IBM Support

What testing is done for Guardium patches?

Question & Answer


Question

What testing is done regarding patches and bundles?
Specifically with regardings to the following: 
Performance,Functional and Regression, and Vulnerability testing

Answer

Every patch undergo's Functional , Regression, Performance, long running, manual and automation testings before they are uploaded to Fix Central.
In functional and regression testing, we ensure that the appliance and stap not only maintain their intended functionality but also that patches haven't introduced any regression issues. We run both automated regression testing and manual testing to systematically validate features, confirming their expected behavior. Additionally, we monitor the overall system for any signs of regression. This approach ensures the stability and reliability of the appliance and stap across its development and patch releases.
Every test case and Defect we run into and verify is included as a use case in our suite matrix.
Performance testing is executed on major releases, unless a specific defect is included in a adhoc patch, we do performance testing for that specific issue.  During performance testing, we're focusing on evaluating the system's responsiveness, scalability, and stability under various conditions. This includes assessing how well the STAP's performs under normal and peak traffic loads, as well as identifying potential bottlenecks and areas for improvement. Our testing involves analyzing response times, throughput, and resource utilization to ensure optimal performance and a seamless user experience.

 

Regarding Security Vulnerability scanning the Guardium team has implemented a monthly schedule for releasing security patches to align with and comply with CVEs. We conduct various scans on major releases and perform sanity checks on patch releases.

[{"Type":"MASTER","Line of Business":{"code":"LOB24","label":"Security Software"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSMPHH","label":"IBM Security Guardium"},"ARM Category":[{"code":"a8m0z000000Gp0JAAS","label":"APPLIANCE"}],"ARM Case Number":"TS014197548","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"All Versions"}]

Document Information

Modified date:
07 November 2023

UID

ibm17067779