SUSE-RU-2026:23345-1: important: Recommended update for resource-agents
SLE-UPDATES
null at suse.de
Mon Aug 31 12:30:24 UTC 2026
# Recommended update for resource-agents
Announcement ID: SUSE-RU-2026:23345-1
Release Date: 2026-08-19T12:31:31Z
Rating: important
References:
* bsc#1249819
* bsc#1260984
* bsc#1274582
* jsc#PED-14860
* jsc#PED-15014
Affected Products:
* SUSE Linux Enterprise Server for SAP applications 16.0
An update that contains two features and has three fixes can now be installed.
## Description:
This update for resource-agents fixes the following issues:
* Update to version 4.18.0+git81.694408f0:
* OCPBUGS-100303: podman-etcd: add test hooks for FNC race reproduction
* OCPBUGS-100303: podman-etcd: resolve force_new_cluster race during simultaneous dual-start
* mediationzone: new resource agent
* ibmmq: new resource agent for IBM MQ queue managers
* podman-etcd: scope sync to etcd filesystem only
* spec: Remove EOL Fedora compatibility blocks from spec file
* Route: restore unique="1" for destination and warn on "default"
* Route: update destination parameter to non-unique
* powervs-move-ip: introduce support for trusted profiles, refine handling of API return codes (bsc#1274582)
* Use more flexible solution for handling the different python versions.
* Update to version 4.18.0+git66.efe7eefd4:
* pgsql: add dynamic replication mode management for out-of-cluster standbys
* ibm-cloud-vpc-move-par: new resource agent
* nvmet-*: When the nvmet kernel module is not detected, attempt to load it to avoid manual execution
* oralsnr: enable support for multiple listeners per SID
* rkt: delete deprecated container agent
* IPaddr2: fix loop variable
* OCPBUGS-84695: fix(podman-etcd): single-node crash recovery and hardened detection
* IPaddr2: replace clusterip with cluster module
* podman-etcd: remove cert monitoring infrastructure
* Update to version 4.18.0+git51.4e6bf13c5:
* azure-sap-zone: add Azure cloud environment support
* ganesha-nfs: add enable_nlm, grace_period and lease_lifetime parameters
* ganesha-nfs: add server_scope parameter
* ganesha-nfs: add anonuid/anongid parameters
* ganesha-nfs: use RecoveryRoot for the recovery directory
* nfsserver: monitor nfs-mountd.service for failed states
* iSCSILogicalUnit: apply fileio write cache mode at create time
* nfsserver: monitor nfsdcld.service for failures or stopped state
* nfsserver: dont try to stop fsidd when not present
* ganesha-nfs: add generated mode (render config from parameters)
* portblock: fix IPv6 rule detection in the iptables backend
* doc: Fix links after master to main rename
* conntrackd: fix monitor/start logic
* Low: nfsserver: Correction of magic numbers and log output.
* sybaseASE: dont report error about missing sybaseASE env during probe-action
* nfsserver: Fixes the incorrect indentation
* Mid: IPaddr2: To allow Pacemaker to handle error handling, it returns NOT_RUNNING even when down.
* nfsserver: Stop fsidd when stopping nfs-server
* Mid: nfsserver: Change the log level for probe and process checks at startup to info.
* IPaddr2: fix interfaces named with keywords like primary, secondary, etc
* OCPBUGS-83333: podman-etcd: Add learner in notify to prevent start deadlock
* OCPBUGS-82190: podman-etcd: Fixed etcd learner deadlock during machine deletion
* nfsserver/nfsnotify: use chown : to avoid warnings with newer versions of chown
* Filesystem: always return OCF_ERR_GENERIC when another device is mounted on mountpoint to ensure relocation after trying to restart
* podman-etcd: fix port 2380 binding race during install transition
* oraasm: Avoid false positive start/monitor operation when critical processes are offline
* ganesha-nfs: new resource agent
* azure-sap-zone: new resource agent for Azure SAP zone alignment
* portblock: add IPv6 support to iptables and nft backends
* db2: Avoid promotion in STANDBY/REMOTE_CATCHUP_PENDING state
* db2: do not use db2stop, as it sends truncation messages, which in some cases are not delivered
* build: update ChangeLog for 4.18.0
* Update to version 4.18.0rc1+git0.36fef17a:
* build: update ChangeLog for 4.18.0-rc1
* aws-vpc-move-ip: Add awscli_timeout option (bsc#1260984)
* OCPBUGS-76538: podman-etcd: monitor/stop hardening
* OCPBUGS-78482: podman-etcd: fix "Peer URLs already exists" in add_member_as_learner
* Modify the return code when a mismatch between mount state and configuration is detected in monitor operation.
* podman-etcd: Preserve standalone voter identity during restart
* pgsql: use monitor_user for monitor-calls and use .pgpass when monitor_password is not specified
* sfex_lib: dont discard 'const' qualifier
* OCPBUGS-76538: podman-etcd: Removed unneeded ETCDCTL_API environment variable
* db2: set reintegration when promotion is successful
* Update to version 4.17.0+git43.ea0932c3:
* portblock: monitor needs to also check state file of inverse action
* Update to version 4.17.0+git42.a607c299:
* IPaddr2: fix find_interface output
* IPsrcaddr: fix grep expression, so it doesnt log "stray \ before white space" with newer versions of grep
* podman-etcd: fix learner node attribute not set after etcdctl failure
* docker: improve image existence check
* portblock: check correct binary during validate-all
* send_arp.linux/tickle_tcp: better alpine compatibility
* podman-etcd: enhance etcd data backup with snapshots and retention
* Update to version 4.17.0+git30.b33c378d: (jsc#PED-15014)
* powervs-move-ip/powervs-subnet: fix error logging
* Filesystem: optionally report "xargs ps -f" even when killing many processes
* ocf-shellfunc: add ocf_log_pipe
* findif.c: remove unused colonptr variable
* Filesystem: use -eq/-ne for numeric variables
* powervs-subnet: wait until IP is activated before running monitor-check
* OCPBUGS-64765: podman-etcd: add -a option to crictl ps
* Fix packages for Immutable Mode - resource-agents (jsc#PED-14860)
* Update to version 4.17.0+git18.92719d83:
* Filesystem: signal many processes in parallel
* podman-etcd: sync environment variables with Pod manifest
* OCPEDGE-2231: podman-etcd: improve error handling to support retry on start errors
* Filesystem: new force_unmount=move option
* Filesystem: try umount immediately after signals are sent
* Filesystem: tmpfs/overlayfs have no need for systemd_drop_in
* Filesystem: improve shell trace (set -x) output
* OCPEDGE-2213: podman-etcd: fix to prevent learner from starting before cluster is ready
* exportfs: fix grep error on stop
* Update to version 4.17.0+git5.e3a22113:
* podman-etcd: remove test code
* ocft: fix failing tests in resource-agents v4.17.0
* OCPBUGS-60098: podman-etcd: prevent last active member from leaving the etcd member list
* build: update ChangeLog for 4.17.0
* nginx: restore SELinux context for pid-file during validate-all
* build: update ChangeLog for 4.17.0-rc1
* storage_mon.c: fix block-seek mask deriving it from the block-size
* storage_mon.c: refactor moving up getting blocksize
* storage_mon: refactor removing basically duplicate code
* podman-etcd: fix count of fnc holders in container_health_check
* nginx: fix ls-redirection, mute non-errors in validate-all, and set unique intervals for monitor actions
* powervs-move-ip: add optional iflabel argument, increase maximum number of retries for requests
* nfsserver: set systemd_running before nfsserver_validate() to avoid error message
* oracle: improve monpassword description
* MailTo: add s-nail support for multiple recipients
* Update truly active resources count with safer empty calculation
* podman-etcd: add container crash detection with coordinated recovery
* db2: fix monitor_retries_sleep variable name
* Filesystem: speed up get pids
* podman-etcd: compute dynamic revision bump from maxRaftIndex
* OCPEDGE-1502: feat: podman-etcd: add support for cert rotation
* portblock: add Promoted monitor op, validate-all checks, and add "method" and "status_check" parameters
* db2: use reintegration flag to avoid race condition on cluster reintegration, and removed FAL, as it's no longer needed
* Redo counting of active_resources
* spec: make nfs-utils a weak dependency
* OCPBUGS-42808: podman-etcd: add automatic learner member promotion
* portblock: fix incorrect promotable description
* nfsserver: add ability to set e.g. "pipefs-directory=/run/nfs/rpc_pipefs" in /etc/nfs.conf to avoid issues with non-clustered Kerberized mounts
* Update to version 4.16.0+git104.b9d8ef2b:
* Enhance documentation: setproctitle_enable and background must be set correctly. (bsc#1249819)
* podman-etcd: Add cluster-wide force_new_cluster attribute checking
* powervs-move-ip: new resource agent
* portblock: add nftables and multi-state support
* podman-etcd: preserve containers for debugging
* OCPBUGS-60977: podman-etcd: wrap ipv6 address in brackets for attribute_node_ip
* db2: add "monitor_retries", "monitor_sleep", and "monitor_retry_all_errors" parameters to be able to avoid failing on first try
* db2: add "skip_basic_sql_health_check" parameter to avoid failing on systems with high load
* Update to version 4.16.0+git92.52e588f2:
* Fix shellcheck errors on output redirection [SC2328]
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Linux Enterprise Server for SAP applications 16.0
zypper in -t patch SUSE-SLES-16.0-1466=1
## Package List:
* SUSE Linux Enterprise Server for SAP applications 16.0 (ppc64le x86_64)
* resource-agents-debuginfo-4.18.0+git81.694408f0-160000.1.1
* resource-agents-debugsource-4.18.0+git81.694408f0-160000.1.1
* resource-agents-4.18.0+git81.694408f0-160000.1.1
## References:
* https://bugzilla.suse.com/show_bug.cgi?id=1249819
* https://bugzilla.suse.com/show_bug.cgi?id=1260984
* https://bugzilla.suse.com/show_bug.cgi?id=1274582
* https://jira.suse.com/browse/PED-14860
* https://jira.suse.com/browse/PED-15014
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.suse.com/pipermail/sle-updates/attachments/20260831/392bb8d5/attachment-0001.htm>
More information about the sle-updates
mailing list