WebSphere Application Server v8.5.5 Fix Pack 10 information

WebSphere Application Server v8.5.5 Fix Pack 10 information below for reference.

Recommended updates for WAS v8.5.5

Fix list for WebSphere Application Server v8.5

WebSphere Application Server V8.5.5 Fix Pack 10 link

Link for Hardware & Software requirements for WAS v8.5.5. Check out for prerequisites at 8.5.5.10 maintenance level.

WebSphere Application Server V8.5.5 Fix Pack 10 download from Fix central link

WebSphere Application Server v8.5.5 Fix Pack 10 information

Please take a note of the following,

1. Known side effects section before applying the Fix pack. Please refer to the Fix Pack 10 link for more information.

  • WebSphere will programmatically set the java Security properties jdk.tls.disabledAlogrithms and jdk.certpath.disabledAlgorithms. Default values will be:
    jdk.tls.disabledAlgorithms=”SSLv3, RC4, DH keySize < 768, MD5withRSA”
    jdk.certpath.disabledAlgorithms=”MD2, RSA keySize < 1024, MD5″
  • com.ibm.ws.webcontainer.disallowserveserveletsbyclassname has changed the default value from false to true due to security considerations.
  • The java.security file needs to be manually updated to add:
      jdk.tls.disabledAlgorithms=SSLv3, RC4, DH keySize <768.

    Adding this line to the java.security file will disable features exploited by Poodle, RC4 (Bar Mitzvah), and logjam vulnerabilities.

  • SSLv3 will be disabled by default.
  • Recompilation needed for SIP application migrated from WebSphere 7.0 or below to WebSphere 7 With CEA feature pack or WebSphere 8.0 and above.
  • WebSphere Application Server 8.5.5 may not start when using Java 7 after upgrading to fix pack 2 or later.

2. PI65333 & PI65021 APARs information

WebSphere Application Server v8.5.5 Fix Pack 10 information

3. Fix pack size information while downloading from Fix central

WebSphere Application Server v8.5.5 Fix Pack 10 information