Date:2011-09-08 OS: Windows Etrack Incidents: 2479684, 2479647, 2415747, 2417674, 2477352, 2417931, 1917155, 2445073, 2408592, 2424856, 2233281, 2493103, 2480939, 2490011, 2400240 Errors/Problems Fixed: In 2.5 RP2: If you create an exclude rule to exclude events from a user from a specific IP address, all events by that user are excluded in WinNAS regardless of the IP address. (2493103) [Applies to: windows file server agent] Improve index writer performance to handle large number of incoming events. (2480939) [Applies to: indexer] Installer checks for running exes with just exe name instead of the full path, resulting in non Data Insight exes being flagged in some cases. (2490011) [Applied to: all] Inactive Directories report crashes if it encounters a SID that's not present in user database. (2400240) [Applies to: indexer] In 2.5 RP1: DataInsightComm and DataInsightWeb services crash intermittently due to a JVM bug. (2479684) [Applies to: all] Scanner is not able to scan shares with non-ascii share names. (2479647) [Applies to: collector] "Everyone" group and other built-in groups like "Authenticated Users" can not be selected during report creation. (2415747) [Applies to: management server] Some reports do not consider "Last Accessor" method for ownership calculations. (2417674) [Applies to: indexer] Scanner crashes in certain cases when resuming scan for a share containing more than 5 million directories. (2477352) [Applies to: collector] SharePoint meta-events are not expanded appropriately for reports. (2417931) [Applies to: indexer] Go-to bar in console does not work for users. (1917155) [Applies to: management server] Index Writer fails to update an index for certain directory rename scenarios. (2445073) [Applies to: indexer] Delete button on filer details page not working. (2408592) [Applies to: management server] Allow DataInsightFpolicy service to run with Local System credentials in order to support NetApp filers that might be in a different untrusted domain than the collector. (2424856) [Applies to: management server, collector] SharePoint agent returns incorrect object type for some SharePoint objects. (2233281) [Applies to: sharepoint agent] Install/Uninstall Instructions: Apply this rolling patch on all Data Insight servers with version 2.5. FILES AFFECTED BY THIS PATCH: C:\Program Files\Symantec\DataInsight\bin\qdlib.dll C:\Program Files\Symantec\DataInsight\bin\config.dll C:\Program Files\Symantec\DataInsight\bin\mindexer.dll C:\Program Files\Symantec\DataInsight\bin\maskrules.dll C:\Program Files\Symantec\DataInsight\bin\rptlib.dll C:\Program Files\Symantec\DataInsight\bin\inactive_dirs.dll C:\Program Files\Symantec\DataInsight\bin\inactive_data.dll C:\Program Files\Symantec\DataInsight\bin\inactive_data_by_owner.dll C:\Program Files\Symantec\DataInsight\bin\storage_by_domain.dll C:\Program Files\Symantec\DataInsight\bin\storage_by_file_group.dll C:\Program Files\Symantec\DataInsight\bin\storage_by_owner.dll C:\Program Files\Symantec\DataInsight\bin\storage_by_type_and_owner.dll C:\Program Files\Symantec\DataInsight\bin\queryd.exe C:\Program Files\Symantec\DataInsight\bin\scanner.exe C:\Program Files\Symantec\DataInsight\bin\idxwriter.exe C:\Program Files\Symantec\DataInsight\bin\idxreader.exe C:\Program Files\Symantec\DataInsight\bin\configdb.exe C:\Program Files\Symantec\DataInsight\bin\fpolicyd.exe C:\Program Files\Symantec\DataInsight\bin\winnasd.exe -- C:\Program Files\Symantec\DataInsight\pdb\qdlib.pdb C:\Program Files\Symantec\DataInsight\pdb\config.pdb C:\Program Files\Symantec\DataInsight\pdb\mindexer.pdb C:\Program Files\Symantec\DataInsight\pdb\maskrules.pdb C:\Program Files\Symantec\DataInsight\pdb\rptlib.pdb C:\Program Files\Symantec\DataInsight\pdb\inactive_dirs.pdb C:\Program Files\Symantec\DataInsight\pdb\inactive_data.pdb C:\Program Files\Symantec\DataInsight\pdb\inactive_data_by_owner.pdb C:\Program Files\Symantec\DataInsight\pdb\storage_by_domain.pdb C:\Program Files\Symantec\DataInsight\pdb\storage_by_file_group.pdb C:\Program Files\Symantec\DataInsight\pdb\storage_by_owner.pdb C:\Program Files\Symantec\DataInsight\pdb\storage_by_type_and_owner.pdb C:\Program Files\Symantec\DataInsight\pdb\scanner.pdb C:\Program Files\Symantec\DataInsight\pdb\idxwriter.pdb C:\Program Files\Symantec\DataInsight\pdb\idxreader.pdb C:\Program Files\Symantec\DataInsight\pdb\configdb.pdb C:\Program Files\Symantec\DataInsight\pdb\fpolicyd.pdb C:\Program Files\Symantec\DataInsight\pdb\winnasd.pdb C:\Program Files\Symantec\DataInsight\pdb\queryd.pdb -- C:\Program Files\Symantec\DataInsight\tomcat\webapps\ROOT\ui (folder) C:\Program Files\Symantec\DataInsight\tomcat\webapps\ROOT\WEB-INF\classes (folder) C:\Program Files\Symantec\DataInsight\tomcat\webapps\ROOT\WEB-INF\lib\dlp-web-api.jar NOTE: Please keep a backup of the files you are about to patch. This will be required in case you want to manually rollback the patch. High Level Steps: 1. Apply the rolling patch on Management Server first, followed by all Worker Nodes. 2. Next, apply patch to Windows File Server agents (if applicable). 3. Lastly, update SharePoint agent package on the SharePoint farm (if applicable). Patching Data Insight Management Server and Worker Nodes: 1. Log onto each server with Administrative privileges. 2. Unzip the patch files to a temporary folder. In this folder, locate the rolling patch installer for the appropriate OS architecture. The installer is called Symantec_DataInsight_windows_25RP2_2_5_0_1429_x64.exe for 64 bit OS and Symantec_DataInsight_windows_25RP2_2_5_0_1429_x86.exe for 32 bit OS. 3. Launch the installer executable to install the rolling patch. Patching Data Insight Windows File Server agents: 1. Unzip the patch files to a temporary folder. In this folder, locate the rolling patch installer bundles for Windows File Server agents. The agent bundle is called Symantec_DataInsight_windows_winnas_25RP2_2_5_0_1429_x64.zip for 64 bit OS and Symantec_DataInsight_windows_winnas_25RP2_2_5_0_1429_x86.zip for 32 bit OS. 2. Log into the Management Console with Server Administrator privilege and upload the agent bundles to the appropriate collector worker nodes using "Agent Uploader" page in the Settings tab. 3. Navigate to Filer details page for each configured Windows File Server in the Settings tab and click on "Upgrade Agent" button available on the top of the page. This option is only visible if you have enabled the option to let Data Insight install/upgrade agent for this filer. 4. Alternately, to manually patch a Windows File Server agent, log onto the Windows File Server machine with Administrative privileges, unzip the agent installer bundle in a temporary location, and launch the patch installer. The patch installer is called Symantec_DataInsight_windows_winnas_25RP2_2_5_0_1429_x64.exe for 64 bit OS, and Symantec_DataInsight_windows_winnas_25RP2_2_5_0_1429_x86.exe for 32 bit OS. Patching Data Insight Microsoft SharePoint agent: 1. Log onto the SharePoint farm machine where the SharePoint agent has been previously installed. 2. Uninstall the old agent using "Add/Remove Programs" applet in Control Panel. 3. Unzip the patch files to a temporary folder. In this folder, locate the SharePoint agent installer. The installer is called Symantec_DataInsight_sharepoint_2_5_0_1429.exe. 4. Launch the installer to install the new agent. Additional Notes: 1. At this time, automated roll back of patch is not supported. To roll back the patch manually: a. Remember to take a backup of original files before you install the rolling patch. b. To roll back the patch, stop all Data Insight services, overwrite the patched files with original files from backup, and restart services. 2. To confirm if a system has been patched, check the version of Data Insight using "Add/Remove Programs" applet in the Control Panel.