Hardware Management Console Readme *Version 10 Release 3 Maintenance 1051 (V10 R3 M1051) README* Date: 16 February 2024 (C) Copyright International Business Machines Corp., 2024 All rights reserved. Contents <#ibm-content> The information in this Readme contains the fix list and other package information about the Hardware Management Console. * Terminology <#term> * PTF MF71552 HMC V10 R3M1051.0 - for vHMC for x86_64 hypervisors (5765-VHX) <#MF71552> * PTF MF71553 HMC V10 R3M1051.0 - for 7063 Hardware or vHMC for PowerVM (5765-HMB) <#MF71553> * Enhancements <#enhance> * List of fixes <#fixes> * Known issues and limitations <#known> * Best Practices <#best> * Installation <#install> Terminology *x86* - This term is used to reference the Intel hypervisors (KVM, VMWare, Xen) on which Virtual HMC can be installed. *Note:* HMC V10R3 release for x86 is not supported on bare metal (7042 hardware appliances). * ppc64 or ppc64le* - describes the Linux code that is compiled to run on Power-based servers or LPARS (Logical Partitions) PTF MF71552 HMC V10 R3 M1051.0 - for vHMC for x86_64 hypervisors (5765-VHX) This package represents a service pack image that can be used to update the HMC from HMC V10 R3 M1050 release. You can also reference this package by APAR MB04438 and PTF MF71552. This image can be installed on top of HMC V10 R3 M1050 with or without other PTFs or Service Packs installed. * Service packs are cumulative and as such will include all the fixes for the PTFs released up to and including the last service pack(s) for this HMC version. Please read the individual Readme files for each PTF to see the list of fixes. /Package information/ Package name Size Checksum (sha1sum) APAR# PTF# HMC_Update_V10R3M1051_x86.iso 4826714112 3eadc788ab0f22c50c3dcd9da97f065705a9ebe3 MB04438 MF71552 Splash Panel information (or lshmc -V output) "version= Version: 10 Release: 3 Service Pack: 1051 HMC Build level 2401282247 MF71552 - HMC V10R3 M1051 ","base_version=V10R3 " PTF MF71553 HMC V10 R3 M1051.0 - for 7063 Hardware or vHMC for PowerVM (5765-HMB) This package represents a service pack image that can be used to update the HMC from HMC V10 R3 M1050 release. You can also reference this package by APAR MB04439 and PTF MF71553. This image can be installed on top of HMC V10 R3 M1050 with or without other PTFs or Service Packs installed. * Service packs are cumulative and will include all the interim fixes for the PTFs released up to and including the last service pack(s) for this HMC version. Please read the individual Readme files for each PTF to see the list of fixes. /Package information/ Package name Size Checksum (sha1sum) APAR# PTF# HMC_Update_V10R3M1051_ppc.iso 4816689152 eaee0141e4eb573f353ed980dfadad0da6744ad7 MB04439 MF71553 Splash Panel information (or lshmc -V output) "version= Version: 10 Release: 3 Service Pack: 1051 HMC Build level 2401282247 MF71553 - HMC V10R3 M1051 ","base_version=V10R3 " * * *General fixes* * Fixed a timing issue that can cause a 500 error to be returned to a Get ManagementConsole REST API call when another HMC session is logged out just after the Get call is made. The 500 error returned has a reason code of "/Unknown internal error./" and a message of "/Cannot invoke "com.ibm.hwmca.fw.servlet.util.HMCSession.getUserContext()" because "session" is null/". * Fixed an issue when performing a partition migration validation operation on the GUI that caused edited vNIC or SR-IOV mappings to disappear from the GUI when submitted for validation again. * Fixed an issue that caused the name of a shared processor pool on an Enterprise BMC-based managed system to be reset to the default name after the maximum or reserved processing units for the pool was changed. * Fixed a rare issue that can cause a managed system to go into Recovery state and also prevent the managed system from being recovered with rstprofdata or mkprofdata. * Fixed an issue that caused the PCM REST API get of processed or aggregated metrics to fail with the 500 error "/An I/O error occurred sending to backend/" and caused the PCM GUI to fail to load any data. * Fixed an issue causing the sed command to fail when a command argument contains a dash. * Fixed an issue that can cause Transmit Service Information operations to fail after upgrading the HMC to a new release. * Fixed an intermittent issue that causes SRC E3550037 to be called home when the reference code history of a partition is displayed on the GUI. * Fixed an issue causing an SMTP server to fail to receive email notifications when the IP address specified for the SMTP server has a trailing space. * Fixed an issue that caused the following error to occur when using the GUI to upgrade the HMC: "/An error occurred while downloading the upgrade file.//Files not obtained from server. Check to see if the hostname, user id, password and directory entered are valid./" This error occurs when no directory is specified for the download location. * Fixed a timing issue that causes nothing to happen and no error to be displayed when the USB option is selected on the Update VIOS GUI page. * Secure SMTP has been enhanced to use all available transport protocols of HMC instead of only TLS 1.3. * Fixed an issue where the Last Reported Time on the GUI Manage Serviceable Events page displays the current time instead of the last reported time. This issue only occurs when the language is Korean. * Fixed the description shown on the Serviceable Events page for SRC B158BA2A. Security Fixes * Fixed Java vulnerabilities: CVE-2023-5676, CVE-2023-22067, and CVE-2023-22081. * Addressed CWE-200 (Information Exposure) in reset expired password form. * Fixed an Information and Stack Trace disclosure for GET requests with malformed parameters to an API endpoint. Known Issues & Limitations * When a GUI Delete Partition operation completes the entire GUI screen goes blank. A browser refresh will correct the issue. * Dates, times, and numbers on the GUI Performance dashboard are shown in the format based on the HMC language instead of the browser language. * If log in to the HMC GUI is failing with this error for LDAP or auto-managed users: /Error: "Logon Error: Invalid credential or Timeout. Please try again after some time, if it repeats, please follow troubleshooting steps from IBM support."/ Use the following troubleshooting steps: Check whether the user is LDAP or auto-managed authentication type. If so, run the following command to change the LDAP configuration: o chhmcldap -o s --timelimit 30 --bindtimelimit 20 If log in to the GUI still fails, run the following command: o chhmcldap -o s --timelimit 30 --bindtimelimit 10 Best Practices * User sessions - The following best practices helps avoid performance degradations gradually over a period of time due to increased login sessions as well as security vulnerabilities such as unauthorized access to the active HMC sessions. o It is a best practice to logoff from HMC UI and then close the browser tab instead of directly closing the tab o Set Idle session timeout for all the users and not leave the timeout as '0' which leaves it as no timeout. * Profile recommendations - The maximum number of partition profiles suggested per partition is 10. Installation Installation instructions for HMC Version 10 upgrades and corrective service can be found at these locations: Upgrading the HMC from Version V10R1 or V10R2M1030 to V10R3M1050 Updating, upgrading, and migrating your HMC machine code Update(s) for HMC V10R3M1051