IBM Support

Cumulative Migration Actions and APAR list for IBM Wave for z/VM V1R2

Question & Answer


Question

The APARs fixed and delivered with each fix pack of IBM Wave V1R2.

Answer

IBM Wave for z/VM V1R2 fix pack 19
Migration Actions and changes:
  • To upgrade from levels before V1R2 fix pack 18, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • IBM Wave for z/VM stand-alone product service ends on March 31, 2022.
    https://www.ibm.com/common/ssi/ShowDoc.wss?docURL=/common/ssi/rep_ca/2/897/ENUS921-012/index.html
    When purchased as part of IBM Infrastructure Suite for z/VM and Linux, service ends on
    September 30, 2022.  
    https://www.ibm.com/common/ssi/ShowDoc.wss?docURL=/common/ssi/rep_ca/9/897/ENUS921-079/index.html
  • The option to use DSA key pairs when the Wave server authenticates with managed Linux guests
    using ssh has been removed.  As a result, a Wave administrator may need to take action for the managed Linux guests by regenerating the keys
      Administrative->Manage Parameters->Security->Regenerate Keys
    and re-initialize the Linux guest for IBM Wave use
      Right-click guest->More Actions->Init User for IBM Wave use
  • The option to route IBM Wave audit log messages to a syslog server has been removed.
APARs included:
• LI82248 Creating an EDEV on Wave fails in format on z/VM 7.2 system.    
• LI82506 Security fixes for IBM Wave for z/VM V1R2 fix pack 19. For more information, see the IBM Z Security Portal.

IBM Wave for z/VM V1R2 fix pack 18
Migration Actions and changes:
  • To upgrade from levels before V1R2 fix pack 17, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • Improved usability - Work unit details in the Wave GUI include Log COR entries, which can be lengthy. Highlighting of important messages was added. Many of the important log entries are now bold. Warning messages are now colored orange, and both permanent and transient error messages are now red.
  • The 'SMAPI/Service Machine Test' verifies all 3 service machines.
  • An update made with FP18 requires that most managed Linux guests to be reinitialized for IBM Wave use. After installation of FP18, Linux guests needing to be initialized for Wave will be marked with a warning on the guest in the GUI that they are partially initialized.
APARs included:
LI82071 BMI RHEL installation stalls when the Linux repository entry is created from SCSI storage.
LI82073 Unable to allocate sufficient free space from EDEV dasd group.
LI82117 Cloned RHEL guest failed to get the specified IP address.   
LI82142 Security fixes for IBM Wave for z/VM V1R2 fix pack 18. For more information, see the IBM Z Security Portal.                                     

IBM Wave for z/VM V1R2 fix pack 17
Migration Actions and changes:
  • To upgrade from levels before V1R2 fix pack 16, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • Improved security - Removed Wave requirement that the SMAPI ESM Authorization Policy for Wave-managed z/VM systems must use SMAPI's AuthList only.
  • The 'SMAPI/Service Machine Test' now runs from the Wave Server, verifying the network connection from the Wave Server to the z/VM System.
APARs included:
LI81790 - Launch of the Wave GUI from the Windows desktop always requires download.
LI81805 - WAVEDATACapture can identify the wrong default Java version.
LI81807 - Wave service machines can fail with REXX Error (NOVALUE) NO. 232000.
LI81957 - Security fixes for IBM Wave for z/VM 1.2 Fix Pack 17. For more information, see the IBM Z Security Portal.

IBM Wave for z/VM V1R2 fix pack 16
Migration Actions and changes:
  • To upgrade from levels before V1R2 fix pack 15, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • z/VM 7.2 support - IBM Wave can now add, auto-detect, and manage a new or upgraded z/VM 7.2 system.  For z/VM 7.2 systems managed by IBM Wave, set Authorization_Policy = Authorization_Policy_AuthlistOnly in DMSSICNF COPY on the z/VM system.
  • Improved security - Linux repositories for Bare Metal Installation (BMI) can now be accessed by using secure HTTP
  • Improved security - A customer-supplied password is now required for all Wave database backups, including scheduled backups.  This password is set from the Wave GUI -> Administrative->IBM Wave Database Actions->Set IBM Wave Database Backup Password.
  • The 'z/VM and LDAP API Testing Application' was moved into the Wave GUI. The z/VM SMAPI and Wave Service Machine utility function is available on the Create and Update z/VM system panel. The LDAP connection test utility function is available on the Administrative->Manage Parameters->Enterprise Directory panel.
APARs included:
LI79502 - PAV devices not recognized in the storage view
LI81381 - API Reference Try it Out hang on Authentication
LI81565 - BMI not recognizing SLES 15 SP2
LI81571 - Manage Storage fails creating partition with SLES 12 SP4 and SP5
LI81658 - Security fixes for IBM Wave for z/VM V1R2 fix pack 16. For more information, see the IBM Z Security Portal.
IBM Wave for z/VM V1R2 fix pack 15
Migration Actions:
  • To upgrade from levels before V1R2 fix pack 14, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • RHEL 8 - IBM Wave can manage Red Hat Enterprise Linux® version 8 z/VM® guests.
  • MariaDB - All community-supported versions of MariaDB are supported on the IBM Wave Linux server when installing on or after upgrading to fix pack 15.  See the 'Installation prerequisites' and 'Install the Wave Linux server' topics in the IBM Wave Administration and Customization Guide for more information on supported software. Note: Community support for MariaDB versions older than 10.1 has ended. You should back up the IBM Wave database before upgrading MariaDB.
  • With fix pack 15, IBM Wave sends messages about certain configuration errors to the Linux administrator when its service starts. For example, Wave sends messages for some errors that cause Wave to use a self-signed server certificate when the administrator has configured a different certificate, or that cause the Wave server to terminate.
  • IBM Wave server port - The Wave server Linux administrator can change the port during installation or upgrade.
APARs included:
LI80778 - Support Wave Server on SLES 12.4 with MariaDB v 10.2.22-3.14.1.
LI81286 - Logon hang or exception when authenticating with LDAP.
LI81332 - Security fixes for IBM Wave for z/VM v1R2 Fix Pack 15. For more information, see the IBM Z Security Portal.
LI81335 - Service WAVEBackgroundServices start fails on RHEL 7.7.
IBM Wave for z/VM V1R2 fix pack 14
Migration Actions:
  • To upgrade from levels before V1R2 fix pack 13, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • New options added to require encryption and validate certificates for a Linux repository configured in Wave for BMI. The defaults for new repositories are for these options to be on.
  • z/VM RACF password phrases can be used for TVP-API, Service Machine, and Managed Guests in Wave allowing for the use of passwords in Wave to be entered which are > 8 characters.  Password phrases up to 100 characters can be used.
  • The default for new installations is to validate certificates for 3270 or CLC connections to the managed guests. This can be changed by the Wave Administrator in 'Manage Parameters'.
APARs included:
LI79686 Hang when verifying disk space availability when attempting a clone.
LI80235 BMI can fail with "NONECMSDASD=191'\NSORRY, UNKNOWN VALUE" in guest Linux Installation messages.
LI81033 Additional documentation needed on suspended users.
LI81226 Security fixes for IBM Wave for z/VM V1R2 fix pack 14.
IBM Wave for z/VM V1R2 fix pack 13
Migration Actions:
  • To upgrade from levels before V1R2 fix pack 12, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • Java 1.8 is required on the Wave Server as well as on the workstation. The IBM Wave server will not start unless it is running IBM Java 1.8.  IBM Java 1.7 support has ended, as forewarned.  The IBM Wave GUI will not start unless it is running Java 8 from Oracle or IBM.
  • By default, when the IBM Wave GUI establishes an encrypted connection to the Wave server, the GUI validates the Wave server's certificate. The GUI will not start unless validation succeeds. Administrators should follow the instructions in Appendix L - 'Signing IBM Wave's server certificate for WebSphere Liberty' of the IBM Wave for z/VM: Administration and Customization document. Administrators can manually override certificate validation by modifying the /usr/wave/GUI/WAVE.jnlp file to trust any certificate by uncommenting lines 54-56. IBM recommends doing this manual override only temporarily until the correct certificate is set up for the Wave Server.
  • When you add new z/VM systems into Wave management, by default Wave's connections to them are encrypted and z/VM's server certificate is validated.  Administrators can manually change this. z/VM systems already managed by Wave default to not validate z/VM's server certificate.  IBM recommends that administrators enable certificate validation when using encrypted connections for existing z/VM systems.
  • IBM has added Chapter 6 Security to the Administration and Customization publication to help you ensure the security posture of your IBM Wave configuration.
APARs included:
LI79701 BMI multiwrites 4xx disks - documentation update
LI80787 Wave issues grant when message states that it will not
LI80916 Bad directory information in WAVEDB can cause failure in user update
LI80995 Security fixes for IBM Wave for z/VM V1R2 fix pack 13
IBM Wave for z/VM V1R2 fix pack 12
Migration Actions:
  • To upgrade from levels before V1R2 fix pack 11, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.
  • IBM WebSphere Liberty now hosts the IBM Wave GUI and REST APIs; the Apache server is no longer started, although it must still be installed. Any existing bookmarks or code referencing the REST APIs must be changed to use port 443 instead of 9443.  All HTTP (port 80) requests redirect to HTTPS (port 443). The execNotification CGI script has been removed. Consult the IBM Z Security Portal for the latest security-related information for IBM Wave. 
  • The IBM Wave long service machine (WAVEWRKL) now uses VDisk space if available. See the Prerequisites for z/VM in the Administration and Customization Guide/Knowledge Center: https://www.ibm.com/support/knowledgecenter/SS6JTX/waveadmin/wave_installation_prereqs12914.html 
  • The IBM Wave server now supports IBM Java 1.7 or 1.8. IBM Java 1.8 is required on the server when using the Rest APIs. In a future update to IBM Wave, the server will require IBM Java 1.8.
APARs included:
LI78311 Wave service machine 191 disk corruption
LI78544 Incompatible vSwitch type can cause network update or autodetect failure
LI80415 Init for Wave fails on SLES 12 SP4
LI80691 Reuse of old DIRMAINT output on error
LI80692 Support use of host name or secondary IP address for Wave GUI or Test app launch
LI80700 Security fixes for IBM Wave for z/VM V1R2 Fix Pack 12
IBM Wave for z/VM V1R2 fix pack 11
Migration Actions:
• To upgrade from levels before V1R2 fix pack 10, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.

• If the WAVE.jnlp has any local modifications, apply those modifications after installing this fix pack.
APARs included:
LI80059 Support protocols beyond TLS 1.0 when connecting to LDAP
LI80232 Duplicate tabs/pages for docs from Wave launch page

IBM Wave for z/VM V1R2 fix pack 10

Migration Actions:
• To upgrade from levels before V1R2 fix pack 9, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.

• If the WAVE.jnlp has any local modifications, apply those modifications after installing this fix pack.

APARs included:
LI79902 - Init for Wave failure due to format of etc/os-release file.
LI80060 - Adding SCSI Storage (EDEV) can fail attaching EDEV to the system

IBM Wave for z/VM V1R2 fix pack 9

Migration Actions:
• IBM Wave code is signed with authenticated certificate valid until February 6, 2019. Fix packs 6-8 were signed with a certificate valid until January 26, 2018. Security features such as the 'Very High; security level setting in the Java Runtime Environment Control Panel will only allow applications identified by a valid certificate from a trusted authority to be run. Please see your security administrator for more information.

• To upgrade from levels before V1R2 fix pack 8, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.

• If the WAVE.jnlp has any local modifications, apply those modifications after installing this fix pack.

APARs included:
LI79546 - Display of details of a guest virtual machine can incorrectly display units in KB instead of GB.
LI79755 - Long script names cannot be used with clone
LI79787 - Wave server CPU utilization can be high in large environments, more heap space needed.


IBM Wave for z/VM V1R2 fix pack 8

Statements of Direction:

• Support for autodetect/manage of z14 systems provided with FP 8

• Effective December 31, 2017, IBM Wave will discontinue support for z/VM V6.3 systems.

Migration Actions:

• To upgrade from levels before V1R2 fix pack 7.1, follow all the migration actions starting
with those actions from the fix pack immediately after the one currently installed and proceeding in order.

• If the WAVE.jnlp has any local modifications, apply those modifications after installing this fix pack.

APARs included:
LI79507 - Security vulnerability corrected with FP 8
LI79648 - Updates to Wave Server Directory information (DOC)


IBM Wave for z/VM V1R2 fix pack 7.1

Statements of Direction:

• Effective July 1, 2017, IBM Wave will discontinue support for management of guests that run the SUSE Linux Enterprise Server 10 Linux distribution or the Red Hat Enterprise Linux (RHEL) 5 Linux distribution, or that use ext2, the second extended file system.

• Effective July 1, 2017, IBM Wave will discontinue support for z/VM V6.2 systems.

Migration Actions:

• To upgrade from levels before V1R2 fix pack 7, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.

• If the WAVE.jnlp has any local modifications, apply those modifications after installing this fix pack.

• Starting V1R2 fix pack 7, WebSphere Liberty is shipped as part of IBM Wave for z/VM and requires an additional 350MB under /usr/wave.

APARs included:
LI79569 & LI79572 - Security vulnerabilities corrected with FP 7.1


IBM Wave for z/VM V1R2 fix pack 7

Statements of Direction:

• Effective July 1, 2017, IBM Wave will discontinue support for management of guests that run the SUSE Linux Enterprise Server 10 Linux distribution or the Red Hat Enterprise Linux (RHEL) 5 Linux distribution, or that use ext2, the second extended file system.

• Effective July 1, 2017, IBM Wave will discontinue support for z/VM V6.2 systems.

Migration Actions:

• To upgrade from levels before V1R2 fix pack 6, follow all the migration actions starting with those actions from the fix pack immediately after the one currently installed and proceeding in order.

• If the WAVE.jnlp has any local modifications, apply those modifications after installing this fix pack.

• Starting V1R2 fix pack 7, WebSphere Liberty is shipped as part of IBM Wave for z/VM and requires an additional 350MB under /usr/wave.

APARs included:

LI78980 WHEN UPDATING THE PORT VALUE OF LDAP DIRECTORY PORT IN
THE MANAGE PARAMETERS, THE VALUE IS NOT DISPLAYED IN THE GUI.

LI79260 WHEN DELETING A GUEST WITH "ERASE DISK CONTENTS", THE IBM WAVE
WORK UNIT FINISHES BEFORE z/VM FINISHES FORMATTING THE MDISKS.

LI79316 SECURITY VULNERABILITY IN MODULE LDAPTLSKEYSTORE.JAVA

LI79347 Security vulnerability - Passwords in clear text

LI79380 CLONING A GUEST WITH MULTIPLE IP ADDRESSES ON THE SAME VNS FAILS
WITH ARRAYINDEXOUTOFBOUNDSEXCEPTION

LI79491 ISSUES WITH LARGE DYNAMIC MEMORY ALLOCATION IN IBM WAVE

LI79509 IBM Wave for z/VM MEMORY THRESHOLD ISSUE DURING CLONE

LI79511 BTS DOES NOT SHUTDOWN PROPERLY IN CERTAIN SITUATIONS

LI79514 EXECUTE REXX DOESN'T CAPTURE CP COMMANDS OUTPUT

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

IBM Wave for z/VM V1R2 fix pack 6

Statements of Direction:

• In a future deliverable, IBM Wave will no longer support management of guests that are running the SUSE® Linux Enterprise Server (SLES) 10 Linux distribution.

• In a future deliverable, IBM Wave will no longer manage Linux guest file systems that use ext2, the second extended file system.

Migration Actions:

• All customers upgrading from releases before GA2 fix pack 5, follow all the migration actions starting from the next release currently installed.

• All customers who want to leverage APAR LI79249 functionality, should apply z/VM APAR VM65866.

• If the WAVE.jnlp has any local modifications, then those modifications will have to be reapplied after installation of this fix pack.

APARs included:

LI78998 CANNOT CLOSE OUT OF IBM WAVE 3270 DISPLAY-ONLY LINUX CONSOLE.

LI79239 SECURITY VULNERABILITY IN MODULE WAVEDEBUG.JAVA.

LI79269 SQL SECURITY VULNERABILITY.

LI79270 SECURITY VULNERABILITY IN MODULE BTSQUEUEABLEREQUESTUPDATECONNECTABLEUSERSPROCESSOR.JAVA.

LI79285 SECURITY VULNERABILITY - MINIDISK PASSWORDS IN CLEAR TEXT.

LI79355 SUPPORT FOR CLONING GUESTS WITH MAXSTORAGE IN A GUEST PROFILE.

LI79359 SECURITY VULNERABILITY IN BTS.

LI79360 SECURITY VULNERABILITY - GUEST'S PASSWORD EXPOSED IN SOME CASES.

LI79361 SECURITY VULNERABILITY WITH DATABASE ENCRYPTION.

LI79362 SECURITY VULNERABILITY IN IBM WAVE'S TEST API.

LI79363 SECURITY VULNERABILITY IBM WAVE'S 3270 LINUX CONSOLE.

LI79364 SQL SECURITY VULNERABILITY.

LI79365 SECURITY VULNERABILITY - REPOSITORY PASSWORDS EXPOSED DURING BMI.

LI79379 IBM Wave for z/VM USER PROFILE WINDOW DOESN'T REFRESH.

LI79394 NULL POINTER EXCEPTION CAN OCCUR WHEN RUNNING CROSS SYSTEM CLONE.

LI79409 REDUNDANT DEDICATED LINKS IN THE DATABASE.

LI79410 FAILED CROSS SYSTEM CLONE CANNOT RELEASE SOURCE AND TARGET MDISKS.

LI79411 SUPPORT FOR LINEND SYMBOL FOR 3720 LINUX CONSOLE AND CLC.

LI79412 EAGREX249E UNABLE TO LOAD EAG MESSAGE REPOSITORY CAN OCCUR.


!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!


IBM Wave for z/VM V1R2 fix pack 5.1

Statements of Direction:

• In a future deliverable, IBM Wave will no longer support management of guests that are running the SUSE® Linux Enterprise Server (SLES) 10 Linux distribution.

• In a future deliverable, IBM Wave will no longer manage Linux guest file systems that use ext2, the second extended file system.

Migration Actions:
• If the WAVE.jnlp has any local modifications, then those modifications will have to be reapplied after installation of this fix pack.

• If upgrading from a release earlier than GA2 fix pack 5, please follow all the migration actions starting from the next release currently installed.

APARs included:
LI79323 SECURITY VULNERABILITY IN MODULE WAVEDBRestorer120

LI79324 SECURITY VULNERABILITY IN THE GUI/CLI LOGIN MODULE

LI79325 SECURITY VULNERABILITY IN THE GUI/CLI LOGIN MODULE

LI79338 IBM WAVE'S NETWORK UPDATE FAILS WITH RC: 4, RS: 0

LI79343 SECURITY VULNERABILITY IN IBM WAVE UTILITIES

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

IBM Wave for z/VM V1R2 fix pack 5

Statements of Direction:

• In a future deliverable, IBM Wave will no longer support management of guests that are running the SUSE® Linux Enterprise Server (SLES) 10 Linux distribution.

• In a future deliverable, IBM Wave will no longer manage Linux guest file systems that use ext2, the second extended file system.

Migration Actions:
• All customers should run "Clean BTS Work units" from the IBM Wave BTS Manager (Under the Scheduling tab), prior the upgrade to fix pack 5.

• All customers upgrading to fix pack 5 should allocate enough storage space, to contain a full database backup to the temporary directory specified while running the doUpdate script. In case the tmpdir flag is not specified, the upgrader will use /usr/wave. APAR LI79255, which fixes the mysql size issue, requires enough storage to perform three full DB backups. To check the current size of the database, please issue: ll -h /var/lib/mysql/ibdata1

• All customers who want to leverage APAR LI79249 functionality, should apply z/VM APAR VM65866.

• If the WAVE.jnlp has any local modifications, then those modifications will have to be reapplied after installation of this fix pack.

• If upgrading from a release earlier than GA2 fix pack 4.1, please follow all the migration actions starting from the next release currently installed.

APARs included:
LI78647 Cloning fails when source has dedicated HIPERSOCKET devices attached

LI79099 IN A SSI CLUSTER THE VSWITCH GRANTS WON'T BE PROCESSED ACROSS ALL MEMBERS WHEN USING ONE OF IBM WAVE'S PROVISIONING ACTIONS.

LI79202 FTP CONNECTION ERROR WHEN PERFORMING A BARE METAL INSTALLATION OF A RED HAT 7 DISTRIBUTION IN IBM WAVE.

LI79203 NEW MDISKS ARE ADDED AS MW IN IBM WAVE. THIS CAN LEAD TO DATA CORRUPTION IN ENVIRONMENTS WITHOUT AN ESM.

LI79204 IBM WAVE DOES NOT ALLOW CHOOSING A RANGE WHEN ADDING A VDEV TO A DASD GROUP.

LI79205 PENDING BTS WORK UNITS IN IBM WAVE CANNOT BE CANCELED OR DELETED.
 
LI79206 NO MESSAGE COULD BE FOUND FOR CLASS XXX, CALL ID YYY, RC 28, RS 0

LI79229 BTS WORK UNITS ARE NOT GETTING CLEARED AUTOMATICALLY.

LI79249 IBM WAVE "WAKES UP" DORMANT GUESTS.

LI79250 WAVEAUTR.EXEC TRIES TO EXECUTE COMMENTS FROM WAVEPARM FILES.

LI79251 INIT FOR WAVE MIGHT FAIL WHEN SPECIFIC VDEVS ARE DEFIEND TO THE GUEST.

LI79252 SORTING IN THE ENTERPRISE DASHBOARD VIEW IS NOT SAVED FOR NEXT LOGIN.

LI79253 ADD THE "CPC" COLUMN TO ENTERPRISE VIEWER TABLE VIEW.

LI79254 IBM WAVE SERVER HIGH CPU UTILIZATION.

LI79255 IBM WAVE KNOWLEDGEBASE (DB) HIGH STORAGE UTILIZATION.

LI79267 Security fixes included in IBM Wave for z/VM V1R2 Fix Pack 5

LI79284 ONLY IBM WAVE SLA USERS WITH "ALL INCLUSIVE SCOPE" CHECKED, CAN VIEW SYSTEM GENERATED AUDIT MESSAGES.


IBM Wave for z/VM V1R2 fix pack 4.1

Migration Actions:

• If the WAVE.jnlp has any local modifications, then those modifications will have to be reapplied
after installation of this fix pack.

• All customers installing this release, will be forced to manually run the “Init for IBM Wave”
action in order to use IBM Wave's network actions. This is mandatory due to the fact that
Network actions dependence on a new WAVELOAD and WAVEFUNC scripts. Once this release is applied,
all Linux guest status will be changed to “Partially initialized for wave” status with
the Network Actions disabled.

• All customers that have added PRIVCLASS CE to DIRMAINT can now remove those classes (Not
Mandatory).

• All customers that have added DIRMAINT authority class Z to SMAPI server and IBM Wave's service
machines can now remove it (Not Mandatory).

• Each Linux managed guest requires an NFS client to be installed; failure to do so
will result in execute script failures against the guest, and the guest will be
marked in the GUI as partially inited for Wave

APARs included:
LI79148 CLONING OF GUESTS THAT CONTAINS PROFILE STATEMENT MIGHT FAIL

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

IBM Wave for z/VM V1R2 fix pack 4

Migration Actions:

• If the WAVE.jnlp has any local modifications, then those modifications will have to be reapplied after installation of this fix pack.

• All customers installing this release, will be forced to manually run the “Init for IBM Wave” action in order to utilize IBM Wave's network actions. This is mandatory due to the fact that Network actions dependence on a new WAVELOAD and WAVEFUNC scripts. Once this release is applied, all Linux guest status will be changed to “Partially initialized for wave” status with the Network Actions disabled.

• All customers that have added PRIVCLASS CE to DIRMAINT can now remove those classes (Not Mandatory).

• All customers that have added DIRMAINT authority class Z to SMAPI server and IBM Wave's service machines can now remove it (Not Mandatory).

• Each Linux managed guest requires an NFS client to be installed; failure to do so will result in execute script failures against the guest, and the guest will be marked in the GUI as partially inited for Wave

APARs included:
LI78954 EXTENDING A VG THAT CONTAINS THE ROOT FILE SYSTEM THROUGH IBM WAVE CAN LEAD TO FILE SYSTEM CORRUPTION;

LI78985 INTERNAL LINUX USER MANAGED GUEST NEEDS ACCESS INFORMATION DOCUMENTED.

LI78921 FCP DEVICES STILL DEDICATED TO GUEST AFTER DELETE OF GUEST

LI78926 AUTO DETECT PROCESS FAILS DUE TO WRONG OWNER SET ON /USR/WAVE/ FILES.

LI78904 WRONG VALUES FOR 'FREE SPACE AVAILABLE' DISPLAYED IN IBM WAVE FOR NON-STANDARD DASD

LI79032 STORAGE UPDATE CAN FAIL ON PAV DEVICES

LI79048 Wave for z/VM REQUIRES EACH PRIVATE DASD TO BE ATTACHED TO BOTH VM SYSTEMS.

LI79116 IBM WAVE DOUPDATE FAILS WHEN SERVER'S FILE SYSTEM IS FULL

LI79117 GUEST ACTIVATION IN A SSI ENVIRONMENT THROUGH IBM WAVE FAILS WHEN THE "USE DYNAMIC GRANT" FEATURE IS ENABLED.

LI79118 PORT DOCUMENTATION MISSING IN IBM WAVE ADMINISTRATION AND CUSTOMIZATION GUIDE.

LI79119 Changing the IP Address of a Linux guest does not get picked up by a network refresh

LI79120 IBM WAVE STATES THAT THE DEFAULT GATEWAY IP IS IN USE.

LI79121 IP INFORMATION IN A SINGLE SYSTEM IMAGE CLUSTER IS ONLY POPULATED TO THE SYSTEM IT WAS FOUND IN.

LI79124 SECURITY FIXES FOR IBM Wave for z/VM V1R2 FIX PACK 4

LI79142 IBM WAVE MANAGE STORAGE CAN FAIL WHEN ADDING ECKD STORAGE WITH THE FOLLOWING ERROR: RC: 8 RS: 0 OUTPUT: 255

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
IBM Wave for z/VM V1R2 fix pack 3.1

Migration Actions:

• None

APARs included:
LI79018 Security fixes for IBM Wave for z/VM V1R2 Fix Pack 3.1


IBM Wave for z/VM V1R2 fix pack 3

Migration Actions:

• If the WAVE.jnlp has any local modifications, then those modifications will have to be reapplied after installation of this fix pack.

• The WAVECLI.tar and WAVECLI.zip files have been updated and need to be copied per the instructions in the IBM Wave for z/VM User's Guide (Chapter 5. The IBM Wave CLI).

• The Wave Server Linux guest requires the zip package to be installed; failure to do so will cause packWAVECLI, the IBM Wave CLI Packager, to fail with "Warning - Could not find zip package. Failed to create IBM Wave CLI package for Windows."

• Each Linux managed guest requires an NFS client to be installed; failure to do so will result in execute script failures against the guest, and the guest will be marked in the GUI as partially inited for Wave

APARs included:
LI78724 StringIndexOutOfBoundsException occurs detaching DASD when one of the peer to peer remote copy DASD pairs is offline
LI78759 Virtual to Real ratio (VTRR) dial does not display if VTRR percentage is 0%
LI78777 Updates to GUI after an AutoDetect can take more than 30 minutes
LI78785 IBM Wave can perform actions against the wrong guest, if the intended guest name has a hyphen '-'
LI78802 Enterprise Dashboard View columns (CPU Utilization/Virtual to Real Ratio) do not sort correctly
LI78804 Java exception occurs in the System Status performance statistics graphical view when "update every" interval is changed to 1 sec
LI78815 DASD free storage within groups value is negative in Property Viewer pane for regions without free space
LI78888 Init for Wave fails if a guest has one DASD VDEV <= 100 and one DASD VDEV = FFFF
LI78889 Users belonging to no Active Directory group can still log on to Wave with minimal privileges
LI78900 IBM Wave network update fails with an exception in an environment that has vswitchs with link aggregation
LI78901 IBM Wave clones can fail when the source guest has a large minidisk, like a x-end mod54
LI78912 Performing actions on Linux guests using suexec results in message "suexececho command not found"
LI78917 Null pointer exception occurs on guests whose user directory has an INCLUDE statement to include a PROFILE
LI78922 "Performing clone actions" hangs for a guest that has an "IPL CMS PARM AUTOCR" in their user direct
LI78942 IBM Wave for z/VM support for z13s processors
LI78947 IBM Wave Storage Update in a VM:Direct environment fails with a null pointer exception in updateDASDProcessor
LI78948 Dynamically changing the number of BTS Workers in "Manage Parameters->BTS Tab" doesn't work until the BTS is recycled
LI78950 "startup scripts not installed" message after initializing a guest for Wave use
LI78951 IBM Wave for z/VM is filling up the guest SSH log with error messages
LI78956 IBM Wave for z/VM Secure FTP support
LI78972 Sorting of Groups in 'z/VM User Groups' can cause an exception in the WAVE GUI
LI78981 IBM Wave GUI doesn't reflect when an AutoDetect Update Storage Aspect completes, so the associated work unit never completes
LI78970 Security fixes for IBM Wave for z/VM V1R2 Fix Pack 3

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
IBM Wave for z/VM V1R2 fix pack 2.1

Migration Actions:

• Installations that installed IBM Wave for z/VM V1R2 Fix Pack 2, - AND - subsequently used the Public/Private key authentication method while performing an IBM Wave execute script for any Linux guests, must generate new Public/Private key pairs for such guests after installing Fix Pack 2.1.

APARs included:
LI78888 Init for Wave fails if a guest has one DASD VDEV <= 100 and one DASD VDEV = FFFF
LI78900 IBM Wave Network Update fails with an exception in an environment that has VSWITCHs with
link aggregation
LI78905 Network refresh and BTS problems in large Wave environment
LI78912 Unable to perform actions on Linux guests using suexec
LI78917 Null Pointer exception attempting to set the boot device to something other than what is
specified using the Wave GUI
LI78919 Security fixes for IBM Wave for z/VM V1R2 Fix Pack 2.1

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
IBM Wave for z/VM V1R2 fix pack 2

Migration Actions:

• SLES12 LVM will filter out by default devices that start with /dev/disk/by-path. As IBM WAVE uses these device names, the LVM filter parameter needs to be updated to include those devices for LVM use in /etc/lvm/lvm.conf before using the "Manage Storage" action with logical volumes or groups.

• The WAVECLI.tar and WAVECLI.zip files have been updated and need to be copied per the instructions in the IBM Wave for z/VM User's Guide (Chapter 5. The IBM Wave CLI).

• Before activating Periodic Database Backup, make sure you have sufficient file system space on the Wave Server directory /usr/wave/DBBackup.

• The auditing functionality introduced by this fix pack can impact file system space usage, so refer to the "Days Worth of Messages to Keep When Truncating Log" section of the IBM Wave for z/VM: Administration and Customization guide for further information.

APARs included:
LI78143 AutoDetect fails with Wrong directory manager configured when using VM:Direct as the directory manager.
LI78176 Networking issue on Clone from Prototype eth0 to eth1.
LI78367 Communication-Less Connection (CLC) can hang with status "s-Processing Linux User" or "s-Waiting for Initial Prompt".
LI78494 During an MDisk Clone, the Directory Manager Work unit ID should not be the operation id.
LI78534 When trying to create a new EDEV through IBM Wave, the discover of the SAN network might take a long time and can even timeout.
LI78554 Unable to disconnect a Guest from a VNS with Persistent VSWITCH definitions and no other Permanent VSWITCH exists.
LI78570 May not be able to view Linux data if a guest contains a connection that is not connectable.
LI78723 Creating Regions for mod 27 and 54 DASD fails with API error.
LI78737 Wave Service Machines are not automatically started during IPL
LI78786 Storage size reported by the GUI is ten times bigger than actual size (Linux view & Manage Storage).
LI78794 Storage update in Wave makes extra calls to DIRMAINT in Shared Directory and SSI environments.
LI78801 AutoDetect in an SSI or Shared Directory environment can fail with a null pointer exception.
LI78811 Bad error message appears during autodetection of a system if DIRMAINT is not properly configured for IBM Wave.
LI78812 Duplicate VM User Definition does not work when using Automatic Guest Classification (AGC).
LI78853 After Live Guest Relocate, the Guest still shows up as connectable on the system where it is now inactive.
LI78857 During Auto Detect, IBM Wave doesn't accept special characters for its service machine passwords.
LI78860 Hang in Wave GUI performing layout in hardware viewer.
LI78868 Security fixes for IBM Wave for z/VM V1R2 Fix Pack 2.

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
IBM Wave for z/VM V1R2 fix pack 1

Migration Actions:

During the migration to IBM Wave for z/VM V1R2 fix pack 1, all Linux guests will be marked as partially inited for Wave and the clone action will be disabled for them. To re-enable the clone action for a Linux guest, perform the "Init User for IBM Wave" action on each Linux guest. Linux guests which are associated with a prototype will have to be disassociated from the prototype before the "Init User for IBM Wave" action is performed on them, and then reassociated with the prototype afterward. The "User Tasks->Init Users for IBM Wave use" action can be used to init multiple guests at once.

• SLES12 and RHEL7 are now fully supported as managed guests. SLES12 with cio_ignore active can go into maintenance mode after reboot if new disks were added to the guests and are used in fstab. This will happen due to a known SLES12 defect, so to circumvent this, either disable cio_ignore or rebuild your initrd after adding new disks to a SLES12 managed guest. SLES12 LVM will filter out by default devices that start with /dev/disk/by-path. As IBM WAVE uses these device names, the LVM filter parameter needs to be updated to include those devices for LVM use in /etc/lvm/lvm.conf before using the "Manage Storage" action with logical volumes or groups.

• If IBM Wave is configured to use a customized Linux Authorized Command, please update your IBM Wave Parameters under the Security Tab in the "other:" text field within the Authenticated Command Execution section, with the following new syntax, where <customAuthCmd> is your existing customized Linux Authorized Command:
<customAuthCmd>
For example, if using BeyondTrust PowerBroker as a third party security tool, and the "su" command is to be used to achieve root authority, "<FULL_PATH_TO_PBRUN>/pbrun su -c" (without the quotes) should be set in the text field.

After updating the "other:" text field syntax to match the needed authorized command in full, select a "Syntax Type:" of sudo or su that matches how this command behaves syntactically, noting that the default is to behave like su.

If you have any questions about this change, please contact IBM Wave for z/VM support.

APARs included:
LI78265 The "Unassign volume from DASD group" option is grayed out if the DASD is offline
LI78271 When making network changes, Wave doesn't properly re-draw the connection lines in the
network view
LI78367 Communication-Less Connection (CLC) can hang with status "s-Processing Linux User" or
"s-Waiting for Initial Prompt"
LI78381 Wave Linux actions use SUDO even when logging in as root
LI78491 Undefining multiple regions at once creates unnecessary work units
LI78511 Creating multiple regions at once takes too long
LI78526 Wrong unique ID for directory of newly added system
LI78543 Manage storage intermittently fails on adding storage
LI78566 Work unit details message box truncates messages
LI78581 NullPointerException prevents managing of systems after deleting inconsistent volume and then relogging in
LI78589 A guest in the Site Defined Group is moved back to User-Local if its directory is updated outside of wave
LI78653 Time out occurs while searching for volume for dummy region during autodetect in large environment
LI78726 "ENQ ERROR External Entity Default Storage Controller Is been updated by" occurs when removing the default storage controller
LI78727 Security fixes for IBM Wave for z/VM V1R2 fix pack 1
LI78732 The "Initializing FCP Volumes" phase of GUI start up can take 60 seconds longer than necessary
LI78746 Support for more than 3 physical network interfaces per guest when cloning
LI78747 Error message is unclear if initial installation step for BMI fails
LI78748 Update TVP-API Credentials does not update UAF WAVEPARM file
LI78749 When adding storage, if 2 disks are needed for the amount requested, Wave only uses one of them to create the partition
LI78753 Use the WAVEPasswordResetter to change a suspended or revoked wave user password

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
IBM Wave for z/VM V1R2 fix pack 0/0.5

Migration Actions:

Change the password for the WAVEWRKS Service Machine.

• This fix pack introduces new password rules for IBM Wave for z/VM users. To enforce these rules, passwords that
are not compliant will be marked as expired, forcing the user to change the password the next time they log in.

• During the migration from IBM Wave 1.1.0 to 1.2.0, all Linux guests will be marked as partially inited for Wave and the clone action will be disabled for them. To re-enable the clone action for a Linux guest, perform the "Init User for IBM Wave" action on each Linux guest. Linux guests which are associated with a prototype will have to be disassociated from the prototype before the "Init User for IBM Wave" action is performed on them, and then reassociated with the prototype afterward.

• Add the LNKE option to your WAVEWRKC USER DIRECT, so that cloning of guests functions properly.
To make this change, do the following for each z/VM system managed by IBM Wave:
1) Ensure no IBM Wave work units are running
2) Open a 3270 session to your system and log in as MAINT
3) Execute FORCE WAVEWRKC
4) Execute DIRM FOR WAVEWRKC GET
5) Execute RLIST
6) Locate WAVEWRKC DIRECT and on the entry execute RECEIVE / (REPL
7) Exit RLIST
8) Execute XEDIT WAVEWRKC DIRECT
9) Replace "OPTION LNKNOPAS DIAG88" with "OPTION LNKNOPAS LNKE DIAG88"
10) Save and quit out of XEDIT
11) Execute DIRM FOR WAVEWRKC REPL
12) Execute XAUTOLOG WAVEWRKC
13) From the IBM Wave for z/VM menu bar, run Auto Detect -> Refresh -> Schedule z/VM User Update
14) Verify that the USER DIRECT is updated to have LNKE in the WAVEWRKC guest in IBM Wave

APARs included:
LI77997 Unable to scroll when displaying z/VM users on current system view.
LI78188 Error is confusing when trying to delete a project that is empty in one system, but has guests in another.
LI78270 Wave GUI system status tab is erroneously set to red.
LI78314 Error occurs when SSH into a guest from Wave and the SSH password has a '$' in it.
LI78372 Using a comma in the full name of an active directory user will make the user unable to query its LDAP groups.
LI78518 Hang in auto-detect with a packet larger than max_allowed_packet in logs.
LI78559 Auto-detect can fail when LOADCLC.SCR incorrectly processes the FTP password prompt, if the prompt ends with "ASSWORD:"
LI78582 Cloning guests with X-TO-END and FB-XXX minidisks can fail.
LI78583 It can take several minutes for IBM Wave for z/VM to respond when querying FCP devices via various manage storage flows.
LI78587 Security fixes for fix pack 0.
 

[{"Product":{"code":"SS6JTX","label":"IBM Wave for z\/VM"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Component":"--","Platform":[{"code":"PF037","label":"z\/VM"}],"Version":"1.2","Edition":"","Line of Business":{"code":"LOB56","label":"Z HW"}}]

Document Information

Modified date:
12 April 2022

UID

isg3T1023451