Query on Vulnerability Fix

Which IIQ version are you inquiring about?

8.3p2

Share all details about your problem, including any error messages you may have received.

Hi All,

SailPoint has recently released a fix i.e. IdentityIQ Improper Access Control Vulnerability, I need clarity on how to rollback the changes incase if any issue happens after applying the fix. Can someone provide steps for rollback after e fix.

@DharshiniB

You just have to delete the files that were extracted from the IdentityIQ installation.

  1. Files inside WEB-INF\efixes
  2. Jar files in WEB-INF\lib
  3. Then replace the original jar files in WEB-INF\lib from your backup identityiq.war
  4. Restart the server

Any Efix usually goes to custom class files, they provide , this is same with latest one as well

Just check above link you will get an idea on rollback.

1 Like

@iamksatish
Correct me if I’m wrong, Inside Lib file 1st we need to delete all files and need to place the files that we took from backup in lib folder?

yes, that should work and even efix folders as well

You can try this in lower once

1 Like

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.