What are the VigilEnt Security Agent for iSeries system requirements for upgrading to IBM OS V5R2? (NETIQKB37485)

  • 7737485
  • 02-Feb-2007
  • 08-Oct-2007

Resolution

goal
What are the VigilEnt Security Agent for iSeries system requirements for upgrading to IBM OS V5R2?

fact
VigilEnt Security Agent for iSeries 7.5

fact
VigilEnt Security Agent for iSeries 5.4/7.0

fix
  • First, ensure that you are on at least version 5.4/7.0 (preferably with CUM PTF 1X03080) or any subsequent version of VigilEnt Security Agent for iSeries.  To find the version of VigilEnt Security Agent for iSeries currently installed:
  1. From a command line, type PSMENU and check the versions for PSAudit and PSSecure (located to the right of the menu options for each).
  2. If the version is 5.4/7.0,  type DSPPTF 1PSC001 from a command line.  The CUM PTF number will be the top number in the PTF ID column.

    Note: If you wish to receive either the most current CUM PTF or an upgrade, contact NetIQ Technical Support for assistance.

  • Steps 1 - 3 below should be completed prior to beginning the V5R2 OS upgrade: 
  1. Permanently apply all NetIQ PTFs using the following instructions:

    1. Type APYPTF from a command line to apply the PTFs.  It is not necessary to IPL in doing this. The command can be entered and run interactively.

    2. From a command line, complete the following:

      APYPTF LICPGM(1PSA001) press F4 to prompt and indicate the following:

      Product . . . . . . . . . . . . > 1PSA001                                F4 for list
      Release . . . . . . . . . . . . *ONLY                                     *ONLY, VxRxMx
      PTF numbers to select . . . . . *ALL                                  Character value, *ALL
      + for more values
      PTF numbers to omit . . . . . .                                          Character value
      + for more values
      Extent of change . . . . . . . . *PERM                                 *TEMP, *PERM
      Delayed PTFs . . . . . . . . . . *NO                                    *NO, *YES, *IMMDLY


      Note:  Do the same for license programs 1PSC001, 1PSD001, 1PSI001, 1PSP001, 1PSS001 and 1PSV001. You may not have all of these products installed so it is possible there will be no PTFs for some of them.

  2. Type WRKREGINF from a command line and scroll down to Exit Point QIBM_QTMT_WSG - WSG Server Sign-On Validation.

  3. Select Option 8=Work with exit programs.

  4. If you see Exit Program NW0001E in library PSCOMMON , select Option 4 to remove it. Beginning with OS V5R2, this Exit Point is no longer registered. The OS upgrade de-registers it, but it cannot do this if there is an Exit Program associa.
    ted with it.

  5. Look at Exit Point QIBM_QTG_DEVINIT and make note of the exit program if one is registered. Some OS/400 upgrades remove the exit program. Once you have finished the OS upgrade, you will want to put the Exit Program that you noted back on this Exit Point.

  6. If you are using PSSecure, Profile and Password Management to monitor user profiles, you need to remove the Q* entry from the 'Exclusions' list and hold the PSPROFILE job (if you have it scheduled). The V5R2 upgrade removes and replaces one of the IBM "Q" profiles.  To remove the entry:

    1. Type WRKJOBSCDE and look for job PSPROFILE. If it is scheduled, put it on HOLD.
    2. From PSMENU, select Option 2 - PSSecure Option 2 Profile and Password Management.
    3. Select Option 1 General Options Menu, press Enter.
    4. Select Option 17 User Profile Exclusions, press Enter. 
    5. Remove the entry for Q*.

    • Once the upgrade is finished, go back through these steps to put the "Q*" entry back in the list and release the PSPROFILE scheduled job (if one existed). If you are not using PPM, this step might not be necessary but it is recommended.
    .


    Additional Information

    Formerly known as NETIQKB37485