OBSOLETE Patch-ID# 109279-18
Download this patch from My Oracle Support
Your use of the firmware, software and any other materials contained
in this update is subject to My Oracle Support Terms of Use, which
may be viewed at My Oracle Support.
|
For further information on patching best practices and resources, please
see the following links:
|
Copyright (c) 2012, Oracle and/or its affiliates. All rights reserved.
|
Keywords: security ip ndd multipathing hippi mipagent streams netstat
Synopsis: Obsoleted by: 108528-13 SunOS 5.8: /kernel/drv/ip patch
Date: Oct/23/2001
Install Requirements: None
Solaris Release: 8
SunOS Release: 5.8
Unbundled Product:
Unbundled Release:
Xref: This patch available for x86 as patch 109280
Topic: SunOS 5.8: /kernel/drv/ip patch
***********************************************************
NOTE: This patch may contain one or more OEM-specific platform ports.
See the appropriate OEM_NOTES file within the patch for
information specific to these platforms.
DO NOT INSTALL this patch on an OEM system if a corresponding
OEM_NOTES file is not present (or is present, but instructs not
to install the patch), unless the OEM vendor directs otherwise.
***********************************************************
NOTE: Refer to Special Install Instructions section for
IMPORTANT specific information on this patch.
Relevant Architectures: sparc
Bugs fixed with this patch:
Changes incorporated in this version: 4483685 4488588 4488780
Patches accumulated and obsoleted by this patch: 109048-06 110180-01 110552-01 111541-02
Patches which conflict with this patch:
Patches required with this patch:
Obsoleted by: 108528-13
Files included with this patch:
/kernel/drv/ip
/kernel/drv/ip6
/kernel/drv/ipsecah
/kernel/drv/sparcv9/ip
/kernel/drv/sparcv9/ip6
/kernel/drv/sparcv9/ipsecah
/kernel/strmod/sparcv9/tun
/kernel/strmod/tun
/usr/include/inet/ip.h
/usr/include/inet/ip_if.h
/usr/include/inet/ip_ire.h
/usr/include/inet/ip_multi.h
/usr/include/inet/mi.h
/usr/include/net/if.h
/usr/include/net/route.h
/usr/include/netinet/in.h
/usr/include/sys/sockio.h
/usr/lib/adb/ill
/usr/lib/adb/ipc
/usr/lib/adb/ipif
/usr/lib/adb/ire
/usr/lib/adb/iulp
/usr/lib/adb/sparcv9/ill
/usr/lib/adb/sparcv9/ipc
/usr/lib/adb/sparcv9/ipif
/usr/lib/adb/sparcv9/ire
/usr/lib/adb/sparcv9/iulp
/usr/lib/mdb/kvm/ip.so
/usr/lib/mdb/kvm/sparcv9/ip.so
Problem Description:
4483685 IPC_INBOUND_POLICY_PRESENT() tricks ipsec_check_policy() into panicking.
4488780 ping does not work sometimes, when IPMP groups are enabled
4488588 assertion failed: IN6_IS_ADDR_V4MAPPED(&ipif->ipif_v6lcl_addr)
(from 109279-17)
4448673 streams freeze when netstat -ni 1 and nocanput goes up
(from 109279-16)
This patch revision was generated to accumulate and obsolete the
feature changes introduced in feature point patch 111541-02.
(from 109279-15)
4224111 Multihomed E3500 servers does not working correctly under Solaris 2.6
(from 109279-14)
4340455 Use of PIM multicast routing protocol hooks causes kernel PANIC
(from 109279-13)
4352770 default route removal causes panic
(from 109279-12)
4390248 IP service is exclusive, causing severe performance problems
(from 109279-11)
4239154 ping -s is giving destination unreachable.
4374157 Cannot bind to interface with all ones subnetmask
(from 109279-10)
4304991 IP: M_FLUSH messages generated doing UNBIND can remove DETACH reqs
(from 109279-09)
This patch revision was generated to accumulate and obsolete the
feature changes introduced in feature point patch 110552-01
(from 109279-08)
4387783 Update 2 breaks IPsec
(from 109279-07)
This patch revision was generated to accumulate and obsolete
the feature changes introduced in point patch 110180-01.
4317221 mipagent needs to read IP TTL to fully support reverse tunneling
4302749 Foreign Agent should not broadcast ARP for Mobile Nodes Link Layer address
4310956 ARP support needed for Mobile IP addresses
4320818 add radius hooks to mipagent daemon
4335568 mipagent's generic auth extension processing is broken
4347223 Network Multipathing should provide offlining capability.
(from 109279-06)
4338724 panic due to NULL ipif
(from 109279-05)
This patch revision was generated to accumulate and obsolete
the feature changes introduced in point patch 109048-06.
4305039 ipc_walk() does not cleanup causes bad trap in module "genunix"
4311938 Network Multipathing should be integrated into 2.8.
4299644 debug kernel panics; race between ip_close and ip_wsrv threads
4291034 arp: bad trap in ip while deleting logical interface during arp
4308728 ifconfig results in spurious message on the console
4324430 Turning on multihoming can panic the machine under some cases.
4323647 A repaired IP Multipathed interface can get into unconfigurable state sometimes.
4333995 IPv4 source address should be obtained from the destination route.
4339375 PANIC when HIPPI interface mistakenly config into existing ethernet Mpath group
(from 109279-04)
4306362 Only one multicast client gets data on the same node.
4303422 bind to V4 multicast address using V6 socket fails.
(from 109279-03)
4337275 icmp error processing path needs to sanity check inner ip header
(from 109279-02)
4323830 ip_open/ip_close race condition causes bad trap in ipif_lookup_on_name
4336478 SIOCTMYADDR/SIOCTONLINK need not gain exclusive access to IP perimeter.
(from 109279-01)
4299951 ndd can set nca_vpmax/nca_ppmax to incorrect large values
(from 109048-06)
4339375 PANIC when HIPPI interface mistakenly config into existing ethernet Mpath group
(from 109048-05)
This point patch revision was generated to include some escalated
bugfixes.
4324430 Turning on multihoming can panic the machine under some cases.
4323647 A repaired IP Multipathed interface can get into unconfigurable state sometimes.
(from 109048-04)
4324430 Turning on multihoming can panic the machine under some cases.
4323647 A repaired IP Multipathed interface can get into unconfigurable state sometimes.
4333995 IPv4 source address should be obtained from the destination route.
(from 109048-03)
This patch revision was generated to include an S8 8/00 showstopper
fix for 4299951 (ndd can set nca_vpmax/nca_ppmax to incorrect large
values.
(from 109048-02)
4305039 ipc_walk() does not cleanup causes bad trap in module "genunix"
(from 109048-01)
4311938 Network Multipathing should be integrated into Solaris 8
4299644 debug kernel panics; race between ip_close and ip_wsrv threads
4291034 arp: bad trap in ip while deleting logical interface during arp
4308728 ifconfig results in spurious message on the console
(from 110180-01)
4317221 mipagent needs to read IP TTL to fully support reverse tunneling
4302749 Foreign Agent should not broadcast ARP for Mobile Nodes Link Layer address
4310956 ARP support needed for Mobile IP addresses
4320818 add radius hooks to mipagent daemon
4335568 mipagent's generic auth extension processing is broken
4347223 Network Multipathing should provide offlining capability.
(from 110552-01)
4278842 Add reverse tunneling to Foreign Agent and Home Agent
4313189 Mipagent needs to use routing socket to add/delete routes for rev-tun support
4324051 Mipagent needs to have a socket option to route reg reply directly to MN
4360818 Provide kernel support for Reverse tunneling and private addressing
4370123 AAA extensions to RADIUS interface between mipagent and radius
4376886 mipagent doesn't work with PPP interfaces
4375920 Foreign agent does not create two tunnels to HA when different COAs used
(from 111541-02)
rev'ed to -02 to include an escalated fix from patchgate.
(from 111541-01)
4434131 IP Network Interfaces should be auto-configured after DR post-attach
Patch Installation Instructions:
--------------------------------
For Solaris 2.0-2.6 releases, refer to the Install.info file and/or
the README within the patch for instructions on using the generic
'installpatch' and 'backoutpatch' scripts provided with each patch.
For Solaris 7-8 releases, refer to the man pages for instructions
on using 'patchadd' and 'patchrm' scripts provided with Solaris.
Any other special or non-generic installation instructions should be
described below as special instructions. The following example
installs a patch to a standalone machine:
example# patchadd /var/spool/patch/104945-02
The following example removes a patch from a standalone system:
example# patchrm 104945-02
For additional examples please see the appropriate man pages.
Special Install Instructions:
-----------------------------
Reboot the system after patch installation.
NOTE 1: To get the complete fix for bug 4299951 (ndd can set
nca_vpmax/nca_ppmax to incorrect large values), one needs
to install the NCA Support for Apache Web Server patch,
109066-03 (or newer).
NOTE 2: To get the complete fix for bugs:
4306362 Only one multicast client gets data on the same node
4303422 bind to V4 multicast address using V6 socket fails
one needs to install the following patches:
109740-01 (or newer) udp patch
109742-01 (or newer) icmp patch
NOTE 3: To get the complete IP Multipathing support, one needs
to install the following patches:
109898-01 (or newer) /kernel/drv/arp patch
109742-02 (or newer) /kernel/drv/icmp patch
109279-05 (or newer) /kernel/drv/ip patch
109900-01 (or newer) /etc/init.d/network and
/etc/rcS.d/S30network.sh patch
109472-03 (or newer) /kernel/drv/tcp patch
109740-02 (or newer) /kernel/drv/udp patch
109902-01 (or newer) /usr/lib/inet/in.ndpd patch
109904-01 (or newer) /etc/default/mpathd and
/sbin/in.mpathd patch
109906-01 (or newer) /sbin/ifconfig and /usr/sbin/ifconfig
patch
NOTE 4: To get full implementation for 4317221, please also install
the udp patch, 109740-03, or its newer revision.
NOTE 5: To get Network Multipathing offlining capability, one needs
to install the following patches:
109279-07 (or newer) /kernel/drv/ip patch
109740-03 (or newer) /kernel/drv/udp patch
109902-02 (or newer) /usr/lib/inet/in.ndpd patch
109904-02 (or newer) /sbin/in.mpathd patch
109906-03 (or newer) /sbin/ifconfig patch
110378-01 (or newer) /usr/lib/inet/mipagent patch
NOTE 6: To get the complete support for the following:
Add reverse tunneling to Foreign Agent and Home Agent
Mipagent needs to use routing socket to add/delete
routes for rev-tun support
Mipagent needs to have a socket option to route reg
reply directly to MN
Provide kernel support for Reverse tunneling and
private addressing
one needs to install the following patches:
110378-04 (or newer) mipagent patch
109279-09 (or newer) ip/ipsecah patch
109740-04 (or newer) udp patch
109742-03 (or newer) icmp patch
109472-04 (or newer) tcp patch
NOTE 7: To get the complete feature for RCM suspend/resume,
one needs to install the following patches:
108528-11 (or newer) Kernel Update patch
109904-05 (or newer) /sbin/in.mpathd patch
109279-16 (or newer) /kernel/drv/ip patch
111802-01 (or newer) /usr/lib/rcm/modules/\
SUNW_cluster_rcm.so patch
110839-02 (or newer) /usr/lib/rcm/modules/\
SUNW_ip_rcm.so patch
README -- Last modified date: Friday, November 9, 2012