H06.14 Software Installation and Upgrade Guide

Fallback
To fall back, you must install the previous SPRs for the OSS products and for DP2. In addition, in
either of these cases, you must run fsck on the fileset to downgrade the fileset to Version 2:
If the fsck utility has been run on a fileset to upgrade to Version 3 filesets
If the fileset was created on a system running an H06.08 or later H-series RVU
When the fileset is downgraded to Version 2, any optional ACLs associated with the files in the
fileset are lost.
Safeguard Longer Password Length
Starting with the H04 version of Safeguard, the maximum allowed Safeguard password length is
increased from 8 bytes to 64 bytes.
Migration
Users migrating to a version of Safeguard and Standard Security that supports longer passwords
should be aware that two new attributes are introduced: PASSWORD-COMPATIBILITY-MODE and
PASSWORD-MAXIMUM-LENGTH. The default setting for PASSWORD-COMPATIBILITY-MODE is
ON, meaning that new passwords are limited to 8 bytes. To enable the longer password feature,
PASSWORD-COMPATIBILITY-MODE must be set to OFF, and the existing
PASSWORD-MAXIMUM-LENGTH attribute must be set to a value greater than 8.
For more information on these and other attribute changes, see the Safeguard Administrator’s
Manual.
There are no special migration considerations for the longer password feature. However, for a
mitigation procedure for handling any unexpected failures that might occur during migration, see
“Migration in a Safeguard Environment” (page 48).
Fallback in a Safeguard Environment
From the H06.08 and later RVUs, you can fall back to the H06.06 and H06.07 RVUs.
Because longer Safeguard passwords are not recognized in previous RVUs, fallback requires
advance planning. At the time of fallback, the super ID password must be less than or equal to 8
bytes. If the password exceeds this length, the system administrator must create a new super ID
password of length less than or equal to 8 bytes and set the PASSWORD-COMPATIBILITY-MODE
attribute to ON. After installing the previous version of Safeguard, the system administrator must
do the following:
1. Before starting Safeguard, log on using the 8-byte password.
2. Use the PWCONFIG utility to change the PASSWORD-MINIMUM-LENGTH attribute to a value
less than 8 (if it does not already have such a value).
3. Start Safeguard.
Once these steps are completed, users whose password length is less than or equal to 8 bytes will
be able to log on. Users whose password length exceeded 8 bytes before fallback will be unable
to log on; the system administrator must change their passwords to have a length less than or equal
to 8 bytes.
Fallback with Standard Security (Safeguard Not Installed)
At the time of fallback, the super ID password must be less than or equal to 8 bytes. The fallback
steps are:
1. If the super ID user password is longer than 8 bytes, set or change that password to be less
than or equal to 8 bytes with PASSWORD-COMPATIBILITY-MODE set to ON.
2. Install the previous version of Standard Security.
H06.08 51