IBM Support

Supplementary release notes for IBM Security Privileged Identity Manager V2.0.2

News


Abstract

This document contains release information that was not documented in the published Release Notes.

Content


   

Overview

IBM Security Privileged Identity Manager, Version 2.0.2, is a virtual appliance for the IBM® Security Privileged Identity Manager solution. The virtual appliance simplifies deployment, administration, and configuration.


This release contains the following new features, enhancements, currency support, and fixes:

  • Virtual appliance platform feature enhancements
  • Manage credentials used in Windows services scheduled tasks
  • Bulk uploading for identity providers
  • Cipher suites
  • IBM Security Access Manager authentication proxy
  • Enhancements to resources
  • Password rotation interval attribute enhancement for bulk uploading of credentials


For more information about what's new, see New in 2.0.2.

Fix packs are also released periodically to provide changes to the software that can resolve known problems, add new functions, or keep the software operating efficiently.

UPDATE: Starting from August 2018, to obtain the latest fix packs and support for the AccessAgent client, download Privileged Access Agent 2.1.1. For more information, see compatibility announcement.

   

Installation

Download IBM Security Privileged Identity Manager, version 2.0.2.

To upgrade to IBM Security Privileged Identity Manager, version 2.0.2, refer to the following table:

IBM Security Privileged Identity Manager Method
From To
  • Version 2.0.2 Fix Pack 3
  • Version 2.0.2 Fix Pack 6
Version 2.0.2 Fix Pack 8
  • Command Line Interface (CLI)- USB
  • Local Management Interface (LMI)
Version 2.0.2 GA, Fix Pack 3 Version 2.0.2 Fix Pack 6
  • Command Line Interface (CLI)- USB
  • Local Management Interface (LMI)
Version 2.0.1 Version 2.0.2 Fix Pack 3
  • Command Line Interface (CLI)- USB (Before installing ISPIM version 2.0.1 Fix Pack 2)
  • FileUpload Tool (After installing ISPIM version 2.0.1 Fix Pack 2)
Version 2.0.2 GA, Fix Pack 1, and Fix Pack 2
  • Command Line Interface (CLI)- USB
  • FileUpload Tool

Note:

  • You must at least be on IBM Security Privileged Identity Manager version 2.0.2, Fix Pack 3 before you upgrade to Fix Pack 6 and above.
  • If you are using IBM Security Privileged Identity Manager version 2.0.1 or IBM Security Privileged Identity Manager version 2.0.1 Fix Pack 1, you can only use the USB method.
  • For more information on upgrading via a USB device, see Upgrading the IBM Security Privileged Identity Manager virtual appliance from a USB device.


See the IBM Security Privileged Identity Manager Installation and Configuration Guide.


   

Summary of updates

Updates
1. The IBM Security Privileged Identity Manager virtual appliance requires 3 network adapters for a clean installation and upgrade.
 
2. Topic: Adding resources
When adding resources, the resource alias that you define must be unique across IBM Security Privileged Identity Manager.
 
3. IBM Security Privileged Identity Manager does not allow upload of custom Java extensions for password policies or workflow extensions.

The following topics which are affected by this update have been removed from product documentation:
- Adding customized logic for password rules with a customized rule
- Adding a customized password generator
 
4. Topic: POSIX_LINUX subtype
The accepted values for the AUTHENTICATEMODE are not defined. It accepts the following values:
- 0 for Self
- 1 for Admin
 
5. Topic: Onboarding managed application services
The field Target unique name, should be Task Path.
 
6. Topic: Global commands
The tools > connect command is not documented.
 
7. Topic: AccessAgent installation
The link for the Install the AccessAgent step, should link to the following Installing the AccessAgent page of the product documentation.
 
8. External repository is required to support the use of network provider mode.
 
9. Topic: Setting up the directory server for SSL connection

In substep 1e, you are not required to import the certificate file to the IBM Security Privileged Identity Manager virtual appliance. It is automatically imported during the configuration of the data server.
 
10. For a list of password policy rules, see Password strength rules.
 
11 Windows 10, version 1511, is now supported. For more information, see the following links:
12. Session recording in a multiple display or multiple monitor configuration is now supported with the AccessAgent ISS-SAMESSO-AA-IF0011 interim fix. For more information, see ISS-SAMESSO-AA-IF0011.
 
13. Topic: Managing the external user registry configuration

The following users can now be defined anywhere within the base DN hierarchy from IBM Security Privileged Identity Manager version 2.0.2, Fix Pack 6 and above:
  • pim manager
  • isimsystem or equivalent IBM Security Privileged Identity Manager system user name
  • Bind user
14. Topics: Installing a fix pack, Upgrade the virtual appliance

For stand-alone or primary node installations of IBM Security Privileged Identity Manager, ensure that the initial configuration is completed before a fix pack installation is performed. See Setting up a stand-alone or primary node for IBM Security Privileged Identity Manager.
15 Windows 10, version 1607, otherwise known as the Anniversary Update is now supported.
  • The UI Automation extension is installed automatically. Two new UI Automation actions will be displayed in AccessStudio. The following actions are:
    • Get Element Text - UI Automation
    • Set Element Text - UI Automation
  • The Click a button - UI Automation action is now renamed to Click an element - UI Automation. No changes are required for existing AccessProfiles that use the Click a button - UI Automation action. See Windows UI Automation extension.
  • AccessProfiles for standard Windows applications, such as Internet Explorer, and the Remote Desktop client have been updated to be fully compatible with Windows 10, version 1607.
For more information, see 8.2.2-ISS-SAMESSO-AA-FP0012 readme.
For more information about Windows 10 support, see Issues and Limitations.
 
16 Firefox ESR 52 is now supported with the Mozilla Firefox Browser extension. See Mozilla Firefox Browser Extension.
 
17. The Application Name filter is not applicable to the Application Instance Activity Audit Report.
 

   

Related links

For more information about the IBM Security Privileged Identity Manager, Version 2.0.2, see the following links:

   

Archives

For more information on previous versions of IBM Security Privileged Identity Manager, see the following links:

[{"Product":{"code":"SSRQBP","label":"IBM Security Privileged Identity Manager"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"Not Applicable","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"2.0.2","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Document Information

Modified date:
11 August 2020

UID

swg21970875