IBM Support

IV84411: WRONG UDP FILTERS ADDED BY AIXPERT IPSECSHUNPORTS APPLIES TO AIX 7100-04

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • Aixpert adds ipsec shun_ports filters for UDP ports
    that have a daemon listening i.e. xntpd.
    That prevents clients from using that server.
    

Local fix

Problem summary

  • A customer may experience network issues when attempting to
    communicate with a system using UDP and IPSEC rules.
    

Problem conclusion

  • Specific UDP port checking was added to the ipsecshunports
    script.
    

Temporary fix

Comments

  • 6100-09 - use AIX APAR IV84341
    7100-04 - use AIX APAR IV84411
    7200-01 - use AIX APAR IV84346
    

APAR Information

  • APAR number

    IV84411

  • Reported component name

    AIX V7.1

  • Reported component ID

    5765H4000

  • Reported release

    710

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2016-05-04

  • Closed date

    2016-05-04

  • Last modified date

    2017-01-20

  • APAR is sysrouted FROM one or more of the following:

    IV83453

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    AIX V7.1

  • Fixed component ID

    5765H4000

Applicable component levels

  • R710 PSY U862896

       UP16/10/25 I 1000

[{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SG11R"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"710","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}}]

Document Information

Modified date:
20 April 2022