Red Hat ENTERPRISE LINUX 5.3 Release Note

Page 1
1
Red Hat Enterprise
Linux 5.3
Release Notes
Release Notes for all architectures.
Ryan Lerch
Copyright © 2008 Red Hat, Inc.. This material may only be distributed subject to the terms and conditions set forth in the Open Publication License, V1.0 or later (the latest version of the OPL is presently available at http://www.opencontent.org/openpub/).
Red Hat and the Red Hat "Shadow Man" logo are registered trademarks of Red Hat, Inc. in the United States and other countries.
All other trademarks referenced herein are the property of their respective owners.
1801 Varsity Drive Raleigh, NC 27606-2072 USA Phone: +1 919 754 3700 Phone: 888 733 4281 Fax: +1 919 754 3701 PO Box 13588 Research Triangle Park, NC 27709 USA
Abstract
This document details the Release Notes for Red Hat Enterprise Linux 5.3.
1. Release Notes Updates .......................................................................................................... 2
1.1. Feature Updates .......................................................................................................... 2
1.2. Resolved Issues ........................................................................................................... 6
1.3. Driver Updates ............................................................................................................. 6
1.4. Virtualization ................................................................................................................ 7
1.5. Known Issues .............................................................................................................. 7
1.6. Technology Previews ................................................................................................... 9
2. Installation-Related Notes ...................................................................................................... 10
2.1. All Architectures ......................................................................................................... 10
2.2. PowerPC Architectures ............................................................................................... 12
2.3. s390x Architectures .................................................................................................... 12
2.4. ia64 Architecture ........................................................................................................ 13
3. Feature Updates ................................................................................................................... 13
4. Driver Updates ...................................................................................................................... 20
4.1. All Architectures ......................................................................................................... 20
5. Kernel-Related Notes ............................................................................................................ 24
Page 2
Release Notes
2
5.1. All Architectures ......................................................................................................... 24
5.2. x86 Architectures ........................................................................................................ 25
5.3. PowerPC Architectures ............................................................................................... 26
5.4. x86_64 Architectures .................................................................................................. 26
5.5. s390x Architectures .................................................................................................... 26
5.6. ia64 Architecture ........................................................................................................ 27
6. Virtualization ......................................................................................................................... 27
6.1. Feature Updates ........................................................................................................ 27
6.2. Resolved Issues ......................................................................................................... 28
6.3. Known Issues ............................................................................................................ 30
7. Technology Previews ............................................................................................................ 32
8. Resolved Issues ................................................................................................................... 36
8.1. All Architectures ......................................................................................................... 36
8.2. x86_64 Architectures .................................................................................................. 39
8.3. s390x Architectures .................................................................................................... 39
8.4. PowerPC Architectures ............................................................................................... 39
9. Known Issues ....................................................................................................................... 39
9.1. All Architectures ......................................................................................................... 39
9.2. x86 Architectures ........................................................................................................ 47
9.3. x86_64 Architectures .................................................................................................. 48
9.4. PowerPC Architectures ............................................................................................... 48
9.5. s390x Architectures .................................................................................................... 49
9.6. ia64 Architecture ........................................................................................................ 50
10. Added Packages ................................................................................................................ 50
11. Dropped Packages ............................................................................................................. 68
12. Updated Packages ............................................................................................................. 70
13. Configuration Changes From Previous Release ................................................................. 210
A. Revision History 239
1. Release Notes Updates
This section contains information about Red Hat Enterprise Linux 5.3 that did not make it into the Release Notes included in the distribution.
1.1. Feature Updates
audit Update
The audit packages contain user-space utilities for storing and searching the audit records generated by the audit subsystem in the Linux 2.6 kernel.
These updated packages upgrade the auditd daemon and its utilities to the newer upstream version 1.7.7, which provides the following enhancements over the previous version:
• the auditctl program, which is used to control the behavior of the audit subsystem, now supports multiple keys in the audit rules.
• a new utility, ausyscall, which is used to cross-reference syscall name and number information, is now provided in these updated packages.
• the aureport program has been enhanced to provide reports about keys it sees in audit events.
• event log parsing for the ausearch and aureport programs has been improved.
Page 3
Feature Updates
3
• a sample STIG rules file, named "stig.rules", is newly provided in these updated packages. This file contains the auditctl rules which are loaded whenever the audit daemon is started by init scripts.
In addition to the listed enhancements, these updated audit packages also include a new feature to allow a server to aggregate the logs of remote systems. The following instructions can be followed to enable this feature:
1. The audispd-plugins package should be installed on all clients (but need not be installed
on the server), and the parameters for "remote_server" and "port" should be set in the /etc/ audisp/audisp-remote.conf configuration file.
2. On the server, which aggregates the logs, the "tcp_listen_port" parameter in the /etc/audit/
auditd.conf file must be set to the same port number as the clients.
3. Because the auditd daemon is protected by SELinux, semanage (the SELinux policy
management tool) must also have the same port listed in its database. If the server and client machines had all been configured to use port 1000, for example, then running this command would accomplish this:
semanage port -a -t audit_port_t -p tcp 1000
4. The final step in configuring remote log aggregation is to edit the /etc/hosts.allow configuration
file to inform tcp_wrappers which machines or subnets the auditd daemon should allow connections from.
wpa_supplicant re-base
wpa_supplicant has been re-based to the latest upstream stable version 0.5.10 and include backported fixes for a number of issues that may affect users of wireless drivers that depend on the kernel's mac80211 wireless stack. Specific fixes and enhancements include:
• Support for a D-Bus control interface has been added. D-Bus is a popular lightweight Inter­Process Communication mechanism, and the addition of this control interface to wpa_supplicant allows applications (like NetworkManager) to more reliably control the supplicant.
• Cisco Aironet 340/350 wireless cards were not able to successfully connect to 802.1x-enabled wireless networks, often used in security sensitive organizations. During the connection process at the 4-Way WPA handshake stage, sending encryption keys to the driver would clear the wireless card firmware's authentication state. With this update, the supplicant uses an alternate method of supplying encryption keys to the kernel driver, allowing authentication state to be preserved in the Aironet firmware and 802.1x connections to succeed.
• Kernel drivers utilizing the new mac80211 wireless stack were sometimes unable to connect to wireless networks, either failing to find the requested network, or prematurely ending communication with the wireless access point during the connection process. Some drivers were prone to reporting multiple disconnection events during the association process, confusing the supplicant and causing long timeouts. The supplicant also did not sufficiently instruct the driver to disconnect when switching access points. This update fixes these issues and, in conjunction with kernel driver updates, allow more wireless hardware to successfully connect to wireless networks.
Page 4
Release Notes
4
NetworkManager re-base
NetworkManager has been updated to version 0.7.0. This update provides the following fixes and enhancements:
• NetworkManager would not display a LEAP password, even when the user selected the "show password" option. This has been fixed through a rebase to NetworkManager 0.7.
• During the beta phase, a version of NetworkManager was unable to automatically start network interfaces for which "ONBOOT=no" was present in the ifcfg file. NetworkManager now ignores this value unless "NM_RESPECT_ONBOOT=yes" is also present.
• a NetworkManager plug-in was named for its upstream repository. This could cause end-users to mistake the plug-in for an un-supported addition to Red Hat Enterprise Linux. This plug-in has been renamed to "ifcfg-rh".
• with this update, support has been added to NetworkManager for wired 802.1x authentication. However, after creating an 802.1x-enabled wired connection in the NetworkManager connection editor, it may be necessary to log out, then log back in before the connection can be used from the NetworkManager applet menu.
• NetworkManager attempted to set a hostname, but only after X had already done so. The user could not then open new windows because the authority files had been set by X with a different hostname. NetworkManager no longer sets hostnames.
• an update for NetworkManager that was available in the beta phase would change the run level enablement of the package during installation, and thus prevent NetworkManager from starting. NetworkManager no longer changes run level enablements during installation.
• on a system with more than one network adapter, network keys saved by the user while connecting with one adapter would not be available when the user attempted to connect with the other adapter. NetworkManager can now retrieve and use network keys saved for a different adapter on the same network.
• previously, NetworkManager would not always prompt the user for a new network key if the protocol or key of a wireless network changed. Although NetworkManager would wait for a new key, it would not always open a dialog box and allow the user to provide one. NetworkManager will now open a dialog box when needed.
• several bug fixes and enhancements for NetworkManager were available upstream. NetworkManager has been rebased to version 0.7 to incorporate these improvements, including mobile broadband functionality, Phase2 WPA support, and static IP functionality.
• NetworkManager would would cause a segmentation fault when resuming a session. This was caused by the HAL dropping privileges before connecting to D-Bus, meaning that the HAL could not send signals to NetworkManager. NetworkManager now explicitly permits signals from the HAL.
• sometimes, X would freeze if the NetworkManager menu and a keyring manager window were open at the same time. This updated package includes a patch from upstream that prevents this behavior.
• if NetworkManager requires a network key from the user, it will open a pop-up window. However, the applet previously could not steal focus from metacity and would remain in the
Page 5
Feature Updates
5
background. The window was therefore not obvious to the user. The applet now opens in the foreground, alerting the user to take action.
• when resuming, NetworkManager could sometimes re-establish a wireless connection, but not a route. A fix for this problem from upstream has been included in this update.
• NetworkManager did not previously support Cisco Airo Wi-Fi cards, as these devices did not respond to NetworkManager's attempts to detect them. NetworkManager can now detect and use these cards.
• the NetworkManager applet would wake up and redraw its icon once per second, even when NetworkManager was not active. Now, the applet will not wake up unless NetworkManager is running.
• NetworkManager 0.7 connects faster than libnotify can provide a notification bubble. When this happens, the bubble will appear at the top left corner of the screen, rather than under the taskbar. NetworkManager notification bubbles are now delayed for a few seconds, allowing libnotify to react.
dbus-glib re-base
The dbus-glib integration library has been re-based to version 0.73.8 This update provides support to updated versions of NetworkManager and also implements the following bugfix and enhancements
• cleanup of the DBusGProxy objects treated pending remote method calls incorrectly and may have resulted in freeing invalid memory. Consequently, processes using DBusGProxy objects may have crashed when the DBusGProxy object was freed. With this update dbus-glib correctly handles the destruction of DBusGProxy objects, resolving this issue.
• two new function calls, dbus_g_proxy_call_with_timeout and dbus_g_proxy_begin_call_with_timeout, have been added to dbus-glib providing the ability to specify a timeout when making a request to a remote service.
• dbus-binding-tool now ignores namespaced Extensible Markup Language (XML) nodes when processing introspection definition files.
sudo Re-base
sudo has been re-based to upstream version 1.6.9. This version of sudo now supports LDAP, and allows sub-tree searching instead of just base searching (i.e. tree-level only) for sudo rights. This allows administrators to categorize sudo rights in a tree, making user privileges easier to manage.
Note
the env_reset sudoers option from newer sudo will reset the PATH environment variable. This is different from the behaviour in sudo-1.9.8. To keep the old behaviour simply add PATH variable into env_keep in sudoers file.
LVM-based Cluster mirroring
With this update, the ability to create LVM mirrors in a cluster environment (i.e. while using CLVM) is now available in Red Hat Enterprise Linux It provides for simultaneous access from multiple cluster machines, like when using a cluster-aware file system. This solution is compatible with existing single-machine mirrors. When switching a mirrored logical volume between single­machine and cluster-aware, no resynchronization is necessary.
Page 6
Release Notes
6
1.2. Resolved Issues
• system-config-network requires the fonts provided with xorg-x11-fonts-Type1 in order to display. However, this fonts package was not previously set as a dependency for system- config-network and it was therefore possible (for example, in the case of a minimal installation) for system-config-network to be present on a system and yet unable to function because these fonts were missing. This update sets xorg-x11-fonts-Type1 as a dependency for system- config-network to ensure that these fonts will be available and that system-config-network will display correctly.
• In Red Hat Enterprise Linux 5.2, a 64-bit version of httpd was included in addition to the existing 32-bit httpd in the PowerPC architecture. If a user installed both versions, an httpd conflict would occur, preventing httpd from functioning properly.
To resolve this issue, the 64-bit version of httpd has been removed from this release. Any systems with the previous 64-bit version of httpd installed should remove the package before upgrade.
1.3. Driver Updates
• the SCSI device handler infrastructure (scsi_dh) has been updated, providing added support for LSI RDAC SCSI based storage devices.
• the tg3 driver for Broadcom Tigon3 ethernet devices has been updated to version 3.93. This applies several upstream changes for new hardware. However, the 5785 hardware is not fully supported. This device may be detected by the driver, but lack of PHY support may cause these chips to not function correctly and may require the user disable any on-board 5785 cards in the system BIOS.
• scsi-target-utils now features iSCSI Extensions for RDMA (iSER), which is based on the Linux Target (tgt) framework. iSER is included in this release as a Technology Preview, and provides capabilities for both single and multiple portals on different subnets. Note, however, that there are known bugs with using multiple portals on the same subnet.
To set up an iSER target component, install the scsi-target-utils and libibverbs- devel packages. The corresponding library package for your system's Infiniband hardware is also required. For example, in HCAs that use the cxgb3 driver the libcxgb3 package is needed, and for HCAs using the mthca driver the libmthca package is need.
• The MPT Fusion driver has been updated to version 3.04.06, providing the following bugfixes and enhancements:
• Previously, the MPT Fusion driver always allocated I/O resources, even if they were not required,
which may have caused issues in low resource environments. With this update, the driver now uses the pci_enable_device_mem and pci_enable_device functions to differentiate the resource allocations.
• Previously, the kernel would panic when the mptsas and mptcl modules were loaded in parallel.
With this update, this issue has been resolved.
• Previously, system power state changes (such as hibernation and standby) were not functioning
correctly with 106XE controllers. With this update, the driver has been modified to free and allocate resources in power management entry points.
Page 7
Virtualization
7
1.4. Virtualization
• A bug in the IDE/ATA driver stack that could prevent a system using kernel-xen from booting into the kdump environment is now fixed. In previous releases, this occurred if the system encountered a kernel panic while an IDE device was performing I/O and the IDE device was being controlled by a device driver other than libata.
• A softlockup may have occurred when creating a guest with a large amount of memory. Consequently, a call trace of the error was displayed on both the dom0 and the other guest. In this update, this issue has been resolved.
• On systems with large amounts of memory (ie 256GB or more), setting up the dom0 could exhaust the hypervisor memory heap. To work around this, the xenheap and dom0_size command line arguments had to be set to valid values for the system. In this update, the hypervisor has been updated to automatically set these values to a default of 32GB, which resolves this issue.
• Due to technical problems with passing TX checksum offload information between paravirtual domains, the use of TX checksum offload in conjunction with NAT for traffic originating from another domain is not supported. TX checksum offload can be used together with NAT as long as the NAT rule is applied in the domain where the traffic originates.
Note that this also applies to fully virtualised domains using paravirtual network drivers. Fully virtualised domains using fully virtualised drivers are not affected as they do not support TX checksum offload at all.
1.5. Known Issues
• Previous versions of the 5.3 Release Notes stated that the CD-ROM/DVD-ROM unit on Dell PowerEdge R905 servers does not work with Red Hat Enterprise Linux 5. This note was included by
error, and does not apply to Red Hat Enterprise Linux 5.3.
• kdump now serializes drive creation registration with the rest of the kdump process. Consequently, kdump may hang waiting for IDE drives to be initialized. In these cases, it is recommended that IDE disks not be used with kdump.
• Improvements have been made to the 'nv' driver, enhancing suspend and resume support on some systems equipped with nVidia GeForce 8000 and 9000 series devices. Due to technical limitations, this will not enable suspend/resume on all hardware.
• pirut sorts some package lists using the textual representation of a package, which is inconsistent with the textual representation method used in yum. As such, some package lists (e.g. Optional Packages list) in pirut may not display names in alphabetical order.
• The Hypervisor outputs messages regarding attempts by any guest to write to an MSR. Such messages contain the statement Domain attempted WRMSR. These messages can be safely ignored; furthermore, they are rate limited and should pose no performance risk.
• When upgrading from Red Hat Enterprise Linux 4 Workstation to 5 Server, OpenOffice will no longer work correctly with SELinux. This is because the Red Hat Enterprise Linux version of OpenOffice is built using an incorrect library. As a result, SELinux will prevent OpenOffice from accessing any shared libraries, causing OpenOffice to fail.
To work around this, update the SELinux context to allow OpenOffice to access shared libraries. To do so, run the following commands:
Page 8
Release Notes
8
semanage fcontext -a -t textrel_shlib_t '/usr/lib/ooo-1.1(/.*)?'
semanage fcontext -a -t textrel_shlib_t '/usr/lib64/ooo-1.1(/.*)?'
restorecon -Rv /usr/lib/ooo-1.19
restorecon -Rv /usr/lib64/ooo-1.19
Alternatively, you can also upgrade your OpenOffice to a correct version compatible with SELinux in Red Hat Enterprise Linux 5. You can do this by subscribing to the "Productivity App" child channel in Red Hat Network and running the following command:
yum install openoffice­{base,calc,draw,emailmerge,graphicfilter,headless,impress,javafilter,math,pyuno,writer,xsltfilter}
• If jumbo frames are enabled on your system, a kernel panic will occur if you attempt to unload the
bnx2 module.
• Red Hat advises that you avoid removing a block device from a guest while the device is in use. Doing so causes Xend to lose domain information for the guest.
• Accessing the right-click menu of the NetworkManager GNOME applet may cause the GNOME Keyring Unlock dialog to appear. When this occurs, no XII applications can receive keyboard or mouse input.
To recover from this, switch to a virtual terminal using Ctrl+Alt+F1. Log in as the affected user (or root) and run killall -9 nm-applet. Then, switch back to X11 using Ctrl+Alt+F7. Your system should be able to receive keyboard and mouse input, although Red Hat recommends that you logout and login again to allow the system to fully recover.
• On Altix systems with an ATI FireMV graphics adapter, the GUI console may not display on one of the VGA connectors. To workaround this issue, switch to using the other VGA connector on the dongle.
• It has been determined that 1024 byte objects in kernel slab may be lost when a call to pipe() fails. The problem occurs because pipe() allocates pipe files, and then tries to get free file descriptors for them. If the process is out of file descriptors, pipe() fails, but it does not clean up properly. A fix for this problem is planned for a forthcoming 5.3 kernel update.
To workaround this issue, ensure that the process calling do_pipe has adequate file descriptors allocated.
This issue has been observed with multipathd in particular. To avoid the problem with multipathd, calculate the number of file descriptors (FDs) required using the formula: "FDs = Number of Paths + 32". If the result is greater than the default value of 1024, then the max_fds value in the defaults section of multipath.conf should be set to the previously calculated value. For example, if there are 255 LUNs with 8 paths each, the line to be added to the defaults section of multipath.conf would be:
max_fds 2072
• The libcmpiutil-devel package depends on tog-pegasus-devel, which for the Red Hat Enterprise Linux Desktop product is only available from the Workstation option. Therefore, any
Page 9
Technology Previews
9
attempt to install the libcmpiutil-devel package on a system that does not have a Subscription including the Workstation option or is not subscribed to the Workstation channel on the Red Hat Network, will fail with an unresolved dependency error.
• It is possible in rare circumstances, for makedumpfile to produce erroneous results but not have them reported. This is due to the fact that makedumpfile processes its output data through a pipeline consisting of several stages. If makedumpfile fails, the other stages will still succeed, effectively masking the failure. Should a vmcore appear corrupt, and makedumpfile is in use, it is recommended that the core be recorded without makedumpfile and a bug be reported.
• An issue may be encountered when using system-config-cluster to configure a Postgres 8 resource agent, resulting in the postgresql service failing to start. To include a Postgres resource agent in your cluster, please check the man page for the agent, and edit the cluster.conf file in an editor, then update the cluster with the new configuration file using the appropriate cman_tool command.
• Due to outstanding driver issues with hardware encryption acceleration, users of Intel WiFi Link 4965, 5100, 5150, 5300, and 5350 wireless cards are advised to disable hardware accelerated encryption using module parameters. Failure to do so may result in the inability to connect to Wired Equivalent Privacy (WEP) protected wireless networks after connecting to WiFi Protected Access (WPA) protected wireless networks.
To do so, add the following options to /etc/modprobe.conf:
alias wlan0 iwlagn options iwlagn swcrypto50=1 swcrypto=1
(where wlan0 is the default interface name of the first Intel WiFi Link device)
• kdump now restarts when CPUs or DIMMs are hot-added to a system. If multiple items are added at the same time, several sequential restarts may be encountered. This behavior is intentional, as it minimizes the time-frame where a crash may occur while memory or processors are not being tracked by kdump.
1.6. Technology Previews
Software based Fibre Channel over Ethernet (FCoE)
The Fibre Channel over Ethernet (FCoE) driver (fcoe.ko), along with libfc, provides the ability to run FCoE over a standard Ethernet card. This capability is provided as a technical preview in Red Hat Enterprise Linux 5.3.
To enable this feature, you must login by writing the network interface name to the /sys/ module/fcoe/parameters/create file, for example:
echo eth6 > /sys/module/fcoe/parameters/create
To logout, write the network interface name to the /sys/module/fcoe/parameters/destroy file, for example:
Page 10
Release Notes
10
echo eth6 > /sys/module/fcoe/parameters/destroy
For further information on software based FCoE refer to: http://www.open-fcoe.org/openfc/wiki/
index.php/FCoE_Initiator_Quickstart.
Red Hat Enterprise Linux 5.3 provides full support for FCoE on three specialized hardware implementations. These are: Cisco fnic driver, the Emulex lpfc driver, and the Qlogic qla2xx driver.
iSER Support
iSER support, allowing for block storage transfer across a network, has been added to the scsi- target-utils package as a Technology Preview. In this release, single portal and multiple portals on different subnets are supported. There are known bugs when using multiple portals on the same subnet.
To set up the iSER target component install the scsi-target-utils and libibverbs-devel RPM. The library package for the InfiniBand hardware that is being used is also required. For example: host channel adapters that use the cxgb3 driver the libcxgb3 package is needed, and for host channel adapters using the mthca driver the libmthca package is needed.
There is also a known issue relating to connection timeouts in some situations. Refer to Red Hat
Bugzilla #4706271 for more information on this issue.
2. Installation-Related Notes
This section includes information specific to Anaconda and the installation of Red Hat Enterprise Linux 5.3.
Red Hat Network can install the new and changed packages and upgrade an existing Red Hat Enterprise Linux 5 system. Alternatively, Anaconda can upgrade an existing Red Hat Enterprise Linux 5 system or perform a fresh installation of Red Hat Enterprise Linux 5.3.
Note: upgrading from beta releases of Red Hat Enterprise Linux 5.3 to this GA release is not supported.
Further, although Anaconda provides an option for upgrading from earlier major versions of Red Hat Enterprise Linux to Red Hat Enterprise Linux 5.3, Red Hat does not currently support this. More generally, Red Hat does not support in-place upgrades between any major versions of Red Hat Enterprise Linux. (A major version is denoted by a whole number version change. For example, Red Hat Enteprise Linux 4 and Red Hat Enterprise Linux 5 are both major versions of Red Hat Enterprise Linux.)
In-place upgrades across major releases do not preserve all system settings, services or custom configurations. Consequently, Red Hat strongly recommends fresh installations when upgrading from one major version to another.
2.1. All Architectures
• The Text Mode installation of Anaconda now offers the option of switching to Virtual Network Computing (VNC) to complete the installation.
1
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=470627
Page 11
All Architectures
11
• Creating or using encrypted software RAID member disks (i.e. software RAID partitions) is not supported. However, creating encrypted software RAID arrays (e.g. /dev/md0) is supported.
• The NFS default for RHEL5 is "locking". Therefore, to mount nfs shares from the %post section of anaconda, use the mount -o nolock,udp command to start the locking daemon before using nfs to mount shares.
• When installing from CD-ROM or DVD-ROM on a system with an iBFT-configured network device, Anaconda will not include any iBFT-configured storage devices unless networking is configured. To enable networking for the installation, use the command linux updates=http://[any] at the installation boot prompt. Note that [any] can be replaced with any URL.
If your system requires a static IP configuration, use the command linux updates=http://[any] ip=[IP address] netmask=[netmask] dns=[dns].
• When installing Red Hat Enterprise Linux 5.3 on a fully virtualized guest, do not use the kernel- xen kernel. Using this kernel on fully virtualized guests can cause your system to hang.
If you are using an Installation Number when installing Red Hat Enterprise Linux 5.3 on a fully virtualized guest, be sure to deselect the Virtualization package group during the installation. The Virtualization package group option installs the kernel-xen kernel.
Note that paravirtualized guests are not affected by this issue. Paravirtualized guests always use the kernel-xen kernel.
• If you are using the Virtualized kernel when upgrading from Red Hat Enterprise Linux 5 to 5.2, you must reboot after completing the upgrade. You should then boot the system using the updated Virtualized kernel.
The hypervisors of Red Hat Enterprise Linux 5 and 5.2 are not ABI-compatible. If you do not boot the system after upgrading using the updated Virtualized kernel, the upgraded Virtualization RPMs will not match the running kernel.
• When upgrading to Red Hat Enterprise Linux 5.1 or later from Red Hat Enterprise Linux 4.6, gcc4 may cause the upgrade to fail. As such, you should manually remove the gcc4 package before upgrading.
• The firstboot language plugin has been removed, as it does not properly and completely reconfigure the system when a new language is selected.
• When provisioning guests during installation, the RHN tools for guests option will not be available. When this occurs, the system will require an additional entitlement, separate from the entitlement used by dom0.
To prevent the consumption of additional entitlements for guests, install the rhn- virtualization-common package manually before attempting to register the system to Red Hat Network.
• Installing Red Hat Enterprise Linux 5.3 on a system with multiple network interfaces and manually specified IPv6 addresses may result in a partially incorrect networking setup. When this occurs, your IPv6 settings will not be visible on the installed system.
To work around this, set NETWORKING_IPV6 to yes in /etc/sysconfig/network. Then, restart your network connection using the command service network restart.
Page 12
Release Notes
12
• If your system has yum-rhn-plugin-0.5.2-5.el5_1.2 (or an earlier version) installed, you will be unable to upgrade to Red Hat Enterprise Linux 5.3 through yum update. To work around this, upgrade your yum-rhn-plugin to the latest version (using yum update yum-rhn-plugin) before running yum update.
• Previously, anaconda could not access more than 8 SmartArray controllers. In this update, this issue has been resolved.
• A driver disk, supplied by an OEM, is a single image file (*.img), containing potentially multiple driver packages and kernel modules. These drivers are used during installation to support hardware that otherwise would not be recognized by Red Hat Enterprise Linux 5. Once the driver packages and kernel modules are installed on the system, they are placed in the initial RAM disk (initrd) so that they are loaded when the system boots.
With this release, installation can automatically detect a driver disk (based on its file system label), thereby using the content of that disk during installation. This behavior is controlled by the installation command line option dlabel=on, which enables the automatic search. dlabel=on is the default setting for this release.
All block devices with the file system label OEMDRV are examined and drivers are loaded from these devices in the order by which they are detected.
• Existing encrypted block devices that contain vfat file systems will appear as type foreign in the partitioning interface; as such, these devices will not be mounted automatically during system boot. To ensure that such devices are mounted automatically, add an appropriate entry for them to /etc/ fstab. For details on how to do so, refer to man fstab.
2.2. PowerPC Architectures
• The minimum RAM required to install Red Hat Enterprise Linux 5.2 is 1GB; the recommended RAM is 2GB. If a machine has less than 1GB RAM, the installation process may hang.
Further, PowerPC-based machines that have only 1GB of RAM experience significant performance issues under certain RAM-intensive workloads. For a Red Hat Enterprise Linux 5.2 system to perform RAM-intensive processes optimally, 4GB of RAM is recommended. This ensures the system has the same number of physical pages as was available on PowerPC machines with 512MB of RAM running Red Hat Enterprise Linux 4.5 or earlier.
2.3. s390x Architectures
• anaconda now supports both ports on CHPID for OSA Express3 cards. The installer will prompt for the port number in the initial stage of the installation. The value provided for the port also affects installed network interface startup script. When port 1 is selected, the value portno=1 is added to OPTIONS parameter of ifcfg-eth* file.
Note
When installing under z/VM, you can add either PORTNO=0 (to use port 0) or PORTNO=1 (to use port 1) to the CMS configuration file to avoid being prompted for the mode.
Page 13
ia64 Architecture
13
• Installation on a machine with existing Linux or non-Linux filesystems on DASD block devices may cause the installer to halt. If this happens, it is necessary to clear out all existing partitions on the DASD devices you want to use and restart the installer.
2.4. ia64 Architecture
• If your system only has 512MB of RAM, attempting to install Red Hat Enterprise Linux 5.3 may fail. To prevent this, perform a base installation first and install all other packages after the installation finishes.
• Using yum to install packages from the 32-bit Compatibility Layer disc may fail. If it does, it is because the Red Hat package signing key was not imported into the RPM database. This happens if you have not yet connected to Red Hat Network and obtained updates. To import the key manually, run the following command as root:
rpm --import /etc/pki/rpm-gpg/RPM-GPG-KEY-redhat-release
Once the Red Hat GPG key is imported, you may now use yum to install packages from the 32-bit Compatibility Layer disc.
Note that when installing from this disc, it is advisable to use yum instead of rpm to ensure that base OS dependencies are addressed during installation.
3. Feature Updates
Block Device Encryption
Red Hat Enterprise Linux 5.3 includes support for block device encryption using the Linux Unified Key Setup (LUKS) specification. Encrypting a device protects all data on a block device against unauthorized access, even if the device has been physically removed from a system. To access the contents of an encrypted device, a user must provide a passphrase or key as authentication.
For information on setting up disk encryption, refer to Chapter 28 of the Red Hat Enterprise Linux Installation Guide at: http://redhat.com/docs/
mac80211 802.11a/b/g WiFi protocol stack (mac80211)
The mac80211 stack (formerly known as the devicescape/d80211 stack) is now a supported feature in Red Hat Enterprise Linux 5.3. It enables the iwlwifi 4965GN wireless driver for Intel® WiFi Link 4965 hardware which allows certain wireless devices to connect to any WiFi network.
Although the mac80211 component is supported in Red Hat Enterprise Linux 5.3, the symbols are not included in the symbol whitelist for the kernel.
Global File System 2 (GFS2)
GFS2 is an incremental advancement of GFS. This update applies several significant improvements that require a change to the on-disk file system format. GFS file systems can be converted to GFS2 using the utility gfs2_convert, which updates the metadata of a GFS file system accordingly.
In Red Hat Enterprise Linux 5.2, GFS2 was provided as a kernel module for evaluation purposes. In Red Hat Enterprise Linux 5.3, GFS2 is now part of the kernel package. If the Red Hat Enterprise Linux 5.2 GFS2 kernel modules have been installed they must be removed to use GFS2 in Red Hat Enterprise Linux 5.3.
Page 14
Release Notes
14
Improvements in Driver Disk Support
A driver disk, supplied by an OEM, is a single image file (*.img), containing potentially multiple driver RPMs and kernel modules. These drivers are used during installation to support hardware that otherwise would not be recognized. The RPMs are installed on the system and placed into the initrd so that they are supported when the machine reboots.
With Red Hat Enterprise Linux 5.3, installation can automatically detect the presence of a driver disk based on its file system label, and use the content of that disk during installation. This behavior is controlled by the installation command line option dlabel=on, which enables the automatic search. All block devices with the file system label OEMDRV are examined and drivers are loaded from these devices in the order in which they are encountered.
iSCSI Boot Firmware Table
Red Hat Enterprise Linux 5.3 now fully supports the iSCSI Boot Firmware Table (iBFT) which allows for booting from iSCSI devices. This support required that iSCSI disks (nodes) are no longer marked to start up automatically; the installed system will no longer automatically connect and login to iSCSI disks when entering runlevel 3 or 5.
iSCSI is usually used for the root filesystem, in which case this change does does not make a difference as the initrd will connect and login to the needed iSCSI disks even before the runlevel is entered.
However if iSCSI disks need to be mounted on non root directories, for example /home or /srv, then this change will impact you, since the installed system will no longer automatically connect and login to iSCSI disks that are not used for the root filesystem.
Using iSCSI disks mounted on non root directories is still possible, but requires the use of one of the following workarounds:
1. Install the system without use of iSCSI disks mounted on non root directories and later configure the relevant disks and mount points manually
2. Boot the installed system into runlevel 1, and mark any iSCSI disks that are not used for the root filesystem for automatic startup by using the following command once per disk:
iscsiadm -m node -T target-name -p ip:port -o update -n node.startup
-v automatic
rhythmbox
the rhythmbox audio player has been updated to version 0.11.6. This update provides the option to use proprietary GStreamer plugins.
lftp Rebase
lftp has now been rebased to version 3.7.1. This applies several upstream feature updates and bug fixes, including:
• A security flaw in the way lftp quoted scripts generated by mirror --script (which could
cause unauthorized privilege escalation) is now fixed.
• Using lftp with the option -c no longer causes lftp to hang.
• lftp no longer corrupts files during a transfer when using sftp.
For more information on lftp updates applied in this release, refer to http://lftp.yar.ru/news.html.
Page 15
Feature Updates
15
TTY Input Auditing
TTY input auditing is now supported. If a process is marked for TTY input auditing, the data it reads from TTYs is audited; this will show up on audit records with type TTY.
You can use the pam_tty_audit module to mark a process (and its child processes) for TTY input auditing. For instructions on how to do this, refer to man pam_tty_audit(8).
The TTY audit records contain the exact keystrokes read by the audited process. To make data decoding easier, bash audits the exact command line using the record type USER_TTY.
The "TTY" audit records contain all data read by audited processes from the TTY. This includes data inserted into the input stream by the TIOCSTI ioctl system call.
SystemTap Re-base
SystemTap has been re-based to version 0.7.2. This update of SystemTap introduces several minor improvements, along with a few major features. These new features include:
• SystemTap now supports symbolic probing on x86, x86-64 and PowerPC architectures. This enables SystemTap scripts to place probes into user-space applications and shared libraries. As a result, SystemTap can now provide the same level of debugger probing on some user-space applications as kernel probing.
For example, if coreutils-debuginfo is installed, you can print a callgraph of the
ls command using /usr/share/doc/systemtap-version/examples/general/ callgraph.stp, as in:
stap para-callgraph.stp 'process("ls").function("*")' -c 'ls -l'
In order to reduce the likelihood of an undetected version mismatch between the binary and its debuginfo RPMs, Red Hat advises that you set the SYSTEMTAP_DEBUGINFO_PATH environment variable to the value +:.debug:/usr/lib/debug:build.
SystemTap's support for symbolic probes also extends to markers placed into the kernel of this release. To use these markers, load the kernel-trace kernel module in /etc/rc.local (using modprobe kernel-trace).
• SystemTap also supports remote compilation services. This enables a single computer on the network to act as a debuginfo/compiler server for local SystemTap clients. The clients auto-locate the server using mDNS (avahi), and only need the systemtap-client and systemtap-runtime packages to work.
At present, this feature does not use security mechanisms like encryption. As such, it is advisable to use remote compilation services only within trusted networks. For more information, refer to man stap-server.
• The kernel update for this release includes a kernel API extension that significantly improves shutdown of SystemTap scripts. This added kernel API extension eliminates unnecessary synchronization between individual probe removal operations. As a result, SystemTap scripts that have hundreds of kernel probes are processed much faster.
This is especially useful for administrators that use scripts with probes containing wildcards that capture numerous kernel events, such as probe syscall.* {}.
For a complete list of SystemTap updates included in this release, refer to the following URL:
Page 16
Release Notes
16
http://sources.redhat.com/git/gitweb.cgi?p=systemtap.git;a=blob_plain;f=NEWS;hb=rhel53
Cluster Manager Update
The Cluster Manager utility (cman) has been updated to version 2.0.97. This applies several bug fixes and enhancements, most notably:
• cman now uses the following firmware versions: APC AOS v3.5.7 and APC rpdu v3.5.6. This fixes a bug that prevented the APC 7901 from using simple network management protocol (SNMP) properly.
• fence_drac, fence_ilo, fence_egenera, and fence_bladecenter agents now support ssh.
• fence_xvmd key files can now be reloaded without restarting.
• A single fence method can now support up to 8 fence devices.
RPM Re-Base
The RedHat Package Manager (RPM) is now re-based to the Fedora 9 upstream version. rpm now adds secondary architecture-specific macro files on multi-arch systems. In addition, rpm now meets all certification criteria for inclusion in Red Hat Enterprise Linux 5.
This update also applies several upstream enhancements and bug fixes to rpm, including:
• rpm no longer generates unnecessary .rpmnew and .rpmsave files on multi-arch systems.
• A bug in the rpmgiNext() function of rpm prevented proper error reporting. This update applies the proper semantics for error reporting, thereby ensuring that rpm returns the correct exit code in all instances.
Open Fabrics Enterprise Distribution (OFED) / opensm
opensm has been updated to the upstream version 3.2, including a minor change to the opensm library API.
• The format of the opensm.conf file has changed. If you have made custom modifications to your existing opensm.conf, rpm will automatically install the new opensm.conf file as /etc/ ofed/opensm.conf.rpmnew. You will need to migrate your modifications to this file and then replace the existing opensm.conf file with the result.
• Red Hat closely tracks the upstream Open Fabrics Enterprise Distribution (OFED) code base in order to provide a maximal level of enablement for this still evolving technology. As a consequence, Red Hat can only preserve API/ABI compatibility across minor releases to the degree that the upstream project does. This is an exception from the general practice in the development of Red Hat Enterprise Linux.
Because of this, applications build on top of the OFED stack (listed below), might require recompilation or even source-level code changes when moving from one minor release of Red Hat Enterprise Linux to a newer one.
This generally is not required for other applications, built on the Red Hat Enterprise Linux software stack. The components affected are:
• dapl
• compat-dapl
Page 17
Feature Updates
17
• ibsim
• ibutils
• infiniband-diags
• libcxgb3
• libehca
• libibcm
• libibcommon
• libibmad
• libibumad
• libibverbs
• libipathverbs
• libmlx4
• libmthca
• libnes
• librmdacm
• libsdp
• mpi-selector
• mpitests
• mstflint
• mvapich
• mvapich2
• ofed-docs
• openib
• openib-mstflint
• openib-perftest
• openib-tvflash
• openmpi
• opensm
• perftest
Page 18
Release Notes
18
• qlvnictools
• qperf
• rds-tools (future)
• srptools
• tvflash
Net-SNMP Re-Base
Net-SNMP has been re-based to upstream version 5.3.2.2. This update adds Stream Control Transmission Protocol (SCTP) support (as per RFC 3873, http://www.ietf.org/rfc/rfc3873.txt) and introduces two new configuration options (to be used in /etc/snmpd.conf):
• dontLogTCPWrappersConnects — suppresses logging of connection attempts.
• v1trapaddress — enables administrators to set an agent's IP address inside outgoing SNMP traps.
This update also features several bug fixes from upstream, including:
• The snmpd daemon now functions properly on systems with more than 255 network interfaces. In addition, snmpd also reports an error now when it is configured to listen on any port higher than 65535.
• A race condition that caused the snmpd daemon to leak file descriptors when reading from / proc is now fixed.
• The snmpd daemon now correctly reports hrProcessorLoad object IDs (OID), even on multi­CPU hardware. Note, however, that it takes approximately one minute from daemon startup to calculate the value of the OID.
• The net-snmp-devel package is now dependent on the lm_sensors-devel package.
OpenSSL Re-Base for FIPS Certification
The openssl packages upgrade the OpenSSL library to a newer upstream version, which is currently undergoing the Federal Information Processing Standards validation process (FIPS-140-2). The FIPS mode is disabled by default, to ensure that the OpenSSL library maintains feature parity and ABI compatibility with the previous releases of the openssl packages in Red Hat Enterprise Linux 5.
This update also applies the following upstream fixes:
• By default, zlib compression is used for SSL and TLS connections. On IBM System z architectures with Central Processor Assist for Cryptographic Function (CPACF), compression became the main part of the CPU load, and total performance was determined by the speed of the compression (not the speed of the encryption). When compression is disabled, the total performance is much higher. In these updated packages, zlib compression for SSL and TLS connections can be disabled with the OPENSSL_NO_DEFAULT_ZLIB environment variable. For TLS connections over a slow network, it is better to leave compression on, so that the amount of data to be transferred is lower.
• When using the openssl command with the s_client and s_server options, the default CA certificates file (/etc/pki/tls/certs/ca-bundle.crt), was not read. This resulted in
Page 19
Feature Updates
19
certificates failing verification. In order for certificates to pass verification, the -CAfile /etc/ pki/tls/certs/ca-bundle.crt option had to be used. In these updated packages, the default CA certificates file is read, and no longer needs to be specified with the -CAfile option.
yum Re-Base
yum has been re-based to upstream version 3.2.18. This update improves the speed at which yum operates, thereby alleviating the problem posed by the ever-growing number of packages
included with each minor release. In addition, this update also introduces the reinstall command, improves the interface for several commands, and applies several bug fixes, including:
• Any yum commands would fail if the -c option was used to specify a configuration file residing
on a web address (http). This bug is now fixed.
• A checkSignal() function in yum called an incorrect exit function; as such, exiting yum would
result in a traceback instead. With this release, yum now exits properly.
flash-plugin Re-Base
The flash-plugin package has been re-based to version 10.0.12.36. This update applies several security fixes that were included in a previous flash-plugin ASYNC update. Further, this updated plugin also contains Adobe Flash Player 10, which includes the following bug fixes and feature enhancements:
• Improved stability on the Linux platform by fixing a race condition issue in sound output.
• New support for custom filters and effects, native 3D transformation and animation, advanced audio processing, a new, more flexible text engine, and GPU hardware acceleration.
For more information about this update, refer to the Adobe Flash Player 10 release notes at the following link:
http://www.adobe.com/support/documentation/en/flashplayer/10/ Flash_Player_10_Release_Notes.pdf
gdb Rebase
gdb has now been rebased to version 6.8. This applies several upstream feature updates and bug fixes, most notably: support for breakpoints inside C++ templates, constructors and inline functions.
For more information on gdb updates applied in this release, refer to http://sourceware.org/cgi-bin/
cvsweb.cgi/src/gdb/NEWS?rev=1.259.2.1&cvsroot=src.
Instruction Based Sampling on AMD Family10h processors
New hardware profiling support for the AMD Family10h processors has been added for Red Hat Enterprise Linux 5.3. These new AMD CPUs support Instruction Based Sampling (IBS). IBS support requires changes to the oProfile driver to gather this information and initialize the new Model Specific Registers (MSRs) associated with these new features.
This update adds the new IBS_FETCH and IBS_OP profiling samples to the per CPU buffers and the event buffers of the oProfile driver. New control entries have also been added to /dev/ oprofile to control IBS sampling. These changes are backward compatible with the previous PMC only version of the driver, and a separate patch is available to oProfile 0.9.3 to use this new data.
Page 20
Release Notes
20
For more information on IBS refer to the paper: Instruction-Based Sampling: A New Performance
Analysis Technique for AMD Family 10h Processors, November 19, 2007
2
Squid Re-base
Squid has been re-based to the latest stable upstream version (STABLE21). This update addresses several bugs, including:
• The squid init script always incorrectly returned an exit code of 0. This bug is now fixed,
making squid compliant now with Linux Standard Base.
• Using the refresh_stale_hit directive causes error message Clock going backwards
to appear in the squid log file.
• The squid installation process did not set up correct ownership of the /usr/local/squid directory. With this release, the user squid is now the default owner of /usr/local/squid.
• Whenever squid attempts to use the function hash_lookup(), it could abort with signal 6.
• Using squid_unix_group could cause squid to crash.
Event Multi-Processing Model in Apache
httpd, the Apache HTTP Server package, now includes the experimental event Multi-Processing Model (MPM). This MPM improves performance by using dedicated threads to handle keepalive connections.
libgomp re-base
libgomp has been re-based to version 4.3.2-7.el5. The re-base improves OpenMP performance and adds support for OpenMP version 3.0 when used with the gcc43 compiler.
iSCSI target capability
The iSCSI target capability, delivered as part of the Linux Target (tgt) framework, moves from Technology Preview to full support in Red Hat Enterprise Linux 5.3. The linux target framework allows a system to serve block-level SCSI storage to other systems that have a SCSI initiator. This capability is being initially deployed as a Linux iSCSI target, serving storage over a network to any iSCSI initiator.
To set up the iSCSI target, install the scsi-target-utils RPM and refer to the instructions in: /usr/
share/doc/scsi-target-utils-[version]/README and /usr/share/doc/scsi­target-utils-[version]/README.iscsi
4. Driver Updates
4.1. All Architectures
General Driver/Platform Updates
• The Intel High Definition Audio driver in ALSA has been updated.
• High-Definition Multimedia Interface (HDMI) audio support on AMD ATI integrated chipsets has been updated.
2
http://developer.amd.com/assets/AMD_IBS_paper_EN.pdf
Page 21
All Architectures
21
• The following Wacom graphics tablets are now supported through the linuxwacom drivers:
• Cintiq 20WSX
• Intuos3 4x6
• the lpfc driver for Emulex Fibre Channel Host Bus Adapters has been updated to version
8.2.0.33.2p. This applies several upstream changes, most notably:
• the NETLINK_SCSITRANSPORT socket is now used
• Resolved uninitialized node access.
• fixed a bug that caused echotest failure when NPIV is enabled.
• fcauthd 1.19 is now required for fibre channel authentication.
• dm-multipath now has inbox support for IBM DS4000.
• The ixgbe driver now supports the 82598AT dual-port adapter and the 82598 CX4 adapter.
• the jsm driver has been updated to add support for Digi Neo PCI Express 4 HiProfile I/O
adapters.
• hp-ilo: driver added, providing support for HP Integrated Lights Out (iLO) technology.
• The radeon_tp driver is now fully supported in this release. This driver enables the ATI R500/R600
chipsets.
This driver also features the following capabilities:
• Modesetting on R500/R600 chipsets
• 2D acceleration on R500 chipsets
• Shadow framebuffer acceleration on R600 chipsets
• The powernow-k8 driver is now included in this release as a loadable module. This ensures that
existing driver frameworks (such as the Red Hat Driver Update Model and Dell DKMS) can deliver powernow-k8 driver updates to users as RPM packages without requiring them to upgrade the kernel.
• For this release, Red Hat is re-adding pnm2ppa in order to provide support for legacy printers. Note,
however, that this support is deprecated and will be discontinued in future major releases.
• The ccid driver has been re-based to add support for USB Smartcard keyboards.
• the uvcvideo drivers for USB video devices has been added to the kernel in Red Hat Enterprise
Linux 5.3.
Network
• The bnx2 driver for the Broadcom NetXtreme II network cards has been updated to version 1.7.9. This update fixes the ethernet ring buffer options on controllers that use bnx2 to fix a bug that caused the system to panic at boot.
• The e1000e driver for Intel PRO/1000 ethernet devices has been updated to the upstream version
0.3.3.3-k2. With this update, the EEPROM and NVM of supported devices are now write-protected.
Page 22
Release Notes
22
• igb: driver for Intel Gigabit Ethernet Adapters has been updated to version 1.2.45-k2, adding
support for 82576 based devices.
• the ixgbe driver for Intel(R) 10 Gigabit PCI Express network devices has been updated to version
1.3.18-k4.
• the niu driver has been added to Red Hat Enterprise Linux 5.3, adding support for 10Gbps ethernet
devices on Sun CP3220 systems.
• the ipw2100 and ipw2200 drivers for Intel PRO Wireless devices has been backported to Red Hat
Enterprise Linux 5.3 from Linux Kernel 2.6.25.
• the bcm43xx driver for Broadcom Wireless devices has been backported to Red Hat Enterprise
Linux 5.3 from Linux Kernel 2.6.25.
• the ieee80211 support component for wireless devices has been backported to Red Hat
Enterprise Linux 5.3 from Linux Kernel 2.6.25.
• the zd1211rw driver for ZyDas Wireless devices has been updated to match the last non-
mac80211 version from just prior to Linux 2.6.25.
• the iwlwifi drivers have been updated to version from 2.6.26, adding 802.11n support to iwl4965 wireless devices. Several bug fixes included in post-2.6.26 versions of the driver were also incorporated into the backported driver.
• the myri10ge driver for Myricom Myri-10G Ethernet devices has been updated to version
1.3.2-1.269.
• the netxen driver for NetXen network cards has been updated to version 3.4.18.
• The bnx2x driver for Broadcom Everest network devices has been updated to version 1.45.23, adding support for the 57711 hardware.
• the forcedeth-msi driver has been updated to fix a bug that prevented proper link-up detection.
• the ath5k driver for Atheros wireless devices has been backported to Red Hat Enterprise Linux 5.3 from Linux Kernel 2.6.26.
• the rt2x00 drivers for Ralink wireless devices has been backported to Red Hat Enterprise Linux
5.3 from Linux Kernel 2.6.26.
• the rtl8180 and rtl8187 drivers for Realtek wireless devices has been backported to Red Hat Enterprise Linux 5.3 from Linux Kernel 2.6.26.
Storage
• 3w-xxxx: driver for 3ware SATA RAID Controllers updated to version 1.26.03. This applies several upstream changes, most notably:
• Fixed a bug that caused data corruption when using a 3ware 7000 or 8000 series card in a
system with greater than 2GB of RAM.
• Anaconda no longer hangs on 64-bit architectures when using a 3ware 8006 series card in a
system with greater than 4GB of RAM.
Page 23
All Architectures
23
• The irq handler is now freed when __tw_shutdown() is initiated. This prevents a possible null
pointer de-reference if an interrupt was shared during shutdown.
• RCD bit for caching mode page is now turned on.
• ioctl resets and scsi resets are now serialized so they no longer collide.
• 3w-9xxx: driver for 3ware SATA RAID Controllers updated to version 2.26.08. This applies several
upstream changes, most notably:
• The pci_unmap_single() call now functions correctly on systems with greater than 4GB of
RAM
• Fixed a bug that caused slow write performance.
• The DMA mask setting now reverts to 32-bit if 64-bit fails.
• Added support for the 3ware 9690SA SAS Controller Device.
• megaraid_sas: driver updated to version 4.01-rh1. Several bug fixes are applied by this update,
including:
• MFI_POLL_TIMEOUT_SECS is now 60 seconds.
• Fixed a bug that caused continuous chip resets and command timeouts due to frame count calculation.
• Added support for the LSI Generation 2 Controllers (0078, 0079).
• Added a command to shutdown DCMD in the shutdown routine to improve firmware shutdown.
• Fixed a bug that caused unexpected interrupts in the hardware Linux driver.
• the qla2xxx driver for QLogic Fibre Channel Host Bus Adapters has been updated, adding support
for ISP84XX type cards.
• the ibmvscsi drivers for emulating virtual SCSI (vSCSI) devices has been updated, providing
support for virtualized tape devices.
• lpfc: driver updated to version 8.2.0.30. This update applies several bug fixes and enhancements,
including:
• Improved Enhanced Error Handling (EEH) for PCI adapters on PowerPC architectures
• Increased the number of supported NPIV virtual ports
• Improved driver logic to control I/O queue depth
• Added support for Fibre Channel over Ethernet (FCoE) adapters
• Booting from SAN for new hardware is now supported
• the cciss driver for HP Smart Array controllers has been updated to version 3.6.20-RH2.
Page 24
Release Notes
24
5. Kernel-Related Notes
5.1. All Architectures
• relayfs previously had a buffer size limit of 64MB. In this update, the limitation of the memory
allocated to relayfs for on-memory buffers has been increased to 4095MB. This allows SystemTap and other tracing tools that utilize relayfs the ability to trace more events.
• The driver for Dell Remote Access Controller 4 (DRAC4) was not present. Consequently,
any virtual devices provided by the DRAC4 were not being detected by the kernel. In this update, the pata_sil680 kernel module that provides the appropriate driver has been added, which resolves this issue.
• The message buffers for the relay interface were only allocated for online CPUs when relay_open() was called. Consequently, if an off-line CPU was turned on after relay_open() was called, a kernel panic would occur. In this update, a new message buffer is allocated dynamically if any new CPUs are added.
• The driver for 8250 based serial ports has been updated to add support for DSR/DTR hardware flow control.
• Support for Dell Wireless Wide Area Network (WWAN) cards has been added to the kernel. Devices that are now supported are:
• Dell Wireless 5700 Mobile Broadband CDMA/EVDO Mini-Card
• Dell Wireless 5500 Mobile Broadband HSDPA Mini-Card
• Dell Wireless 5505 Mobile Broadband HSDPA Mini-Card
• Dell Wireless 5700 Mobile Broadband CDMA/EVDO ExpressCard
• Dell Wireless 5510 Mobile Broadband HSDPA ExpressCard
• Dell Wireless 5700 Mobile Broadband CDMA/EVDO Mini-Card
• Dell Wireless 5700 Mobile Broadband CDMA/EVDO Mini-Card
• Dell Wireless 5720
• Dell Wireless HSDPA 5520
• Dell Wireless HSDPA 5520
• Dell Wireless 5520 Voda I Mobile Broadband (3G HSDPA) Mini-Card
• the thinkpad_acpi kernel module has been updated to provide enhanced support for newer Thinkpad models.
• The soft lockup detector can now be configured to trigger a kernel panic instead of a warning message. This makes it possible for users to generate and analyze a crash dump during a soft lockup for forensic purposes.
To configure the soft lockup detector to generate a panic, set the kernel parameter soft_lockup to 1. This parameter is set to 0 by default.
Page 25
x86 Architectures
25
• oprofile did not correctly identify processors based on the Next-Generation Intel
Microarchitecture (Nehalem). Consequently, the performance monitoring unit could not be used and the processor fell back to the timer interrupt. The kernel has been updated to resolve this issue.
• Support has been added to the kernel for the CPU power state, C3, on the Next-Generation Intel Microarchitecture (Nehalem). The ability to enter C3 (also known as the sleep state) improves the power efficiency of the CPU when idle.
• Previously, the MAX_ARG_PAGES limit that is set in the kernel was too low, and may have resulted in the following error:
execve: Argument list too long
In this update, this limit has been increased to 25 percent of the stack size, which resolves this issue.
• autofs4 updates have been backported to Red Hat Enterprise Linux 5.3 from linux kernel version
2.6.27.
• Red Hat Enterprise Linux 5.3 now includes the ability to specify that core files be piped to a forked copy of a user space application, rather than directly to a file. This is enabled by placing | path/ to/applicationin /proc/sys/kernel/core_pattern. When a core is dumped, a copy of the specified application will be executed, and the core will be piped to it on stdin. This allows for the core to be augmented, analyzed and actively handled at core dump time.
• The file /proc/cpuinfo now reports the ID of the Advanced Programmable Interrupt Controller (APIC) that is used by each individual CPU.
• The Machine Check Exception (MCE) kernel subsystem has been enhanced to support larger memory configurations as needed by new systems.
• The mount command now supports Kerberos authentication when mounting filesystems via Samba. The sec=krb5 or sec=krb5i switch allows the kernel to call a userspace application (cifs.upcall) which returns a SPNEGO (Simple and Protected GSSAPI Negotiation Mechanism) security blob (Binary Large OBject). The kernel can then use this blob to authenticate with the server and mount the requested filesystem.
• If you configured the kernel parameter kernel.unknown_nmi_panic on a system that used the IOAPIC NMI watchdog method, a kernel panic could occur. This is because the NMI watchdog could not disable the source of NMIs securely.
With this release, the NMI watchdog code has been revised to allow users to safely disable the NMI source. As such, you can now safely configure the kernel parameter kernel.unknown_nmi_panic on systems that use the IOAPIC NMI watchdog method.
5.2. x86 Architectures
• The powernowk8 driver was not performing sufficient checks on the number of running CPUs. Consequently, when the driver was started, a kernel oops error message may have been reported. In this update the powernowk8 driver verifies that the number of supported CPUs (supported_cpus) equals the number of online CPUs (num_online_cpus), which resolves this issue.
Page 26
Release Notes
26
5.3. PowerPC Architectures
• CPUFreq, the kernel subsystem that scales CPU frequency and voltage, has been updated with
improved support for Cell Processors. This update implements a Synergistic Processing Unit (SPU) aware CPUFreq governor that enhances the power management of Cell processors.
• Error Detection and Correction (EDAC) is now supported on the Cell Broadband Engine Architecture
in Red Hat Enterprise Linux 5.3. To enable EDAC, use the command: modprobe cell_edac
To check this module has been added to your running kernel, check /var/log/dmesg for output like the following:
EDAC MC: Ver: 2.0.1 Oct 4 2008 EDAC MC0: Giving out device to cell_edac MIC: DEV cbe-mic EDAC MC1: Giving out device to cell_edac MIC: DEV cbe-mic
If correctable memory errors are encountered, the following message will be returned to the console:
EDAC MC0: CE page 0xeff, offset 0x5700, grain 0, syndrome 0x51, row 0, channel 0, label "":
• Debugging with hardware watchpoints using a variable that is shared between multiple threads was
causing the GNU Debugger (GDB) to erratically miss trigger events. The kernel has been updated to allow GDB to consistently receive the watchpoint triggers, improving the reliability of the debugging session.
5.4. x86_64 Architectures
• kprobe-booster is now supported on the ia64 and x86_64 architectures, allowing users to probe kernel events much faster. This feature will also decrease the overhead caused by probing tools (e.g. SystemTap and Kprobes) on servers running on 64-bit architecture.
• Support has been added to the kernel for the _PTC (Processor Throttling Control), _TSS (Throttling Supported States) and _TPC (Throttling Present Capabilities) objects. This support, which is part of the Advance Configuration and Power Interface specification (ACPI) provides improved management of processor throttling.
5.5. s390x Architectures
• In zipl.conf, parameters enclosed with double quotes inside of single quotes (ie parameters='vmhalt="LOGOFF"') were being parsed incorrectly. Consequently, installing the kernel-kdump package may have failed, resulting in the error:
grubby fatal error: unable to find a suitable template
Page 27
ia64 Architecture
27
To resolve this issue, parameters should be enclosed with single quotes inside of double quotes (ie parameters="vmhalt='LOGOFF'")
Note
The syntax structure of single quotes inside of double quotes is the default in Red hat Enterprise Linux 5.
5.6. ia64 Architecture
• The Dual-Core Intel Itanium 2 processor filled out machine check architecture (MCA) records differently to previous Intel Itanium processors. The cache check and bus check target identifiers can now be different in some circumstances. The kernel has been updated to find the correct target identifier.
• kprobe-booster is now supported on the ia64 and x86_64 architectures, allowing users to probe kernel events much faster. This feature will also decrease the overhead caused by probing tools (e.g. SystemTap and Kprobes) on servers running on 64-bit architecture.
• In this update, support for pselect() and ppoll() system calls has been added to the kernel.
6. Virtualization
This section contains information about updates made to Red Hat Enterprise Linux suite of Virtualization tools.
6.1. Feature Updates
• The blktap (blocktap) userspace toolkit has been updated, providing the functionality to monitor the transfer statistics of blktap backed virtualized guests.
• Support was added for the Intel Extended Page Table (EPT) feature, improving performance of fully virtualized guests on hardware that supports EPT.
• e1000 network device emulation for guests has been added in this update, supporting only Windows 2003 guests on the ia64 architecture. To use e1000 emulation, the xm command must be used.
• Drivers for virtio, the platform for I/O virtualization in KVM, has been backported to Red Hat Enterprise Linux 5.3 from Linux Kernel 2.6.27. These drivers will enable KVM guests to achieve higher levels of I/O performance. Various userspace components such as: anaconda, kudzu, lvm, selinux and mkinitrd have also been updated to support virtio devices.
• The native Linux kernel supports vmcoreinfo automatically, but, to setup kdump on dom0 domains, the kernel-xen-debuginfo package was needed. With this release, the kernel and the hypervisor have been modified and now support vmcoreinfo reading and writing kdump natively. Users needing to use kdump for de-bugging or other investigations on dom0 domains can now do so without installing the debuginfo or debuginfo-common packages.
Page 28
Release Notes
28
• Fully virtualized Red Hat Enterprise Linux 5 guests encountered suboptimal performance when using emulated disk and network devices. In this update, the kmod-xenpv package has been included to simplify the use of paravirtualized disks and networks in fully virtualized guests.
Using these drivers in fully virtualized guests can significantly improve the performance and functionality of fully virtualized guests. Bug fixes made for netfront and block front drivers are immediately realized and synchronized with the kernel package.
• Guests now have the ability to utilize 2MB backing page memory tables, which can improve system performance.
6.2. Resolved Issues
6.2.1. All Architectures
• Shutting down a paravirtualized guest may have caused the dom0 to stop responding for a period of time. Delays of several seconds were experienced on guests with large amounts of memory (ie 12GB and above.) In this update, the virtualized kernel allows the shutdown of a large paravirtualized guest to be pre-emptible, which resolves this issue.
• crash was unable to read the relocation address of the hypervisor from a vmcore file. Consequently, opening a Virtualized kernel vmcore file with crash would fail, resulting in the error:
crash: cannot resolve "idle_pg_table_4"
In this update, the hypervisor now saves the address correctly, which resolves this issue.
• Previously, paravirtualized guests could only have a maximum of 16 disk devices. In this update, this limit has been increased to a maximum of 256 disk devices.
• Memory reserved for the kdump kernel was incorrect, resulting in unusable crash dumps. In this update, the memory reservation is now correct, allowing proper crash dumps to be generated.
• Attaching a disk with a specific name (ie. /dev/xvdaa, /dev/xvdab, /dev/xvdbc etc.) to a paravirtualized guest resulted in a corrupted /dev device inside the guest. This update resolves the issue so that attaching disks with these names to a paravirtualized guest creates the proper /dev device inside the guest.
• Previously, the number of loopback devices was limited to 4. Consequently, this limited the ability to create bridges on systems with more than 4 network interfaces. In this update, the netloop driver now creates additional loopback devices as required.
• A race condition could occur when creating and destroying virtual network devices. In some circumstances — especially high load situations — this would cause the virtual device to not respond. In this update, the state of the virtual device is checked to prevent the race condition from occurring.
• a memory leak in virt-manager would be encountered if the application was left running. Consequently, the application would constantly consume more resources, which may have led to memory starvation. In this update, the leak has been fixed, which resolves this issue.
Page 29
Resolved Issues
29
• the crash utility could not analyze x86_64 vmcores from systems running kernel-xen because
the Red Hat Enterprise Linux hypervisor was relocatable and the relocated physical base address is not passed in the vmcore file's ELF header. The new --xen_phys_start command line option for the crash utility allows the user to pass crash the relocated base physical address.
• Not all mouse events were being captured and processed by the Paravirtual Frame Buffer (PVFB). Consequently, the scroll wheel did not function when interacting with a paravirtualized guest with the Virtual Machine Console. In this update, scroll wheel mouse events are now handled correctly, which resolves this issue.
• Using Virtualization on a machine with a large number of CPUs may have caused the hypervisor to crash during guest installation. In this update, this issue has been resolved.
• On Intel processors that return a CPUID family value of 6, only one performance counter register was enabled in kernel-xen. Consequently, only counter 0 provided samples. In this update, this issue has been resolved.
6.2.2. x86 Architectures
• On systems with newer CPU's, the CPU APIC ID differs from the CPU ID. Consequently, the virtualized kernel was unable to initialize CPU frequency scaling. In this update, the virtualized kernel now retrieves CPU APIC ID from the hypervisor, allowing CPU frequency scaling to be initialized properly.
• When running an x86 paravirtualized guest, if a process accessed invalid memory, it would run in a loop instead of getting a SEGV signal. This was caused a flaw in the way execshield checks were done under the hypervisor. In this update, this issue has been resolved.
6.2.3. ia64 Architecture
• A xend bug that previously caused guest installation failures is now fixed.
• the evtchn event channel device lacked locks and memory barriers. This led to xenstore becoming unresponsive. In this update, this issue has been resolved.
• Non-Uniform Memory Access (NUMA) information was not being displayed by the xm info command. Consequently, node_to_cpu value for each node was being incorrectly returned as no cpus. In this update, this issue has been resolved.
• Previously, creating a guest on a Hardware Virtual Machine (HVM) would fail on processors that include the VT-i2 technology. In this update, this issue has been resolved.
6.2.4. x86_64 Architectures
• When the Dynamic IRQs available for guests virtual machines were exhausted, the dom0 kernel would crash. In this update, the crash condition has been fixed, and the number of available IRQs has been increased, which resolves this issue.
• On systems with newer CPU's, the CPU APIC ID differs from the CPU ID. Consequently, the virtualized kernel was unable to initialize CPU frequency scaling. In this update, the virtualized kernel now retrieves CPU APIC ID from the hypervisor, allowing CPU frequency scaling to be initialized properly.
Page 30
Release Notes
30
6.3. Known Issues
6.3.1. All Architectures
• Diskette drive media will not be accessible when using the virtualized kernel. To work around this, use a USB-attached diskette drive instead.
Note that diskette drive media works well with other non-virtualized kernels.
• In live migrations of paravirtualized guests, time-dependent guest processes may function improperly if the corresponding hosts' (dom0) times are not synchronized. Use NTP to synchronize system times for all corresponding hosts before migration.
• Repeated live migration of paravirtualized guests between two hosts may cause one host to panic. If a host is rebooted after migrating a guest out of the system and before migrating the same guest back, the panic will not occur.
• Formatting a disk when running Windows 2008 or Windows Vista as a guest can crash when the guest has been booted with multiple virtual CPUs. To work around this, boot the guest with a single virtual CPU when formatting.
• Fully virtualized guests created through virt-manager may sometimes prevent the mouse from moving freely throughout the screen. To work around this, use virt-manager to configure a USB tablet device for the guest.
• The maximum CPUs must be restricted to less than 128 when on a 128 or greater CPU system. The maximum that is supported at this time is 126. Use the maxcpus=126 hypervisor argument to limit the Hypervisor to 126
• Fully virtualized guests cannot correct for time lost due to the domain being paused and unpaused. Being able to correctly track the time across pause and unpause events is one of the advantages of paravirtualized kernels. This issue is being addressed upstream with replaceable timers, so fully virtualized guests will have paravirtualized timers. Currently, this code is under development upstream and should be available in later versions of Red Hat Enterprise Linux.
• Repeated migration of paravirtualized guests may result in bad mpa messages on the dom0 console. In some cases, the hypervisor may also panic.
To prevent a hypervisor kernel panic, restart the migrated guests once the bad mpa messages appear.
• When setting up interface bonding on dom0, the default network-bridge script may cause bonded network interfaces to alternately switch between unavailable and available. This occurrence is commonly known as flapping.
To prevent this, replace the standard network-script line in /etc/xen/xend-config.sxp with the following line:
(network-script network-bridge-bonding netdev=bond0)
Doing so will disable the netloop device, which prevents Address Resolution Protocol (ARP) monitoring from failing during the address transfer process.
Page 31
Known Issues
31
• When running multiple guest domains, guest networking may temporarily stop working, resulting in the following error being reported in the dom0 logs:
Memory squeeze in netback driver
To work around this, raise the amount of memory available to the dom0 with the dom0_mem hypervisor command line option.
6.3.2. x86 Architectures
• Migrating paravirtualized guests through xm migrate [domain] [dom0 IP address] does not work.
• When installing Red Hat Enterprise Linux 5 on a fully virtualized SMP guest, the installation may freeze. This can occur when the host (dom0) is running Red Hat Enterprise Linux 5.2.
To prevent this, set the guest to use a single processor using the install. You can do this by using the --vcpus=1 option in virt-install. Once the installation is completed, you can set the guest to SMP by modifying the allocated vcpus in virt-manager.
6.3.3. x86_64 Architectures
• Migrating paravirtualized guests through xm migrate [domain] [dom0 IP address] does not work.
• Installing the Virtualization feature may cause a time went backwards warning on HP systems with model numbers xw9300 and xw9400.
To work around this issue for xw9400 machines, configure the BIOS settings to enable the HPET timer. Note that this option is not available on xw9300 machines.
• Installing Red Hat Enterprise Linux 3.9 on a fully virtualized guest may be extremely slow. In addition, booting up the guest after installation may result in hda: lost interrupt errors.
To avoid this bootup error, configure the guest to use the SMP kernel.
• Upgrading a host (dom0) system to Red Hat Enterprise Linux 5.2 may render existing Red Hat Enterprise Linux 4.5 SMP paravirtualized guests unbootable. This is more likely to occur when the host system has more than 4GB of RAM.
To work around this, boot each Red Hat Enterprise Linux 4.5 guest in single CPU mode and upgrade its kernel to the latest version (for Red Hat Enterprise Linux 4.5.z).
6.3.4. ia64 Architecture
• Migrating paravirtualized guests through xm migrate [domain] [dom0 IP address] does not work.
• On some Itanium systems configured for console output to VGA, the dom0 virtualized kernel may fail to boot. This is because the virtualized kernel failed to properly detect the default console device from the Extensible Firmware Interface (EFI) settings.
Page 32
Release Notes
32
When this occurs, add the boot parameter console=tty to the kernel boot options in /boot/efi/ elilo.conf.
• On some Itanium systems (such as the Hitachi Cold Fusion 3e), the serial port cannot be detected
in dom0 when VGA is enabled by the EFI Maintenance Manager. As such, you need to supply the following serial port information to the dom0 kernel:
• Speed in bits/second
• Number of data bits
• Parity
• io_base address
These details must be specified in the append= line of the dom0 kernel in /boot/efi/
elilo.conf. For example:
append="com1=19200,8n1,0x3f8 -- quiet rhgb console=tty0 console=ttyS0,19200n8"
In this example, com1 is the serial port, 19200 is the speed (in bits/second), 8n1 specifies the number of data bits/parity settings, and 0x3f8 is the io_base address.
• Virtualization does not work on some architectures that use Non-Uniform Memory Access (NUMA). As such, installing the virtualized kernel on systems that use NUMA will result in a boot failure.
Some installation numbers install the virtualized kernel by default. If you have such an installation number and your system uses NUMA and does not work with kernel-xen, deselect the Virtualization option during installation.
• Currently, live migration of fully virtualized guests is not supported on this architecture. In addition, kexec and kdump are also not supported for virtualization on this architecture.
7. Technology Previews
Technology Preview features are currently not supported under Red Hat Enterprise Linux subscription services, may not be functionally complete, and are generally not suitable for production use. However, these features are included as a customer convenience and to provide the feature with wider exposure.
Customers may find these features useful in a non-production environment. Customers are also free to provide feedback and functionality suggestions for a Technology Preview feature before it becomes fully supported. Erratas will be provided for high-severity security issues.
During the development of a Technology Preview feature, additional components may become available to the public for testing. It is the intention of Red Hat to fully support Technology Preview features in a future release.
ALUA Mode on EMC Clariion
Explicit active-passive failover (ALUA) mode using dm-multipath on EMC Clariion storage is now available. This mode is provided as per T10 specifications, but is provided in this release only as a technology preview.
Page 33
Technology Previews
33
For more information about T10, refer to http://www.t10.org.
ext4
The latest generation of the ext filesystem, ext4, is available in this release as a Technology Preview. Ext4 is an incremental improvement on the ext3 file system developed by Red Hat and the Linux community. The release name of the file system for the Technology Preview is ext4dev.
The file system is provided by the ext4dev.ko kernel module, and a new e4fsprogs package, which contains updated versions of the familiar e2fsprogs administrative tools for use with ext4. To use, install e4fsprogs and then use commands like mkfs.ext4dev from the e4fsprogs program to create an ext4-base file system. When referring to the filesystem on a mount commandline or fstab file, use the filesystem name ext4dev.
FreeIPMI
FreeIPMI is now included in this update as a Technology Preview. FreeIPMI is a collection of Intelligent Platform Management IPMI system software. It provides in-band and out-of-band software, along with a development library conforming to the Intelligent Platform Management Interface (IPMI v1.5 and v2.0) standards.
For more information about FreeIPMI, refer to http://www.gnu.org/software/freeipmi/
TrouSerS and tpm-tools
TrouSerS and tpm-tools are included in this release to enable use of Trusted Platform Module (TPM) hardware.TPM hardware features include (among others):
• Creation, storage, and use of RSA keys securely (without being exposed in memory)
• Verification of a platform's software state using cryptographic hashes
TrouSerS is an implementation of the Trusted Computing Group's Software Stack (TSS) specification. You can use TrouSerS to write applications that make use of TPM hardware. tpm- tools is a suite of tools used to manage and utilize TPM hardware.
For more information about TrouSerS, refer to http://trousers.sourceforge.net/.
eCryptfs
eCryptfs is a stacked cryptographic file system for Linux. It mounts on individual directories in existing mounted lower file systems such as EXT3; there is no need to change existing partitions or file systems in order to start using eCryptfs.
With this release, eCryptfs has been re-based to upstream version 56, which provides several bug fixes and enhancements. In addition, this update provides a graphical program to help configure eCryptfs (ecryptfs-mount-helper-gui).
This update also changes the syntax of certain eCryptfs mount options. If you choose to update to this version of eCryptfs, you should update any affected mount scripts and /etc/fstab entries. For information about these changes, refer to man ecryptfs.
The following caveats apply to this release of eCryptfs:
• Note that the eCryptfs file system will only work properly if the encrypted file system is mounted once over the underlying directory of the same name. For example:
Page 34
Release Notes
34
mount -t ecryptfs /mnt/secret /mnt/secret
The secured portion of the file system should not be exposed, i.e. it should not be mounted to other mount points, bind mounts, and the like.
• eCryptfs mounts on networked file systems (e.g. NFS, Samba) will not work properly.
• This version of the eCryptfs kernel driver requires updated userspace, which is provided by
ecryptfs-utils-56-4.el5 or newer.
For more information about eCryptfs, refer to http://ecryptfs.sf.net. You can also refer to http://
ecryptfs.sourceforge.net/README and http://ecryptfs.sourceforge.net/ecryptfs-faq.html for basic
setup information.
Stateless Linux
Stateless Linux is a new way of thinking about how a system should be run and managed, designed to simplify provisioning and management of large numbers of systems by making them easily replaceable. This is accomplished primarily by establishing prepared system images which get replicated and managed across a large number of stateless systems, running the operating system in a read-only manner (refer to /etc/sysconfig/readonly-root for more details).
In its current state of development, the Stateless features are subsets of the intended goals. As such, the capability remains as Technology Preview.
Red Hat recommends that those interested in testing stateless code read the HOWTO at http://
fedoraproject.org/wiki/StatelessLinux/HOWTO and join [email protected].
The enabling infrastructure pieces for Stateless Linux were originally introduced in Red Hat Enterprise Linux 5.
AIGLX
AIGLX is a Technology Preview feature of the otherwise fully supported X server. It aims to enable GL-accelerated effects on a standard desktop. The project consists of the following:
• A lightly modified X server.
• An updated Mesa package that adds new protocol support.
By installing these components, you can have GL-accelerated effects on your desktop with very few changes, as well as the ability to enable and disable them at will without replacing your X server. AIGLX also enables remote GLX applications to take advantage of hardware GLX acceleration.
FireWire
The firewire-sbp2 module is still included in this update as a Technology Preview. This module enables connectivity with FireWire storage devices and scanners.
At present, FireWire does not support the following:
• IPv4
• pcilynx host controllers
• multi-LUN storage devices
3
Page 35
Technology Previews
35
• non-exclusive access to storage devices
In addition, the following issues still exist in FireWire:
• a memory leak in the SBP2 driver may cause the machine to become unresponsive.
• a code in this version does not work properly in big-endian machines. This could lead to unexpected behavior in PowerPC.
ktune
This release includes ktune (from the ktune package), a service that sets several kernel tuning parameters to values suitable for specific system profiles. Currently, ktune only provides a profile for large-memory systems running disk-intensive and network-intensive applications.
The settings provides by ktune do not override those set in /etc/sysctl.conf or through the kernel command line. ktune may not be suitable on some systems and workloads; as such, you should test it comprehensively before deploying to production.
You can disable any configuration set by ktune and revert to your normall settings by simply stopping the ktune service using service ktune stop (as root).
SGPIO Support for dmraid
Serial General Purpose Input Output (SGPIO) is an industry standard communication method used between a main board and a variety of internal and external hard disk drive bay enclosures. This method can be used to control LED lights on an enclosure through the AHCI driver interface.
In this release, SGPIO support in dmraid is included as a technology preview. This will allow dmraid to work properly with disk enclosures.
GCC 4.3
The Gnu Compiler Collection version 4.3 (GCC4.3) is now included in this release as a Technology Preview. This collection of compilers include C, C++, and Fortran 95 compilers along with support libraries.
Note that in the gcc43 packages, the default for the gnu89-inline option has been changed to -fgnu89-inline, whereas upstream and future updates of Red Hat Enterprise Linux 5 will default to -fno-gnu89-inline. This is necessary because many headers shipped as part of Red Hat Enterprise Linux 5 expect GNU in-line semantics instead of ISO C99 semantics. These headers have not been adjusted to request GNU in-line semantics through attributes.
Kernel Tracepoint Facility
In this update, a new kernel marker/tracepoint facility has been implemented as a Technology Preview. This interface adds static probe points into the kernel, for use with tools such as SystemTap.
Device Failure Monitoring of RAID sets
Device Failure Monitoring, using the tools dmraid and dmevent_tool, is included in Red Hat Enterprise Linux 5.3 as a Technology Preview. This provides the ability to watch and report device failures on component devices of RAID sets.
Page 36
Release Notes
36
8. Resolved Issues
8.1. All Architectures
• The data for TTY device activity reports was not generating correctly. Consequently, the command
sar -y failed, returning the error:
Requested activities not available in file
In this updated package, sar has been corrected so the -y option outputs the TTY device activity.
• Previously, setting max_fds to unlimited in /etc/multipath.conf would prevent the
multipathd daemon from starting. If number of open file descriptors needs to be set to the system maximum, max_fds should be set to max.
• mod_perl is now re-based to version 2.0.4, the latest upstream release. This update applies several updates, which include a bug fix that now allows mod_perl to work properly with Bugzilla 3.0.
• cups is now re-based to version 1.3.7. This update applies several bug fixes and enhancements, including:
• Kerberos authentication is now supported.
• User-defined printer and job policies are now loaded correctly.
• Remote queue caches are no longer loaded when browsing is disabled.
• The classes.conf configuration file now has correct file permissions.
• lm_sensors has been re-based to version 2.10.7. This update applies several upstream enhancements and bug fixes, including a fix that prevents libsensors from crashing with a General parse error message when k8temp is also loaded.
• elfutils has been updated in this release to address the following bugs:
• The eu-readelf utility could crash when reading certain input files.
• The eu-strip utility is used in the rpmbuild procedures that create new binary packages.
It separates debugging information from executable code, to make -debuginfo packages. A bug in this utility resulted in unusable debugging information for ET_REL files on the s390 platform; this affects Linux kernel module files (.ko.debug), and caused the generated kernel- debuginfo packages not to work with Systemtap on s390.
• vnc-server is now re-based to version 4.1.2-14.el5. This update applies the following fixes:
• A bug that prevented vncserver from printing error messages when Xvnc failed to start is now
fixed.
• Xvnc no longer uses the wrong root window depth; it now uses the correct window depth
specified by the -depth option.
• A bug that causes the libvnc.so module to crash the X server is now fixed.
• Xvnc now supports GLX and RENDER extensions on all architectures.
Page 37
All Architectures
37
• smartmontools has been re-based to version 5.38. This update improves autodetection of hardware devices, improves support for CCISS RAID arrays, and features a larger database of supported devices.
This update also fixes a bug wherein SELinux prevented smartmontools from monitoring 3ware RAID devices. smartmontools can now monitor such devices properly.
• python-urlgrabber has been re-based to version 3.1.0-5. This applies several bug fixes from upstream, including:
• yum can now correctly re-download from a yum repository that does not support partial
downloads.
• yum can now resume an interrupted download even if the yum repository is FTP-based with a
specified port.
• The size of progress bars are now dynamic to the terminal width. In addition, progress bars are
now cleaner, and display a percentage of the total downloaded data.
• The keepalive signal of python-urlgrabber is now fixed. Previously, a bug in this signal
incorrectly increased memory usage during downloads; in addition, this bug also prevented reposync and yumdownloader from performing properly when downloading a large number of packages.
• yum-utils is now re-based to upstream version 1.1.16. This applies several bug fixes, including:
• yum update --security can now properly locate old relevant security updates.
• yum-versionlock now works properly against package obsoletes.
This update also includes the yum-fastestmirror plugin, which enables yum to choose the fastest repository in a mirrorlist.
• Samba has been re-based to upstream version 3.2.0. This fixes several bugs, including one that prevented users from joining domains that used Windows 2003 as their name server. This update also fixes a bug that caused samba domain membership to break after changing the system password using net rpc changetrustpw.
For a more comprehensive list of upstream samba updates included this release, refer to http://
www.samba.org/samba/history/samba-3.0.32.html
• OpenLDAP has been re-based to upstream version 2.3.43. This applies several upstream bug fixes, including:
• The init script now reports a warning if the slapd daemon cannot read a TLS certificate file.
• All libraries in openldap-debuginfo package are now unstripped.
• Uninstalling the openldap-devel package no longer breaks OpenLDAP libraries.
Red Hat now distributes additional overlays for OpenLDAP server. Except for syncprov, all overlays can be found in separate openldap-servers-overlays packages, compiled as dynamically loadable modules. The syncprov overlay is statically linked to the OpenLDAP server to maintain compatibility with older OpenLDAP releases.
Page 38
Release Notes
38
• Because the xterm binary had the set group ID (setgid) bit configured, certain environmental variables (such as LD_LIBRARY_PATH and TMPDIR) were unset. In this release, the xterm binary now has mode 0755 permissions configured, which resolves this issue.
• The recommended method for balancing the load on NIS servers when multiple machines are connecting with ypbind has changed with this release. The ypbind daemon's behavior has not changed: it still pings all NIS servers listed in the /etc/ypbind configuration file and then binds to the single fastest-responding server. Before, it was recommended to list all available NIS servers in each machine's /etc/ypbind.conf configuration file. However, because even servers under high load can respond quickly to this ping, thus inadvertently increasing their own load, it is now recommended for administrators to list a smaller number of available NIS servers in each machine's ypbind.conf, and to vary this list across machines. In this way, NIS servers are automatically load­balanced due to not every NIS server being listed as being available to every machine.
• OpenMotif has been re-based to upstream version 2.3.1. This update applies several bug fixes, including:
• A bug in the way OpenMotif handled the Grab and Ungrab events is now fixed. In previous
releases, this bug could cause the display to lock.
• A bug in nedit could cause it to crash when using the nedit graphical user interface. This
was caused by a function in the code that causes a segmentation fault in some cases of item selection, which is now fixed.
• dbus has been re-based to version 1.1.2. This update fixes a bug wherein multi-threaded programs could cause a deadlock in dbus. In previous releases, as one thread listened to dbus and processed messages, the second thread would send messages to dbus.
• strace has been re-based to version 4.5.18. This fixes several bugs, including:
• A bug that caused strace to crash when the -f option was used on some multi-threaded
programs (particularly on 64-bit systems) is now fixed.
• A bug that prevented the 64-bit version of strace from executing a vfork() function call on a 32-
bit process is now fixed.
• cpuspeed has been updated to version 1.2.1-5. With this update, the cpuspeed init script now loads the speedstep-centrino module if all other module loads fail. In addition, a user-space bug that prevented the Powernow-k8 module from loading is now fixed.
• The frysk suite of tools have been removed completely from this distribution. frysk was originally introduced as a technology preview in Red Hat Enterprise Linux 5.0.
• Previously, the partition I/O statistics provided by the iostat -x command were incomplete. In this update, partition statistics are now calculated in the same manner as disk statistics, providing coherent and comprehensive I/O statistics at the partition level.
• A password disclosure flaw was found with configuration file for the Dovecot mail server. If a system had the ssl_key_password option defined, any local user could view the SSL key password. (CVE-2008-4870)
Page 39
x86_64 Architectures
39
Note
This flaw did not allow the attacker to acquire the contents of the SSL key. The password has no value without the key file which arbitrary users should not have read access to.
To better protect even this value, however, the dovecot.conf file now supports the "!include_try" directive. The ssl_key_password option should be moved from dovecot.conf to a new file owned by, and only readable and writable by, root (ie 0600). This file should be referenced from dovecot.conf by setting the !include_try /path/to/password/file option.
8.2. x86_64 Architectures
• ksh has been re-based to version 2008-02-02. This update adds multi-byte character handling, addresses many job control problems and applies several bug fixes from upstream. Note that this update to ksh preserves compatibility for existing scripts.
8.3. s390x Architectures
• A vmconvert bug prevented it from working properly on the vmur device node (/dev/0.0.000c). This caused vmconvert to fail when attempting to access dumps on the vmur device with the error vmconvert: Open dump file failed! (Permission denied). An update to s390utils in this release fixes this issue.
• The init script and config file for the mon_procd daemon and mon_fsstatd daemon were missing from the s390utils package. Consequently these daemons could not be built and used. The missing files have been added in this update which resolves this issue.
8.4. PowerPC Architectures
• A bug that prevented the ehci_hcd module from reloading on this architecture is now fixed. This ensures that the Belkin 4-port PCI-Express USB Lily adapter (and other similar devices) now function properly with Red Hat Enterprise Linux 5 when they use the ehci_hcd module.
• The libhugetlbfs library is now re-based to version 1.3. This update applies several upstream improvements to the library, thereby improving the performance of applications that use Huge pages.
For a complete list of updates to libhugetlbfs, refer to the following link:
http://sourceforge.net/mailarchive/message.php? msg_name=20080515170754.GA1830%40us.ibm.com
9. Known Issues
9.1. All Architectures
• When using the new disk encryption feature to encrypt the root filesystem, the following error message will be reported on the console when shutting down the system:
Page 40
Release Notes
40
Stopping disk encryption [FAILED]
This message can safely be ignored, the shutdown process will complete successfully.
• When using an encrypted device, the following error message may be reported during bootup:
insmod: error inserting '/lib/aes_generic.ko': -1 File exists
This message can safely be ignored.
• Installation using a Multiple Device (MD) RAID on top of multipath will result in a machine that cannot boot. Multipath to Storage Area Network (SAN) devices which provide RAID internally are not affected.
• When a large number of LUNs are added to a node, multipath can significantly increase the time it takes for udev to create device nodes for them. If you experience this problem, you can correct it by deleting the following line in /etc/udev/rules.d/40-multipath.rules:
KERNEL!="dm-[0-9]*", ACTION=="add", PROGRAM=="/bin/bash -c '/sbin/lsmod | /bin/grep ^dm_multipath'", RUN+="/sbin/multipath -v0 %M:%m"
This line causes udev to run multipath every time a block device is added to the node. Even with this line removed, multipathd will still automatically create multipath devices, and multipath will still be called during the boot process, for nodes with multipathed root filesystems. The only change is that multipath devices will not be automatically created when multipathd is not running, which should not be a problem for the vast majority of multipath users.
• When upgrading from an earlier version of Red Hat Enterprise Linux to 5.3, you may encounter the following error:
Updating : mypackage ################### [ 472/1655] rpmdb: unable to lock mutex: Invalid argument
The cause of the locking issue is that the shared futex locking in glibc was enhanced with per­process futexes between 5.2 and 5.3. As a result, programs running against the 5.2 glibc can not properly perform shared futex locking against programs running with the 5.3 glibc.
This particular error message is a side effect of a package calling rpm as part of its install scripts. The rpm instance performing the upgrade is using the prior glibc throughout the upgrade, but the rpm instance launched from within the script is using the new glibc.
To avoid this error, upgrade glibc first in a separate run:
# yum update glibc
Page 41
All Architectures
41
# yum update
You will also see this error if you downgrade glibc to an earlier version on an installed 5.3 system.
• mvapich and mvapich2 in Red Hat Enterprise Linux 5 are compiled to support only InfiniBand/
iWARP interconnects. Consequently, they will not run over ethernet or other network interconnects.
• On systems with more than two encrypted block devices, anaconda has a option to provide a global passphrase. The init scripts, however, do not support this feature. When booting the system, entering each individual passphrase for all encrypted devices will be required.
• When upgrading openmpi using yum, the following warning may be returned:
cannot open `/tmp/openmpi-upgrade-version.*' for reading: No such file or directory
The message is harmless and can be safely ignored.
• Configuring IRQ SMP affinity has no effect on some devices that use message signalled interrupts (MSI) with no MSI per-vector masking capability. Examples of such devices include Broadcom NetXtreme Ethernet devices that use the bnx2 driver.
If you need to configure IRQ affinity for such a device, disable MSI by creating a file in /etc/ modprobe.d/ containing the following line:
options bnx2 disable_msi=1
Alternatively, you can disable MSI completely using the kernel boot parameter pci=nomsi.
• A bug in the updated /etc/udev/rules.d/50-udev.rules file prevents the creation of persistent names for tape devices with numbers higher than 9 in their names. For example, a persistent name will not be created for a tape device with a name of nst12.
To work around this, add an asterisk (*) after each occurrence of the string nst[0-9] in /etc/ udev/rules.d/50-udev.rules.
• The smartctl tool cannot properly read SMART parameters from SATA devices.
• A bug in previous versions of openmpi and lam may prevent you from upgrading these packages. This bug manifests in the following error (when attempting to upgrade openmpi or lam:
error: %preun(openmpi-[version]) scriptlet failed, exit status 2
As such, you need to manually remove older versions of openmpi and lam in order to install their latest versions. To do so, use the following rpm command:
rpm -qa | grep '^openmpi-\|^lam-' | xargs rpm -e --noscripts --allmatches
• When using dm-multipath, if features "1 queue_if_no_path" is specified in /etc/ multipath.conf then any process that issues I/O will hang until one or more paths are restored.
Page 42
Release Notes
42
To avoid this, set no_path_retry [N] in /etc/multipath.conf (where [N] is the number of times the system should retry a path). When you do, remove the features "1 queue_if_no_path" option from /etc/multipath.conf as well.
If you need to use "1 queue_if_no_path" and experience the issue noted here, use dmsetup to edit the policy at runtime for a particular LUN (i.e. for which all the paths are unavailable).
To illustrate: run dmsetup message [device] 0 "fail_if_no_path", where [device] is the multipath device name (e.g. mpath2; do not specify the path) for which you want to change the policy from "queue_if_no_path" to "fail_if_no_path".
• Enabling multiple installed versions of the same kernel module is not supported. In addition to this, a bug in the way kernel module versions are parsed can sometimes result in enabling an older version of the same kernel module.
Red Hat recommends that when you install a newer version of an installed kernel module, you should delete the older one first.
• Executing kdump on an IBM Bladecenter QS21 or QS22 configured with NFS root will fail. To avoid this, specify an NFS dump target in /etc/kdump.conf.
• IBM T60 laptops will power off completely when suspended and plugged into a docking station. To avoid this, boot the system with the argument acpi_sleep=s3_bios.
• The QLogic iSCSI Expansion Card for the IBM Bladecenter provides both ethernet and iSCSI functions. Some parts on the card are shared by both functions. However, the current qla3xxx and qla4xxx drivers support ethernet and iSCSI functions individually. Both drivers do not support the use of ethernet and iSCSI functions simultaneously.
Because of this limitation, successive resets (via consecutive ifdown/ifup commands) may hang the device. To avoid this, allow a 10-second interval after an ifup before issuing an ifdown. Also, allow the same 10-second interval after an ifdown before issuing an ifup. This interval allows ample time to stabilize and re-initialize all functions when an ifup is issued.
• Laptops equipped with the Cisco Aironet MPI-350 wireless may hang trying to get a DHCP address during any network-based installation using the wired ethernet port.
To work around this, use local media for your installation. Alternatively, you can disable the wireless card in the laptop BIOS prior to installation (you can re-enable the wireless card after completing the installation).
• Boot-time logging to /var/log/boot.log is not available in Red Hat Enterprise Linux 5.3.
• The system may not successfully reboot into a kexec/kdump kernel if X is running and using a driver other than vesa. This problem only exists with ATI Rage XL graphics chipsets.
If X is running on a system equipped with ATI Rage XL, ensure that it is using the vesa driver in order to successfully reboot into a kexec/kdump kernel.
• When using Red Hat Enterprise Linux 5.2 on a machine with an nVidia CK804 chipset installed, the following kernel messages may appear:
kernel: assign_interrupt_mode Found MSI capability
Page 43
All Architectures
43
kernel: pcie_portdrv_probe->Dev[005d:10de] has invalid IRQ. Check vendor BIOS
These messages indicate that certain PCI-E ports are not requesting IRQs. They do not, however, affect the operation of the machine in any way.
• Removable storage devices (such as CDs and DVDs) do not automatically mount when you are logged in as root. As such, you will need to manually mount the device through the graphical file manager.
Alternatively, you can run the following command to mount a device to /media:
mount /dev/[device name] /media
• When a LUN is deleted on a configured storage system, the change is not reflected on the host. In such cases, lvm commands will hang indefinitely when dm-multipath is used, as the LUN has now become stale.
To work around this, delete all device and mpath link entries in /etc/lvm/.cache specific to the stale LUN.
To find out what these entries are, run the following command:
ls -l /dev/mpath | grep [stale LUN]
For example, if [stale LUN] is 3600d0230003414f30000203a7bc41a00, the following results may appear:
lrwxrwxrwx 1 root root 7 Aug 2 10:33 /3600d0230003414f30000203a7bc41a00
-> ../dm-4 lrwxrwxrwx 1 root root 7 Aug 2 10:33 /3600d0230003414f30000203a7bc41a00p1 -> ../dm-5
This means that 3600d0230003414f30000203a7bc41a00 is mapped to two mpath links: dm-4 and dm-5.
As such, the following lines should be deleted from /etc/lvm/.cache:
/dev/dm-4 /dev/dm-5 /dev/mapper/3600d0230003414f30000203a7bc41a00 /dev/mapper/3600d0230003414f30000203a7bc41a00p1 /dev/mpath/3600d0230003414f30000203a7bc41a00 /dev/mpath/3600d0230003414f30000203a7bc41a00p1
• Running the multipath command with the -ll option can cause the command to hang if one of the paths is on a blocking device. Note that the driver does not fail a request after some time if the device does not respond.
Page 44
Release Notes
44
This is caused by the cleanup code, which waits until the path checker request either completes or fails. To display the current multipath state without hanging the command, use multipath -l instead.
• Upgrading pm-utils from a Red Hat Enterprise Linux 5.2 Beta version of pm-utils will fail,
resulting in the following error:
error: unpacking of archive failed on file /etc/pm/sleep.d: cpio: rename
To prevent this from occurring, delete the /etc/pm/sleep.d/ directory prior to upgrading. If / etc/pm/sleep.d contains any files, move those files to /etc/pm/hooks/.
• Hardware testing for the Mellanox MT25204 has revealed that an internal error occurs under certain
high-load conditions. When the ib_mthca driver reports a catastrophic error on this hardware, it is usually related to an insufficient completion queue depth relative to the number of outstanding work requests generated by the user application.
Although the driver will reset the hardware and recover from such an event, all existing connections at the time of the error will be lost. This generally results in a segmentation fault in the user application. Further, if opensm is running at the time the error occurs, then you need to manually restart it in order to resume proper operation.
• When installing Red Hat Enterprise Linux 5 on a guest, the guest is configured to explicitly use a
temporary installation kernel provided by dom0. Once installation finishes, it can then use its own bootloader. However, this can only be achieved by forcing the guest's first reboot to be a shutdown.
As such, when the Reboot button appears at the end of the guest installation, clicking it shuts down the guest, but does not reboot it. This is an expected behavior.
Note that when you boot the guest after this it will then use its own bootloader.
• Running rpmbuild on the compiz source RPM will fail if any KDE or qt development packages (for example, qt-devel) are installed. This is caused by a bug in the compiz configuration script.
To work around this, remove any KDE or qt development packages before attempting to build the compiz package from its source RPM.
• If your system has either ATI Radeon R500 or R600 graphics card equipped, firstboot will not run after installation. The system will go directly to the graphical login screen and skip firstboot altogether. If you attempt to run firstboot manually (i.e. from a failsafe terminal), the X session will crash.
This issue is caused by the driver used by the ATI Radeon R500/R600 hardware. The default driver used by these graphics cards are still in technology preview. To work around this, backup your / etc/X11/xorg.conf file; then, configure X to use the supported vesa driver instead using the following command:
system-config-display --reconfig --set-driver=vesa
You can now run firstboot. To switch back to your old settings, restore your original /etc/X11/ xorg.conf.
Page 45
All Architectures
45
• If your system uses the TSC timer, the gettimeofday system call may move backwards. This is
because of an overflow issue that causes the TSC timer to jump forward significantly in some cases; when this occurs, the TSC timer will correct itself, but will ultimately register a movement backwards in time.
This issue is particularly critical for time-sensitive systems, such as those used for transaction systems and databases. As such, if your system needs precision timing, Red Hat strongly recommends that you set the kernel to use another timer (for example, HPET).
• Attempting to run sniff may result in an error. This is because some required packages are not installed with dogtail.
To prevent this from occurring, install the following packages manually:
• librsvg2
• ghostscript-fonts
• pygtk2-libglade
• Thin Provisioning (also known as "virtual provisioning") will be first released with EMC Symmetrix DMX3 and DMX4. Please refer to the EMC Support Matrix and Symmetrix Enginuity code release notes for further details.
• In /etc/multipath.conf, setting max_fds to unlimited will prevent the multipathd daemon from starting up properly. As such, you should use a sufficiently high value instead for this setting.
• SystemTap currently uses GCC to probe user-space events. GCC is, however, unable to provide debuggers with precise location list information for parameters. In some cases, GCC also fails to provide visibility on some parameters. As a consequence, SystemTap scripts that probe user-space may return inaccurate readings.
• The IBM T41 laptop model does not enter Suspend Mode properly; as such, Suspend Mode will still consume battery life as normal. This is because Red Hat Enterprise Linux 5 does not yet include the radeonfb module.
To work around this, add a script named hal-system-power-suspend to /usr/share/hal/ scripts/ containing the following lines:
chvt 1 radeontool light off radeontool dac off
This script will ensure that the IBM T41 laptop enters Suspend Mode properly. To ensure that the system resumes normal operations properly, add the script restore-after-standby to the same directory as well, containing the following lines:
radeontool dac on radeontool light on chvt 7
Page 46
Release Notes
46
• If the edac module is loaded, BIOS memory reporting will not work. This is because the edac
module clears the register that the BIOS uses for reporting memory errors.
The current Red Hat Enterprise Linux Driver Update Model instructs the kernel to load all available modules (including the edac module) by default. If you wish to ensure BIOS memory reporting on your system, you need to manually blacklist the edac modules. To do so, add the following lines to /etc/modprobe.conf:
blacklist edac_mc blacklist i5000_edac blacklist i3000_edac blacklist e752x_edac
• Red Hat Enterprise Linux 5.3 can detect online growing or shrinking of an underlying block device. However, there is no method to automatically detect that a device has changed size, so manual steps are required to recognize this and resize any file systems which reside on the given device(s). When a resized block device is detected, a message like the following will appear in the system logs:
VFS: busy inodes on changed media or resized disk sdi
If the block device was grown, then this message can be safely ignored. However, if the block device was shrunk without shrinking any data set on the block device first, the data residing on the device may be corrupted.
It is only possible to do an online resize of a filesystem that was created on the entire LUN (or block device). If there is a partition table on the block device, then the file system will have to be unmounted to update the partition table.
• If your system has a GFS2 file system mounted, a node may hang if a cached inode is accessed in one node and unlinked on a different node. When this occurs, the hung node will be unavailable until you fence and recover it via the normal cluster recovery mechanism. The function calls gfs2_dinode_dealloc and shrink_dcache_memory will also appear in the stack traces of any processes stuck in the hung node.
This issue does not affect single-node GFS2 file systems.
• The following message may be encountered during system boot:
Could not detect stabilization, waiting 10 seconds. Reading all physical volumes. This may take a while...
This delay (which may be up to 10 seconds, dependant on the hardware configuration) is necessary to ensure that the kernel has completed scanning the disks.
• The current implementation of User Payload Access in ipmitool allows you to configure devices, but does not allow you to retrieve the current settings for those devices.
Page 47
x86 Architectures
47
• Using the swap --grow parameter in a kickstart file without setting the --maxsize parameter at
the same time makes anaconda impose a restriction on the maximum size of the swap partition. It does not allow it to grow to fill the device.
For systems with less than 2GB of physical memory, the imposed limit is twice the amount of physical memory. For systems with more than 2GB, the imposed limit is the size of physical memory plus 2GB.
• The gfs2_convert program may not free up all blocks from the GFS metadata that are no longer
used under GFS2. These unused metadata blocks will be discovered and freed the next time gfs2_fsck is run on the file system. It is recommended that gfs2_fsck be run after the filesystem has been converted to free the unused blocks. These unused blocks will be flagged by gfs2_fsck with messages such as:
Ondisk and fsck bitmaps differ at block 137 (0x89) Ondisk status is 1 (Data) but FSCK thinks it should be 0 (Free) Metadata type is 0 (free)
These messages do not indicate corruption in the GFS2 file system, they indicate blocks that should have been freed, but were not. The number of blocks needing to be freed will vary depending on the size of the file system and block size. Many file systems will not encounter this issue at all. Large file systems may have a small number of blocks (typically less than 100).
9.2. x86 Architectures
• When running the bare-metal (non-Virtualized) kernel, the X server may not be able to retrieve
EDID information from the monitor. When this occurs, the graphics driver will be unable to display resolutions highers than 800x600.
To work around this, add the following line to the ServerLayout section of /etc/X11/ xorg.conf:
Option "Int10Backend" "x86emu"
• Recording needs to be manually enabled on Dell M4300 and M6300. To do this, perform the following steps:
1. Open alsamixer.
2. Press Tab to toggle [Capture] in the View field (located at the upper left part of the menu).
3. Press the Space bar.
4. To verify that recording is enabled, the text above the ADCMux field should display L R
CAPTUR.
• If encryption is enabled on the boot device during system installation, the following message will be logged during system boot:
padlock: VIA PadLock not detected.
Page 48
Release Notes
48
This message can safely be ignored.
9.3. x86_64 Architectures
• Some machines that use NVIDIA graphics cards may display corrupted graphics or fonts when using the graphical installer or during a graphical login. To work around this, switch to a virtual console and back to the original X host.
• On an IBM T61 laptop, Red Hat recommends that you refrain from clicking the glxgears window (when glxgears is run). Doing so can lock the system.
To prevent this from occurring, disable the tiling feature. To do so, add the following line in the Device section of /etc/X11/xorg.conf:
Option "Tiling" "0"
• Recording needs to be manually enabled on Dell M4300 and M6300. To do this, perform the following steps:
1. Open alsamixer.
2. Press Tab to toggle [Capture] in the View field (located at the upper left part of the menu).
3. Press the Space bar.
4. To verify that recording is enabled, the text above the ADCMux field should display L R
CAPTUR.
• If your system uses an Intel 945GM graphics card, do not use the i810 driver. You should use the default intel driver instead.
• On dual-GPU laptops, if one of the graphics chips is Intel-based, the Intel graphics mode cannot drive any external digital connections (including HDMI, DVI, and DisplayPort). This is a hardware limitation of the Intel GPU. If you require external digital connections, configure the system to use the discrete graphics chip (in the BIOS).
9.4. PowerPC Architectures
• When using Alt-SysRq-W to debug, the following warning message will appear:
Badness in smp_call_function at arch/powerpc/kernel/smp.c:223
Afterwards, the system will also warn that it will hang. This message should be ignored as it will not cause the system to hang.
• Recording needs to be manually enabled on Dell M4300 and M6300. To do this, perform the following steps:
1. Open alsamixer.
2. Press Tab to toggle [Capture] in the View field (located at the upper left part of the menu).
3. Press the Space bar.
Page 49
s390x Architectures
49
4. To verify that recording is enabled, the text above the ADCMux field should display L R CAPTUR.
• The size of the PPC kernel image is too large for OpenFirmware to support. Consequently, network booting will fail, resulting in the following error message:
Please wait, loading kernel... /pci@8000000f8000000/ide@4,1/disk@0:2,vmlinux-anaconda: No such file or directory boot:
To work around this:
1. Boot to the OpenFirmware prompt, by pressing the '8' key when the IBM splash screen is
displayed.
2. Run the following command:
setenv real-base 2000000
3. Boot into System Managment Services (SMS) with the command:
0> dev /packages/gui obe
9.5. s390x Architectures
• When running Red Hat Enterprise Linux 5.2 on a z/VM that has more than 2GB of guest storage defined, invalid data can be read from and written to any FCP and OSA device attached in QDIO mode with the Queued-I/O assist (QIOASSIST) option enabled. If your system has any such devices attached, Red Hat recommends that you download and install the corresponding z/VM Program Temporary Fix (PTF) from the following link:
http://www-1.ibm.com/support/docview.wss?uid=isg1VM64306
• It is not possible to directly read and convert a z/VM dump into a file. Instead, you should first copy the dump from the z/VM reader into a Linux file system using vmur and convert the dump into a Linux-readable file using vmconvert.
• The IBM System z does not provide a traditional Unix-style physical console. As such, Red Hat Enterprise Linux 5.2 for the IBM System z does not support the firstboot functionality during initial program load.
To properly initialize setup for Red Hat Enterprise Linux 5.2 on the IBM System z, run the following commands after installation:
• /usr/bin/setup — provided by the setuptool package.
• /usr/bin/rhn_register — provided by the rhn-setup package.
Page 50
Release Notes
50
9.6. ia64 Architecture
• Some Itanium systems cannot properly produce console output from the kexec purgatory code.
This code contains instructions for backing up the first 640k of memory after a crash.
While purgatory console output can be useful in diagnosing problems, it is not needed for kdump to properly function. As such, if your Itanium system resets during a kdump operation, disable console output in purgatory by adding --noio to the KEXEC_ARGS variable in /etc/ sysconfig/kdump.
• Running perftest will fail if different CPU speeds are detected. As such, you should disable CPU speed scaling before running perftest.
• When the kdump kernel is booted, the following error will appear in the boot log:
mknod: /tmp/initrd.[numbers]/dev/efirtc: No such file or directory
This error results from a malformed request to create the efirtc in an incorrect path. However, the device path in question is also created statically in the initramfs when the kdump service is started. As such, the run-time creation of the device node is redundant, harmless, and should not affect the performance of kdump.
• Some systems may be unable to boot the kdump kernel properly. In such cases, use the machvec=dig kernel parameter.
• Recording needs to be manually enabled on Dell M4300 and M6300. To do this, perform the following steps:
1. Open alsamixer.
2. Press Tab to toggle [Capture] in the View field (located at the upper left part of the menu).
3. Press the Space bar.
4. To verify that recording is enabled, the text above the ADCMux field should display L R
CAPTUR.
• On Intel Itanium-based systems running SELinux in enforcing mode, either the allow_unconfined_execmem_dyntrans or allow_execmem Booleans must be turned on to allow the IA-32 Execution Layer (the ia32el service) to operate correctly. If the allow_unconfined_execmem_dyntrans Boolean is off, but the allow_execmem Boolean is on, which it is by default in Red Hat Enterprise Linux 5, the ia32el service supports 32-bit emulation; however, if both Booleans are off, emulation fails.
10. Added Packages
cmirror-1.1.36-1.el5
• Group: System Environment/Base
• Summary: cmirror - The Cluster Mirror Package
• Description:
Page 51
Added Packages
51
cmirror - Cluster Mirroring
cmirror-kmod-0.1.21-10.el5
• Group: System Environment/Kernel
• Summary: cmirror kernel modules
• Description:
cmirror-kmod - The Cluster Mirror kernel modules
compat-libcom_err-1.0-7
• Group: System Environment/Libraries
• Summary: A libcom_err compatibility library
• Description:
The compat-libcom_err package contains libcom_err.so.3, which may be required by applications which were built against older packages of MIT Kerberos.
crash-spu-commands-1.1-1
• Group: Development/Debuggers
• Summary: Cell/B.E. SPU commands extension for crash
• Description:
Specific commands for debugging SPU run control data using crash.
dapl-2.0.13-4.el5
• Group: System Environment/Libraries
• Summary: Library providing access to the DAT 1.2 and 2.0 APIs
• Description:
libdat and libdapl provide a userspace implementation of the DAT 1.2 and 2.0 API that is built to natively support InfiniBand/iWARP network technology.
dstat-0.6.6-3.el5
• Group: System Environment/Base
Page 52
Release Notes
52
• Summary: Versatile resource statistics tool
• Description:
Dstat is a versatile replacement for vmstat, iostat, netstat and ifstat. Dstat overcomes some of their limitations and adds some extra features, more counters and flexibility. Dstat is handy for monitoring systems during performance tuning tests, benchmarks or troubleshooting.
Dstat allows you to view all of your system resources instantly, you can eg. compare disk usage in combination with interrupts from your IDE controller, or compare the network bandwidth numbers directly with the disk throughput (in the same interval).
Dstat gives you detailed selective information in columns and clearly indicates in what magnitude and unit the output is displayed. Less confusion, less mistakes.
e4fsprogs-1.41.1-2.el5
• Group: System Environment/Base
• Summary: Utilities for managing the fourth extended (ext4) filesystem
• Description:
The e4fsprogs package contains a number of utilities for creating, checking, modifying, and correcting any inconsistencies in the fourth extended (ext4) filesystem. E4fsprogs contains e4fsck (used to repair filesystem inconsistencies after an unclean shutdown), mke4fs (used to initialize a partition to contain an empty ext4 filesystem), debugfs (used to examine the internal structure of a filesystem, to manually repair a corrupted filesystem, or to create test cases for e4fsck), tune4fs (used to modify filesystem parameters), and most of the other core ext4fs filesystem utilities.
Please note that "e4fsprogs" simply contains renamed static binaries from the equivalent upstream e2fsprogs release; it is packaged this way for Red Hat Enterprise Linux 5 to ensure that the many changes included for ext4 do not destabilize the core e2fsprogs in RHEL5.
You should install the e4fsprogs package if you need to manage the performance of an ext4 filesystem.
ecryptfs-utils-56-8.el5
• Group: System Environment/Base
Page 53
Added Packages
53
• Summary: The eCryptfs mount helper and support libraries
• Description:
eCryptfs is a stacked cryptographic filesystem that ships in the Linux kernel. This package provides the mount helper and supporting libraries to perform key management and mount functions.
Install ecryptfs-utils if you would like to mount eCryptfs.
fipscheck-1.0.3-1.el5
• Group: System Environment/Libraries
• Summary: A library for integrity verification of FIPS validated
modules
• Description:
FIPSCheck is a library for integrity verification of FIPS validated modules. The package also provides helper binaries for creation and verification of the HMAC-SHA256 checksum files.
freeipmi-0.5.1-6.el5
• Group: Applications/System
• Summary: FreeIPMI
• Description:
The FreeIPMI project provides "Remote-Console" (out-of-band) and "System Management Software" (in-band) based on Intelligent Platform Management Interface specification.
This package contains a Technology Preview for FreeIPMI. Please visit http://www.redhat.com/support/service/ for details on the Red Hat support policies.
gcc43-4.3.2-7.el5
• Group: Development/Languages
• Summary: Preview of GCC version 4.3
• Description:
Page 54
Release Notes
54
The gcc43 package contains preview the GNU Compiler Collection version
4.3.
gtk-vnc-0.3.2-3.el5
• Group: Development/Libraries
• Summary: A GTK widget for VNC clients
• Description:
gtk-vnc is a VNC viewer widget for GTK. It is built using coroutines allowing it to be completely asynchronous while remaining single threaded.
ibsim-0.4-3.el5
• Group: System Environment/Libraries
• Summary: InfiniBand fabric simulator for management
• Description:
ibsim provides simulation of infiniband fabric for using with OFA OpenSM, diagnostic and management tools.
infiniband-diags-1.4.1-2.el5
• Group: System Environment/Libraries
• Summary: OpenFabrics Alliance InfiniBand Diagnostic Tools
• Description:
This package provides IB diagnostic programs and scripts needed to diagnose an IB subnet.
isns-utils-0.91-0.1.el5
• Group: System Environment/Daemons
• Summary: The iSNS daemon and utility programs
• Description:
The iSNS package contains the daemon and tools to setup a iSNS server, and iSNS client tools. The Internet Storage Name Service (iSNS) protocol allows automated discovery, management and configuration of iSCSI and
Page 55
Added Packages
55
Fibre Channel devices (using iFCP gateways) on a TCP/IP network.
java-1.6.0-openjdk-1.6.0.0-0.25.b09.el5
• Group: Development/Languages
• Summary: OpenJDK Runtime Environment
• Description:
The OpenJDK runtime environment.
ktune-0.2-3.el5
• Group: System Environment/Base
• Summary: Server performance tuning service
• Description:
ktune provides settings for server performance tuning. Please have a look at /etc/sysconfig/ktune and /etc/sysctl.ktune for tuning parameters.
libcmpiutil-0.4-2.el5
• Group: System Environment/Libraries
• Summary: CMPI Utility Library
• Description:
Libcmpiutil is a library of utility functions for CMPI providers. The goal is to reduce the amount of repetitive work done in most CMPI providers by encapsulating common procedures with more "normal" APIs. This extends from operations like getting typed instance properties to standardizing method dispatch and argument checking.
libcxgb3-1.2.2-1.el5
• Group: System Environment/Libraries
• Summary: Chelsio T3 iWARP HCA Userspace Driver
• Description:
Userspace hardware driver for use with the libibverbs InfiniBand/iWARP verbs
Page 56
Release Notes
56
library. This driver enables Chelsio iWARP capable ethernet devices.
libehca-1.2-2.el5
• Group: System Environment/Libraries
• Summary: IBM InfiniBand HCA Userspace Driver
• Description:
IBM hardware driver for use with libibverbs user space verbs access library.
libibcm-1.0.3-1.el5
• Group: System Environment/Libraries
• Summary: Userspace InfiniBand Communication Manager.
• Description:
libibcm provides a userspace InfiniBand Communication Managment library.
libibcommon-1.1.1-1.el5
• Group: System Environment/Libraries
• Summary: OpenFabrics Alliance InfiniBand management common library
• Description:
libibcommon provides common utility functions for the OFA diagnostic and management tools.
libibmad-1.2.1-1.el5
• Group: System Environment/Libraries
• Summary: OpenFabrics Alliance InfiniBand MAD library
• Description:
libibmad provides low layer IB functions for use by the IB diagnostic and management programs. These include MAD, SA, SMP, and other basic IB functions.
libibumad-1.2.1-1.el5
• Group: System Environment/Libraries
Page 57
Added Packages
57
• Summary: OpenFabrics Alliance InfiniBand umad (user MAD) library
• Description:
libibumad provides the user MAD library functions which sit on top of the user MAD modules in the kernel. These are used by the IB diagnostic and management tools, including OpenSM.
libibverbs-1.1.2-1.el5
• Group: System Environment/Libraries
• Summary: Library providing access to InfiniBand/iWARP hardware verbs
protocol
• Description:
libibverbs is a library that allows userspace processes to use InfiniBand/iWARP "verbs" as described in the InfiniBand Architecture Specification. This includes direct hardware access for fast path operations.
For this library to be useful, a device-specific plug-in module should also be installed.
libipathverbs-1.1-11.el5
• Group: System Environment/Libraries
• Summary: QLogic InfiniPath HCA Userspace Driver
• Description:
QLogic hardware driver for use with libibverbs user space verbs access library. This driver supports QLogic InfiniPath based cards.
libmlx4-1.0-4.el5
• Group: System Environment/Libraries
• Summary: Mellanox ConnectX InfiniBand HCA Userspace Driver
• Description:
Mellanox hardware driver for use with libibverbs user space verbs access library. This driver supports Mellanox ConnectX architecture cards.
Page 58
Release Notes
58
libmthca-1.0.5-1.el5
• Group: System Environment/Libraries
• Summary: Mellanox InfiniBand HCA Userspace Driver
• Description:
Mellanox hardware driver for use with libibverbs user space verbs access library. This driver supports Mellanox based Single Data Rate and Dual Data Rate cards, including those from Cisco, Topspin, and Voltaire. It does not support the Connect-X architecture based Quad Data Rate cards (libmlx4 handles that hardware).
libnes-0.5-4.el5
• Group: System Environment/Libraries
• Summary: NetEffect RNIC Userspace Driver
• Description:
Userspace hardware driver for use with the libibverbs InfiniBand/iWARP verbs library. This driver enables NetEffect iWARP capable ethernet devices.
librdmacm-1.0.8-1.el5
• Group: System Environment/Libraries
• Summary: Userspace RDMA Connection Manager.
• Description:
librdmacm provides a userspace RDMA Communication Managment API.
libsdp-1.1.99-10.el5_2
• Group: System Environment/Libraries
• Summary: A library for direct userspace use of Sockets Direct Protocol
• Description:
libsdp is an LD_PRELOAD-able library that can be used to have existing applications use InfiniBand Sockets Direct Protocol (SDP) instead of TCP sockets, transparently and without recompilation. For information on how to configure libsdp, see libsdp.conf, which is installed in
Page 59
Added Packages
59
$(sysconfdir) (usually /usr/local/etc or /etc).
libsmi-0.4.5-2.el5
• Group: System Environment/Libraries
• Summary: A library to access SMI MIB information
• Description:
Libsmi is a C library to access MIB module information through a well defined API that hides the nasty details of locating and parsing SMIv1/v2 MIB modules.
This package contains tools to check, dump, and convert MIB definitions and a steadily maintained and revised archive of all IETF and IANA maintained standard MIB modules.
libspe2-2.2.80.121-4.el5
• Group: System Environment/Base
• Summary: SPE Runtime Management Library
• Description:
SPE Runtime Management Library for the Cell Broadband Engine Architecture.
libvirt-cim-0.5.1-4.el5
• Group: Development/Libraries
• Summary: A CIM provider for libvirt
• Description:
Libvirt-cim is a CMPI CIM provider that implements the DMTF SVPC virtualization model. The goal is to support most of the features exported by libvirt itself, enabling management of multiple platforms with a single provider.
mpi-selector-1.0.1-1.el5
• Group: System Environment/Base
• Summary: Provides site-wide and per-user MPI implementation selection
• Description:
A simple tool that allows system administrators to set a site-wide
Page 60
Release Notes
60
default for which MPI implementation is to be used, but also allow users to set their own default MPI implementation, thereby overriding the site-wide default.
The default can be changed easily via the mpi-selector command -­editing of shell startup files is not required.
mpitests-3.0-2.el5
• Group: Applications
• Summary: MPI Benchmarks and tests
• Description:
Set of popular MPI benchmarks: IMB-2.3 Presta-1.4.0 OSU benchmarks ver 2.2
mstflint-1.3-1.el5
• Group: Applications/System
• Summary: Mellanox firmware burning tool
• Description:
This package contains a burning tool for Mellanox manufactured HCA cards. It also provides access to the relevant source code.
mvapich-1.1.0-0.2931.3.el5
• Group: Development/Libraries
• Summary: MPI implementation over Infiniband RDMA-enabled interconnect
• Description:
This is high performance and scalable MPI-1 implementation over Infiniband and RDMA-enabled interconnect. This implementation is based on MPICH and MVICH. MVAPICH is pronounced as `em-vah-pich''.
mvapich2-1.0.3-3.el5
• Group: Development/Libraries
• Summary: OSU MVAPICH2 MPI package
• Description:
Page 61
Added Packages
61
This is an MPI-2 implementation which includes all MPI-1 features. It is based on MPICH2 and MVICH.
nedit-5.5-21.el5
• Group: Applications/Editors
• Summary: A GUI text editor for systems with X
• Description:
NEdit is a GUI text editor for the X Window System. NEdit is very easy to use, especially if you are familiar with the Macintosh(TM) or Microsoft(TM) Windows(TM) style of interface.
nspluginwrapper-0.9.91.5-22.el5
• Group: Networking/WWW
• Summary: A compatibility layer for Netscape 4 plugins
• Description:
nspluginwrapper makes it possible to use Netscape 4 compatible plugins compiled for ppc into Mozilla for another architecture, e.g. x86_64.
This package consists in: * npviewer: the plugin viewer * npwrapper.so: the browser-side plugin * mozilla-plugin-config: a tool to manage plugins installation and update
ofed-docs-1.3.2-0.20080728.0355.1.el5
• Group: Documentation/Man
• Summary: OpenFabrics Enterprise Distribution documentation
• Description:
Documentation from OFED 1.3
opensm-3.2.2-3.el5
• Group: System Environment/Daemons
• Summary: OpenIB InfiniBand Subnet Manager and management utilities
• Description:
Page 62
Release Notes
62
OpenSM is the OpenIB project's Subnet Manager for Infiniband networks. The subnet manager is run as a system daemon on one of the machines in the infiniband fabric to manage the fabric's routing state. This package also contains various tools for diagnosing and testing Infiniband networks that can be used from any machine and do not need to be run on a machine running the opensm daemon.
openswan-2.6.14-1.el5_2.1
• Group: System Environment/Daemons
• Summary: Openswan IPSEC implementation
• Description:
Openswan is a free implementation of IPSEC & IKE for Linux. IPSEC is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks. Everything passing through the untrusted net is encrypted by the ipsec gateway machine and decrypted by the gateway at the other end of the tunnel. The resulting tunnel is a virtual private network or VPN.
This package contains the daemons and userland tools for setting up Openswan on a freeswan enabled kernel.
perftest-1.2-11.el5
• Group: Productivity/Networking/Diagnostic
• Summary: IB Performance tests
• Description:
gen2 uverbs microbenchmarks
perl-Archive-Zip-1.16-1.2.1
• Group: Development/Libraries
• Summary: Perl library for accessing Zip archives
• Description:
The Archive::Zip module allows a Perl program to create, manipulate,
Page 63
Added Packages
63
read, and write Zip archive files. Zip archives can be created, or you can read from existing zip files. Once created, they can be written to files, streams, or strings. Members can be added, removed, extracted, replaced, rearranged, and enumerated. They can also be renamed or have their dates, comments, or other attributes queried or modified. Their data can be compressed or uncompressed as needed. Members can be created from members in existing Zip files, or from existing directories, files, or strings.
perl-Config-General-2.40-1.el5
• Group: Development/Libraries
• Summary: Generic configuration module for Perl
• Description:
This module opens a config file and parses it's contents for you. After parsing the module returns a hash structure which contains the representation of the config file. The format of config files supported by Config::General is inspired by the well known apache config format, in fact, this module is 100% read-compatible to apache configs, but you can also just use simple name/value pairs in your config files. In addition to the capabilities of a apache config file it supports some enhancements such as here-documents, C- style comments or multiline options. It is also possible to save the config back to disk, which makes the module a perfect backend for configuration interfaces. It is possible to use variables in config files and there exists also support for object oriented access to the configuration.
pexpect-2.3-1.el5
• Group: Development/Languages
• Summary: Pure Python Expect-like module
• Description:
Pexpect is a pure Python module for spawning child applications; controlling them; and responding to expected patterns in their output. Pexpect works like Don Libes' Expect. Pexpect allows your script to spawn a child application and control it as if a human were typing commands.
Pexpect can be used for automating interactive applications such as ssh, ftp,
Page 64
Release Notes
64
passwd, telnet, etc. It can be used to automate setup scripts for duplicating software package installations on different servers. And it can be used for automated software testing. Pexpect is in the spirit of Don Libes' Expect, but Pexpect is pure Python. Unlike other Expect-like modules for Python, Pexpect does not require TCL or Expect nor does it require C extensions to be compiled. It should work on any platform that supports the standard Python pty module.
python-iniparse-0.2.3-4.el5
• Group: Development/Libraries
• Summary: Python Module for Accessing and Modifying Configuration Data
in INI files
• Description:
iniparse is an INI parser for Python which is API compatible with the standard library's ConfigParser, preserves structure of INI files (order of sections & options, indentation, comments, and blank lines are preserved when data is updated), and is more convenient to use.
python-setuptools-0.6c5-2.el5
• Group: Development/Languages
• Summary: Download, build, install, upgrade, and uninstall Python
packages
• Description:
setuptools is a collection of enhancements to the Python distutils that allow you to more easily build and distribute Python packages, especially ones that have dependencies on other packages.
qlvnictools-0.0.1-10.el5
• Group: System Environment/Base
• Summary: VNIC ULP service
• Description:
Page 65
Added Packages
65
VNIC ULP service
qperf-0.4.1-2.el5
• Group: Networking/Diagnostic
• Summary: Measure socket and RDMA performance
• Description:
Measure socket and RDMA performance.
rsyslog-2.0.6-1.el5
• Group: System Environment/Daemons
• Summary: Enhanced system logging and kernel message trapping daemons
• Description:
Rsyslog is an enhanced multi-threaded syslogd supporting, among others, MySQL, syslog/tcp, RFC 3195, permitted sender lists, filtering on any message part, and fine grain output format control. It is quite compatible to stock sysklogd and can be used as a drop-in replacement. Its advanced features make it suitable for enterprise-class, encryption protected syslog relay chains while at the same time being very easy to setup for the novice user.
setroubleshoot-plugins-2.0.4-2.el5
• Group: Applications/System
• Summary: Analysis plugins for use with setroubleshoot
• Description:
This package provides a set of analysis plugins for use with setroubleshoot. Each plugin has the capacity to analyze SELinux AVC data and system data to provide user friendly reports describing how to interpret SELinux AVC denials.
sgpio-1.2.0_10-2.el5
• Group: System Environment/Base
• Summary: SGPIO captive backplane tool
• Description:
Page 66
Release Notes
66
Intel SGPIO enclosure management utility This package contains (part of) a Technology Preview for Application for AHCI driver with SGPIO support. Please visit http://www.redhat.com/support/service/ for details on the Red Hat support policies.
srptools-0.0.4-2.el5
• Group: System Environment/Base
• Summary: Tools for using the InfiniBand SRP protocol devices
• Description:
In conjunction with the kernel ib_srp driver, srptools allows you to discover and use SCSI devices via the SCSI RDMA Protocol over InfiniBand.
system-config-netboot-0.1.45.1-1.el5
• Group: Applications/System
• Summary: network booting/install configuration utility (GUI)
• Description:
system-config-netboot is a utility which allows you to configure diskless environments and network installations.
tpm-tools-1.3.1-1.el5
• Group: Applications/System
• Summary: Management tools for the TPM hardware
• Description:
tpm-tools is a group of tools to manage and utilize the Trusted Computing Group's TPM hardware. TPM hardware can create, store and use RSA keys securely (without ever being exposed in memory), verify a platform's software state using cryptographic hashes and more.
trousers-0.3.1-4.el5
• Group: System Environment/Libraries
• Summary: TCG's Software Stack v1.2
• Description:
Page 67
Added Packages
67
TrouSerS is an implementation of the Trusted Computing Group's Software Stack (TSS) specification. You can use TrouSerS to write applications that make use of your TPM hardware. TPM hardware can create, store and use RSA keys securely (without ever being exposed in memory), verify a platform's software state using cryptographic hashes and more.
tvflash-0.9.0-2.el5
• Group: Applications/System
• Summary: Tool to manage Mellanox HCA firmware flash memory
• Description:
tvflash is used to query and update the firmware flash memory attached to Mellanox InfiniBand HCAs.
udftools-1.0.0b3-0.1.el5
• Group: Applications/Archiving
• Summary: Linux UDF Filesystem userspace utilities
• Description:
Linux UDF Filesystem userspace utilities.
virt-viewer-0.0.2-2.el5
• Group: Applications/System
• Summary: Virtual Machine Viewer
• Description:
Virtual Machine Viewer provides a graphical console client for connecting to virtual machines. It uses the GTK-VNC widget to provide the display, and libvirt for looking up VNC server details.
wacomexpresskeys-0.4.1-1.el5
• Group: System Environment/Base
• Summary: Wacom ExpressKeys and Touch Strips configuration utility
Page 68
Release Notes
68
• Description:
Configuration utility to bind Wacom tablet's ExpressKeys and Touch Strips to generate other input events.
wdaemon-0.14-2
• Group: User Interface/X Hardware Support
• Summary: Hotplug helper for Wacom X.org driver
• Description:
Helper application which emulates persistent input devices for Wacom tablets so they can be plugged and unplugged while X.org server is running. This should go away as soon X.org properly supports hotplugging.
xulrunner-1.9.0.5-1.el5_2
• Group: Applications/Internet
• Summary: XUL Runtime for Gecko Applications
• Description:
XULRunner provides the XUL Runtime environment for Gecko applications.
yum-updatesd-0.9-2.el5
• Group: System Environment/Base
• Summary: Update notification daemon
• Description:
yum-updatesd provides a daemon which checks for available updates and can notify you when they are available via email, syslog or dbus.
11. Dropped Packages
cachefilesd-0.8-2.el5
• Group: System Environment/Daemons
• Summary: CacheFiles userspace management daemon
• Description:
Page 69
Dropped Packages
69
The cachefilesd daemon manages the caching files and directory that are that are used by network filesystems such a AFS and NFS to do persistent caching to the local disk.
frysk-0.0.1.2007.06.21.rh2-4.el5
• Group: Development/System
• Summary: Frysk execution analysis tool
• Description:
Frysk is an execution-analysis technology implemented using native Java and C++. It is aimed at providing developers and sysadmins with the ability to both examine and analyze running multi-host, multi-process, multi-threaded systems. Frysk allows the monitoring of running processes and threads, of locking primitives and will also expose deadlocks, gather data and debug any given process in the system.
gfs2-kmod-1.52-1.16.el5
• Group: System Environment/Kernel
• Summary: gfs2 kernel module
• Description:
GFS2 - The GFS2 filesystem provided for RHEL5.
sysreport-1.4.3-13.el5
• Group: Development/Debuggers
• Summary: Gathers system hardware and configuration information.
• Description:
Sysreport is a utility that gathers information about a system's hardware and configuration. The information can then be used for diagnostic purposes and debugging. Sysreport is commonly used to help support technicians and developers by providing a "snapshot" of a system's current layout.
Page 70
Release Notes
70
12. Updated Packages
Cluster_Administration-5.1.0-7 - Cluster_Administration-5.2-1
• Group: Documentation
• Summary: Red Hat Cluster for Red Hat Enterprise Linux
• Description:
Configuring and Managing a Red Hat Cluster describes the configuration and management of Red Hat cluster systems for Red Hat Enterprise Linux 5.2 It does not include information about Red Hat Linux Virtual Servers (LVS). Information about installing and configuring LVS is in a separate document.
• No added dependencies
• No removed dependencies
Deployment_Guide-5.1.0-11 - Deployment_Guide-5.2-11
• Group: Documentation
• Summary: Deployment Guide
• Description:
This Deployment Guide documents relevant information regarding the deployment, configuration and administration of Red Hat Enterprise Linux
5.2.
• No added dependencies
• No removed dependencies
Global_File_System-5.1.0-6 - Global_File_System-5.2-1
• Group: Documentation
• Summary: Red Hat Global File System
• Description:
This book provides information about installing, configuring, and maintaining Red Hat GFS (Red Hat Global File System) for Red Hat Enterprise Linux 5.2.
• No added dependencies
Page 71
Updated Packages
71
• No removed dependencies
ImageMagick-6.2.8.0-3.el5.4 - ImageMagick-6.2.8.0-4.el5_1.1
• Group: Applications/Multimedia
• Summary: An X application for displaying and manipulating images.
• Description:
ImageMagick(TM) is an image display and manipulation tool for the X Window System. ImageMagick can read and write JPEG, TIFF, PNM, GIF, and Photo CD image formats. It can resize, rotate, sharpen, color reduce, or add special effects to an image, and when finished you can either save the completed work in the original format or a different one. ImageMagick also includes command line programs for creating animated or transparent .gifs, creating composite images, creating thumbnail images, and more.
ImageMagick is one of your choices if you need a program to manipulate and dis play images. If you want to develop your own applications which use ImageMagick code or APIs, you need to install ImageMagick-devel as well.
• No added dependencies
• No removed dependencies
NetworkManager-0.6.4-6.el5 - NetworkManager-0.7.0-3.el5
• Group: System Environment/Base
• Summary: Network connection manager and user applications
• Description:
NetworkManager attempts to keep an active network connection available at all times. It is intended only for the desktop use-case, and is not intended for usage on servers. The point of NetworkManager is to make networking configuration and setup as painless and automatic as possible. If using DHCP, NetworkManager is intended to replace default routes, obtain IP addresses from a DHCP server, and change nameservers whenever it sees fit.
• Added Dependencies:
• autoconf
• automake
Page 72
Release Notes
72
• dbus-devel >= 1.1
• dbus-glib-devel >= 0.73-6
• dhclient
• doxygen
• gtk-doc
• intltool
• libdaemon-devel
• libnotify-devel >= 0.4.2
• libtool
• nss-devel >= 3.11.7
• perl(XML::Parser)
• ppp >= 2.2.4
• wireless-tools-devel >= 1:28-2
• Removed Dependencies:
• dbus-devel >= 0.90
• dbus-glib-devel >= 0.70
• dhcdbd
• gnome-panel-devel
• libgnomeui-devel
• libnl-devel
• libnotify-devel >= 0.3
• perl-XML-Parser
• wireless-tools-devel >= 1:28-0pre9
ORBit2-2.14.3-4.el5 - ORBit2-2.14.3-5.el5
• Group: System Environment/Daemons
• Summary: A high-performance CORBA Object Request Broker
• Description:
ORBit is a high-performance CORBA (Common Object Request Broker Architecture) ORB (object request broker). It allows programs to
Page 73
Updated Packages
73
send requests and receive replies from other programs, regardless of the locations of the two programs. CORBA is an architecture that enables communication between program objects, regardless of the programming language they're written in or the operating system they run on.
You will need to install this package and ORBit-devel if you want to write programs that use CORBA technology.
• No added dependencies
• No removed dependencies
OpenIPMI-2.0.6-5.el5.4 - OpenIPMI-2.0.6-11.el5
• Group: System Environment/Base
• Summary: OpenIPMI (Intelligent Platform Management Interface) library
and tools
• Description:
The Open IPMI project aims to develop an open code base to allow access to platform information using Intelligent Platform Management Interface (IPMI). This package contains the tools of the OpenIPMI project.
• No added dependencies
• No removed dependencies
SysVinit-2.86-14 - SysVinit-2.86-15.el5
• Group: System Environment/Base
• Summary: Programs which control basic system processes.
• Description:
The SysVinit package contains a group of processes that control the very basic functions of your system. SysVinit includes the init program, the first program started by the Linux kernel when the system boots. Init then controls the startup, running, and shutdown of all other programs.
• No added dependencies
• No removed dependencies
Virtualization-5.1.0-12 - Virtualization-5.2-11
• Group: Documentation
Page 74
Release Notes
74
• Summary: Virtualization Guide
• Description:
The Red Hat Enterprise Linux Virtualization Guide contains information on installation, configuring, administering, tips, tricks and troubleshooting virtualization technologies used in Red Hat Enterprise Linux.
• No added dependencies
• No removed dependencies
a2ps-4.13b-57.1.el5 - a2ps-4.13b-57.2.el5
• Group: Applications/Publishing
• Summary: Converts text and other types of files to PostScript(TM).
• Description:
The a2ps filter converts text and other types of files to PostScript(TM). A2ps has pretty-printing capabilities and includes support for a wide number of programming languages, encodings (ISO Latins, Cyrillic, etc.), and medias.
• Added Dependencies:
• psutils
• No removed dependencies
acl-2.2.39-2.1.el5 - acl-2.2.39-3.el5
• Group: System Environment/Base
• Summary: Access control list utilities.
• Description:
This package contains the getfacl and setfacl utilities needed for manipulating access control lists.
• No added dependencies
• No removed dependencies
acpid-1.0.4-5 - acpid-1.0.4-7.el5
• Group: System Environment/Daemons
Page 75
Updated Packages
75
• Summary: ACPI Event Daemon
• Description:
acpid is a daemon that dispatches ACPI events to user-space programs.
• No added dependencies
• No removed dependencies
alsa-lib-1.0.14-1.rc4.el5 - alsa-lib-1.0.17-1.el5
• Group: System Environment/Libraries
• Summary: The Advanced Linux Sound Architecture (ALSA) library.
• Description:
The Advanced Linux Sound Architecture (ALSA) provides audio and MIDI functionality to the Linux operating system.
This package includes the ALSA runtime libraries to simplify application programming and provide higher level functionality as well as support for the older OSS API, providing binary compatibility for most OSS programs.
• No added dependencies
• No removed dependencies
alsa-utils-1.0.14-2.rc4.el5 - alsa-utils-1.0.17-1.el5
• Group: Applications/Multimedia
• Summary: Advanced Linux Sound Architecture (ALSA) utilities
• Description:
This package contains command line utilities for the Advanced Linux Sound Architecture (ALSA).
• Added Dependencies:
• alsa-lib-devel >= 1.0.17
• Removed Dependencies:
• alsa-lib-devel >= 1.0.14
Page 76
Release Notes
76
amtu-1.0.4-4 - amtu-1.0.6-1.el5
• Group: System Environment/Base
• Summary: Abstract Machine Test Utility (AMTU)
• Description:
Abstract Machine Test Utility (AMTU) is an administrative utility to check whether the underlying protection mechanism of the hardware are still being enforced. This is a requirement of the Controlled Access Protection Profile FPT_AMT.1, see http://www.radium.ncsc.mil/tpep/library/protection_profiles/ CAPP-1.d.pdf
• No added dependencies
• No removed dependencies
anaconda-11.1.2.87-1 - anaconda-11.1.2.168-1
• Group: Applications/System
• Summary: Graphical system installer
• Description:
The anaconda package contains the program which was used to install your system. These files are of little use on an already installed system.
• Added Dependencies:
• iscsi-initiator-utils >= 6.2.0.868-0.9
• kudzu-devel >= 1.2.57.1.18
• libdhcp-devel >= 1.20-5
• libnl-devel >= 1.0-0.10.pre5.5
• Removed Dependencies:
• glib2-devel >= 2.11.1-5
• kudzu-devel >= 1.2.57.1.15
• libdhcp-devel >= 1.16
Page 77
Updated Packages
77
apr-util-1.2.7-6 - apr-util-1.2.7-7.el5
• Group: System Environment/Libraries
• Summary: Apache Portable Runtime Utility library
• Description:
The mission of the Apache Portable Runtime (APR) is to provide a free library of C data structures and routines. This library contains additional utility interfaces for APR; including support for XML, LDAP, database interfaces, URI parsing and more.
• No added dependencies
• No removed dependencies
at-spi-1.7.11-2.fc6 - at-spi-1.7.11-3.el5
• Group: System Environment/Libraries
• Summary: Assistive Technology Service Provider Interface
• Description:
at-spi allows assistive technologies to access GTK-based applications. Essentially it exposes the internals of applications for automation, so tools such as screen readers, magnifiers, or even scripting interfaces can query and interact with GUI controls.
• No added dependencies
• No removed dependencies
audit-1.5.5-7.el5 - audit-1.7.7-6.el5
• Group: System Environment/Daemons
• Summary: User space tools for 2.6 kernel auditing
• Description:
The audit package contains the user space utilities for storing and searching the audit records generate by the audit subsystem in the Linux 2.6 kernel.
• Added Dependencies:
• openldap-devel
• tcp_wrappers
• No removed dependencies
Page 78
Release Notes
78
authconfig-5.3.12-2.el5 - authconfig-5.3.21-5.el5
• Group: System Environment/Base
• Summary: Command line tool for setting up authentication from network
services
• Description:
Authconfig is a command line utility which can configure a workstation to use shadow (more secure) passwords. Authconfig can also configure a system to be a client for certain networked user information and authentication schemes.
• Added Dependencies:
• python >= 2.4.1
• Removed Dependencies:
• python
autofs-5.0.1-0.rc2.55 - autofs-5.0.1-0.rc2.102
• Group: System Environment/Daemons
• Summary: A tool for automatically mounting and unmounting filesystems.
• Description:
autofs is a daemon which automatically mounts filesystems when you use them, and unmounts them later when you are not using them. This can include network filesystems, CD-ROMs, floppies, and so forth.
• No added dependencies
• No removed dependencies
bash-3.1-16.1 - bash-3.2-24.el5
• Group: System Environment/Shells
• Summary: The GNU Bourne Again shell (bash) version 3.2
• Description:
The GNU Bourne Again shell (Bash) is a shell or command language interpreter that is compatible with the Bourne shell (sh). Bash incorporates useful features from the Korn shell (ksh) and the C shell (csh). Most sh scripts can be run by bash without modification. This package (bash) contains bash version 3.2, which improves POSIX compliance over previous versions.
Page 79
Updated Packages
79
• Added Dependencies:
• autoconf
• gettext
• No removed dependencies
bind-9.3.3-10.el5 - bind-9.3.4-10.P1.el5
• Group: System Environment/Daemons
• Summary: The Berkeley Internet Name Domain (BIND) DNS (Domain Name
System) server.
• Description:
BIND (Berkeley Internet Name Domain) is an implementation of the DNS (Domain Name System) protocols. BIND includes a DNS server (named), which resolves host names to IP addresses; a resolver library (routines for applications to use when interfacing with DNS); and tools for verifying that the DNS server is operating properly.
• No added dependencies
• No removed dependencies
binutils-2.17.50.0.6-5.el5 - binutils-2.17.50.0.6-9.el5
• Group: Development/Tools
• Summary: A GNU collection of binary utilities.
• Description:
Binutils is a collection of binary utilities, including ar (for creating, modifying and extracting from archives), as (a family of GNU assemblers), gprof (for displaying call graph profile data), ld (the GNU linker), nm (for listing symbols from object files), objcopy (for copying and translating object files), objdump (for displaying information from object files), ranlib (for generating an index for the contents of an archive), size (for listing the section sizes of an object or archive file), strings (for listing printable strings from files), strip (for discarding symbols), and addr2line (for converting addresses to file and line).
• No added dependencies
• No removed dependencies
bluez-libs-3.7-1 - bluez-libs-3.7-1.1
• Group: System Environment/Libraries
Page 80
Release Notes
80
• Summary: Bluetooth libraries
• Description:
Libraries for use in Bluetooth applications.
The BLUETOOTH trademarks are owned by Bluetooth SIG, Inc., U.S.A.
• No added dependencies
• No removed dependencies
bluez-utils-3.7-2 - bluez-utils-3.7-2.2
• Group: Applications/System
• Summary: Bluetooth utilities
• Description:
Bluetooth utilities (bluez-utils):
- hcitool
- hciattach
- hciconfig
- hcid
- l2ping
- start scripts (Red Hat)
- pcmcia configuration files
The BLUETOOTH trademarks are owned by Bluetooth SIG, Inc., U.S.A.
• Added Dependencies:
• bluez-libs-devel >= 3.7-1.1
• Removed Dependencies:
• bluez-libs-devel >= 3.7
booty-0.80.4-5 - booty-0.80.6-5
• Group: System Environment/Libraries
• Summary: simple python bootloader config lib
• Description:
Small python library for use with bootloader configuration by anaconda and up2date.
• No added dependencies
Page 81
Updated Packages
81
• No removed dependencies
busybox-1.2.0-3 - busybox-1.2.0-4.el5
• Group: System Environment/Shells
• Summary: Statically linked binary providing simplified versions of
system commands
• Description:
Busybox is a single binary which includes versions of a large number of system commands, including a shell. This package can be very useful for recovering from certain types of system failures, particularly those involving broken shared libraries.
• No added dependencies
• No removed dependencies
bzip2-1.0.3-3 - bzip2-1.0.3-4.el5_2
• Group: Applications/File
• Summary: A file compression utility.
• Description:
Bzip2 is a freely available, patent-free, high quality data compressor. Bzip2 compresses files to within 10 to 15 percent of the capabilities of the best techniques available. However, bzip2 has the added benefit of being approximately two times faster at compression and six times faster at decompression than those techniques. Bzip2 is not the fastest compression utility, but it does strike a balance between speed and compression capability.
Install bzip2 if you need a compression utility.
• No added dependencies
• No removed dependencies
cairo-1.2.4-2.el5 - cairo-1.2.4-5.el5
• Group: System Environment/Libraries
• Summary: A vector graphics library
• Description:
Page 82
Release Notes
82
Cairo is a vector graphics library designed to provide high-quality display and print output. Currently supported output targets include the X Window System, OpenGL (via glitz), in-memory image buffers, and image files (PDF, PostScript, and SVG). Cairo is designed to produce identical output on all output media while taking advantage of display hardware acceleration when available (eg. through the X Render Extension or OpenGL).
• No added dependencies
• No removed dependencies
ccid-1.0.1-6.el5 - ccid-1.3.8-1.el5
• Group: System Environment/Libraries
• Summary: Generic USB CCID smart card reader driver
• Description:
Generic USB CCID (Chip/Smart Card Interface Devices) driver.
• Added Dependencies:
• pcsc-lite-devel >= 1.3.3
• Removed Dependencies:
• pcsc-lite-devel >= %{pcsc-lite_ver}
cdrtools-2.01-10 - cdrtools-2.01-10.7.el5
• Group: Applications/System
• Summary: A collection of CD/DVD utilities.
• Description:
cdrtools is a collection of CD/DVD utilities.
• No added dependencies
• No removed dependencies
checkpolicy-1.33.1-2.el5 - checkpolicy-1.33.1-4.el5
• Group: Development/System
• Summary: SELinux policy compiler
• Description:
Security-enhanced Linux is a feature of the Linux® kernel and a number
Page 83
Updated Packages
83
of utilities with enhanced security functionality designed to add mandatory access controls to Linux. The Security-enhanced Linux kernel contains new architectural components originally developed to improve the security of the Flask operating system. These architectural components provide general support for the enforcement of many kinds of mandatory access control policies, including those based on the concepts of Type Enforcement®, Role-based Access Control, and Multi-level Security.
This package contains checkpolicy, the SELinux policy compiler. Only required for building policies.
• No added dependencies
• No removed dependencies
chkconfig-1.3.30.1-1 - chkconfig-1.3.30.1-2
• Group: System Environment/Base
• Summary: A system tool for maintaining the /etc/rc*.d hierarchy.
• Description:
Chkconfig is a basic system utility. It updates and queries runlevel information for system services. Chkconfig manipulates the numerous symbolic links in /etc/rc.d, to relieve system administrators of some of the drudgery of manually editing the symbolic links.
• No added dependencies
• No removed dependencies
clustermon-0.10.0-5.el5 - clustermon-0.12.1-2.el5
• Group: System Environment/Base
• Summary: Monitoring and management of Red Hat Enterprise Linux Cluster
Suite
• Description:
This package contains Red Hat Enterprise Linux Cluster Suite SNMP/CIM module/agent/provider.
• Added Dependencies:
• cman-devel
• No removed dependencies
Page 84
Release Notes
84
cman-2.0.73-1.el5 - cman-2.0.98-1.el5
• Group: System Environment/Base
• Summary: cman - The Cluster Manager
• Description:
cman - The Cluster Manager
• Added Dependencies:
• kernel-headers
• No removed dependencies
conga-0.10.0-6.el5 - conga-0.12.1-7.el5
• Group: System Environment/Base
• Summary: Remote Management System
• Description:
Conga is a project developing management system for remote stations. It consists of luci, https frontend, and ricci, secure daemon that dispatches incoming messages to underlying management modules.
• No added dependencies
• Removed Dependencies:
• cman-devel
control-center-2.16.0-14.el5 - control-center-2.16.0-16.el5
• Group: User Interface/Desktops
• Summary: GNOME Control Center
• Description:
GNOME (the GNU Network Object Model Environment) is an attractive and easy-to-use GUI desktop environment. The control-center package provides the GNOME Control Center utilities that allow you to setup and configure your system's GNOME environment (things like the desktop background and theme, the screensaver, system sounds, and mouse behavior).
If you install GNOME, you need to install control-center.
Page 85
Updated Packages
85
• No added dependencies
• No removed dependencies
coolkey-1.1.0-5.el5 - coolkey-1.1.0-6.el5
• Group: System Environment/Libraries
• Summary: CoolKey PKCS #11 module
• Description:
Linux Driver support for the CoolKey and CAC products.
• No added dependencies
• No removed dependencies
coreutils-5.97-12.1.el5 - coreutils-5.97-19.el5
• Group: System Environment/Base
• Summary: The GNU core utilities: a set of tools commonly used in shell
scripts
• Description:
These are the GNU core utilities. This package is the combination of the old GNU fileutils, sh-utils, and textutils packages.
• No added dependencies
• No removed dependencies
cpufreq-utils-002-1.1.43.el5 - cpufreq-utils-005-1.el5
• Group: System Environment/Base
• Summary: CPU Frequency changing related utilities
• Description:
cpufreq-utils contains several utilities that can be used to control the cpufreq interface provided by the kernel on hardware that supports CPU frequency scaling.
• No added dependencies
• No removed dependencies
cpuspeed-1.2.1-1.48.el5 - cpuspeed-1.2.1-5.el5
• Group: System Environment/Base
Page 86
Release Notes
86
• Summary: CPU frequency adjusting daemon
• Description:
cpuspeed is a daemon that dynamically changes the speed of your processor(s) depending upon its current workload if it is capable (needs Intel Speedstep, AMD PowerNow!, or similar support).
This package also supports enabling cpu frequency scaling via in-kernel governors on Intel Centrino and AMD Athlon64/Opteron platforms.
• No added dependencies
• No removed dependencies
crash-4.0-4.6.1 - crash-4.0-7.2.3
• Group: Development/Debuggers
• Summary: crash utility for live systems; netdump, diskdump, kdump,
LKCD or mcore dumpfiles
• Description:
The core analysis suite is a self-contained tool that can be used to investigate either live systems, kernel core dumps created from the netdump, diskdump and kdump packages from Red Hat Linux, the mcore kernel patch offered by Mission Critical Linux, or the LKCD kernel patch.
• No added dependencies
• No removed dependencies
createrepo-0.4.4-2.fc6 - createrepo-0.4.11-3.el5
• Group: System Environment/Base
• Summary: Creates a common metadata repository
• Description:
This utility will generate a common metadata repository from a directory of rpm packages.
• Added Dependencies:
• python
Page 87
Updated Packages
87
• No removed dependencies
crypto-utils-2.3-1 - crypto-utils-2.3-2.el5
• Group: Applications/System
• Summary: SSL certificate and key management utilities
• Description:
This package provides tools for managing and generating SSL certificates and keys.
• No added dependencies
• No removed dependencies
cryptsetup-luks-1.0.3-2.2.el5 - cryptsetup-luks-1.0.3-4.el5
• Group: Applications/System
• Summary: A utility for setting up encrypted filesystems
• Description:
This package contains cryptsetup, a utility for setting up encrypted filesystems using Device Mapper and the dm-crypt target.
• No added dependencies
• No removed dependencies
cups-1.2.4-11.14.el5 - cups-1.3.7-8.el5
• Group: System Environment/Daemons
• Summary: Common Unix Printing System
• Description:
The Common UNIX Printing System provides a portable printing layer for UNIX® operating systems. It has been developed by Easy Software Products to promote a standard printing solution for all UNIX vendors and users. CUPS provides the System V and Berkeley command-line interfaces.
• Added Dependencies:
• avahi-compat-libdns_sd-devel
• krb5-devel
Page 88
Release Notes
88
• No removed dependencies
cyrus-imapd-2.3.7-1.1.el5 - cyrus-imapd-2.3.7-2.el5
• Group: System Environment/Daemons
• Summary: A high-performance mail server with IMAP, POP3, NNTP and
SIEVE support
• Description:
The cyrus-imapd package contains the core of the Cyrus IMAP server. It is a scaleable enterprise mail system designed for use from small to large enterprise environments using standards-based internet mail technologies.
A full Cyrus IMAP implementation allows a seamless mail and bulletin board environment to be set up across multiple servers. It differs from other IMAP server implementations in that it is run on "sealed" servers, where users are not normally permitted to log in and have no system account on the server. The mailbox database is stored in parts of the filesystem that are private to the Cyrus IMAP server. All user access to mail is through software using the IMAP, POP3 or KPOP protocols. It also includes support for virtual domains, NNTP, mailbox annotations, and much more. The private mailbox database design gives the server large advantages in efficiency, scalability and administratability. Multiple concurrent read/write connections to the same mailbox are permitted. The server supports access control lists on mailboxes and storage quotas on mailbox hierarchies.
The Cyrus IMAP server supports the IMAP4rev1 protocol described in RFC 3501. IMAP4rev1 has been approved as a proposed standard. It supports any authentication mechanism available from the SASL library, imaps/pop3s/nntps (IMAP/POP3/NNTP encrypted using SSL and TLSv1) can be used for security. The server supports single instance store where possible when an email message is addressed to multiple recipients, SIEVE provides server side email filtering.
• No added dependencies
• No removed dependencies
dbus-1.0.0-6.el5 - dbus-1.1.2-12.el5
• Group: System Environment/Libraries
• Summary: D-BUS message bus
• Description:
Page 89
Updated Packages
89
D-BUS is a system for sending messages between applications. It is used both for the systemwide message bus service, and as a per-user-login-session messaging facility.
• Added Dependencies:
• doxygen
• libxslt
• xmlto
• No removed dependencies
dbus-glib-0.70-5 - dbus-glib-0.73-8.el5
• Group: System Environment/Libraries
• Summary: GLib bindings for D-Bus
• Description:
D-Bus add-on library to integrate the standard D-Bus library with the GLib thread abstraction and main loop.
• No added dependencies
• No removed dependencies
desktop-printing-0.19-20.el5 - desktop-printing-0.19-20.2.el5
• Group: Applications/File
• Summary: Desktop print icon
• Description:
Desktop-printing contains eggcups, a program for user print job notification and control.
• No added dependencies
• No removed dependencies
devhelp-0.12-11.el5 - devhelp-0.12-20.el5
• Group: Development/Tools
• Summary: API document browser
Page 90
Release Notes
90
• Description:
An API document browser for GNOME 2.
• Added Dependencies:
• gecko-devel-unstable >= 1.9
• Removed Dependencies:
• gecko-devel = 1.8.0.12
device-mapper-1.02.20-1.el5 - device-mapper-1.02.28-2.el5
• Group: System Environment/Base
• Summary: device mapper library
• Description:
This package contains the supporting userspace files (libdevmapper and dmsetup) for the device-mapper.
• No added dependencies
• No removed dependencies
device-mapper-multipath-0.4.7-12.el5 - device-mapper-multipath-0.4.7-23.el5
• Group: System Environment/Base
• Summary: Tools to manage multipath devices using device-mapper.
• Description:
device-mapper-multipath provides tools to manage multipath devices by instructing the device-mapper multipath kernel module what to do. The tools are : * multipath : Scan the system for multipath devices and assemble them. * multipathd : Detects when paths fail and execs multipath to update things.
• No added dependencies
• No removed dependencies
dhcdbd-2.2-1.el5 - dhcdbd-2.2-2.el5
• Group: System Environment/Daemons
Page 91
Updated Packages
91
• Summary: DHCP D-BUS daemon (dhcdbd) controls dhclient sessions with D-
BUS, stores and presents DHCP options.
• Description:
dhcdbd provides a D-BUS interface to the ISC dhclient software. The daemon provides access to DHCP configuration operations and stores those options persistently. Other D-BUS applications can receive notifications of changes in the client's DHCP configuration.
• No added dependencies
• No removed dependencies
dhcp-3.0.5-7.el5 - dhcp-3.0.5-18.el5
• Group: System Environment/Daemons
• Summary: DHCP (Dynamic Host Configuration Protocol) server and relay
agent.
• Description:
DHCP (Dynamic Host Configuration Protocol) is a protocol which allows individual devices on an IP network to get their own network configuration information (IP address, subnetmask, broadcast address, etc.) from a DHCP server. The overall purpose of DHCP is to make it easier to administer a large network. The dhcp package includes the ISC DHCP service and relay agent.
To use DHCP on your network, install a DHCP service (or relay agent), and on clients run a DHCP client daemon. The dhcp package provides the ISC DHCP service and relay agent.
• No added dependencies
• No removed dependencies
dhcpv6-0.10-33.el5 - dhcpv6-1.0.10-16.el5
• Group: System Environment/Daemons
• Summary: DHCPv6 - DHCP server and client for IPv6
• Description:
Implements the Dynamic Host Configuration Protocol (DHCP) for Internet Protocol version 6 (IPv6) networks in accordance with RFC 3315: Dynamic Host
Page 92
Release Notes
92
Configuration Protocol for IPv6 (DHCPv6). Consists of dhcp6s(8), the server DHCP daemon, and dhcp6r(8), the DHCPv6 relay agent.
Install this package if you want to support dynamic configuration of IPv6 addresses and parameters on your IPv6 network.
• Added Dependencies:
• kernel-headers
• Removed Dependencies:
• openssl-devel
diffstat-1.41-1.2.2 - diffstat-1.41-1.2.3.el5
• Group: Development/Tools
• Summary: A utility which provides statistics based on the output of
diff.
• Description:
The diff command compares files line by line. Diffstat reads the output of the diff command and displays a histogram of the insertions, deletions and modifications in each file. Diffstat is commonly used to provide a summary of the changes in large, complex patch files.
Install diffstat if you need a program which provides a summary of the diff command's output. You'll need to also install diffutils.
• No added dependencies
• No removed dependencies
diffutils-2.8.1-15.2.2 - diffutils-2.8.1-15.2.3.el5
• Group: Applications/Text
• Summary: A GNU collection of diff utilities.
• Description:
Diffutils includes four utilities: diff, cmp, diff3 and sdiff. Diff compares two files and shows the differences, line by line. The cmp command shows the offset and line numbers where two files differ, or cmp can show the characters that differ between the two files. The diff3 command shows the differences between three files. Diff3 can be used when two people have made independent changes to a common original; diff3 can produce a merged file that contains both sets of
Page 93
Updated Packages
93
changes and warnings about conflicts. The sdiff command can be used to merge two files interactively.
Install diffutils if you need to compare text files.
• No added dependencies
• No removed dependencies
dmraid-1.0.0.rc13-4.el5 - dmraid-1.0.0.rc13-33.el5
• Group: System Environment/Base
• Summary: dmraid (Device-mapper RAID tool and library)
• Description:
DMRAID supports RAID device discovery, RAID set activation and display of properties for ATARAID on Linux >= 2.4 using device-mapper.
• No added dependencies
• No removed dependencies
dnsmasq-2.39-2.el5 - dnsmasq-2.45-1.el5_2.1
• Group: System Environment/Daemons
• Summary: A lightweight DHCP/caching DNS server
• Description:
Dnsmasq is lightweight, easy to configure DNS forwarder and DHCP server. It is designed to provide DNS and, optionally, DHCP, to a small network. It can serve the names of local machines which are not in the global DNS. The DHCP server integrates with the DNS server and allows machines with DHCP-allocated addresses to appear in the DNS with names configured either in each host or in a central configuration file. Dnsmasq supports static and dynamic DHCP leases and BOOTP for network booting of diskless machines.
• No added dependencies
• No removed dependencies
Page 94
Release Notes
94
dosfstools-2.11-6.2.el5 - dosfstools-2.11-7.el5
• Group: Applications/System
• Summary: Utilities for making and checking MS-DOS FAT filesystems on
Linux.
• Description:
The dosfstools package includes the mkdosfs and dosfsck utilities, which respectively make and check MS-DOS FAT filesystems on hard drives or on floppies.
• No added dependencies
• No removed dependencies
dovecot-1.0-1.2.rc15.el5 - dovecot-1.0.7-7.el5
• Group: System Environment/Daemons
• Summary: Dovecot Secure imap server
• Description:
Dovecot is an IMAP server for Linux/UNIX-like systems, written with security primarily in mind. It also contains a small POP3 server. It supports mail in either of maildir or mbox formats.
• No added dependencies
• No removed dependencies
dvgrab-2.0-1.2.2 - dvgrab-3.0-1.el5
• Group: Applications/Multimedia
• Summary: Utility to capture video from a DV camera
• Description:
The dvgrab utility will capture digital video from a DV source on the firewire (IEEE-1394) bus.
• No added dependencies
• No removed dependencies
Page 95
Updated Packages
95
e2fsprogs-1.39-10.el5 - e2fsprogs-1.39-20.el5
• Group: System Environment/Base
• Summary: Utilities for managing the second and third extended (ext2/
ext3) filesystems
• Description:
The e2fsprogs package contains a number of utilities for creating, checking, modifying, and correcting any inconsistencies in second and third extended (ext2/ext3) filesystems. E2fsprogs contains e2fsck (used to repair filesystem inconsistencies after an unclean shutdown), mke2fs (used to initialize a partition to contain an empty ext2 filesystem), debugfs (used to examine the internal structure of a filesystem, to manually repair a corrupted filesystem, or to create test cases for e2fsck), tune2fs (used to modify filesystem parameters), and most of the other core ext2fs filesystem utilities.
You should install the e2fsprogs package if you need to manage the performance of an ext2 and/or ext3 filesystem.
• No added dependencies
• No removed dependencies
eclipse-3.2.1-18.el5 - eclipse-3.2.1-19.el5
• Group: Text Editors/Integrated Development Environments (IDE)
• Summary: An open, extensible IDE
• Description:
The Eclipse Platform is designed for building integrated development environments (IDEs) that can be used to create applications as diverse as web sites, embedded Java(tm) programs, C++ programs, and Enterprise JavaBeans(tm).
• No added dependencies
• Removed Dependencies:
• firefox-devel
• nspr-devel
ed-0.2-38.2.2 - ed-0.2-39.el5_2
• Group: Applications/Text
• Summary: The GNU line editor.
Page 96
Release Notes
96
• Description:
Ed is a line-oriented text editor, used to create, display, and modify text files (both interactively and via shell scripts). For most purposes, ed has been replaced in normal usage by full-screen editors (emacs and vi, for example).
Ed was the original UNIX editor, and may be used by some programs. In general, however, you probably don't need to install it and you probably won't use it.
• No added dependencies
• No removed dependencies
edac-utils-0.9-5.el5 - edac-utils-0.9-6.el5
• Group: System Environment/Base
• Summary: Userspace helper for kernel EDAC drivers
• Description:
EDAC is the current set of drivers in the Linux kernel that handle detection of ECC errors from memory controllers for most chipsets on i386 and x86_64 architectures. This userspace component consists of an init script which makes sure EDAC drivers and DIMM labels are loaded at system startup, as well as a library and utility for reporting current error counts from the EDAC sysfs files.
• No added dependencies
• No removed dependencies
elfutils-0.125-3.el5 - elfutils-0.137-3.el5
• Group: Development/Tools
• Summary: A collection of utilities and DSOs to handle compiled objects
• Description:
Elfutils is a collection of utilities, including ld (a linker), nm (for listing symbols from object files), size (for listing the section sizes of an object or archive file), strip (for discarding symbols), readelf (to see the raw ELF file structures), and elflint (to check for well-formed ELF files).
• No added dependencies
Page 97
Updated Packages
97
• No removed dependencies
emacs-21.4-19.el5 - emacs-21.4-20.el5
• Group: Applications/Editors
• Summary: GNU Emacs text editor
• Description:
Emacs is a powerful, customizable, self-documenting, modeless text editor. Emacs contains special code editing features, a scripting language (elisp), and the capability to read mail, news, and more without leaving the editor.
This package provides an emacs binary with support for X windows.
• No added dependencies
• No removed dependencies
emacspeak-23.0-2.1 - emacspeak-23.0-3.el5
• Group: Applications/Editors
• Summary: emacspeak -- The Complete Audio Desktop
• Description:
Emacspeak is a speech interface that allows visually impaired users to interact independently and efficiently with the computer. Emacspeak has dramatically changed how the author and hundreds of blind and visually impaired users around the world interact with the personal computer and the Internet. A rich suite of task-oriented speech-enabled tools provides efficient speech-enabled access to the evolving semantic WWW. When combined with Linux running on low-cost PC hardware, Emacspeak/Linux provides a reliable, stable speech-friendly solution that opens up the Internet to visually impaired users around the world.
• No added dependencies
• No removed dependencies
enscript-1.6.4-4.1.el5 - enscript-1.6.4-4.1.1.el5_2
• Group: Applications/Publishing
• Summary: A plain ASCII to PostScript converter.
• Description:
Page 98
Release Notes
98
GNU enscript is a free replacement for Adobe's Enscript program. Enscript converts ASCII files to PostScript(TM) and spools generated PostScript output to the specified printer or saves it to a file. Enscript can be extended to handle different output media and includes many options for customizing printouts.
• No added dependencies
• No removed dependencies
esc-1.0.0-32.el5 - esc-1.0.0-39.el5
• Group: Applications/Internet
• Summary: Enterprise Security Client Smart Card Client
• Description:
Enterprise Security Client allows the user to enroll and manage their cryptographic smartcards.
• Added Dependencies:
• xulrunner
• xulrunner-devel
• No removed dependencies
ethtool-5-1.el5 - ethtool-6-2.el5
• Group: Applications/System
• Summary: Ethernet settings tool for PCI ethernet cards
• Description:
This utility allows querying and changing of ethernet card settings, such as speed, port, autonegotiation, and PCI locations.
• No added dependencies
• No removed dependencies
evolution-data-server-1.8.0-25.el5 - evolution-data-server-1.12.3-6.el5_2.3
• Group: System Environment/Libraries
• Summary: Backend data server for Evolution
• Description:
Page 99
Updated Packages
99
The evolution-data-server package provides a unified backend for programs that work with contacts, tasks, and calendar information.
It was originally developed for Evolution (hence the name), but is now used by other packages.
• Added Dependencies:
• gtk-doc
• intltool >= 0.35.0
• openldap-evolution-devel
• openssl-devel
• Removed Dependencies:
• intltool
• openldap-devel >= 2.0.11
file-4.17-9.0.1.el5 - file-4.17-15
• Group: Applications/File
• Summary: A utility for determining file types.
• Description:
The file command is used to identify a particular file according to the type of data contained by the file. File can identify many different file types, including ELF binaries, system libraries, RPM packages, and different graphics formats.
You should install the file package, since the file command is such a useful utility.
• No added dependencies
• No removed dependencies
filesystem-2.4.0-1 - filesystem-2.4.0-2
• Group: System Environment/Base
• Summary: The basic directory layout for a Linux system.
Page 100
Release Notes
100
• Description:
The filesystem package is one of the basic packages that is installed on a Red Hat Linux system. Filesystem contains the basic directory layout for a Linux operating system, including the correct permissions for the directories.
• No added dependencies
• No removed dependencies
findutils-4.2.27-4.1 - findutils-4.2.27-5.el5
• Group: Applications/File
• Summary: The GNU versions of find utilities (find and xargs).
• Description:
The findutils package contains programs which will help you locate files on your system. The find utility searches through a hierarchy of directories looking for files which match a certain set of criteria (such as a filename pattern). The xargs utility builds and executes command lines from standard input arguments (usually lists of file names generated by the find command).
You should install findutils because it includes tools that are very useful for finding things on your system.
• No added dependencies
• No removed dependencies
firefox-1.5.0.12-3.el5 - firefox-3.0.5-1.el5_2
• Group: Applications/Internet
• Summary: Mozilla Firefox Web browser
• Description:
Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability.
• Added Dependencies:
• startup-notification-devel
• xulrunner-devel >= 1.9.0.5-1
• xulrunner-devel-unstable >= 1.9.0.5-1
Loading...