Thursday, March 2, 2017

IBM HTTP Server: Startup FAQ and mustgather

http://publib.boulder.ibm.com/httpserv/ihsdiag/gather_startup_doc.html#SOLGSKIT2

On some Solaris/SPARC systems manufactured by Fujitsu, GSKit can hang during startup. To resolve the issue, take the following two steps:

  • Upgrade GSKit to 8.0.50.61 or later (8.5.5.10, 8.0.0.13, or older fixpacks with PI60207)
  • Specify SSLAttributeSet 4007 1 to prevent the FIPS certified ICC 8.4 from being loaded. Note: If using SSLFIPSEnable, you must also opt-in to using a non-certified cryptograhic module with environment variable ICC_IGNORE_FIPS=YES
    Some other instructions may refer to removing a "C/" directory from the GSKit lib directory. This should have the same result as SSLAttributeSet 4007 1 -- disabling the initialization of the FIPS certified cryptographic module inside of GSKit. There is always a 2nd, non-certified cryptographic module that can be used.

  Append below line at the end of httpd.conf

    SSLAttributeSet 4007 1
 
You may need reboot the server.

I tried " SSLAttributeSet 4007 1", it doesn't fix the problem, then I deleted
"C/" directory from the GSKit lib directory, and it works.

Monday, February 27, 2017

CMS type missed in ikeyman - IBM HTTP Server 9.0

In Linux:
export JAVA_HOME=/opt/IBM/HTTPServer/java/8.0/jre
export PATH=/opt/IBM/HTTPServer/java/8.0/jre/bin:$PATH

Add below line into file /opt/IBM/HTTPServer/java/8.0/jre/lib/security/java.security


security.provider.10=com.ibm.security.cmskeystore.CMSProvider

Friday, February 17, 2017

bash: /sbin/reboot: Input/output error

Reference: http://www.linuxjournal.com/content/rebooting-magic-way

    # reboot
    bash: /sbin/reboot: Input/output error

The "magic SysRq key" provides a way to send commands directly to the kernel through the /proc filesystem. It is enabled via a kernel compile time option, CONFIG_MAGIC_SYSRQ, which seems to be standard on most distributions. First you must activate the magic SysRq option:
    echo 1 > /proc/sys/kernel/sysrq
When you are ready to reboot the machine simply run the following:
    echo b > /proc/sysrq-trigger