SUSE-RU-2026:1401-1: moderate: Recommended update for supportutils-scrub

SLE-UPDATES null at suse.de
Thu Apr 16 16:30:13 UTC 2026



# Recommended update for supportutils-scrub

Announcement ID: SUSE-RU-2026:1401-1  
Release Date: 2026-04-16T11:33:21Z  
Rating: moderate  
References:

  
Affected Products:

  * Basesystem Module 15-SP7
  * openSUSE Leap 15.6
  * SUSE Linux Enterprise Desktop 15 SP7
  * SUSE Linux Enterprise High Performance Computing 15 SP4
  * SUSE Linux Enterprise High Performance Computing 15 SP5
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5
  * SUSE Linux Enterprise Micro 5.2
  * SUSE Linux Enterprise Micro 5.3
  * SUSE Linux Enterprise Micro 5.4
  * SUSE Linux Enterprise Micro 5.5
  * SUSE Linux Enterprise Micro for Rancher 5.2
  * SUSE Linux Enterprise Micro for Rancher 5.3
  * SUSE Linux Enterprise Micro for Rancher 5.4
  * SUSE Linux Enterprise Real Time 15 SP7
  * SUSE Linux Enterprise Server 15 SP4
  * SUSE Linux Enterprise Server 15 SP4 LTSS
  * SUSE Linux Enterprise Server 15 SP5
  * SUSE Linux Enterprise Server 15 SP5 LTSS
  * SUSE Linux Enterprise Server 15 SP6
  * SUSE Linux Enterprise Server 15 SP6 LTSS
  * SUSE Linux Enterprise Server 15 SP7
  * SUSE Linux Enterprise Server for SAP Applications 15 SP4
  * SUSE Linux Enterprise Server for SAP Applications 15 SP5
  * SUSE Linux Enterprise Server for SAP Applications 15 SP6
  * SUSE Linux Enterprise Server for SAP Applications 15 SP7

  
  
An update that can now be installed.

## Description:

This update for supportutils-scrub fixes the following issues:

  * Update to version 1.2.0
  * New input modes
    * Folder mode: pass any directory, output written to {dir}_scrubbed/
    * Stdin/pipe mode: cat log | supportutils-scrub (scrubbed text to stdout)
    * Single file mode: process a plain file, output to {file}_scrubbed
    * Multi-archive mode: process several .txz/.tgz in one run with shared mappings ensuring consistent obfuscation across all archives
  * Improved automatic entity detection for pipe/file/stdin modes
    * PAM log patterns: pam_unix([...]) and unix_chkpwd extract usernames
    * logname= field now recognised as username source
    * NFS server lines extract hostname and domain automatically
    * RFC 5424 syslog hostname (field repeated >= 3 lines) auto-detected
  * Fixed domain parser false positives
    * Added TLD allowlist rejecting D-Bus names, container runtime interfaces, version strings, systemd scopes and hardware IDs
  * Bug fixes

    * Fixed IP pool exhaustion crash when mixed prefix lengths allocated
  * Update to version 1.1.0

  * Major enhancement: Subnet-aware IP obfuscation
    * Maps entire IPv4 subnets to fake subnets preserving host offsets
    * Gateway .1 remains .1, broadcast .255 remains .255
    * Maintains network topology for effective troubleshooting
  * Added PCAP obfuscation support with tcprewrite integration
    * Rewrites packet captures using same subnet mappings as logs
    * Ensures consistency across supportconfigs and network traces
    * Exports tcprewrite-compatible subnet rules 
  * Enhanced mapping file structure
    * Added 'subnet' section with subnet-to-subnet translations
    * Added 'state' section tracking IP pool allocation cursors
    * Enables reproducible obfuscation across multiple runs
  * Improved IP processing
    * Two-pass processing: learns subnets then applies mapping
    * Preserves special IPs (0.0.0.0, 127.0.0.1, multicast)
    * Protects version strings from incorrect obfuscation
  * Enhanced domain and hostname extraction
    * Multiple source parsing (resolv.conf, hosts, NFS, NTP)
    * Fixed word boundary detection preventing partial replacements
    * Added minimum length requirements for hostnames
  * Security improvements
    * Dataset JSON files created with 0600 permissions
    * System users excluded from obfuscation
  * Added command-line options for PCAP processing
    * \--rewrite-pcap: Enable PCAP rewriting mode
    * \--pcap-in: Specify input PCAP files
    * \--pcap-out-dir: Output directory for obfuscated PCAPs
    * \--print-tcprewrite: Display tcprewrite command
  * Bug fixes

    * Fixed /32 host route handling
    * Corrected inline comment processing in hostnames
    * Resolved IPv6 subnet awareness issues
    * Fixed MAC address parsing false positives
  * Initial release version 1.0.0

  * Basic obfuscation for supportconfig tarballs
  * Supports IP, domain, hostname, username, MAC, IPv6
  * Configuration file support
  * Keyword-based obfuscation
  * Mapping file for consistency across runs

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".  
Alternatively you can run the command listed for your product:

  * openSUSE Leap 15.6  
    zypper in -t patch openSUSE-SLE-15.6-2026-1401=1

  * SUSE Linux Enterprise Micro for Rancher 5.3  
    zypper in -t patch SUSE-SLE-Micro-5.3-2026-1401=1

  * SUSE Linux Enterprise Micro 5.3  
    zypper in -t patch SUSE-SLE-Micro-5.3-2026-1401=1

  * SUSE Linux Enterprise Micro for Rancher 5.4  
    zypper in -t patch SUSE-SLE-Micro-5.4-2026-1401=1

  * SUSE Linux Enterprise Micro 5.4  
    zypper in -t patch SUSE-SLE-Micro-5.4-2026-1401=1

  * SUSE Linux Enterprise Micro 5.5  
    zypper in -t patch SUSE-SLE-Micro-5.5-2026-1401=1

  * Basesystem Module 15-SP7  
    zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-1401=1

  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-1401=1

  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-1401=1

  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-1401=1

  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5  
    zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-1401=1

  * SUSE Linux Enterprise Server 15 SP4 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-1401=1

  * SUSE Linux Enterprise Server 15 SP5 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-1401=1

  * SUSE Linux Enterprise Server 15 SP6 LTSS  
    zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-1401=1

  * SUSE Linux Enterprise Server for SAP Applications 15 SP4  
    zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-1401=1

  * SUSE Linux Enterprise Server for SAP Applications 15 SP5  
    zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-1401=1

  * SUSE Linux Enterprise Server for SAP Applications 15 SP6  
    zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-1401=1

  * SUSE Linux Enterprise Micro 5.2  
    zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-1401=1

  * SUSE Linux Enterprise Micro for Rancher 5.2  
    zypper in -t patch SUSE-SUSE-MicroOS-5.2-2026-1401=1

## Package List:

  * openSUSE Leap 15.6 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro for Rancher 5.3 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro 5.3 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro for Rancher 5.4 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro 5.4 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro 5.5 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * Basesystem Module 15-SP7 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Server 15 SP4 LTSS (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Server 15 SP5 LTSS (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Server 15 SP6 LTSS (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro 5.2 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1
  * SUSE Linux Enterprise Micro for Rancher 5.2 (noarch)
    * supportutils-scrub-1.2-150100.3.6.1

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.suse.com/pipermail/sle-updates/attachments/20260416/74d85bfb/attachment.htm>


More information about the sle-updates mailing list