Readme File for IBM® Spectrum Symphony 7.1.2 and IBM Spectrum Conductor with Spark 2.2.1 Interim Fix 529939
Readme File for: IBM Spectrum Symphony and IBM Spectrum Conductor with Spark
Product Release: 7.1.2 and 2.2.1
Update Name: Interim Fix 529939
Fix ID: sym-7.1.2-cws-2.2.1-build529939-jpmc
Publication Date: January 3, 2020
When the custom security plug-in is used in an environment with both IBM Spectrum Symphony 7.1.2 and IBM Spectrum Conductor with Spark 2.2.1, this interim fix protects the authentication client and server from XXE attacks.
Contents
1. List of fixes
2. Download location
3. Product and components affected
4. Installation and configuration
5. Uninstallation
6. List of files
7. Product notifications
8. Copyright and trademark information
1. List of fixes
APAR: P103218
2. Download location
Download interim fix 529939 from the following location: https://www.ibm.com/eserver/support/fixes/
3. Product and components affected
Component name, Platform, Fix ID:
EGO, Linux x86_64, sym-7.1.2-cws-2.2.1-build529939-jpmc
4. Installation and configuration
Follow the instructions in this section to download and install this interim fix in your cluster.
System requirements
Linux x86_64
Rebuilding the custom plug-in with this update
Before enabling this fix, rebuild the custom plug-in with files from this update:
a. Copy the sym-7.1.2.0-cws-2.2.1.0_x86_64-build529939-file_for_build.tar.gz file to your build host and decompress the package to a directory.
You should see the sec_ego_ext_plugin.a file, which is the updated static library used for building the custom plug-in, in the directory.
b. Back up the sec_ego_ext_plugin.a file that is used to build your latest custom plug-in, and replace it with the same file updated by this enhancement. Then, rebuild the custom plugins.
Installation
a. Log on to the master host as the cluster administrator, disable IBM Spectrum Symphony applications, and shut down the cluster:
$ egosh user logon -u Admin -x Admin
$ soamcontrol app disable all
$ egosh service stop all
$ egosh ego shutdown all
b. Back up the following binaries on each management and compute host, which will be replaced by this interim fix:
$EGO_TOP/3.6/linux-x86_64/lib/sec_ego_ext_custom.so
$EGO_TOP/3.6/linux-x86_64/lib/sec_ego_default.so
$EGO_TOP/3.6/linux-x86_64/lib/sec_ego_ext_co.so
c. On each management and compute host, copy the custom plug-in that you built previously (sec_ego_ext_custom.so) to the $EGO_LIBDIR directory.
d. On each management and compute host, download the sym-7.1.2.0-cws-2.2.1.0_x86_64-build529939.tar.gz package and decompress it to the $EGO_TOP directory:
$ tar zxfo sym-7.1.2.0-cws-2.2.1.0_x86_64-build529939.tar.gz -C $EGO_TOP
e. Start your cluster and enable applications in IBM Spectrum Symphony:
$ egosh ego start all
$ soamcontrol app enable <appName>
5. Uninstallation
If required, follow the instructions in this section to uninstall this interim fix in your cluster.
a. Log on to the master host as the cluster administrator, disable applications in IBM Spectrum Symphony, and shut down the cluster:
$ egosh user logon -u Admin -x Admin
$ soamcontrol app disable all
$ egosh service stop all
$ egosh ego shutdown all
b. On each management and compute host, restore your backup for the following files:
$EGO_TOP/3.6/linux-x86_64/lib/sec_ego_ext_custom.so
$EGO_TOP/3.6/linux-x86_64/lib/sec_ego_default.so
$EGO_TOP/3.6/linux-x86_64/lib/sec_ego_ext_co.so
c. Start your cluster and enable applications in IBM Spectrum Symphony:
$ egosh ego start all
$ soamcontrol app enable <appName>
6. List of files
3.6/linux-x86_64/lib/sec_ego_ext_custom.so
3.6/linux-x86_64/lib/sec_ego_default.so
sec_ego_ext_plugin.a
7. Product notifications
To receive information about product solution and patch updates automatically, subscribe to product notifications on the My Notifications page http://www.ibm.com/support/mynotifications/ on the IBM Support website (http://support.ibm.com). You can edit your subscription settings to choose the types of information you want to get notification about, for example, security bulletins, fixes, troubleshooting, and product enhancements or documentation changes.
8. Copyright and trademark information
© Copyright IBM Corporation 2020
U.S. Government Users Restricted Rights - Use, duplication or disclosure restricted by GSA ADP Schedule Contract with IBM Corp.
IBM®, the IBM logo, and ibm.com® are trademarks of International Business Machines Corp., registered in many jurisdictions worldwide. Other product and service names might be trademarks of IBM or other companies. A current list of IBM trademarks is available on the Web at "Copyright and trademark information" at www.ibm.com/legal/copytrade.shtml.