IBM QRadar

IBM QRadar

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  Workaround or solution to DT382313

    Posted Mon May 05, 2025 12:23 PM

    Hello,

    we're going to upgrade our deployment from 7.5.0.7 IF06 to 7.5.0.11; I see that upgrading to RHEL 8.x may cause issues to virtual hosts using e1000 NIC cards:

     https://www.ibm.com/mysupport/s/defect/aCIKe00000001MD/dt382313?language=en_US

    Our deployment is made by 39 hosts some of which have this kind of adapter..upgrading our release to 7.5.0.9 as an intermediate step (which is anyway required before upgrading to 7.5.0.11) would avoid the issue? 

    Losing network connectivity to some hosts would be quite a big issue because we would need to recover the host from local console which is not always accessible from us, so I want to be sure this will work fine before applying the upgrade.

    B Regards,



    ------------------------------
    Davide Salardi
    ------------------------------


  • 2.  RE: Workaround or solution to DT382313

    Posted Tue May 06, 2025 04:21 AM
    Edited by Vishal Tangadkar Tue May 06, 2025 07:15 AM

    N/A 

    Vishal Tangadkar



    ------------------------------
    Vishal Tangadkar
    IBM INDIA PVT LTD
    ------------------------------



  • 3.  RE: Workaround or solution to DT382313

    Posted Tue May 06, 2025 07:08 AM
    Edited by John Dawson Tue May 06, 2025 07:10 AM

    Hi Davide,

    Unfortunately you will be required to change the adapter types prior to upgrading from 7.5.0 UP7.  This is due to the drivers for the e1000 NIC being deprecated in RHEL8

    https://access.redhat.com/articles/3677291

    The resolution to the known issue you mention was to implement a precheck to prevent the upgrade from proceeding if the e1000 NIC was identified on the host.

    I would recommend to open a support case to have the logs analysed and the correct mitigation provided.

    Thanks



    ------------------------------
    John Dawson
    Qradar Support Architect
    IBM
    ------------------------------



  • 4.  RE: Workaround or solution to DT382313

    Posted Fri May 09, 2025 06:00 AM

    Hello Johns,

    thanks for your response..so the workaround is simply preventing the upgrade on hosts that have e1000 NIC, but if we need to upgrade our deployment (including these hosts) we need to open a case to support.

    Do you recommend to open a case before running the upgrade so that support might provide us some preventive measures in advance?

    BR



    ------------------------------
    Davide Salardi
    ------------------------------



  • 5.  RE: Workaround or solution to DT382313

    Posted Fri May 09, 2025 07:51 AM

    Hi Davide,

    The mitigation was to put a check in so that it would stop and and therefore you would not loose connectivity.

    I would recommend opening a support case prior to the upgrade so the correct mitigation can be put in place to allow the upgrade to complete smoothly.

    Thanks



    ------------------------------
    John Dawson
    Qradar Support Architect
    IBM
    ------------------------------