PM84162: POTENTIAL FOR CONTROLLED AT/TLS CONNECTION TO HANG

A fix is available

Subscribe

You can track all active APARs for this component.

APAR status

  • Closed as program error.

Error description

  • An AT/TLS connection whose policy is defined with
    ApplicationControlled On has been fully established with SSL
    handshake completed.  If the application issues an ioctl() call
    for SIOCTTLSCTL with type TTLS_STOP_CONNECTION, the connection
    could hang in CLOSWAIT state if a FIN packet arrives before the
    SSL shutdown sequence has completed.
    
    Other keywords:
       CloseWait  TTLS
    

Local fix

  • Stop the application (or have it close the socket) or drop the
    connection (VARY TCPIP,,DROP,connid).
    

Problem summary

  • ****************************************************************
    * USERS AFFECTED: All users of IBM Communications Server       *
    *                 for z/OS Version 1 Release(s) 12 and         *
    *                 13 IP AT-TLS                                 *
    ****************************************************************
    * PROBLEM DESCRIPTION: Applications reads hang after           *
    *                      SIOCTTLSCTL ioctl used to stop          *
    *                      security on a connection.               *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    The problem may be summarized as follows:
    1. An application stops security on a AT-TLS connection
       using the SIOCTTLSCTL ioctl
    2. The remote side closes the SSL session and sends a
       FIN on the TCP connection.
    3. The application SIOCTTLSCTL ioctl completes, but the
       next read hangs instead of returning 0.
    +-------------------------------------------------------------+
    + Please check our Communications Server for OS/390 homepages +
    + for common networking tips and fixes.  The URL for these    +
    + homepages can be found in Informational APAR II11334.       +
    +-------------------------------------------------------------+
    

Problem conclusion

  • AT-TLS is updated to correctly process a FIN received
    during TTLS_STOP_CONNECTION processing.
    
    * Cross Reference between External and Internal Names
    

Temporary fix

Comments

APAR Information

  • APAR number

    PM84162

  • Reported component name

    TCP/IP V3 MVS

  • Reported component ID

    5655HAL00

  • Reported release

    1C0

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2013-03-05

  • Closed date

    2013-04-01

  • Last modified date

    2013-05-06

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

    UK93060 UK93061 PM88067

Modules/Macros

  • EZBTLCWK EZBTLFIO EZBTLSRH EZBTLUTL EZBZTLUT
    

Fix information

  • Fixed component name

    TCP/IP V3 MVS

  • Fixed component ID

    5655HAL00

Applicable component levels

  • R1C0 PSY UK93060

       UP13/04/30 P F304

  • R1D0 PSY UK93061

       UP13/04/30 P F304

Fix is available

  • Select the PTF appropriate for your component level. You will be required to sign in. Distribution on physical media is not available in all countries.



Rate this page:

(0 users)Average rating

Add comments

Document information


More support for:

z/OS family

Software version:

1C0

Operating system(s):

z/OS

Reference #:

PM84162

Modified date:

2013-05-06

Translate my page

Machine Translation

Content navigation