&nbsp;</span></h3>
<p><span style="font-size: large;"><span data-contrast="auto">For best results, we recommend having both partitions on the same version. </span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">1. Use the command </span><strong><span data-contrast="auto">“</span></strong><span style="font-family: courier new,courier;"><strong><span data-contrast="auto">copy flash flash primary</span></strong></span><strong><span data-contrast="auto">”</span></strong><span data-contrast="auto"> to re-flash from Secondary to Primary.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15603i901DCC3023823357/image.png" width="864" height="352" role="button" title="Imran_ruckus_24-1748374845042.png" alt="Imran_ruckus_24-1748374845042.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 25: Copying same image on partitions&nbsp;</em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">2. Use the command </span><strong><span data-contrast="auto">“<span style="font-family: courier new,courier;">show flash</span>”</span></strong><span data-contrast="auto"> to confirm the copy.</span><span data-ccp-props="{}">&nbsp;</span></span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/15604i64DCCEC45C6B461B/image.png" width="853" height="275" role="button" title="Imran_ruckus_25-1748374845043.png" alt="Imran_ruckus_25-1748374845043.png" /></span><span style="font-size: large; color: #999999;"><em>Figure 26: Checking the Switch version after upgrade&nbsp;</em></span></p>
<p><span style="font-size: large;"><span data-contrast="auto">The RUCKUS ICX-7150-C12P Switch is now upgraded to the recommended version 08.0.95g.</span><span data-ccp-props="{}">&nbsp;</span></span></p>]]>
        </description>
    </item>
    <item>
        <title>CVE-2022-22963 and CVE-2022-22965 (Spring4Shell zero-day RCE vulnerability)</title>
        <link>https://community.ruckuswireless.com/discussion/44583/cve-2022-22963-and-cve-2022-22965-spring4shell-zero-day-rce-vulnerability</link>
        <pubDate>Mon, 25 Apr 2022 12:58:26 +0000</pubDate>
        <category>RUCKUS Self-Help</category>
        <dc:creator>syamantakomer</dc:creator>
        <guid isPermaLink="false">44583@/discussions</guid>
        <description><![CDATA[<section>This post explains about recent security vulnerability CVE-2022-22963 and CVE-2022-22965 (Spring4Shell zero-day RCE vulnerability)</section>
<section>
<h2 id="toc-hId--1330451056">About the vulnerability</h2>
<p>There are&nbsp;two vulnerabilities affecting the Spring MVC (CVE-2022-22965) and Spring Cloud (CVE-2022-22963) components of the Spring Framework. These vulnerabilities are rated Critical as a successful exploit leads to remote code execution on the vulnerable system.</p>
<h3 id="toc-hId-2044565458">Question</h3>
What Ruckus products are impacted with recent CVE-2022-22963 and CVE-2022-22965 (Spring4Shell zero-day RCE vulnerability)?</section>
<section>
<h2 id="toc-hId-444556306">What RUCKUS Networks is doing to fix this vulnerability on impacted products?</h2>
RUCKUS Networks security team is aware about the issue and already verified all the products.<br /><br />Most of RUCKUS Networks products are not impacted with this vulnerability and only one impacted product (Ruckus Cloud) was already patched on 15th April 2022.<br /><br />At this point, no RUCKUS products are impacted and no attention required from customers.
<h2 id="toc-hId-1332059987">Is my RUCKUS product impacted?</h2>
As of 18th April below is the status of RUCKUS products:<br />&nbsp;
<table style="width: 451px;"><colgroup><col width="128" /><col width="195" /></colgroup>
<tbody>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Product</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Vulnerable?</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>ZoneDirector</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Unleashed</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>UMM/Flexmaster</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span style="color: #172b4d;"><span>SmartZone/virtualSmartZone</span></span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>SPoT/vSPoT</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>RuckusAnalytics</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>MobileApps</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>IoT</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>ICX</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>CloudPath</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span style="color: #172b4d;"><span>Access points</span></span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>IOT</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl67"><span>Mobile APPs</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>CloudPath</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>SCI</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Not Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl65"><span>No action required</span></td>
</tr>
<tr>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>RuckusCloud</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl66"><span>Vulnerable</span></td>
<td colspan="1" rowspan="1" data-sfdc_class="xl65"><span>Already patched, no further action required</span></td>
</tr>
</tbody>
</table>
<h2 id="toc-hId--2075403628"><br />When impacted products will be patched?</h2>
Only one product (RUCKUS Cloud) was vulnerable and same was patched on 15th April 2022.
<p>For any queries, feel free to reach Ruckus Support at&nbsp;<a href="https://support.ruckuswireless.com/contact-us" target="_blank" rel="noopener noreferrer nofollow">https://support.ruckuswireless.com/contact-us</a><br /><br />You can also refer our support center page at&nbsp;<a href="https://support.ruckuswireless.com/spring4shell-ruckus-technical-support-response-center" target="_blank" rel="noopener noreferrer nofollow">https://support.ruckuswireless.com/spring4shell-ruckus-technical-support-response-center</a></p>
</section>]]>
        </description>
    </item>
    <item>
        <title>Service downtime needed for certificate mapping in various vSZ services</title>
        <link>https://community.ruckuswireless.com/discussion/44333/service-downtime-needed-for-certificate-mapping-in-various-vsz-services</link>
        <pubDate>Tue, 15 Mar 2022 17:41:26 +0000</pubDate>
        <category>RUCKUS Self-Help</category>
        <dc:creator>syamantakomer</dc:creator>
        <guid isPermaLink="false">44333@/discussions</guid>
        <description><![CDATA[<p>In this self help discussion, I will explain how much downtime required for specific application service, when a new certificate is mapped and applied to SmartZone services.</p>
<h2 id="toc-hId--1330453133"><strong>User/admin query?</strong></h2>
<p><span>How much time a service will take to come back, when a new certificate is mapped with SZ services?</span></p>
<p><span>Customer is renewing controller's wildcard CA cert as it is expiring soon (new cert has same domain name so just validity will change). They want to know below details to make sure there is no or minimum service impact:</span></p>
<p><span><img src="https://us.v-cdn.net/6038795/uploads/khoros_attachments/2551iE31BDC9B384199A7/image.png" width="544" height="282" role="button" title="syamantakomer_1-1647365258355.png" alt="syamantakomer_1-1647365258355.png" /></span></p>
<h2 id="toc-hId--442949452"><span>Customer general FAQ with answers</span></h2>
<p><span>1.&nbsp;What will be the service impact for each service and end clients which are already connected or may connect during service cert change.</span></p>
<h4 id="toc-hId-1124612599"><span>Answer:</span></h4>
<div><strong>Web:<span>&nbsp;</span></strong>No client service impact but SZ UI may not be available while service restarts.</div>
<div><strong>AP Portal:</strong><span>&nbsp;</span>New captive portal clients may get certificate error or portal redirection may not work while service is restarting.</div>
<div><strong>Hotspot (WISPr):<span>&nbsp;</span></strong>Same impact as AP portal.</div>
<div><strong>Ruckus Intra-device communication:<span>&nbsp;</span></strong>No user service impact.&nbsp;</div>
<h5 id="toc-hId-204661817"><em><strong>Notes:</strong></em></h5>
<ul>
<li>No impact to existing clients but client connecting during the service restart may face issues on captive portal/guest SSIDs.</li>
<li>Admins using the SZ GUI may get certificate error or may not at all able to access SZ UI during service restart (web is one of the services which will restart, post applying the new certificate).</li>
</ul>
<p><span><strong>2.</strong>&nbsp;How much time it will take for service to come to normal after changing all 4 certs to service mapping and hit OK?</span></p>
<h4 id="toc-hId--1395347335"><span>Answer:</span></h4>
<p><span>Certificate update/install will restart subscriber mgmt, NBI and Web services. Customer can upload all these certificate at once and you can assume roughly 15 minutes (max) of downtime for services to recover<br /><br /><strong>3.</strong>&nbsp;Do we need downtime if there is possibility for client disconnection or service impact?</span></p>
<h4 id="toc-hId--507843654"><span>Answer:</span></h4>
<p><span>Usually no downtime required for client connection but to avoid captive portal certificate errors, its better to update certificate during a maintenance window so that users will not wonder why they are getting certificate error.<br /><br /><strong>4.</strong>&nbsp;How to check service status?</span></p>
<h4 id="toc-hId-379660027"><span>Answer:</span></h4>
<p><span>Go to SZ CLI &gt;&gt; Enable mode &gt;&gt; run "show service"</span></p>
<p>&nbsp;</p>
<p><span>Got additional questions&nbsp;or need help? <em>Start the conversation!</em></span></p>]]>
        </description>
    </item>
   </channel>
</rss>
