H06.08 Software Installation and Upgrade Guide

H06.08 Installation, Migration, and Fallback
Considerations
H06.08 Software Installation and Upgrade Guide543573-001
2-19
Safeguard Support for OSS Access Control List
Safeguard Support for OSS Access Control
List
The H03 version of Safeguard and Standard Security are enhanced to support the
OSS Access Control List (ACL) feature. A new security group,
SECURITY-OSS-ADMINISTRATOR, and a new Safeguard configuration attribute,
AUDIT-CLIENT-OSS, are provided to support this feature.
Fallback Considerations for OSS ACL
After fallback, the AUDIT-CLIENT-GUARDIAN attribute, which is a synonym for
AUDIT-CLIENT-SERVICE, is longer be applicable.
After fallback, if OSS-related operations are to be audited, enable the
AUDIT-CLIENT-SERVICE attribute if it is not already enabled.
To restore backup tapes from H06.08 and later RVUs to H06.05, H06.06, and
H06.07 RVUs, you must install the T0744H01^AAA Backup/Restore 2 SPR. This
SPR is required because changes have been made to the information stored with
each object. A Backup/Restore 2 SPR is not available for pre-H06.05 systems.
Safeguard Longer Password Length
Starting with the H04 version of Safeguard, the maximum allowed Safeguard password
length is increased from 8 bytes to 64 bytes.
Migration
Users migrating to a version of Safeguard and Standard Security that supports longer
passwords should be aware that two new attributes are introduced:
PASSWORD-COMPATIBILITY-MODE and PASSWORD-MAXIMUM-LENGTH. The
default setting for PASSWORD-COMPATIBILITY-MODE is ON, meaning that new
passwords are limited to 8 bytes. To enable the longer password feature,
PASSWORD-COMPATIBILITY-MODE must be set to OFF, and the existing
PASSWORD-MAXIMUM-LENGTH attribute must be set to a value greater than 8.
For more information on these and other attribute changes, see the Safeguard
Administrators Manual.
For more information on Safeguard migration, see Migration in a Safeguard
Environment on page 2-17.
Fallback in a Safeguard Environment
From the H06.08 and later RVUs, you can fall back to the H06.06 and H06.07 RVUs.
Because longer Safeguard passwords are not recognized in previous RVUs, fallback
requires advance planning. At the time of fallback, the system administrator’s