APAR status
Closed as program error.
Error description
Error Message: N/A . Stack Trace: N/A . N/A
Local fix
N/A
Problem summary
The des3-hmac-sha1 and rc4-hmac Kerberos encryption types (etypes) will now be disabled by default. These two encryption types are considered weak and were deprecated (RFC 8429) in 2018. Legacy applications using these encryption types will be required to set "allow_weak_crypto = true" to avoid encryption errors.
Problem conclusion
The files affected by this APAR are: ibmjgssprovider.jar (Java 8: build_20220713--162). The associated Hursley RTC Problem Report is: PR147759. The associated Austin Git issue is: Issue #52 for IBMJGSS. The associated Austin APAR issue is: N/A. . This APAR will be fixed in the following Releases: . IBM SDK, Java Technology Edition 8 SR7 FP20 (8.0.7.20) . Contact your IBM Product's Service Team for these Service Refreshes and Fix Packs. For those running stand-alone, information about the available maintenance can be found at: https://www.ibm.com/support/pages/java-sdk
Temporary fix
N/A
Comments
APAR Information
APAR number
IJ41288
Reported component name
SECURITY
Reported component ID
620700125
Reported release
270
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt / Xsystem
Submitted date
2022-07-21
Closed date
2022-07-21
Last modified date
2022-09-08
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
SECURITY
Fixed component ID
620700125
Applicable component levels
[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSNVBF","label":"Runtimes for Java Technology"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"270","Line of Business":{"code":"LOB36","label":"IBM Automation"}}]
Document Information
Modified date:
08 September 2022