Defects Fixed in 12.52 SP1 CR01

The following defects are fixed in  12.52 SP1 CR01:
sm1252sp1
The following defects are fixed in 
CA Single Sign-On
 12.52 SP1 CR01:
1
Policy Server
The following defects are fixed in Policy Server:
Support Case Number
Internal Defect ID
Issuer Description
21795824-01
64139
Policy Server terminates abruptly due to ACE authentication error.
NA
75274
Policy Server terminates abruptly when Active Expression is authorized as response attribute.
21568781-01
71915
WS–Federation transaction fails at Assertion Generator, when policy store is temporarily inaccessible. 
21630396-01
55835
Policy Server displays java.sql.SQLIntegrityConstraintViolationException error, when you run the Audit and Analysis report due to null value in Column RPT_INSTANCE_ID.
21700280-01
55627
CCS Integration fails, when you upgrade Policy Server from Release 12.51 to Release 12.52.
21870857-01
111439
XPS import fails, when you change the expression name in policy store.
NA
134407
Policy Management API fails to send the plain password to Identity Minder.
21826699-1
116213
Policy Server terminates abruptly, when the user name of the directory contains special characters especially a percent symbol (%).
21757360-01
55850
Administrative UI fails to activate multiple WS-FED partnership from Identity Provider (IP) to Resource Partner (RP), when you use the same RP ID for different partnerships. 
NA
116645
XPSExport utility fails abruptly, when you export Workspace entries.
NA
75050
Policy Server displays CERTREVOKED error instead of CRLEXPIRED error for the expired certificate when you use the
 
X509 client cert authentication.
21967287-01
138677
Policy Server fails to connect to the CA Directory through TLS protocol.
21987257-01
139117
Policy Server fails to connect to the CA Directory when the Session transaction store delays by 11 Milliseconds or more.
NA
70771
Policy Server terminates abruptly, when policy store is configured with SQL and key store is configured as LDAP.
21825506-1, 21928044-1
85501
Support for bulk import and export of CDS objects has been added.
21815519-1
65216
Policy Server displays error message during start up.
21870278-01
137785
Policy Server terminates intermittently due to missing null check.
21754036-01
71917
Policy Server displays "Bulk loading of records is not supported by driver." error, when you import SiteMinder Audit data into SQL database.
NA
74943
Commented ACO properties with hash # symbol get deleted using modifyAgentConfig API.
NA
118104
Policy Server terminates abruptly when XPSExport is run with the –xb switch.
000021689396-1
127251
XPSSweeper tool terminates abruptly.
NA
116609
APS change password and forgot password fails for the ODBC stored procedure.
21912418-01
125655
Policy Server displays "SamlValidator (Pass 2)Caught unknown exception or error" exception when SAML application is migrated from Release 6 to Release 12.52.
NA
114013
Policy Server start-all script displays "unexpected operator/operand" error.
21432802-01
119486
OneView Monitor asks for gif images that do not exist in the SiteMinder installation location.
NA
139332
APS displays an incorrect error message when a new password is not accepted.
NA
55134
Policy Server fails to set content length header when the message body is empty.
21931379-01
139460
Policy Server displays null pointer exception error, if the Assertion attribute does not exist in LDAP.
NA
119956
Upgrade of RSA ACE SDK Library to version 8.1.2 on Linux.
21591316-01
125654
RelayState truncates at first occurrence of %22, when you post SAMLResponse to assertionconsumer.
21821184-01
73540
WS-Federadtion partnership activation fails due to object creation failure in the Novell eDirectory policy store.
NA
74881
Policy Server terminates intermittently due to APSMail.DLL, while using the "Forgotten Password" functionality. This occurs when the XSHADOW feature is enabled in the exchange server.
21832178-01
73587
Policy Server fails to generate WS-Federation SAML 1.1 assertion when you configure the multi-value attributes. 
NA
73371
APSExpire command fails when you change the name in the SmUser column name of the APS table.
NA
74377
Key store gets updated when Global Tools Setting in Policy Server is modified.
NA
127212
Upgrade of CAPKI to version 4.3.5.
21447697-02
72916
Backreference regular expression fails with SiteMinder password policy.
21825347-01
138621
Federation transaction displays 500 error if the user name contains an apostrophe in the email.
NA
135786
XPSSweeper displays "Failed to migrate the Service Provider for SAML1.1 partnership" error.
21827285-01
117317
The smaccess.log and smps.log files fail to rollover intermittently.
NA
72210
Federation partnership fails due to Null Pointer exception.
NA
117890
Policy Server partially reloads the cache when an Agent connects to the Policy Server with an incorrect shared secret.
21988947-01
140094
Administrative UI fails to re-import Federation Metadata and displays the system error.
21745821-01, 21780513-1
62046
Administrative UI fails to display SAML object attributes.
21775820-01, 21984562-1
55918
Administrative UI displays AttributeNotPresentException error when you create sub-realm while Authorization Authentication mapping is configured.
NA
75328
Administrative UI removes all users of policy when you create a new realm by modifying any domain, while authentication and authorization mapping is configured.
21659127-01
116208
Administrative UI installation fails when the machine does not have internet access.
21723644-01
55736
WS-Federation partnership's "Generate" link for cert request fails and displays error in the Signature step of the partnership wizard.
21572212-01
55738
Non-super user fails to create the Federation partnership.
21710928-01
116659
Administrative UI fails to warn when a new policy is added with just the user information and without any rules.
NA
116285
Syntax of the query string breaks after you modify the query string in the policy.
21802148-01
119393
Administrative UI fails to apply password polices for Administrative Authentication User Directory which leads to audit issues.
21930685-01, 21956903-01, 21957651-01, 21966265-01, 21986117-01
128073
Updates made in One Administrative UI fails to display in another UI.
21780822-01
73925
Upgrade of Administrative UI fails to store Customer SSL certificate.
Federation
The following defects are fixed in Federation:
Support Case Number
Internal Defect ID
Issue Description
21608553-01, 21866224-01
138398,139061
CA SiteMinder® Federation
 validates the session IP even when the IP validation is disabled. 
21811911-01
72555
SAML 1.1 transactions fail and displays 'invalid input' error.
SDK
The following defects are fixed in SDK:
Support Case Number
Internal Defect ID
Issue Description
21751353-01
55851
SDK displays Java exception error when you use SmTrustedHost() in Java SDK 12.52.
21879475-01
116661
SDK displays older version label as Release 6 in smagentapibuild.properties when you install the upgraded versions of SDK.
21749947-01
55866
SDK getHostConfig displays NumberFormatException error when the Failover Threshold Percentage is saved through FSS Admin UI.
NA
137617
SDK returns -1 error when you attempt to integrate 
CA Single Sign-On
 with Layer 7 Gateway.
Web Agent
The follwoing defecta are fixed in Web Agent:
Support Case Number
Internal ID
Issue Description
21804741-01
98537
In a multi-domain SSO environment, the user is challenged to re-authenticate even when the MASTER domain cookie is active.
21659514-01
137092
Cookiedomain functionality fails when you enable the smconnector at Service Provider side.
NA
64778
Agent supports Apache 2.4 on Windows 2008 R2.
21706001-01
126082
SOA Security Manager uses basic credentials when there is no SOAP body in request for the resources that are protected with WS-Security AuthScheme.
21865660-01
119501
Agent fails to display log messages when you configure Domino Agent on IBM Aix.
NA
70656
w3wp process terminates intermittently under heavy load.
21587148-01
121054
w3wp terminates abruptly and creates multiple log files in a shorter duration.
21918653-01
139030
SiteMinder WAOP fails to decrypt the SMFED_TEMPORARY_STATE cookie when you enable Agent Key Roll over feature.
21601916-01
85711
When doing a restart  or graceful restart of an Apache web server on Red Hat Linux 5.3, the system hangs and an error occurs. The Web Agent does not handle these restarts properly.
CA Access Gateway
The following defects are fixed in 
CA Access Gateway
 12.52 SP1 CR01:
Support Case Number
Internal Defect ID
Issue Description
21712558-03
138623
Custom error pages display unreadable characters when you use the Japanese Windows 7 locale.
21886231-01
136584
The product displays an error code and redirects to the configured URL leading to site enumeration vulnerability. 
21932073-01
134653
The product displays the " javax.faces.el.PropertyNotFoundException" error when you configure the advanced settings in the Administrative UI Proxy.
21832641-01
74639
Quotes are set for the cookie value and the cookie path when you set the 
addquotestocookie
 parameter to "yes" in the server.conf file.
21828085-01
104585
Proxyrules change when you export and then import the proxy rule through the Administrative UI.
21712558-01
127692
The 
CA Access Gateway
 terminates intermittently when it fails to decode the NTLM token received while performing NTLM authentication.