Product: | SPARC T7-1 Sun System Firmware 9.10.0.a |
Release Version: | 9.10.0.a |
Date: | 2020-08-07 |
This release applies to SPARC T7-1 Systems. This release is called a minor-version, and is a feature update and maintenance release of the existing minor-version level (e.g. 9.9.3). A minor-release (in which the second field of the version increments, such as from 9.9.3 to 9.10.0.a as in this release) includes new features, bug fixes, and critical security improvements. This release is primarily focused on delivering Oracle ILOM 5.0, the next generation of Service Processor software, which is based on Oracle Linux 7.
You are strongly recommended to update to the latest firmware release in your next maintenance window to ensure optimal system reliability, availability, security and performance.
Noteworthy changes in System Firmware 9.10.0.a (since 9.9.3):
See the Bug Manifest section for a complete list of fixes. For more information on the security content of this release contact Oracle support.
The table below shows the distribution of bugID's fixed in this release across the five gates
Gate | Bug Count |
ILOM | 62 |
Nyx | 10 |
Hypervisor | 5 |
OpenBoot | - |
POST | 1 |
FWP | - |
Sun System Firmware Version: 9.10.0.a Location: Firmware/Sun_System_Firmware Keywords: FIRMWARE: SPARC T7-1 - 9.10.0.a firmware_metadata Synopsis: FIRMWARE: SPARC T7-1 - Sun System Firmware 9.10.0.a Files included: Sun_System_Firmware-9_10_0_a-SPARC_T7-1.pkg Install.info metadata.xml powercycle_metadata.xml
Version: Sun System Firmware 9.10.0.a 2020/07/23 23:17 -------------------------------------------- ILOM 5.0.1.1.a Fri Jul 24 00:22:32 PDT 2020 Hostconfig 1.11.4 2020/06/23 03:27 POST 5.8.4 2020/06/23 03:18 FWP 1.6.4 2020/06/23 03:04 Hypervisor 1.20.4.a 2020/07/23 23:13 OpenBoot 4.43.4 2020/06/23 03:07 GM 1.11.4 2020/06/23 03:46 Checksum of Sun_System_Firmware-9_10_0_a-SPARC_T7-1.pkg : 3597278144 (generated by the /usr/bin/cksum command) sha512 sum of Sun_System_Firmware-9_10_0_a-SPARC_T7-1.pkg : 33463da5c3bf26b4aa349dab835a68018b96cf77af182cf9833a4d160f0da504b9ef94d0aca1662dd222bcbcf94308599e1f926382dde65d83f8ae8320ecbcb1 (generated by the /usr/bin/sha512sum command)
Please refer to the online documentation for information relevant to this platform:
OTN Firmware Release Hub |
http://www.oracle.com/technetwork/systems/patches/firmware/index.html |
OVM SPARC |
http://www.oracle.com/technetwork/documentation/vm-sparc-194287.html |
Oracle ILOM |
http://www.oracle.com/technetwork/documentation/sys-mgmt-networking-190072.html |
SPARC T7-1 Systems |
|
Open Source Link |
http://www.oracle.com/goto/opensourcecode |
(Current Release: Patch ID = 31705989. Sun System Firmware 9.10.0.a Total BugIDs = 78) 31486159 Backport 31486159 to 5.8.4 - Add err_version field to MCU SERs 31486151 Backport 31486151 to 1.20.4 - Add err_version field to MCU SERs 31486136 Backport 31486136 to 1.11.4: Add ce-version payload to MED MCE ereports 31440160 Add CX-6 Dx 50G iLOM support 31404646 Add CX-6 Dx 2x100G iLOM support 31388207 After reset /System, mctp_drive failed on Aura8 SFF 31388020 Add CX-5 2x100G OCP NIC support to iLOM 31386714 workaround for systemd-journal coredump 31374606 The consolidated root CA bundle file should be created when ILOM is upgraded 31354123 Snapshot - include dhclient config files 31353446 tlip updates the RFID SN and it's off by one byte 31344230 mm->mmap_sem acquisition latency AKA: "ps hang".. 31328786 Apply /HOST/diag/error_level after RED state error 31294752 Host Control page not working for non-Admin user. 31268451 Restricted Shell: allow access to historic trace dumps 31248493 'ps' hang seen in ILOM 4.0 and 5.0 in the OCI fleet causing ILOM+ updates to stop 31233321 add 'set' subcommand to capipcitest 31233296 Make sp_trace a common driver for pilot3/4 and Aspeed 31225789 Device Monitor: Add support for Intel prototype Aura9 31218973 Failed to access Aura9 SSDs via MCTP/SMBus on E2-2C 31214523 Firmware should emit warnings/faults when a system is booted with a bad RTC value 31196816 Allow Service/Escalation mode access when the SP is in degraded mode 31192907 ROPNL fruwrite failure is not diagnosed to a fault. 31190919 add aura9/7 aic to i2c test 31181415 Enable live patching in Hypervisor 1.20.4 31181349 Device Monitor: Add support for Intel/Samsung Aura9 31171558 Device Monitor MCTP: delay probe until the HOST is powered on 31156924 JRC+ About Information Displays Outdated Version Information 31144725 Dimm scrub interval is set incorrectly due to bad match on dimm speed 31123504 hw version command in snapshot will frequently timeout 31106020 /dev/shm filled with empty temp files. no inodes available 31091586 FRUID: Update auto-generated FRUID files frudefs.h and deinfo.xml 31085499 spifpga_read failed messages on /var/log/messages during FPGA update 31085171 Platforms should decide which buses to load MCTP/SMBus driver 31080820 Check i2c address conflict if mctp_smb_feature enabled 31076712 SPSH command "cd .." from "/" returns "Invalid target /HOST" 31061807 Setassettag should not emit error messages for missing shadow containers. 31056807 Unexpected ireport.chassis.sp.logs-ok when /var/log is full 31047575 Warn for timeout during PSC measurement 31047564 Make PSC debug messages controllable via configvar 31047553 Ereport should be generated when Pstate0 voltage is > 1200mV 31045830 Support up to 3 'sunoem cli' sessions to ED to switch to deferred image 31031503 setassettag fails to update Primary container when shadow container is absent 31025902 Add strace to ILOM image. 30992458 Server certs missing clear action in show of target (clear action 30969607 Allow larger certificate bundles to be uploaded 30951204 Web - Javascript error on Password Policy page with A or U role. 30910616 Some component types from ILOM cli are not correct 30910583 /SYS/SP/NET0 is missing fru_* properties 30898834 ILOM change request to support Aura9 SFF from Intel/Samsung and AIC from Intel 30885420 Trying to get /content when it is load only should return 405 not 404 30878084 UBIFS error (pid: 100 / 102): cannot open "ubi0:params" / "ubi0:firmware", error -19 30853331 KVM redirection client fails to validate custom certificate 30815705 Accessibility OAG structure and table errors 30814677 POD crashes trying to read/compare/write DIMM SPD data. 30804732 sshfs redirection fails when symlink is used 30794384 Inaccurate hostfw_status after live update if FW image changes but HV does not 30794185 GM hostinfo structure must be protected by a lock 30793129 libfru DDR4 (SPD_128RW_FORMAT) CRC protection is ineffective 30788342 DIMM sparing strand selection selects the same strands too often 30773375 sttwa with BIS to non-cacheable space produces a reserved kernel trap 30766834 ILOM is not identifying the part number and description of the Cx5 card 30763981 Update auto-generated files frudefs.h and deinfo.xml 30756590 REST: Add support for "collection" resources 30738307 DDR4 (SPD_RW128_FORMAT) SPD_Fault_DataR record is being re-initialized on every SP reboot. 30734005 Fix errors found by GCC 9.2.0 30733783 DDB file open status should be checked after file creation 30714551 fmdump: unexpected line in event record, missing newlines in ireports/ereports 30628569 SP need to be reset in order to get the serial baud rate setting to take effect 30080229 Update LibVNCServer to 0.9.12-1 29817087 MINIHELP: Minor typos in Maintenance - Firmware Update 29674650 Buffer overrun in luapifed 29597320 Remove state_capture dependencies on perl 29592626 kernel log trace is not added to linux-4.14.35 29522151 include gputest in builds with bringup-features 29457542 MINIHELP: Add description of "mode" to the Device Monitor help 29332436 sp_la changes TOD at SP boot, causes "WARNING: Time of Day clock error" in Solaris 29168116 MINIHELP: Add help for new feature 'auto baud' for serial/host management.
All operations may be performed from the CLI, Web browser, or OpsCenter unless specifically noted. All examples below are CLI operations.
1 Check current Sun System Firmware version
-> show /HOST sysfw_version
1.1 If current version is 9.5.2.g or later go directly to Step 10
1.2 If current version is before 9.5.2.g follow Steps 2 through 10
2 Turn off host power
-> stop /System
-> show /System power_state
3 Record current network settings if not using DHCP
-> show /SP/network
Note: If not using DHCP, you must have local serial connection before proceeding.
4 Backup current Service Processor configuration (only from CLI or Web browser)
-> set /SP/config passphrase=<XXXXXXXXXXXXXXXX>
-> set /SP/config dump_uri=scp://<user>@<ipaddr_or_hostname>/XXXXXX.xml
5 Perform initial load of Sun System Firmware package
-> load -source http://<ip_address_or_hostname>/Sun_System_Firmware¬-X_X_X.pkg
6 Restore network settings if not using DHCP (from CLI only on Local Serial Connection)
-> set /SP/network pendingipaddress=<XX.XX.XX.XX> pendingipgateway=<YY.YY.YY.YY> pendingipnetmask=<ZZ.ZZ.ZZ.ZZ> commitpending=true
7 Perform second load of Sun System Firmware package
-> load -source http://<ip_address_or_hostname>/Sun_System_Firmware¬-X_X_X.pkg
8 Restore Service Processor configuration (only from CLI or Web browser)
-> set /SP/config passphrase=<XXXXXXXXXXXXXXXX>
-> set /SP/config load_uri=scp://<user>@<ipaddr_or_hostname>/XXXXXX.xml
9 Load the fallback image
-> load /SP/firmware/host/miniroot -source http://<ip_address_or_hostname>/xxxxxxx-fallback_boot-sparc.pkg
Note: Information on Uploading a New Oracle Solaris Miniroot Package from SP to Host (SPARC M7 and T7) can be found at: https://docs.oracle.com/cd/E37444_01/html/E37446/gqcim.html
10 Perform final load of Sun System Firmware package
-> load -source http://<ip_address_or_hostname>/Sun_System_Firmware¬-X_X_X.pkg
FMA alerts may be generated by Solaris after upgrading firmware to this release and power cycling the host. They are a side effect of the fix for bug 27083597 "FMA topology incorrect, calls out IOS RP as a FRU".
The alerts are innocuous and can be removed using the 'fmadm clear' command. Example alert removal:
# fmadm list-alert
--------------------------------------------------------------------------
TIME EVENT-ID
MSG-ID SEVERITY
--------------------------------------------------------------------------
Apr 19 19:49:11 26553f6d-38d1-4472-8282-87e7a792c78f FMD-8000-CV
Minor
Problem Status : open
Diag Engine : software-diagnosis /
0.1
System
Manufacturer : Oracle Corporation
Name : SPARC T7-1
Part_Number : 33940198+1+1
Serial_Number : AK00345576
Host_ID :
8699daa0
----------------------------------------
Suspect 1 of 1 :
Problem class :
alert.oracle.solaris.fmd.fru-monitor.fru-remove
Certainty : 100%
FRU
Status :
Active
Location :
"/SYS/MB/IOH/IOS2/RP1"
Manufacturer :
Oracle-Corporation
Name
: ASY,MB,T7-1
Part_Number :
7315713
Revision : 01
Serial_Number :
465769T+1550N201JA
Chassis
Manufacturer : Oracle
Corporation
Name : SPARC T7-1
Part_Number :
33940198+1+1
Serial_Number : AK00345576
Resource
Status :
Active
Description : FRU '/SYS/MB/IOH/IOS2/RP1' has been removed from the
system.
Response : FMD topology will be updated.
Impact : System impact depends on the type
of FRU.
Action : Use 'fmadm faulty' to provide a more detailed view of this event.
Please refer to the associated reference document at
http://support.oracle.com/msg/FMD-8000-CV for the latest service
procedures and policies regarding this diagnosis.
# fmadm clear 26553f6d-38d1-4472-8282-87e7a792c78f
For increased security, this release introduces a default timeout of 12 hours (720 minutes) for Oracle ILOM CLI sessions (29361779, 30931238). Previously, there was no timeout by default. All CLI sessions are impacted by this change, including those that have opened a connection to the host console (i.e. /HOST/console, /SP/console, etc). If there is no user input for 12 hours, the session will disconnect. Console output does not reset the timer; there must be input in order to extend the session.
To restore the previous behavior, issue the following command from the Oracle ILOM CLI after installing this firmware:
-> set /SP/cli timeout=0
This sets an “infinite” timeout. The setting will persist across host power cycles, chassis AC power cycles, and future firmware upgrades, as long as the Service Processor is not reset to its factory-default settings.
A different timeout value, either shorter or longer than the default, may also be set if desired. The timeout value is in units of minutes.
Please see https://docs.oracle.com/cd/E95134_01/html/E95138/z40041871561936.html for more details on default session timeouts.
Due to new security checks in Oracle ILOM 5.0, downgrades to earlier System Firmware versions may fail. Please see https://docs.oracle.com/cd/E95134_01/html/E95138/downgrade.html for more details.
Occasionally, updating firmware using "fwupdate" from Solaris will fail. You may see messages such as "Updating sp: IPMI TLS Authenticate Session command failed" or "Error: Unable to establish IPMI v2 / RMCP+ session" during the fwupdate, and the command will not complete. When such an error is encountered, the fwupdate may succeed after the SP is reset and the command is retried. In certain cases, you may need to use the Oracle ILOM CLI or web interface to update firmware instead.