Monday, 18 January 2016

OIDMS 11.1.1.7.0 - Applying OIM 11.1.1.7.1 Patch 17998996 included in Patch 18116639: ORACLE IDENTITY MANAGEMENT SUITE BUNDLE PATCH 11.1.1.7.1

OIDMS 11.1.1.7.0 - Applying OIM 11.1.1.7.1 Patch 17998996 included in Patch 18116639: ORACLE IDENTITY MANAGEMENT SUITE BUNDLE PATCH 11.1.1.7.1

- Download Patch 18116639 (p18116639_111170_Generic.zip)

- Highly recommened to at least take backup of Eventhandler XML files, database schemas for OIM, MDS and SOA, OIM WebLogic Domain. Also back up the OIMUI.jar file located in 
$OIM_HOME/oim.ear/iam-consoles-faces.war/ WEB-INF/lib if user interface has been modified with Agent.xml files.


1) Applying Patch 17998996 (Opatch)

- Stop servers (Admin and Managed Servers)

- Unzip the patch

$ unzip -d PATCH_TOP p18116639_111170_Generic.zip

- Set ORACLE_HOME to $MW_HOME/Oracle_IAM1

$ cd PATCH_TOP/18116639/17998996

- Run opatch apply

$ opatch apply

Repeat these steps for each OIM ORACLE_HOMEs


2) Entering appropriate parameters in patch_oim_wls.profile file

$ cd OIM_HOME/server/bin

Enter details for parameters provided in patch_oim_wls.profile file relevant to the environment. 

3) Patching OIM Managed Servers (patch_oim_wls)

- Admin Server must be running, Oracle Identity Manager and SOA Managed Servers must be shut down.

- Run patch_oim_wls.sh

$ cd OIM_HOME/server/bin

$ ./patch_oim_wls.sh

- Compare EventHandler.xml file with the backup file taken before patching and manually merge if any custom event handlers added. Also upload EventHandler XML into MDS using MDS export / import 

utilities

- Restart WebLogic Admin Server and start all Oracle Identity Manager Managed Servers and the SOA Servers.

(Repeat the steps on all nodes that have an Oracle Identity Manager Managed Server running)

4) Patching the Design Console and Remote Manager on Separate Systems

If OIM Design Console or Remote Manager installations are not on same host as OIM servers, then apply bundle patch to them separately.

- $ unzip -d PATCH_TOP p17998996_111170_Generic.zip 

- $ cd PATCH_TOP/18116639/17998996

- Set ORACLE_HOME to $MW_HOME/Oracle_IDM1

- $ opatch apply

Post Patching Tasks

- Enable the Evaluate User Policies scheduled job

- Use the Oracle WebLogic Server Administrative Console to manually redeploy Diagnostic Dashboard using the XIMDD.ear file included in the bundle patch package.

- Configure UMS Provider for Sending Notifications (only to be done if UMS was already configured before applying this bundle patch)

Removing Bundle Patch

If any issues after applying bundle patch and rollback is required, follow below steps:

- Stop services

- $ cd PATCH_TOP/17998996

- Run opatch rollback

$ opatch rollback -id 17998996

- Execute $OIM_ORACLE_HOME/server/bin/patch_weblogic.sh to apply the configuration changes to the Oracle Identity Manager server.Enter password for the Oracle Identity Manager database.

- Restore OIM_ORACLE_HOME, the WebLogic domain home from the backup created before applying the patch.

- Restore the Oracle Identity Manager database using the backup created before applying patch

- Repeat above steps on all the cluster nodes.

- Restart services


- Redeploy optional Oracle Identity Manager components back to their status before the bundle patch was applied.


Related Posts:

FMW 11.1.1.7.1 - Applying Identity Manager Patch 19666962: OIM OVERLAY SECURITY PATCH UPDATE 11.1.1.7.141014

No comments:

Post a Comment