Announcements

SecurID® Discussions

Browse the SecurID discussion board to get product help and collaborate with other SecurID users.
NetworkSecurit4
New Contributor
New Contributor

Upgrade RSA failed from am 8.3.6 to am 8.4.0 for primary

Jump to solution

Hi ,

 

I received the following issue when I tried to upgrade my RSA from am8.3.6 to am 8.4.0 for primary.        Applying Update AM 8.4
Basic Status View
Advanced Status View
Failed to apply update AM 8.4.

 

The following errors occurred:

 

Failed to prepare the update.
Installer Tasks
[INFO] Invoking config engine goal UpdateRollback:preUpdate
0      2020-06-22 14:05:10,872 INFO: Arguments: [UpdateRollback.preUpdate]
2146   2020-06-22 14:05:13,018 INFO: Will not attempt to fix line endings in patch source files
2172   2020-06-22 14:05:13,044 INFO: Script source dir: /tmp/rsa_update/installer/config/src/scripts
2172   2020-06-22 14:05:13,044 INFO: Patch Script source dir: /tmp/rsa_update/iso/rsa/scripts
2650   2020-06-22 14:05:13,522 INFO: Reading configuration from Config.groovy
3859   2020-06-22 14:05:14,731 INFO: Running task UpdateRollback.preUpdate
10962  2020-06-22 14:05:21,834 INFO: Executing free
11393  2020-06-22 14:05:22,265 INFO:  output:::              total       used       free     shared    buffers     cached
Mem:       8193768    7962376     231392     135036      62500    3983844
-/+ buffers/cache:    3916032    4277736
Swap:      4193276         32    4193244
11393  2020-06-22 14:05:22,265 INFO:  else condition output:::              total       used       free     shared    buffers     cached
Mem:       8193768    7962376     231392     135036      62500    3983844
-/+ buffers/cache:    3916032    4277736
Swap:      4193276         32    4193244
11398  2020-06-22 14:05:22,270 INFO: Total Memory: 8193768 KB
11405  2020-06-22 14:05:22,277 INFO: Using memory category 8GB
     [copy] Copying 1 file to /opt/rsa/am/updates/backup
     [copy] Copying /tmp/rsa_update/iso/PatchManifest.xml to /opt/rsa/am/updates/backup/PatchManifest.xml
14620  2020-06-22 14:05:25,492 INFO: srcFile loop:/opt/rsa/am/utils/etc/patchHistory.dat
14620  2020-06-22 14:05:25,492 INFO: destFile loop:/opt/rsa/am/updates/backup/opt/rsa/am/utils/etc/patchHistory.dat
14621  2020-06-22 14:05:25,493 INFO: inside mkdir creation
    [mkdir] Created dir: /opt/rsa/am/updates/backup/opt/rsa/am/utils/etc
14623  2020-06-22 14:05:25,495 INFO: Copying /opt/rsa/am/utils/etc/patchHistory.dat to /opt/rsa/am/updates/backup/opt/rsa/am/utils/etc/patchHistory.dat
14623  2020-06-22 14:05:25,495 INFO: source exists
15031  2020-06-22 14:05:25,903 INFO: Initialized patch properties
15032  2020-06-22 14:05:25,904 INFO: Patch execution mode is set to: UPDATE
15032  2020-06-22 14:05:25,904 INFO: Database started is set to: false
15033  2020-06-22 14:05:25,905 INFO: Retrieving platform specification.
16315  2020-06-22 14:05:27,187 INFO: Process return code is: 0
16718  2020-06-22 14:05:27,590 INFO: Output is: VM
16718  2020-06-22 14:05:27,590 INFO: Current platform is: virtual
16719  2020-06-22 14:05:27,591 INFO: Platform specification is set to: VMWARE
16719  2020-06-22 14:05:27,591 INFO: Retrieving server type.
16999  2020-06-22 14:05:27,871 INFO: Executing queryPrimaryReplicationState.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/queryPrimaryReplicationState-20200622140527.log
17000  2020-06-22 14:05:27,872 INFO: Executing /opt/rsa/am/pgsql/bin/psql
Java HotSpot(TM) 64-Bit Server VM warning: You have loaded library /opt/rsa/am/utils/lib/linux-x86_64/libsystemtools.so which might have disabled stack guard. The VM will try to fix the stack guard now.
It's highly recommended that you fix the library with 'execstack -c <libfile>', or link it with '-z noexecstack'.
19425  2020-06-22 14:05:30,297 INFO: Server type is set to: STANDALONE
19425  2020-06-22 14:05:30,297 INFO: Reboot flag is set to: true
19426  2020-06-22 14:05:30,298 INFO: Running checkPrerequisitesBeforePreUpdate
19529  2020-06-22 14:05:30,401 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/cleanup-lib-libreadline.sh to /tmp/rsa-install-2020-06-22-14-05-13/cleanup-lib-libreadline.sh
19529  2020-06-22 14:05:30,401 INFO: source exists
19943  2020-06-22 14:05:30,815 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/cleanup-lib-libreadline.sh to 755
20386  2020-06-22 14:05:31,258 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/config.sh to /tmp/rsa-install-2020-06-22-14-05-13/config.sh
20386  2020-06-22 14:05:31,258 INFO: source exists
20795  2020-06-22 14:05:31,667 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/config.sh to 755
21202  2020-06-22 14:05:32,074 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/getStrictTls.sh to /tmp/rsa-install-2020-06-22-14-05-13/getStrictTls.sh
21202  2020-06-22 14:05:32,074 INFO: source exists
21610  2020-06-22 14:05:32,482 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/getStrictTls.sh to 755
22017  2020-06-22 14:05:32,889 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/get-platform-spec.sh to /tmp/rsa-install-2020-06-22-14-05-13/get-platform-spec.sh
22017  2020-06-22 14:05:32,889 INFO: source exists
22430  2020-06-22 14:05:33,302 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/get-platform-spec.sh to 755
22837  2020-06-22 14:05:33,709 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/set-permissions.sh to /tmp/rsa-install-2020-06-22-14-05-13/set-permissions.sh
22837  2020-06-22 14:05:33,709 INFO: source exists
23252  2020-06-22 14:05:34,124 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/set-permissions.sh to 755
23665  2020-06-22 14:05:34,537 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/updateOsPrevalidation.sh to /tmp/rsa-install-2020-06-22-14-05-13/updateOsPrevalidation.sh
23665  2020-06-22 14:05:34,537 INFO: source exists
24078  2020-06-22 14:05:34,950 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/updateOsPrevalidation.sh to 755
24486  2020-06-22 14:05:35,358 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/updateOsPackages.sh to /tmp/rsa-install-2020-06-22-14-05-13/updateOsPackages.sh
24486  2020-06-22 14:05:35,358 INFO: source exists
24904  2020-06-22 14:05:35,776 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/updateOsPackages.sh to 755
25366  2020-06-22 14:05:36,238 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/updateSSH_Config.sh to /tmp/rsa-install-2020-06-22-14-05-13/updateSSH_Config.sh
25367  2020-06-22 14:05:36,239 INFO: source exists
25774  2020-06-22 14:05:36,646 INFO: Changing permissions of /tmp/rsa-install-2020-06-22-14-05-13/updateSSH_Config.sh to 755
26180  2020-06-22 14:05:37,052 INFO: Performing preUpdate task InvokeGroovy (Pre-upgrade checks)
26180  2020-06-22 14:05:37,052 INFO:  ** Begin pre-upgrade checks. **
26665  2020-06-22 14:05:37,537 INFO:  Platform type is: virtual
Virtual platforms checks
sda1 is mounted as root partition
Pre-validation checks passed. Continue with upgrade.
rsaadmin's password:
26665  2020-06-22 14:05:37,537 INFO:  ** Pre-upgrade checks completed. **
26665  2020-06-22 14:05:37,537 INFO: Performing preUpdate task InvokeGroovy (Config TLS)
26665  2020-06-22 14:05:37,537 INFO:  ** Begin strict TLS check **
26666  2020-06-22 14:05:37,538 INFO: Executing CheckValueExists.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/CheckValueExists-20200622140537.log
26666  2020-06-22 14:05:37,538 INFO: Executing /opt/rsa/am/pgsql/bin/psql
27082  2020-06-22 14:05:37,954 INFO: The count value of the property is :
27082  2020-06-22 14:05:37,954 INFO: Run the script to find out if strict TLS mode is enble or not
27501  2020-06-22 14:05:38,373 INFO: The out value is : NONE
27501  2020-06-22 14:05:38,373 INFO: TLSv1.2 is not enable
27502  2020-06-22 14:05:38,374 INFO: Updated the db values as : TLSv1,TLSv1.1,TLSv1.2
27502  2020-06-22 14:05:38,374 INFO: Executing Insert values.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/Insert values-20200622140538.log
27502  2020-06-22 14:05:38,374 INFO: Executing /opt/rsa/am/pgsql/bin/psql
27923  2020-06-22 14:05:38,795 INFO: Executing Insert values.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/Insert values-20200622140538.log
27923  2020-06-22 14:05:38,795 INFO: Executing /opt/rsa/am/pgsql/bin/psql
Exception in thread "main" groovy.lang.MissingPropertyException: No such property: properyKeyDefaultCipherListValue for class: UpdateRollback
    at UpdateRollback.preUpdate_InvokeGroovy_Config_TLS(UpdateRollback.groovy:235)
    at UpdateRollback$_preUpdate_closure1.doCall(UpdateRollback.groovy:21)
    at UpdateRollback$_preUpdate_closure1.doCall(UpdateRollback.groovy)
    at Utils.withArtifacts(Utils.groovy:48)
    at Utils$withArtifacts.call(Unknown Source)
    at UpdateRollback.preUpdate(UpdateRollback.groovy:11)
    at com.rsa.plugins.install.GroovyInstallEngine.invokeScript(GroovyInstallEngine.groovy:68)
    at com.rsa.plugins.install.GroovyInstallEngine$_runTask_closure2.doCall(GroovyInstallEngine.groovy:57)
    at com.rsa.plugins.install.GroovyInstallEngine.runTask(GroovyInstallEngine.groovy:56)
    at com.rsa.plugins.install.GroovyInstallEngine$_runTasks_closure3.doCall(GroovyInstallEngine.groovy:106)
    at com.rsa.plugins.install.GroovyInstallEngine.runTasks(GroovyInstallEngine.groovy:105)
    at com.rsa.plugins.install.GroovyInstallEngine$runTasks.call(Unknown Source)
    at com.rsa.plugins.install.CommandLineInstallEngine.main(CommandLineInstallEngine.groovy:40)

 

Configuration step UpdateRollback:preUpdate [FAILED]
[ERROR] Error: Failed to invoke update engine: Failed to prepare the update.
java.lang.Exception: Failed to prepare the update.
    at com.rsa.am.updateengine.tasks.BaseUpdateEngineTask.doExecute(BaseUpdateEngineTask.java:56)
    at com.rsa.am.updateengine.tasks.Task.execute(Task.java:136)
    at com.rsa.am.updateengine.components.impl.TaskManagerImpl.doExecuteTask(TaskManagerImpl.java:86)
    at com.rsa.am.updateengine.components.impl.TaskManagerImpl.execute(TaskManagerImpl.java:41)
    at com.rsa.am.updateengine.components.impl.UpdateInstallerImpl.run(UpdateInstallerImpl.java:29)
[INFO] Invoking config engine goal UpdateRollback:postUpdate
0      2020-06-22 14:05:39,981 INFO: Arguments: [UpdateRollback.postUpdate]
1890   2020-06-22 14:05:41,871 INFO: Will not attempt to fix line endings in patch source files
1921   2020-06-22 14:05:41,902 INFO: Script source dir: /tmp/rsa_update/installer/config/src/scripts
1921   2020-06-22 14:05:41,902 INFO: Patch Script source dir: /tmp/rsa_update/iso/rsa/scripts
2226   2020-06-22 14:05:42,207 INFO: Reading configuration from Config.groovy
2994   2020-06-22 14:05:42,975 INFO: Running task UpdateRollback.postUpdate
9845   2020-06-22 14:05:49,826 INFO: Executing free
10295  2020-06-22 14:05:50,276 INFO:  output:::              total       used       free     shared    buffers     cached
Mem:       8193768    7906624     287144     135036      68416    3916700
-/+ buffers/cache:    3921508    4272260
Swap:      4193276         32    4193244
10295  2020-06-22 14:05:50,276 INFO:  else condition output:::              total       used       free     shared    buffers     cached
Mem:       8193768    7906624     287144     135036      68416    3916700
-/+ buffers/cache:    3921508    4272260
Swap:      4193276         32    4193244
10300  2020-06-22 14:05:50,281 INFO: Total Memory: 8193768 KB
10306  2020-06-22 14:05:50,287 INFO: Using memory category 8GB
10364  2020-06-22 14:05:50,345 INFO: Patch execution mode is set to: PRE_PHASE_FAILED
10425  2020-06-22 14:05:50,406 INFO: Performing postUpdate task ServiceControl (Start All Services)
10425  2020-06-22 14:05:50,406 INFO: Skipping Start_All_Services due to pending OS reboot condition
10426  2020-06-22 14:05:50,407 INFO: Removing temporary file with patch properties /tmp/patch-properties.tmp
Configuration step UpdateRollback:postUpdate [SUCCESS]
Done

 

Any idea to fix it ?

 

Thanks in advance

0 Likes
1 Solution

Accepted Solutions

Same error and now it reports TLS strict, so your commands stuck.

 

I cannot find that exact type of error in prior cases, so I am unable to say what next steps should be yet.

 

This will likely need a support case so we can really dive in or take a direct look.

View solution in original post

4 Replies
_EricaChalfin
Employee (Retired) Employee (Retired)
Employee (Retired)

Network Security‌,

 

I've moved your question to the RSA SecurID Access" data-type="space space where it will be seen by the product's support engineers, other customers and partners.  Please bookmark this page and use it when you have product-specific questions.

 

Alternatively, from the RSA Customer Support page, click on Ask A Question on the blue navigation bar and choose Ask A Product Related Question.  From there, scroll to RSA SecurID Access" data-type="space‌ and click Ask A Question.  That way your question will appear in the correct space.

 

Regards,

Erica

0 Likes
EdwardDavis
Employee
Employee

Somehow it died checking the value in the database if tls1.2 mode is strict or not, then it tries to insert the values and fails.

 

Make sure you reboot before trying the update, this would clear up any resource issues that may be causing a problem.

 

 

Maybe check (d) below if you have a way to set up a new standalone primary, patch to be 8.3.0.6.0, then restore backup

from your PROD to the new test machine....and see if you can patch the test box, or have the same error....

 

------------------------------------------

 

a) Best idea is collect these mentioned logs and open a support case:

 

/opt/rsa/am/install_logs/dbscripts/CheckValueExists-20200622140537.log

 

/opt/rsa/am/install_logs/dbscripts/Insert values-20200622140538.log

 

 

or

 

 

b) check the database and see if you have the values (if they can even be returned or produce an error)

 

The table is ims_config_value

 

select * from ims_config_value where name like '%ssl_server.protocol%';

 

and this is how it would look if in Strict Mode. Yours on 8.3.x would/may also show sslv3 in the value text.

 

pastedImage_1.png

 

 

I wonder if there is a problem with this table or permissions as the log indicates it is trying to insert data and make it look like the above since 8.4 is forced to be strict and will drop sslv3....

 

 

c) in fact looking at the log some more...

a script runs to check status of TLS,

(my own 8.3.0.6.0 8.4 update log snippet---not in strict mode, so sslv3 is listed with the others)

 

Line 49: 22531 2018-12-12 15:09:45,902 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/getStrictTls.sh to /tmp/rsa-install-2018-12-12-15-09-26/getStrictTls.sh
Line 51: 22945 2018-12-12 15:09:46,316 INFO: Changing permissions of /tmp/rsa-install-2018-12-12-15-09-26/getStrictTls.sh to 755
Line 74: 28464 2018-12-12 15:09:51,835 INFO: Performing preUpdate task InvokeGroovy (Config TLS)
Line 75: 28464 2018-12-12 15:09:51,835 INFO: ** Begin strict TLS check **
Line 81: 29344 2018-12-12 15:09:52,715 INFO: The existing property value is : SSLv3,TLSv1,TLSv1.1,TLSv1.2
Line 81: 29344 2018-12-12 15:09:52,715 INFO: The existing property value is : SSLv3,TLSv1,TLSv1.1,TLSv1.2
Line 81: 29344 2018-12-12 15:09:52,715 INFO: The existing property value is : SSLv3,TLSv1,TLSv1.1,TLSv1.2
Line 82: 29345 2018-12-12 15:09:52,716 INFO: TLSv1.2 is not enable
Line 84: 29380 2018-12-12 15:09:52,751 INFO: ** End strict TLS check **

 

 

The getstrictls script on 8.4 update does this weblogic check.

 

#!/bin/sh
REQ_PROTO_ARGS=( "-Dcom.rsa.requiredProtocols" "-Dweblogic.security.SSL.minimumProtocolVersion" )
WRAPPERS_DIR_PATH=$1
TLS_PROTOCOL="TLS"
TLS_PROTOCOL_1_2="TLSv1.2"
strict_tlsmode="NONE"
for protocolArgs in ${REQ_PROTO_ARGS

  • }
    do
    protoArgs=$(grep "\\$protocolArgs" $WRAPPERS_DIR_PATH)
    if [ $? = 0 ]; then
    count=$(echo $protoArgs | grep -i -o $TLS_PROTOCOL_1_2 | wc -l)
    if [ $count -eq "1" ]; then
    count=$(echo $protoArgs | grep -i -o $TLS_PROTOCOL | wc -l)
    if [ $count -eq "1" ]; then
    strict_tlsmode="STRICT_TLS"
    fi
    fi
    fi
    done
    echo $strict_tlsmode
  •  

    d) As a test only (make a backup of the system before proceeding!) and since this is standalone I suggest

    restoring the backup to a new standalone 8.3.0.6.0 primary you do not care about, and try it there first:

     

    [You are on vmware so you can take snapshots as well...and revert to snapshot if things get messy]

     

    See if you can enable/disable tls1.2 mode from the command line, this will attempt to write settings

    to the wrapper files which the script above attempts to check. It may just need this run (if you can enable

    strict and it works, then set to false afterward)

     

    On AM8.3:
    rsaadmin@ci-05:~> cd /opt/rsa/am/utils/
    rsaadmin@ci-05:/opt/rsa/am/utils> ./rsautil store -a enable_min_protocol_tlsv1_2 true restart
    Please enter OC Administrator username: admin
    Please enter OC Administrator password: *********

        • TLS Configuration being updated ***
        • Enabling TLS configurations in the wrapper files ***
        • TLS configuration updated in the database ***
          psql.bin:/tmp/8deebf17-ecab-4f56-a601-5a55841fc5865111216597879295968.sql:61: NOTICE: Updated the new configuration parameter "auth_manager.ssl_server.protoco l" with the value "TLSv1.2"
          enable_min_protocol_tlsv1_2
          -----------------------------

     

    To revert this, do ./rsautil store -a enable_min_protocol_tlsv1_2 false restart

    NetworkSecurit4
    New Contributor
    New Contributor

    Hi Edward ,

    Thank you so much for your response.

    I did all steps you mentionned, but I have the same issue with a new output:

     

    Applying Update AM 8.4
    Basic Status View
    Advanced Status View
    Failed to apply update AM 8.4.

     

    The following errors occurred:

     

    Failed to prepare the update.
    Installer Tasks
    [INFO] Invoking config engine goal UpdateRollback:preUpdate
    0      2020-06-23 12:59:37,907 INFO: Arguments: [UpdateRollback.preUpdate]
    2153   2020-06-23 12:59:40,060 INFO: Will not attempt to fix line endings in patch source files
    2184   2020-06-23 12:59:40,091 INFO: Script source dir: /tmp/rsa_update/installer/config/src/scripts
    2185   2020-06-23 12:59:40,092 INFO: Patch Script source dir: /tmp/rsa_update/iso/rsa/scripts
    2549   2020-06-23 12:59:40,456 INFO: Reading configuration from Config.groovy
    3627   2020-06-23 12:59:41,534 INFO: Running task UpdateRollback.preUpdate
    10349  2020-06-23 12:59:48,256 INFO: Executing free
    10818  2020-06-23 12:59:48,725 INFO:  output:::              total       used       free     shared    buffers     cached
    Mem:       8193768    7944128     249640     127328      70884    4050156
    -/+ buffers/cache:    3823088    4370680
    Swap:      4193276       5116    4188160
    10819  2020-06-23 12:59:48,726 INFO:  else condition output:::              total       used       free     shared    buffers     cached
    Mem:       8193768    7944128     249640     127328      70884    4050156
    -/+ buffers/cache:    3823088    4370680
    Swap:      4193276       5116    4188160
    10824  2020-06-23 12:59:48,731 INFO: Total Memory: 8193768 KB
    10858  2020-06-23 12:59:48,765 INFO: Using memory category 8GB
         [copy] Copying 1 file to /opt/rsa/am/updates/backup
         [copy] Copying /tmp/rsa_update/iso/PatchManifest.xml to /opt/rsa/am/updates/backup/PatchManifest.xml
    11448  2020-06-23 12:59:49,355 INFO: srcFile loop:/opt/rsa/am/utils/etc/patchHistory.dat
    11448  2020-06-23 12:59:49,355 INFO: destFile loop:/opt/rsa/am/updates/backup/opt/rsa/am/utils/etc/patchHistory.dat
    11449  2020-06-23 12:59:49,356 INFO: inside mkdir creation
        [mkdir] Created dir: /opt/rsa/am/updates/backup/opt/rsa/am/utils/etc
    11454  2020-06-23 12:59:49,361 INFO: Copying /opt/rsa/am/utils/etc/patchHistory.dat to /opt/rsa/am/updates/backup/opt/rsa/am/utils/etc/patchHistory.dat
    11455  2020-06-23 12:59:49,362 INFO: source exists
    11866  2020-06-23 12:59:49,773 INFO: Initialized patch properties
    11868  2020-06-23 12:59:49,775 INFO: Patch execution mode is set to: UPDATE
    11868  2020-06-23 12:59:49,775 INFO: Database started is set to: false
    11869  2020-06-23 12:59:49,776 INFO: Retrieving platform specification.
    12900  2020-06-23 12:59:50,807 INFO: Process return code is: 0
    12911  2020-06-23 12:59:50,818 INFO: Output is: VM
    12911  2020-06-23 12:59:50,818 INFO: Current platform is: virtual
    12911  2020-06-23 12:59:50,818 INFO: Platform specification is set to: VMWARE
    12912  2020-06-23 12:59:50,819 INFO: Retrieving server type.
    12962  2020-06-23 12:59:50,869 INFO: Executing queryPrimaryReplicationState.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/queryPrimaryReplicationState-20200623125950.log
    12965  2020-06-23 12:59:50,872 INFO: Executing /opt/rsa/am/pgsql/bin/psql
    Java HotSpot(TM) 64-Bit Server VM warning: You have loaded library /opt/rsa/am/utils/lib/linux-x86_64/libsystemtools.so which might have disabled stack guard. The VM will try to fix the stack guard now.
    It's highly recommended that you fix the library with 'execstack -c <libfile>', or link it with '-z noexecstack'.
    13993  2020-06-23 12:59:51,900 INFO: Server type is set to: STANDALONE
    13993  2020-06-23 12:59:51,900 INFO: Reboot flag is set to: true
    13994  2020-06-23 12:59:51,901 INFO: Running checkPrerequisitesBeforePreUpdate
    14112  2020-06-23 12:59:52,019 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/cleanup-lib-libreadline.sh to /tmp/rsa-install-2020-06-23-12-59-40/cleanup-lib-libreadline.sh
    14112  2020-06-23 12:59:52,019 INFO: source exists
    14526  2020-06-23 12:59:52,433 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/cleanup-lib-libreadline.sh to 755
    14969  2020-06-23 12:59:52,876 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/config.sh to /tmp/rsa-install-2020-06-23-12-59-40/config.sh
    14969  2020-06-23 12:59:52,876 INFO: source exists
    15382  2020-06-23 12:59:53,289 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/config.sh to 755
    15792  2020-06-23 12:59:53,699 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/getStrictTls.sh to /tmp/rsa-install-2020-06-23-12-59-40/getStrictTls.sh
    15792  2020-06-23 12:59:53,699 INFO: source exists
    16210  2020-06-23 12:59:54,117 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/getStrictTls.sh to 755
    16616  2020-06-23 12:59:54,523 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/get-platform-spec.sh to /tmp/rsa-install-2020-06-23-12-59-40/get-platform-spec.sh
    16616  2020-06-23 12:59:54,523 INFO: source exists
    17024  2020-06-23 12:59:54,931 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/get-platform-spec.sh to 755
    17430  2020-06-23 12:59:55,337 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/set-permissions.sh to /tmp/rsa-install-2020-06-23-12-59-40/set-permissions.sh
    17430  2020-06-23 12:59:55,337 INFO: source exists
    17881  2020-06-23 12:59:55,788 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/set-permissions.sh to 755
    18288  2020-06-23 12:59:56,195 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/updateOsPrevalidation.sh to /tmp/rsa-install-2020-06-23-12-59-40/updateOsPrevalidation.sh
    18288  2020-06-23 12:59:56,195 INFO: source exists
    18697  2020-06-23 12:59:56,604 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/updateOsPrevalidation.sh to 755
    19104  2020-06-23 12:59:57,011 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/updateOsPackages.sh to /tmp/rsa-install-2020-06-23-12-59-40/updateOsPackages.sh
    19104  2020-06-23 12:59:57,011 INFO: source exists
    19764  2020-06-23 12:59:57,671 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/updateOsPackages.sh to 755
    20171  2020-06-23 12:59:58,078 INFO: Copying /tmp/rsa_update/iso/rsa/scripts/updateSSH_Config.sh to /tmp/rsa-install-2020-06-23-12-59-40/updateSSH_Config.sh
    20172  2020-06-23 12:59:58,079 INFO: source exists
    20582  2020-06-23 12:59:58,489 INFO: Changing permissions of /tmp/rsa-install-2020-06-23-12-59-40/updateSSH_Config.sh to 755
    20989  2020-06-23 12:59:58,896 INFO: Performing preUpdate task InvokeGroovy (Pre-upgrade checks)
    20989  2020-06-23 12:59:58,896 INFO:  ** Begin pre-upgrade checks. **
    21680  2020-06-23 12:59:59,587 INFO:  Platform type is: virtual
    Virtual platforms checks
    rsaadmin's password:sda1 is mounted as root partition
    Pre-validation checks passed. Continue with upgrade.
    21680  2020-06-23 12:59:59,587 INFO:  ** Pre-upgrade checks completed. **
    21680  2020-06-23 12:59:59,587 INFO: Performing preUpdate task InvokeGroovy (Config TLS)
    21680  2020-06-23 12:59:59,587 INFO:  ** Begin strict TLS check **
    21681  2020-06-23 12:59:59,588 INFO: Executing CheckValueExists.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/CheckValueExists-20200623125959.log
    21681  2020-06-23 12:59:59,588 INFO: Executing /opt/rsa/am/pgsql/bin/psql
    22351  2020-06-23 13:00:00,258 INFO: The count value of the property is :
    22351  2020-06-23 13:00:00,258 INFO: Run the script to find out if strict TLS mode is enble or not
    23257  2020-06-23 13:00:01,164 INFO: The out value is : STRICT_TLS
    23257  2020-06-23 13:00:01,164 INFO: TLSv1.2 is enable : All the wrapper file will be updated with minimum protocl version TLSv1.2
    23257  2020-06-23 13:00:01,164 INFO: Updated the db values as : TLSv1.2
    23258  2020-06-23 13:00:01,165 INFO: Executing Insert values.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/Insert values-20200623130001.log
    23258  2020-06-23 13:00:01,165 INFO: Executing /opt/rsa/am/pgsql/bin/psql
    23677  2020-06-23 13:00:01,584 INFO: Executing Insert values.  Log output will be found here: /opt/rsa/am/install_logs/dbscripts/Insert values-20200623130001.log
    23678  2020-06-23 13:00:01,585 INFO: Executing /opt/rsa/am/pgsql/bin/psql
    Exception in thread "main" groovy.lang.MissingPropertyException: No such property: properyKeyDefaultCipherListValue for class: UpdateRollback
        at UpdateRollback.preUpdate_InvokeGroovy_Config_TLS(UpdateRollback.groovy:235)
        at UpdateRollback$_preUpdate_closure1.doCall(UpdateRollback.groovy:21)
        at UpdateRollback$_preUpdate_closure1.doCall(UpdateRollback.groovy)
        at Utils.withArtifacts(Utils.groovy:48)
        at Utils$withArtifacts.call(Unknown Source)
        at UpdateRollback.preUpdate(UpdateRollback.groovy:11)
        at com.rsa.plugins.install.GroovyInstallEngine.invokeScript(GroovyInstallEngine.groovy:68)
        at com.rsa.plugins.install.GroovyInstallEngine$_runTask_closure2.doCall(GroovyInstallEngine.groovy:57)
        at com.rsa.plugins.install.GroovyInstallEngine.runTask(GroovyInstallEngine.groovy:56)
        at com.rsa.plugins.install.GroovyInstallEngine$_runTasks_closure3.doCall(GroovyInstallEngine.groovy:106)
        at com.rsa.plugins.install.GroovyInstallEngine.runTasks(GroovyInstallEngine.groovy:105)
        at com.rsa.plugins.install.GroovyInstallEngine$runTasks.call(Unknown Source)
        at com.rsa.plugins.install.CommandLineInstallEngine.main(CommandLineInstallEngine.groovy:40)
    Configuration step UpdateRollback:preUpdate [FAILED]
    [ERROR] Error: Failed to invoke update engine: Failed to prepare the update.
    java.lang.Exception: Failed to prepare the update.
        at com.rsa.am.updateengine.tasks.BaseUpdateEngineTask.doExecute(BaseUpdateEngineTask.java:56)
        at com.rsa.am.updateengine.tasks.Task.execute(Task.java:136)
        at com.rsa.am.updateengine.components.impl.TaskManagerImpl.doExecuteTask(TaskManagerImpl.java:86)
        at com.rsa.am.updateengine.components.impl.TaskManagerImpl.execute(TaskManagerImpl.java:41)
        at com.rsa.am.updateengine.components.impl.UpdateInstallerImpl.run(UpdateInstallerImpl.java:29)
    [INFO] Invoking config engine goal UpdateRollback:postUpdate
    0      2020-06-23 13:00:03,325 INFO: Arguments: [UpdateRollback.postUpdate]
    1924   2020-06-23 13:00:05,249 INFO: Will not attempt to fix line endings in patch source files
    1954   2020-06-23 13:00:05,279 INFO: Script source dir: /tmp/rsa_update/installer/config/src/scripts
    1954   2020-06-23 13:00:05,279 INFO: Patch Script source dir: /tmp/rsa_update/iso/rsa/scripts
    2237   2020-06-23 13:00:05,562 INFO: Reading configuration from Config.groovy
    3050   2020-06-23 13:00:06,375 INFO: Running task UpdateRollback.postUpdate
    9556   2020-06-23 13:00:12,881 INFO: Executing free
    10018  2020-06-23 13:00:13,343 INFO:  output:::              total       used       free     shared    buffers     cached
    Mem:       8193768    7966360     227408     127328      71100    4044608
    -/+ buffers/cache:    3850652    4343116
    Swap:      4193276       5572    4187704
    10018  2020-06-23 13:00:13,343 INFO:  else condition output:::              total       used       free     shared    buffers     cached
    Mem:       8193768    7966360     227408     127328      71100    4044608
    -/+ buffers/cache:    3850652    4343116
    Swap:      4193276       5572    4187704
    10023  2020-06-23 13:00:13,348 INFO: Total Memory: 8193768 KB
    10032  2020-06-23 13:00:13,357 INFO: Using memory category 8GB
    10091  2020-06-23 13:00:13,416 INFO: Patch execution mode is set to: PRE_PHASE_FAILED
    10147  2020-06-23 13:00:13,472 INFO: Performing postUpdate task ServiceControl (Start All Services)
    10147  2020-06-23 13:00:13,472 INFO: Skipping Start_All_Services due to pending OS reboot condition
    10148  2020-06-23 13:00:13,473 INFO: Removing temporary file with patch properties /tmp/patch-properties.tmp
    Configuration step UpdateRollback:postUpdate [SUCCESS]
    Done

     

    Please advise ,

     

    K regards ,

    ns

    0 Likes

    Same error and now it reports TLS strict, so your commands stuck.

     

    I cannot find that exact type of error in prior cases, so I am unable to say what next steps should be yet.

     

    This will likely need a support case so we can really dive in or take a direct look.