Re: IDS 9.40.UC2, Encryption
Posted in 2003
Setting up network encryption (ENCCSM) on IDS 9.40.UC2 under AIX, the poster found remote connections failing: DB-Access 7.31.UD6 returned "14504: CSS: unsupported CSM version 3", while an ESQL/C program built with CSDK 2.81 intermittently got -5010 (CSM internal processing error) or -25582 (network connection broken). The same setup worked locally and against 9.40.UC1. Jonathan Leffler suggested the old 7.31 DB-Access/client libraries don't understand the newer CSM version and advised using a 9.4-level client or alternative tool; Madison Pruet suggested testing cipher[des] instead of cipher[all] and opening a support case. No confirmed fix is recorded in the thread.
Auto-generated by DrWatson from the posts below — may be imperfect; read the full thread.
Topics: Installation, Setup & Upgrades, Connectivity: ESQL/C, 4GL & Embedded SQL, Server Administration, Security, Permissions & Auditing, Networking & sqlhosts Configuration, Platform-Specific Issues, Versions, Editions & End-of-Life
Did the 9.40.UC1 version have encryption turned on?
"Eric Herber" <eric@herber-consulting.de> wrote in message
news:bmmfqm$u9e$1@online.de...
> I try to configure encryption with IDS 9.40.UC2
> on an AIX platform and I'm a little bit confused
> about the different error messages I receive.
>
> Server-Platform:
> ----------------
> AIX 5.1
> IDS 9.40.UC2
>
> Server-SQLHOSTS:
> ----------------
> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>
> Server-CONCSMCFG:
> -----------------
> ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
"");
>
> Client-Platform:
> ----------------
> AIX 4.3.3
> Client SDK 2.81
> dbaccess 7.31.UD6
>
> Client-SQLHOSTS:
> ----------------
> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>
> Client-CONCSMCFG:
> -----------------
> ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
> "cipher[all]", "");
>
>
> When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
> option in the menu I receive the following error:
>
> 14504: CSS: unsupported CSM version 3: ENCCSM>
> When executing 'finderr 14504' it tells me:
>
> "Make sure thethat databaseserver and client application support the CSM
> interface version in question."
>
> This is not very helpful.I really found nothing in the documentation
> (IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows which
> versions work together. Also there seems to be no further information in
> the releasenotes.
>
> The next test I made was a small Esql/C compiled on the client platform
> with CSDK 2.81 (Esql/C 9.53.UC1).
> When running the Esql/C program I sometime receive an -25582 SQL
> errorcode (Network connection broken) and sometimes an -5010 (CSM:
> internal processing error) code and sometimes it runs just fine and
> is able to connect to the remote server and reading some rows.
>
> The same Esql/C program works perfectly against an IDS 9.40.UC1
> (previous IDS version) databaseserver which is installed on the same
> host as the 9.40.UC2 server.
>
> My questions are:
>
> 1) The beta webcast said: 'no need to recompile client programs'
> -> Why does dbaccess get error 14504 then ?
>
> 2) Is there a compatibility matrix for client/server versions
> available ?
>
>
> Thank you in advance.
>
> Best regards
>
> Eric
> --
> IT-Consulting Herber
> WWW: http://www.herber-consulting.de
> Email: eric@herber-consulting.de
>
> ***********************************************
> Download the IFMX Database-Monitor for free at:
> http://www.herber-consulting.de/BusyBee
> ***********************************************
>
Hello Madison,
yes the 9.40.UC1 version had the same sqlhosts/concsm.cfg settings.
A local tcp-connection with dbaccess running on the same machine
works also with 9.40.UC2, but not the connection from the remote client.
Best regards
Eric
Madison Pruet wrote:
> Did the 9.40.UC1 version have encryption turned on?
>
>
> "Eric Herber" <eric@herber-consulting.de> wrote in message
> news:bmmfqm$u9e$1@online.de...
>> I try to configure encryption with IDS 9.40.UC2
>> on an AIX platform and I'm a little bit confused
>> about the different error messages I receive.
>>
>> Server-Platform:
>> ----------------
>> AIX 5.1
>> IDS 9.40.UC2
>>
>> Server-SQLHOSTS:
>> ----------------
>> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>>
>> Server-CONCSMCFG:
>> -----------------
>> ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
> "");
>>
>> Client-Platform:
>> ----------------
>> AIX 4.3.3
>> Client SDK 2.81
>> dbaccess 7.31.UD6
>>
>> Client-SQLHOSTS:
>> ----------------
>> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>>
>> Client-CONCSMCFG:
>> -----------------
>> ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
>> "cipher[all]", "");
>>
>>
>> When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
>> option in the menu I receive the following error:
>>
>> 14504: CSS: unsupported CSM version 3: ENCCSM>>
>> When executing 'finderr 14504' it tells me:
>>
>> "Make sure thethat databaseserver and client application support the CSM
>> interface version in question."
>>
>> This is not very helpful.I really found nothing in the documentation
>> (IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows which
>> versions work together. Also there seems to be no further information in
>> the releasenotes.
>>
>> The next test I made was a small Esql/C compiled on the client platform
>> with CSDK 2.81 (Esql/C 9.53.UC1).
>> When running the Esql/C program I sometime receive an -25582 SQL
>> errorcode (Network connection broken) and sometimes an -5010 (CSM:
>> internal processing error) code and sometimes it runs just fine and
>> is able to connect to the remote server and reading some rows.
>>
>> The same Esql/C program works perfectly against an IDS 9.40.UC1
>> (previous IDS version) databaseserver which is installed on the same
>> host as the 9.40.UC2 server.
>>
>> My questions are:
>>
>> 1) The beta webcast said: 'no need to recompile client programs'
>> -> Why does dbaccess get error 14504 then ?
>>
>> 2) Is there a compatibility matrix for client/server versions
>> available ?
>>
>>
>> Thank you in advance.
>>
>> Best regards
>>
>> Eric
>> --
>> IT-Consulting Herber
>> WWW: http://www.herber-consulting.de
>> Email: eric@herber-consulting.de
>>
>> ***********************************************
>> Download the IFMX Database-Monitor for free at:
>> http://www.herber-consulting.de/BusyBee
>> ***********************************************
>>
--
IT-Consulting Herber
Email: <mailto:eric@herber-consulting.de>
Mobile: +49 177 2276895
***********************************************
Download the IFMX Database-Monitor for free at:
http://www.herber-consulting.de/BusyBee
***********************************************
I don't know of anything significant in the CSM/CSS area that I think would
have caused incompatability. Have you opened a case on this?
As a test, can you run with the parameter cypher[des] instead of
cypher[all]?
"Eric Herber" <eric@herber-consulting.de> wrote in message
news:bmmua5$jh4$1@online.de...
> Hello Madison,
>
> yes the 9.40.UC1 version had the same sqlhosts/concsm.cfg settings.
>
> A local tcp-connection with dbaccess running on the same machine
> works also with 9.40.UC2, but not the connection from the remote client.
>
> Best regards
>
> Eric
>
> Madison Pruet wrote:
> > Did the 9.40.UC1 version have encryption turned on?
> >
> >
> > "Eric Herber" <eric@herber-consulting.de> wrote in message
> > news:bmmfqm$u9e$1@online.de...
> >> I try to configure encryption with IDS 9.40.UC2
> >> on an AIX platform and I'm a little bit confused
> >> about the different error messages I receive.
> >>
> >> Server-Platform:
> >> ----------------
> >> AIX 5.1
> >> IDS 9.40.UC2
> >>
> >> Server-SQLHOSTS:
> >> ----------------
> >> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
> >>
> >> Server-CONCSMCFG:
> >> -----------------
> >> ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
> > "");
> >>
> >> Client-Platform:
> >> ----------------
> >> AIX 4.3.3
> >> Client SDK 2.81
> >> dbaccess 7.31.UD6
> >>
> >> Client-SQLHOSTS:
> >> ----------------
> >> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
> >>
> >> Client-CONCSMCFG:
> >> -----------------
> >> ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
> >> "cipher[all]", "");
> >>
> >>
> >> When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
> >> option in the menu I receive the following error:
> >>
> >> 14504: CSS: unsupported CSM version 3: ENCCSM> >>
> >> When executing 'finderr 14504' it tells me:
> >>
> >> "Make sure thethat databaseserver and client application support the
CSM
> >> interface version in question."
> >>
> >> This is not very helpful.I really found nothing in the documentation
> >> (IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows
which
> >> versions work together. Also there seems to be no further information
in
> >> the releasenotes.
> >>
> >> The next test I made was a small Esql/C compiled on the client platform
> >> with CSDK 2.81 (Esql/C 9.53.UC1).
> >> When running the Esql/C program I sometime receive an -25582 SQL
> >> errorcode (Network connection broken) and sometimes an -5010 (CSM:
> >> internal processing error) code and sometimes it runs just fine and
> >> is able to connect to the remote server and reading some rows.
> >>
> >> The same Esql/C program works perfectly against an IDS 9.40.UC1
> >> (previous IDS version) databaseserver which is installed on the same
> >> host as the 9.40.UC2 server.
> >>
> >> My questions are:
> >>
> >> 1) The beta webcast said: 'no need to recompile client programs'
> >> -> Why does dbaccess get error 14504 then ?
> >>
> >> 2) Is there a compatibility matrix for client/server versions
> >> available ?
> >>
> >>
> >> Thank you in advance.
> >>
> >> Best regards
> >>
> >> Eric
> >> --
> >> IT-Consulting Herber
> >> WWW: http://www.herber-consulting.de
> >> Email: eric@herber-consulting.de
> >>
> >> ***********************************************
> >> Download the IFMX Database-Monitor for free at:
> >> http://www.herber-consulting.de/BusyBee
> >> ***********************************************
> >>
>
> --
> IT-Consulting Herber
> Email: <mailto:eric@herber-consulting.de>
> Mobile: +49 177 2276895
> ***********************************************
> Download the IFMX Database-Monitor for free at:
> http://www.herber-consulting.de/BusyBee
> ***********************************************
Eric,
Who is the customer?
M.P.
"Eric Herber" <eric@herber-consulting.de> wrote in message
news:bmmua5$jh4$1@online.de...
> Hello Madison,
>
> yes the 9.40.UC1 version had the same sqlhosts/concsm.cfg settings.
>
> A local tcp-connection with dbaccess running on the same machine
> works also with 9.40.UC2, but not the connection from the remote client.
>
> Best regards
>
> Eric
>
> Madison Pruet wrote:
> > Did the 9.40.UC1 version have encryption turned on?
> >
> >
> > "Eric Herber" <eric@herber-consulting.de> wrote in message
> > news:bmmfqm$u9e$1@online.de...
> >> I try to configure encryption with IDS 9.40.UC2
> >> on an AIX platform and I'm a little bit confused
> >> about the different error messages I receive.
> >>
> >> Server-Platform:
> >> ----------------
> >> AIX 5.1
> >> IDS 9.40.UC2
> >>
> >> Server-SQLHOSTS:
> >> ----------------
> >> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
> >>
> >> Server-CONCSMCFG:
> >> -----------------
> >> ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
> > "");
> >>
> >> Client-Platform:
> >> ----------------
> >> AIX 4.3.3
> >> Client SDK 2.81
> >> dbaccess 7.31.UD6
> >>
> >> Client-SQLHOSTS:
> >> ----------------
> >> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
> >>
> >> Client-CONCSMCFG:
> >> -----------------
> >> ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
> >> "cipher[all]", "");
> >>
> >>
> >> When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
> >> option in the menu I receive the following error:
> >>
> >> 14504: CSS: unsupported CSM version 3: ENCCSM> >>
> >> When executing 'finderr 14504' it tells me:
> >>
> >> "Make sure thethat databaseserver and client application support the
CSM
> >> interface version in question."
> >>
> >> This is not very helpful.I really found nothing in the documentation
> >> (IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows
which
> >> versions work together. Also there seems to be no further information
in
> >> the releasenotes.
> >>
> >> The next test I made was a small Esql/C compiled on the client platform
> >> with CSDK 2.81 (Esql/C 9.53.UC1).
> >> When running the Esql/C program I sometime receive an -25582 SQL
> >> errorcode (Network connection broken) and sometimes an -5010 (CSM:
> >> internal processing error) code and sometimes it runs just fine and
> >> is able to connect to the remote server and reading some rows.
> >>
> >> The same Esql/C program works perfectly against an IDS 9.40.UC1
> >> (previous IDS version) databaseserver which is installed on the same
> >> host as the 9.40.UC2 server.
> >>
> >> My questions are:
> >>
> >> 1) The beta webcast said: 'no need to recompile client programs'
> >> -> Why does dbaccess get error 14504 then ?
> >>
> >> 2) Is there a compatibility matrix for client/server versions
> >> available ?
> >>
> >>
> >> Thank you in advance.
> >>
> >> Best regards
> >>
> >> Eric
> >> --
> >> IT-Consulting Herber
> >> WWW: http://www.herber-consulting.de
> >> Email: eric@herber-consulting.de
> >>
> >> ***********************************************
> >> Download the IFMX Database-Monitor for free at:
> >> http://www.herber-consulting.de/BusyBee
> >> ***********************************************
> >>
>
> --
> IT-Consulting Herber
> Email: <mailto:eric@herber-consulting.de>
> Mobile: +49 177 2276895
> ***********************************************
> Download the IFMX Database-Monitor for free at:
> http://www.herber-consulting.de/BusyBee
> ***********************************************
Eric Herber wrote:
> Hello Madison,
>
> yes the 9.40.UC1 version had the same sqlhosts/concsm.cfg settings.
>
> A local tcp-connection with dbaccess running on the same machine
> works also with 9.40.UC2, but not the connection from the remote client.
Given the error message (14504: CSS: unsupported CSM version 3:
ENCCSM), it would appear to me that the ESQL/C version used to
compiler DB-Access 7.31.UD6 was not aware of CSM version 3 -- I'd be
inclined to assume that the version in the 9.40 might be CSM version
4. Also, I note that the CSM Config file on the client says
iencs09a.so; I would expect it to be using a version 7 library. Since
you have CSDK on the remote client, can you check whether an ESQL/C
program compiled there works OK -- I rather suspect it will.
You're then faced with a variety of options. First of all, where did
the 7.31 DB-Access come from? Presumably you also have a 7.31 server
out on the remote machine? It certainly didn't arrive with CSDK! You
could copy the 9.4 DB-Access from the machine which works to the
remote and see what happens - it might work. You might need to worry
about message files! You could consider depriving your remote clients
of DB-Access. You could consider installing a 9.4 IDS on the remote
system to get a working DB-Access - a heavyweight solution. You could
look at using an alternative to DB-Access (errr, <trumpet owner=me>
SQLCMD perhaps </trumpet>) or ...
You should certainly consult IBM/Informix Tech Support. I'm not sure
that a 7.31 DB-Access should work with the 9.4 library - but neither
am I sure that it should not.
> Madison Pruet wrote:
>
>>Did the 9.40.UC1 version have encryption turned on?
>>
>>
>>"Eric Herber" <eric@herber-consulting.de> wrote in message
>>news:bmmfqm$u9e$1@online.de...
>>
>>>I try to configure encryption with IDS 9.40.UC2
>>>on an AIX platform and I'm a little bit confused
>>>about the different error messages I receive.
>>>
>>>Server-Platform:
>>>----------------
>>>AIX 5.1
>>>IDS 9.40.UC2
>>>
>>>Server-SQLHOSTS:
>>>----------------
>>>ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>>>
>>>Server-CONCSMCFG:
>>>-----------------
>>>ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
>>
>>"");
>>
>>>Client-Platform:
>>>----------------
>>>AIX 4.3.3
>>>Client SDK 2.81
>>>dbaccess 7.31.UD6
>>>
>>>Client-SQLHOSTS:
>>>----------------
>>>ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>>>
>>>Client-CONCSMCFG:
>>>-----------------
>>>ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
>>>"cipher[all]", "");
>>>
>>>
>>>When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
>>>option in the menu I receive the following error:
>>>
>>>14504: CSS: unsupported CSM version 3: ENCCSM>>>
>>>When executing 'finderr 14504' it tells me:
>>>
>>>"Make sure thethat databaseserver and client application support the CSM
>>>interface version in question."
>>>
>>>This is not very helpful.I really found nothing in the documentation
>>>(IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows which
>>>versions work together. Also there seems to be no further information in
>>>the releasenotes.
>>>
>>>The next test I made was a small Esql/C compiled on the client platform
>>>with CSDK 2.81 (Esql/C 9.53.UC1).
>>>When running the Esql/C program I sometime receive an -25582 SQL
>>>errorcode (Network connection broken) and sometimes an -5010 (CSM:
>>>internal processing error) code and sometimes it runs just fine and
>>>is able to connect to the remote server and reading some rows.
>>>
>>>The same Esql/C program works perfectly against an IDS 9.40.UC1
>>>(previous IDS version) databaseserver which is installed on the same
>>>host as the 9.40.UC2 server.
>>>
>>>My questions are:
>>>
>>>1) The beta webcast said: 'no need to recompile client programs'
>>> -> Why does dbaccess get error 14504 then ?
>>>
>>>2) Is there a compatibility matrix for client/server versions
>>> available ?
>>>
>>>
>>>Thank you in advance.
>>>
>>>Best regards
>>>
>>>Eric
>>>--
>>>IT-Consulting Herber
>>>WWW: http://www.herber-consulting.de
>>>Email: eric@herber-consulting.de
>>>
>>>***********************************************
>>>Download the IFMX Database-Monitor for free at:
>>>http://www.herber-consulting.de/BusyBee
>>>***********************************************
>>>
>
>
--
Jonathan Leffler #include <disclaimer.h>
Email: jleffler@earthlink.net, jleffler@us.ibm.com
Guardian of DBD::Informix v2003.04 -- http://dbi.perl.org/
Jonathan,
thank you for your answer.
The client machine has a 7.31.UD6 IDS version installed,
so the dbaccess delivered with this distribution is used.
7.31.UD6 is quite new, so I could not understand why it should
not be aware of CSM version 4. I assume that it was compiled
with an actual version of the the CSDK, or not ?
Although the encryption feature should be transparent to the client
applications, so no recompile should be needed (according to the
beta training information). This seems not to be true if there
exist different CSM versions.
I found also nothing in the documentation or the releasenotes about
such incompatibilities.
The whole documentation on the encryption feature seems not to be very
sophisticated and should be reviewed.
The client machine has a ClientSDK 2.81 (Esql/C 9.53.UC1) installed.
A compiled Esql/C program sometimes runs and sometimes it returns
error -5010 (CSM: internal processing error) or -25582 (Network
connection broken). The same program runs fine against an IDS 9.40.UC1
server which runs on the same platform as the 9.40.UC2 server and has
the same sqlhosts/concsm.cfg settings.
If the encryption feature is not transparent and would need a recompile
of existing applications, then it would be hard to introduce it at the
customer site because there a lot of different platforms and programs,
compiled with a variety of different Esql/C versions.
I will be back on monday at the customer site and open a case
on this.
Thank you.
Best regards
Eric
Jonathan Leffler wrote:
> Eric Herber wrote:
>
>> Hello Madison,
>>
>> yes the 9.40.UC1 version had the same sqlhosts/concsm.cfg settings.
>>
>> A local tcp-connection with dbaccess running on the same machine
>> works also with 9.40.UC2, but not the connection from the remote client.
>
>
> Given the error message (14504: CSS: unsupported CSM version 3:
> ENCCSM), it would appear to me that the ESQL/C version used to
> compiler DB-Access 7.31.UD6 was not aware of CSM version 3 -- I'd be
> inclined to assume that the version in the 9.40 might be CSM version
> 4. Also, I note that the CSM Config file on the client says
> iencs09a.so; I would expect it to be using a version 7 library. Since
> you have CSDK on the remote client, can you check whether an ESQL/C
> program compiled there works OK -- I rather suspect it will.
>
> You're then faced with a variety of options. First of all, where did
> the 7.31 DB-Access come from? Presumably you also have a 7.31 server
> out on the remote machine? It certainly didn't arrive with CSDK! You
> could copy the 9.4 DB-Access from the machine which works to the
> remote and see what happens - it might work. You might need to worry
> about message files! You could consider depriving your remote clients
> of DB-Access. You could consider installing a 9.4 IDS on the remote
> system to get a working DB-Access - a heavyweight solution. You could
> look at using an alternative to DB-Access (errr, <trumpet owner=me>
> SQLCMD perhaps </trumpet>) or ...
>
> You should certainly consult IBM/Informix Tech Support. I'm not sure
> that a 7.31 DB-Access should work with the 9.4 library - but neither
> am I sure that it should not.
>
>> Madison Pruet wrote:
>>
>>>Did the 9.40.UC1 version have encryption turned on?
>>>
>>>
>>>"Eric Herber" <eric@herber-consulting.de> wrote in message
>>>news:bmmfqm$u9e$1@online.de...
>>>
>>>>I try to configure encryption with IDS 9.40.UC2
>>>>on an AIX platform and I'm a little bit confused
>>>>about the different error messages I receive.
>>>>
>>>>Server-Platform:
>>>>----------------
>>>>AIX 5.1
>>>>IDS 9.40.UC2
>>>>
>>>>Server-SQLHOSTS:
>>>>----------------
>>>>ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>>>>
>>>>Server-CONCSMCFG:
>>>>-----------------
>>>>ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
>>>
>>>"");
>>>
>>>>Client-Platform:
>>>>----------------
>>>>AIX 4.3.3
>>>>Client SDK 2.81
>>>>dbaccess 7.31.UD6
>>>>
>>>>Client-SQLHOSTS:
>>>>----------------
>>>>ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>>>>
>>>>Client-CONCSMCFG:
>>>>-----------------
>>>>ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
>>>>"cipher[all]", "");
>>>>
>>>>
>>>>When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
>>>>option in the menu I receive the following error:
>>>>
>>>>14504: CSS: unsupported CSM version 3: ENCCSM>>>>
>>>>When executing 'finderr 14504' it tells me:
>>>>
>>>>"Make sure thethat databaseserver and client application support the CSM
>>>>interface version in question."
>>>>
>>>>This is not very helpful.I really found nothing in the documentation
>>>>(IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows which
>>>>versions work together. Also there seems to be no further information in
>>>>the releasenotes.
>>>>
>>>>The next test I made was a small Esql/C compiled on the client platform
>>>>with CSDK 2.81 (Esql/C 9.53.UC1).
>>>>When running the Esql/C program I sometime receive an -25582 SQL
>>>>errorcode (Network connection broken) and sometimes an -5010 (CSM:
>>>>internal processing error) code and sometimes it runs just fine and
>>>>is able to connect to the remote server and reading some rows.
>>>>
>>>>The same Esql/C program works perfectly against an IDS 9.40.UC1
>>>>(previous IDS version) databaseserver which is installed on the same
>>>>host as the 9.40.UC2 server.
>>>>
>>>>My questions are:
>>>>
>>>>1) The beta webcast said: 'no need to recompile client programs'
>>>> -> Why does dbaccess get error 14504 then ?
>>>>
>>>>2) Is there a compatibility matrix for client/server versions
>>>> available ?
>>>>
>>>>
>>>>Thank you in advance.
>>>>
>>>>Best regards
>>>>
>>>>Eric
>>>>--
>>>>IT-Consulting Herber
>>>>WWW: http://www.herber-consulting.de
>>>>Email: eric@herber-consulting.de
>>>>
>>>>***********************************************
>>>>Download the IFMX Database-Monitor for free at:
>>>>http://www.herber-consulting.de/BusyBee
>>>>***********************************************
>>>>
>>
>>
>
>
--
IT-Consulting Herber
Email: <mailto:eric@herber-consulting.de>
Mobile: +49 177 2276895
***********************************************
Download the IFMX Database-Monitor for free at:
http://www.herber-consulting.de/BusyBee
***********************************************
Hello Madison,
the customer is the Dresdner Bank in germany.
I will be back on monday at the customer site and test with the 'des'
setting.
Also I will open a case on this.
Thank you.
Best regards
Eric
Madison Pruet wrote:
> I don't know of anything significant in the CSM/CSS area that I think
> would
> have caused incompatability. Have you opened a case on this?
>
> As a test, can you run with the parameter cypher[des] instead of
> cypher[all]?
>
>
> "Eric Herber" <eric@herber-consulting.de> wrote in message
> news:bmmua5$jh4$1@online.de...
>> Hello Madison,
>>
>> yes the 9.40.UC1 version had the same sqlhosts/concsm.cfg settings.
>>
>> A local tcp-connection with dbaccess running on the same machine
>> works also with 9.40.UC2, but not the connection from the remote client.
>>
>> Best regards
>>
>> Eric
>>
>> Madison Pruet wrote:
>> > Did the 9.40.UC1 version have encryption turned on?
>> >
>> >
>> > "Eric Herber" <eric@herber-consulting.de> wrote in message
>> > news:bmmfqm$u9e$1@online.de...
>> >> I try to configure encryption with IDS 9.40.UC2
>> >> on an AIX platform and I'm a little bit confused
>> >> about the different error messages I receive.
>> >>
>> >> Server-Platform:
>> >> ----------------
>> >> AIX 5.1
>> >> IDS 9.40.UC2
>> >>
>> >> Server-SQLHOSTS:
>> >> ----------------
>> >> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>> >>
>> >> Server-CONCSMCFG:
>> >> -----------------
>> >> ENCCSM("/usr/inf_version/9.40.UC2/lib/csm/iencs09a.so", "cipher[all]",
>> > "");
>> >>
>> >> Client-Platform:
>> >> ----------------
>> >> AIX 4.3.3
>> >> Client SDK 2.81
>> >> dbaccess 7.31.UD6
>> >>
>> >> Client-SQLHOSTS:
>> >> ----------------
>> >> ids940 onsoctcp defx0db0 ids940 csm=(ENCCSM)
>> >>
>> >> Client-CONCSMCFG:
>> >> -----------------
>> >> ENCCSM("/usr/inf_version/7.31.UD6/lib/client/csm/iencs09a.so",
>> >> "cipher[all]", "");
>> >>
>> >>
>> >> When trying to connect via dbaccess (7.31.UD6) 'connection-connect'
>> >> option in the menu I receive the following error:
>> >>
>> >> 14504: CSS: unsupported CSM version 3: ENCCSM>> >>
>> >> When executing 'finderr 14504' it tells me:
>> >>
>> >> "Make sure thethat databaseserver and client application support the
> CSM
>> >> interface version in question."
>> >>
>> >> This is not very helpful.I really found nothing in the documentation
>> >> (IDS AdminGuide, ClientSDK-Installation, ESQL/C-Manual) that shows
> which
>> >> versions work together. Also there seems to be no further information
> in
>> >> the releasenotes.
>> >>
>> >> The next test I made was a small Esql/C compiled on the client
>> >> platform with CSDK 2.81 (Esql/C 9.53.UC1).
>> >> When running the Esql/C program I sometime receive an -25582 SQL
>> >> errorcode (Network connection broken) and sometimes an -5010 (CSM:
>> >> internal processing error) code and sometimes it runs just fine and
>> >> is able to connect to the remote server and reading some rows.
>> >>
>> >> The same Esql/C program works perfectly against an IDS 9.40.UC1
>> >> (previous IDS version) databaseserver which is installed on the same
>> >> host as the 9.40.UC2 server.
>> >>
>> >> My questions are:
>> >>
>> >> 1) The beta webcast said: 'no need to recompile client programs'
>> >> -> Why does dbaccess get error 14504 then ?
>> >>
>> >> 2) Is there a compatibility matrix for client/server versions
>> >> available ?
>> >>
>> >>
>> >> Thank you in advance.
>> >>
>> >> Best regards
>> >>
>> >> Eric
>> >> --
>> >> IT-Consulting Herber
>> >> WWW: http://www.herber-consulting.de
>> >> Email: eric@herber-consulting.de
>> >>
>> >> ***********************************************
>> >> Download the IFMX Database-Monitor for free at:
>> >> http://www.herber-consulting.de/BusyBee
>> >> ***********************************************
>> >>
>>
>> --
>> IT-Consulting Herber
>> Email: <mailto:eric@herber-consulting.de>
>> Mobile: +49 177 2276895
>> ***********************************************
>> Download the IFMX Database-Monitor for free at:
>> http://www.herber-consulting.de/BusyBee
>> ***********************************************
Related threads
- System Or Internal Error InterruptedIOException
- 25582 error on high volume of short live trans
- ASF Echo-Thread Server: asfcode = -25582 oserr = 4