IBM Support

IV22102: HLS_REMOVEGUEST IN AIXPERTALL.XML AND VIOSECURE.XML PROBLEM APPLIES TO AIX 6100-08

A fix is available

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • The hls_removeguest stanza  in aixpertall.xml and
    viosecure.xml remove the guest user but doesn't remove
    guest
    entry in /etc/security/passwd.
    The hls_pwdck rule ran next will fail because of this :
    + eval /usr/bin/usrck -y ALL; /usr/bin/usrck -n ALL
    + /usr/bin/usrck -y ALL
    3001-642 The user name guest appears in /etc/security/
    passwd but not in /etc/passwd.
    

Local fix

  • Run aixpert -l high twice (second run will remove guest
    from /etc/security/passwd by running
    command pwdck -y ALL)
    

Problem summary

  • The hls_removeguest stanza  in aixpertall.xml and
    viosecure.xml remove the guest user but doesn't remove
    guest
    entry in /etc/security/passwd.
    The hls_pwdck rule ran next will fail because of this :
    + eval /usr/bin/usrck -y ALL; /usr/bin/usrck -n ALL
    + /usr/bin/usrck -y ALL
    3001-642 The user name guest appears in /etc/security/
    passwd but not in /etc/passwd.
    

Problem conclusion

  • Modify mls/hls_removeguest rules to add '-p' flag to rmuser
    invocation.
    

Temporary fix

Comments

APAR Information

  • APAR number

    IV22102

  • Reported component name

    AIX 610 STD EDI

  • Reported component ID

    5765G6200

  • Reported release

    610

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Submitted date

    2012-06-05

  • Closed date

    2012-06-05

  • Last modified date

    2013-03-26

  • APAR is sysrouted FROM one or more of the following:

    IV21582

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    AIX 610 STD EDI

  • Fixed component ID

    5765G6200

Applicable component levels

  • R610 PSY U856266

       UP12/11/09 I 1000

[{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SSLLZP","label":"AIX Standard Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SSMV87","label":"AIX 6.1 Enterprise Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}},{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SSMVAX","label":"AIX Express Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SSAUMY","label":"IBM AIX Enterprise Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"","label":""}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SG11Q","label":"AIX 6.1 HIPERS, APARs and Fixes"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"","label":""}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SG11R","label":"APARs - AIX 7.1 environment"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"","label":""}}]

Document Information

Modified date:
26 March 2013