<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Corrupt security catalog in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844656#M755044</link>
    <description>Note the error relates to the file security_patch_check.pl , what size is yours mine = 59741 .... I'm pretty certain this is available on the ftp site to .... just a thought ......</description>
    <pubDate>Thu, 14 Nov 2002 14:09:10 GMT</pubDate>
    <dc:creator>Alex Glennie</dc:creator>
    <dc:date>2002-11-14T14:09:10Z</dc:date>
    <item>
      <title>Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844650#M755038</link>
      <description>I am trying to use the security patch check utility and I manually download the security catalog from ftp.itrc.hp.com before running the tool with the -c option. But every time the tool complains about corrupt catalog:&lt;BR /&gt;Corrupt catalog.  Invalid format version at line 3.&lt;BR /&gt;&lt;BR /&gt;Line 3 in the catalog looks like this:&lt;BR /&gt;0.91 # catalog format version&lt;BR /&gt;&lt;BR /&gt;What is wrong? My SPC version is B.01.01</description>
      <pubDate>Thu, 14 Nov 2002 09:26:56 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844650#M755038</guid>
      <dc:creator>Anders Blomkvist</dc:creator>
      <dc:date>2002-11-14T09:26:56Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844651#M755039</link>
      <description>I think you may have some form of corruption, try downloading the patch catalog again from :&lt;BR /&gt;&lt;BR /&gt;&lt;A href="ftp://ftp.itrc.hp.com/export/patches/" target="_blank"&gt;ftp://ftp.itrc.hp.com/export/patches/&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;I've just tried and it works for me or post if you can, your copy of security_catalog ...what it's size ? &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 14 Nov 2002 10:13:33 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844651#M755039</guid>
      <dc:creator>Alex Glennie</dc:creator>
      <dc:date>2002-11-14T10:13:33Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844652#M755040</link>
      <description>Ive just run SPC and it downloaded the latest catalog and worked fine. Size of the security_catalog was 1064202.</description>
      <pubDate>Thu, 14 Nov 2002 10:26:22 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844652#M755040</guid>
      <dc:creator>Stefan Farrelly</dc:creator>
      <dc:date>2002-11-14T10:26:22Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844653#M755041</link>
      <description>My size is 1064202 bytes, just like yours. I've tried to download this file numerous times using both binary and ascii transfer without success. I've downloaded the gzipped version as well as the unzipped one, I've downloaded it from a HP-UX system and from a Windows system and then transferred it to the HP-UX machine. No luck. I'm starting to think that Im missing some patch required for this tool to run.</description>
      <pubDate>Thu, 14 Nov 2002 11:58:59 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844653#M755041</guid>
      <dc:creator>Anders Blomkvist</dc:creator>
      <dc:date>2002-11-14T11:58:59Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844654#M755042</link>
      <description>I do get the following warnings when running spc:&lt;BR /&gt;Use of uninitialized value in split at /opt/sec_mgmt/spc/bin/security_patch_check.pl line 482, &lt;CAT&gt; chunk 1.&lt;BR /&gt;Use of uninitialized value in pattern match (m//) at /opt/sec_mgmt/spc/bin/security_patch_check.pl line 488, &lt;CAT&gt; chunk 1.&lt;BR /&gt;Use of uninitialized value in numeric gt (&amp;gt;) at /opt/sec_mgmt/spc/bin/security_patch_check.pl line 488, &lt;CAT&gt; chunk 1.&lt;BR /&gt;Use of uninitialized value in split at /opt/sec_mgmt/spc/bin/security_patch_check.pl line 493, &lt;CAT&gt; chunk 1.&lt;BR /&gt;Use of uninitialized value in pattern match (m//) at /opt/sec_mgmt/spc/bin/security_patch_check.pl line 499, &lt;CAT&gt; chunk 1.&lt;BR /&gt;&lt;BR /&gt;Could this be related? I found a similar case in the SPC FAQ/releasenote and there it was patch related.&lt;/CAT&gt;&lt;/CAT&gt;&lt;/CAT&gt;&lt;/CAT&gt;&lt;/CAT&gt;</description>
      <pubDate>Thu, 14 Nov 2002 12:07:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844654#M755042</guid>
      <dc:creator>Anders Blomkvist</dc:creator>
      <dc:date>2002-11-14T12:07:26Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844655#M755043</link>
      <description>Have you tried running security_patch_check with the "-r" option so that it will do the retrieval itself?&lt;BR /&gt;&lt;BR /&gt;Darrell</description>
      <pubDate>Thu, 14 Nov 2002 13:48:20 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844655#M755043</guid>
      <dc:creator>Darrell Allen</dc:creator>
      <dc:date>2002-11-14T13:48:20Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844656#M755044</link>
      <description>Note the error relates to the file security_patch_check.pl , what size is yours mine = 59741 .... I'm pretty certain this is available on the ftp site to .... just a thought ......</description>
      <pubDate>Thu, 14 Nov 2002 14:09:10 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844656#M755044</guid>
      <dc:creator>Alex Glennie</dc:creator>
      <dc:date>2002-11-14T14:09:10Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844657#M755045</link>
      <description>I think SPC requires a certain version of perl. Were using 5.6.1.E - make sure in your path it is searching for this perl binary not another one as HP-UX often comes with perl (older version) in /usr/contrib/bin which is not the one you want (you want the one in /opt/perl/bin)&lt;BR /&gt;</description>
      <pubDate>Thu, 14 Nov 2002 14:15:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844657#M755045</guid>
      <dc:creator>Stefan Farrelly</dc:creator>
      <dc:date>2002-11-14T14:15:36Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844658#M755046</link>
      <description>Yes I've tried to run it with the -r option but that doesn't work because of our firewall. &lt;BR /&gt;The size of the .pl file is correct - the same as yours and yes,&lt;BR /&gt;I have made sure that the perl version found is the latest (5.6.1). I will try to install SPC on another system to check how it behaves there.</description>
      <pubDate>Thu, 14 Nov 2002 14:21:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844658#M755046</guid>
      <dc:creator>Anders Blomkvist</dc:creator>
      <dc:date>2002-11-14T14:21:23Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844659#M755047</link>
      <description>Anders,&lt;BR /&gt;&lt;BR /&gt;  Yes, those warnings are related to the problem.  Some things to try to debug:&lt;BR /&gt;&lt;BR /&gt;1. as you suggested, try running on a different machine.  You can also try using the -h option to analyze this machine from the remote machine (if you get it running on the other one)&lt;BR /&gt;&lt;BR /&gt;2. swlist | grep -i perl&lt;BR /&gt;to see exactly which version of Perl is installed.  SPC should only require 5.00503, but it's only been tested with the official versions from software.hp.com.&lt;BR /&gt;&lt;BR /&gt;3. line 479 of security_patch_check.pl reads&lt;BR /&gt; my $read_input = &lt;CAT&gt;;&lt;BR /&gt;&lt;BR /&gt;insert another line right after that like so:&lt;BR /&gt;&lt;BR /&gt;print "$read_input\n";&lt;BR /&gt;&lt;BR /&gt;It appears that the data is not being properly read in from the catalog.  If you can also post the first 4 lines of your catalog, that would be helpful.&lt;BR /&gt;&lt;BR /&gt;4. In case you have multiple versions of perl, you can try&lt;BR /&gt;&lt;BR /&gt;/opt/perl/bin/perl -wT /opt/sec_mgmt/spc/bin/security_patch_chec.pl&lt;BR /&gt;&lt;BR /&gt;directly.&lt;BR /&gt;&lt;BR /&gt;I have seen a problem somewhat similar to this, but it magically went away one day and we never found the cause.  In that case, running once with -r and then again with -c seemed to workaround the problem.&lt;BR /&gt;&lt;BR /&gt;Let us know how it goes.  Thanks&lt;BR /&gt;&lt;BR /&gt;   -Keith&lt;/CAT&gt;</description>
      <pubDate>Thu, 14 Nov 2002 17:44:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844659#M755047</guid>
      <dc:creator>Keith Buck</dc:creator>
      <dc:date>2002-11-14T17:44:36Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844660#M755048</link>
      <description>Also, as far as your firewall is concerned, security patch check has a few ways to get through firewalls.&lt;BR /&gt;&lt;BR /&gt;If you set &lt;BR /&gt;&lt;BR /&gt;export PASSIVE_FTP=1&lt;BR /&gt;&lt;BR /&gt;then it will get through most stateful firewalls that allow outgoing traffic.&lt;BR /&gt;&lt;BR /&gt;If you have a web proxy, you can set&lt;BR /&gt;&lt;BR /&gt;export ftp_proxy=&lt;A href="http://myproxy.corp.com:8088" target="_blank"&gt;http://myproxy.corp.com:8088&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;and possibly (untested, as I don't have access to such a firewall):&lt;BR /&gt;&lt;BR /&gt;export ftp_proxy=http://username:password@myproxy.corp.com:8088&lt;BR /&gt;&lt;BR /&gt;If none of these work, then how did you get the catalog on the PC?  (separate network?)&lt;BR /&gt;&lt;BR /&gt;  -Keith</description>
      <pubDate>Thu, 14 Nov 2002 17:50:49 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844660#M755048</guid>
      <dc:creator>Keith Buck</dc:creator>
      <dc:date>2002-11-14T17:50:49Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844661#M755049</link>
      <description>Solved it. SPC does not like using the -c parameter to use a catalog in another directory than the current one. My original command was:&lt;BR /&gt;/opt/sec_mgmt/spc/bin/security_patch_check -c /var/opt/sec_mgmt/spc&lt;BR /&gt;&lt;BR /&gt;This fails. When I copied the catalog from /var/opt/sec_mgmt/spc to /opt/sec_mgmt/spc/bin and ran the tool it worked. I then made a softlink from the catalog under /var/opt.. to /opt/sec_mgmt/spc/bin/security_catalog and this works as well.</description>
      <pubDate>Fri, 15 Nov 2002 09:11:53 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844661#M755049</guid>
      <dc:creator>Anders Blomkvist</dc:creator>
      <dc:date>2002-11-15T09:11:53Z</dc:date>
    </item>
    <item>
      <title>Re: Corrupt security catalog</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844662#M755050</link>
      <description>Ahh...now I see the problem.  There are two minor bugs in Security Patch Check (thanks for finding them), but they're not what you think.&lt;BR /&gt;&lt;BR /&gt;The -c option is meant to take the filename.  If you specify a directory (like /var/opt/sec_mgmt/spc), you get the errors about a corrupt catalog.  (the catalog is supposed to be a file...a directory looks like a corrupt catalog.)&lt;BR /&gt;&lt;BR /&gt;So, Security Patch Check ought to:&lt;BR /&gt;&lt;BR /&gt;1. Complain about an error before line 3.&lt;BR /&gt;&lt;BR /&gt;2. check to make sure that the security catalog is a file before trying to read it.&lt;BR /&gt;&lt;BR /&gt;Thanks!  I'll go fix that...</description>
      <pubDate>Fri, 15 Nov 2002 16:29:32 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/corrupt-security-catalog/m-p/2844662#M755050</guid>
      <dc:creator>Keith Buck</dc:creator>
      <dc:date>2002-11-15T16:29:32Z</dc:date>
    </item>
  </channel>
</rss>

