Patch-ID# 109208-21 Keywords: security purple ioctl metadb scadmin run netfmd haapi tmp Synopsis: Sun Cluster 2.2: Framework/Comm Patch Date: Jan/28/2004 Install Requirements: Reboot immediately after patch is installed See Special Install Instructions Solaris Release: 2.6 SunOS Release: 5.6 Unbundled Product: Sun Cluster Unbundled Release: 2.2 Xref: This patch available for Solaris 7 as patch 109209 Topic: Sun Cluster 2.2: Framework/Comm Patch NOTE: Refer to Special Install Instructions section for IMPORTANT specific information on this patch. Relevant Architectures: sparc BugId's fixed with this patch: 4166719 4178378 4194228 4198311 4200931 4202341 4202418 4204350 4204635 4208872 4210065 4210356 4213128 4213692 4216201 4217658 4219689 4223400 4224105 4224254 4224465 4224637 4225606 4230378 4232837 4235163 4235908 4237536 4242167 4254717 4260151 4263339 4263858 4266899 4268220 4271584 4275692 4276061 4276090 4276487 4282116 4282453 4284605 4290688 4291514 4292509 4296560 4299784 4300411 4301056 4301827 4303180 4304680 4305666 4306566 4306927 4306932 4308555 4309231 4309949 4310728 4310869 4311834 4313986 4314300 4316710 4317996 4318821 4321549 4322304 4322768 4323053 4326020 4326276 4327926 4329393 4332371 4333232 4333630 4336343 4336987 4337526 4337710 4338421 4340713 4341392 4341710 4342779 4344745 4345179 4346015 4346661 4347759 4352785 4354950 4360206 4361737 4374233 4374729 4375480 4376993 4377174 4378376 4385636 4389568 4392328 4392955 4394811 4394844 4395651 4396396 4398062 4400242 4402020 4402834 4402862 4404221 4404223 4404234 4404710 4404807 4406121 4406137 4410141 4411476 4411673 4411704 4411713 4416013 4420949 4424033 4424535 4430034 4435348 4439011 4441339 4451302 4455717 4457562 4458575 4459943 4460398 4462141 4463552 4465081 4468948 4471591 4476883 4479907 4488409 4488497 4492230 4498123 4500204 4503644 4511610 4515052 4519229 4615970 4617794 4620244 4696933 4697409 4703143 4714159 4717331 4776229 4800074 4805121 4814827 4817736 4845607 4846406 Changes incorporated in this version: 4845607 Patches accumulated and obsoleted by this patch: 107748-02 107750-01 107752-01 107761-04 107763-02 107931-02 108086-01 108095-01 108190-02 108215-01 108287-03 108291-02 108347-01 108349-01 108397-01 108421-01 108425-01 108427-01 108439-01 108503-02 108506-02 108508-04 108518-02 108520-01 108522-01 108523-01 108524-01 108526-01 108938-01 109211-08 Patches which conflict with this patch: Patches required with this patch: Obsoleted by: Files included with this patch: /etc/init.d/rootreserve /etc/opt/SUNWcluster/conf/in.mond-allowed-hosts /etc/opt/SUNWcluster/conf/in.mond-denied-hosts /etc/rc0.d/K60rootreserve /etc/rc2.d/S27rootreserve /etc/rc3.d/S21sc_get_sched_class /opt/SUNWcluster/bin/ccdadm /opt/SUNWcluster/bin/ccdctl /opt/SUNWcluster/bin/ccdd /opt/SUNWcluster/bin/ccdinstall /opt/SUNWcluster/bin/ccdmatch /opt/SUNWcluster/bin/clustd /opt/SUNWcluster/bin/confccdssa /opt/SUNWcluster/bin/dbms_upgrade_methods /opt/SUNWcluster/bin/ds_install_methods /opt/SUNWcluster/bin/ds_remove_methods /opt/SUNWcluster/bin/fdl_rshstatus /opt/SUNWcluster/bin/fdl_timesecs /opt/SUNWcluster/bin/finddevices /opt/SUNWcluster/bin/get_ha_status /opt/SUNWcluster/bin/haconfig /opt/SUNWcluster/bin/hactl /opt/SUNWcluster/bin/hactl_sync /opt/SUNWcluster/bin/haget /opt/SUNWcluster/bin/halockrun /opt/SUNWcluster/bin/hareg /opt/SUNWcluster/bin/hareg_sync /opt/SUNWcluster/bin/hastat /opt/SUNWcluster/bin/hastat_client /opt/SUNWcluster/bin/hatimerun /opt/SUNWcluster/bin/librcprsh /opt/SUNWcluster/bin/loghost_sync /opt/SUNWcluster/bin/lookuphost /opt/SUNWcluster/bin/monitor_rpcbind /opt/SUNWcluster/bin/mstate_sync /opt/SUNWcluster/bin/netfmd /opt/SUNWcluster/bin/nfs_fix_sharetab /opt/SUNWcluster/bin/nlck /opt/SUNWcluster/bin/pmfadm /opt/SUNWcluster/bin/reconf_ener /opt/SUNWcluster/bin/rpc.pmfd /opt/SUNWcluster/bin/scadmin /opt/SUNWcluster/bin/scccd /opt/SUNWcluster/bin/scconf /opt/SUNWcluster/bin/scdidadm /opt/SUNWcluster/bin/scinstall /opt/SUNWcluster/bin/scnfs /opt/SUNWcluster/bin/scssa /opt/SUNWcluster/bin/smond /opt/SUNWcluster/bin/smond_conf /opt/SUNWcluster/bin/smond_ctl /opt/SUNWcluster/bin/snmpd /opt/SUNWcluster/etc/reconf/conf.d/rc12.d/90_rpcbindmon /opt/SUNWcluster/etc/reconf/conf.d/rcA.d/90_rpcbindmon /opt/SUNWcluster/etc/reconf/conf.d/rcK.d/90_rpcbindmon /opt/SUNWcluster/etc/reconf/conf.d/rcR.d/90_rpcbindmon /opt/SUNWcluster/etc/reconf/scripts/ccdreconfig /opt/SUNWcluster/etc/reconf/scripts/cvmreconfig /opt/SUNWcluster/etc/reconf/scripts/loghostreconfig /opt/SUNWcluster/etc/reconf/scripts/monreconfig /opt/SUNWcluster/etc/reconf/scripts/quorumreconfig /opt/SUNWcluster/etc/reconf/scripts/reconf_ener.disks /opt/SUNWcluster/etc/sun.mib /opt/SUNWcluster/ha/nfs/disktype /opt/SUNWcluster/ha/nfs/fdl_enum_probe_disks /opt/SUNWcluster/ha/nfs/filesystem_full /opt/SUNWcluster/ha/nfs/have_maj_util /opt/SUNWcluster/ha/nfs/majmddb /opt/SUNWcluster/ha/nfs/net_diagnose_comm /opt/SUNWcluster/ha/nfs/net_rpcprobe /opt/SUNWcluster/ha/nfs/nfs_check_my_lockd_statd /opt/SUNWcluster/ha/nfs/nfs_fm_start /opt/SUNWcluster/ha/nfs/nfs_just_umount /opt/SUNWcluster/ha/nfs/nfs_mon /opt/SUNWcluster/ha/nfs/nfs_mount /opt/SUNWcluster/ha/nfs/nfs_probe_loghost /opt/SUNWcluster/ha/nfs/nfs_svc_stop /opt/SUNWcluster/ha/nfs/nfs_svc_stop_net /opt/SUNWcluster/ha/nfs/renamefile /opt/SUNWcluster/ha/nfs/trynetdirlookup /opt/SUNWcluster/lib/libccd.so.1 /opt/SUNWcluster/lib/libhads.so.1 /opt/SUNWcluster/lib/libscutil.so /opt/SUNWcluster/lib/libscutil.so.1 /opt/SUNWhadf/bin/haconfig /opt/SUNWhadf/bin/halockrun /opt/SUNWhadf/bin/hastat /opt/SUNWpnm/bin/pnmd /opt/SUNWpnm/bin/pnminit /opt/SUNWpnm/bin/pnmptor /opt/SUNWpnm/bin/pnmrtop /opt/SUNWpnm/bin/pnmset /opt/SUNWpnm/bin/pnmstat /opt/SUNWpnm/bin/pnmsync /opt/SUNWpnm/man/man1m/pnmd.1m /opt/SUNWsci/bin/sun4u1/findsci2b /opt/SUNWscid/bin/sciip /opt/SUNWsma/bin/get_ci_status.pci /opt/SUNWsma/bin/get_ci_status.sbus /opt/SUNWsma/bin/sm_config.pci /opt/SUNWsma/bin/sm_config.sbus /opt/SUNWsma/bin/sma_configd.pci /opt/SUNWsma/bin/sma_configd.sbus /opt/SUNWsma/bin/smactl /opt/SUNWsma/bin/smad /opt/SUNWsma/man/man1m/sma_configd.1m /platform/sun4d/kernel/drv/scid /platform/sun4u/kernel/drv/scid /platform/sun4u1/kernel/drv/scid /usr/kernel/drv/did /usr/kernel/drv/ff /usr/kernel/drv/sci_pci /usr/kernel/drv/sci_s25 /usr/kernel/drv/smak.ether /usr/kernel/drv/smak.sci /usr/kernel/drv/sparcv9/sci_pci /usr/kernel/drv/sparcv9/sci_s25 /usr/sbin/in.mond Problem Description: 4845607 Several hactl commands at the same time can lead to unmastered logical host. (from 109208-20) 4800074 processes accessing vxvm volume as raw prevents failover 4814827 SBUS SCI direct connect cannot handle poweroff of one node. Backout of 4425415. (from 109208-19) 4846406 Patch 109210-16 fails to create /var/opt/SUNWcluster/run directory (from 109208-18) 4310728 clustd receiving incorrect packets from scid 4717331 ifconfig scid hang 4776229 when setting ulimit to UNLIMITED in root's .profile cluster 2.2 can't be started 4805121 Complete fix for 4318821 4817736 SUN4D_ARCH flag not defined for sun4d compilation (from 109208-17) 4376993 scssa dumps core with 96 disks per controller 4430034 Public net not optimal on this node 4500204 Backport of 4298204 in SC 3.0 to SC 2.2 4696933 backport fix for 4298307 to SC2.2 4697409 Backport fix for bugid 4305774 to SC_2.2 4703143 Backport fix for bugid 4304052 to SC_2.2 4714159 Clustd consuming excessive CPU time with patch 109210-13 (from 109208-16) (removed) 4425415 SCI driver dropping packets 4503644 In cluster environment rpc.pmfd does not start process with fd limits > than 1024 4519229 scadmin startnode fails with 't_bind cannot bind to requested address' 4615970 ff_lbolt not set at boot for 5.7. Causing heartbeat loss, ff_panic for drive fail 4617794 Healthy cluster members abort due to a joining node having full filesystem 4620244 Sun Cluster does not support secure NFS with "portmon=1" set, no workaround (from 109208-15) 4392328 Inter-node communications for monitoring leave open security 4404223 nfs_mon is multi-threaded and calls MT-unsafe popen() & system() 4492230 clustd is multi-threaded and calls MT-unsafe popen() 4424033 pmfadm -l displays NO PID, and nametag for service 4460398 Memory leak in netfmd 4463552 node reset failed in E4500 3-node cluster configuration 4476883 hanfs failed with ID[SUNWcluster.fm.nfs.1500] Just exceeded HA_FM_NFS_LOCALRESTA 4488409 fdl_enum_probe_disks does not work/enum_disks.probe1.$$: No such file or direct 4488497 needless startcluster prevents correct stopnode 4498123 SC2.2: ID[SUNWcluster.scccd.add.4001]: row already exist - LOCKNODE lnode ... 4515052 cluster reconfig step10 timed out because of delay in reconfig script. (from 109208-14) 4511610 Fix for 4396396 needs to be backed out from Framework/Comm Patch. (from 109208-13) This patch revision was generated to also accumulate and obsolete patch 109211-08. 4441339 Cached IP-addr not cleared when ping fails 4361737 ping hang causes pnmd to hang forever 4471591 system hang during haswitch or scadmin stopnode 4458575 kill clustd on LH master node, gives error message with patch 109208-11 4457562 rsh get stuck when used to execute the command scadmin startnode 4451302 hastat displays incorrect status for oracle data service 4424535 race condition in popen_safe can cause client to lose file descriptors 4411713 Improve messages around logicalhost switching in SC 2.2 4411476 Disk groups can be imported on both nodes in a cluster 4410141 SNMP trap enterprise OID 4396396 Race condition between logicalhosts during switchover causing admin f/s errors 4318821 Security issue with Sun Cluster 4303180 Startnode abort with an error getnextline: fidescriptor is nil: CCD file: 0 (from 109208-12) 4462141 Complete fix for 4402020 - scinstall 4459943 Complete fix for 4402020 - loghost_sync, lookuphost (from 109208-11) 4435348 Improve resiliency of clustd, smad, and rpc.pmfd 4439011 There needs to be a 64-bit rpc.pmfd in Sun Cluster 2.2 on Solaris 7 & 8 (from 109208-10) 4411673 Cannot start snmpd on Solaris 8 4420949 SC2.2:switchover failed with message"Unable to release switchover lock." 4301827 scadmin stopnode on SC2.2 cluster node causes unknown network interface messages 4329393 SC2.2 hads functions are not MT-safe because they call popen() & system() 4404221 netfmd is multi-threaded and calls MT-unsafe system() 4402020 Sun Cluster Framework scripts write to /tmp insecurely 4404234 haapi commands are unnecessarily linked with libthread & call popen() & system() 4398062 Reconfiguration didn't success after a stop A 4394811 Inter-node communications for monitoring leaves open security 4404710 Extended NFS fault monitoring leaves temporary files behind. / enum_disks_err.$$ 4406137 Sun Cluster SNMP Service files write to /tmp insecurely (from 109208-09) 4416013 With SRM patches there is still a TS process while SRM is active (from 109208-08) 4411704 Changes made to HA-Oracle for bug/rti 4338298 should be backed out (from 109208-07) 4402834 rpc.pmfd exited abnormally causing panic while explorer running 4341392 Sun Cluster 2.2 is not aware of Solaris Resource Manager 4385636 "Fatal: 10002, check condition" is displayed on quorum reservation 4375480 When node A is halted, sometime node B is not able to reserve quorum disk 4394844 pmfd dumps core, panics node 4402862 scnfs does not give unique result using grep (from 109208-06) 4395651 when call II sc.stop.sh, sds_release function didn't give any info messages 4337710 S27rootreserve is unable to resolve rootdisk when encaps and mirrored with VM 4392955 symbolic link libscutil.so is not removed after removing patch T109208-05 (from 109208-05) 4354950 Nodelocking on E10k Platforms fails to exclude Failure Fenced Node 4374233 BASEDIR is used in pkgmap for rootreserve. 4374729 RFE: stop Sun Cluster using system() 4389568 cluster complains about metaset -s with patch T109208-04 installed (from 109208-04) 4378376 Cluster complaints metadb -s nfs_ds_1 failed after patchadd T109208-02 (from 109208-03) 4377174 Implement retries for mhioc/reserve/release ioctls in SC2.2 (from 109208-02) 4290688 Add an event logging facility to the failfast driver 4300411 sc2.2/solaris8 scconf ... -s generates an unexpected error msg 4308555 sc2.2/solaris8 unexplained msg appearing during reconf 4323053 net_diagnose_com dumps core & unable to access logical host 4326276 Instant Image 2.0 on SDS based SC2.2 cluster prevents fail-over cluster 4332371 during a startnode the system panics 4333630 Makefile in usr/src/cmd/ccd/ccdd does not use proper lib path 4336343 Backport SC3.0 pmfd "child level monitoring" features to SC2.x 4337526 ns mail fault monitor keeps restarting netscape mail 4340713 libscutil has a race condition in it 4341710 kmem_free in _fini done before mod_remove could cause kmem corruption 4352785 scconf can inadvertently kill osinetd stack 4360206 Vxvm304 layered volumes patch 108508-04 gives error message in ccd.log on SSVM2.6 (from 109208-01) 4178378 haget prints out incorrect error message for missing -s flag 4202341 Not possible to handle more than 45 ip-adresses per logicalhost 4263339 pnmrtop failure with exit code 0 and exit code 5 leaving defunct processes 4282453 logical host failover aborts due to vxfs umount failure 4306566 Failfast timeout - unit "pmfd: process m" 4309231 large rmtab can cause unwanted logical host failover 4310869 lookuphost fails with multiple instances of data services 4322304 in.mond can hang 4322768 RFE: stop Sun Cluster using popen() 4333232 Build fails in pkgmk due to missing files specified in prototype.generic 4336987 netfmd should use ha_open_optimized 4338421 libscutil is not 64 bit enabled 4345179 netfmd coredumps when there are no registered dataservices (from 109211-08) 4479907 Failover failed with reboot while patch T109213-05 on a SCI cluster 4468948 smak interface mismatch, causes "Cannot find SCI adapter for IP address" 4455717 SC2.2 - Manual pages for pnmd & sma_configd report wrong location of log files. 4404807 cluster node doesn't take over when public network failure (from 109211-07) 4465081 Complete fix for 4406121 - sma_configd.* (from 109211-06) 4435348 Improve resiliency of clustd, smad, and rpc.pmfd (from 109211-05) 4400242 NAFO fails to failover if all active networks goes down at the same time 4347759 pnm/nafo binaries are unnecessarily linked with libthread and/or are MT-unsafe 4406121 Sun Cluster Communication files write to /tmp insecurely (from 109211-04) 4411704 Changes made to HA-Oracle for bug/rti 4338298 should be backed out (from 109211-03) 4341392 Sun Cluster 2.2 is not aware of Solaris Resource Manager (from 109211-02) 4284605 pnmd spews out too many multicast ICMP packets even when network is active (from 109211-01) 4204635 pnmd does not respond 4217658 pnmd does not fail over multicast groups on to new interface 4296560 After reboot, first "ifconfig up" after plumb does not send ARP packet 4317996 nafod has malloc problems. 4305666 sc2.2/sol8 Visibility on net interfaces lost after scinstall-reboot... 4313986 sc2.2/sol8 - sci pkgs install pb on e10k during scinstall 4327926 #pragma ident strings and copyright strings are missing from the pnmd source 4346015 SC2.2 Solaris 6/7 : Need to backout changes for SCI/PCI from gate. 4346661 Auto-generate FCS version in pkginfo and correct copyright file NOTE: The fix in 4346015 backs out changes made in patches 108190-02, 108522-01 and 108523-01. (from 108523-01) 4304680 Support for SCI-PCI on Sun Cluster 2.2 and Solaris 2.6 (from 108522-01) 4304680 Support for SCI-PCI on Sun Cluster 2.2 and Solaris 2.6 (from 108439-01) 4276061 sm_config cannot be localized. (from 108425-01) 4276061 sm_config cannot be localized. (from 108190-02) 4304680 Support for SCI-PCI on Sun Cluster 2.2 and Solaris 2.6 4306932 Auto-generate FCS version in pkginfo and correct copyright files. (from 108190-01) 4198311 machine locks up: SCI driver stuck in interrupt when out of RxVcs 4202418 DUP:SCI heartbeat alive-check failures causing node failures 4204350 Trailing commas in enum definitions cause compiler warnings for new_genif.h 4224637 SCI: null pointer dereferenced when out of memory 4225606 stack overflow in SCI driver during boot (from 107931-02) 4311834 pnmd switches to the wrong ipaddress (from 107931-01) 4200931 PNM on E450 does not work for ATM Version 3 (from 108938-01) 4301056 haoracle_fmon_7.3 generate a lot of net_diagnose_comm processes (from 108526-01) 4219689 adding data service immediately after upgrade corrupts cdb file (from 108524-01) 4224465 nfs_probe not restarted on the backup node. (from 108520-01) 4263858 monitor_rpcbind is too keen to abort the node under some conditions (from 108518-02) 4314300 PATCH 108518-01 (hareg) : no more default timeouts (from 108518-01) 4291514 sun supplied data services require -t -d options with hareg (from 108508-04) 4344745 respin for bug 4326020 NOTE: Also to correct variable in loghost_sync. (from 108508-03) 4326020 sc2.2/sol8/vxvm -Problem with LH when the diskgroup contains striped volume(s) 4342779 Fix SCCS header in source file (NOTE: This is a respin of 108508-02 with 4321549) (from 108508-02) 4321549 Cannot switch over logical host while database instance is running 4306927 Update copyright notices and do not strip src versions from binaries. (from 108508-01) 4271584 multiple imports of diskgroup causes filesystem corruption (from 108506-02) 4216201 confccdssa hangs if vxdisk list finds no disks in "error" state (from 108506-01) 4292509 scconf, confccdssa have i18n errors (from 108503-02) 4316710 Spelling error while creating the administrative file system for logical host (from 108503-01) 4292509 scconf, confccdssa have i18n errors (from 108427-01) 4275692 pmfadm is not internationalized 4282116 global i18n target is missing files (from 108421-01) 4276487 scadmin: some of messages cannot be localized. (from 108397-01) 4276090 quorumreconfig cannot be localized. (from 108349-01) 4235163 smond dumps core when logical host gets shutdown (from 108347-01) 4254717 A A3500 controller failure cause a metatrans HARD ERROR in a Sun Cluster Environment (from 108291-02) 4232837 Cluster 2.1 sun.mib does not include RFC 1215 trap definitions. (from 108291-01) 4230378 SC2.2 snmp agent doesn't handle its mib correctly. (from 108287-03) 4309949 Death of rpc.pmfd on SC2.2 does not cause a failfast panic (from 108287-02) 4268220 'pmfadm -l' displays the PIDs, which were no more in system process table (from 108287-01) 4260151 add diagnostic flags into pmfd (from 108215-01) 4224254 NFS client get "Stale NFS file handle" from HA-NFS server during switch over (from 108095-01) 4213692 The logical host "ping-pong"s if the cluster cannot start up the dataservice. (from 108086-01) 4235908 message "scccd loghost failed" after takeover of nfs-loghosts with SC2.2 and VM (from 107763-02) 4263858 monitor_rpcbind is too keen to abort the node under some conditions (from 107763-01) 4166719 killing rpcbind does not cause failover 4194228 Cluster 2.1 is crashing after rpcbind failure (from 107761-04) 4299784 confccdssa shows no disks if extra "/" entry in /etc/vfstab (from 107761-03) 4242167 cmmmstep11 takes 15 minutes for fencing disks 4266899 scssa hangs on disk config >= 64 disks per controller (from 107761-02) 4237536 Backout quorumreconfig changes which was done for bug: 4223400 (from 107761-01) 4223400 scadmin startcluster fails to start the clusters. 4224105 cannot join cluster with box-E as storage devices .. (from 107752-01) 4213128 loghost takeover fails if you have one loghost with two disksets (SDS) (from 107750-01) 4210065 ha-nfs prints error for logical hosts configured with multiple disksets (SDS) (from 107748-02) 4210356 "panic: Failfast timeout - unit "comm_timeout" (from 107748-01) 4208872 power down of node results in rest of cluster being unable to continue Patch Installation Instructions: -------------------------------- Refer to the Install.info file within the patch for instructions on using the generic 'installpatch' and 'backoutpatch' scripts provided with each patch. Any other special or non-generic installation instructions should be described below. Special Install Instructions: ----------------------------- Stop the Sun Cluster software on all nodes before applying this patch. Apply this patch to each node and reboot each node after patch installation. Restart the cluster once the patch has been applied to all nodes to ensure consistent behavior. Please refer to the Sun Cluster 2.2 System Administration Guide for exact commands to start and stop the cluster. o login as root and stop all the nodes in the cluster o stop rpc.pmfd: # /etc/init.d/initpmf stop o apply the patch as usual o reboot the node after patch installation o restart the cluster on the node NOTE 1: The fix for bugs 4392328 and 4336343 includes updates to man pages, which can be obtained by installing patch 108445-03 (or newer). NOTE 2: To get the full support for Solaris Resource Manager (4341392), one needs to install the following patches (or newer): 107996-09 (or newer) Sun Cluster 2.2: HA-Oracle Patch 110653-01 (or newer) Sun Cluster 2.2: Oracle Parallel Server Patch NOTE 3: Reference Bugid 4263858 Please review file "desc.txt" that accompanies this patch for a description of the monitor_rpcbind behavior changes as a result of bugid 4263858. NOTE 4: Install patch 108519-01 or newer for new hareg manual page. NOTE 5: Reference Bugid 4213692 Please follow these steps. 1> Backup the CCD database before installing this patch. 2> Install this patch with this new hactl binary. 3> Put the logical hosts in maintenance mode. 4> Add an entry for HACTL_INTERVAL in CCD database as explained below. Choose a desired value in seconds for this variable. 5> Verify the checksum of CCD database and also purify it if necessary. 6> Now switch logical hosts and see if ping-pong check works. HOWTO Add/Remove/Change HACTL_INTERVAL in CCD database ------------------------------------------------------ A> The change as compared to the previous binary are: Setting the HACTL_INTERVAL in CCD database instead of using setenv, and the value is set in seconds instead of minutes. The valid values are 0 to 86400 seconds, which is 0 to 24 hours. I used the following steps to add HACTL_INTERVAL variable in CCD database: 1> scccd HACTL_INTERVAL add_format "value" 2> scccd HACTL_INTERVAL add value "3600" To verify this entry: 3> scccd HACTL_INTERVAL query value "" This displays: HACTL_INTERVAL:3600 To remove entry: 4> scccd HACTL_INTERVAL remove value 3600 To remove this format: 5> scccd HACTL_INTERVAL remove_format B> There are 2 states for ping-pong now. ping-pong enabled [or] disabled ------------------------------- 1> If the HACTL_INTERVAL value is set within this limit, above 0, then ping-pong is *enabled*. 2> If this value is either set less than or equal to "0" or above 86400, then hactl internally defaults the value to "0", which means ping-pong is *disabled*. NOTE 6: To get the complete fix for files insecurely writing to /tmp, one needs to install the following patches (or newer): 107996-12 Sun Cluster 2.2: HA-Oracle Patch 108423-04 Sun Cluster 2.2: Data Service Common Patch 108511-03 Sun Cluster 2.2: HA-Sybase Patch 108351-04 Sun Cluster 2.2: HA-SAP Patch 111131-01 Sun Cluster 2.2: HA-Informix Patch 108505-05 Sun Cluster 2.2: Internet Pro Patch 108034-02 Sun Cluster 2.2: HA-Tivoli Patch 108447-04 Sun Cluster 2.2: HA-Lotus Patch 107388-05 Sun Cluster 2.2: System Management Patch NOTE 7: The fix for bug 4318821 changes the permission of all ccd files (both simple and shared) located in /etc/opt/SUNWcluster/conf from 0644 to 0600. Therefore, non-root users will no longer be able to access the ccd files directly. This change should have no impact on either Sun supplied or 3rd party data services as the method scripts should always run as root, and access the ccd indirectly via the ccdd daemon. However, if you have any custom scripts that access the ccd files directly, you must ensure these are run as the root user before installing the fix for this bug. On 2 node clusters with a shared ccd configured, the fix for bug 4318821 will not take full effect until the patch has been installed on both nodes, and both nodes have rejoined the cluster. NOTE 8: To enable coexistence with Instant Image (II) 2.0 or StorEdge Network Data Replicator (SNDR) 2.0, install the newest available revisions of the following patches: For Instant Image 2.0 109624 DS 2.0/II 2.0 Solaris_JDK_1.2.2_05a 110626 DS 2.0/II 2.0 Framework Patch 110871 DS 2.0/Sun Cluster 2.2 Patch 109967 DS 2.0/CORE 2.0 - Core 109971 FWC 2.0 109975 DS 2.0/II 2.0 - Instant Image 109983 STE 1.2 For SNDR 2.0 109624 DS 2.0/II 2.0 Solaris_JDK_1.2.2_05a 110626 DS 2.0/II 2.0 Framework Patch 110871 DS 2.0/Sun Cluster 2.2 Patch 109967 DS 2.0/CORE 2.0 - Core 109971 FWC 2.0 109979 DS 2.0/SNDR 2.0 - Network Data Replicator 109983 STE 1.2 Refer to the "Special Install Instructions" section of the README file for patch 110871-04 (or newer) for usage information and special considerations. Refer to the Sun Cluster Early Notifier Page (SunSolve document #19224) for the latest information on required patches. NOTE 9: This patch modifies /etc/opt/SUNWcluster/conf/.cdb file. This file must be identical on all the cluster nodes before starting the cluster. Reference Bugid 4659875 for more information. Patch Backout: ------------- Before backing out this patch, make sure the following has been performed: 1. If this patch is installed on at least one cluster node, then it must be installed on all other cluster nodes before attempting to backout the patch. Reference Bugid 4659875. 2. The cluster software is stopped on all the cluster nodes: o login as root, then run the command: # scadmin stopnode # /etc/init.d/initpmf stop o Remove the patch as usual. o reboot the node. README -- Last modified date: Wednesday, January 28, 2004