Overview of updates - AIX version

Latest available version: v26.08.03

Overview of the most recent updates to UNIX Health Check for AIX:

Version: v26.08.03
  • Update to check script checkalog.ksh to update command execution.
  • Update to check script checkall.ksh to update command execution and improve how carriage returns are handled.
  • Update to check script checkhiperapars.ksh to improve how carriage returns are handled.
  • Update to check script checkxivdevlist.ksh to improve how carriage returns are handled.
  • Update to check script checkxivdevlisterrors.ksh to improve how carriage returns are handled.
  • Update to check script checkxivhakvsnoxivdevices.ksh to improve how carriage returns are handled.
  • Update to check script checkxivfcadminstoragesystem.ksh to improve how carriage returns are handled.
  • Update to check script checkxivsyslist.ksh to improve how carriage returns are handled.
  • New check script /mnt/ahc/scripts/checkxiviscsiadminstoragesystem.ksh to display the details of the XIV storage systems that are currently attached via iSCSI through the XIV Host Attachment Kit.
Version: v26.08.02
  • Update to check script checkadmgroup.ksh to update the return code variable.
  • Update to check script checkadminpassword.ksh to improve an if statement.
  • Update to check script checkaiomaxreqs.ksh to impove an if statement.
  • Update to check script checkaiostatus.ksh to fix a grep statement.
  • Update to check script checkall.ksh to update command execution.
  • Update to check script checkblankpassword.ksh to update command execution.
  • Update to check script checkedition.ksh to update command execution.
Version: v26.08.01
  • Update to check script checkadapterlink.ksh to update command execution.
  • Update to check script checkadaptersdefined.ksh to update command execution.
  • Update to check script checkadmgroup.ksh to update command execution.
  • Update to check script checkadmin.ksh to update command execution.
  • Update to check script checkadminpassword.ksh to update command execution.
  • Update to check script checkadmintrue.ksh to update command execution.
  • Update to check script checkaiomaxreqs.ksh to update command execution.
  • Update to check script checkaiooa.ksh to update command execution.
  • Update to check script checkaiostatus.ksh to update command execution.
  • Update to check script checkall.ksh to remove an unused variable and update copyright message.
  • Update to check script checkalgorithmaligned.ksh to update command execution.
  • Update to check script checkaliases.ksh to update command execution.
  • Update to check script checkaliaseslink.ksh to update command execution.
  • Update to check script checkautorestart.ksh to update command execution.
  • Update to check script checkauthorizedkeys.ksh to update command execution.
  • Update to check script checkauthorizedkeysentries.ksh to update command execution.
  • Update to check script checkauthorizedkeysentriesoracle.ksh to update command execution.
  • Update to check script checkcompellentmirroring to remove a typo.
  • Update to check script checkdirsworldwriteable.ksh to update command execution.
  • Update to check script checkemcnetworkerinittab.ksh to update command execution.
  • Update to check script checkemcnetworkeripv6.ksh to update command execution.
  • Update to check script checkemcnetworkerlevel.ksh to update command execution.
  • Update to check script checkemcnetworkerlocal4.ksh to update command exec26.08ution.
  • Update to check script checkemcnetworkerrunning.ksh to update command execution.
  • Update to check script checkextendedhistoryksh to update command execution and to correct the use of double quotes.
  • Update to check script checkhomedirs.ksh to correct an if statement.
  • Update to check script checkhostnamevsdns.ksh to correct the use of a variable.
  • Update to check script checkinittabinitdefault.ksh to correct the usage of double quotes.
  • Update to check script checkkrb5level.ksh to remove unneeded break commands within the case statements.
  • Update to check script checkloginreenable.ksh to update command execution.
  • Update to check script checklppchkf.ksh to correct the awk command.
  • Update to check script checklvbc.ksh to fix double quotes.
  • Update to check script checklvmo.ksh to fix a variable.
  • Update to check script checkmachineid.ksh to fix a variable.
  • Update to check script checkmachstat.ksh to remove unneeded break commands within the case statements.
  • Update to check script checkmkuserdefault.ksh to correct the usage of quotes.
  • Update to check script checknfsmountfolder.ksh to update command execution.
  • Update to check script checknmonversion.ksh to update command execution.
  • Update to check script checkpagesize.ksh to fix a variable.
  • Update to check script checkoracleage.ksh to update command execution.
  • Update to check script checkoraclelogincount.ksh to update command execution.
  • Update to check script checkoracleloginretries.ksh to update command execution.
  • Update to check script checkrootage.ksh to update command execution.
  • Update to check script checkrootlogincount.ksh to update command execution.
  • Update to check script checkrootloginretries.ksh to update command execution.
  • Update to check script checkrootttys.ksh to fix an issue with quotes.
  • Update to check script checkrootvglv.ksh to update command execution.
  • Update to check script checkrootvgevendisks.ksh to update command execution.
Version: v26.01.02
  • Update to all check scripts to update the copyright message for 2026.
Version: v25.09.02
  • Update to check script checkwparactive.ksh to improve the execution of commands.
  • Update to check script checksystemfirmwarelevel.ksh to recommend new system firmware levels for POWER10 and POWER11 based systems.
  • Update to check script checkoslevel.ksh to recommend a Service Pack 1 for AIX 7.3, Technology Level 3.
  • Update to check script checkpowerhalevel.ksh to recommend new service packs for PowerHA SystemMirror 7.2.7, 7.2.8 and 7.2.9.
Version: v25.07.18
  • Update to check script checkrperf.ksh to update the script to version 42, which was released on July 16, 2025 by Nigel Griffiths of IBM.
Version: v25.02.11
  • Update to check script checkoslevel.ksh to recommend Service Pack 3 for AIX 7.3 Technology Level 2.
Version: v25.01.06
  • Update to all check scripts to update the copyright message for 2025.
Version: v24.12.12
  • Update to check script checkoslevel.ksh to recommend AIX 7.3 Technology Level 3.
  • Update to check script checkoslevel.ksh to recommend Service Pack 7200-05-09-2446 for Technology Level 7200-05.
Version: v24.07.18
  • Update to check script checkoslevel.ksh to recommend AIX 7.3 Technology Level 1 Service Pack 4.
Version: v24.07.15
  • Update to check script checkpowerhalevel.ksh to recommend new service pack levels for PowerHA SystemMirror.
  • Update to check script checkviosioslevel.ksh to recommend VIOS level 4.1.
  • Update to check script checkoslevel.ksh to recommend AIX 7.3 Technology Level 2 Service Pack 2 or AIX 7.2 Technology Level 5 Service Pack 8.
Version: v24.07.11
  • Update to the TOOLBOX file to indicate the correct versions of the apps listed in the AIX Toolbox for Linux Applications.
Version: v24.05.13
  • Update to check script checkall.ksh to correctly display the logfile name in the results section.
Version: v24.04.25
  • Update to check script checkpowerhalevel.ksh to adjust the recommendation for specific technology levels of PowerHA, as some technology levels are no longer supported by IBM, and a new release has been made available.
Version: v23.11.10
  • Update to check script checkoslevel.ksh to recommend Service Pack 1 for AIX 7.3 Technology Level 2, as well as a recommendation for Service Pack 7 for AIX 7.2 Technology Level 5. Besides that AIX 7.3 Technology Level 2 has been made available by IBM.
Version: v23.08.01
  • Update to check script checkoslevel.ksh to recommend Service Pack 4 for AIX 7.3 Technology Level 0, as AIX Service Pack 7300-00-04-2320 was released by IBM.
Version: v23.06.05
  • Update to check script checkpowerhalevel.ksh to recommend Service Pack 7.2.7.1 of PowerHA 7.2.7, among various other Service Packs released for other PowerHA releases.
Version: v23.05.23
  • Update to check script checkpowerhalevel.ksh to recommend Service Pack 7.2.4.7 of PowerHA 7.2.4.
Version: v23.04.28
  • Update to check script checkoslevel.ksh to recommend new Service Packs for technology levels 7200-05 and 7300-01.
Version: v23.03.10
  • Update to check script checkoslevel.ksh to recommend new Service Packs for technology levels 7300-00 and 7100-05.
Version: v23.02.09
  • New check script checklibxml2.ksh to check for the correct version of libxml2 installed.
Version: v23.02.05
  • Update to check script checkpowerhalevel.ksh to recommend new levels of PowerHA, as new technology levels and Service Packs have been released by IBM.
  • Update to check script checkoslevel.ksh to recommend new Service Packs for technology levels 7300-01 and 7200-05.
  • Update to check script checkviosioslevel.ksh to recommend a new level of PowerVM Virtual I/O Server.
Version: v22.07.20
  • Update to check script checkrperf.ksh to update the script to version 41, which was released on July 20, 2022 by Nigel Griffiths of IBM.
Version: v22.06.11
  • Update to check script checketchosts.ksh to avoid checking commented entries in /etc/hosts.
Version: v22.05.22
  • Update to check script checkviosioslevel.ksh to recommend a new level of PowerVM Virtual I/O Server.
  • Update to check script checkoslevel.ksh to recommend new Service Packs for AIX 7.2 Technology Level 5 (7200-05-04-2220) and AIX 7.3 Technology Level 0 (7300-00-02-2220).
Version: v22.05.17
  • Update to check script checkpowerhalevel.ksh for newly released Service Packs for PowerHA SystemMirror.
Version: v22.05.09
  • Update to check script checkopenssllevel.ksh to recommend level 8.1.102.2105 for OpenSSH.
Version: v22.05.04
  • Update to check script checksystemfirmwarelevel.ksh for new updates to POWER8, POWER9 and POWER10 system firmware.
Version: v22.04.12
  • Update to check script checkopenssllevel.ksh to recommend OpenSSL 1.1.1l (1.1.2.1200) to be installed on AIX 5.3, 6.1, 7.1, 7.2 and 7.3.
Version: v22.02.11
  • Update to check script checkoslevel.ksh to recommend a new fix pack for AIX 7.2, Technology Level 4, as Service Pack 5 was released by IBM.
Version: v22.01.06
  • Update to check script checkopensshlevel.ksh to recommend level 8.1.102.2104 for AIX 5.3, 6.1, 7.1, 7.2 and 7.3.
Version: v22.01.05
  • Update to the description of check script checkalgorithmaligned.ksh to include commands how to update the algorithm attribute for disk devices.
  • Update to check script checkaliases.ksh to check for additional aliases in /etc/mail/aliases on AIX 7.2.
  • Update to the description of check script checkbash.ksh to add additional commands regarding installing and upgrading bash.
  • Update to check script checkcommonfilesets.ksh to exclude the recommendation to de-install artex* filesets on AIX 7.2.
  • Update to the description of check script checkcurl.ksh to add additional commands regarding installing and upgrading curl.
  • Update to check script checkdefaultgateway.ksh to exclude any link default entries in the output of netstat.
  • Update to check script checkexpireduseraccounts.ksh to exclude user account smmsp.
  • Update to check script checkgidbelow100.ksh to exclude group smmsp.
  • Update to check script checklargefilesinrootvg.ksh to exclude checking /usr/lib/libicudata.a, which is larger than 100 MB on AIX 7.2 and higher.
  • Update to check script checkkrlogind.ksh to properly check for klogin and krlogin entries in /etc/inetd.conf.
  • Update to check script checkntpoffset.ksh to check if a NTP server can be determined before determining if the time offset is incorrect or not.
  • Update to check script checkopennfsexports.ksh to redirect the output of the host command to /dev/null in case the host name is not set in /etc/hosts.
  • Update to check script checkpinggateway.ksh to exclude checking IP address 0.0.0.0.
  • Update to the description of check script checkreservepolicyaligned.ksh to include commands that describe how to update the reserve_policy attribute for disk devices.
  • Update to check script checksendmailprivacyoptions.ksh to remove a space in the recommended privacy options.
  • Update to the description of check script checkshells.ksh to remove a backslash that is not needed.
  • Update to check script checksudocommands.ksh to exclude @includedir entries.
  • Update to the description of check script checksudoversion.ksh to provide a command that describes how to install sudo.
  • Update to check script checksulog.ksh to provide commands that describe how to create /var/adm/sulog if it doesn't exist.
  • Update to check script checksystemid.ksh to redirect the output of the host command to /dev/null in case a host name has not been set.
  • Update to check script checkuseraccounts.ksh to exclude user account smmsp.
  • Update to check script checkusersettingsvsdefault.ksh to exclude user account smmsp.
  • Update to check script checkwget.ksh to test /opt/freeware/bin/wget as well.
  • Update to check script checkinittaberrs.ksh to exclude entry rcvnet, as it will always exit with code 1.
  • Update to check script checksudopermissions.ksh to account for /opt/freeware/bin/sudo being a symbolic link to /opt/freeware/bin/sudo_32 in newer releases.
  • Update to check script checksudovisudopermissions.ksh to account for /opt/freeware/bin/visudo being a symbolic link to /opt/freeware/bin/visudo_32 in newer releases.
Version: v21.12.23
  • Update to check script checkrperf.ksh to update the script to version 40, which was released on December 13, 2021 by Nigel Griffiths of IBM.
Version: v21.12.13
  • Update to check script checkoslevel.ksh to recommend Service Pack 1 for AIX 7.3.
Version: v21.12.06
  • Update to check script checkpowerhalevel.ksh for a newly released Service Pack for PowerHA SystemMirror.
Version: v21.11.23
  • Update to check script checkpowerhalevel.ksh for newly released Service Packs for PowerHA SystemMirror.
Version: v21.10.11
  • Update to check script checksystemfirmwarelevel.ksh for newly release system firmware levesl for Power8 and Power9 systems.
Version: v21.09.28
  • Update to check script checkoslevel.ksh to recommend new Service Packs released for AIX 7200-05 and AIX 7200-05.
Version: v21.08.10
  • Update to check script checkpowerhalevel.ksh for the release of PowerHA 7.2.5.1 as the new latest level available for PowerHA.
Version: v21.07.06
  • Update to check script checkoslevel.ksh to recommend new Service Packs released for AIX 7200-04 and AIX 7200-03.
Version: v21.06.07
  • Update to check script checksystemfirmwarelevel.ksh to recommend a new version of the system firmware for Power9 systems.
Version: v21.05.04
  • Update to check script checkpowerhalevel.ksh to recommend new Service Pack levels for PowerHA 7.2.2, PowerHA 7.2.3 and PowerHA 7.2.4.
Version: v21.04.26
  • Update to check script checkoslevel.ksh to update recommended Service Packs for AIX 7.1 and AIX 7.2.
Version: v21.04.15
  • Update to check script checkopenssllevel.ksh to recommend the latest available level of OpenSSL due to possible vulnerabilities that affect AIX (CVE-2021-23839,CVE-2021-23840, and CVE-2021-23841).
Version: v21.03.11
  • Update to check script checkoslevel.ksh to recommend new Service Packs for AIX 7.2.
  • Update to check script checkviosioslevel.ksh to recommend version 3.1.2 of the Virtual I/O Server to be installed, now that version 2.2 of VIOS is no longer supported by IBM.
  • Update to check script checklibgcc.ksh to recommend version 8 of libgcc instead of version 8.3.0.
  • Update to check script checklibstdc.ksh to recommend version 8 of libstdc++ instead of version 8.3.0.
Version: v21.03.10
  • Update to check script checkbash.ksh to only make recommendations if the major version of Bash is different from what is installed.
  • Update to check script checkexpect.ksh to only make recommendations if the major version of Expect is different from what is installed.
Version: v21.03.05
  • Update to check script checksystemfirmwarelevel.ksh to recommend new available system firmware levels for Power8 and Power9 based sytems.
Version: v21.02.14
  • Update to check script checklibstdc.ksh to correct a typo.
  • Update to check script checkcurl.ksh to check the correct sections of the curl version to ensure that the check is correctly performed.
Version: v21.02.11
  • Update to check script checkgcc.ksh to recommend version 8.3.0 for gcc.
  • Update to check script checklibgcc.ksh to recommend version 8.3.0 for libgcc.
  • Update to check script checkgcccpp.ksh to recommend version 8.3.0 for gcc-c++.
  • Update to check script checklibstdc.ksh to recommend version 8.3.0 for libstdc++.
Version: v21.02.02
  • Update to check script checkopenssllevel.ksh to recommend Updating OpenSSL to 1.0.2.2100.
  • Update to check script checkopensshlevel.ksh to recommend updating OpenSSH to 8.1.102.2102.
Version: v21.01.18
  • Update to check script checkdfsummary to exclude NFS mounted file systems from being counted.
Version: v20.11.8
  • Update to check script checksddpcmlevel.ksh to recommend level 2.7.0.0 of SDDPCM.
  • Update to check script checkhomedirs.ksh to avoid reporting errors on empty lines in /etc/passwd.
Version: v20.11.16
  • Update to check script checkpowerhalevel.ksh to recommend new PowerHA Service Packs released by IBM for PowerHA.
Version: v20.11.13
  • Update to check script checkoslevel.ksh to recommend Technology Level 5 for AIX 7.2, and Service Pack 7 for AIX 7.1 Technology Level 5.
  • Update to check script checkcleansshdir.ksh to allow the config file within the ~root/.ssh folder.
  • Update to check script checkcleansshdiroracle.ksh to allow the config file within the ~oracle/.ssh folder.
Version: v20.11.11
  • Update to check script checkhostnamevsdns.ksh to ensure any multiple DNS entries are printed out as part of the output.
  • Update to check script checkloginherald.ksh to add a missing word in the output generated by the check script.
Version: v20.11.10
  • Update to check script checkbootlist.ksh to correctly display a message, even when a disk is part of a volume group with a name similar to rootvg.
  • Update to check script checkhostnamevsdns.ksh to work correctly if there are multiple DNS entries present for the IP address of the system.
  • Update to check script checkpatrollevel.ksh to check for version 11.3 of BMC Patrol Agent or higher.
  • Update to check script checkperlversion.ksh to fix checking the Perl version on AIX 7.1 TL1.
Version: v20.10.19
  • Update to check script checksystemfirmwarelevel.ksh to recommend new Power9 system firmware.
Version: v20.09.28
  • Update to check script checkemcpowerpathlevel.ksh to recommend updating Dell EMC PowerPath to version 7.0 P01.
Version: v20.08.28
  • Update to check script checkuptime.ksh to update the category of the check script.
  • Update to check script checkfailedlogins.ksh to generate a warning if any failed logins have been seen within the last 24 hours.
Version: v20.07.21
  • Update to check script checksystemfirmwarelevel.ksh to recommend new levels of Power9 system firmware.
  • Update to check script checkrperf.ksh to update it to version 38 of the rperf script, released on July 21, 2020.
Version: v20.07.20
  • Update to check script checkoslevel.ksh to recommend new Service Packs available for AIX 7.2.
Version: v20.06.30
  • Update to check script checkpowerhalevel.ksh to recommend PowerHA System Mirror 7.2.4, Service Pack 1, release by IBM on June 26, 2020.
Version: v20.06.15
  • Update to check script checkemcpowerpathlevel.ksh to recommend version 7.0 of Dell EMC PowerPath.
Version: v20.06.01
  • Update to check script checkpowerhalevel.ksh to recommend new Service Packs for PowerHA System Mirror 7.2.2 and 7.2.3.
Version: v20.05.15
  • Update to check script checkoslevel.ksh to recommend Service Pack 6 for AIX 7.1, Technology Level 5.
Version: v20.04.27
  • Update to check script checkemcpowerpathlevel.ksh to check for new available levels of Dell EMC PowerPath.
  • Update to check script checknroffilesinfilesystems.ksh to only report on local file systems.
Version: v20.04.26
  • Update to check script checkjavalevels.ksh per the recommendations of the IBM January 2020 security advisory.
  • Update to check script checkopensshlevel.ksh to recommend version OpenSSL 1.0.2t / OpenSSH-8.1p1 (VRMF: 8.1.102.2000) for AIX 5.3, 6.1, 7.1 and AIX 7.2.
  • Update to check script checkoslevel.ksh to update new recommended Service Packs for AIX 7.2.
Version: v20.04.25
  • Update to check script checkexports.ksh to avoid reporting on entries that start with a dash and to improve detection of duplicate entries.
Version: v20.04.24
  • Update to checkall.ksh to allow for files to be excluded within an external file with both short and full path file names.
  • Update to check script checkvarspoolperms.ksh to update the text on the error that is generated.
  • Update to check script checkdevtty.ksh to update the text on the error that is generated.
  • Update to check script checksecurityperms.ksh to update the text on the error that is generated.
  • Update to check script checkusrbincrontab.ksh to update the text on the error that is generated.
  • Update to check script checkusrperms.ksh to update the text on the error that is generated.
  • Update to check script checkusrsbincron.ksh to update the text on the error that is generated.
  • Update to check script checkvaradmcron.ksh to update the text on the error that is generated.
  • Update to check script checkvaradmperms.ksh to update the text on the error that is generated.
  • Update to check script checkvaradmrasperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarempty.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoolcronatjobsperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoolcroncrontabsperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoolcronperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoollpdperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoollpdqdirperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoolmqueueperms.ksh to update the text on the error that is generated.
  • Update to check script checkvarspoolqdaemonperms.ksh to update the text on the error that is generated.
  • Update to check script checkvartmpperms.ksh to update the text on the error that is generated.
  • Update to check script checkuserkshrc.ksh to update the text on the error that is generated.
  • Update to check script checkusernetrc.ksh to update the text on the error that is generated.
  • Update to check script checkuserprofile.ksh to update the text on the error that is generated.
  • Update to check script checksudoersusers.ksh to exclude all empty lines of lines that start with a space, but are commented out.
  • Update to check script checksudoersduplicates.ksh to remove a typo.
  • Update to check script checkperlversion.ksh to recommend verions 5.28.1.
  • Update to check script checkoslevel.ksh to correct an error that would result in recommending to upgrade to the currently installed level.
  • Update to check script checkinstalldate.ksh to remove the first install date entry.
  • Update to check script checkcrontabatone.ksh to ignore lines starting with spaces and/or tabs in front of a comment character.
  • Update to check script checkcrontabattwo.ksh to ignore lines starting with spaces and/or tabs in front of a comment character.
  • Update to check script checkcrontabcommands.ksh to ignore lines starting with spaces and/or tabs in front of a comment character.
  • Update to check script checkcrontabcommandsexec.ksh to ignore lines starting with spaces and/or tabs in front of a comment character.
  • Update to check script checkcrontabdups.ksh to ignore lines starting with spaces and/or tabs in front of a comment character.
  • Update to check script checkexcluderootvg.ksh to ignore lines starting with spaces and/or tabs in front of a comment character.
  • Update to check script checkexcluderootvg.ksh to improve identification of duplicate lines in /etc/exclude.rootvg.
Version: v20.03.25
  • Update to checkall.ksh to allow providing text files listing scripts for both the -s (to include check scripts) and the -E (to exclude check scripts) options.
Version: v20.01.28
  • Update to check script checkemcodmlevel.ksh to add support for EMC Celerra and EMC XtremIO.
Version: v20.01.27
  • Update to check script checksanpvid.ksh to add an additional check to see if any disks are in use by Oracle.
  • Update to check script checkxntpd.ksh to check not only xntpdc output but also the output of ntpq to determine if the system is time synchronized.
  • Update to check script checkall.ksh to set a default for the output width in case stty -a reports 0 colums - which may happen on the console of a system.
Version: v20.01.24
  • Update to check script checksystemfirmwarelevel.ksh, to accomodate for newly released levels of system firmware for Power8 and Power9 systems.
Version: v20.01.06
  • Update of check script checkemcodmlevel.ksh to recommend EMC ODM Definitions (or AIX ODM Kit) 6.1.2.0 on AIX 6.1, AIX 7.1 and AIX 7.2.
Version: v20.01.02
  • Update to check script checkexports.ksh to exclude entries in /etc/exports that are commented out.
Version: v19.12.21
  • Update to check script checktemperature.ksh to improve the output generated by the script.
Version: v19.12.20
  • Update to check script checktemperature.ksh to correct a typo in the output sentence.
Version: v19.12.19
  • Update to check script checkpowerhalevel.ksh to recommend new available Service Pack for PowerHA 7.2.3.
Version: v19.12.17
  • Update to check script checknfsaccess.ksh to exclude GPFS file systems from being checked.
  • Update to check script checknfssoft.ksh to exclude GPFS file systems from being checked.
  • Update to check script checkfsvsetcfilesystems.ksh to exclude GPFS file systems from being checked.
  • Update to check script checknfsnosuid.ksh to exclude GPFS file systems from being checked.
Version: v19.12.12
  • Update to check script checkemcinq.ksh to ensure the script doesn't hang when there is a faulty fibre channel adapter.
  • Update to master check script checkall.ksh to remove a blank space in the inventory section.
Version: v19.12.09
  • Update to check script checkcrontabcommandsexec.ksh to avoid reporting an error if a command within a crontab file starts with a non-alphanumeric character.
Version: v19.12.07
  • Update to check script checkopenssllevel.ksh to recommend OpenSSL 1.0.2.2001 (1.0.2t).
  • Update to check script checkopensshlevel.ksh to recommend OpenSSH 7.5.102.2000 (OpenSSH-7.5p1).
Version: v19.11.19
  • Update to check script checknobodygroup.ksh to not report an error if user lpd is not a member of the group nobody.
  • Update to check script checkecho.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdconffile.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdcommands.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdcommandsexec.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdactive.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkftpusers.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkftplogging.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkftpd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkfinger.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkexec.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkdiscard.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkcomsat.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkdaytime.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
Version: v19.11.18
  • Update to check script checkblankpassword.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkbootps.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkbgssd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkcaainetdconf.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkcdeservices.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkchargen.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkftproot.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkimap2.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdconf.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdconfcomments.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinetdactive.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkinstsrv.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkkrlogind.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkkshell.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checknetstatinetd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkntalk.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkpcnfsd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrexd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrlogin.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrootrsh.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrquotad.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrshd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrstatd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrusersd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkrwalld.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checksprayd.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checksystat.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checktalk.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checktcpwrappers.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checktelnet.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checktftp.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checktime.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkuucp.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkwsmserver.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
  • Update to check script checkxmquery.ksh to redirect errors to /dev/null, in case inetd has been disabled on the system and/or /etc/inetd.conf does not exist.
Version: v19.11.17
  • Update to check script checkoslevel.ksh to recoomend Technologoy Level 4 Service Pack 1 for AIX 7.2 and Technology Level 5 Service Pack 5 for AIX 7.1.
  • Update to check script checkviosioslevel.ksh to recommend upgrading VIOS to version 3.1.1.10.
Version: v19.11.11
  • Update to check script checketchosts.ksh to recommend using DNS when there are many entries in /etc/hosts.
Version: v19.10.23
  • Update to check script checkuserprofile.ksh to improve the output of the check script.
  • Update to check script checkgzip.ksh to correctly determine the version of gzip to be installed on the system.
  • Update to check script checkemcpowerpathlevel.ksh to improve the output of the check script.
  • Update to check script checkemcodmlevel.ksh to improve the output of the check script.
  • Update to check script checkcrontabs.ksh to improve excluding the root user from the list of users to check.
  • Update to check script checksudoersusers.ksh to exclude netgroups (starting with a plus sign) in /etc/sudoers.
Version: v19.10.22
  • Update to check script checkjavalevels.ksh to recommend updated levels of Java for Java7, Java7.1 and Java8.
  • Update to check script checkopenssllevel.ksh to recommend OpenSSL level 1.0.2.1801 (version OpenSSL 1.0.2r).
  • Update to check script checkopensshlevel.ksh to recommend OpenSSH level 7.5.102.1801.
  • Update to check script checkemcodmlevel.ksh to recommend version 6.1.1.1 of the EMC AIX ODM Kit.
  • Update to check script checkwget.ksh to redirect any errors generated by the wget command.
  • Update to check script checkmailboxowners.ksh to check additionally for user names that are too long to be displayed within the output of ls -als.
  • Update to check script checkdevperms.ksh to allow alternativer permissions for the /dev folder as well.
  • New check script checketchostsnohostname.ksh to check for entries in /etc/hosts that only list the IP address, and no hostname.
  • Update to check script checketchostsvsdns.ksh to avoid hanging the script should an entry in /etc/hosts be present without a hostname.
  • Update to check script checketchostsdups.ksh to remove any trailing white spaces and tabs from the output.
  • Update to check script checketchostsfile.ksh to remove any trailing white spaces and tabs from the output.
  • Update to check script checketchostsequiv.ksh to recommend mode 600 for /etc/hosts.equiv instead of mode 644.
Version: v19.09.18
  • Update to check script checksystemfirmwarelevel.ksh for new releases of Power8 and Power8 system firmware.
Version: v19.09.16
  • Update to check script checkpowerhalevel.ksh for newly release fix packs for PowerHA SystemMirror.
Version: v19.09.04
  • Update to the CHANGES file to correct a typo.
Version: v19.07.25
  • Update to check script checklostfoundsize.ksh to indicate a warning status when more than 10 MB of data is found in a lost+found folder.
Version: v19.07.23
  • Update to check script checkoslevel.ksh to recommend newly released Service Packs for AIX 7.1 and AIX 7.2.
  • Renamed check script checkauditfolder.ksh to checkauditperms.ksh.
Version: v19.07.18
  • New check script checkpermitemptypasswords.ksh to check if the PermitEmptyPasswords entry in /etc/ssh/sshd_config is either commented out or set to no.
  • New check script checksshpubkeyauthentication.ksh to check if the PubkeyAuthentication entry in /etc/ssh/sshd_config is either commented out or set to yes.
  • New check script checksshhostbasedauthentication.ksh to check if the HostBasedAuthentication entry in /etc/ssh/sshd_config is either commented out or set to no.
  • New check script checksshignorerhosts.ksh to check if the IgnoreRhosts entry in /etc/ssh/sshd_config is either commented out or set to yes.
  • New check script checksshmaxauthtries.ksh to check if the MaxAuthTries entry in /etc/ssh/sshd_config is either commented out or set within the range 3 to 6.
Version: v19.07.17
  • Update to check script checktopmemoryusers.ksh to allow it work correctly on AIX 5.3.
  • Update to check script checklspvu.ksh to allow it work correctly on AIX 5.3.
  • Update to check script checkxntpd.ksh to correct an issue with a defined variable.
  • Update to check script checksudoersusers.ksh to allow it work correctly when the system is LDAP enabled.
  • Update to check script checkmailboxowners.ksh to allow it to work correctly when the system is LDAP enabled.
  • Update to check script checklssrc.ksh to allow it to work in cases where individual resource controller items are started from /etc/inittab, but a space is missing after -s.
  • Update to check script checkgidbelow100.ksh to avoid displaying an alert when LDAP authentication is enabled on the system.
  • Update to check script checketcsecuritypasswdused.ksh to avoid displaying an alert when LDAP authentication is enabled on the system.
  • Update to check script checkcrout.ksh to display only the first 100 entries found to reduce the length of the output.
  • Fixed issues with the TOOLBOX file not listing the latest versions of the AIX Toolbox for Linux Applications.
  • New check script checkcleanetcssh.ksh to check for any files in /etc/ssh that can be cleaned up.
  • New check script checksshbanner.ksh to check the Banner entry in sshd_config.
Version: v19.07.16
  • New check script checksplunkinittab.ksh to check if the Splunk forwarder agent inittab entry is present in /etc/inittab, if installed.
  • New check script checksplunkactive.ksh to check if the Splunk Forwarder agent is active, if installed.
  • Update to check script checkopenssllevel.ksh to recommend version 1.0.2.1800 of OpenSSL.
  • Update to check script checkopensshlevel.ksh to recommend version 7.5.102.1800 of OpenSSH, to mitigate security vulnerabilities CVE-2019-6109, CVE-2019-6110, CVE-2019-6111 and CVE-2018-20685.
  • New check script checkrsyslogforwarding.ksh to check if the rsyslog messages are forwarded to a central logging server.
Version: v19.07.09
  • Update to check script checkall.ksh to update the message displayed when an individual check script takes too long to run.
Version: v19.06.05
  • Update to serveral check scripts to redirect the stderr of the lsattr command to /dev/null.
Version: v19.06.05
  • New check script checkdevurandom.ksh to check if the device /dev/urandom exists.
Version: v19.06.04
  • Update to check script checkpowerhalevel.ksh for new recommended Service Pack levels for PowerHA 7.2.2 and 7.2.3.
Version: v19.05.23
  • Update to check script checksystemfirmwarelevel.ksh to recommend newly release Power9 system firmware VL930.
Version: v19.05.22
  • Update to check script checkpatrollevel.ksh to recommend a new level of the BMC Patrol Agent software.
  • Update to the description of check script checkpatrolagent.ksh.
Version: v19.05.16
  • Renamed check script checkemcpowerunlic.ksh to checkemcpowerpathunlicensed.ksh.
  • Update to check script checkemcpowerpathlevel.ksh to recommend new available PowerPath levels.
  • Update to check script checkemcinq.ksh to remove a typo in a comment.
Version: v19.05.13
  • Update to check script checkoslevel.ksh to recommend new Service Packs available for AIX 7.1 TL5 and AIX 7.2 TL3.
Version: v19.04.03
  • New check script checkvarfilesystem.ksh to check if /var is a separate file system.
Version: v19.04.02
  • Update of the description of check script checketchostsnonnumeric.ksh to further explain what the non-numeric entries are.
Version: v19.03.26
  • Update of the package to allow for an RPM build of UNIX Health Check for AIX.
Version: v19.03.25
  • Update to check script checkjavalevels.ksh to recommend new minimum levels for Java 7, 7.1 and 8, per the latest IBM security advisory.
  • Update to check script checkoslevel.ksh to recommend newly available Service Packs for AIX 7.2 technology levels.
  • Update to check script checklosflevel.ksh to recommend version 4.89 of LSOF.
  • Update to check script checkopenssllevel.ksh to recommend version 1.0.2.1601 of OpenSSL.
  • Update to check script checkopensshlevel.ksh to recommend version 7.5.102.1600 of OpenSSH.
  • Update to check script checketcsecuritypasswdused.ksh to avoid reporting an issue on user accounts with no password set (already alerted through another check script).
  • Update to check script checkpython.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkcupsactive.ksh to remove a comment.
  • Update to check script checkcups.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkgangliagmondlevel.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkgangliagmetadlevel.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checknmaplevel.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkzlib.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkzip.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkvnc.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkunzip.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checksudoversion.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkrsynclevel.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checklibtiff.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checklibpng.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checklibpaper.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checklibjpeg.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkless.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkhttpd.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkgnutar.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkgmp.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkgettext.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkgcccpp.ksh to recommend the updated version for gcc-cpp of 8.1.0 as available in the AIX Toolbox for Linux Applications.
  • Update to check script checkgcc.ksh to recommend the updated version for gcc of 8.1.0 as available in the AIX Toolbox for Linux Applications.
  • Update to check script checklibstdc.ksh to recommend the updated version for libstdc++ of 8.1.0 as available in the AIX Toolbox for Linux Applications.
  • Update to check script checklibgcc.ksh to recommend the updated version for libgcc of 8.1.0 as available in the AIX Toolbox for Linux Applications.
  • Update to check script checkexpect.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkenscript.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkcurl.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkcpio.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkcoreutils.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkbzip2.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkbash.ksh to use the TOOLBOX file to determine the latest version.
  • Update to check script checkwget.ksh to use the TOOLBOX file to determine the latest version.
  • Inclusion of the TOOLBOX file, which is a complete listing of all the latest RPM packages available in the AIX Toolbox for Linux Applications.
  • Update to check script checkcompellentshowtimervalue.ksh to redirect errors to stdout instead of file 1, which was a typo.
  • Update to check script checkrperf.ksh to allow it to work with the regular Korn Shell instead of ksh93.
Version: v19.03.21
  • New check script checkntpservers.ksh to check if the configured NTP servers can be used for time synchronization.
  • Update of check script checksystemfirmwarelevel.ksh for newly available system firmware for Power9 systems.
Version: v19.03.11
  • Addition of the LICENSE file to the package.
Version: v19.01.23
  • Update to check script checkbusydisk.ksh to improve the output of the check script.
Version: v18.12.22
  • New check script checkhomedirperms.ksh to check the permissions, owner and group of the home directory of root.
  • Update to check script checkroothomedir.ksh to exit if the home directory of user root does not exist.
Version: v18.12.14
  • Update to check script checkdevconsole.ksh to redirect any errors of ls to /dev/null, so no error will be displayed on the screen if /dev/console does not exist.
Version: v18.12.11
  • Update to check script checkhighcpu.ksh to ensure an error is reported if processes with high CPU usage are detected.
Version: v18.12.10
  • Update to check script checknfsconfig.ksh to update the description of the check script to provide additional information on how to view both exported and mounted NFS file systems.
Version: v18.12.05
  • Update to check script checkdnsdomain.ksh to improve the output of the check script.
  • Removed check script checkdev.ksh, because script checkdevperms.ksh includes the same functionality.
Version: v18.12.04
  • Renamed check script checkmnt.ksh to checkmntperms.ksh as the script checks the permissions of the /mnt folder.
Version: v18.12.01
  • Update to check script checkpowerhalevel.ksh to recommend new available Service Packs for PowerHA SystemMirror 7.2.0, 7.2.1 and 7.2.2.
  • Update to the description of check script checkoratab.ksh to include information about what file /etc/oratab is used for.
  • Update to the description of check script checkoratabpaths.ksh to include information about what file /etc/oratab is used for.
  • Update to the description of check script checkauthorizedkeysentries.ksh to include information what the authorized_keys files are used for.
  • Update to the description of check script checkauthorizedkeysentriesoracle.ksh to include information what the authorized_keys files are used for.
  • Update to check script checkauthorizedkeysdups.ksh to remove an error in an awk command.
  • Update to check script checkauthorizedkeysdupsoracle.ksh to remove an error in an awk command.
Version: v18.11.30
  • Update to check script checkpwd.ksh to improve the output of the script and adjust the description of the check script.
  • Update to check script checkrhosts.ksh to improve the output of the script.
Version: v18.11.29
  • Update to check script checkregularfilesinhome.ksh to improve upon the output of the check script.
  • Renamed check script checksbin.ksh to checksbinperms.ksh, as the script checks the permissions of folder /sbin.
Version: v18.11.27
  • Update to check script checkoslevel.ksh to update recommended Service Packs for AIX 7.2.
  • New check script checketcsecuritypasswdperms.ksh to check the permissions of /etc/security/passwd.
  • New check script checketcsecuritypasswdused.ksh to check if the shadow file /etc/security/passwd is used for storing passwords.
  • Update to check script checksimpanaactive.ksh to update the purpose description within the check script.
  • Update to check script checksuodersusers.ksh to improving checking for the existence of user accounts known in the /etc/sudoers file.
Version: v18.11.26
  • Update to check script checksudovisudopermissions.ksh to remove an unnecessary space.
  • Update to check script checksudopermissions.ksh to remove an unnecessary space.
Version: v18.11.25
  • Update to the description of check script checkvnbserver.ksh to correct a typo.
Version: v18.11.23
  • Update to the description of check script checkcaaservices.ksh to remove an empty line.
Version: v18.11.22
  • Update to check script checkall.ksh to improve the HTML output of the report - better consistency of the fonts used; better readability on mobile devices; better scaling with Microsoft Outlook.
Version: v18.11.20
  • Update to check script checkviosioslevel.ksh to recommend version 3.1.0.x of the PowerVM Virtual I/O Server to be installed, and if version 2.2 is used to at least upgrade to version 2.2.6.20
  • Update to check script checkviosioslevel.ksh to recommend version 3.1.0.x of the PowerVM Virtual I/O Server to be installed, and if version 2.2 is used to at least upgrade to version 2.2.6.
Version: v18.11.19
  • Update to check script checksystemfirmwarelevel.ksh for updated system system firmware levels for Power8 and Power9 hardware.
Version: v18.11.16
  • Update to check script checketchosts.ksh to allow a greater number of locally defined entries in /etc/hosts.
Version: v18.11.01
  • Update to check script checketherchannel.ksh to add some additional lines of output to the script for description purposes.
Version: v18.10.24
  • Update of the demo version to include the first 100 check scripts of the full version.
Version: v18.10.19
  • Update to check script checkpgspusagevsmemory.ksh to correct a comment within the script.
Version: v18.10.03
  • Update to check script checksystemfirmwarelevel.ksh in response to an updated system firmware release by IBM for Power9 systems.
  • Update to check script checkoslevel.ksh to check for the latest Service Packs for AIX 6.1 TL9, AIX 7.1 TL4, AIX 7.1 TL5, AIX 7.2 TL0, AIX 7.2 TL1, AIX 7.2 TL2 and AIX 7.2 TL3.
Version: v18.10.02
  • Update to check script checksendmailsmtp.ksh to avoid checking for a DNS entry for the SMTP server, if brackets are used in the DS entry in /etc/sendmail.cf, as using brackets in the DS entry results in sendmail not doing any DNS verification of the SMTP server.
Version: v18.09.20
  • Update to check script checkjavalevels.ksh to check for the latest Java levels to be installed per the Java July 2018 advisory.
Version: v18.09.18
  • Update to check script checkrperf.ksh to update it to version 37, as released by IBM in September 2018, which includes rperf values for Power9 Enterprise E950 and E980 systems.
Version: v18.08.22
  • Update to check script checkall.ksh to include the -t check script time-out option.
Version: v18.07.13
  • Update to check script checkcompellentdssslevel.ksh to recommend version 3.0.2.5 of the Dell Storage Suite for AIX to be installed, if Dell Compellent storage is used.
  • Update to check script checklssrc.ksh to provide an improved output, especially if the inittab entry differs from the resource controller entry.
  • Update to check script checkpowerhalevels.ksh to ignore any entries for fileset cluster.es.smui.server, which can be safely ignored, as it is okay to have this fileset installed on just one of the PowerHA nodes within a cluster.
  • Update to check script checkpowerhapackages.ksh to ignore any entries for fileset cluster.es.smui.server, which can be safely ignored, as it is okay to have this fileset installed on just one of the PowerHA nodes within a cluster.
  • New check script checkpowerhasmui.ksh to check if the PowerHA System Management User Interface packages are installed.
  • Update to check script checkall.ksh to allow check scripts to run for 180 seconds instead of 120 seconds.
  • Update to check script checklibgcc.ksh to check for the new version of libgcc, version 6.3.0 on AIX 6.1 and AIX 7.1, and version 7.2.0 on AIX 7.2.
  • Update to check script checklibstdc.ksh to check for the new version of libstdc++, version 6.3.0 on AIX 6.1 and AIX 7.1, and version 7.2.0 on AIX 7.2.
  • New check script checkgcc.ksh to check if the correct level of gcc RPM is installed.
  • New check script checkgcccpp.ksh to check if the correct level of gcc-cpp RPM is installed.
  • New check script checkcpio.ksh to check if the correct level of cpio RPM is installed.
  • New check script checkexpect.ksh to check if the correct level of expect RPM is installed.
Version: v18.07.11
  • Update to check script checkpowerhalevel.ksh to mark version 7.1.3 as out of support by IBM.
Version: v18.07.10
  • Update to check script checkpowerhanetmoncf.ksh to check both the old and new type entries in netmon.cf if PowerHA 7 or up is used.
  • Update to check script checkpowerhanetmoncf.ksh to check that also VLAN type adapters are considered as a virtual type of adapter.
Version: v18.07.09
  • Update to check script checkrperf.ksh to update it to version 36, as released by IBM, which includes rperf values for Power9 systems.
Version: v18.07.06
  • Update to check script checkzombies.ksh to improve the output.
Version: v18.07.05
  • Update to check script checkjavalevels.ksh to recommend the latest available levels for IBM AIX Developer Kit and Runtine, Java Technology Edition.
Version: v18.07.03
  • Update to check script checkopenssllevel.ksh to recommend a new level of OpenSSL, version 1.0.2.1500 (1.0.2o).
  • Update to check script checkopensshlevel.ksh to recommend a new level of OpenSSH, version 7.5.102.1500.
Version: v18.07.02
  • Update to check script checkpowerhalevel.ksh to recommend a new Service Pack (SP1) for PowerHA version 7.2.2.
Version: v18.05.30
  • Update to check script checksystemfirmwarelevel.ksh to recommend a newly available firmware level for Power7 and Power9 hardware, in response to CVE-2018-3639, the Speculative Store Bypass vulnearbility.
Version: v18.05.28
  • New check script checksnmpdconfperms.ksh to check the permissions of the SNMP configuration files.
  • Update to check script checksnmp.ksh to improve reporting on SNMP public community name information.
  • Update to check script checksystemfirmwarelevel.ksh to recommend new available system firmware levels for Power7 and Power8 systems, to address Speculative Store Bypass vulnerabilities.
Version: v18.05.27
  • Update to check script checkrperf.ksh to add missing Power8 system 8284-22A_30.
  • New check script checksambatestparm.ksh to run Samba's testparm utility to check the correctness of the the Samba configuration file.
  • Update to check script checkbash64.ksh to avoid reporting an error if bash_64 is not installed.
  • Update to check script checkenscript.ksh to avoid reporting an error if enscript is not installed.
  • Update to check script checkghostscript.ksh to avoid reporting an error if enscript is not installed.
  • Update to check script checksanpvid.ksh to avoid reporting an error on fileset cluster.es.server.rte, if not installed.
  • Update to check script checkunzip.ksh to avoid reporting an error if unzip is not installed.
  • Update to check script checkwget.ksh to avoid reporting an error if wget is not installed.
  • Update to check script checkzip.ksh to avoid reporting an error if zip is not installed.
  • Update to check script checkbootlist.ksh to avoid reporting an error if a network interface entry is listed in the bootlist.
  • Update to check script checkvartmp.ksh to only list the first 100 files found in /var/tmp, instead of the entire listing.
Version: v18.05.14
  • Update to check script checkpowerhalevel.ksh to recommend new PowerHA Service Packs available for PowerHA versions 7.1.3, 7.2.0 and 7.2.1.
Version: v18.05.07
  • Update to check script checksystemfirmwarelevel.ksh to recommend a newly available firmware level for Power8 hardware, in response to CVE-2018-3639, the Speculative Store Bypass vulnearbility.
Version: v18.05.02
  • Update to check script checkall.ksh to add the model types of the new Power9 systems released by IBM.
  • Update to check script checkhardwaresupport.ksh to add the necessary code for Power9 hardware support.
  • Update to check script checkpowervsaix.ksh to check the required AIX and VIOS levels for Power9 hardware.
  • Update to check script checksystemfirmwarelevel.ksh to check for the Power9 recommended system firmware level.
Version: v18.04.25
  • Update to the description of check script checkshowmount.ksh to add information on the use of the showmount and netstat commands.
Version: v18.04.10
  • Update of check script checkresolvconf.ksh to include testing the time it takes to perform a nslookup command.
Version: v18.04.09
  • Update to check script checkcrontabcommands.ksh to properly check for any crontab commands located in /tmp.
  • Update to the description of check script checkcrontabs.ksh to explain where the crontab files are stored.
Version: v18.04.08
  • New check script checkdevperms.ksh to check the permissions, owner and group of /dev.
  • New check script checkatallowperms.ksh to check the permissions of file /var/adm/cron/at.allow.
  • New check script checkatdenyperms.ksh to check the permissions of file /var/adm/cron/at.deny.
  • New check script checkcronallowperms.ksh to check the permissions of file /var/adm/cron/cron.allow.
  • New check script checkcrondeny.ksh to check the permissions of file /var/adm/cron/cron.deny.
  • New check script checkcronqueuedefs.ksh to check the permissions of file /var/adm/cron/queuedefs.
Version: v18.04.03
  • Update to the description of check script checksudosh.ksh to improve the description.
Version: v18.04.02
  • Update to check script checksshd.ksh to alert with an error is user sshd is not a member of group sshd.
Version: v18.03.30
  • New check script checkexpireduseraccounts.ksh to list any user accounts that have expired.
  • Update to check script checkgecos.ksh to avoid checking user account nuucp as well.
  • Update to the description of check script checkhomedirs.ksh.
Version: v18.03.27
  • Update to check script checkoslevel.ksh to recommend new Service Packs for AIX 6.1, AIX 7.1 and AIX 7.2.
Version: v18.03.26
  • Update to check script checksuid.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkcoredumps.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkdevicefilesoutsidedev.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkdirsworldwriteable.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkdsmerrorlog.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkfsdirwrite.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkfswrite.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkjfs2.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkmanualfs.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkmissingowners.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checknoatime.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkossvfs.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
  • Update to check script checkossvfsnb.ksh to exclude mmfs (GPFS/Spectrum Scale) type file systems from checking.
Version: v18.03.09
  • Update to check script checksystemfirmwarelevel.ksh to recommended newly released system firmware levels for Power7 and Power7+ systems.
Version: v18.03.06
  • New check script checkvlans.ksh to display the configuration of the VLANs on the server, if any.
  • Update to check script checketherchannelip.ksh to allow it to work properly if the IP address has been configured on a VLAN adapter that sits on top of an EtherChannel device.
  • Update to check script checknmapportscan.ksh to add a --host-timeout option to the nmap command to avoid running for a long time.
  • Update to check script checkall.ksh to add a warning to the logfile output if a check script takes longer than 120 seconds to complete.
Version: v18.03.01
  • Update to new computing environment.
Version: v18.02.22
  • New check script checketcresolvconf.ksh to display the contents of /etc/resolv.conf.
Version: v18.02.12
  • New check script checkspectremeltdown.ksh to check if the system has been properly patched for the Spectre and Meltdown vulnerabilities.
  • Update to check script checkviosioslevel.ksh to provide new recommendations on the installed PowerVM Virtual I/O Server (VIOS) level.
Version: v18.02.08
  • Update to check script checksystemfirmwarelevel.ksh to check for newly release Power7 and Power7+ system firmware levels to address the Meltdown and Spectre security vulnerabilities.
  • Update to check script checkftpusers.ksh to not alert if ftp is not enabled in /etc/inetd.conf.
Version: v18.02.07
  • Update to check script checkpowerhalevel.ksh to provide new recommendations for updated Service Pack levels for PowerHA version 7.
Version: v18.02.06
  • Update to the description of check script checkpowerhadiskattributes.ksh to provide information on how to update the attributes of a disk device when the device is in use.
Version: v18.02.05
  • New check script checkpowerhadiskattributes.ksh to check if the disk attributes on both nodes of a PowerHA/HACMP cluster are set the same.
  • New check script checkhardwaresupport.ksh to check the hardware support status.
  • New check script checkhcheckmodealigned.ksh to check if the hcheck_mode attribute of any disk has been set to the same value for all disks of the same type.
  • New check script checkalgorithmaligned.ksh to check if the algorithm attribute of any disk has been set to the same value for all disks of the same type.
  • New check script checkresrvepolicyaligned.ksh to check if the reserve_policy attribute of any disk has been set to the same value for all disks of the same type.
Version: v18.02.02
  • New check script checkhcheckintervalaligned.ksh to check if the hcheck_interval attribute of any disk has been set to the same value for all disks of the same type.
  • Update to check script checkmaxtransferaligned.ksh to improve the output of the check script and indicate any different max_transfer attributes, if any.
  • Update to check script checkqueuedepthaligned.ksh to improve the output of the check script and indicate any different queue_depth attributes, if any.
Version: v18.02.01
  • New check script checkmaxtransferaligned.ksh to check if the max_transfer disk attribute is aligned for all disks of the same type.
Version: v18.01.26
  • Calculate MD5 has of UNIX Health Check for AIX pacakage automatically.
  • Update to check script checkoslevel.ksh to account for newly available Service Packs.
Version: v18.01.15
  • Update to check script checksystemfirmwarelevel.ksh for recommended system firmware updates, to mitigate the Spectre and Meltdown threats.
  • Update to check script checkrperf.ksh to update it to version 34, which corrects a printf statement.
Version: v18.01.02
  • Update to check script checkoslevel.ksh to check for updated technlogoy levels for AIX 7.1 (TL5) and AIX 7.2 (TL2).
  • Update to check script checkopenssllevel.ksh to check for an updated version of OpenSSL (1.0.2.1300).
  • Update to check script checkopensshlevel.ksh to check for an updated version of OpenSSH (7.5.102.1100).
  • Update to check script checksystemfirmwarelevel.ksh to check for updated Power7 and Power8 system firwmare levels.
Version: v17.12.24
  • New check script checkhistsize.ksh to check the value of HISTSIZE.
Version: v17.10.23
  • New check script checkmountguard.ksh to check if cluster JFS2 file systems are protected using the mountguard option.
  • Update to check script checkcompellentdssslevel.ksh to check for the latest version of the Dell Storage Software Suite for AIX, version 3.0.1.6.
  • Update to check script checktmpexecutables.ksh to avoid reporting on file /tmp/clevmgrd.stderr, which is part of PowerHA 7.2.
  • Update to check script checkhomedirs.ksh to avoid generating an error when the cllsfs command displays an empty file system entry, as seen in PowerHA 7.2.
Version: v17.09.26
  • New check script checkpacketloss.ksh to check if packet loss can be detected when pinging the default gateway.
Version: v17.09.20
  • Update to check script checkcurl.ksh to check for the latest version of curl (7.54) available in the AIX Toolbox for Linux Applications.
  • Update to check script checkhttpd.ksh to check for the latest version of httpd (2.4.27) available in the AIX Toolbox for Linux Applications.
  • Update to check script checklibstdc.ksh to check for the correct level of libstdc++ (6.3.0) for AIX 6.1 and up, available in the AIX Toolbox for Linux Applications.
  • Update to check script checklibgcc.ksh to check for the correct level of libgcc (6.3.0) for AIX 6.1 and up, available in the AIX Toolbox for Linux Applications.
  • Update to check script checksudoversion.ksh to check for the latest version of sudo (1.8.20) available in the AIX Toolbox for Linux Applications.
  • Update to check script checksambalevel.ksh to check for the latest version of samba (4.6.4) available in the AIX Toolbox for Linux Applications.
Version: v17.09.19
  • Update to the UNIX Health Check for AIX package to align with the update of the website to https instead of http.
Version: v17.09.05
  • Update to check script checksystemfirmwarelevel.ksh to check for a newly released Power8 system firmware level.
  • Update to the description of check script checkjavalevel.ksh to indicate where to download the latest fixes for Java for AIX.
Version: v17.08.30
  • Update to check script checkhiperapars.ksh to avoid reporting duplicate APARs if IBM specified the same APAR number for different OS levels.
Version: v17.08.23
  • Update to check script checknmapportscan.ksh to remove unnecesary lines and avoid displaying errors.
  • Update to check script checklsof.ksh to allow both the fileset and RPM version of lsof to be installed and used.
  • Update to check script checkbash.ksh to check for bash version 4.4 (from Perzl.org) or version 4.3.30 (from the AIX Toolbox for Linux applications).
  • Update to check script checkgettext.ksh to check for gettext version 0.17 (from Perzl.org) or version 0.19.7 (from the AIX Toolbox for Linux applications).
Version: v17.08.22
  • Update to check script checkwget.ksh to check for wget version 1.19.1 (from Perzl.org) or version 1.17.1 (from the AIX Toolbox for Linux applications).
  • Update to check script checksudoversion.ksh to check for sudo version 1.8.20 (from Perzl.org) or version 1.8.15 (from the AIX Toolbox for Linux applications).
  • Update to check script checklibstdc.ksh to check for libstdc++ version 4.8.3 (from Perzl.org) or version 4.8.5 (from the AIX Toolbox for Linux applications).
  • Update to check script checklibpng.ksh to check for libpng version 1.6.31 (from Perzl.org) or version 1.6.27 (from the AIX Toolbox for Linux applications).
  • Update to check script checklibgcc.ksh to check for libgcc version 4.8.3 (from Perzl.org) or version 4.8.5 (from the AIX Toolbox for Linux applications).
  • Update to check script checkgnutar.ksh to check for the latest GNU tar version from the AIX Toolbox for Linux applications, version 1.29.
  • Update to check script checkgmp.ksh to check for gmp installed at either version 5.1.2 (from AIX Toolbox for Linux applications) or 6.0.0 (from Perzl.org).
  • Update to check script checkcurl.ksh to check for the latest version of curl installed, either version 7.53 or version 7.55.
  • Update to check script checkbash64.ksh to check for bash64 version 4.4.
  • Update to check script checkxlclevel.ksh to recommend ethe latest version of the XL C/C++ Runtime for AIX, version 13.1.3.3.
  • Update to check script checkxivhaklevel.ksh to recommend version 2.8.0 of the IBM Storage Host Attachment Kit for AIX.
  • Update to check script checkviosioslevel.ksh to recommend updating a VIOS to at least version 2.2.5x.
  • Update to check script checksystemfirmwarelevel.ksh to check for newly release IBM system firmware levels for Power7 and Power7+ systems.
  • Update to check script checksddpcmlevel.ksh to recommend SDDPCM level 2.7.0.0.
  • Update to check script checkpatrollevel.ksh to recommend verison 3.8.50i of the BMC Patrol Agent.
  • Update to check script checkopenssllevel.ksh to check for the latest version of OpenSSL, version 1.0.2k, VRMF: 1.0.2.1100.
  • Update to check script checkopensshlevel.ksh to check for the latest version of OpenSSH, version 7.1p1, VRMF: 7.1.102.1100.
  • Update to check script checknmaplevel.ksh to check for the latest version of NMAP, version 6.00.
  • New check script checktmspagingspace.ksh to check if there is at least 32 GB of paging space on a system running Tivoli Storage Manager / IBM Spectrum Protect.
  • New check script checktsmame.ksh to check if Active Memory Expansion is disabled when running Tivoli Storage Manager / IBM Spectrum Protect.
  • Update to check script checklsoflevel.ksh to keep in line with the AIX Web Download pack version of lsof.
Version: v17.08.21
  • Update to check script checkjavalevels.ksh to check for the latest Java levels to be installed. Also added a check for Java8, and added a remark for Java5 being out of support.
  • Update to check script checkjavalevel.ksh to add some comments to the script about the available Java levels.
  • Update to check script checkgnupglevel.ksh to recommend using the latest version of GnuPG, version 1.4.22-1.
  • Update to check script checkgangliagmondlevel.ksh to recommend the latest Ganglia gmond version to be installed.
  • Update to check script checkgangliagmetadlevel.ksh to recommend the latest Ganglia gmetad version to be installed.
  • Update to check script checkfirefoxlevel.ksh to recommend version 3.6.
  • Update to check script checkemcpowerpathlevel.ksh to recmmend new levels for EMC PowerPath.
  • Update to check script checkemcodmlevel.ksh to recommend new EMC ODM definitions levels for Dell EMC attached storage.
  • Update to check script checkemcnavispherelevel.ksh to recommend a new level of the EMC NaviSphere Host agent to be installed.
  • Update to check script checkdevicesfcplevel.ksh to update the recommended version of the AIX SDDPCM Host attachment device software devices.fcp.disk.ibm.mpio.rte.
  • Update to check script checktsmlevel.ksh to add an extra method to check the TSM / IBM Spectrum Protect server level, and updating the way the TSM client version is identified, as it has been renamed by IBM from TSM to IBMSP.
  • Update to check script checktsmbackup.ksh to add the full path to the dsm.sys file in the output presented by the script.
Version: v17.08.20
  • Update to check script checksanpvid.ksh to avoid checking PowerHA repository disks as they may not be assigned to any volume group.
Version: v17.08.17
  • Update to check script checklspath.ksh to add comments to the output.
Version: v17.08.15
  • New check script checkntpdatentppool.ksh to check the time offset of the server versus a stratum 2 internet time server.
  • Update to check script checkntpdate.ksh to only query the NTP offset status, and not attempt to change it.
Version: v17.08.11
  • New check script checkpowerharepositories.ksh to display the PowerHA/HACMP repository disks.
Version: v17.08.10
  • New check script checklspvu.ksh to display the disks on the system, along with the Unique device identifier (UDID) and Universally Unique Identifier (UUID).
Version: v17.08.09
  • Update to checkcommonfilesets.ksh to suggest fewer filesets to be de-installed, when PowerHA 7.2 is used on the system, as AIX Runtime Expert can be used by PowerHA 7.2, which requires certain filesets to be installed.
Version: v17.08.01
  • Update to check script checkauthorizedkeys.ksh to only display output if any output from the authorized_keys file is to be displayed, especially in cases with PowerHA cluster nodes, that are not yet configured in a PowerHA cluster.
  • New check script checkpowerhalevelinstalled.ksh to display the level of PowerHA (HACMP) installed.
  • Update to check script checkall.ksh to also display the output of "halevel -s" when available.
Version: v17.07.23
  • Update to check script checkpowerhacrontabs.ksh to avoid reporting differences in crontabs on PowerHA nodes when only spaces, comments or tabs are different.
Version: v17.07.19
  • Update to check script checkoslevel.ksh to recommend upgrading to AIX 7.2 when AIX 7.1 is installed.
  • New check script checkrpmduplicates.ksh to check for any RPM packages that were installed multiple times.
  • Update to check script checkpowerhalevel.ksh to update certain recomendations for PowerHA levels, as some of the PowerHA levels have moved to End-of-Service-Pack mode.
  • Update to check script checkpowerhaconfigfiles.ksh to remove checking for differences beteen the /etc/filesystems on two nodes of a PowerHA SystemMirror/HACMP cluster.
  • New check script checkpowerhaetcfilesystems.ksh to compare the stanzas in /etc/filesystems on two nodes of a PowerHA SystemMirror/HACMP cluster.
Version: v17.07.18
  • Update to check script checknonlocsrcroute.ksh to no longer recommend making changes on PowerHA/HACMP nodes regarding this network option, as later versions of PowerHA SystemMirror no longer require this option to be set.
  • Update to check script checknfsclientdaemons.ksh to only alert about an empty /etc/exports file if the server is not a NIM server.
  • Update to check script checkinstalldate.ksh to remove an error with a missing fi statement.
  • Update to check script checkzlib.ksh to check for an updated version of zlib installed on the system. A new version of zlib (1.2.11) is available in the AIX Toolbox for Linux Applications.
  • Update to check script checksambalevel.ksh to check for an updated version of samba installed on the system. A new version of samba (4.5.7) is available in the AIX Toolbox for Linux Applications.
  • Update to check script checkrsynclevel.ksh to check for an updated version of rsync installed on the system. A new version of rsync (3.1.2) is available in the AIX Toolbox for Linux Applications.
  • Update to check script checklibstdc.ksh to make a different recommendation for AIX 6.1 for the level of libstdc to be installed, as different levels of libstdc are available in the AIX Toolbox for Linux Applications for AIX 7.x and AIX 6.1.
  • Update to check script checklibpng.ksh to check for an updated version of libpng installed on the system. A new version of libpng (1.6.27) is available in the AIX Toolbox for Linux Applications.
  • Update to check script checklibgcc.ksh to make a different recommendation for AIX 6.1 for the level of libgcc to be installed, as different levels of libgcc are available in the AIX Toolbox for Linux Applications for AIX 7.x and AIX 6.1.
  • Update to check script checkhttpd.ksh to check for an updated version of httpd installed on the system. A new version of httpd (2.4.25) is available in the AIX Toolbox for Linux Applications.
  • Update to check script checkcurl.ksh to check for an updated version of curl installed on the system. A new version of curl (7.53.1) is available in the AIX Toolbox for Linux Applications.
  • Update to check script checkpowerhalevel.ksh to update for PowerHA 7.2.
  • Update to check script checkoslevel.ksh to update for new Service Packs released for AIX 7.2.
  • Update to check script checkall.ksh to improve on determining the fully qualified domain name, avoiding two or more domain names when those are present in /etc/resolv.conf.
  • Update to check script checkcompellentdssslevel.ksh to make different recommendations for the level of the Dell Storage Software Suite to be installed, depending on the AIX OS level installed.
Version: v17.07.10
  • Update to check script checksystemfirmwarelevel.ksh to check for newly released system firmware levels for Power7+ and Power8 systems.
Version: v17.06.08
  • Update to check script checkall.ksh to avoid displaying a line in the header field of each check script, when using HTML output in Microsoft Outlook 2016.
  • Update to the package for the new release of website unixhealthcheck.com.
Version: v17.06.01
  • Update to check script checkall.ksh to remove duplicate spaces in comma separated output.
Version: v17.05.26
  • Update to check script checktmpexecutables.ksh to improve upon the way the output is prsented by the check script.
  • Update to check script checkexports.ksh to avoid reporting the same error on duplicate entries in /etc/exports.
  • Update to check script checkresolvconf.ksh to check for IP addresses listed for the search and domain entries in /etc/resolv.conf.
  • Update to check script checkall.ksh to filter out any IP addresses when the domain entry is determined from /etc/resolv.conf.
  • New check script checkgroup.ksh to display the contents of /etc/group.
  • New check script checkpasswd.ksh to display the contents of /etc/passwd.
  • Update to check script checketcgroupperms.ksh to also check if /etc/group exists and is not empty.
  • Update to check script checketcpasswdperms.ksh to also check if /etc/passwd exists and is not empty.
  • Update to check script checkvmo.ksh to no longer classify it as an inventory check script.
  • New check script checklslpphistory.ksh to lists the installation dates of all installed software packages.
  • Update to check script checkdb2folder.ksh to improve the output of the check script to indicate the DB2 installation folder.
  • Update to check script checkpowerhaclustertopology.ksh to check if the -m option is available with cltopinfo before displaying output. This option has been removed in later PowerHA levels.
  • Update to check script checkmajor.ksh to remove a typo.
Version: v17.05.25
  • Update to check script checkpowerhalogdirectory.ksh to only display the PowerHA logs that are written to /tmp.
  • Update to check script checklargefilesinrootvg.ksh to improve upon the way the output is presented.
  • Update to check script checkinstalldate.ksh to improve upon the way the output is presented.
  • Update to check script checksadc.ksh to exclude reporting the checksadc.ksh script itself as one of the running sadc processes.
  • Update to check script checkall.ksh to change certain echo commands to printf to improve the generated copyright message.
  • Update to check script checkgeoc.ksh to change the error to a warning message.
  • Update to check script checkcompellentlsvpd.ksh to remove an error in removing the temporary file.
  • Update to check script checkcompellentdssslevel.ksh to remove a typo in one of the comments.
Version: v17.05.19
  • Update to check script checkblankpassword.ksh to remove a typo in one of the comments.
Version: v17.05.18
  • New check script checkcfgscsidisk.ksh to check if there are long running cfgscsidisk processes on the system.
  • New check script checkcfgmgr.ksh to check if there are long running cfgmgr processes on the system.
Version: v17.05.17
  • Update to check script checkiddsapuboracle.ksh to also check the permissions of file ~oracle/.ssh/id_dsa.pub.
  • Update to check script checkiddsapub.ksh to also check the permissions of file ~root/.ssh/id_dsa.pub.
  • Update to check script checkviosidrsapubpadmin.ksh to also check the permissions of file /home/padmin/.ssh/id_rsa.pub.
  • Update to check script checkidrsapuboracle.ksh to also check the permissions of file ~oracle/.ssh/id_rsa.pub.
  • Update to check script checkdotsshperms.ksh to remove a typo in one of the comments.
  • Update to check script checkidrsapub.ksh to also check the permissions of file ~root/.ssh/id_rsa.pub.
Version: v17.05.15
  • Update to check script checkoslevel.ksh to recommend SP4 for AIX 7.1 TL4 and SP9 for AIX 7.1 TL3, which was released in April 2017.
Version: v17.05.12
  • Update to check script checkxmdaily.ksh to avoid reporting when both nmon and topasrec are active, as this is also checked by check script checknmon.ksh.
  • Update to check script checkusersettingsvsdefault.ksh to avoid reporting any messages about user account srvproxy as the user settings of srvproxy may be different from the default settings.
  • Update to check script checksystemgroup.ksh to allow user srvproxy to be part of the system group. The srvproxy user is set up as part of the bos.ecc_client.rte fileset.
  • Update to check script checksuid.ksh to exclude any file names that include both "sqllib" and "db2", as these are part of a DB2 database and are allowed to have a SUID bit set.
  • Update to the dscription of check script checkrootrloginfalse.ksh to explain what access is still available if rlogin is set to false for user root.
  • Update to check script checkpowerhasyncd.ksh to recommend a syncd frequency of (default) 60. In older versions of PowerHA (version HACMP 5 or below), it was recommended to set the syncd frequency to 10, but that is no longer requiered for new PowerHA levels.
  • Update to check script checkpowerhaioo.ksh to avoid alerting for I/O tunable aio_active, which has been made static by IBM.
  • Update to the description of check script checklsof.ksh to update the URL to the AIX Web Download Pack, where lsof can be downloaded, as the URL has changed on the IBM website.
  • Update to check script checklargefilesinrootvg.ksh to avoid alerting about any files that are explicitly excluded in /etc/exclude.rootvg.
  • Update to check script checksshpermitrootlogin.ksh to account for the change to the default value of PermitRootLogin in /etc/ssh/sshd_config, where the default has changed to "without-password" (from "yes") when using OpenSSH version 7 or up.
Version: v17.05.11
  • Update to check script checkopensshlevel.ksh to allow it to work on AIX 7.1 TL4.
  • Update to the description of check script checksendmailprivacyoptions.ksh explaining better which entry to replace.
Version: v17.05.10
  • Update to check script checkopensshlevel.ksh to recommend the new version 7.1.101.500 of openssh.
  • Update to the description of check script checkopenssllevel.ksh to update the link to the AIX Web Download Pack to a new location.
  • New check script checkcompellentdssslevel.ksh to check the level of the installed Dell Storage Software Suite for AIX.
  • New check script checkcompellentshowtimervalue.ksh to check the output of the Dell EMC SC / Compellent show_timer_value command.
  • New check script checkcompellentshowwwid.ksh to display the output of the Dell EMC SC / Compellent show_wwid command.
  • New check script checkcompellentdellscbootlist.ksh to check the output of the Dell EMC SC / Compellent dellsc_bootlist command.
  • New check script checkcompellentdellsctune.ksh to display the output of the Dell EMC SC / Compellent dellsc_tune command.
  • New check script checkcompellentlsvpd.ksh to display the output of the Dell EMC SC / Compellent ls_vpd command.
  • New check script checkcompellentlsdellsc.ksh to check if all paths to Dell EMC SC / Compellent storage disks are enabled by running the ls_dellsc command.
  • New check script checkcompellentmirroring.ksh to check if logical volumes on Dell Compellent storage are not mirrored, as Dell SC Series storage is already providing naitve RAID10 integrity and reliability, thus eliminating the need for mirroring logical volumes on Dell Compellent storage.
Version: v17.04.26
  • Update to check script checkpgspminsize.ksh to improve the provided output.
Version: v17.04.25
  • Update to the software to support the renaming of the software to UNIX Health Check for AIX.
Version: v17.04.17
  • Update to check script checkoslevel.ksh to recommend the latest Service Pack for AIX 6.1, Technology Level 9, Service Pack 9.
Version: v17.04.05
  • Update to check script checktsmservername.ksh to avoid displaying an error when the TSM nodename is not currently registered with the TSM server.
  • Update to check script checktmpexecutables.ksh to exclude checking for file /tmp/pfcdaemon.out, which is a log file of the newly introduced Power Flash Cache daemon, and can be ignored.
  • Update to check script checktotalsan.ksh to add an overview of PureStorage SAN storage; PureStorage is all-Flash storage and can be configured as MPIO on AIX.
  • New check script checkqueuedepthaligned.ksh to check if the queue_depth attribute of any disk has been set to the same value for all disks of the same type.
  • Update to check script checkqueuedepth.ksh to recommend a queue depth for SAN LUNs provided by Compellent storage.
  • Update to check script checktotalsan.ksh to add an overview of Dell Compellent SAN storage.
  • Update to the description of check script checkfscsidyntrk.ksh to elaborate on what dynamic tracking is and why it should be enabled on FC adapters.
  • Update to the description of check script checkmissingowners.ksh to add an additional folder for PowerHA software to the recommended list of folders to update permissions for.
  • Update to check script checkdevicefiles.ksh to avoid reporting file /dev/.StorageRM-Semaphore as this file is created by RSCT and thus is valid.
  • Update to check script checkdadapters.ksh to also include output of the physical locations of the adapters.
  • Update to check script checkdisks.ksh to also include output of the physical locations of the disks.
Version: v17.04.04
  • Update to check script checkpowerharhosts.ksh to avoid recomending adding service IP addresses to the cluster rhosts file.
  • Update to check script checketchostsvsdns.ksh to also exclude any service IP addresses.
  • Update to check script checkcommonfilesets.ksh to exclude fileset bos.ecc_client.rte from the recommendation to be removed.
  • Update to check script checkcleanetc.ksh to exclude checking for file /etc/security/privcmds.backup.
Version: v17.03.31
  • Update to check script checksystemfirmwarelevel.ksh for updated Power8 firmware levels.
Version: v17.03.24
  • New check script checkniminfo.ksh to display the contents of /etc/niminfo.
  • New check script checknimservices.ksh to check if the correct entries are present in /etc/services for NIM.
Version: v17.02.27
  • New check script checkmajor.ksh to list the major numbers of the volume groups.
Version: v17.02.21
  • Update to check script checkglvmlsrpvserver.ksh to add additional details of rpvserver devices.
  • Update to check script checkglvmlsrpvclient.ksh to add additional details of rpvclient devices.
Version: v17.02.18
  • Update to check script checkskulker to properly list the number of discovered files that can be removed by skulker.
  • Update to check script checkghostscript.ksh to check for a newer version of Ghostscripts, as well as to update the description of the check script, considering that the AIX Toolbox for Linux Applications no longer contains Ghostscript.
  • Update to the description of check script checkedition.ksh to add information on how to change the AIX edition to either standard or enterprise.
Version: v17.02.14
  • Update to check script checklqueryvg.ksh to improve the reporting of errors.
Version: v17.02.07
  • Update to check script checksystemfirmwarelevel.ksh for new available firmware levels for Power6 and Power7 hardware.
  • Update to check script checkoslevel.ksh to check for newly released fix packs for AIX 6.1, AIX 7.1 and AIX 7.2, as well as an update for technology level 1 for AIX 7.2.
  • New check script checkvgnonrelocatable.ksh to check if a volume group's bad block policy is set to non-relocatable.
  • Update to check script checklsfs.ksh to allow it to work properly with volume groups that use a disk block size of 4096 instead of the usual block size of 512 bytes.
  • Update to check script checketherchannellink.ksh to account for 10Gb ports that may show both a physical and a logical port state.
Version: v17.02.06
  • Update to check script checkcleanetc.ksh to also check for old copies of /etc/security/login.cfg and /etc/security/mkuser.sys.
Version: v17.01.31
  • Update to check script checkrsynclevel.ksh to avoid generating an error if rsync dependencies are missing on the system.
  • Update to check script checksysdumpupperbound.ksh to avoid any alerts on boot logical volume hd6.
Version: v17.01.18
  • Update to check script checktmpexecutables.ksh to correctly clean up its own temporary file.
  • Update to check script checksudoerrors.ksh to correctly clean up its own temporary file.
Version: v17.01.17
  • Update to check script checksnarunning.ksh to avoid reporting an error regarding SNA Communications Server not being active, if SNA Communications Server is installed within a PowerHA/HACMP cluster, and the current node is a standby node where no resource group is active.
  • New check script checksnastatus.ksh to check the SNA Communications Server status using snaadmin status_all.
  • Update to check script checkcronlogfailed.ksh to improve the output of any failed cron jobs.
  • Update to check script checketherchannelnetaddr.ksh to remove the recommnendation of not setting a netaddr address to ping for EtherChannel configurations using only physical network adapters.
Version: v17.01.15
  • Update to check script checkdisksdefined.ksh to exclude Remote Physical Volume Client disks, which are part of GLVM, and which will be in a defined state on a standby node.
  • Update to check script checketchostsvsdns.ksh to exclude checking any persistent IP labels configured within a PowerHA/HACMP cluster.
  • New check script checkpowerhaclstato.ksh to display the PowerHA/HACMP cluster status using clstat -o.
  • New check script checkpowerhaclrginfo.ksh to display the output of the PowerHA/HACMP command clRGinfo, to show the resource group status within the cluster.
  • New check script checkpowerhacllsif.ksh to display the output of the PowerHA/HACMP command cllsif, to show the network interfaces in use within the cluster.
  • New check script checkpowerhacllscf.ksh to display the output of the PowerHA/HACMP command cllscf, to show the cluster configuration information.
Version: v17.01.12
  • Update to the descriptions of several check scripts to correct some spelling errors.
Version: v17.01.11
  • Update to the description of check script checkpowerhalevel.ksh to include the latest PowerHA level information.
Version: v17.01.10
  • New check script checkodmdir.ksh to check if variable ODMDIR is correctly set to /etc/objrepos.
Version: v17.01.08
  • Update to check script checknfssoft.ksh to exclude any home directories mounted automatically through LDAP or automountd.
  • Update to check script checknfsnosuid.ksh to exclude any home directories mounted automatically through LDAP or automountd.
  • Update to check script checkbootlist.ksh to only alert about a cd entry in the bootlist, if it comes before any disk entries.
  • Update to check script checkall.ksh to add the -G option to display check scripts in the output that end with ERROR (returncode 1) only.
Version: v17.01.07
  • Update to check script checketchostsnonnumeric.ksh to avoid checking empty lines in /etc/hosts.
  • Update to check script checkdisktypesinvg.ksh to exclude checking disks in use as remote physical volume client within GLVM.
  • Update to check script checkauthorizedkeys.ksh to also exclude checking hostnames configured as an interface within a PowerHA cluster.
  • New check script checknonstandardssh.ksh to check if a non-standard version of ssh is being used.
  • New check script checkglvmgmvgstat.ksh to run gmvgstat to check geographically mirrored volume group status for GLVM.
  • New check script checkglvmrpvstat.ksh to run rpvstat to display Remote Physical Volume statistics for GLVM.
  • New check script checkglvmlsrpvserver.ksh to run lsrpvlserver to display all remote physical volume servers configured for GLVM.
  • New check script checkglvmlsrpvclient.ksh to run lsrpvlcient to display all remote physical volume clients configured for GLVM.
  • New check script checkglvmlsglvm.ksh to run lsglvm to display physical disks configured for GLVM.
  • Update to check script checkpowerhasharedvgs.ksh to exclude checking GLVM disk, because GLVM can have a different number of disks on each cluster node.
  • New check script checkglvmlsglvmc.ksh to run lsglvm -c to identify any missing Geographic Logical Volume Manager (GLVM) requisites.
Version: v17.01.06
  • Update to check script checkuserkshrc.ksh to avoid checking home directories of users that happen to have the same home directory as user root.
  • Update to check script checkpowerhaemgr.ksh to check for a specific Could not load ssh error, before continuing, to avoid wrong output. This may happen if a freeware SSH version is installed on a cluster node.
  • Update to check script checketcpasswdperms.ksh to also output the incorrect settings, if any are found.
  • Upddate to check script checkpowerhargfallbackpolicy.ksh to include the full path to clshowres, incase the PATH statement is missing the cluster folders.
Version: v17.01.04
  • Update to check script checketchosts.ksh to update the output provided by the script.
Version: v16.12.28
  • New check script checkhostnamevsdns.ksh to check if the hostname and the name known in DNS match.
Version: v16.12.23
  • Update to check script checkipaddress.ksh to also look at prtconf for determining the IP address if the IP address can't be found in /etc/hosts.
  • Update to check script checktsmnodenameindsmsys.ksh to check only for the short hostname.
  • Update to check script checkbootlist.ksh to allow it to run better even if one of the disks in the bootlist is marked as missing.
  • Update to check script checkbash.ksh to allow it to work with older levels of bash.
Version: v16.12.22
  • Update to check script checkvarpreserve.ksh to check if the du ocmmand is successful before proceeding with the script execution.
  • Update to check script checkvaradmsa.ksh to check if the du ocmmand is successful before proceeding with the script execution.
  • Update to check script checkusrsysinstimages.ksh to check if the du ocmmand is successful before proceeding with the script execution.
  • Update to check script checkuseraccounts.ksh to check if the lastupdate attribute exists.
  • Update to check script checktmpusage.ksh to check if the df command is successful before proceeding with the script execution.
  • Update to check script checksudoersgroups.ksh to exclude checking user root.
  • Update to check script checksnmpvacmview.ksh to check if /etc/snmpdv3.conf exists before proceeding with the script execution.
  • Update to check script checksmtsupport.ksh to redirect the errors of the smtctl command to /dev/null.
  • Update to check script checksbmax.ksh to check if the bootmode can be determined using no -r before proceeding with the script execution.
  • Update to check script checkrootvgdisksonfcs.ksh to redirect the errors of the lsdev command to /dev/null.
  • Update to check script checkrfc1122addrchk.ksh to redirect the errors of the no command to /dev/null.
  • Update to check script checkpre520tune.ksh to check if the pre520tune attribute exists before prcoeeding with the exeuction of the script.
  • Update to chesk script checkpowermgt.ksh to redirect the errors of the pmctrl command to /dev/null.
  • Update to check script checkoslevel.ksh to check if the oslevel command works properly before proceeding with the execution of the script.
  • Update to check script checknumcmdelems.ksh to redirect errors of the lspath command to /dev/null.
  • Update to check script checkmpiopathsvsadapters.ksh to redirect errors of the lspath command to /dev/null.
  • Update to check script checkmemvscpu.ksh to check if the lparstat command exists before proceeding with the script execution.
  • Update to check script checkmailq.ksh to redirect the errors of the cat command to /dev/null.
  • Update to check script checklparmemorysettings.ksh to check properly if the lparstat command exists before proceeding with the script execution.
  • Update to check script checklostfoundsize.ksh to check if the du -m command works properly before proceeding withe the script execution.
  • Update to check script checkj2nbuffer.ksh to redirect the errors of the vmstat -v command to /dev/null.
  • Update to check script checkipqmaxlen.ksh to redirect the errors of the no -L command to /dev/null.
  • Update to check script checkipnfrag.ksh to redirect the errors of the no -r command to /dev/null.
  • Update to check script checkipforwarding.ksh to redirect the errors of the no -r command to /dev/null.
  • Update to check script checkhiperapars.ksh to check if the oslevel command works properly before proceeding with the execution of the script.
  • Update to check script checkfscsidyntrk.ksh to check if the dyntrk attribute exists before proceeding with the execution of the script.
  • Update to check script checklgtermdma.ksh to redirect the errors of the lpsath command to /dev/null.
  • Update to check script checklspath.ksh to redirect the errors of the lpsath command to /dev/null.
  • Update to check script checkfcmaxxfersize.ksh to redirect the errors of the lpsath command to /dev/null.
  • Update to check script checkfailedloginsize.ksh to use du -ks instead of du -ms.
  • Update to check script checkextendednetstats.ksh to check if the bootmode can be determined using no -r before proceeding with the script execution.
  • Update to check script checkexcluderootvg.ksh to redirect the errors of the lscore command to /dev/null.
  • Update to check script checketcperfdaily.ksh to check if the du -ms command was successful before proceeding with the script execution.
  • Update to check script checkearlierfilesets.ksh to check if the oslevel command was successful before proceeding with the script execution.
  • Update to check script checkdirectedbroadcast.ksh to check if the bootmode can be determined using no -r before proceeding with the script execution.
  • Update to check script checkdevrandom.ksh to check if /dev/random or /dev/urandom are links instead of files before proceeding with the script execution.
  • Update to check script checkcronlogconf.ksh to check if /etc/cronlog.conf exists before proceeding with the script execution.
  • Update to check script checkcoredir.ksh to check if the core_path attribute exists before proceeding with the script execution.
  • Update to check script checkcorecompress.ksh to check if the core_compress attribute exists before proceeding with the script execution.
  • Update to check script checkcleansshdir.ksh to also allow file prng_seed to exist in the ~root/.ssh directory.
  • Update to check script checkbcastping.ksh to redirect the errors of the no -r command to /dev/null.
  • Update to check script checkarptkillc.ksh to check if the bootmode can be determined using no -r before proceeding with the script execution.
  • Update to check script checkaiostatus.ksh to check if the number of logical CPUs can be determined before making calculations.
  • Update to check script checkvmo.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkrunningkernel.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkpgahdscalethresh.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checknumfsbufs.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checklvmbufcnt.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkj2dynamicbufferpreallocation.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkiooa.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkaiomaxreqs.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkvmmmpsizesupport.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkvmmklockmode.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkvmoa.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkpowerhavmo.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkpagestealmethod.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checknumlockspersemid.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkmaxpgahead.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checklrufilerepage.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkfreeframewaits.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkenhancedaffinity.ksh to check if the vmo or ioo command exists before executing the script.
  • Update to check script checkall.ksh to allow it to run properly on AIX 5.1 as well, where the df command does not allow the -m option, and Korn Shell does not recognize the == test command parameter.
  • Update to the description of check script checkcleanetc.ksh to provide additional information of why files can be cleaned up from folder /etc.
  • Update to the description of check script checkcleanroot.ksh to provide additional information of why files can be cleaned up from the root home directory.
  • Update to the description of check script checkcleansshdir.ksh to provide additional information of why files can be cleaned up from folder ~root/.ssh.
  • Update to the description of check script checkcleansshdiroracle.ksh to provide additional information of why files can be cleaned up from folder ~oracle/.ssh.
  • New check script checksendmailopenrelay.ksh to check if sendmail is configured for open relay.
Version: v16.12.20
  • Update to check script checknetsvcorder.ksh to add some more information to the output generated by the script.
  • Update to the description of check script checkdefaultgateway to add an extra command to see the defined default gateway(s) on a system.
  • Update to check script checknsorder.ksh to provide a warning instead of an error when either $NSORDER or /etc/irs.conf is used.
  • New check script checketcirsconf.ksh to display the contents of /etc/irs.conf.
  • New check script checkcleanetmail.ksh to check for any files in /etc/mail that can be cleaned up.
Version: v16.12.16
  • Update to check script checknfsnosuid.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
  • Update to check script checknfssoft.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
  • Update to check script checkfsmountoptions.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
  • Update to check script checkfsvsetcfilesystems.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
  • Update to check script checknfsaccess.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
  • Update to check script checknfsconfig.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
  • Update to check script checknfsmountfolder.ksh to exclude checking for any NFS mounted file systems in use for generating a mksysb image from the NIM server.
Version: v16.12.15
  • Update to check script checkinstalldate.ksh to also display the first install date of the system.
Version: v16.12.14
  • New check script checklspvlocked.ksh to check for any locked devices.
  • Update to check script checklistvgbackup.ksh to check for both mksysb and savevg backups.
  • New check script checkmultipleipinetchosts.ksh to check for multiple different IP addresses for the hostname in /etc/hosts.
  • Update to check script checkusrbin.ksh to also display the incorrect permissions of /usr/bin, if not correctly set.
  • Update to check script checkuserprofile.ksh to avoid reporting a user twice if a user is both known locally and through LDAP.
  • New check script checkdnslookupmultipleip.ksh to check if a host is registered in DNS with multiple IP addresses.
  • Update to check script checkhostvsnslookup.ksh to avoid reporting an error if a host is registered in DNS with 2 or more different IP addresses.
  • Update to check script checketchostsvsdns.ksh to avoid reporting an error if a host is registered in DNS with 2 or more different IP addresses.
  • Update to check script checkdnslookup.ksh to avoid reporting an error if a host is registered in DNS with 2 or more different IP addresses.
  • Update to check script checkauthorizedkeysentries.ksh to check for a minimum of 3 entries on each line in ~root/.authorized_keys files, instead of exactly 3, in case an entry with a space in the key name has been used.
Version: v16.12.13
  • Update to check script checkdnslookup.ksh to report a proper output even if the AIX server is a DNS server.
  • Update to check script checkrootshell.ksh to also display the current shell for user root, if not set to the Korn shell.
  • New check script checkresolvconfparse.ksh to check if parsing of /etc/resolv.conf is successful.
  • New check script checksupportpassword.ksh to check if we can guess the password of user support, if that user exists.
  • New check script checkadminpassword.ksh to check if we can guess the password of user admin, if that user exists.
  • New check script checkmanagerpassword.ksh to check if we can guess the password of user manager, if that user exists.
  • Update to check script checkoraclepassword.ksh to check for additional possible passwords.
  • Update to check script checkrootpassword.ksh to check for additional possible passwords.
  • Update to check script checksecuritypassword.ksh to check for additional possible passwords.
  • Update to check script checkshutdownpassword.ksh to check for additional possible passwords.
  • Update to check script checksudoerspassword.ksh to check for additional possible passwords.
  • Update to check script checksystempassword.ksh to check for additional possible passwords.
  • Update to check script checkuidzeropassword.ksh to check for additional possible passwords.
  • Update to check script checkviospadminpassword.ksh to check for additional possible passwords.
Version: v16.12.08
  • Update to check script checksudoersgroups.ksh to avoid reporting the same error twice if multiple entries in /etc/sudoers exist.
  • Update to check script checkhomedirssize.ksh to allow it to work properly on AIX 5.3 TL7.
Version: v16.12.06
  • Update to check script checksudolog.ksh to display the incorrect permissions, if the permissions are not set correctly.
  • Update to check script checksnalevel.ksh to provide a more descriptive output.
  • Update to check script checkopensshlevel.ksh to provide a more descriptive output.
  • Update to check script checkhomedirs.ksh to check for the existance of users using the id command instead of looking at /etc/passwd, in case user accounts are defined elsewhere, like through LDAP.
  • Update to check script checklspvl.ksh to also display if a volume group is not varied on.
  • New check script checkhphsvpathsstate.ksh to run HP StorageWorks hsvpaths command to check the state of the HSV IO paths.
  • Update to check script checkcaalscluster.ksh to indicate if command lscluster is not present on the system.
  • Update to check script checkbootptab.ksh to indicate if no entries in /etc/bootptab are present.
  • Update to check script checkaiooa.ksh to indicate if the aioo command is not present on the system.
  • Update to the description of check script checkvmmklockmode.ksh to remove a typo.
  • Update to check script checkvarspoolmqueue.ksh to change the find command from ctime to mtime, to allow to find more old files in /var/spool/mqueue.
  • Update to check script checkcrontabs.ksh to check for the existance of users using the id command instead of looking at /etc/passwd, in case user accounts are defined elsewhere, like through LDAP.
  • Update to check script checkmailboxowners.ksh to check for the existance of users using the id command instead of looking at /etc/passwd, in case user accounts are defined elsewhere, like through LDAP.
  • Update to check script checkgnutar.ksh to use the rpm command to determine the version of GNU tar, instead of tar itself, which aids to avoid reporting errors, if required libraries for the tar command are missing.
  • Update to check script checkfreespaceinfs.ksh to avoid reporting the root file system multiple times if a file system is not mounted.
  • Update to check script checktotalsan.ksh to include HP 3PAR storage.
  • New check script checkldapcfg.ksh to display the contents of /etc/security/ldap/ldap.cfg, if present.
Version: v16.12.05
  • New check script checklibpng.ksh to check if the libpng RPM is installed, and if so, if the latest version, version 1.6.21, is installed.
  • New check script checklibtiff.ksh to check if the libtiff RPM is installed, and if so, if the latest version, version 3.8.2, is installed.
  • New check script checklibpaper.ksh to check if the libpaper RPM is installed, and if so, if the latest version, version 1.1.24, is installed.
  • New check script checklibjpeg.ksh to check if the libjpeg RPM is installed, and if so, if the latest version, version 6b, is installed.
  • Update to check script checkcups.ksh to check if the latest version of cups, version 2.0.2, is installed.
  • Update to check script checkless.ksh to check if the latest version of less, version 482, is installed.
  • Update to check script checkhttpd.ksh to check if httpd is installed, and if so, if the RPM or fileset version is used, and if not both are installed at the same time.
Version: v16.12.04
  • Update to check script checkgzip.ksh to check if the latest version of gzip is installed, version 1.6.
  • Update to check script checkenscript.ksh to check if the latest version of enscript is installed, version 1.6.1.
  • Update to check script checkbash.ksh to check for the latest version of bash to be installed, version 4.3.30.
  • Update to check script checkzip.ksh to check if the latest version of unzip is installed, version 3.0.
  • Update to check script checkunzip.ksh to check if the latest version of unzip is installed, version 6.0.
  • Update to the description of check script checkinetdcommands.ksh to add that the check script also checks for commands in /etc/inetd.conf owned by others than user root.
  • Update to check script checkcurl.ksh to check for the latest version of curl, version 7.44.
  • Update to check script checkbootlist.ksh to check for entries in the bootlist that consist of a single dash.
  • Update to check script checkuserpassword.ksh to not report for user root, as check script checkrootpassword.ksh does the same.
  • Update to check script checknpivdiskattr.ksh to no longer report on incorrect queue depth setting, because check script checkqueuedepth.ksh does the same.
  • Update to check script checkpgsp.ksh to avoid reporting on a un-mirrored paging space, if NPIV is used.
  • Update to check script checkwget.ksh to improve the reporting of the wget version installed.
  • Update to check script checkuserlength.ksh to avoid reporting on entries in /etc/passwd that start with a plus sign.
  • Update to check script checkuserchars.ksh to avoid reporting on entries in /etc/passwd that start with a plus sign.
  • Update to check script checkuidunique.ksh to avoid reporting on entries in /etc/passwd that start with a plus sign.
  • Update to check script checksuid.ksh to avoid reporting on coreutils commands /usr/opt/freeware/bin/sudo and /usr/opt/freeware/bin/su.
  • New check script checklibstdc.ksh to check if the correct level of libstdc++ RPM is installed.
  • New check script checklibgcc.ksh to check if the correct level of libgcc RPM is installed.
  • New check script checkgmp.ksh to check if the correct level of gmp RPM is installed.
  • New check script checkcoreutils.ksh to check if the correct level of coreutils RPM is installed.
  • Update to check script checkrootvgevendisks.ksh to avoid reporting on a single disk in rootvg, if NPIV is used.
  • Update to check script checkrootvgdisks.ksh to avoid reporting on a single disk in rootvg, if NPIV is used.
  • Update to check script checknfssoft.ksh to avoid reporting on a lost+found folder.
  • Update to check script checknfsnosuid.ksh to avoid reporting on a lost+found folder.
  • Update to check script checkmkuserdefault.ksh to also display current entries in /etc/security/mkuser.default, if they aren't set as default.
  • Update to check script checklsoflevel.ksh to check for the latest lsof version available.
  • Update to check script checkhomedirs.ksh to avoid reporting on entries in /etc/passwd that start with a plus sign.
  • Update to check script checkgroupconsistency.ksh to avoid reporting entries that aren't being checked by the grpck command.
  • Update to check script checkgnutar.ksh to check for the latest GNU tar version to be installed, version 1.22, which can be found in the IBM AIX Toolbox for Linux applications.
  • Update to check script checkgidbelow100.ksh to avoid checking entries that start with a plus sign.
Version: v16.12.03
  • Update to check script checkgecos.ksh to avoid reporting on entries in /etc/passwd that start with a plus sign.
  • Update to check script checkfsvsetcfilesystems.ksh to avoid reporting on NFS file systems if automountd is active.
  • Update to check script checkcleanetc.ksh to also check for old copies of the rc.nfs file.
  • Update to check script checkblankpassword.ksh to avoid entries in /etc/passwd that start with a plus sign.
  • Update to check script checkauthconsistency.ksh to avoid reporting entries that are ignored by pwdck.
Version: v16.12.02
  • Update to the description of check script checkxivhakvsnoxivdevices.ksh to add additional information on how to uninstall the XIV host attachment kit, if necessary.
  • Update to check script checkvarspoollpdperms.ksh to correctly recommend the permissions for /var/spool/lpd.
  • Update to check script checkusrsbinumountperms.ksh to correctly recommend the permissions for /usr/sbin/umount.
  • Update to check script checkusrsbinpingperms.ksh to correctly recommend the permissions for /usr/sbin/ping.
  • Update to check script checkusrsbinmountperms.ksh to correctly recommend the permissions for /usr/sbin/mount.
  • Update to check script checkusrbinpsperms.ksh to correctly recommend the permissions for /usr/bin/ps.
  • Update to check script checkusrbinchownperms.ksh to correctly recommend the owner for /usr/bin/chown.
  • Update to check script checksystemfirmwarelevel.ksh to allow the script to work correctly on Power7 blades.
  • Update to check script checkoslevel.ksh to recommend updating to technology level 4, if on AIX version 7.1.
  • Update to check script checkdevscan.ksh to check for the latest version of the devscan tool to be installed (version 1.22).
  • Update to check script checksudoversion.ksh to check for a newly released version of sudo, version 1.8.15.
  • New check script checkzlib.ksh to check if the correct level of zlib RPM is installed.
  • New check script checkbzip2.ksh to check if the correct level of bzip2 RPM is installed.
  • Update to check script checkgettext.ksh to check for a newly released version of gettext, version 0.19.7.
  • Update to check script checkopenssllevel.ksh to check for a newly released version of OpenSSL, version 1.0.2.1000. Please note that version 1.0.1 of OpenSSL is moving out of support in January 2017.
  • Update to check script checkopensshlevel.ksh to check for a newly released version of OpenSSH, version 6.0.0.6202.
  • Update to check script checkwget.ksh to check for a newly released version of wget, available in the AIX Toolbox for Linux applications (version 1.17.1).
  • Update to check script checksudoersusers.ksh to avoid reporting an error on non-existing groups if groups are defined through LDAP.
  • Update to check script checksrcmstractive.ksh to avoid reporting multiple srcmstr processes, if that's not true.
  • Update to check script checknpivdiskattr.ksh to display any incorrect disk queue depth settings.
  • Update to check script checkhomesize.ksh to avoid reporting an error if file system /home does not exist.
  • Update to check script checkhomefilesystem.ksh to better test for the existance of the /home file system.
  • Update to check script checkhomefs.ksh to also display the current permissions of /home if those need to be updated.
  • Update to check script checkdevsrcunixperms.ksh to correct a command to determine the correct permissions of the /dev/.SRC-unix folder.
  • Update to check script checkrperf.ksh to account for newly updated rperf script (version 33) as released by IBM.
  • Update to several check scripts that guess passwords of users to add possible passwords to search for.
Version: v16.12.01
  • Update to the description of check script checkenv.ksh to correct a typo and add additional information.
  • Update to check script checkcpuspeed.ksh to allow for more different commands to determine the correct CPU speed.
Version: v16.11.30
  • Update to check script checkpowerhalevel.ksh to account for newly release PowerHA Service Packs.
Version: v16.11.29
  • Update to check script checkall.ksh to remove a typo.
Version: v16.11.01
  • Update to check script checksystemfirmwarelevel.ksh for updated Power7+ and Power8 firmware levels.
Version: v16.10.24
  • New check script checklvlabel.ksh to check if there is a label configured for all logical volumes defined for file system usage.
Version: v16.10.17
  • Update to check script checksystemgroup.ksh to check if the group exists without any users, before checking further, to avoid unneccessary errors.
Version: v16.10.14
  • Update to checktmpexecutables.ksh to report a warning if any executables are found in /tmp or /var/tmp.
  • Update to check script checktmout.ksh to avoid generating an error when TMOUT is not set at all.
  • New check script checkgidunique.ksh to check if all GIDs are unique.
  • Update to check script checketcpasswdpasswords.ksh to remove a typo in the awk command.
  • New check script checkuidzeropassword.ksh to check if we can guess any passowrds of users with uid zero, excluding root.
  • Update to the description of check script checkuserpassword.ksh to remove a typo.
Version: v16.10.13
  • Update to check script checkall.ksh to allow for nicer txt output.
Version: v16.10.12
  • Update to check script checkusershell.ksh to allow it to generate an error if an invalid shell is found.
  • Update to the category of check script checkusrbincron.ksh to also add it to the scheduling category.
  • Update to the description of check script checkusersloggedonlongtime.ksh to correct some typos.
Version: v16.10.11
  • Update to the category of check script checknoatime.ksh to also add it to the performance category.
  • Update to check script checksudoersgroups.ksh to match exact group IDs and to improve the output.
  • Update to check script checkall.ksh to ensure errors are printed even though a check script that is being run does not generate any standard output itself.
Version: v16.10.07
  • New check script checkusrbincpioperms.ksh to check the permissions of /usr/bin/cpio.
  • New check script checkusrbinenvperms.ksh to check the permissions of /usr/bin/env.
  • New check script checkusrbindfperms.ksh to check the permissions of /usr/bin/df.
  • New check script checkusrbindateperms.ksh to check the permissions of /usr/bin/date.
  • New check script checkusrbincutperms.ksh to check the permissions of /usr/bin/cut.
  • New check script checkusrbinchgrpperms.ksh to check the permissions of /usr/bin/chgrp.
  • New check script checkusrbinbasenameperms.ksh to check the permissions of /usr/bin/basename.
  • New check script checkusrbinddperms.ksh to check the permissions of /usr/bin/dd.
  • New check script checkusrbinechoperms.ksh to check the permissions of /usr/bin/echo.
  • New check script checkusrbinfindperms.ksh to check the permissions of /usr/bin/find.
  • New check script checkusrbinhostnameperms.ksh to check the permissions of /usr/bin/hostname.
  • New check script checkusrbinkillperms.ksh to check the permissions of /usr/bin/kill.
  • New check script checkusrbinlnperms.ksh to check the permissions of /usr/bin/ln.
  • New check script checkusrbinlsperms.ksh to check the permissions of /usr/bin/ls.
  • New check script checkusrbinpsperms.ksh to check the permissions of /usr/bin/ps.
  • New check script checkusrbinpwdperms.ksh to check the permissions of /usr/bin/pwd.
  • New check script checkusrbintarperms.ksh to check the permissions of /usr/bin/tar.
  • New check script checkusrbintouchperms.ksh to check the permissions of /usr/bin/touch.
  • New check script checkusrsbinmountperms.ksh to check the permissions of /usr/sbin/mount.
  • New check script checkusrsbinumountperms.ksh to check the permissions of /usr/sbin/umount.
  • New check script checkusrsbinpingperms.ksh to check the permissions of /usr/sbin/ping.
  • Update to check script checketcrcdperms.ksh to avoid an error if folder /etc/rc.d does not exist.
  • Update to check script checketcrcdrcperms.ksh to also check if file /etc/rc.d/rc exists.
  • Update to check script checketcshellsperms.ksh to also check if file /etc/shells exists.
  • Update to check script checkprotocolsperms.ksh to also check if file /etc/protocols exists.
  • Update to check script checkscpperms.ksh to recommend a stricter setting for permissions to /usr/bin/scp.
  • Update to check script checksecurityperms.ksh to also recommend running commands if permissions are incorrectly set.
  • Update to check script checkservicesperms.ksh to also check if file /etc/services exists.
  • Update to check script checksrcmstractive.ksh to check for multiple instances of srcmstr running.
  • Update to check script checkmaxuproc.ksh to avoid recommending a change to maxuproc when it is set appropriately.
  • Update to check script checkpgspsize.ksh to remove a redundant character in the output.
Version: v16.10.06
  • New check script checkusrbinegrepperms.ksh to check the permissions of /usr/bin/egrep.
  • New check script checkvarspoollpdperms.ksh to check the permissions of /var/spool/lpd.
  • New check script checkusrbintailperms.ksh to check the permissions of /usr/bin/tail.
  • New check script checkusrbinrmdirperms.ksh to check the permissions of /usr/bin/rmdir.
  • New check script checkusrbinchownperms.ksh to check the permissions of /usr/bin/chown.
Version: v16.10.04
  • Update to check script checksudoversion.ksh to check for the correct latest version of sudo 1.6.9p23 to be installed on the system.
  • Update to check script checkdevsrcperms.ksh to recommend rebooting the server if /dev/SRC is missing.
  • New check script checkinodeusage.ksh to check the inode usage of all file systems.
  • New check script checkdevsrcunixperms.ksh to check the permissions of /dev/.SRC-unix.
  • Update to check script checkinittaberrs.ksh to improve reporting of potential errors discovered.
Version: v16.10.03
  • Update to check script checkinittabperms.ksh to also check if file /etc/inittab exists.
Version: v16.09.27
  • Update to the description of check script checkopennfsexports.ksh to provide more information.
Version: v16.09.26
  • Update to check script checketcntpconfperms.ksh to correct a typo in the output.
Version: v16.09.12
  • Update to check script checkoslevel.ksh for recomendations of Service Pack levels for AIX 7.1.
  • Update to check script checkskulker.ksh to prevent listing more than 100 entries of files to be removed.
  • Update to check script checkvarspoolfiles.ksh to prevent listing correct files as unusual.
Version: v16.09.09
  • Update to check script checkall.ksh to ensure the installation folder of checkall.ksh can be written to, as well as ensuring that temporary files being generated are host specific, so the script can be run from multiple servers using a NFS share.
  • Update to check script checkftpanonymous.ksh to change localhost to 127.0.0.1, to prevent issues if localhost does not resolve to 127.0.0.1.
  • Update to check script checkopennfsexports.ksh to change localhost to 127.0.0.1, to prevent issues if localhost does not resolve to 127.0.0.1.
Version: v16.09.07
  • Update to check script checkall.ksh to correct an issue with HTML output in Microsoft Outlook.
  • New check script checkusrsbinfbcheckperms.ksh to check the permissions of /usr/sbin/fbcheck.
  • New check script checklocalhost.ksh to check if localhost resolves to 127.0.0.1.
  • Update to check script checkresolvconf.ksh to allow options that are available in /etc/resolv.conf since AIX 6.1.
  • Update to check script checksambaactive.ksh to improve the output of the script.
  • Update to check script checksambalevel.ksh to check for the latest version of Samba (4.3.8).
  • Update to check script checksendmailsmtpconnection.ksh to allow for a different response from the SMTP server.
  • Update to check script checksystemfirmwarelevel.ksh to allow it to work properly on Power7 systems.
  • Update to check script checktuncheck.ksh to check if /usr/sbin/tuncheck is executable before running it.
  • New check script checkusrsbintuncheckperms.ksh to check the permissions of /usr/sbin/tuncheck.
  • Update to check script checkuserprofile.ksh to avoid reporting errors on .profile files when a system uses the same home directory for multiple users.
Version: v16.08.15
  • Update to check script checkipaddress.ksh to avoid checking for tsm in the hostname.
  • Update to check script checktsmfilesystems.ksh to avoid the script from hanging when TSM is not fully configured.
  • Update to check script checktsminclexcl.ksh to avoid the script from hanging when TSM is not fully configured.
Version: v16.08.08
  • Update to check script checksystemfirmwarelevel.ksh to account for newly release system firmware updates from IBM.
Version: v16.07.12
  • New check script checkvarspoolfiles.ksh to check for unusual files in /var/spool/lpd/pio/@local.
Version: v16.07.01
  • Update to check script checkcoredumps.ksh to find core dumps older than 7 days as well.
Version: v16.06.30
  • Update to check script checkhistfile.ksh to correct a typo in a comment.
Version: v16.05.18
  • Update to check script checkdirsworldwriteable.ksh to filter out duplicate entries.
  • Update to check script checksystemfirmwarelevel.ksh to account for newly released system firmware levels for Power6, Power7, Power7+ and Power8 systems.
  • Update to check script checkpowerhalevel.ksh due to a new Service Pack being released by IBM for PowerHA 7.2.
  • Update to check script checkoslevel.ksh due to new Service Packs having been released by IBM for AIX 6.1, AIX 7.1 and AIX 7.2.
  • Update to check script checkopenssllevel.ksh due to a new release of OpenSSL 1.0.2.500.
Version: v16.03.23
  • Update to check script checkpowerhalevel.ksh to reflect new available PowerHA fix pack levels and support life cycle dates for various PowerHA levels.
Version: v16.03.03
  • Update to check script checkopenssllevel.ksh to recommend the latest level of OpenSSL, version 1.0.1.515.
Version: v16.02.23
  • New check script checkhomefilesystem.ksh to check if /home is a separate file system.
Version: v16.02.19
  • Update to the description of check script checkhostnamelocalhost.ksh to remove an unnecessary word.
  • Update to check script checketcntpconfperms.ksh to allow for updated permission settings in AIX 7.1 for /etc/ntp.conf.
Version: v16.02.12
  • Update to the description of check script checkauthconsistency.ksh to display the commands used.
  • Update to check script checkoslevel.ksh to add comments when an upgrade to AIX 7 is required, along with updating the description of the check script.
  • Update to check script checkvgautosync.ksh to correct the command used to enable the autosync feature for a volume group.
Version: v16.02.08
  • Update to check script checkasosyslog.ksh to reduce the number of error messages presented when multiple syslog keywords are missing for ASO entries in /etc/syslog.conf.
  • Update to check script checksockthresh.ksh to add a missing quotation mark.
  • Update to check script checknumlockspersemid.ksh to change the recommendation for the vmo command to be run using the -r option, considering this is a restricted tunable.
  • Update to the description of check script checklspath.ksh to correct a typo.
Version: v16.01.25
  • Update to check script checkdefaultusersettings.ksh to bring the user default settings recommendations in line with the medium level of security recommende by AIXpert.
  • New check script checklogindelay.ksh to check if the logindelay feature has been enabled on the system, and is set to at least 5.
  • New check script checklogindisable.ksh to check if the logindisable feature has been enabled and set to 10 on the system.
  • New check script checklogininterval.ksh to check if the logininterval feature has been enabled on the system, and is set to 60 seconds.
  • New check script checkloginreenable.ksh to check if the loginreenable feature has been enabled on the system, and is set to 30 mintues.
  • New check script checksockthresh.ksh to check the current setting of the network option sockthresh.
Version: v16.01.21
  • Update to check script checkgecos.ksh to provide a better message when an issue with the GECOS field of a user is detected.
Version: v16.01.19
  • Update to check script checklsof.ksh to correctly handle a new way that the which command reports the existance of the lsof binary on AIX 7.2.
  • Update to check script checkmotdperms.ksh to allow alternative permissions of the /etc/motd file as well.
  • Update to check script checkoslevel.ksh to allow for checking the OS level on AIX 7.2.
  • Update to check script checkoslevel.ksh to check for the correct Service Pack of AIX 7.1 TL4.
  • Update to check script checkperlversion.ksh to allow for checking the version of Perl on AIX 7.2, which uses a new way to display the version level.
  • Update to check script checkpowervsaix.ksh to check the correct hardware in use for AIX 7.2.
Version: v16.01.15
  • Update to check script checkdictionlist.ksh to update the comment given in the script to display the correct dictionary file if not the default is used.
Version: v16.01.08
  • Update to check script checkall.ksh to discover the new IBM Power8 E850 system properly.
  • Update to all check scripts to update the copyright message for 2016.
  • Update to check script checkrperf.ksh to update the version to version 32 of the script.
  • Update to the description of check script checkbootlist.ksh to indicate how the normal boot list can be set correctly.
  • Update to check script checkall.ksh to handle single quotes in HTML output in Outlook 2013 correctly.
  • Update to the description of check script checkfirefoxlevel.ksh to include instructions on how to uninstall Firefox.
Version: v15.12.15
  • Update to check script checkall.ksh to properly handle angle brackes in the DESCRIPTIONS file.
Version: v15.11.12
  • Update to check script checkjavalevels.ksh to redirect errors of the lslpp command to /dev/null in case Java is not installed, to avoid generating an error message.
  • New check script checkvmmklockmode.ksh to check if vmo option vmm_klock_mode is set to 2, meaning if kernel data locking has been enabled.
Version: v15.11.11
  • Update to the description of check script checklspath.ksh to include information on how to remove any missing paths.
  • Update to the description of check script checkmissingowners.ksh to add a folder to the command to change ownership of certain files that do not have a correct owner and group set after a default AIX 7.1 TL3 SP4 installation.
  • Update to check script checkexcluderootvg.ksh to avoid generating errors if file /etc/exclude.rootvg does not exist.
Version: v15.11.10
  • New check script checkvgautosync.ksh to check if auto sync has been enabled for volume groups.
Version: v15.11.09
  • Update to check script checksystemfirmwarelevel.ksh to recommend newly released system firmware levels for Power6, Power7 and Power8 systems.
  • New check script checkpagestealmethod.ksh to check if vmo option page_steal_method is set to 1 (default).
  • New check script checknumlockspersemid.ksh to check if vmo option num_locks_per_semid is set to 1 (default).
  • Update to check script checklvmbufcnt.ksh to alert as well if lvm_bufcnt is set higher than the default.
Version: v15.11.05
  • New check script checktcpnewreno.ksh to check if network option tcp_newreno is enabled (set to 1).
  • Update to check script checkdirsworldwriteable.ksh to improve the damocles function.
  • Update to check script checkcoredumps.ksh to improve the damocles function.
  • Update to check script checkcrout.ksh to improve the damocles function.
  • Update to check script checkdevicefilesoutsidedev.ksh to improve the damocles function.
  • Update to check script checkdsmerrorlog.ksh to improve the damocles function.
  • Update to check script checkenq.ksh to improve the damocles function.
  • Update to check script checkmissingowners.ksh to improve the damocles function.
  • Update to check script checksuid.ksh to improve the damocles function.
Version: v15.11.02
  • Update to the description of check script checboscontentlist.ksh to better explain the reason for installing fileset bos.content_list on an AIX system.
  • Update to check script checkextendedhistory.ksh to add a check if EXTENDED_HISTORY has been defined in /etc/profile instead of /etc/environment.
  • Update to check script checkhistfile.ksh to add a check for both /etc/environment and /etc/profile for the HISTFILE variable.
Version: v15.10.27
  • Update to check script checkprocessnumber.ksh to correct an error in the comments of the script.
  • Update to check script checkprocesslist.ksh to correctly exclude the script itself from the process list.
Version: v15.10.26
  • Update to check script checkall.ksh to improve output if certain filesets are not installed required for running UNIX Health Check for AIX.
Version: v15.10.15
  • Update to check script checkhiperapars.ksh to allow it to work on both AIX and VIOS systems.
  • Update to check script checklostfoundfolder.ksh to check if the mount point itself is available before reporting any missing lost+found folder.
  • Update to check script checkmailboxowners.ksh to avoid reporting duplicate mailbox issues.
  • Update to check script checkauthorizedkeysdups.ksh to improve the output reported.
  • Update to check script checksudoersduplicates.ksh to correctly handle sed commands.
  • Update to check script checkauthorizedkeysdupsoracle.ksh to improve the output reported.
Version: v15.10.13
  • New check script checkpythonlevel.ksh to check if the correct level of Python RPM is installed.
Version: v15.10.12
  • Update to check script checksudoersduplicates.ksh to correct a minor issue that prevents reporting duplicate entries in the /etc/sudoers file.
Version: v15.10.06
  • Update to check script checksudoersdefaults.ksh to also check for the default logfile setting in /etc/sudoers.
Version: v15.10.02
  • New check script checksudoerrors.ksh to check for any errors reported by the sudo command.
Version: v15.09.24
  • Update to check script checksudoerspermissions.ksh to display the correct output if any wrong permissions are discovered.
Version: v15.09.10
  • New check script checkhiperapars.ksh to check if the system has the correct APARs installed.
  • New file APARS to include an overview of all APARs released by IBM. The source of this file is http://www-304.ibm.com/webapp/set2/flrt/doc?page=aparCSV.
  • New check script checkemgrreboot.ksh to check if any interim fixes have been installed that require a reboot, and the system has not been rebooted yet.
  • Update to check script checkopensshlevel.ksh to recommend to upgrade to level 6.0.0.6201, if not installed, per CVE-2015-5352.
Version: v15.08.25
  • New check script checkpowerhahosts.ksh to check if /etc/hosts on both nodes of a PowerHA cluster contain the same entries.
  • Update to check script checketcmailsendmailcfperms.ksh to allow stricter permissions for /etc/mial/sendmail.cf.
  • Update to check script checkcrontabcommands.ksh to ignore crontab commands that are in non-root crontab files, but are owned by user root.
Version: v15.08.23
  • Update to check script checkcaalscluster.ksh to correct an issue with the echo commands in the script.
  • Update to check script checktapedrives.ksh to redirect any errors of the mt command to /dev/null.
Version: v15.08.20
  • Update to check script checklostfoundfolder.ksh to include a chmod command when creating a new lost+found folder.
Version: v15.08.10
  • New check script checkkrb5confperms.ksh to check the permissions of /etc/krb5.conf.
  • New check script checkkrb5conf.ksh to display the contents of /etc/krb5.conf for Kerberos authentications, if the file exists.
  • Update to check script checkpowerhacrontabs.ksh to identify the crontab file name as well that has any differences between the nodes of a cluster.
Version: v15.08.09
  • Update to check script checkcleanetc.ksh to correctly report any tar files in /etc/security.
  • Update to the description of check script checksyslogrotate.ksh to ensure that syslogd is refreshed after making changes to /etc/syslog.conf.
  • Update to check script checkusersettingsvsdefault.ksh to identify and report the user name besides the user-id, if an issue has been detected.
Version: v15.08.07
  • New check script checksyslogrotate.ksh to check if syslog files are rotated automatically.
Version: v15.07.30
  • New check script checkxivsyslist.ksh to display the output of the xiv_syslist command.
  • New check script checkxivhakvsnoxivdevices.ksh to check if the XIV Host Attachment Kit is installed, but no XIV devices have been attached.
  • New check script checkxivhaklevel.ksh to check the level of the XIV Host Attachment Kit installed.
  • New check script checkxivfcadminwwpn.ksh to display the world-wide port number (WWPN) of host bus adapters (HBAs) installed on this host and recognized by the XIV Host Attachment Kit.
  • New check script checkxivfcadminstoragesystem.ksh to display the details of the XIV storage systems that are currently attached via Fibre Channel through the XIV Host Attachment Kit.
  • New check script checkxivdevlist.ksh to display the output of the xiv_devlist command.
  • New check script checkxivdevlisterrors.ksh to check for any errors reported by the xiv_devlist command.
  • New check script checkmanagediskdrivers.ksh to display the output of the manage_disk_drivers command to list all the storage families and their supported drivers.
  • Update to check script checktotalsan.ksh to properly detect both 2810 and 2812 XIV devices.
Version: v15.07.29
  • Update to check script checketcntpconfperms.ksh to allow for the owner and group of /etc/ntp.conf to be set to padmin.staff instead of root.system on a VIOS.
  • Update to check script checketcsecuritylogincfgperms.ksh to recommend slightly different permissions for file /etc/security/login.cfg on a VIOS.
  • Update to check script checkntpoffset.ksh to redirect the output of the ntpq command to /dev/null in case a NTP server does not respond, to avoid errors being reported.
  • Update to check script checkexcluderootvg.ksh to also check for duplicate entries in /etc/exclude.rootvg.
Version: v15.07.28
  • Update to check script checkmirror.ksh to allow it to work correctly if more than 2 mirror copies of logical volumes exist.
Version: v15.07.27
  • Update to check script checkvarsize.ksh to recommend a size of at least 5 GB for file system /var.
Version: v15.07.24
  • Update to check script checkfcslink.ksh to correct a programming issue.
Version: v15.07.22
  • Update to check script checkfcslink.ksh to test properly if any fcstat command has provided a link speed.
  • Update to check script checksuid.ksh to exclude file /opt/nimsoft/probes/system/cdm/aix_mem5x_64 from checking for the SUID bit.
  • New check script checkvarlogaso.ksh to check the size of the /var/log/aso folder.
  • New check script checkasosyslog.ksh to check the syslog entries for the Active System Optimizer (ASO).
  • Update to check script checkusernopassword.ksh to recommend to set a password for the oracle and mqm account, if that is not set.
Version: v15.07.21
  • Update to check script checketchosts.ksh to improve checking for the localhost address.
Version: v15.07.14
  • Update to check script checkopenssllevel.ksh to recommend the latest OpenSSL level available for AIX, v1.0.1.514.
Version: v15.07.13
  • Renamed check script checkfailedlogin.ksh to checkfailedloginperms.ksh.
  • Renamed check script checkwtmp.ksh to checkvaradmwtmpperms.ksh.
Version: v15.07.12
  • New check script checkcifsnodename.ksh to check if the nodename for any CIFS file system can be pinged.
  • New check script checkcifsaccess.ksh to check if any CIFS mounted file systems can be accessed.
Version: v15.07.08
  • Update to check script checkgangliagmondlevel.ksh to check if the latest level of Ganglia is installed.
  • Update to check script checkgangliagmondconf.ksh to check for multiple locations of the gmond.conf file of Ganglia.
  • Update to check script checkgangliagmetadlevel.ksh to check if the latest level of Ganglia is installed.
  • Update to check script checkgangliagmetadconf.ksh to check for multiple locations of the gmetad.conf file of Ganglia.
  • New check script checksendmailsmtpconnection.ksh to check if a connection can be made to the SMTP server defined for Sendmail.
Version: v15.07.07
  • New check script checksddpcmwwpn.ksh to check for unique WWPNs when SDDPCM is used.
  • New check script checksddwwpn.ksh to check for unique WWPNs when SDD is used.
Version: v15.06.03
  • New check script checklinklocal.ksh to display any link-local network addresses configured.
Version: v15.05.29
  • Update to check script checkmailboxowners.ksh to improve the output of the script and provide the necessary commands for resolving issues.
  • New check script checketcmailsendmailcfperms.ksh to check the permissions of /etc/mail/sendmail.cf.
  • New check script checketcmailperms.ksh to check the permissions of /etc/mail.
  • Update to check script checkvarspoolmqueue.ksh to also check for any old files in /var/spool/mqueue.
  • New check script checksendmailaliasesfile.ksh to check if the aliases file, as referred to in /etc/mail/sendmail.cf, exists.
Version: v15.05.28
  • New check script checkvarspoolmailperms.ksh to check the permissions of /var/spool/mail.
  • New check script checkvarspoolmail.ksh to check for any files or folders that don't belong in /var/spool/mail.
  • Update to check script checkrperf.ksh to update to version 30, including the newly released Power8 850.
  • New check script checksddpcmdeviceclosefailed.ksh to check if any paths of SDDPCM devices are in CLOSE_FAILED status.
Version: v15.05.27
  • New check script checkvcsgroups.ksh to check the status of the resource groups managed by Veritas Cluster.
Version: v15.05.13
  • New check script checkntpoffset.ksh to check if the offset of ntp servers is too large.
  • Update to check script checkfcslink.ksh to avoid reporting an unknown link state of IBM blades when there is a running port speed available.
Version: v15.05.12
  • Update to check script checkrperf.ksh to correct an issue with the rPerf calculation.
  • Update to check script checkvmmmpsizesupport.ksh to correct an issue with detecting the correct OS level.
Version: v15.05.11
  • Update to check script checkrperf.ksh to update to version 26.
Version: v15.05.06
  • New check script checketcsecurityprofileperms.ksh to check the permissions of /etc/security/.profile.
  • Update to check script checksuid.ksh to exclude file /etc/cluster/ahafs from checking.
Version: v15.05.05
  • Update to check script checkbash.ksh to correct an issue with determining very old levels of Bash.
  • Update to the description of check script noatime.ksh to correct a typo.
  • Update to check script checkusersettingsvsdefault.ksh to exclude reporting user imnadm.
  • New check script checkdocsearchimnadm.ksh to check if user imnadm is present, while no docsearch filesets are installed.
  • Update to check script checkentitlement.ksh to correct an error when run on an old Power5 system that does not display CPU entitlement.
Version: v15.05.04
  • Update to check script checklibpathperiod.ksh to improve the checking for a period in the $LIBPATH environment variable.
  • Update to check script checkpowerhalevel.ksh to recommend Service Pack 15 for PowerHA 6.1, released by IBM on April 27, 2015.
  • Update to check script checkwritesrv.ksh to correct an error with discovery of the status of the lpd and writesrv daemons.
Version: v15.05.03
  • Update to check script checksuid.ksh to exclude /etc/oracle/setasmgid from the check script.
  • Update to check script checkusersloggedonlongtime.ksh to avoid reporting the same user twice.
Version: v15.05.01
  • Update to check script checkpowerhausers.ksh to correct the name of the script in the script.
  • Update to the description of check script checklppchkf.ksh to indicate that errors may be caused by the installation of ifixes on the system.
  • Update to check script checkpathfolders.ksh to update the category of the script.
  • Update to check script checklibpathfolders.ksh to update the category of the script.
  • Update to check script checkusernopassword.ksh to redirect any errors of the lsuser account to /dev/null to avoid reporting errors when user accounts are being modified while the script is run.
  • New check script checktsmdsmfiles.ksh to check if dsm.opt or dsm.sys files are present when no TSM software is installed.
  • New check script checkcaaservices.ksh to check if the correct entries are present in /etc/services for Cluster Aware AIX.
  • New check script checkcaainetdconf.ksh to check if the correct entry is present in /etc/inetd.conf for Cluster Aware AIX.
  • New check script checkcaainittab.ksh to check if the correct entry is present in /etc/inittab for Cluster Aware AIX.
  • New check script checkcaanoreserve.ksh to verify that the disk that is used as the repository disk is set to reserve_policy = no_reserve.
  • New check script checkpowerhacustomver.ksh to check if any commands for custom methods exist.
  • New check script checkpowerhahacmpfcfile.ksh to check if an old HACMP file collection exists that can be removed in PowerHA 7.1 and up.
  • New check script checkpowerhamulticast.ksh to Check if multicast network connectivity is available to PowerHA 7.1.
  • Update to check script checkjfs2snapshotsinvalid.ksh to redirect any errors of the snapshot command to /dev/null, to avoid reporting errors when a filesystem does not exist, but is known in /etc/filesystems.
  • Update to check script checkmemoryutilization.ksh to provide a more descriptive output.
Version: v15.04.30
  • New check script checkcaalscluster.ksh to display the output of the lscluster command when a CAA cluster is present.
  • Update to checkall.ksh to correct the reporting of the installed PowerHA level, as certain PowerHA Service Packs do not update the cluster.es.server.rte fileset level.
  • Update to check script checklvcb.ksh to exclude CAA volume group caavg_private from checking.
  • Update to check script checkunusedlv.ksh to exclude CAA volume group caavg_private from checking.
Version: v15.04.29
  • New check script checkpowerhaipat.ksh to check the IPAT method used in a cluster, and recommend to use IPAT via Aliasing, if not used.
  • Update to check script checkpowerhaemgr.ksh to display the differences in installed fixes on both cluster nodes, if any.
  • Update to the description of check script checkpowerhasyncd.ksh to provide the command to change the syncd frequency.
  • Update to check script checkpowerharhosts.ksh to check for both IP addresses and host names in the cluster rhosts file.
  • Update to check script checkpowerhalevel.ksh to improve the cluster level determination.
Version: v15.04.28
  • Update to check script checksudocommands.ksh to check for the use of the #include and #includedir directives in /etc/sudoers.
Version: v15.04.25
  • Update to check script checksudocommandsexec.ksh to check for the use of the #include and #includedir directives in /etc/sudoers.
  • New check script checksudoersincludedir.ksh to check if any folders included in /etc/sudoers using the #includedir directive exist on the system.
  • New check script checksudoersinclude.ksh to check if any files included in /etc/sudoers using the #include directive exist on the system.
Version: v15.04.23
  • Update to check script checkhomefs.ksh to check if /home is a link to another folder.
  • Update to check script checkvsversion.ksh to recommend to be at least at level 6.0 of Veritas Cluster server.
Version: v15.04.21
  • Update to check script checkgroupconsistency.ksh to correct a typo in a awk command.
  • Update to check script checkuserconsistency.ksh to correct a typo in a awk command.
  • Update to check script checkauthconsistency.ksh to correct a typo in a awk command.
Version: v15.04.20
  • New check script checkfsdeviceandmountpoint.ksh to check if the device and mountpoint of all file systems exist.
  • New check script checksudoersgroups.ksh to check if any groups defined in /etc/sudoers aren't set to primary groups of users.
Version: v15.04.17
  • New check script checkunamea.ksh to display the system information by running the uname -a command.
  • Update to check script checkshowmount.ksh to correct a minor issue with the if-then-else statement.
  • Update to check script checkpathperiod.ksh to improve searching for a single dot in the $PATH variable.
Version: v15.04.08
  • Update to check script checkall.ksh to correct an issue with the calculation of the score.
Version: v15.04.07
  • Renamed check script checktsmerlogprusize.ksh to checktsmerrlogprusize.ksh.
Version: v15.04.06
  • Update to check script checkpowerhalevel.ksh to recommend Service Pack 3 for PowerHA 7.1.3.
Version: v15.04.03
  • New check script checkviosivmpartitions.ksh to display the partitions configured, when a system is managed by the IVM.
  • Update to check script checkhmc.ksh to indicate when a system is managed by the IVM instead of an HMC.
  • New check script checkbladeconsole.ksh to check if the console of an IBM blade is set to /dev/vty0.
  • New check script checkviosivmprofilebackup.ksh to check if a profile backup has been made recently on an IVM.
  • New check script checksyslogclusterlog.ksh to check if cluster.log references are present in /etc/syslog.conf, while no cluster software has been installed.
Version: v15.04.01
  • Update to several check scripts to check for any lspv and lsvg commands without the -L option that may hang if a lock is present on a volume group.
  • Update to check script checksudocommands.ksh to generate consistent type of output.
Version: v15.03.31
  • Update to check script checkall.ksh to update the website to unixhealthcheck.com in the comments of the script.
Version: v15.03.30
  • Update to check script checkemcodmlevel.ksh to recommend EMC ODM definitions 6.0.0.5.
  • Update to check script checkextendedhistory.ksh to check if $EXTENDED_HISTORY is already defined in the environment, before checking /etc/environment, as it may have been set in a different start up file.
  • Update to check script checkhistfile.ksh to check if $HISTFILE is set before testing further, in case $HISTFILE has been set in a different startup file.
  • Update to check script checkps1.ksh to check if $PS1 is set before testing further, in case $PS1 has been set in a different startup file.
  • Update to check script checksysdump.ksh to test if no primary or secondary system dump device has been set, and alert about it.
  • Update to check script checksysdumpmirror.ksh to stop testing if either the primary or secondary dump device has not been set at all.
Version: v15.03.29
  • Update to check script checkall.ksh to correct an issue with the demo version of UNIX Health Check for AIX.
Version: v15.03.27
  • New check script checketcpasswdoraclename.ksh to check if the name of user oracle is correct in /etc/passwd.
Version: v15.03.24
  • New check script checkpgspmismatch.ksh to check for any mismatches between the output of lsps -a and lsps -s.
Version: v15.03.21
  • Update to check script checkcrontabcommands.ksh to exclude for-do and while-do loops in crontab files from checking, to avoid errors in reporting.
  • Update to check script checkshells.ksh to avoid checking permissions of shells that are in fact links to other binaries.
  • Update to check script checksudocommands.ksh to avoid reporting an error on folders that end with a star in /etc/sudoers.
  • Update to check script checktsmsched.ksh to check for rc.tsm in /etc/inittab as well, as an alternative to starting the TSM scheduler or acceptor daemon from inittab.
Version: v15.03.20
  • New check script checketcntpconfperms.ksh to check the permissions of /etc/ntp.conf.
  • New check script checkvioshomepadminconfigntpconfperms.ksh to check the permissions of /home/padmin/config/ntp.conf on a VIOS.
  • Update to check script checkxntpd.ksh to check for duplicate entries in /etc/ntp.conf.
  • Update to check script checkxntpd.ksh to avoid an error when a duplicate driftfile or tracefile is present in ntp.conf.
  • Update to check script checkdnslookup.ksh to exclude checking any entries in /etc/resolv.conf that start with a semi-colon or a hash mark, as both of these entries are considered comments in /etc/resolv.conf.
  • Update to check script checkresolvconf.ksh to exclude checking any entries in /etc/resolv.conf that start with a semi-colon or a hash mark, as both of these entries are considered comments in /etc/resolv.conf.
  • Update to check script checkvnbserver.ksh to exclude checking any entries in /etc/resolv.conf that start with a semi-colon or a hash mark, as both of these entries are considered comments in /etc/resolv.conf.
  • Update to check script checkshowmount.ksh to exclude checking any entries in /etc/resolv.conf that start with a semi-colon or a hash mark, as both of these entries are considered comments in /etc/resolv.conf.
  • Update to check script checkresolvconf.ksh to check if nameserver entries are followed by a hostname, and search and domain entries are followed by a domain name in /etc/resolv.conf.
Version: v15.03.18
  • Update to check script checkftpanonymous.ksh to add an extra method to determine if anonymous FTP logins are possible on the system.
Version: v15.03.17
  • Update to check script checklostfoundfolder.ksh to also check for the permissions of the lost+found folder in each file system.
  • New check script checkdirsworldwriteable.ksh to check for any directories that are world-writeable.
  • New check script checkusrsbinsyslogdperms.ksh to check the permissions of /usr/sbin/syslogd.
  • New check script checkusrsbinrsyslogdperms.ksh to check the permissions of /usr/sbin/rsyslogd.
Version: v15.03.16
  • New check script checketcutmpperms.ksh to check the permissions of /etc/utmp.
  • New check script checketchostslpdperms.ksh to check the permissions of /etc/hosts.lpd.
  • New check script checkdevicefilesoutsidedev.ksh to check for any block of character device files that have been created outside /dev.
  • New check script checktmpexecutables.ksh to check for any executable files in /tmp and /var/tmp.
  • New check script checkpgspswapspaces.ksh to list the paging spaces by displaying /etc/swapspaces.
Version: v15.03.11
  • New check script checketcrsyslogconf.ksh to display the contents of /etc/rsyslog.conf, if rsyslog is installed.
  • New check script checketcrsyslogconfperms.ksh to check the permissions of /etc/rsyslog.conf, if the rsyslog RPM is installed on the system.
  • Update to check script checketcsyslogconfperms.ksh to check if both /etc/syslog.conf and /etc/rsyslog.conf do not exist, and if so, to generate an error.
Version: v15.03.08
  • New check script checktsmfilesystems.ksh to display the last backup dates of file systems in TSM.
  • New check script checktsminclexcl.ksh to display the included and excluded file systems and files for the TSM backup.
  • Update to check script checkpowerhalevel.ksh to recommend a new Service Pack level (SP8) for PowerHA 7.1.1, released by IBM on March 3, 2015.
  • Update to check script checkentitlement.ksh to check for a capped LPAR with high CPU load and available CPUs in the system, and if necessary recommend to make the LPAR uncapped or to increase the CPU entitlement.
  • New check script checkpowerhatopsvcs.ksh to run the lssrc -ls topsvcs command to display the cluster heartbeats.
Version: v15.03.06
  • Update to the description of checkftplogging.ksh to make clear how to add the -l option to the ftpd entry in /etc/inetd.conf.
  • Renamed check script checkgnupg.ksh to checkgnupglevel.ksh for naming consistency.
  • Update to check script checkgnupglevel.ksh to recommend a new level of GnuPG which is available.
  • Update to the description of check script checksanpvid.ksh to provide information how to assign a PVID to a disk.
Version: v15.03.04
  • Update to check script checkresolvconf.ksh to check if there are at least 2 name server entries in /etc/resolv.conf.
  • Update to check script checketcsyslogconfperms.ksh to recommend to remove read access for /etc/syslog.conf for others.
Version: v15.03.03
  • Update to check script checksyslogfiles.ksh to test if a syslog destination is a file and not a directory.
Version: v15.02.27
  • Update to check script checksystemfirmwarelevel.ksh to recommend newly available firmware levels for Power6 and Power7 systems.
  • New check script checkviosnpivvfchostnotmapped.ksh to check for any vfchost adapters not currently mapped to a physical adapter.
  • New check script checkviosnpivvfchostnotloggedin.ksh to check for any vfchost adapters not currently logged in on the SAN switch.
  • New check script checkviosnpivfcsdistribution.ksh to check the distribution of the vfchost to fcs mapping on the VIOS server.
  • Update to check script checkpowerhalevel.ksh to recommend Service Pack 14 for PowerHA 6.1.0.
  • New check script checkviosnpivfcsconnections.ksh to check the number of client connections per physical fcs adapter on the VIOS.
  • New check script checkhardwarememoryprefetching.ksh to check if hardware memory prefetching is enabled or disabled.
  • New check script checkviosvhostmxvtd.ksh to check if more than the recommended number of VTDs are configured per vhost.
Version: v15.02.26
  • Update to check script checkcleanetc.ksh to identify old copies of file /etc/pam.conf.websm.
  • Update to check script checkcleanetc.ksh to identify any tar files, or compressed versions of tar files in /etc and /etc/security.
  • Update to check script checkcleanroot.ksh to identify any tar files, or compressed versions of tar files in the root folder.
  • Update to check script checkdevicesfcpmpiolevel.ksh to recommend uninstalling fileset devices.fcp.disk.ibm.mpio.rte if only Virtual SCSI devices are present on the system.
  • Update to the description of check script checketcrcshutdownperms.ksh to explain why the permissions of this file should be restricted.
Version: v15.02.25
  • Update to check script checkquorum.ksh to check if quorum is enabled in volume groups that have 2 disks and use mirroring. If so, enabling quorum is riksy, and should be disabled.
Version: v15.02.24
  • New check script checkpathorder.ksh to check the order of the path statements in the $PATH variable.
  • New check script checklibpathfolders.ksh to check if all the folders in the $LIBPATH variable exist on the server.
  • New check script checklibpathstatements.ksh to display the $LIBPATH statements in /etc/profile and /etc/environment.
  • New check script checklibpathperiod.ksh to check if there's a period in the $LIBPATH variable.
  • New check script checkpathduplicates.ksh to check if duplicate folders in the $PATH variable exist on the server.
  • New check script checklibpathduplicates.ksh to check if duplicate folders in the $LIBPATH variable exist on the server.
  • Update to check script checketchostsnonnumeric.ksh to avoid printing empty lines when spaces or tabs are present on empty lines in /etc/hosts.
  • Update to check script checkoslevel.ksh to correct an issue with checking the correct technology level on AIX 6.1 and AIX 7.1.
Version: v15.02.20
  • New check script checkpathfolders.ksh to check if all the folders in the $PATH variable exist on the server.
  • Update to check script checkcommonfilesets.ksh to recommend to uninstall bos.perf.gtools.* and eclipse2.rte filesets.
  • New check script checkjavalevels.ksh to check if supported levels of Java are installed.
  • Update to check script checkfcslink.ksh to test using the -e option as well, if options -d and -D fail to work.
  • Update to check script checkpowerhaclustertopology.ksh to include the output of the cltopinfo options -m, -w and -i.
  • Update to check script checkquorum.ksh to recommend to enable quorum on volume groups in use for concurrent access.
Version: v15.02.18
  • Update to check script checketchostscharacters.ksh to correct an issue with replacing tabs which resulted in reporting empty lines.
Version: v15.02.17
  • Update to check script checksystemfirmwarelevel.ksh to recommend new Power8 system firmware available.
  • Updato to check script checkpowersupplies.ksh to correctly report the number of power supplies in a FC5887 SAS Enclosure Services Device.
Version: v15.02.16
  • New check script checketchostscharacters.ksh to check for any non alpha-numeric characters in /etc/hosts.
  • Update to check script checkpowerhalevel.ksh to recommend new available PowerHA/HACMP software fix pack levels.
  • Update to check script checketchostsnonnumeric.ksh to improve the search for invalid IP addresses in /etc/hosts through Awk, as well as circumventing the 8192 character limit of the grep command.
  • Renamed check script checksrcmstr.ksh to checksrcmstractive.ksh.
  • Renamed check script checkinittabsrcmstr.ksh to checksrcmstrinittab.ksh.
  • New check script checksrcmstrremote.ksh to check if the srcmstr ignores remote requests.
  • New check script checksyslogdremote.ksh to check if the syslog facility to receive messages from the network is disabled.
  • New check script checkcronlogquiet.ksh to check if logging of the cron daemon has been disabled.
  • New check script checkxntpdinsane.ksh to check xntpd for insane system.
Version: v15.02.13
  • Update to the description of check script checkj2dynamicbufferpreallocation.ksh to correct a typo.
  • Update to check script checkcleanetc.ksh to also check for old copies of file snmpd.conf.
  • Update to check script checkoslevel.ksh to correct a typo.
  • Update to check script checksddpcmlevel.ksh to update the correct URL to find the SDDPCM for AIX support matrix, which has changed on the IBM website.
  • Update to check script checksudoersusers.ksh to improve the exclusion of User_Alias definitions, when checking regular user accounts.
  • Update to check script checkpowerhaprinters.ksh to reduce the amount of clrsh commands needed to compare printer information between cluster nodes.
Version: v15.02.11
  • Update to check script checkoslevel.ksh to include a recommendation for the correct Service Pack for each technology level.
  • New check script checkpowervsaix.ksh to check if the recommended AIX/VIOS level is installed for Power hardware.
  • New check script checklsdisp.ksh to display any properties of display devices.
  • New check script checklsslot.ksh to run the lsslot -c phb command on the server in order to display the logical slots.
  • New check script checklsslotphb.ksh to run the lsslot -c phb command on the server in order to display the PCI Host Bridges.
  • New check script checkbrokenfilesets.ksh to check for any filesets in a broken state.
  • New check script checkearlierfilesets.ksh to check for any filesets that are earlier (less) than the technology level and Service Pack installed.
Version: v15.02.10
  • New check script checketcpasswdcomments.ksh to check for any comments in /etc/passwd.
  • Renamed check script checkpasswd.ksh to checketcpasswdperms.ksh for naming consistency purposes.
  • Renamed check script checkpasswdrootname.ksh to checkpasswdrootname.ksh for naming consistency purposes.
  • Renamed check script checkpasswdtabspace.ksh to checketcpasswdtabspace.ksh for naming consistency purposes.
  • Renamed check script checkpasswordsinpasswd.ksh to checketcpasswdpasswords.ksh for naming consistency purposes.
  • Renamed check script checkgroup.ksh to checketcgroupperms.ksh for naming consistency purposes.
  • New check script checketcgroupcomments.ksh to check for any comments in /etc/group.
  • New check script checkpathstatements.ksh to display the path statements in /etc/profile and /etc/environment.
  • New check script checkfpm.ksh that runs fpm to determine if the default permissions on commands and daemons owned by privileged users have been modified.
Version: v15.02.09
  • Update to the description of check script checkopenssllevel.ksh to explain the different branches of OpenSSL available.
  • Update to check script checksambalevel.ksh to recommend a new level of Samba available in the AIX Web Download Pack.
  • New check script checkrsysloglevel.ksh to check if the latest version of rsyslog is installed.
  • Update to check script checkkrb5.ksh to correct a typo.
  • Renamed check script checkkrb5.ksh to checkkrb5level.ksh to identify that this check script checks a software level.
Version: v15.02.06
  • Update to check script checkall.ksh to update some output of the script.
  • Update to check script checkusernopassword.ksh to ignore any user accounts managed via Kerberos.
Version: v15.02.05
  • Update to check script checkfcslink.ksh to correct a sorting issue, so the proper fibre channel adapter port speed is reported.
  • Update to check script checkusersettingsvsdefault.ksh to exclude the VIOS padmin user from the checks, to allow the padmin user to have different user settings.
  • Update to cheeck script checkxntpd.ksh to also alert if not even one ntp server is configured in the ntp.conf file.
  • Update to check script checkopenssllevel.ksh to recommend a newly available OpenSSL level.
  • Update to check script checkarptkillc.ksh to allow for network option arpt_killc to be less then 20 mintues, to avoid arp buffer poisening attacks.
  • New check script checkbcastping.ksh to check if network option bcastping is set to 0 (turned off).
  • New check script checkipforwarding.ksh to check if network option ipforwarding is set to 0 (turned off).
  • New check script checkipsendredirects.ksh to check if network option ipsendredirects is disabled (set to 0).
  • New check script checkip6srcrouteforward.ksh to check if ip6srcrouteforward is disabled to not allow the system to forward source-routed IPv6 packets.
  • New check script checkrfc1122addrchk.ksh to check if network option rfc1122addrchk is set to 0 (turned off).
  • New check script checkipnfrag.ksh to check if network option ip_nfrag is set to 200.
Version: v15.02.04
  • New check script checkcronlimit.ksh to check if the maximum run limit of cron jobs has been reached.
Version: v15.01.27
  • New check script checkkrb5.ksh to check if the correct level of krb5.server.rte and/or krb5.client.rte is installed.
Version: v15.01.23
  • Update to check script checkpowerhaclcycle.ksh to also check if the clcycle entry in present in the crontab of user root when no PowerHA/HACMP software is installed.
  • New check script checkdhcp.ksh to check if an IP address through DHCP was assigned instead of a static IP address.
  • Update to check script checkgrouplength.ksh to correct a typo.
  • Update to check script checkfreespaceinfs.ksh to correct a typo.
  • Update to check script checkemcodmlevel.ksh to recommend new EMC ODM Definitions levels.
  • Update to check script checkemcpowerpathlevel.ksh to recommend new EMC PowerPath levels.
Version: v15.01.22
  • New check script checkshell.ksh to check the list of valid login shells for a user as defined in /etc/security/login.cfg.
  • New check script checketcsecuritylogincfgperms.ksh to check the permissions of /etc/security/login.cfg.
  • New check script checkusershell.ksh to check if all users have a valid, existing shell.
  • New check script checknologintimeout.ksh to check if the logintimeout attribute is set to 60 seconds in /etc/security/login.cfg.
  • New check script checkpasswordalgorithm.ksh to check if the legacy unix crypt password algorithm has been updated.
  • New check script checkmaxlogins.ksh to check if the maxlogins attribute is set to 32767 in /etc/security/login.cfg.
Version: v15.01.20
  • New check script checknwinterfacesstopped.ksh to check if any network interfaces are in stopped state.
Version: v15.01.15
  • Minor update to check script checkpgspusage.ksh to improve the output of the script.
  • Minor update to check script checkpgspsize.ksh to improve the output of the script.
  • Update to check script checkpgspminsize.ksh to add a warning when the paging space is larger than 32 GB.
  • Update to the description of check script checkfreeframewaits.ksh to remove a typo.
  • Update to check script checkmemorysize.ksh to improve the output of the script.
  • Update to the description of check script checkmemoryutilization.ksh to recommend adding more memory if the server is overcommitted on memory.
  • Update to the description of check script checkpgspusage.ksh to recommend adding more memory if the server is overcommitted on memory.
  • Update to check script checkcleanetc.ksh to check for old copies of file /etc/snmpd.boots and /etc/methods.cfg.
Version: v15.01.13
  • Addition of the -C (category) option, to allow the use of selecting categories of scripts to be run. From now on the inventory scripts can be run by selecting "-C inventory" instead of using the -i option.
  • New check script checkfipsmode.ksh to check if the cryptographic operational mode has been enabled.
Version: v15.01.12
  • Removal of the -i (inventory) option.
  • Added a check to ensure the correct files are present when running checkall.ksh.
Version: v15.01.08
  • Removal of file INVENTORY, as it is no longer necessary.
  • Added categories to all scripts.
Version: v15.01.07
  • Update to check script checkautorestart.ksh to provide the command to enable autorestart if it is not set to true.
  • Renamed check script checkecmpmond.ksh to checkemcpmond.ksh, so it's clear that this check script is related to EMC storage.
  • Removed check script checketc.ksh, as it had the same purpose as checketcperms.ksh.
Version: v15.01.06
  • Update to check script checkpowerhalevel.ksh to recommend new PowerHA fix pack levels.
  • Update to check script checkall.ksh to add the -E option to allow a user to exclude certain check scripts from being run.
  • Update to check script checkdefaultusersettings.ksh to remove the check for the default umask, as this is already covered in checkumask.ksh.
Version: v15.01.05
  • Update to check script checkrperf.ksh to update to version 24, correcting an issue with 740 Model D servers.
  • Update to check script checkrperf.ksh to fix an issue with printing out the end result on some of the Power7+ systems.
  • Update to check script checkroothomedir.ksh to remove a typo.
  • Update to check script checksudoersusers.ksh to account for any entries in /etc/sudoers where lines end with a backslash.
  • Update to check script checksudoerspassword.ksh to account for any entries in /etc/sudoers where lines end with a backslash.
  • Update to check script checksudoersduplicates.ksh to account for any entries in /etc/sudoers where lines end with a backslash.
  • Update to check script checksudoersdefaults.ksh to account for any entries in /etc/sudoers where lines end with a backslash.
  • Update to check script checksudocommands.ksh to account for any entries in /etc/sudoers where lines end with a backslash.
  • Update to check script checksudocommandsexec.ksh to account for any entries in /etc/sudoers where lines end with a backslash.
  • Update to check script checkfsmountoptions.ksh to avoid reporting file systems mounted with mount option rbrw, that are listed as rbr,rbw by the mount command.
  • Update to check script checketherchannelnetaddr.ksh and the description of the check script, to make it more clear that this applies to the netaddr IP address, not the actual IP address configured on an EtherChannel interface.
  • Update to check script checkfsvsetcfilesystems.ksh to avoid reporting file systems used as mount map for the automount daemon.
  • Update to check script checkcurl.ksh to correct a typo.
Version: v14.12.31
  • New check script checkwritesrv.ksh to check if the writesrv daemon is disabled.
Version: v14.12.30
  • New check script checketcrcdt.ksh to check if the dt entry is disabled in /etc/inittab.
  • New check script checkinittablpd.ksh to check if the lpd entry in /etc/inittab does not exist.
  • New check script checkinittabrctcpip.ksh to check the rctcpip entry in /etc/inittab.
  • New check script checklpd.ksh to check if the lpd entry is enabled in /etc/rc.tcpip.
Version: v14.12.29
  • Update to check script checkall.ksh to enable the debugging option using -D, only to be used by the UNIX Health Check for AIX support team. Also updated the online documentation accordingly.
  • New check script checkusersettingsvsdefault.ksh to check user settings in /etc/security/user that differ from the default settings.
  • New check script checksudoersenvreset.ksh to check if env_reset is disabled in /etc/sudoers.
Version: v14.12.27
  • Update to check script checkncargs.ksh to check for the maximum available setting for ncargs first, before making a recommendation to increase the value.
  • Update to check script checkall.ksh to check the value for ncargs before running any scripts, to ensure that checkall.ksh determines the correct number of scripts to run.
Version: v14.12.26
  • Update to check script checkall.ksh to correct a typo in one of the comments, and to finish the HTML output if there are zero check scripts to run.
  • Updated all check script to update the copyright message from 2014 to 2015.
  • Update to check script checkall.ksh to check if all necessary files of UNIX Health Check for AIX are present.
Version: v14.12.16
  • New check script checkusrbinlivedumpstartperms.ksh to check the permissions of /usr/bin/livedumpstart.
  • New check script checklppchkl.ksh to verify symbolic links for files as specified in the SWVPD database.
  • New check script checkvaradmrasperms.ksh to check the permissions of /var/adm/ras.
  • New check script checkdumpctrlerror.ksh to check if the dumpctrl -k command can run successfully from cron.
Version: v14.12.08
  • Update to check script checksystemfirmwarelevel.ksh to account for new available system firmware levels for Power7 and Power8 hardware.
Version: v14.11.26
  • Update to check script checkumask.ksh to properly allow a umask setting of 022, 027 and 077.
  • New check script checkumaskroot.ksh to check if the umask of user root is set to 022, 027 or 077.
Version: v14.11.25
  • Update to check script checkdevsrcperms.ksh to correctly check for the existence of /dev/SRC.
  • Update to check script checksuid.ksh to exclude /usr/krb5/bin/ksu from being reported, if the Kerberos client fileset has been installed.
Version: v14.11.24
  • Update to the description of the checksuid.ksh check script, to further explain the SUID and GUID bits.
Version: v14.11.11
  • Update to check script checksystemfirmwarelevel.ksh to update a recommendation for system firmware level AL770_092 that has been released by IBM.
Version: v14.11.10
  • Update to check script checkopensshlevel.ksh to recommend the newly released level 6.0.0.6200 for AIX 5.3, AIX 6.1 and AIX 7.1.
  • New check script checkchdef.ksh to check if there are any defaults set for devices using the chdef command.
  • New check script checkdevsrcperms.ksh to check the permissions of /dev/SRC.
Version: v14.11.05
  • Update to check script checketchostsnonnumeric.ksh to check for any additional characters immediately after an IP address in /etc/hosts.
Version: v14.11.04
  • Update to check script checkpoodle.ksh to output a message even if the system is not vulnerable.
  • Update to check script checkmqmuser.ksh to check additional user settings for user mqm.
Version: v14.11.03
  • New check scripts checkinittabsrcmstr.ksh to check if the srcmstr entry is present in /etc/inittab, and if the System Resource Controller is active.
  • Update to check script checkportmap.ksh to check if the portmapper is disabled in /etc/rc.tcpip if it is inactive.
  • New check script checksrcmstr.ksh to check if the System Resource Controller is active.
  • Update to check script checknfsclientdaemons.ksh to check for an empty /etc/exports file.
  • Update to check script checkpoodle.ksh to test if openssl is installed before running the test.
Version: v14.10.30
  • Update to check script checkopenssllevel.ksh with some minor textual updates.
Version: v14.10.29
  • Update to check script checktopmemoryusers.ksh to provide an overview in GB instead of MB.
Version: v14.10.16
  • New check script checkusrbinpasswdperms.ksh to check the permissions of /usr/bin/passwd.
  • Removed check script checkusrbinpasswd.ksh, as it is replaced by checkusrbinpasswdperms.ksh.
  • New check script checkpoodle.ksh to check if this system is vulnerable for the known Poodle vulnerability in SSLv3, CVE-2014-3566.
  • Update to check script checkrperf.ksh to include the v23 of rperf script, based on new released Power8 hardware.
  • Update to check script checkall.ksh to include new released Power8 hardware.
Version: v14.10.14
  • Update to check script checkephemeralports.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checktmpusage.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checketcperfdaily.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkfailedloginsize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkibmsupt.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkipqmaxlen.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checklostfoundsize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkpowerhaclusterlogsize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checksbmax.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checksshlogingracetime.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checktsmerlogprusize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checktsmerrorlogsize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checktsmschedlogsize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checktsmschedprusize.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkvaradmsni.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checktsmtdpoerrorlog.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkusrsysinstimages.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkvaradmsa.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkvarpreserve.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkvioshomeiosperftopas.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkcleanetc.ksh to not recommend to remove /etc/hosts.allow and /etc/hosts.deny when TCP wrappers are used.
  • New check script checketchostsallow.ksh to display the contents of /etc/hosts.allow.
  • New check script checkusrbinksh93perms.ksh to check the permissions of /usr/bin/ksh93.
  • New check script checketchostsdeny.ksh to display the contents of /etc/hosts.deny.
  • New check script checktcpwrappers.ksh to check if any TCP wrappers have been configured correctly.
  • Update to check script checkcpuload.ksh to correct an issue with running vmstat on systems that use a locale other than en_US.
  • Update to check script checkdig.ksh to add a remark about dig not running properly due to a missing /etc/resolv.conf file.
  • Update to check script checkdisktypesinvg.ksh to redirect the stderr of the lsdev command to /dev/null to avoid reporting errors.
  • Update to check script checksddpcmpathsvsadapters.ksh to redirect the stderr of the lsdev command to /dev/null to avoid reporting errors.
  • Update to check script checkscraidmgr.ksh to redirect the stderr of the lsdev command to /dev/null to avoid reporting errors.
  • Update to check script checkentitlement.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkentitlementvsvirtprocs.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checkmemvscpu.ksh to deal with floating point calculations properly when using locales other than en_US.
  • Update to check script checketchostsvsdns.ksh to check if /etc/resolv.conf exists before running the tests.
  • Update to check script checkhostvsnslookup.ksh to check if /etc/resolv.conf exists before running the tests.
  • Update to check script checkshowmount.ksh to check if /etc/resolv.conf exists before running the tests.
  • Update to check script checkvnbserver.ksh to check if /etc/resolv.conf exists before running the tests.
  • Update to check script checkopennfsexports.ksh to check if /etc/resolv.conf exists before running the tests.
  • Renamed check script checkshellsperms.ksh to checketcshellsperms.ksh.
  • Update to check script checksshdirfiles.ksh to avoid adding an extra forward slash to the home directory of user root if it already ends with a forward slash.
Version: v14.10.13
  • Update to check script checkexcluderootvg.ksh to also recommend excluding the central core file location (as determined by lscore output) from /etc/exclude.rootvg.
  • New check script checkinittabinitdefault.ksh to check if the init entry is the very first entry in /etc/inittab and the runlevel is set to 2.
  • New check script checkinittabsysinit.ksh to check if the sysinit entry is the second entry in /etc/inittab.
  • New check script checkinittabcons.ksh to check if the cons entry exists in /etc/inittab.
  • New check script checkinittabrunlevels.ksh to check if the runlevel entries exist in /etc/inittab.
  • New check script checkusrsbininit.ksh to check the permissions of /usr/sbin/init and check that /etc/init is a symbolic link to /usr/sbin/init.
Version: v14.10.10
  • New check script checkusrbinrkshperms.ksh to check the permissions of /usr/bin/rksh.
Version: v14.10.07
  • Update to check script checkhomeroot.ksh to add a check for the correct permissions of the root home directory.
Version: v14.10.06
  • Update to check script checkcleanetc.ksh to also check for old versions of the clsnmp.conf file.
Version: v14.09.30
  • Update to check script checkopenssllevel.ksh to recommend newly available level 1.0.1.5.12 for OpenSSL.
  • Update to check script checkopensshlevel.ksh to recommend newly available level 6.0.0.6109 for OpenSSH.
  • Update to check script checkbash.ksh to recommend newly available levels for bash to address the Bash Shellshock vulnerabilities.
  • Update to check script checkbash64.ksh to recommend newly available levels for bash_64 to address the Bash Shellshock vulnerabilities.
Version: v14.09.26
  • Update to check script checkbash.ksh to determine if the correct level of bash is installed.
  • New check script checkbash64.ksh to determine if the correct level of bash_64 is installed.
  • New check script checkbashshellshock.ksh to determine if bash on the system is vulnerable for the Shellshock flaws in bash.
  • New check script checkbash64shellshock.ksh to determine if bash_64 on the system is vulnerable for the Shellshock flaws in bash.
Version: v14.09.24
  • Update to check script checkall.ksh to correct an issue with the numbering of the scripts.
Version: v14.09.23
  • Update to the description of check script checkpowerhalevel.ksh to bring the description in line with the script.
Version: v14.09.19
  • Update to check script checkfcstat.ksh to clean up the output and make it look better.
  • Update to check script checkidrsapub.ksh to correct a typo.
  • Update to check script checkiddsapub.ksh to correct a typo.
  • Update to check script checkinittabduplicates.ksh to improve the output for both 1 and more empty lines in /etc/inittab.
  • Update to check script checksendmailprivacyoptions.ksh to improve the description, and to add a couple of entries to even further improve the security of Sendmail.
  • New check script checksendmailgreetingmessage.ksh to check the SMTP greeting message of Sendmail to ensure no unnecessary information is provided.
  • New check script checkviosjavahighcpu.ksh to check if there are any java processes using a lot of CPU on a VIOS.
  • New check script checkrootfolders.ksh to check if important folders in the root directory are located in the root file system.
  • New check script checkroothomedir.ksh to check if the root home directory is either / or /root, and is located in the root file system.
Version: v14.09.15
  • Update to check script checkrperf.ksh to make sure 9117-MMC (Power 7700) systems show a proper rperf value when the CPU clock rate is reported slightly different, e.g. 3724 MHz instead of 3720 MHz.
  • Update to check script checkatl.ksh to redirect any errors of the at command if root is not added to the at.allow file.
  • Update to check script checkauthorizedkeysentries.ksh to avoid reporting empty lines, and to issue an error if an issue is found.
  • Update to check script checkauthorizedkeysentriesoracle.ksh to avoid reporting empty lines, and to issue an error if an issue is found.
  • Update to check script checkchangedfilesinetc.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checkmqmuser.ksh to avoid running the .profile of the mqm user when determining the hard and soft limits, just in case an interactive login was enabled.
  • Update to check script checknfsstat.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checkregularfilesinhome.ksh to avoid reporting quota.group and quota.user, which may exist in /home when quota has been enabled.
  • Update to check script checkrepquota.ksh to redirect any errors to /dev/null generated by the repquota command.
  • Update to check script checksbmax.ksh to correct an error with reporting the current value of sbmax.
  • Update to check script checksendmailprivacyoptions.ksh to recommend adding the goaway option, and to maintain existing options, if present for the Privacy Flags.
  • Update to check script checksmt.ksh to remove any unnecessary empty lines in the output generated by the smtctl command.
  • Update to check script checksudoers.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checksystemattr.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checksystemfirmwarelevel.ksh to recommend the correct level of system firmware for Power 770 systems.
  • Update to check script checkterminaltype.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checktimezone.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checktsmconfig.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checktsmnodenameindsmsys.ksh to avoid reporting the TSM nodename incorrectly when multiple stanzas are created in dsm.sys file.
  • Update to check script checktsmprepostcmnds.ksh to correctly report any non-existing pre- and post- commands.
  • Update to check script checkvmstat.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checkvmstats.ksh to mark it as an inventory script instead of a check script.
  • Update to check script checkvmstatv.ksh to mark it as an inventory script instead of a check script.
Version: v14.09.12
  • Update to check script checksystemfirmwarelevel.ksh to recommend new system firmware levels for Power7 and Power7+ systems.
  • Update to check script checkpowerhalevel.ksh to recommend new Service Packs available for several HACMP/PowerHA versions.
Version: v14.09.11
  • Update to the description of check script checkoslevel.ksh, to recommend technology level 3 for AIX 7.1.
  • Update to check script checkuseraccounts.ksh to correct an issue with a grep command that prevented running the script interactively properly.
  • Update to check script checkuseraccounts.ksh to avoid reporting users twice if Kerberos is used.
  • Update to check script checkusernopassword.ksh to avoid reporting users twice if Kerberos is used.
Version: v14.09.04
  • Update to check script checkviosviosbrview.ksh to check for the mtime instead of ctime of files to better check if viosbr is running properly.
Version: v14.09.03
  • Update to check script checklvmstat.ksh to avoid printing out unnecessary empty lines.
Version: v14.08.29
  • New check script checkusersloggedonlongtime.ksh to display the users that are currently logged on for a long time.
Version: v14.08.26
  • Update to check script checksystemfirmwarelevel.ksh to recommend new Power7 system firmware levels.
Version: v14.08.25
  • New check script checklsauthent.ksh to run the lsauthent command to display the available authentication menthods currently configured on the system.
  • New check script checketcmethodscfgperms.ksh to check the permissions of /etc/methods.cfg.
  • Update to check script checketherchannelnetaddr.ksh to specify both EtherChannels consisting of virtual and logical adapters that require a netaddr to be defined.
  • Update to check script checkvmo.ksh to recommend setting vmo tunable minperm% to at least 3.
Version: v14.08.21
  • New check script checkviosituam.ksh to check if the ITUAM crontab entries are disabled on VIOS systems.
Version: v14.08.13
  • Update to check script checksystemfirmwarelevel.ksh to account for new system firmware levels for Power7.
Version: v14.08.11
  • Update to check script checkdumpctrl.ksh to correct a minor display issue with the dumpctrl command.
  • Update to check script checklsmcode.ksh to display the output of both lsmcode -A and lsmcode -c.
  • Update to check script checklsslotpci.ksh to also display a message when no PCI slots are available on the system.
  • Renamed check script checklspgsp.ksh to checkpgsplist.ksh.
  • Renamed check script checknumberprocesses.ksh to checkprocessnumber.ksh.
  • Renamed check script checkpsef.ksh to checkprocesslist.ksh.
  • Renamed check script checkrcshutdown.ksh to checketcrcshutdown.ksh.
  • Renamed check script checkrctcpipperms.ksh to checketcrctcpipperms.ksh.
  • Renamed check script checkrcdtperms.ksh to checketcrcdtperms.ksh.
  • Renamed check script checknumberusers.ksh to checkusernumber.ksh.
  • New check script checkusersloggedon.ksh to display the users that are currently logged on.
  • New check script checkprocessorsdefined.ksh to check for any defined processors.
  • New check script checkmtubypass.ksh to check if mtu_bypass (LARGESEND) is enabled on virtual network interfaces.
  • New check script checkviossealargesendreceive.ksh to check if both largesend and large_receive have been enabled on Shared Ethernet Adapters.
  • Update to check script checketherchannelnetaddr.ksh to remove a typo.
  • New check script checkj2dynamicbufferpreallocation.ksh to check if I/O option j2_dynamicBufferPreallocation should be tuned.
Version: v14.08.10
  • Update to check script checksmtsupport.ksh to check for SMT8 on Power8 systems.
  • Update to check script checkoslevel.ksh to recommend AIX 7.1 TL3 to be installed - to allow all available features for Power8 to be used.
  • Tested UNIX Health Check for AIX functionality on AIX 7.1 TL3 successfully.
Version: v14.08.08
  • New check script checkpconsole.ksh to check if /var/adm/pconsole does not exist if user pconsole doesn't exist.
  • Update to check script checksystemfirmwarelevel.ksh to include a system firmware level check for Power8 systems.
Version: v14.08.06
  • New check script checkdisknames.ksh to check if any disk devices that have a non-standard name and may have been renamed.
Version: v14.08.05
  • Update to check script checksystemfirmwarelevel.ksh to update recommendations for system firmware levels for Power7 hardware.
  • Update to check script checkall.ksh to include the Power8 models available at this time, so they are recognized in the system configuration section.
  • Update to check script rperf.ksh to update the script to version 21, including Power8 models.
  • Update to check script checkdefgwifvsipif.ksh to correct an error that may occur when the system is using a DHCP assigned IP address.
  • Update to check script checketherchannelip.ksh to correct an error that may occur when the system is using a DHCP assigned IP address.
  • Update to the description of check script checkhostname.ksh to recommend validating the entry for the host in /etc/hosts after changing the hostname of the system.
  • Update to the description of check script checkpgspminsize.ksh to recommend using smitty chps to make any changes to paging spaces.
Version: v14.07.28
  • Update to check script checkdiagrpt.ksh to correct a typo in the description of the check script.
  • Update to check script checkipqmaxlen.ksh to correct the command used to set ipqmaxlen, now that it is a restricted tunable.
  • Update to check script checksyslogfiles.ksh to recommend setting the permissions corrrect, after creating a log file.
  • Update to check script checkall.ksh to correct a mis-match between the number of scripts that will be run in the Options section, and the number of scripts reported when running the scripts.
  • Update to check script checksystemfirmwarelevel.ksh to correct an issue with certain Power7 models and the firmware level recommendation made by the script.
  • New check script checketcperms.ksh to check the permissions of /etc.
  • Update to check script checkall.ksh to correct the command used to determine the subnet of a host, so it works as well on AIX 5.3 TL5.
  • Update to check script checkall.ksh to correct an issue with the reported in the system configuration section.
  • Update to the description of check script checkcrontabsunused.ksh to explain when a crontab file is no longer in use.
  • Update to check script checketchostsdups.ksh to avoid reporting an error if someone used parentheses in the /etc/hosts file instead of valid IP addresses (yes, that does happen!).
  • Update to check script checkexcluderootvg.ksh to correct the order in which is checked if any printers are defined, so no errors are reported.
  • Update to check script checklsof.ksh to redirect the errors of the which command to standard out, and then grep for the lsof binary instead, to avoid reporting an error on the lsof binary, if not found.
  • Update to check script checkuserprofile.ksh to avoid recommending to change the home directory owner to a different owner, if multiple users have been defined with the root directory as home directory.
  • Update to check script checkvartmpperms.ksh to recommend creating the /var/tmp directory if /var/tmp is discovered to be a link to a different folder.
  • Update to check script checkxlclevel.ksh to provide a more descriptive output.
Version: v14.07.27
  • New check script checketcsyslogconf.ksh to display the contents of /etc/syslog.conf.
  • New check script checketcsyslogconfperms.ksh to check the permissions of /etc/syslog.conf.
Version: v14.07.23
  • Update to check script checkdisksdefined.ksh to provide a correct output if only 1 defined disk is found on the system.
Version: v14.07.20
  • Update to check script checktcpnaglelimit.ksh to also report the off-standard value for tcp_nagle_limit, if not set to 65535.
Version: v14.07.18
  • Update to check script checkcrontabdups.ksh to avoid reporting any issues when there are lines in crontab files that start with a space followed by a hash mark.
  • Update to the description of check script checkfsmountoptions.ksh to suggest using the remount mount option when needing to change any mount options, without the need for taking any downtime.
Version: v14.07.17
  • New check script checkusrbinrmperms.ksh to check the permissions of /usr/bin/rm.
  • New check script checkusrbinviperms.ksh to check the permissions of /usr/bin/vi.
  • New check script checkusrbinsedperms.ksh to check the permissions of /usr/bin/sed.
  • New check script checkusrbinawkperms.ksh to check the permissions of /usr/bin/awk.
  • New check script checkusrbincatperms.ksh to check the permissions of /usr/bin/cat.
  • New check script checkusrbinchmodperms.ksh to check the permissions of /usr/bin/chmod.
  • New check script checkusrbincpperms.ksh to check the permissions of /usr/bin/cp.
  • New check script checkusrbingrepperms.ksh to check the permissions of /usr/bin/grep.
  • New check script checkusrbinftpperms.ksh to check the permissions of /usr/bin/ftp.
  • New check script checkusrbinheadperms.ksh to check the permissions of /usr/bin/head.
  • New check script checkusrbinmkdirperms.ksh to check the permissions of /usr/bin/mkdir.
  • New check script checkusrbinmoreperms.ksh to check the permissions of /usr/bin/more.
  • New check script checkusrbinmvperms.ksh to check the permissions of /usr/bin/mv.
  • Update to check script checklocales.ksh to avoid recommending to deinstall locale filesets on a VIOS.
Version: v14.07.16
  • Update to check script checkviosvscsiunavailable.ksh to redirect any errors of the lsmap command to /dev/null to avoid errors on defined vSCSI devices.
  • Update to check script checksuid.ksh to avoid reporting any VIOS command located in /usr/ios.
Version: v14.06.20
  • Update to check script checksudocommands.ksh to avoid reporting duplicate entries.
Version: v14.06.17
  • Update to check script checkopensshlevel.ksh to recommend upgrading openssh to level 6.0.0.6108 per IBM's recommendations addressing several security vulnerabilities, CVE-2014-2532 and CVE-2014-2653.
Version: v14.06.13
  • New check script checkviossealimbo.ksh to check if a shared Ethernet adapter is in limbo state.
  • New check script checketherchannelnetaddrping.ksh to check, if a netaddr is defined for an EtherChannel, if it is pingable.
  • New check script checkviosseanetaddrping.ksh to check if a netaddr, if defined on a shared Ethernet adapter, is pingable.
  • New check script checkviosseanetaddr.ksh to check if a netaddr is defined on a shared Ethernet adapter in dual VIOS configurations.
Version: v14.06.10
  • New check script checknimsoftnimbusrunning.ksh to check if the nimbus process of Nimsoft Monitor Server is running, if installed.
  • New check script checkpatrolstart.ksh to check if BMC's PatrolAgent is started at system boot time, if installed.
  • New check script checkpatrolfilesystem.ksh to check if /opt/bmc is set up in a separate file system for BMC's Patrol Agent.
  • New check script checknimsoftfilesystem.ksh to check if /opt/nimsoft is set up in a separate file system for CA Technologies' Nimsoft agent.
  • New check script checknimsoftstart.ksh to check if CA Technologies' Nimsoft agent is started at system boot time, if installed.
  • Update to check script checkopenssllevel.ksh to recommend upgrading to OpenSSL level 1.0.1.511, due to CVE-201-5298.
Version: v14.06.08
  • Update to the description of check script checkviospadminpassword.ksh, to explain why setting a strong password for the padmin user is necessary.
Version: v14.06.05
  • New check script checkvscsivhostmapping.ksh to display the mapping of any vscsi adapters to vhosts adapters on VIOS servers.
  • New check script checkvioslsnports.ksh to displays the output of the lsnports command on a VIOS server.
Version: v14.06.04
  • New check script checksecuritypassword.ksh to check if we can guess the password for any user in group security.
  • New check script checksystempassword.ksh to check if we can guess the password for any user in group system.
  • New check script checkshutdownpassword.ksh to check if we can guess the password for any user in group shutdown.
Version: v14.06.03
  • Update to the description of check script checkdefaultusersettings.ksh regarding the recommendation what command to use to set default user settings on AIX 6.1 TL8 and up.
  • Update to check script checketchostsdups.ksh to also detect duplicate IP addresses in /etc/hosts when the IP is used multiple times for multiple host names.
Version: v14.05.28
  • Update to check script checketherchannelnetaddr.ksh to only recommend setting a netaddr IP address on an EtherChannel when a backup adapter is available.
  • Update to check script checketherchannelnetaddr.ksh to only recommend setting a netaddr IP address on an EtherChannel when an IP address is configured on the associated interface.
  • New check script checketherchannelsingleadapter.ksh to check if an EtherChannel has been configured with only 1 adapter.
  • New check script checketherchanneladapters.ksh to check if the ports that are part of an EtherChannel are not physically located on the same adapter.
Version: v14.05.27
  • New check script checkrwhod.ksh to check if rwhod is disabled in /etc/rc.tcpip, and is inactive.
  • Removed check script checkactivatedrpcservices.ksh because it is now obsolete.
  • New check script checkifipvsup.ksh to check for any interfaces with a configured IP address without being in an UP state.
  • Update to check script checketherchannelnetaddr.ksh to recommend setting a netaddr IP address on host with virtual Ethernet adapters.
Version: v14.05.26
  • New check script checkpowerhanetmoncf.ksh to check if netmon.cf exists with a valid entry.
  • Update to check script checkpowerhaconfigfiles.ksh to also check if netmon.cf is the same on both nodes of a cluster.
  • Update to check script checkexportsperms.ksh to check if /etc/exports exists before checking.
Version: v14.05.23
  • New check script checkuserprofile.ksh to check the owner and the permissions of the .profile of every user.
  • New check script checkuserkshrc.ksh to check the owner and the permissions of the .kshrc of every user.
  • New check script checkviospadminprofile.ksh to checks the .profile of user padmin.
  • New check script checkviosvscsiunavailable.ksh to check for any vSCSI devices on the VIOS server that are unavailable.
  • New check script checkexportsperms.ksh to check the permissions of /etc/exports.
  • New check script checkprotocolsperms.ksh to check the permissions of /etc/protocols.
  • New check script checkrootnetrc.ksh to check the permission of .netrc of user root.
  • New check script checkusernetrc.ksh to check the owner and the permissions of the .netrc file of every user.
Version: v14.05.22
  • New check script checknetstatinetd.ksh to check if netstat is disabled in /etc/inetd.conf.
  • New check script checkpop3.ksh to check if pop3 is disabled in /etc/inetd.conf.
  • Update to check script checkdefaultusersettings.ksh to recommend a default of at least 4 for histsize, specifying the number of passwords a user cannot reuse.
  • Update to check script checkdefaultusersettings.ksh to recommend a default of at least 2 for maxexpired, specifying the maximum number of weeks after maxage that an expired password can not be changed by a user.
  • Update to check script checkdefaultusersettings.ksh to recommend a default of no more than 2 for minother, specifying the minimum number of non-alphabetic characters in a password.
Version: v14.05.21
  • Removed check script checkcrontabperms.ksh as this is a duplicate script.
  • New check script checkusrsbincron.ksh to check the permissions of /usr/sbin/cron.
  • New check script checkvaradmcron.ksh to check the permissions of /var/adm/cron.
  • Update to check script checkftpd.ksh to allow it to warn if ftpd is enabled.
  • New check script checkrquotad.ksh to check if rquotad is disabled.
  • New check script checkimap2.ksh to check if imap2 is disabled.
  • New check script checkkrlogind.ksh to check if krlogind is disabled.
  • New check script checkkshell.ksh to check if kshell is disabled.
Version: v14.05.20
  • Update to check script checksudoersusers.ksh to check if the sudoers file is empty.
  • Update to check script checkcronactive.ksh to provide the command to add a missing cron entry in the /etc/inittab.
Version: v14.05.16
  • Renamed check script checkrandom.ksh to checkdevrandom.ksh to align the script name to other script names.
  • Update to checkrandom.ksh to recommend using the randomctl command to re-create /dev/random and/or /dev/urandom if these are missing.
  • New check script checkdotsshperms.ksh to check if the permissions of the .ssh folder for eaach user are correctly set.
  • New check script checksddhdiskinvpath.ksh to check if all SAN disks are under SDD control and thus configured in a vpath.
  • New check script checksudoerspassword.ksh to check if we can guess the password for any user in /etc/sudoers.
  • New check script checkoraclepassword.ksh to check if we can guess the oracle password.
  • New check script checkdevzero.ksh to check if /dev/zero exists and is not a regular file, and has the correct permissions.
  • New check script checktuncheck.ksh to check if the tuncheck command runs without errors.
  • New check script checkpre520tune.ksh to check if the compatibility mode is disabled.
Version: v14.05.14
  • Renamed check script checkhacmpmajor.ksh to checkpowerhamajor.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpnfs.ksh to checkpowerhanfs.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhanfs.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpno.ksh to checkpowerhano.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhano.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Update to the description of check script checkvgautoon.ksh to apply to both HACMP and PowerHA.
  • Renamed check script checkhacmposlevel.ksh to checkpowerhaoslevel.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhaoslevel.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmppackages.ksh to checkpowerhapackages.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhapackages.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmppaging.ksh to checkpowerhapaging.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhapaging.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmppath.ksh to checkpowerhapath.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhapath.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpprinters.ksh to checkpowerhaprinters.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhaprinters.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmppvid.ksh to checkpowerhapvid.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhapvid.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmprawlvperms.ksh to checkpowerharawlvperms.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerharawlvperms.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpresolvorder.ksh to checkpowerharesolvorder.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerharesolvorder.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmprhosts.ksh to checkpowerharhosts.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmprootvg.ksh to checkpowerharootvg.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerharootvg.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpsharedfsperms.ksh to checkpowerhasharedfsperms.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpsharedvgs.ksh to checkpowerhasharedvgs.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhasharedvgs.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpsnmpcommunityname.ksh to checkpowerhasnmpcommunityname.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmptimezone.ksh to checkpowerhatimezone.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhatimezone.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Update to check script checkpowerharhosts.ksh to check /etc/cluster/rhosts file on PowerHA 7.1 cluster nodes.
  • New check script checkpowerhanodedown.ksh to check if any node of a PowerHA/HACMP cluster is down.
  • New check script checkpowerhalevels.ksh to check if there are any differences between the PowerHA/HACMP levels on both servers of a cluster.
  • Update to check script checkntpbroadcastclient.ksh to indicate the correct ntp.conf file, on both AIX and VIOS.
  • Update to check script checksysdumpdevlv.ksh to warn instead of error.
  • Update to the description of check script checksyslogfiles.ksh to explain that others should not have read/write access to log files written by syslog.
  • Update to check script checkpowerhaclstat.ksh to identify when the cluster manager is in ST_INIT state, before reporting that clstat does not work.
  • Update to check script checkpowerhanodedown.ksh to identify when the cluster manager is in ST_INIT state, before reporting that clstat does not work.
  • Update to check script checksyslogfiles.ksh to not recommend changing any permission attributes of /dev/console when syslog logs to /dev/console.
  • Update to check script checkdevnull.ksh to provide the commands in case /dev/null does not exist.
  • New check script checkdevconsole.ksh to check if /dev/console exists and is not a regular file, and has the correct permissions.
Version: v14.05.13
  • Update to check script checkcorepath.ksh to avoid reporting, if a default core path location has not been set.
  • Renamed check script checkclinfoes.ksh to checkpowerhaclinfoes.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpautoverify.ksh to checkpowerhaautoverify.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpappscriptsinuse.ksh to checkpowerhaappscriptsinuse.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkall.ksh to skip both HACMP and PowerHA check scripts on nodes that do not have HACMP/PowerHA installed.
  • New check script checkpowerhaclusterconfigured.ksh to check if a cluster is configured, when HACMP/PowerHA software is installed.
  • Renamed check script checkhacmpclcomd.ksh to checkpowerhaclcomd.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to checkpowerhaclcomd.ksh to check the clcomd instead of clcomdES on PowerHA 7.1 nodes, when Cluster Aware AIX is used.
  • Renamed check script checkhacmpcllsserv.ksh to checkpowerhacllsserv.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhacllsserv.ksh to use clrsh part of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpcllsservperms.ksh to checkpowerhacllsservperms.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhacllsservperms.ksh to use clrsh part of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Update to check script checkntpbroadcastclient.ksh to replace ~padmin with /home/padmin.
  • Update to check script checkntpslewing.ksh to replace ~padmin with /home/padmin.
  • Update to check script checkviosauthorizedkeysdupspadmin.ksh to replace ~padmin with /home/padmin.
  • Update to check script checkvioscleansshdirpadmin.ksh to replace ~padmin with /home/padmin.
  • Update to check script checkviosiddsapubpadmin.ksh to replace ~padmin with /home/padmin.
  • Update to check script checkviosidrsapubpadmin.ksh to replace ~padmin with /home/padmin.
  • Update to check script checkntpdate.ksh to exclude any commented out preferred servers in the ntp.conf from checking.
  • New check script checkviosxntpd.ksh to check on a VIOS if xntpd has been started with the correct ntp.conf file.
  • Renamed check script checkhacmpconfigfiles.ksh to checkpowerhaconfigfiles.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhaconfigfiles.ksh to use clrsh and clrcp of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpcrontabs.ksh to checkpowerhacrontabs.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhacrontabs.ksh to use clrsh and clrcp of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpdumpspace.ksh to checkpowerhadumpspace.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhadumpspace.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpvmo.ksh to checkpowerhavmo.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhavmo.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpappscripts.ksh to checkpowerhaappscripts.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpclcycle.ksh to checkpowerhclcycle.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpclstat.ksh to checkpowerhclstat.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpclusterlogsize.ksh to checkpowerhaclusterlogsize.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpclustertopology.ksh to checkpowerhaclustertopology.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpconcurrentvg.ksh to checkpowerhaconcurrentvg.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpconfigtoolong.ksh to checkpowerhaconfigtoolong.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpemgr.ksh to checkpowerhaemgr.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhaemgr.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpfilesystems.ksh to checkpowerhafilesystems.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhafilesystems.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpgodmd.ksh to checkpowerhagodmd.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmphostconfig.ksh to checkpowerhahostconfig.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhahostconfig.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmpvar.ksh to checkpowerhavar.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpunmanaged.ksh to checkpowerhaunmanaged.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpsyncd.ksh to checkpowerhasyncd.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmprgfallbackpolicy.ksh to checkpowerhargfallbackpolicy.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmprgerror.ksh to checkpowerhargerror.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmplogdirectory.ksh to checkpowerhalogdirectory.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpsnapshot.ksh to checkpowerhasnapshot.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpstable.ksh to checkpowerhastable.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmplevel.ksh to checkpowerhalevel.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Renamed check script checkhacmpioo.ksh to checkpowerhaioo.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhaioo.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
  • Renamed check script checkhacmplsvg.ksh to checkpowerhalsvg.ksh to align with the new naming convention for PowerHA/HACMP check scripts.
  • Update to check script checkpowerhalsvg.ksh to use clrsh of Cluster Aware AIX on PowerHA 7.1 cluster nodes.
Version: v14.05.12
  • New check script checksyscorepath to check if command syscorepath has been set to define a system wide core dump location.
  • New check script checkcorepath.ksh to check if the core path, if set, is available on the system, and to otherwise recommend setting up a central core path location.
  • New check script checkffdcctrl.ksh to check if the First Failure Data Capture (FFDC) capabilities have been enabled.
Version: v14.05.11
  • Update to check script checkcronlogfailed.ksh to reverse the order of failed cron jobs, to ensure no old jobs are shown, if the cron log file hasn't been cleaned up for a long time.
  • Update to the description of check script checkemcpowerpathlevel.ksh to reflect the correct latest level of EMC PowerPath for AIX.
  • Update to check script checkpasswdrootname.ksh to provide the command to update the GECOS field for user root.
  • Update to check script checkvarempty.ksh to only alert if OpenSSH is installed.
  • Update to check script checktsmsched.ksh to check if the TSM client acceptor daemon is started instead of the TSM scheduler, and also to check if the TSM client acceptor daemon is running instead of the TSM scheduler, before reporting that the TSM scheduler is not running. Also added a check that will check if the TSM scheduler and/or the TSM client acceptor daemon is started through a script in /etc/rc.d instead of /etc/inittab.
  • Rename of check script checkzsnap.ksh to checkzsnaplevel.ksh.
  • New check script checkzsnapinstalled.ksh to check if zsnap is installed.
  • New check script checkctrmc.ksh to check if the RMC daemon ctrmc is enabled at boot time and if it is active.
  • New check script checkbosdebugoff.ksh to check if the debugging features have been turned off.
Version: v14.05.09
  • Update to check script checklostfound.ksh to recommend using the /usr/sbin/mklost+found command to re-create the lost+found folder in the root file system if it is missing.
  • New check script checklostfoundfolder.ksh to check if the lost+found folder exists in all JFS and JFS2 file systems.
  • New check script checktcpnaglelimit.ksh to check if network option tcp_nagle_limit is set to default.
  • New check script checknonlocsrcroute.ksh to check if network option nonlocsrcroute is disabled to not allow the system to address strictly source-routed packets to outside hosts.
  • New check script checkipsrcroutesend.ksh to check if network option ipsrcroutesend is set correctly to allow source-routed packets to be sent.
  • Update to check script checkrootrhosts.ksh to check if the home directory of user root can be determined before proceeding.
  • Update to check script checkrootprofile.ksh to check if the home directory of user root can be determined before proceeding.
  • Update to check script checkrootloginretries.ksh to check 9f user root exists and to provide a more descriptive output.
  • Update to check script checkhacmpconcurrentvg.ksh to make sure it exits with the correct return code.
  • Update to check script checkadmin.ksh to check if folder /admin is owned by UID 0.
  • Update to check script checkcrontabs.ksh to avoid checking the root crontab within this script.
  • Update to check script checkdev.ksh to check for ownership of folder /dev by either user root or UID 0 and either group system or GID 0.
  • Update to check script checkdevnull.ksh to check if /dev/null is owned by either user root or UID 0 and either group system or GID 0.
  • Update to check script checkenvironmentperms.ksh to check if /etc/environment is owned by either user root or UID 0 and either group system or GID 0.
  • Update to check script checkgroupconsistency.ksh to remove any duplicate entries in the output.
  • Update to check script checkmailq.ksh to correct an error with using a temporary file name to store data that would not allow the script to run outside the folder it is stored in.
  • New check script checksystemgroupgid.ksh to check if the system group has GID 0.
  • New check script checkrootuser.ksh to check if the root account exists with UID 0 and primary group system.
Version: v14.05.08
  • Update to check script checksshlogingracetime.ksh to properly test if Oracle is installed on the server before checking the grace login time value.
  • Update to check script checkephemeralports.ksh to properly test if Oracle is installed on the server, and to allow also low ephemeral ports set to 25000, as recommended by Oracle.
  • Update to check script checkipqmaxlen.ksh to properly test if Oracle is installed on the server, and if so, to set ipqmaxlen to 512 per Oracle recommendation.
  • Update to check script checksbmax.ksh to properly test if Oracle is installed on the server, and if so, to recommend setting sb_max to 4194304, per Oracle recommendation.
Version: v14.05.06
  • Update to check script checksystemfirmwarelevel.ksh to account for newly released system firmware levels for Power7 systems.
Version: v14.05.02
  • Update to check script checkjfslogoverwritten.ksh to correctly report increasing the size of an inline log size for a JFS2 file system with a devicesubtype of DS_LVZ.
Version: v14.05.01
  • Update to check script checkcoredir.ksh to avoid recommending to create a core directory in the root home directory if a different core_pathname has been set already.
  • Update to check script checksyslogfiles.ksh to also recommend removing any read or write permissions for others to logs written by syslog.
Version: v14.04.30
  • Update to check script checkemcpowerpathlevel.ksh to recommend using newly released EMC PowerPath level 5.7.0.1, as PowerPath 5.5 is moving out of support on 4/30/2014.
  • New check script checkdb2level.ksh to display the level(s) of DB2 software installed.
  • New check script checkdb2folder.ksh to display the installation folder(s) for DB2.
  • Update to check script checkgnupg.ksh to recommend a newly available level for GnuPG.
  • Update to check script checkhomedirswritable.ksh to remove some typos in the output.
  • New check script checknetcd.ksh to check netcd, if it is running, and if it is configured at boot time.
  • New check script checketcnetcdconfperms.ksh to check the permissions of /etc/netcd.conf.
  • Update to check script checklocale.ksh to make sure the character map is properly set to ISO8859-1.
Version: v14.04.28
  • New check script checketcrcdperms.ksh to check the permissions of all folders in /etc/rc.d.
Version: v14.04.22
  • New check script checkcups.ksh to check if Cups is installed, and if so, at the correct level.
  • New check script checkcupsactive.ksh to check if Cups is active, if it is installed.
  • Update to check script checketcrcshutdownperms.ksh to recommend setting the permissions of /etc/rc.shutdown to 700 for increased security.
  • Update to check script checkwpartcpfastlo.ksh to fix a typo.
  • Clean up of check script checkuseraccounts.ksh to remove all old comments.
Version: v14.04.21
  • Update to check script checkdig.ksh to provide a more descriptive output.
  • Update to check script checkidrsapub.ksh to allow hostnames with both lowercase and uppercase characters to be matched in id_rsa.pub.
  • Update to check script checkiddsapub.ksh to allow hostnames with both lowercase and uppercase characters to be matched in id_dsa.pub.
  • Update to check script checkidrsapuboracle.ksh to allow hostnames with both lowercase and uppercase characters to be matched in id_rsa.pub.
  • Update to check script checkiddsapuboracle.ksh to allow hostnames with both lowercase and uppercase characters to be matched in id_dsa.pub.
  • Update to check script checkviosidrsapubpadmin.ksh to allow hostnames with both lowercase and uppercase characters to be matched in id_rsa.pub.
  • Update to check script checkviosiddsapubpadmin.ksh to allow hostnames with both lowercase and uppercase characters to be matched in id_dsa.pub.
  • Update to check script checksystemfirmwarelevel.ksh to account for newly release system firmware levels by IBM.
  • New check script checkrcipsrcrouterecv.ksh to check if network option ipsrcrouterecv is set correctly allow or disallow source-routed packets.
  • Update to check script checkipsrcrouteforward.ksh to also check the boot mode of network option ipsrcrouteforward.
  • Update to check script checktcptcpsecure.ksh to also check the boot mode of network option tcp_tcpsecure.
  • Update to check script checktcpcimpsecure.ksh to also check the boot mode of network option tcp_icmpsecure.
  • Update to check script checktcpfastlo.ksh to also check the boot mode of network option tcp_fastlo.
  • Update to check script checktcpfastlocrosswpar.ksh to also check the boot mode of network option tcp_fastlo_crosswpar.
  • Update to check script checkcleanpartialconns.ksh to also check the boot mode of network option clean_partial_conns.
  • Update to check script checksbmax.ksh to also check the boot mode of network option sb_max.
  • Update to check script checkipqmaxlen.ksh to correct the command used to set the network option ipqmaxlen at boot time.
  • Update to check script checkextendednetstats.ksh to also check the boot mode of network option extendednetstats.
  • Update to check script checktcpnodelayack.ksh to also check the boot mode of network option tcp_nodelayack.
  • Update to check script checknooptions.ksh to also check the boot mode of several network options.
  • Update to check script checkmtu.ksh to also check the boot mode of network option tcp_mssdflt.
  • Update to check script checkipignoreredirects.ksh to also check the boot mode of network option ipignoreredirects.
  • Update to check script checkicmpaddressmask.ksh to also check the boot mode of network option icmpaddressmask.
  • Update to check script checkarptkillc.ksh to also check the boot mode of network option arpt_killc.
  • Update to check script checkdirectedbroadcast.ksh to also check the boot mode of network option directed_broadcast.
Version: v14.04.17
  • Update to check script checkmqlevel.ksh to display the current WebSphere MQ level installed by running the /usr/mqm/bin/dspmqver command.
  • New check script checkmqqueuemanager.ksh to displays the status of the WebSphere MQ queue manager, if installed.
  • New check script checkmqini.ksh to displays the contents of the WebSphere MQ system wide ini file.
  • Update to check script checkntpslewing.ksh to allow it to work properly on both VIOS and AIX systems.
  • New check script checkntpbroadcastclient.ksh to check if the broadcastclient option in ntp.conf is commented out.
  • Update to check script checkvmo.ksh to recommend setting maxfree to the nearest power of two.
Version: v14.04.16
  • New check script checkextshmspace.ksh to check if the entry EXTSHM=MSEG for enabling Extended Shared Memory in /etc/environment does not contain any blank spaces.
  • New check script checktsmprepostcmnds.ksh to check for any pre or post schedule commands that are run through TSM as defined in dsm.sys.
  • New check script checkvarempty.ksh to check if /var/empty exists, with the proper permissions and owner, and is indeed empty.
  • Update to check script checkopenssllevel.ksh to recommend upgrading OpenSSL to version 1.0.1.502, released today by IBM to address the Heartbleed bug.
  • New check script checktsmdsmsysperms.ksh to check the permissions of the dsm.sys file of TSM.
  • New check script checktsmdsmsysperms.ksh to check the permissions of the dsm.opt file of TSM.
Version: v14.04.15
  • New check script checkrcdfiles.ksh to check if any target files of links in /etc/rc.d are valid.
  • Update to check script checkrcdfiles.ksh to check both links and files in /etc/rc.d, to ensure any files contain any data and are only executable by root.
Version: v14.04.14
  • New check script checkhttpd.ksh to check if the correct level of httpd is installed.
Version: v14.04.13
  • New check script checktcptcpsecure.ksh to check if network option tcp_tcpsecure is enabled to protect TCP connections against ICMP attacks.
Version: v14.04.12
  • Update to check script checkopenssllevel.ksh to avoid recommending installing the OpenSSL 1.0.1 ifix on VIOS, as a result of the Heartbleed bug, as IBM released further information that the VIOS 2.2.3.1 level that included the OpenSSL 1.0.1 level, is not impacted because it does not utilize the TLS 1.2 heartbeat mechanism.
  • New check script checktcpicmpsecure.ksh to check if network option tcp_icmpsecure is enabled to protect TCP connections against ICMP attacks.
Version: v14.04.10
  • Update to check script checkopenssllevel.ksh to recommend installing level 1.0.1.501 for OpenSSL.
  • Update to check script checkopenssllevel.ksh to recommend installing an ifix for OpenSSL level 1.0.1, if the level is below 1.0.1g, to mitigate risk to Heartbleed bug.
  • New check script checktcpfastlo.ksh to check if network option tcp_fastlo is enabled.
Version: v14.04.09
  • Update to check script checkhacmpappscriptsinuse.ksh to allow for multiple application servers to be defined in a single resource group.
Version: v14.04.08
  • Update to check script checkpvminpbuf.ksh to also notice any off-standard settings for AIX 5.3 using both 32 and 64 bit kernels.
  • Update to check script checkntpslewing.ksh to check for the slewalways option in /etc/ntp.conf as well.
  • New check script checktunables.ksh to check if the tunables entry is present in /etc/inittab.
  • New check script checkcleanpartialconns.ksh to check if network option clean_partial_conns is enabled to avoid SYN attacks.
Version: v14.04.04
  • New check script checklvmcfg.ksh to list the most recent LVM commands run on the system.
  • New check script checkalog.ksh to check if any alog file type is indeed a circular file, and if the file exists.
  • New check script checkalogsize.ksh to check if the size of an alog file matches with its configured size.
  • Update to check script checkmqmuser.ksh to check additional limits for user mqm.
  • Update to check script checkrootulimit.ksh to also make recommendations for the hard limits for user root.
Version: v14.04.03
  • Update to check script checkhacmpsharedfsperms.ksh to avoid reporting an error on relative links to shared file systems.
  • New check script checkhacmpresolvorder.ksh to check if DNS resolution is done in the same order on both nodes of a cluster.
  • New check script checkhacmptimezone.ksh to check if the timezone is configured the same on both nodes of the cluster.
Version: v14.04.02
  • Update to check script checketcrcshutdownperms.ksh to remove a typo.
Version: v14.04.01
  • Update to check script checkhacmpconfigfiles.ksh to avoid generating an error if a file does not exist on any clustered node.
  • Update to check script checkmailq.ksh to avoid generating an error on a temporary file.
Version: v14.03.20
  • New check script checkvioslsmap.ksh to run lsmap -all to dispay the mapping between physical, logical and virtual SCSI devices on a VIOS.
  • New check script checkvioslsmapnet.ksh to run lsmap -all -net to dispay the mapping between physical, logical and virtual Ethernet adapters on a VIOS.
  • New check script checkvioslsmapnpiv.ksh to run lsmap -all -npiv to dispay the mapping between physical, logical and virtual fibre channel adapters on a VIOS.
  • New check script checketcrcshutdownperms.ksh to check the permissions of /etc/rc.shutdown.
  • Update to check script checkinstalldate.ksh to improve reporting on both 32 and 64 bits systems.
  • Update to check script checkmailq.ksh to allow it to run properly even if started outside its own directory by correcting the user of a temporary file.
  • Update to check script checkcleanetc.ksh to check for any old copies of /etc/exports as well.
  • New check script checkusrbinkshperms.ksh to check the permissions of /usr/bin/ksh.
  • New check script checketcnetsvcconfperms.ksh to check the permissions of /etc/netsvc.conf.
Version: v14.03.19
  • Update to check script checkipqmaxlen.ksh to improve searching for an Oracle installation.
  • Update to check script checkephemeralports.ksh to improve searching for an Oracle installation.
  • Update to check script checkinstalldate.ksh to list any install dates in the correct order.
  • Update to check script checkemcpowerpathpaths.ksh to remove a typo.
Version: v14.03.11
  • Update to check script checkhacmplevel.ksh to check for newer levels of PowerHA/HACMP installed because of new Service Packs released by IBM.
Version: v14.03.05
  • New check script checkteeperms.ksh to check the permissions of /usr/bin/tee.
Version: v14.03.04
  • Update to check script checklimitsfsize.ksh to recommend a different default fsize value for VIOS.
  • Update to check script checkrootulimit.ksh to recommend the correct values for the limits for user root on a VIOS.
  • New check script checkviosslpregivm.ksh to check if a system uses IVM and recommend to disable the slpregivm command in root crontab if it is not using an IVM.
Version: v14.03.03
  • Update to check script checkcleanetc.ksh to add sudoers.rpmsave as a file to be ignored.
  • Update to check script checkhighcpu.ksh to ignore the AIX scheduler process.
  • Update to check script checkvmo.ksh to avoid an error on VMO tunable enhanced_affinity_affin_time for AIX 5.3 systems.
  • Update to check script checkvmo.ksh to avoid reporting a message if the recommended value is the same as the current value for minfree.
  • Update to check script checkemcpowermtpathsvsadapters.ksh to only alert if at least one fibre adapter is in use by EMC PowerPath.
  • Update to check script checkmpiopathsvsadapters.ksh to only alert if at least one fibre adapter is in use by MPIO.
  • Update to check script checksddpathsvsadapters.ksh to only alert if at least one fibre adapter is in use by SDD.
  • Update to check script checksddpcmpathsvsadapters.ksh to only alert if at least one fibre adapter is in use by SDDPCM.
  • Update to check script checkemcpowerunmanageddisks.ksh to avoid reporting an error when no disks are managed by EMC PowerPath.
  • New check script checkrctcpipperms.ksh to check the permissions of /etc/rc.tcpip.
  • New check script checkvioshomeiosperftopas.ksh to check for a large amount of data in /home/ios/perf/topas.
  • Update to check script checkxntpd.ksh to allow for correct output on VIOS in case of any files have wrong permissions.
Version: v14.02.27
  • Update to check script checkvmo.ksh to check if VMO tunable enhanced_affinity_affin_time is set to 1.
  • Update to check script checkvmo.ksh to recommend to use either the default values for minfree or maxfree or use the calculation method.
  • Update to check script checkhacmpconfigfiles.ksh to properly retrieve application server files to compare on both nodes of a cluster.
Version: v14.02.25
  • Update to check script checkdevscan.ksh to check for the latest version of devscan (v1.0.5).
Version: v14.02.21
  • Update to check script checkhacmpcllsservperms.ksh to remove a typo in an echo command.
  • New check script checklsmpio.ksh to display the output of the lsmpio command, if available (only available in AIX 7.1 TL3+ or AIX 6.1 TL9+).
  • Update to check script checkhacmpconfigfiles.ksh to avoid reporting application server scripts twice, if different on cluster nodes.
Version: v14.02.13
  • Updated to our mechanism to upload new versions to the website to comply with PHP 5.4.12.
Version: v14.02.10
  • Update to check script checkdisksizeinvg.ksh to clearly identify which volumes groups need attention as it concerns to different disk sizes within volume groups.
Version: v14.02.09
  • Update to check script checkall.ksh to add a trap to catch kill signals and to properly clean up temporary files, if interrupted.
  • Update to check script checkhacmpconfigfiles.ksh to avoid reporting differences between files on HACMP/PowerHA nodes when the difference is only a comment or a difference in node name.
Version: v14.02.06
  • Update to checkxmdaily.ksh to no longer recommend to disable the pmcfg entry in the root crontab.
  • New check script checkviospadminpwreset.ksh to check if the padmin password has been reset within the last 90 days.
  • New check script checkviospadminpassword.ksh to check if we can guess the padmin password.
Version: v14.02.02
  • Update to check script checksendmailprivacyoptions.ksh to properly check if sendmail is active before alerting about possible updates to sendmail.cf.
  • Update to check script checkcleanroot.ksh to recommend lpcagent_*ffff files from the root folder, if present.
Version: v14.01.31
  • Update to check script checkall.ksh to correct an error with counting the number of scripts to run on systems that are either no VIOS or don't have PowerHA installed.
  • Update to check script checkviosviosbrview.ksh to remove any ioscli.log file created by running ioscli on VIOS.
  • Update to check script checkviosviosbrcrontab.ksh to remove any ioscli.log file created by running ioscli on VIOS.
  • Update to check script checkviosioslevel.ksh to remove any ioscli.log file created by running ioscli on VIOS.
  • Update to check script checkall.ksh to remove any ioscli.log file created by running ioscli on VIOS.
Version: v14.01.29
  • Update to check script checkauthorizedkeys.ksh to avoid reporting duplicate entries.
  • Update to check script checkopenssllevel.ksh to prefer the fileset level if both the fileset and the rpm of OpenSSL are installed, but also prefer the RPM is no fileset is installed.
  • New check script checkviosauthorizedkeysdupspadmin.ksh to check for duplicate entries or empty lines in the authorized_keys files for user padmin.
  • New check script checkviosauthorizedkeysentriespadmin.ksh to check for any invalid entries in the authorized_keys files for user padmin.
  • New check script checkvioscleansshdirpadmin.ksh to check for any files in ~padmin/.ssh that can be cleaned up.
  • New check script checkviosiddsapubpadmin.ksh to check if the id_dsa.pub file for user padmin indeed has been generated on this host.
  • New check script checkviosidrsapubpadmin.ksh to check if the id_rsa.pub file for user padmin indeed has been generated on this host.
  • New check script checkviospadminage.ksh check if password aging for user padmin is disabled.
  • New check script checkviospadminlogincount.ksh to check if the unsuccessful_login_count attribute for user padmin is 0.
  • New check script checkviospadminloginretries.ksh to check if the loginretries attribute for user padmin is set to 0 (disabled).
  • New check script checkviospadminulimit.ksh to check the ulimit settings for user padmin.
  • Update to check script checkexcluderootvg.ksh to only recommend excluding /var/spool/qdaemon and /var/spool/lpd/qdir in /etc/exclude.rootvg if any printers are defined.
  • Update to check script checksuid.ksh to exclude file /var/adm/invscout/invlock from being reported.
  • Update to check script checksendmailprivacyoptions.ksh to not alert about sendmail.cf file if sendmail is not active on a VIOS.
  • Update to check script checksnmpdversion.ksh to only alert about the snmpdv3.conf file if snmpd is enabled in /etc/rc.tcpip.
  • New check script checkcorez.ksh to check if a core.Z or core.gz file exists in the root home directory.
  • Update to check script checketherchannellink.ksh to avoid reporting an error on EtherChannel links on VIOS servers.
  • Update to check script checkcrontabatone.ksh to ignore any /opt/IBM/tivoli/ituam/collectors/Unix entries on VIOS in the root crontab.
Version: v14.01.28
  • Update to check script checkopenssllevel.ksh to prefer the fileset level if both the fileset and the rpm of OpenSSL are installed.
  • Update to check script checkrunlevel.ksh to not alert about being unable to determine the runlevel if the /etc/umtp file is corrupt, which is already reported by checkcorruptutmp.ksh check script.
Version: v14.01.27
  • Update to check script checkhacmpautoverify.ksh to determine dynamically the location of the clutils.log file in case it has been changed from the default location.
  • Update to check script checkhacmppath.ksh to check for cluster paths in $PATH with either no or a trailing slash.
Version: v14.01.16
  • Update to check script checkcleanetc.ksh to avoid reporting /etc itself as a folder to be removed.
Version: v14.01.14
  • New check script checkkernelmatch.ksh to check if the links /unix and /usr/lib/boot/unix match and point to the same target.
  • Update to check script checkcleanetc.ksh to avoid an error being reported when no ora_save folder exists in /etc.
Version: v14.01.10
  • New check script checkrootttys.ksh to check if the ttys attribute for user root is set to ALL.
Version: v14.01.08
  • New check script checkoratabpaths.ksh to check for the existence of paths mentioned in /etc/oratab.
  • Update to check script checkcleanetc.ksh to also recommend removing any /etc/ora_save_ folders.
Version: v14.01.07
  • New check script checksbmax.ksh to check the current setting for network option sb_max.
  • New check script checketcnologin.ksh to check if /etc/nologin exists, which may prevent any non-root user from logging into the system.
  • New check script checklogingracetime.ksh to check if the LoginGraceTime attribute is set to 2m (120 seconds) in sshd_config.
Version: v14.01.06
  • New inventory check script checklparmemory, to display the memory settings for an LPAR.
  • Update to check script checklsmcode.ksh to provide an output even if the LPAR is fully virtual.
  • Update to COPYRIGHT statement for 2014.
Version: v13.12.16
  • Update to check script checkopenssllevel.ksh to recommend the newly release SSL level 1.0.1.500.
Version: v13.12.12
  • Update to check script checkrperf.ksh to match the latest version available on https://www.ibm.com/developerworks/community/wikis/home?lang=en#!/wiki/Power%20Systems/page/rperf.
  • Update to the description of checkdiagrpt.ksh to clear any non-relevant previous diagnostic results.
Version: v13.12.09
  • Update to check script checkoslevel.ksh to include updates for new technology levels released (AIX 7.1 TL3 and AIX 6.1 TL9) by IBM.
Version: v13.11.26
  • Update to the description of check script checklparmemorysettings.ksh to correct a typo.
  • Update to check script checkhacmpconfigfiles.ksh to avoid reporting differences between TSM dsm.sys files on nodes of a cluster when wildcards are used.
Version: v13.11.25
  • Update to check script checkhacmprhosts.ksh to exclude any empty lines in /usr/es/sbin/cluster/etc/rhosts.
  • Update to check script checkjfs2snapshotsinvalid.ksh to exclude any NFS file systems with mountpoints the same as existing JFS/JFS2 file systems.
  • Update to check script checktop20memoryprocs.ksh to use the ps command instead of svmon, because svmon may run long and use a lot of memory on systems with a high number of open file descriptors and/or processes.
  • Update to check script checktop20pgspusers.ksh to use the ps command instead of svmon, because svmon may run long and use a lot of memory on systems with a high number of open file descriptors and/or processes.
Version: v13.10.29
  • Update to check script checksystemfirmwarelevel.ksh to recommend using a new firmware level for Power6 blades.
Version: v13.10.19
  • Update to check script checktotalsan.ksh to also include SVC (FC 2145) assigned storage.
Version: v13.10.12
  • Update to check script checklsvg.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checklv.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checklvcb.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checklvmo.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checklvmstat.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checkmaxlvs.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checkmaxpvs.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checkmwc.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checkquorum.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checksynclvodm.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checkunusedjfslog.ksh to redirect any errors to /dev/null for the lsvg command.
  • Update to check script checkhacmpprinters.ksh to check for any differences between the qconfig files of each cluster node, before gathering detailed printer information.
Version: v13.10.10
  • Update to check script checksddpcmpathsvsadapters.ksh to remove unnecessary empty lines.
  • Update to check script checkhacmpconcurrentvg.ksh to exit if clRGinfo command confirms no resource groups are defined.
Version: v13.10.09
  • Update to check script checkhacmpappscripts.ksh to display an error if no application servers are defined in a cluster.
  • New check script checkhacmpappscriptsinuse.ksh to check if defined application servers are configured in a resource group.
  • New check script checkhacmprgfallbackpolicy.ksh to check if the fallback policy of a resource group is set to Never Fallback.
Version: v13.10.08
  • Update to check script checkexcluderootvg.ksh to exclude /opt/bmc/ instead of /opt/bmc/Patrol/.
  • Update to check script checkmissingowners.ksh to display the first 100 lines only.
Version: v13.10.01
  • Update to check script checknooptions.ksh to remove the check for ipqmaxlen.
  • New check script checkipqmaxlen.ksh to check if network option ipqmaxlen is set to at least 100.
  • Update to check script checkinterfacethreading.ksh to provide more clear output and a better description.
Version: v13.09.30
  • New check script checkdfhang.ksh to check for any hanging df commands.
Version: v13.09.28
  • Update to check script checkentspeed.ksh to only report possible errors when the media_speed can be changed on an Ethernet adapter.
Version: v13.09.26
  • Update to check script checkfcslink.ksh to help report the Link Status correctly on Blade fibre adapters.
  • Update to check script checkhacmpusers.ksh to remove a typo in the comments.
  • Update to check script checkhacmpprinters.ksh to remove a typo in the comments.
  • Update to check script checkhacmppath.ksh to avoid generating an error if a script is sourced from ~root/.profile or /etc/profile.
Version: v13.09.24
  • Update to check script checkhacmprhosts.ksh to check for IP addresses that are not supposed to be in /usr/es/sbin/cluster/etc/rhosts.
Version: v13.09.23
  • Update to check script checksudoversion.ksh to remove a typo.
  • Update to check script checkhacmpcllsserv.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpcllsservperms.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpconfigfiles.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpcrontabs.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpdumpspace.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpfilesystems.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmphostconfig.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpioo.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpmajor.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpnfs.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpno.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmppackages.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmppaging.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpprinters.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmppvid.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmprawlvperms.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmprootvg.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpsharedvgs.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpusers.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checkhacmpvmo.ksh to provide an error if more than 2 nodes in a cluster are present.
  • Update to check script checksddpcmpathsvsadapters.ksh to correct a typo.
Version: v13.09.20
  • Update to check script checksmtsupport.ksh to report a potential SMT mismatch even if the server is of type SMT-Dedicated.
  • Update to check script checkauthorizedkeysdupsoracle.ksh to separate out any messages out empty or duplicate entries in authorized_keys files for user oracle.
  • Update to check script checkauthorizedkeysdupsoracle.ksh to separate out any messages out empty or duplicate entries in authorized_keys files for user root.
  • Update to check script checkhacmpconfigfiles.ksh to compare dsm.sys files on PowerHA nodes irrespective of spaces and tabs in the files.
Version: v13.09.19
  • New check script checksendmailversion.ksh to check the sendmail version.
  • New check script checksendmailprivacyoptions.ksh to check the privacy options for sendmail to be set to the most private settings.
  • New check script checkftpanonymous.ksh to check if anonymous FTP is enabled.
Version: v13.09.17
  • Update to check script checkesaawareness.ksh to provide the command to remove the esa_awareness crontab entry.
  • New check script checkviossspupgrade.ksh to checks if an sspupgrade entry is present in the root crontab of a VIOS without redirecting output.
Version: v13.09.16
  • New check script checkmachstat.ksh to check if machstat returns information about a potential power or cooling issue.
  • Update to check script checkopenssllevel.ksh to not alert if both the RPM and fileset version of openssl are installed.
  • Update to check script checkoradiag.ksh to warn about oradiag folders in any home directory.
Version: v13.09.12
  • Update to check script checkunusedjfslog.ksh to sort the output correctly.
  • Update to check script checktemperature.ksh to display the temperature of all internal sensors.
Version: v13.09.11
  • Update to check script checkcleanroot.ksh to avoid generating an error if file ~root/.image.data* does not exist.
  • Update to check script checkhacmprhosts.ksh to generate the correct command to add multiple IPs to /usr/es/sbin/cluster/etc/rhosts.
  • Update to check script checknumfsbufs.ksh to provide the command to update the numfsbufs IO option.
Version: v13.09.10
  • Update to check script checkcleanetc.ksh to exclude reporting mkuser.sys.bak from being reported after a TL upgrade.
  • Update to check script checkcleanroot.ksh to exclude /.image.data.removetag and ~root/image.data.save.altinst from being reported after a TL upgrade.
  • Update to check script checkmnt.ksh to also allow for user root, group system, mode 755 for folder /mnt.
  • Update to the description of check scripts checkjfslogoverwritten.ksh and checkjfslogsize.ksh to indicate clearly that a logform is required after resizing a JFSlog/JFS2log.
Version: v13.09.09
  • Update to check script checkfcslink.ksh to correct the output message if multiple fibre adapter speeds are detected.
  • Update to check script checkdiagrpt.ksh to change the find command to avoid displaying diagrpt files that are modified after a TL upgrade.
  • Update to check script checkvmmmpsizesupport.ksh to add the -r option to the vmo command which is required for restricted tunables.
  • Update to check script checkaso.ksh to redirect any stderr output to /dev/null for the asoo command, which may generate errors after a system is upgraded, but not yet rebooted.
  • New check script checkosuuid.ksh to check if the os_uuid attribute is set.
  • Update to check script checkinstalldate.ksh to also list the latest TL upgrade when an upgrade to AIX 6.1 TL8 has been performed.
Version: v13.08.30
  • New check script checkhacmprhosts.ksh to check file /usr/es/sbin/cluster/etc/rhosts.
  • New check script checkhacmpconfigtoolong.ksh to check for any config_too_long processes on PowerHA/HACMP nodes.
Version: v13.08.29
  • New check script checknroffilesinfilesystems.ksh to check for a large number of files in file systems.
  • Update to check script checkcrontabatone.ksh to add in an extra check to test if a crontab file has typos.
  • Update to check script checkcrontabattwo.ksh to add in an extra check to test if a crontab file has typos.
  • Update to check script checktsmerrorlogsize.ksh to clearly indicate if the TSM error log file does not exist or can't be determined from the dsm.sys file.
Version: v13.08.28
  • Update to check script checkemcodmlevel.ksh to also include checking for Invista EMC filesets.
  • Update to check script checkemcpowerpathlevel.ksh to recommend new level 5.5.0.6 of EMC PowerPath.
  • Update to check script checksystemfirmwarelevel.ksh to recommend a new system firmware level for Power5 systems.
  • Update to check script checksystemfirmwarelevel.ksh to recommend a new system firmware level for some Power7+ systems.
  • Update to check script checkgangliagmetadrunning.ksh to check for gmetad process active even if it is started manually.
Version: v13.08.22
  • Update to the description of check script checktsmerrorlogsize.ksh to provide more information on what entry should be present in the dsm.sys file.
  • Update to check script checkjfs2snapshotsinvalid.ksh to only check JFS2 file systems that are mounted.
  • Update to check script checkjfs2snapshots.ksh to only check JFS2 file systems that are mounted.
  • Update to check script checkoslevel.ksh to recommend AIX 7.1 TL2 to be installed.
Version: v13.08.21
  • Update to check script checksystemfirmwarelevel.ksh to recommend newly available firmware levels.
Version: v13.08.20
  • Update to check script checketherchanneltree.ksh to remove the less than character to avoid issues when generating XML output.
  • Update to check script checkall.ksh to include the inventory section. This also includes a documentation update on the website.
Version: v13.08.19
  • Update to check script checkgroupconsistency.ksh to clean up a temporary file in /tmp.
  • New check script checkjfs2snapshotsinvalid.ksh to check for any invalid JFS2 snapshots.
  • Renamed check script checkhostsnonnumeric.ksh to checketchostsnonnumeric.ksh.
  • Renamed check script checkhostsduplicates.ksh to checketchostsduplicates.ksh.
  • Renamed check script checkhostsequiv.ksh to checketchostsequiv.ksh.
  • Renamed check script checkhostsvsdns.ksh to checketchostsvsdns.ksh.
Version: v13.08.18
  • Update to check script checkhacmpsharedfsperms.ksh to also allow links to directories to be valid mount points.
  • New check script checkjfs2snapshots.ksh to list any external and internal JFS2 snapshots.
  • Update to check script checkall.ksh to add the -e option to exclude check scripts from running. This also includes a documentation update on the website.
Version: v13.08.16
  • Update to check script checkemcpowermtpathsvsadapters.ksh to remove any empty lines.
  • Update to check script checkhomedirswritable.ksh to exclude listing any users with a home directory set to /tmp.
  • Update to check script checkinittabduplicates.ksh to warn if there are empty lines in /etc/inttab.
  • Update to check script checkusrgroup.ksh to list only the first 100 members of the usr group.
  • Update to check script checkpatrollevel.ksh to unset LIBPATH before checking the BMC Patrol level to avoid issues with libraries that can't be found if LIBPATH is set.
  • Update to check script checknfsmountfolder.ksh to remove the temporary file created in /tmp.
  • Update to check script checkgroupconsistency.ksh to avoid reporting a bad format message if there are more than 2000 users in a group.
Version: v13.08.15
  • New check script checketherchannelactive.ksh to check if the primary interface of an EtherChannel is active.
Version: v13.08.14
  • New check script checknfsmountfolder.ksh to check if a NFS share is mounted directly in the root folder.
Version: v13.08.12
  • New check script checkpwd.ksh to check if there are a high number of pwd processes active.
Version: v13.08.11
  • Update to check script checksshallowusers.ksh to check if openssh is installed before issuing a warning about a missing sshd_config file.
  • Update to check script checksshpermitrootlogin.ksh to check if openssh is installed before issuing a warning about a missing sshd_config file.
  • Update to check script checklvcb.ksh to check if a logical volume is closed instead of having its logical volume control block overwritten.
  • Update to check script checksshd.ksh to check if openssh is installed before issuing a warning about a missing sshd user account.
  • Update to check script checksshperms.ksh to check if openssh is installed before issuing a warning about a missing /usr/bin/ssh binary.
  • Update to check script checksshprotocol.ksh to check if openssh is installed before issuing a warning about a missing sshd_config file.
  • Update to check script checksshsyslogfacility.ksh to check if openssh is installed before issuing a warning about a missing sshd_config file.
  • Update to check script checksshx11forward.ksh to check if openssh is installed before issuing a warning about a missing sshd_config file.
  • Update to check script checksudoersuser.ksh to check if SUDO is installed before proceeding.
  • Update to check script checksudopermissions.ksh to check if SUDO is installed before proceeding.
  • Update to check script checksudovisudopermissions.ksh to check if SUDO is installed before proceeding.
Version: v13.08.10
  • Update to check script checksddpcmpath.ksh to only provide output if any devices are indeed found.
  • Update to check script checksdddatapath.ksh to only provide output if any devices are indeed found.
  • Update to check script checksddpcmsrv.ksh to provide the command to start pcmsrv.
  • New check script checksddpcmsrvpath.ksh to check if SDDPCM is installed when there are no SDDPCM devices present on the system.
  • New check script checkshdaemon.ksh to check if the system hang detection daemon is disabled.
  • Update to check script checketcrcperms.ksh to update the new permissions of /etc/rc in AIX 6.1 TL8 and up.
  • Update to check script checktftpboot.ksh to update the new permissions of /etc/rc in AIX 6.1 TL8 and up.
  • Update to check script checkscpperms.ksh to check if openssh is installed before proceeding.
Version: v13.08.08
  • Update to check script checkrootlogincount.ksh to provide a more descriptive ouptut.
  • New check script checkemcxcryptd.ksh to check if emcp_xcryptd is disabled.
Version: v13.08.07
  • Update to check script checkdevscan.ksh to check for the latest version of devscan, version 1.0.3.
  • New check script checkgnupg.ksh to check if the correct level of gnupg RPM is installed.
Version: v13.08.05
  • Update to check script checkall.ksh to correct an issue with misisng opening tags in XML output when running the basic (-b) output.
  • Update to check script checkgettext.ksh to avoid reporting an error about the level of gettext installed when Ganglia is also installed, because Ganglia requires a higher level of gettext to be installed than the level of gettext available in the AIX Toolbox for Linux applications.
  • Update to check script checkpatrolagent.ksh to avoid reporting the Patrol Agent as high CPU using process, when CPU usage is extremely low on the system.
  • Update to check script checkfsvsetcfilesystems.ksh to avoid listing a mounted JFS2 snapshot as a JFS2 file system missing in /etc/filesystems.
  • Update to check script checksddpcmpaths.ksh to properly clean up its temporary files in /tmp.
  • Update to check script checklspaths.ksh to properly clean up its temporary files in /tmp.
  • Update to check script checkfsvsetcfilesystems.ksh to properly clean up its temporary files in /tmp.
  • Update to check script checkgangliagmondrunning.ksh to test also for the newer version of Ganglia gmond RPMD (ganglia-p6-gmond) to be installed.
Version: v13.08.03
  • New check script checkerrnotifycommands.ksh to check if the commands in the error notifications exist.
  • Update to check script checkfscsitypes.ksh to circumvent an issue where the same adapter types show their FRU number different with the lscfg command.
  • Update to check script checkoslevel.ksh to recommend TL8 for AIX 6.1.
  • New check script checklrufilerpage.ksh to check if vmo option lru_file_repage exists in /etc/tunables/nextboot on AIX 7.1 systems.
Version: v13.07.31
  • New check script checklostfoundsize.ksh to check the size of the lost+found subfolders.
  • Update to check script checkdumpctrlfreespace.ksh to avoid generating an error when the dumpctrl command can't locate ODM information.
Version: v13.07.30
  • New check script checkhacmpclusterlogsize.ksh to check the size of the cluster.log file of HACMP/PowerHA.
  • New check script checkbootps.ksh to check if bootps is disabled in /etc/inetd.conf.
Version: v13.07.29
  • Update to check script checktopasnmon.ksh to also check properly on VIOS systems, where nmon may provide a different Command string.
  • Update to check script checkemcpowerpathpaths.ksh to limit the number of times the powermt command is run, to improve run-time of the script itself.
Version: v13.07.28
  • Update to check script checkhomedirs.ksh to avoid reporting user access on a home directory, which is already covered in check script checkhomedirswritable.ksh.
  • Update to check script checkhomedirswritable.ksh to check for home directories that have the Set-user-ID-on-execution set on their home directories.
  • Update to check script checkhomedirs.ksh to allow it to work properly for user accounts that consist of more than 8 characters.
  • Update to check script checkhomedirs.ksh to allow it to handle when duplicate accounts exist in /etc/passwd.
  • Update to check script checklargesend.ksh to provide the command to sent the large_send option to yes on Ethernet adapters.
  • Update to check script checkmailq.ksh to avoid showing an error when the script cancels the mailq command if that hangs.
  • Update to check script checkoptbmcsize.ksh to provide the command to resize the file system.
  • New check script checkdiagrpt.ksh to check the Previous Diagnostic Results for any errors reported by diag in the last 4 weeks.
  • Update to check script checkcrontabcommandsexec.ksh to avoid generating an error on the which command in the script.
  • Update to check script checkinittabcommandsexec.ksh to avoid generating an error on the which command in the script.
  • Update to check script checkj2nbuffer.ksh to show the number of external pager filesystem I/Os blocked with no fsbuf.
  • Update to check script checkrootshell.ksh to allow for user root to have as shell both /bin/ksh and /usr/bin/ksh.
  • Update to check script checksystemfirmwarelevel.ksh to work, even if the lsmcode command does not provide a proper output for the current firmware level.
  • Update to check script checkuserpassword.ksh to allow it to work properly with older versions of the Korn Shell, e.g. found in AIX 5.3 TL6.
  • Update to check script checkemcnavispherelevel.ksh to provide not only the different level installed of EMC Navisphere, but also the fileset information.
Version: v13.07.26
  • New check script checkhbafw.ksh to check if the correct level of firmware is installed on fibre adapters.
Version: v13.07.25
  • New check script checksddpcmpathpaths.ksh to check if the number of paths for each SDDPCM device is the same.
  • New check scirpt checksdddatapathpaths.ksh to check if the number of paths for each SDD device is the same.
Version: v13.07.24
  • Update to check script checkipaddress.ksh to avoid displaying multiple IP address if the hostname happens to be in comments after a host entry.
  • New check script checklimitsfsize.ksh to check the default setting for the fsize attribute in /etc/security/limits.
Version: v13.07.23
  • New check script checkhomedirswritable.ksh to check if all home directories are writable for their owners, and not for group members or others.
Version: v13.07.22
  • New check script checkemcpowerpathpaths.ksh to check if the number of paths for each hdiskpower device is the same.
  • Update to check script checkhacmppath.ksh to also check for entries in $PATH that end with a forward slash.
  • Update to check script checkmpiopathsvsadapters.ksh to remove a typo.
Version: v13.07.21
  • Update to check script checkcleanroot.ksh to also check for old versions of .kshrc.
  • Update to check script checkmailroot.ksh to correctly display the mail from user root, even if there are users with the same UID 0.
  • Update to check script checktivoliriskmngr.ksh to advise how to uninstall Tivoli Risk Manager.
Version: v13.07.16
  • New check script checksddpathsvsadapters.ksh to check if at least 4 fibre adapter ports are used, if available, for SDD.
  • New check script checksddpcmpathsvsadapters.ksh to check if at least 4 fibre adapter ports are used, if available, for SDDPCM.
  • New check script checkemcpowermtpathsvsadapters.ksh to check if at least 4 fibre adapter ports are used, if available, for EMC PowerPath.
  • New check script checkmpiopathsvsadapters.ksh to check if at least 4 fibre adapter ports are used, if available, for MPIO.
Version: v13.07.03
  • Update to check script checkcleanetc.ksh to also check for old versions of rc.emcpower and the security sub folder.
  • Update to check script checketcsshusretc.ksh to handle if links are created in /etc/ssh to /usr/etc for SSH configuration files.
Version: v13.07.02
  • Update to check script checklocales.ksh to include the -v option to display any filesets that can be uninstalled.
Version: v13.07.01
  • New check script checkoverthreadedness.ksh to check for a high load average relative to the count of lCPUs, called overthreadedness.
  • Update to check script checkmaxpgahead.ksh to update the output message to be more comprehensive.
  • New check script checkfreeframewaits.ksh to check for high values of free frame waits.
  • Update to check script checkcleanroot.ksh to check for any old .sh_history files.
Version: v13.06.29
  • New check script checktrustchkbosboot.ksh to check if running bosboot may show trustchk errors.
  • Update to check script checkdictionlist.ksh to find the default dictionlist entry in /etc/security/user independent of added spaces or not.
  • Update to check script checkopennfsexports.ksh to report properly which file systems are exported to everyone.
  • Update to check script checkcleanroot.ksh to avoid listing files with double forward slashes.
  • Update to check script checkfsmounted.ksh to correct a typo.
  • Update to check script checkexports.ksh to check both directories and files.
  • Update to check script checkaudio.ksh to provide the commands to remove any unnecessary inittab entries.
Version: v13.06.28
  • Update to check script checkcleanetc.ksh to also report on any unnecessary copies of /etc/netsvc.conf.
  • Update to check script checklocales.ksh to provide a command to preview the filesets to be installed.
Version: v13.06.27
  • Update to check script checkipaddress.ksh to alert if multiple IP addresses can be found in /etc/hosts for the server.
  • Update to check script checkipaddresshosts.ksh to handle a situation with multiple entries for the same server IP address in /etc/hosts.
  • Update to check script checkipaddresshosts.ksh to ignore any PowerHA nodes that may have booted with a different IP address then the one it is currently using as a service IP address.
  • Update to check script checkall.ksh to remove the From: entry for emails to avoid being unable to receive emails sent by checkall.ksh on those servers using a PostFix email relay with /etc/postfix/generic configured to only accept certain domains.
  • Update to check script checkuserconsistency.ksh to provide an error status if the usrck command shows any errors.
Version: v13.06.26
  • Update to check script checkhomedirs.ksh to ignore /home/tmp on a VIOS.
  • Update to check script checkcleanroot.ksh to also alert about .vi_history file in a non-root home directory.
  • Update to check script checkmailq.ksh to kill the mailq command when it takes more than 30 seconds to run.
  • Update to check script checkopennfsexports.ksh to avoid doing a nslookup if no DNS is configured.
  • Update to check script checkopennfsexports.ksh to reduce the number of times to run the showmount command to improve script performance.
  • Update to check script checkipaddresshosts.ksh to check the currently configured IP address versus the one configured in /etc/hosts.
Version: v13.06.25
  • Update to check script checkntpdate.ksh to check if the NTP configuration file exists before continuing with other checks.
  • Update to check script checkfsvsetcfilesystems.ksh to avoid showing an error on /aha (ahafs).
  • Update to check script checkpgspusage.ksh to avoid running the checks on a VIOS.
  • Update to check script checkviospgspusage.ksh to alert about any level of paging space usage on a VIOS.
  • Update to check script checkviosmemory.ksh to recommend 6 GB instead of 4 GB of memory for a VIOS.
  • Update to check script checkxntpd.ksh to check the full and not the abbreviated home directory path for the padmin user.
  • Update to check script checketherchannelip.ksh to avoid an error on an empty variable.
  • Update to check script checkfcslink.ksh to allow it to work properly on IBM blades.
  • Update to check script checkhacmpsnapshot.ksh to provide the command to remove any unnecessary files.
Version: v13.06.20
  • Update to check script checksddpcmsrv.ksh to check a second method to start pcmsrv in /etc/inittab.
Version: v13.06.19
  • Update to check script checkcleanroot.ksh to also check for redundant .sh_history files in the root home directory.
Version: v13.06.18
  • Update to check script checkuserchars.ksh to allow an underscore in user accounts.
Version: v13.06.17
  • New check script checketcsshusretc.ksh to check for any ssh files in /usr/etc, if files also exist in /etc/ssh.
  • New check script checknmonmulti.ksh to check if multiple instances of nmon are running.
  • New check script checklimitsdata.ksh to check the default setting for the data attribute in /etc/security/limits.
  • New check script checkmqmuser.ksh to check the user limits for the mqm user.
Version: v13.06.14
  • New check script checkinittababc.ksh to check the entries in /etc/inittab with run level a b and c.
Version: v13.06.11
  • Update to check script checkhacmplevel.ksh to represent newly released levels for PowerHA.
  • Update to check script checksystemfirmwarelevel.ksh to properly recommend the correct type of firmware level (EL or EM) on a Power6 system.
  • Update to check script checkrperf.ksh to add missing 8231-E1C model.
  • Update to check script checklvmstat.ksh to recommend to disable LVM statistics gathering via lvmstat.
Version: v13.05.21
  • Update to check script checkall.ksh to correct an XML typo.
Version: v13.05.19
  • Update to check script checkcleanroot.ksh to detect more files and folders that can be cleaned from root's home directory.
Version: v13.05.15
  • New check script checkuserchars.ksh to check for user accounts that use special characters in the user name.
Version: v13.05.13
  • Update to check script checkall.ksh to correct a typo in the comments.
  • New check script checkvaradmsa.ksh to check if there's any old data in /var/adm/sa.
  • New check script checkthreads.ksh to check if there are more than 40,000 threads on the system.
  • Update to check script checkfilesystemparent.ksh to exclude namefs file systems.
  • Update to check script checkfsvsetcfilesystems.ksh to correctly handle NFS file systems.
Version: v13.05.12
  • Update to check script checkcleanetc.ksh to also recommend removing old versions of mkuser.sys files.
  • Update to check script checkdocsearch.ksh to provide commands to stop IMNSearch and HTTPdlite.
  • Update to check script checklsof.ksh to check if there's a different lsof to be found in the search path.
  • New check script checkcleanroot.ksh to check for any files in root directory that can be cleaned up.
  • Update to check script checkhacmpautoverify.ksh to avoid reporting a cluster verification error when there isn't one.
Version: v13.05.11
  • New check script checkdevtty.ksh to check the permissions of /dev/tty.
  • Update to check script checkopensshlevel.ksh to recommend new available levels for OpenSSH.
Version: v13.05.08
  • Update to avoid CTRL-M characters in the DESCRIPTIONS file.
  • New check script checksddpaths.ksh to check if there are the same number of paths for each fibre adapter for SDD devices.
  • New check script checksddpcmpaths.ksh to check if there are the same number of paths for each fibre adapter for SDDPCM devices.
  • New check script checklspaths.ksh to check if there are the same number of paths for each device listed by lspath.
Version: v13.05.06
  • Update to check script checkcleanetc.ksh to add the /etc/qconfig file for files to check unnecessary copies of.
  • Update to check script checksystemfirmwarelevel.ksh to remove a typo.
  • New check script checkentitlementvsvirtprocs.ksh to check if the CPU entitlement in regards to the number of virtual processors makes sense for uncapped partitions.
Version: v13.05.02
  • New check script checkdefgwifvsipif.ksh to check if the default gateway is configured on the same network interface where also the primary IP address is configured on.
  • New check script checketherchannelip.ksh to check if the primary interface is configured on an EtherChannel for redundancy.
Version: v13.05.01
  • New check script checkfsmountoptions.ksh to check if the mount options for mounted file systems match the mount options of defined file systems.
  • New check script checkfsmounted.ksh to check if any file systems aren't mounted.
Version: v13.04.30
  • Update to check script checkall.ksh to remove a typo.
Version: v13.04.29
  • New check script checkcleansshdiroracle.ksh to check for any files in ~oracle/.ssh that can be cleaned up.
  • Update to check script checklparmemorysettings.ksh to warn if the maximum memory setting for a LPAR is much higher than the online memory setting, to avoid unnecessary Hypervisor reserved memory usage.
  • Update to check script checkall.ksh to provide both the online and desired memory setting in the System Configuration section, if the desired memory information is available.
  • New check script checkauthorizedkeysdupsoracle.ksh to check for duplicate entries or empty lines in the authorized_keys file for user oracle.
  • New check script checkauthorizedkeysentriesoracle.ksh to check for any invalid entries in the authorized keys files for user oracle.
  • New check script checkiddsapuboracle.ksh to check if the id_dsa.pub file for user oracle indeed has been generated on this host.
  • New check script checkidrsapuboracle.ksh to check if the id_rsa.pub file for user oracle indeed has been generated on this host.
  • New check script checkextshm.ksh to check if extended shared memory is enabled.
Version: v13.04.26
  • Update to check script checkall.ksh to prevent displaying the active interface name, when the IP address has been assigned through DHCP.
  • Update to check script checkall.ksh to display if an IP address has been assigned through DHCP or if it is a static defined IP address.
  • Update to check script checkrperf.ksh to display the correct rPerf value for 8205-E6D Power7+ model, and other D models.
  • Update to check script checkall.ksh to remove parentheses for system firmware information in the System Configuration Section for Power7+ models.
  • Update to check script checkdefaultgateway.ksh to display a more descriptive output.
  • Update to check script checkroothomesize.ksh to provide a more descriptive output and as well the command to resize the root user's file system.
  • Update to check script checkrootsize.ksh to provide the command to resize the root file system, if necessary.
  • Update to check script checksystemfirmwarelevel.ksh to recommend new available system firmware levels, as well as new Power7+ firmware levels.
  • Update to check script checktmpsize.ksh to provide the command to resize /tmp if necessary.
  • Update to check script checkvarsize.ksh to provide the command to resize /var if necessary.
  • Update to check script checkhomesize.ksh to provide the command to resize /home if necessary.
  • Update to check script checkvscsidiskattr.ksh to only check vSCSI disks that are in Available state.
  • Update to check script checkvscsifastfail.ksh to only check vSCSI adapters that are in Available state.
  • Update to check script checkdisksdefined.ksh to display the defined disks on a system.
  • Update to check script checkvscsipathto.ksh to only check vSCSI adapters that are in Available state.
  • Update to check script checkiddsapub.ksh to test if the hostname found in id_dsa.pub matches the FQDN of the system.
  • Update to check script checkidrsapub.ksh to test if the hostname found in id_rsa.pub matches the FQDN of the system.
Version: v13.04.25
  • New check script checkibmsupt.ksh to check if a sub-folder ibmsupt exists in /tmp, and recommend to clean it.
  • New check script checkhacmpsnapshot.ksh to check for any old cluster snapshots.
Version: v13.04.24
  • New check script checkemcpowerunmanageddisks.ksh to check for any unmanaged EMC disks (EMC provide LUNs not under PowerPath control).
Version: v13.04.23
  • Update to check script checkhacmpprinters.ksh to remove the hang message.
  • Update to check script checkpgsp.ksh to add a description why to size paging spaces equally.
Version: v13.04.21
  • Update to check script checkcommonfilesets.ksh to also recommend to uninstall fileset bos.ecc_client.rte.
Version: v13.04.19
  • Update to check script checkvarspoolqdaemonperms.ksh to correct a typo.
Version: v13.04.17
  • Update to check script checkdevicesfcpmpiolevel.ksh to provide a more descriptive output, along with updating to a higher required level of the host attachment software to be installed.
Version: v13.04.15
  • Update to check script checkmaxuproc.ksh to provide a more descriptive output.
  • New check script checknproc.ksh to check the nproc setting for all users versus the maxuproc system wide setting.
Version: v13.04.10
  • New check script checketherchanneltree.ksh to display the EtherChannel tree.
Version: v13.04.08
  • Update to check script checkrootvgdisksonfcs.ksh to correct a typo.
  • Update to check script checkshellsperms.ksh to correct a typo.
  • Update to check script checkhacmplevel.ksh to reflect new available Service Packs for PowerHA.
  • New check script checkiplvaryon.ksh to run ipl_varyon -i to display which disks are bootable.
Version: v13.04.07
  • Update to check script checkmqver.ksh to update the name to checkmqversion.ksh.
  • New check script checkmqlevel.ksh to check if the correct level of WebSphere MQ is installed.
  • New check script checksynclvodm.ksh to check if there are any logical volumes with missing data in the ODM.
Version: v13.04.04
  • New check script checkloopback.ksh to check if loopback devices exist, but are not mounted.
  • New check script checkecotools.ksh to check if EcoTools / Server Vantage is installed, but not used.
  • Update to check script checkcrontabcommands.ksh to exclude any commands listed within parantheses.
  • Update to check script checkbash.ksh to recommend version 4.2 of bash to be installed (update in AIX Toolbox for Linux Applications).
  • Update to check script checkhacmppaging.ksh to sort the output of lsps correctly on both the local and remote nodes to avoid reporting any differences between paging spaces in the 2-node cluster.
  • Update to check script checkpgsp.ksh to output the sizes of paging spaces correctly.
Version: v13.04.03
  • New check script checkupdate.ksh to check if there are any old update processes active.
  • Update to check script checkftpusers.ksh to suggest to use the ruser command to add user root to /etc/ftpusers.
Version: v13.04.01
  • Update to check script checkdictionlist.ksh to properly provide the command to add $USER to the dictionary file.
  • Update to check script checkrootrsh.ksh to test if rshd has been enabled in /etc/inetd.conf before continuing.
  • Update to check script checkhacmppaging.ksh to sort the output of lsps correctly on both the local and remote nodes to avoid reporting any differences between paging spaces in the 2-node cluster, when a paging space spans multiple disks in a volume group.
  • Update to check script checkpgsp.ksh to update the output of the script to indicate the size of the paging space.
Version: v13.03.29
  • Update to check script checkemcpowerpathdeadpaths.ksh to avoid reporting a dead path on any PowerPath LUNS with DEAD in the LUN ID.
Version: v13.03.28
  • New check script checkpasswordlength.ksh to check if the password length has been extended from default to 255.
Version: v13.03.27
  • Update to check script checkloginnamemax.ksh to provide a more detailed output if the max_logname attribute has been updated.
Version: v13.03.26
  • New check script checkmailroot.ksh to check if there are any emails for user root, and if so, provide a listing.
  • Update to check script checkexcluderootvg.ksh to also recommend excluding /var/spool/qdaemon in /etc/exclude.rootvg.
  • Update to check script checksudoersusers.ksh to avoid reporting an empty line as a user.
Version: v13.03.24
  • New check script checkvpathandhdiskinvg.ksh to check if there are both hdisk and vpath devices in a volume group.
Version: v13.03.22
  • Update to check script checkhacmpappscripts.ksh to check if application server start and stop script both exist and are executable. Also test if there's an exit 0 command at the top of any application server start and stop script.
Version: v13.03.21
  • New check script checkcrontabcommandsexec.ksh to check if the commands in crontab files are executable.
  • New check script checkinetdcommandsexec.ksh to check if the commands in the /etc/inetd.conf file are executable.
  • New check script checkinittabcommandsexec.ksh to check if the commands in the /etc/inittab file are executable.
Version: v13.03.20
  • Update to the description of check script checkdevicesfcpmpiolevel.ksh to reflect the newest preferred level of the SDDPCM host attachment script.
  • Update to check script checkscript.ksh to check more specifically for processes that either run script or /usr/bin/script only.
  • Update to check script checkcleanetc.ksh to also check for any files with a dash in the name.
Version: v13.03.18
  • New check script checkstricthostkeychecking.ksh to check if StrictHostKeyChecking isn't disabled in /etc/ssh/ssh_config.
  • New check script checkuserknownhostsfile.ksh to check if UserKnownHostsFile isn't configured in /etc/ssh/ssh_config.
  • Update to check script checkemcodmlevel.ksh, to check for the newest ODM definitions for EMC PowerPath, including an update to the description of this check due to a new support site of EMC.
  • Update to check script checkentspeed.ksh to add an extra check when testing EtherChannel adapters.
  • Update to check script checkentspeed.ksh to ignore any adapters that are running at speed Autonegotiation, but are already updated to 1000_Full_Duplex.
  • Update to check script checkhacmppaging.ksh to avoid reporting an error if paging spaces have been created on different nodes in volume groups that have different PP sizes.
  • Update to check script checkhacmprootvg.ksh to allow for different PP sizes to be used in rootvg volume groups across 2 HACMP/PowerHA nodes in a cluster.
Version: v13.03.14
  • Update to check script checkhacmppath.ksh to check for separate PowerHA/HACMP entries in $PATH.
  • Update to check script checkemcodmlevel.ksh to check for EMC ODM definitions version 6.0.0.2.
  • Update to check script checkxntpd.ksh to check if two NTP servers are present in /etc/ntp.conf.
  • Update to check script checkoracleage.ksh to provide a more descriptive output for changing the oracle users' maxage attribute.
  • Update to check script checkoraclelogincount.ksh to provide a more descriptive output for changing the oracle users' unsuccessful_login_count attribute.
  • Update to check script checkoracleloginretries.ksh to provide a more descriptive output for changing the oracle users' loginretries attribute.
  • Update to check script checkrootage.ksh to provide a more descriptive output for changing the root users' maxage attribute.
Version: v13.03.12
  • Update to check script checkrootpassword.ksh to check for another common root password.
Version: v13.03.11
  • Update to check script checkvgautoon.ksh to provide the command to automatically vary on the volume group at system start.
  • New check script checkenhconcurrentvg.ksh to check for any volume groups in enhanced-concurrent mode, while no cluster software is installed.
  • Update to check script checkcorecompression.ksh to provide commands to correct any issues found.
Version: v13.03.08
  • Update to check script checkrperf.ksh to include new Power7+ models.
  • Update to check script checkall.ksh to include new Power7+ models.
Version: v13.03.07
  • Update to check script checkuseraccounts.ksh to avoid displaying an error if the time_last_login attribute for a user does not exist.
Version: v13.03.06
  • Update to check script checkhacmpautoverify.ksh to add an extra check to see if a cluster definition exists before moving forward.
Version: v13.03.05
  • New check script checkusysfault.ksh to check the system attention indicator.
Version: v13.03.03
  • Update to check script checkaso.ksh to check if the aso subsystem is on file before proceeding.
  • Update to check script checkcoredir.ksh to check first if a core file in the root file system exists, before checking if the core directory exists.
  • Update to check script checkextendedhistory.ksh to supply the command when EXTENDED_HISTORY is missing in /etc/environment.
  • Update to check script checkinstalldate.ksh to avoid a find error when multiple directories exist.
Version: v13.03.02
  • New check script checksarperms.ksh to check if the permissions of /usr/bin/ssh are correctly set.
  • Update to check script checksudoersduplicates.ksh to handle situations where entries longer than 2048 characters exist in /etc/sudoers.
Version: v13.03.01
  • Update to check script checkrootpassword.ksh to check for an additional common password for user root.
  • New check script checksshperms.ksh to check if the permissions of /usr/bin/ssh are correctly set.
  • New check script checkscpperms.ksh to check if the permissions of /usr/bin/scp are correctly set.
  • New check script checkdshperms.ksh to check if the permissions of /usr/bin/dsh are correctly set.
  • New check script checkdcpperms.ksh to check if the permissions of /usr/bin/dcp are correctly set.
  • Update to check script checkusrspoollink.ksh to remove a typo.
Version: v13.02.28
  • Update to check script checkentspeed.ksh to redirect any errors of the lsattr command to /dev/null.
  • Update to check script checksystemfirmwarelevel.ksh to account for newly release system firmware levels.
  • Update to check script checkzsnap.ksh to avoid reporting an error when zsnap is not installed.
  • Update to check script checkmotdperms.ksh to provide the command to correct ownership issues for file /etc/motd.
Version: v13.02.27
  • Update to check script checkauthorizedkeysdups.ksh to avoid reporting multiple slashes in any of the output file names.
Version: v13.02.25
  • New check script checktop.ksh to check if freeware.top.rte is installed.
  • New check script checkscript.ksh to check if there are any script processes active without a parent process.
  • Update to check script checkjfslogoverwritten.ksh to handle overwritten JFS log errors for JFS2 file systems with inline logs properly.
Version: v13.02.21
  • New check script checkzsnap.ksh to check if the latest version of zsnap is installed.
  • New check script checkdevscan.ksh to check if the latest version of devscan is installed.
Version: v13.02.20
  • Update to check script checkdictionlist.ksh to display the command to add a missing $USER entry to /usr/share/dict/words.
  • Update to check script checkshellsperms.ksh to provide the command to correct ownership issues on /etc/shells.
  • Update to check script checknonaixlvsinrootvg.ksh to exclude listing any sysdump devices.
  • Update to check script checksuid.ksh to avoid reporting file /opt/freeware/sbin/suexec, part of the httpd RPM.
Version: v13.02.12
  • New check script checkradius.ksh to check if RADIUS is installed and not in use.
Version: v13.02.10
  • Update to check script checkspooler.ksh to remove a typo.
  • Update to the description of check script checkdictionlist.ksh to remove a typo.
Version: v13.02.09
  • Update to check script checkftpusers.ksh to provide the command to create /etc/ftpusers, if it is missing.
  • Update to check script checkcore.ksh to provide the command to set the default core limit in /etc/security/limits.
Version: v13.02.08
  • Update to check script checkexcluderootvg.ksh to exclude several other directories from mksysb backups.
  • Update to check script checkhacmphostconfig.ksh to also check the weight between 2 PowerHA nodes.
Version: v13.02.07
  • Update to check script checkdevicesfcpmpiolevel.ksh to reflect the new Host Attachment for SDDPCM on AIX.
  • Update to check script checkhacmplevel.ksh to reflect new Service Packs released for PowerHA.
  • New check script checkviosentitlement.ksh to check the CPU entitlement of the Virtual I/O Server LPAR.
  • New check script checkviosweight.ksh to recommend setting the weight of the Virtual I/O Server LPAR to 255.
  • New check script checkviosvirtproc.ksh to check the number of virtual processors of the Virtual I/O Server LPAR.
  • New check script checkviosmemory.ksh to check the amount of memory of the Virtual I/O Server LPAR.
  • Update to checkall.ksh to display the active physical CPUs in system in the system configuration section.
  • Update to check script checkcleanetc.ksh to also check for old copies of snmpdv3.conf.
  • Update to check script checkfcslink.ksh to avoid checking any Blade Expansion Cards for fibre channel adapters within blades.
  • Update to check script checkentspeed.ksh to avoid displaying an error for 10 Gbit Ethernet adapters that don't have a media_speed attribute.
Version: v13.02.06
  • Update to check script checktsmbackup.ksh to correct a typo.
  • Update to check script checkrootlinks.ksh to test additionally if a file or folder exists instead of a link.
  • New check script checkmanpath.ksh to check that environment variable MANPATH is either zero or set to /usr/share/man.
  • Update to check script checknumcmdelems.ksh to check if attributes num_cmd_elems and max_xfer_size have been tuned too low.
Version: v13.02.05
  • Update to check script checkopenssllevel.ksh to add a comment for openssl level 0.9.8.2400, included in AIX 7.1 TL2.
  • Update to check script checktsmbackup.ksh to allow for better checking of the schedlog file, so it works on AIX and Linux.
Version: v13.02.03
  • Update to the description of check script checlocales.ksh.
Version: v13.01.31
  • Update to check script checksnmp.ksh to check for version 3 of snmpd before proceeding with the remainder of the script.
Version: v13.01.29
  • New check script checkcfgperf.ksh to check if entry cfgperf is taken out of inittab.
  • New check script checklocales.ksh to check for any locale specific filesets that might be deinstalled.
  • Update to check script checkinittaberrs.ksh to not report an error if the failing inittab entry has been removed from /etc/inittab.
Version: v13.01.28
  • Update to check script checkcommonfilesets.ksh to check for 2 more filesets that can be safely uninstalled.
  • Update to check script checkifconfig.ksh to avoid checking any interfaces that are not up.
  • Update to check script checkuserpassword.ksh to correctly check for user's passwords.
  • Update to check script checkdocsearchfilesets.ksh to check for a couple more filesets that can be safely uninstalled.
Version: v13.01.27
  • New check script checkecmpmond.ksh to check the EMC PowerPath management daemon.
  • Update to check script checkgroupconsistency.ksh to filter out the group in case of Bad format messages when running grpck.
  • New check script checkgroupentrieslength.ksh to check if any entries in /etc/group have more users than the defined limit.
  • Update to the description of check script checkmailq.ksh to explain how to correct WHO AM I warning messages of the mailq and newaliases commands.
  • Update to check script checkportmap.ksh to avoid recommending to disable portmap if the wrong IP address for a server is specified in /etc/hosts.
  • Update to check script checkrpcinfo.ksh to use localhost as a hostname to query RPC information, just in case if the wrong IP address is specified in /etc/hosts.
  • New check script checkhostvsnslookup.ksh to check the IP address from host vs nslookup.
  • Update to check script checkshowmount.ksh to only run showmount -a when the IP address of the host command matches the IP address from the nslookup command.
  • Update to check script checkopennfsexports.ksh to only run showmount when the IP address of the host command matches the IP address from the nslookup command.
  • Update to the description of check script checksnmpd.ksh to correct a couple of typos.
  • Update to check script checktsmsched.ksh to also check for /bin/dsmc in /etc/inittab to determine if the TSM scheduler is started from /etc/inittab.
  • New check script checkjfs2frozen.ksh to check for any frozen JFS2 file systems.
  • Update to check script checkuidunique.ksh to reduce the run time of the script with 63% on systems with a large number of user accounts configured.
  • Update to check script checkuseraccounts.ksh to reduce the run time of the script with 39% on systems with a large number of user accounts configured.
  • Update to check script checkusernopassword.ksh to reduce the run time of the script with 72% on systems with a large number of user accounts configured.
Version: v13.01.26
  • Update to check script checkcpumodel.ksh to display the CPU model type as well.
  • Update to check script checkall.ksh to avoid reporting two IP addresses for an AIX system in the system configuration, when multiple default gateways are defined in the ODM.
  • Update to check script checkemcodemlvel.ksh to display any different levels of EMC ODM definitions installed, if any.
Version: v13.01.25
  • Update to check script checkpvminpbuf.ksh to avoid reporting an error when tunable pv_min_pbuf is tuned to the default of 512.
  • Update to check script checkrhosts.ksh to avoid reporting empty lines, if any are present in ~root/.rhosts.
  • Update to check script checkcleanetc.ksh to avoid reporting indexed files as possible files to be removed from /etc.
  • New check script checknfsaccess.ksh to check if any NFS mounted file systems can be accessed.
Version: v13.01.24
  • New check script checksadc.ksh to check if old sadc processes are active.
  • New check script checkadmgroup.ksh to check for the correct members of the adm group.
  • New check script checktopasrec.ksh to check if there's a process topasrec active using a large amount of CPU.
  • Update to check script checkhacmpmajor.ksh to also alert about different permissions of shared volume groups.
Version: v13.01.08
  • Update to check script checkall.ksh to exit if there are zero scripts selected to run.
  • Update to check script checkemcpowerpathlevel.ksh to check for the latest level of EMC PowerPath to be installed.
Version: v13.01.07
  • Update to check script checksudolog.ksh to handle sudo log files that are linked instead of actual files, and to also warn about any sudo log files that don't exist.
  • New check script checksudoersdefaults.ksh to check if the necessary defaults have been set in /etc/sudoers.
Version: v13.01.06
  • New check script checksudocommandsexec.ksh to check if the commands in sudoers file have the execute bit enabled.
  • Update to check script checksudocommands.ksh to also handle commands defined in /etc/sudoers that are not defined via Cmnd_Alias.
  • New check script checkfsvsetcfilesystems.ksh to check for all file systems mounted that a stanza in /etc/filesystems exists.
Version: v13.01.03
  • New check script checkeditor.ksh to check if the value of EDITOR is set to a valid editor.
Version: v12.12.31
  • New check script checkcrondumpctrl.ksh to check if a dumpctrl entry is present in crontab.
Version: v12.12.26
  • Update to check script checkperlversion.ksh to check for the correct version of Perl installed, now that new versions of Perl have been released in the IBM AIX Web Download Pack.
Version: v12.12.25
  • Update to check script checklsoflevel.ksh to check for new available level of lsof, version 4.85.
Version: v12.12.24
  • Update to check script checkvmmmpsizesupport.ksh to avoid generating an error when vmo returns a non-numerical output.
  • Update to check script checkgroup.ksh to provide commands to correct issues found.
  • Update to check script checkuseraccounts.ksh to only display the first 100 entries, and the command to view the rest.
  • Update to check script checkauthconsistency.ksh to only display the first 100 entries, and the command to view the rest.
  • Update to check script checkgroupconsistency.ksh to only display the first 100 entries, and the command to view the rest.
  • Update to check script checkuserconsistency.ksh to only display the first 100 entries, and the command to view the rest.
  • Update to check script checkhacmpusers.ksh to only display the first 10 user entries, and the command to view the rest.
Version: v12.12.23
  • Update to check script checkerrdemon.ksh to provide commands to correct any issues found.
  • Update to check script checkfcsnetworkaddress.ksh to only list fibre channel adapters that are in an Available state.
  • Update to the description of check script checkbootlist.ksh.
  • New check script checkiplblv.ksh to check if /dev/ipl_blv exists.
  • Update to check script checkpowermgt.ksh to provide the command to remove the pmd entry in /etc/inittab.
  • Update to check script checkrootvglv.ksh to check for file system names instead of logical volume names.
  • Update to check script checktapeblocksize.ksh to check only for tape drive devices that are in an available state.
Version: v12.12.22
  • Update to check scripts checkhacmpcllsserv.ksh, checkhacmpcllsservperms.ksh, checkhacmpconcurrentvg.ksh, checkhacmpconfigfiles.ksh, checkhacmpcrontabs.ksh, checkhacmpdumpspace.ksh, checkhacmpemgr.ksh, checkhacmpfilesystems.ksh, checkhacmphostconfig.ksh, checkhacmpioo.ksh, checkhacmplsvg.ksh, checkhacmpmajor.ksh, checkhacmpnfs.ksh, checkhacmpno.ksh, checkhacmposlevel.ksh, checkhacmppackages.ksh, checkhacmppaging.ksh, checkhacmpprinters.ksh, checkhacmppvid.ksh, checkhacmprawlvperms.ksh, checkhacmprootvg.ksh, checkhacmpsharedvgs.ksh, checkhacmpusers.ksh, checkhacmpvmo.ksh and checkhostsvsdns.ksh to redirect output of get_local_nodename and cllsnode commands, and to exit if the local_nodename can't be determined.
  • Update to check script checkemptyvg.ksh to only run the cl_lsvg command if the local_nodename can be determined.
  • Update to check script checkall.ksh to display the PowerHA/HACMP level in the configuration section, if PowerHA/HACMP is installed.
  • Update to check script checkcronlogfailed.ksh to display the failed cron jobs as well.
  • Update to check script checkhostsnonnumeric.ksh to avoid showing an error when no output is displayed.
Version: v12.12.20
  • Update to check script checkcoredir.ksh to provide the commands to run to correct an issue found.
  • Update to the description of check script checkhostmibd.ksh.
  • Update to check script checksudolog.ksh to test if the sudo log file exists.
  • Update to check script checkuprintfd.ksh to provide the commands to run to correct an issue found.
  • Update to check script checkusrbin.ksh to check if the owner.group is either bin.bin or root.system.
  • Update to check script checkvar.ksh to allow the owner of /var to be either bin.bin or root.system.
  • Update to check script checksudolog.ksh to account for servers with multiple log files defined in /etc/sudoers.
Version: v12.12.19
  • New check script checkhistfileexists.ksh to check if the history file for user root exists.
  • Update of the copyright message in all check scripts.
  • New check script checkaliaseslink.ksh to check if the link /etc/aliases to /etc/mail/aliases exists.
Version: v12.12.18
  • Update to check script checksudolog.ksh to check the permissions and owner of the sudo log file.
Version: v12.12.06
  • Update to check script checkall.ksh to add model 8204 to the list of known servers.
Version: v12.12.05
  • New check script checklargesend.ksh to check if attribute large_send for Ethernet adapters is enabled for those adapters running at 1 GB or more.
  • New check script checkvmmmpsizesupport.ksh to check if 64K page size support has been disabled.
Version: v12.12.02
  • New check script checkrootlinks.ksh to check if the links in / exist with the proper owner, group, permissions and targets.
Version: v12.11.30
  • Update to check script checkjfs2.ksh to make sure it works correctly on AIX 7.1 TL2.
  • Update to check script checkdefaultnofiles.ksh to replace the grep with the lssec command for a better way to determine the default nofiles setting.
  • Update to check script checktsmconfig.ksh to check if either dsm.opt or dsm.sys file is empty.
  • Update to check script checknoatime.ksh to alert for any non-rootvg JFS2 file systems not using the noatime mount option.
  • Update to check script checkall.ksh to properly align HTML tables in the output of UNIX Health Check for AIX when viewed in Internet Explorer.
Version: v12.11.29
  • New check script checkgangliagmetadconf.ksh to check the configuration file for gmetad of Ganglia.
  • Update to check script checkgangliagmondlevel.ksh to recommend using version 3.4.0 of Ganglia gmond.
  • New check script checkgangliagmetadlevel.ksh to check the level of the gmetad for Ganglia, if installed.
  • Update to check script checkexcluderootvg.ksh to recommend to add /var/spool/mqueue to /etc/exclude.rootvg.
  • Update to check script checktsmsched.ksh to avoid reporting an error if the 64-bit version of the TSM scheduler is used to start in /etc/inittab.
Version: v12.11.28
  • New check script checkcrontime.ksh to check if the cron daemon is running at a different time versus the system time.
  • New check script checkgangliagmetadrunning.ksh to check if the Ganglia gmetad process is running, if it is installed.
Version: v12.11.27
  • Update to check script checkxntpd.ksh to include checking if the driftfile and tracefile is configured in /etc/ntp.conf, that these file exist, and have the proper owner.group and permissions set.
  • New check script checkvaradm.ksh to check the permissions of /var/adm.
  • New check script checkvartmp.ksh to check the permissions of /var/tmp.
  • Update to check script checkhacmpno.ksh to avoid checking the network option poolbuckets in AIX 6.1 TL7 as it has become a restricted tunable.
  • New check script checkdocsearchfileset.ksh to check if document search engine filesets are installed.
  • New check script checkgames.ksh to check if bos.games filesets are installed.
  • Update to check script checkvmo.ksh to generate a warning only (and no error) in minfree or maxfree have been tuned to higher values.
  • New check script checkcorecompress.ksh to check if attribute core_compress is set to on in /etc/security/user.
Version: v12.11.26
  • Update to check script checkcleanetc.ksh to exclude rc.tcpip.tr.backup from being reported as a file to be cleaned up.
  • Update to check script checksudoersusers.ksh to avoid reporting users double.
  • Update to check script checktivolitivguid.ksh to adjust the new tivoli.tivguid required fileset levels.
  • Update to check script checkmtu.ksh to properly advise to set tcp_mssdflt to 1448 if rfc1323 is enabled.
Version: v12.11.23
  • Update to check script checkinvscout.ksh to avoid checking the Inventory Scout fileset when run inside a Workload Partition.
  • Update to check script checkinvscoutmup.ksh to avoid checking the Inventory Scout fileset when run inside a Workload Partition.
  • Update to check script checkloginherald.ksh to add another way of determining the hostname if the lsattr command does not return a hostname.
  • Update to check script checklistvgbackup.ksh to avoid checking the last mksysb backups in a Workload Partition, because mksysb is not supported in a WPAR.
  • Update to check script checkmksysb.ksh to avoid checking the mksysb status in a Workload Partition, because mksysb is not supported in a WPAR.
  • Update to check script checkrootfsize.ksh to provide a more intuitive output and the command to run to correct the fsize issue.
  • Update to check script checkmissingowners.ksh to avoid checking file systems that are in use for Workload Partitions.
  • Update to check script checkossvfsnb.ksh to avoid checking file systems that are in use for Workload Partitions.
  • Update to check script checksuid.ksh to avoid checking file systems that are in use for Workload Partitions.
  • Renamed check script checklswpar.ksh to checkwpar.ksh.
  • New check script checkwparactive.ksh to check if any WPARs are non-active.
  • New check script checkwparrootvg.ksh to check if there are any WPARs created in rootvg.
Version: v12.11.21
  • Update to check script checkmanualfs.ksh to avoid checking file systems that are in use for Workload Partitions.
  • Update to check script checkmultiplelv.ksh to avoid checking file systems of type namefs in use for Workload Partitions.
  • Update to check script checkfsmountpoint.ksh to avoid checking file systems of Workload Partitions in a defined state.
  • Update to check script checkfilesystemparent.ksh to avoid reporting file system /wpars in use for Workload Partitions.
  • Update to check script checkfsdirwrite.ksh to avoid checking file systems of type namefs in use for Workload Partitions.
  • Update to check script checkfswrite.ksh to avoid checking file systems of type namefs in use for Workload Partitions.
  • Update to check script checkmissingowners.ksh to avoid checking file systems in use for Workload Partitions.
  • Update to check script checkossvfsnb.ksh to avoid checking for file systems in use for Workload Partitions.
  • Update to check script checksuid.ksh to avoid checking for files with the SUID bit set in file systems in use for Workload Partitions.
  • Update to check script checnetstat.ksh to avoid an error on displaying the routing table when UNIX Health Check for AIX is run within a Workload Partition.
  • Update to check script checkall.ksh to display the IP address, the Subnet Mask, and the memory of a WPAR in the system configuration section if UNIX Health Check for AIX is run within a WPAR.
  • Update to check script checkamepat.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checkbootlist.ksh to avoid checking the bootlist when run inside a Workload Partition.
  • Update to check script checkconsole.ksh to avoid suggesting to enable the console login when run inside a Workload Partition.
  • Update to check script checkcpuload.ksh to avoid checking the CPU load when run inside a Workload Partition.
  • Update to check script checkdefaultgateway.ksh to avoid providing an ERROR status when no default gateway can be determined when run inside a Workload Partition.
  • Update to check script checkdumpctrlfreespace.ksh to avoid checking the system dump devices when run inside a Workload Partition.
  • Update to check script checkentcap.ksh to update the commands to determine mode and type of LPAR when run inside a Workload Partition.
  • Update to check script checketcfilesystems.ksh to avoid checking Global file systems when run inside a Workload Partition.
  • Update to check script checkfilesystemerrors.ksh to avoid checking Global file systems when run inside a Workload Partition.
  • Update to check script checkipldevice.ksh to avoid checking the ipldevice when run inside a Workload Partition.
  • Update to check script checkjfs2.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checklargefilesinrootvg.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checkmanualfs.ksh to avoid checking Global file systems when run inside a Workload Partition.
  • Update to check script checkmemorygoodsize.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checkmemvscpu.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checkmirror.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checkmtu.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checknonaixlvsinrootvg.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checknooptions.ksh to no longer determine the mtu size, as this variable is not used in the script anymore.
  • Update to check script checkpgsp.ksh to avoid running within a Workload Partition, as it has no paging spaces.
  • Update to check script checkpgspminsize.ksh to avoid running within a Workload Partition, as it has no paging spaces.
  • Update to check script checkpgspusagevsmemory.ksh to avoid running within a Workload Partition, as it has no paging spaces.
  • Update to check script checkpinggateway.ksh to avoid running within a Workload Partition, which has no default gateway defined.
  • Update to check script checkpvmissing.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checkrootvgdisks.ksh to avoid reporting an error on rootvg with zero disks when run inside a Workload Partition.
  • Update to check script checkrootvgdisksonfcs.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checkrootvgevendisks.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checkrootvglv.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checkrootvgmajor.ksh to avoid reporting an error on rootvg when run inside a Workload Partition.
  • Update to check script checksmtsupport.ksh to avoid running within a Workload Partition as the SMT boot mode is not supported within a WPAR.
  • Update to check script checkstale.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checksysdump.ksh to avoid reporting errors when run inside a Workload Partition.
  • Update to check script checksysdumpcheck.ksh to avoid reporting errors when run inside a Workload Partition.
  • Update to check script checksysdumpdisks.ksh to avoid reporting errors when run inside a Workload Partition.
  • Update to check script checksysdumpmirror.ksh to avoid reporting errors when run inside a Workload Partition.
  • Update to check script checksysdumptype.ksh to avoid reporting errors when run inside a Workload Partition.
  • Update to check script checksysdumpupperbound.ksh to avoid reporting errors when run inside a Workload Partition.
  • Update to check script checktopcpuusers.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checkunusedlv.ksh to avoid reporting an error when run inside a Workload Partition.
  • Update to check script checkvgsize.ksh to avoid reporting an error when run inside a Workload Partition.
Version: v12.11.20
  • New check script checkemgrb.ksh to check for an entry rcemgr in /etc/inittab that runs /usr/sbin/emgr -B, which no longer works.
  • Update to check script checksshsyslogfacility.ksh to ensure that SyslogFacility is set to LOCAL1 and LogLevel is set to DEBUG1 in /etc/ssh/sshd_config.
  • Update to check script checkusrbinlinks.ksh to provide the comamand to remove any unnecessary links.
  • Update to check script checkusrliblinks.ksh to provide the comamand to remove any unnecessary links.
  • New check script checkcleansshdir.ksh to check for any files in ~root/.ssh that can be cleaned up.
  • New check script checksshdirfiles.ksh to check the file permissions and ownership of files in ~root/.ssh.
  • Update to check script checkpatrolpukremote.ksh to also check the most penalized processes and see if pukremotexec.xpc is among them.
  • Update to check script checkpatrolpukserver.ksh to also check the most penalized processes and see if pukserver.xpc is among them.
  • New check script checkpatrolagent.ksh to check if BMC's PatrolAgent is using a lot of CPU.
  • New check script checkpatrolagent to check if BMC's PatrolAgent is using a lot of CPU.
  • Update to check script checkhomeroot.ksh to also check the group of the root users' home directory.
  • New check script checkrootfs.ksh to check the file permissions and ownership of the root file system.
  • New check script checklswpar.ksh to check if there are any Workload Partitions.
  • Update to check script checkjfs2.ksh to avoid checking file systems with type namefs in use for Workload Partitions.
Version: v12.11.19
  • Update to check script checkresolvconf.ksh to allow both domain and search entries in /etc/resolv.conf.
  • Update to check script checkresolvconf.ksh to determine the correct domain name if both the search and domain entries are present in /etc/resolv.conf.
  • Update to check script checketchostsdups.ksh to avoid reporting duplicate IP addresses that have different host names.
  • New check script checknmonversion.ksh to check the version of nmon in use.
Version: v12.11.18
  • Update to check script checkcleanetc.ksh to also check for old versions of rc.tcpip and rc.net.
Version: v12.11.16
  • Update to check script checkjfslogoverwritten.ksh to report an error when an overwritten jfs log situation occurs.
  • Update to check script checkjfslogsize.ksh to avoid reporting that a jfs log should be increased with 0MB.
  • Update to check script checkcleanetc.ksh to also check for old copies of of /etc/hosts.equiv.
  • Update to check script checksudoersusers.ksh to avoid reporting on User_Alias entries that have no spaces or tabs.
Version: v12.11.15
  • New check script checksudovisudopermissions.ksh to check the permissions and existance of /opt/freeware/sbin/visudo.
Version: v12.11.13
  • Update to check script checkcleanetc.ksh to check more files in /etc to be cleaned.
  • Update to check script checkemptyvg.ksh to avoid reporting errors when HACMP/PowerHA is installed, but not in use.
  • Update to check script checkfilesystemerrors.ksh to avoid reporting errors when HACMP/PowerHA is installed, but not in use.
  • Update to check script checkhacmpfilesystems.ksh to avoid reporting errors when HACMP/PowerHA is installed, but not in use.
  • Update to check script checksudoersusers.ksh to avoid reporting errors on Host_Alias.
  • Update to check script checkhacmpunmanaged.ksh to avoid reporting errors when HACMP/PowerHA is installed, but not in use.
  • Update to check script checkvisual.ksh to avoid reporting an error if the which commands fails.
  • Update to check script checkrperf.ksh to match version 19 of the rPerf script, released by Nigel Griffiths IBM in October 2012. Also corrected a minor error for the PS703 and PS704 blades.
Version: v12.11.12
  • New check script checkhostnamelocalhost.ksh to check if the hostname is localhost.
  • Update to check script checkfailedloginsize.ksh to check if file /etc/security/failedlogin is over 100 MB before running the last command on it to avoid unnecessary high CPU usage.
  • Update to check script checkhomedirs.ksh to reduce the time necessary to check for any home directories that don't start with a slash.
Version: v12.11.08
  • Update to checkmailq.ksh to report any files in /var/spool/mqueue when the mailq command reports zero messages in the queue.
Version: v12.11.07
  • Update to check script checkoraclelogincount.ksh to account for the oracle user account not having an unsuccessful_login_count attribute at all.
  • Update to check script checkrootlogincount.ksh to account for the root user account not having an unsuccessful_login_count attribute at all.
  • New check script checkoracleage.ksh to check if password aging for user oracle is disabled.
  • Update to check script checkdiskqfull.ksh to check for sqfull of 10 or higher instead of 100 or higher.
Version: v12.11.05
  • Update to check script checkall.ksh to include the runtime of scripts, and to alert if a script ran for more than 120 seconds.
  • Update to check script checkmkuserdefault.ksh to suggest commands to run to correct issues found.
  • Update to check script checksudoersusers.ksh to also notify of any users that don't exist that have been set up without User_Alias in /etc/sudoers.
  • New check script checkoraclelogincount.ksh to check if the unsuccessful_login_count attribute for user oracle is 0.
  • New check script checkoracleloginretries.ksh to check if the loginretries attribute for user oracle is set to 0 (disabled).
  • New check script checkrootlogincount.ksh to check if the unsuccessful_login_count attribute for user root is 0.
Version: v12.11.04
  • Update to check script checkhostsnonnumeric.ksh to avoid reporting on lines with only one space.
Version: v12.11.01
  • Update to check script checkhostsnonnumeric.ksh to exclude reporting the IPv6 loopback IP address as non-numeric.
  • Update to check script checknumcmdelems.ksh to correctly show any counts higher than zero.
Version: v12.10.31
  • Update to check script checkall.ksh to skip running any inventory scripts if the -g flag is used. Inventory scripts result in a zero returncode anyway, so running them with the -g option which suppresses output of any zero returncode (successful) scripts is useless. By not running the inventory scripts up to 33% of the runtime of checkall.ksh can be achieved.
Version: v12.10.30
  • New check script checkconsolefpopen.ksh to check for any fp_open errors in the error report on the console.
  • Update to check script checkall.ksh to remove the colspan attribute in the HTML output.
  • Update to check script checkall.ksh to properly handle word wrapping in HTML output in multiple browsers (Chrome and FireFox).
  • Update to check script checkall.ksh to skip any VIOS and/or HACMP/PowerHA scripts if those are not applicable to the system UNIX Health Check for AIX is running on.
Version: v12.10.29
  • Update to check script checkntpconf.ksh to exit on VIO servers.
  • New check script checkviosntpconf.ksh to check the NTP configuration for VIO servers.
  • Update to check script checkntpdate.ksh to accommodate both ntp.conf files on regular AIX systems and VIO servers.
  • Update to check script checkxntpd.ksh to accommodate both ntp.conf files on regular AIX systems and VIO servers.
Version: v12.10.25
  • Update to the description of check script checkhomedirs.ksh.
  • Update to check script checksmtsupport.ksh to check the SMT boot mode as well.
  • Update to check script checksuid.ksh to ignore any SUID files in /usr/lpp.
  • Update to check script checkall.ksh to include the time zone for the start time in the reports.
Version: v12.10.24
  • Update to check script checkcrontabdups.ksh to avoid reporting empty lines as duplicates.
  • Update to check script checkquorum.ksh to sort the output of the volume groups.
  • New check script checkinstalldate.ksh to display the dates and levels of AIX that have been installed on the AIX system.
Version: v12.10.23
  • Update to check script checkall.ksh to support XML output using the -x flag.
  • Update to check script checkcpumodel.ksh to suggest to replace any Power5 hardware or older.
Version: v12.10.22
  • New check script checkscraidmgr.ksh to check the settings for any SCSI RAID arrays.
Version: v12.10.18
  • Update to check script checkfcslink.ksh to check for an updated version of the usage statement of the fcstat command before checking the link status.
  • Update to check script checkall.ksh to report the VIO server level in the system configuration section, when run on a VIO Server.
  • Update to check script checkall.ksh to report that no name servers are configured in the system configuration section if no name servers are present in /etc/resolv.conf.
  • Update to check script checkrperf.ksh to match version 18 of the rPerf script, released by Nigel Griffiths IBM in October 2012. Also added model 7778-23X_4200.
  • Update to check script checkall.ksh to add the Power7 770 and 780 D models.
Version: v12.10.17
  • Update to check script checksshpermitrootlogin.ksh to allow without-password as an option for PermitRootLogin in sshd_config as well.
Version: v12.10.15
  • New check script checkemcpowermtpaths.ksh to check the number of paths for each adapter.
  • New check script checklgtermdma.ksh to check the setting for lg_term_dma for each fibre channel adapter.
  • Update to check script checkfcmaxxfersize.ksh to check up front which fibre adapters are active before running the fcstat command, which improves the runtime of the script.
  • New check script checknumcmdelems.ksh to check if the max_xfer_size and num_cmd_elems of fibre channel adapters require tuning.
  • New check script checkusrsysinstimages.ksh to check if /usr/sys/inst.images is excluded in /ext/exclude.rootvg if it contains over 100 MB.
  • Update to check script checklargefilesinrootvg.ksh to exclude /usr/sys/inst.images from the output.
  • New check script checkusrliblinks.ksh to check if the targets for links in /usr/lib exist.
  • New check script checkusrbinlinks.ksh to check if the targets for links in /usr/bin exist.
  • New check script checkaudio.ksh to check if the audio entries have been disabled or removed from /etc/inittab.
  • Update to check script checkoslevel.ksh to recommend using TL7 for AIX 6.1.
Version: v12.10.14
  • Update to the description of checkhomedirs.ksh.
Version: v12.10.12
  • Update to check script checkall.ksh to correctly display the description of checks in verbose and log format output, even if a check script does not generate any output.
Version: v12.10.11
  • Update to check script checkhacmpemgr.ksh to avoid incorrectly reporting ssh issues when there is no efix data on the system.
  • Update to check script checkemptyvg.ksh to avoid reporting empty volume groups which are configured within PowerHA as disk heart beat volume groups.
  • Update to check script checkhacmpsnmpcommunityname.ksh to avoid checking the SNMPD version in use, as checksnmpdversion.ksh checks the same item already.
  • Update to the description of check script checkdscrctl.ksh.
  • Update to the description of check script checkhacmpclstat.ksh.
Version: v12.10.10
  • New check script checkperfstat.ksh to check perfstat in /etc/inittab and permissions.
Version: v12.10.09
  • New check script checknfsnodename.ksh to check if the nodename for any NFS file system can be pinged.
  • New check script checketcfilesystemscomments.ksh to check if any file systems in /etc/filesystems are commented out wrong.
  • Update to check script checklsfs.ksh to correct some textual items.
  • New check script checkfilesystemerrors.ksh to check if the lsfs command generates any errors, and if so, display them.
  • Update to check script checkhacmpemgr.ksh to correct a variable.
  • New check script checkhostsvsdns.ksh to check for entries in /etc/hosts that are also known in DNS.
  • New check script checkconsole.ksh to check if the console is enabled.
Version: v12.10.08
  • New check script checkhostsnonnumeric.ksh to check for non-numeric entries in /etc/hosts.
Version: v12.10.04
  • Update to check script checketchostsdups.ksh to avoid reporting a hashtag as a possible duplicate IP address.
Version: v12.10.03
  • New check script checkcleanetc.ksh to check for any files in /etc that can be cleaned up.
  • Update to check script checkjfslogsize.ksh to advise on the amount of missing megabytes for a log logical volume and to provide the command to run to resize the log logical volumes with the correct number of logical partitions.
  • Update to check script checkusernopassword.ksh to sort the output.
Version: v12.10.01
  • New check script checkemcing.ksh to run the inq utility of EMC, if present on the system.
  • Update to check script checkhacmppath.ksh to exclude TMOUT in /etc/profile and .profile processing to avoid readonly errors.
  • Update to check script checketchostsdups.ksh to correctly report duplicate IP address entries in /etc/hosts.
Version: v12.09.28
  • New check script checkextendednetstats.ksh to check if network option extendednetstats is set to zero.
Version: v12.09.25
  • New check script checkviosviosbrcrontab.ksh to check if the viosbr command is scheduled from the root crontab on a Virtual I/O Server.
  • New check script checkviosviosbrview.ksh to check the latest backups created by the viosbr command on a Virtual I/O Server.
  • Update to check script checkdisktypesinvg.ksh to avoid errors when a virtual device has been named similarly to known disks in the volume groups.
  • Update to the description on check script checkntpdate.ksh to explain how to resolve any time synchronization offset discovered.
  • Update to check script checkresolvconf.ksh to provide the commands needed to correct permission issues.
  • New check script checkviosweight.ksh to check the variable_weight of the Virtual I/O Server LPAR.
  • New check script checkviosuncapped.ksh to check if the Virtual I/O Server LPAR is uncapped.
Version: v12.09.21
  • Update to the desription of check script checkquorum.ksh to recommend updating the quorum via C-SPOC, instead of using the chvg -Qn command.
  • Update to the description of check script checkaso.ksh to include the command to enable the Active System Optimizer.
  • Update to check script checkcpufoldpolicy.ksh to recommend setting vpm_fold_policy to 4 on Virtual I/O servers.
  • Update to check script checkinittabcommands.ksh to avoid reporting on commands immediately followed by a redirect (>) character.
  • Update to check script checkcrontabcommands.ksh to avoid reporting on commands immediately followed by a redirect (>) character.
  • Update to check script checkinetdcommands.ksh to avoid reporting on commands immediately followed by a redirect (>) character.
  • Update to check script checksudocommands.ksh to avoid reporting on commands immediately followed by a redirect (>) character.
  • Update to check script checklargefilesinrootvg.ksh to exclude the ISO repository from reporting to have large files in rootvg.
  • Update to check script checklvmo.ksh to make some minor textual changes.
  • Update to check script checknonaixlvsinrootvg.ksh to exclude the ISO repository (VMLibrary) from being reported as a non-AIX logical volume.
  • Update to check script checkportmap.ksh to avoid reporting an error on Virtual I/O servers, while it is in fact properly enabled.
  • Update to check script checkrootulimit.ksh to more clearly display how to correct limits for user root.
  • Update to check script checksnmpd.ksh to correct a typo in the output.
  • Update to check script checksudoersusers.ksh to correct a variable error in the script preventing to report on non-existing groups defined in /etc/sudoers.
  • Update to check script checksuid.ksh to include /opt/IBM/ITM/tmaitm6/aix5 to the exclude list.
  • Update to check script checktsmbackup.ksh to check if file dsm.sys exists before proceeding with checking entries in the file.
  • Update to check script checktsmret.ksh to check if file dsm.sys exists before proceeding with checking entries in the file.
Version: v12.09.17
  • Update to check script checksudoversion.ksh to be able to handle sudo versions higher than the recommended version.
  • Update to check script checkexcluderootvg.ksh to deal with any dots between brackets in /etc/exclude.rootvg.
  • Update to check script checklppchkf.ksh to limit the output to the first 100 lines.
Version: v12.09.12
  • Update to check script checksendmailsmtp.ksh to avoid reporting an error when a line with only DS on it is present in /etc/sendmail.cf.
  • Update to check script checksudoersusers.ksh to also report any non-existing groups listed in /etc/sudoers, but not in /etc/group.
Version: v12.09.11
  • Update to check script checketherchanneldrawers.ksh to improve the run time of the script.
  • New check script checkdevicefirmwarelevel.ksh to check for any differences in the firmware level of similar devices.
  • New check script checkhacmppvid.ksh to check if the PVID of shared disks are within the same volume groups on both nodes of a cluster.
Version: v12.09.10
  • New check script checkgnutar.ksh to check if GNU tar is installed, and if so, what version.
  • Update to check script checkoracleulimit.ksh to remove a typo.
  • Update to check script checkdefaultgateway.ksh to avoid reporting on static routes known in the ODM.
  • New check script checksudoersduplicates.ksh to check if duplicate entries in /etc/sudoers exist.
  • New check script checkviosioslevel.ksh to check the installed level of the VIO server.
Version: v12.09.07
  • Update to check script checkduplicatepvids.ksh to improve the run time of the script by avoiding running lspv command multiple times.
  • Update to check script checkall.ksh to not exit when VIO server is detected.
  • Update to check script checkboscontentlist.ksh to not recommend to install bos.content_list if on a VIO server.
  • Update to check script checkbosdata.ksh to not recommend to install bos.data if on a VIO server.
  • Update to check script checkcdeservices.ksh to not recommend to disable CDE services in /etc/inetd.conf if on a VIO server.
  • Update to check script checkcommonfilesets.ksh to not recommend to deinstall several filesets if on a VIO server.
  • Update to check script checkdictionlist.ksh to not suggest to set the dictionlist attribute if on a VIO server.
  • Update to check script checkentspeed.ksh to redirect any errors of the entstat commands to /dev/null.
  • Update to check script checketherchannellink.ksh to check Shared Ethernet Adapters instead of EtherChannels, if on a VIO server.
  • Update to check script checkgzip.ksh to not recommend to install gzip if on a VIO server.
  • Update to check script checkhomedirs.ksh to avoid reporting an error on /home/ios if on a VIO server.
  • Update to check script checkhostmibd.ksh to avoid recommending to disable hostmibd if on a VIO server.
  • Update to check script checklastlog.ksh to account for different permissions on /etc/security/lastlog if on a VIO server.
  • Update to check script checklsof.ksh to not recommend to install lsof if on a VIO server.
  • Update to check script checkopensshlevel.ksh to not recommend to update openssh if on a VIO server.
  • Update to check script checkoslevel.ksh to not run if on a VIO server.
  • Update to check script checksanpvid.ksh to not alert about disks not being part of a volume group if on a VIO server.
  • Update to check script checksendmail.ksh to not recommend enabling sendmail if on a VIO server.
  • Update to check script checktivolitivguid.ksh to not suggest to upgrade tivoli.tivguid fileset if on a VIO server.
  • Update to check script checkuidbelow100.ksh to exclude reporting on the padmin user if on a VIO server.
  • Update to check script checkunzip.ksh to avoid recommending to install the unzip RPM if on a VIO server.
  • Update to check script checkuseraccounts.ksh to exclude user account padmin if on a VIO server.
  • Update to check script checkwget.ksh to avoid recommending to install the wget RPM if on a VIO server.
  • Update to check script checkzip.ksh to avoid recommending to install the zip RPM if on a VIO server.
Version: v12.09.06
  • New check script checkfsdirwrite.ksh to check if a directory can be created within each file system.
Version: v12.09.04
  • Update to check script checksysdumpmirror.ksh to avoid incorrectly alerting about hd6 requiring to be unmirrored.
  • New check script checkxivdevicesfcparray.ksh to check if fileset devices.fcp.array is installed, when XIV LUNs are present.
  • Update to check script checktotalsan.ksh to differentiate between general MPIO and XIV storage in the output.
  • Update to check script checkcrontabdups.ksh to not output any lines start start with a hash.
  • Update to check script checkpinggateway.ksh to correctly list any gateways that fail to be pingable.
  • New check script checkpiobe.ksh to check if the piobe entry in /etc/inittab is disabled.
  • New check script checktxqueueoverflow.ksh to check if any of the interfaces shows a transmit queue overflow.
Version: v12.08.30
  • Update of the description for check script checkxntpd.ksh to include information on how to start using XNTPD along with synchronizing the time on an AIX system.
  • New check script checkgettext.ksh to check if the correct level of gettext RPM is installed.
  • New check script checkless.ksh to check if the correct level of less RPM is installed.
  • Replaced the oslevel command with the uname command in various scripts to improve the run time (oslevel is a slower command to run compared with uname).
  • New check script checksshconfig.ksh to check if any of the defaults in /etc/ssh/ssh_config or /usr/etc/ssh_config has changed.
  • Update to check script checkportmap.ksh to allow it to be disabled if no service is using it.
  • Update to check script checksnmpd.ksh to allow it to be disabled, and also to check if it is enabled at boot time versus the state of snmpd itself.
  • Update to check script checkinetdactive.ksh to recommend disabling inetd if no entries have been enabled in /etc/rc.tcpip.
Version: v12.08.29
  • Update to check script checkauthorizedkeysdups.ksh to also warn about entries present in both authorized_keys and authorized_keys2 files.
  • Update to check script checkbootlist.ksh to handle situations where Ethernet adapters are part of the bootlist.
  • Update to check script checketchostsdups.ksh to avoid listing duplicate entries for IP addresses, where the IP address is a subset of a larger IP address.
  • Update to check script checklssrc.ksh to ignore any entries in run-level a, b, or c.
  • Update to check script checksddpcmlevel.ksh to require version 2.6.x.x and up for SDDPCM.
  • New check script checksddpcmsrv.ksh to check if pcmsrv (part of SDDPCM) is running, and started through inittab, if SDDPCM is installed.
  • New check script checkportmap.ksh to check if portmap is running, and enabled at boot.
  • New check script checksnmpd.ksh to check if snmpd is running, and enabled at boot.
  • Update to check script checksyslogdactive.ksh to check if syslogd is enabled in /etc/rc.tcpip.
Version: v12.08.28
  • Update to check script checkuptime.ksh to avoid displaying the uptime twice.
  • Update to check script checksshallowusers.ksh to handle older version of sshd_config located in /usr/etc.
  • Update to check script checksshpermitrootlogin.ksh to handle older version of sshd_config located in /usr/etc.
  • Update to check script checksshprotocol.ksh to handle older version of sshd_config located in /usr/etc.
  • Update to check script checksshsyslogfacility.ksh to handle older version of sshd_config located in /usr/etc.
  • Update to check script checksshx11forward.ksh to handle older version of sshd_config located in /usr/etc.
  • New check script checkoradiag.ksh to check if there are any oradiag_username folders in home directories of users.
  • New check script checkcrontabdups.ksh to check if duplicate entries in crontab files exist.
  • Renamed check script checktop20memoryusers.ksh to checktop20memoryprocs.ksh.
  • New check script checktopmemoryusers to lists the top memory using users.
Version: v12.08.27
  • New check script checketchostsdups.ksh to check if duplicate entries in /etc/hosts exist.
Version: v12.08.24
  • New check script checkidrsapub.ksh to check if the id_rsa.pub file indeed has been generated on this host.
  • New check script checkiddsapub.ksh to check if the id_dsa.pub file indeed has been generated on this host.
  • New check script checkwsmserver.ksh to check if entry wsmserver.ksh is disabled in /etc/inetd.conf.
  • New check script checkinetdconfcomments.ksh to check commented items in /etc/inetd.conf.
  • New check script checkinetd.ksh to display the active inetd services.
  • New check script checkxmquery.ksh to check if entry xmquery is disabled in /etc/inetd.conf.
  • New check script checkauthorizedkeysdups.ksh to check for duplicate entries or empty lines in the authorized_keys file for user root.
Version: v12.08.23
  • New check script checklppchkf.ksh to check file set consistency by running lppchk -f.
Version: v12.08.22
  • New check script checksmtsupport.ksh to check if the system is running the number of threads that is supported on the hardware.
  • Update to check script checkxlclevel.ksh to check if at least version 9.0.0.8 is installed of the IBM C++ runtime environment.
Version: v12.08.21
  • Update to check script checkhacmprawlvperms.ksh to correct an error in reporting raw logical volumes that differ on cluster nodes, and also to include checking of permissions besides owner and group settings for raw logical volumes.
  • Update to check script checktotalsan.ksh to include storage for DS5000, DS4K and Fast-T.
  • New check script checkmpiogetconfig.ksh to display subsystem specific information for the DS3k/DS4k/DS5k disks (if any).
  • New check script checkaliases.ksh to check the alias definitions for the sendmail command.
  • New check script checkpvmissing.ksh to check for any missing physical volumes.
  • New check script checkfullcore.ksh to check if fullcore is disabled to prevent AIX from dumping full core files.
  • Renamed check script checkemcdeadpaths.ksh to checkemcpowerpathdeadpaths.ksh.
  • Updated check script checkemcpowerpathdeadpaths.ksh to also include checks for any failed or degraded paths.
  • New check script checktcbck.ksh to run tcbck if the Trusted Computing Base is enabled.
Version: v12.08.20
  • Update to check script checkmemvscpu.ksh to avoid displaying any trailing zeroes or a dot in the output.
Version: v12.08.16
  • New check script checkpatrolpukserver.ksh to check if there's a process pukserver.xpc active using a large amount of CPU.
  • Update to check script checksystemfirmwarelevel.ksh to check for correct Power6 Blade JS12/JS22/JS23/JS43 system firmware level.
Version: v12.08.16
  • Update to check script checkall.ksh to test if files can be written to /tmp and /var before running.
  • New check script checktcpnodelayack.ksh to check if network option tcp_nodelayack has been enabled.
  • New check script checkhacmpclustertopology.ksh to display the HACMP/PowerHA cluster topology.
  • New check script checkrootshell.ksh to check if the shell of user root is set to /usr/bin/ksh.
Version: v12.08.15
  • New check script checkfswrite.ksh to check if a file can be written to each file system. The 750th check script!
Version: v12.08.14
  • New check script checkadapterlink.ksh to check if the network adapters that are in use for active network interface, and which are not configured in EtherChannels, have an established link.
Version: v12.08.13
  • Update to check script checkall.ksh to include uptime in the system configuration section.
  • Update to check script checkfcstat.ksh to improve the run time of the script in case fibre channel adapters do not respond.
  • Update to check script checkvarspoollpdqdir.ksh to alert when /var/spool/lpd/qdir does not exist.
  • Update to check script checkvarspoolmqueue.ksh to alert when /var/spool/mqueue does not exist.
  • Update to check script checkvarspoolqdaemon.ksh to alert when /var/spool/qdaemon does not exist.
  • New check script checkvarspoollpdqdirperms.ksh to check the permissions of /var/spool/lpd/qdir.
  • New check script checkvarspoolmqueueperms.ksh to check the permissions of /var/spool/mqueue.
  • New check script checkvarspoolqdaemonperms.ksh to check the permissions of /var/spool/qdaemon.
  • New check script checkusrbincrontab.ksh to check the permissions of /usr/bin/crontab.
  • New check script checkvarspoolperms.ksh to check the permissions of /var/spool.
  • New check script checkvarspoolcronperms.ksh to check the permissions of /var/spool/cron.
  • New check script checkvarspoolcroncrontabsperms.ksh to check the permissions of /var/spool/cron/crontabs.
  • New check script checkvarspoolcronatjobsperms.ksh to check the permissions of /var/spool/cron/atjobs.
  • New check script checkusrspoollink.ksh to check the link of /usr/spool to /var/spool.
  • New check script checkcrongroup.ksh to check if the cron group exists with GID 8.
Version: v12.08.12
  • New check script checkhacmpunmanaged.ksh to check if any resource groups of HACMP/PowerHA are unmanaged.
  • New check script checkusernopassword.ksh to check if there are user accounts that have no password set.
Version: v12.08.10
  • Update to check script checksystemfirmwarelevel.ksh to allow for checking the system firmware level of the 9119-FHB Power 795.
  • Update to check script checkall.ksh to display the system firmware level, even if lsmcode does not provide one.
  • Update to check script checkfind.ksh to improve reporting on long running find processes.
Version: v12.08.09
  • Update to check script checkfcslink.ksh to report an error if different running speeds are detected on active fibre channel adapters.
  • Update to check script checkhmc.ksh to remove a typo.
  • Update to check script checksystemfirmwarelevel.ksh to provide an error if the lsmcode command doesn't provide any information regarding the installed system firmware level.
Version: v12.08.08
  • Update to check script checkfcslink.ksh to also include the running and supported link speed of fibre channel adapters in the output.
  • Update to check script checknonaixlvsinrootvg.ksh to allow for a second JFS log to exist in rootvg when both JFS and JFS2 file systems in rootvg are in use.
  • Update to check script checksyslogfiles.ksh to avoid reporting the same file multiple times.
  • Update to check script checkhacmpusers.ksh to resolve an issue with escape codes in any of the limits and user files in /etc/security.
  • Update to check script checkemcpowermtafm.ksh to not display an error when PowerPath is installed, but no hdiskpower devices are present.
  • Update to check script checkemcpowermttrespass.ksh to not display an error when PowerPath is installed, but no hdiskpower devices are present.
Version: v12.08.07
  • New check script checkrshd.ksh to check if rshd is disabled.
  • New check script checksnmp.ksh to display a warning if it is possible to retrieve system information through SNMP.
  • Renamed check script checkvacmview.ksh to checksnmpvacmview.ksh.
  • New check script checkftproot.ksh to check if the root account was used to FTP to this system.
Version: v12.08.06
  • New check script checkclinfoes.ksh to check if the clinfoES SubSystem is active on an HACMP/PowerHA cluster node.
  • Update to check script checkmnt.ksh to not alert about permissions for /mnt if a file system is mounted on top of /mnt.
  • Renamed check script checklpdqdir.ksh to checkvarspoollpdqdir.ksh.
  • New check script checkvarspoolqdaemon.ksh to check for a large amount of files in /var/spool/qdaemon.
  • New check script checkvarspoolmqueue.ksh to check for a large amount of files in /var/spool/mqueue.
  • New check script checkfind.ksh to check if there are long running find processes on the system.
  • New check script checkvarpreserve.ksh to check for a large amount of data in /var/spool/qdaemon.
  • New check script checketcperfdaily.ksh to check for a large amount of data in /etc/perf/daily.
Version: v12.08.02
  • Update to check script checkdefaultusersettings.ksh to account for new password parameters minloweralpha, minupperalpha, mindigit and minspecialchar, introduced in AIX 7.1, AIX 6.1 TL6 and VIOS 2.2.
  • New check script checkbosdata.ksh to check if file set bos.data is installed, which is needed for the typical AIX dictionary file /usr/share/dict/words.
  • Renamed check script checkcontentlist.ksh to checkboscontentlist.ksh.
  • New check script checkdictionlist.ksh to check if a value for dictionlist has been set in /etc/security/user.
  • New check script checktsmerrorlogsize.ksh to check the size of the TSM error log file.
  • New check script checktsmerlogprusize.ksh to check the size of the dsmerlog.pru file.
  • New check script checkfcslinkspeed.ksh to check if the link speed attribute of any of the fibre channel adapters has been tuned.
Version: v12.08.01
  • New check script checktcpkeepalive.ksh to check the settings for the TCP keepalive network options.
  • New check script checktsmschedprusize.ksh to check the size of the dsmsched.pru file.
Version: v12.07.30
  • Update to checketchosts.ksh to suggest the command to run if the group and/or owner of /etc/hosts is wrong.
  • New check script checkossvfs.ksh to check for file systems that are listed by NetApp Open Systems SnapVault status, but don't exist on the system.
  • New check script checkossvbrokenoff.ksh to check for file systems that are listed by NetApp Open Systems SnapVault status as broken-off.
  • New check script checkmemvscpu.ksh to check if the ratio for CPU vs Memory is less then 1:16.
Version: v12.07.27
  • New check script checkossvversion.ksh to check the version of NetApp Open Systems SnapVault client, if installed.
  • New check script checkossvinittab.ksh to check the inittab entry for NetApp Open Systems Snapvault client, if installed, to make sure it is started at system boot time.
  • New check script checkossvrunning.ksh to check if the svpmgr agent of the NetApp Open Systems Snapvault client, if installed, is running.
  • New check script checkossvstatus.ksh to check the status of the backups by NetApp Open Systems Snapvault, if installed.
  • New check script checkossvstatusl.ksh to check the extended status of the backups by NetApp Open Systems Snapvault client, if installed.
  • New check script checkossvfsnb.ksh to check for any file systems that are not configured to be backed up by NetApp Open Systems Snapvault client, if installed.
  • New check script checkossvfsnb24.ksh to check for file systems that are not backed up within the last 24 hours by NetApp Open Systems SnapVault if the client is installed.
  • New check script checkossvmultidef.ksh to check for multiple definitions of file systems that are backed up by NetApp Open Systems SnapVault if the client is installed.
  • New check script checkossvcheckpoint.ksh to check for any file systems in Idle with restart checkpoint status, that are backed up by NetApp Open Systems SnapVault if the client is installed.
Version: v12.07.25
  • Update to check script checksuid.ksh to improve the runtime of the scipt.
  • Update to check script checkmissingowners.ksh to improve the runtime of the scipt.
  • Update to check script checkdsmerrorlog.ksh to improve the runtime of the script.
  • Update to check script checkcrout.ksh to improve the runtime of the script.
  • Update to check script checkcoredumps.ksh to improve the runtime of the script.
  • New check script checkpatrolpukremote.ksh to check if there's a process pukremotexec.xpc active using a large amount of CPU.
Version: v12.07.24
  • Update to check script checkdumpctrlfreespace.ksh to correct an issue with reporting the wrong free percentage of disk space in the live dump directory.
  • Update to check script checksystemfirmwarelevel.ksh to add recommended system firmware level for Power 7 blades.
  • Update to check script checkall.ksh to include the common machine type name along with the modelname in the system configuration section of the output.
  • Update to check script checkdisksizeinvg.ksh to list the number of disks in each volume group.
  • Update to check script checkall.ksh to determine the screen width if not set specifically by the end user.
  • Update to check script checkall.ksh to fold long output lines properly using blanks.
  • Update to check script checkexcluderootvg.ksh to avoid listing empty lines in /etc/exclude.rootvg.
Version: v12.07.23
  • Update to check script checkfscsidyntrk.ksh to not suggest to update the attach mode of FSCSI devices.
  • Update to check script checkfscsifastfail.ksh to not suggest to update the attach mode of FSCSI devices.
  • Update to check script checkhacmpusers.ksh to resolve an issue with a different number of attributes for a user on 2 nodes of a cluster.
  • Update to check script checklvmbufcnt.ksh to suggest to either set the value back to the default or permanently to the current value, if these 2 differ.
  • Update to check script checknmon.ksh to check for either the -f or -F option for file collection mode.
  • Update to the description of check script checkpvminpbuf.ksh to indicate how to modify this variable per volume group on AIX 6.1 and up.
  • Update to check script checkhacmplevel.ksh to account for newly released PowerHA/HACMP Service Packs.
  • Update to check script checkmultiplelv.ksh to exclude alerting about NFS file systems.
Version: v12.07.20
  • New check script checkmaxlvs.ksh to check if there's a volume group that is either close or on its max lvs.
  • Update to check script checkhostname.ksh to report the difference in hostname by running the uname -n and hostname commands.
  • Update to check script checkall.ksh to properly display the rPerf value in HTML output.
  • Update to check script checkdisktypesinvg.ksh to correct errors that may be produced on systems with vpath devices.
  • Update to check script checketcprofile.ksh to suggest commands to run to correct issues found.
  • Update to check script checkhacmppath.ksh to avoid running traps from /etc/profile or ~root/.profile that may produce errors.
Version: v12.06.27
  • Update to check script checknetsvcorder.ksh to allow for entries using the =auth directive.
Version: v12.06.26
  • Update to check script checkrperf.ksh; worked with Nigel Griffiths of IBM to create a new version (17) with several corrections and updates.
Version: v12.06.25
  • Update to check script checkcpufolding.ksh to detect a value for schedo tunable vpm_xvcpus set to anything else than 0 (folding enabled) or -1 (folding disabled).
  • New check script checkcpufoldpolicy.ksh to check if CPU folding policy has been changed.
Version: v12.06.21
  • Update to check script checkall.ksh to include the rPerf value in the system configuration.
  • Update to check script checkskulker.ksh to ignore any log files in the output of files to be removed.
  • New check script checkamepat.ksh run amepat, the Active Memory Expansion planning and advisory tool to report Active Memory Expansion information and statistics.
Version: v12.06.20
  • Update to check script checkrperf.ksh to include the latest version of rperf, including updates from IBM Facts and Features up till June 2012.
Version: v12.06.18
  • New check script checkvscsipaths.ksh to check if any of the vscsi adapters have more than 255 LUNs assigned.
Version: v12.06.15
  • Update to check script checkauthorizedkeys.ksh to only report SSH keys set up in files authorized_keys and authorized_keys2.
  • Update to the description of check script checkcoredumps.ksh, correcting an error on the proposed find commands to run to discover core dumps on the system.
  • Update to check script checkrootvglv.ksh to recommend the command to run when the live dump directory does not exist.
  • New check script checkdumpctrlfreespace.ksh to check the free space available for the live dumps.
  • Update to check script checkexcluderootvg.ksh to provide the command to add /tmp to /etc/exclude.rootvg.
  • Update to check script checkhomedirssize.ksh to avoid alerting about full home file systems, while actually these are caused by additional file systems mounted on top of a user's home directory.
  • Update to check script checkmailbox.ksh to resolve the issue that a warning is generated while an error should have been generated.
  • Update to check script checkmtu.ksh to display the command how to set the tcp_mssdflt value correctly.
  • Update to check script checkopensshlevel.ksh to detect any OpenSSH level 4 installed (which is really old by the way).
  • Update to check script checkqueuedepth.ksh to not alert about the queue_depth setting when EMC ODM filesets are installed.
  • New check script checkhplshsv.ksh to run HP StorageWorks lshsv command to display all EVA disks, if installed.
  • New check script checkhplshsvp.ksh to run HP StorageWorks lshsv command to display all IO paths to EVA disks, if installed.
  • New check script checkhplshsvs.ksh to run HP StorageWorks lshsv command to list a summary of all EVA disk arrays connected to the system.
  • New check script checkhplshba.ksh to run HP StorageWorks lshba command to display all HBAs, if installed.
  • New check script checkhphsvpaths.ksh to run HP StorageWorks hsvpaths command to provide a summary the HSV IO paths.
  • New check script checkhdlmpaths.ksh to display any Hitachi Data Link Manager paths.
  • New check script checkhdlmhba.ksh to display any Hitachi Data Link Manager HBAs.
  • New check script checkhdlmsys.ksh to display Hitachi Data Link Manager status and environment settings.
  • Update to check script checkxmdaily.ksh to suggest to either stop nmon or topasrec when both are active.
Version: v12.06.14
  • New check script checkduplicatepvids.ksh to check for any disks that have the same PVIDs.
  • Removed a typo in check script checkhacmprawlvperms.ksh that caused the script to generate errors.
Version: v12.06.13
  • New check script checkskulker.ksh to check if skulker or an equivalent of skulker has been enabled on the system.
  • New check script checkbash.ksh to check if bash is installed, and if so, what version.
  • Update to check script checketcfilesystems.ksh to avoid alerts about CIFS file systems.
  • Update to check script checkjfs2.ksh to avoid alerts about CIFS file systems.
  • Update to check script checkmanualfs.ksh to avoid alerts about CIFS file systems.
Version: v12.06.11
  • Update to check script checkhacmppath.ksh to make sure the script doesn't report any errors if run remotely through ssh.
  • Update to check script checkhacmprawlvperms.ksh to avoid any errors generated by cl_lsvg.
  • Update to check script checkhostsduplicates.ksh so it does not report any duplicates if hostnames are only mentioned within comments.
  • Update to check script checkdisktypesinvg.ksh to also allow it to work with vpath devices.
  • Update to check script checklspath.ksh to properly report failed paths to VSCSI disks.
  • Update to check script checkdisktypesinvg.ksh to decrease its runtime significantly on systems with a large number of disks.
  • Update to check script checklspvl.ksh to make it run faster if user has suppressed output from successful scripts.
Version: v12.06.07
  • Update to check script checkuidunique.ksh to ignore duplicate accounts with UID 0, as those are already alerted by checkuidzero.ksh.
  • New check script checkdumpcheck.ksh to make sure that entry /usr/lib/ras/dumpcheck is activated in the crontab of user root.
  • New check script checkhacmpclcycle.ksh to make sure that entry /usr/es/sbin/cluster/utilities/clcycle is activated in the crontab of user root on all PowerHA/HACMP cluster nodes.
  • Update to check script checkjfslogsize.ksh to avoid errors when checking inactive HACMP/PowerHA cluster nodes.
  • Update to check script checkall.ksh to only require 64 MB free in /var and /tmp for UNIX Health Check for AIX to run.
Version: v12.06.04
  • Update to check script checkinvscout.ksh to avoid errors when invscout fileset is not installed.
  • Update to check script checklspath.ksh to make it work for both SCSI and MPIO/VSCSI disks.
  • Update to check script checkusysident.ksh to make it work properly if zero output is generated by usysident.
  • Update to check script checkvmstat.ksh to avoid errors when running it on AIX 5.2 (version not supported).
Version: v12.05.31
  • Update to check script checksendmailsmtp.ksh to alert about a space present between DS and the smtp relay server.
  • Minor correction to check script checknooptions.ksh to correctly test the speed setting instead of creating temporary file 999.
  • Minor update to check script checkcrontabcommands.ksh to avoid displaying errors when using the lsgroup command on a non-existing group.
  • Update to check script checkpasswd.ksh to provide commands to correct issues found.
  • Update to check script checkvmo.ksh to correctly handle output of vmo -o memory_affinity on AIX 5.3 TL5.
  • New check script checkchangedfilesinetc.ksh to warn about changed or newly created files in /etc.
Version: v12.05.30
  • Update to check script checkblankpassword.ksh to also allow it to work on AIX 5.3 TL6, dealing with exclamation marks.
  • Update to check script checkdpid2.ksh to also alert when the dpid2 service is active.
  • Update to the description of check script checkentspeed.ksh to explain how to change the media speed of an adapter.
  • Update to the description of check script checketcfilesystems.ksh to explain how to remove file systems.
  • Update to check script checkfcmaxxfersize.ksh to not display an error if an FCS device can't be opened.
  • Update to check script checklvmbufcnt.ksh to not alert when the default value can't be determined.
  • Update to check script checkoracleulimit.ksh to provide the commands to change any limits for user oracle.
  • Update to check script checkuserpassword.ksh to not display an error when dealing with exclamation marks on AIX 5.3 TL6.
  • Update to checkall.ksh to correctly display network information when dhcpcd is running but a static IP address has been configured.
  • New check script checksshpermitrootlogin.ksh to check if the PermitRootLogin entry in /etc/ssh/sshd_config is set to no.
Version: v12.05.29
  • New check script checksshsyslogfacility.ksh to check if logging for the SSH daemon to syslog is enabled.
  • New check script checksysdumptype.ksh to check if any system dump devices have a logical volume type of sysdump or paging.
  • Update to check script checkopenssllevel.ksh to avoid incorrectly reporting errors when no RPM fileset has been installed.
  • New check script checksysdumpupperbound.ksh to check if the upper bound for any sysdump logical volume has been set to 1.
Version: v12.05.27
  • Update to check script checkrootpassword.ksh to also allow for a full dictionary attack on the root password when using the -v option.
  • Update to check script checkopenssllevel.ksh to notify when both a RPM and a fileset version of openssl are installed.
  • New check script checksshprotocol.ksh to check the protocol version in use of SSHD.
Version: v12.05.24
  • Update to check script checkguest.ksh to only report if the account is accessible.
  • Update to check script checkallowusers.ksh to also check non-root users.
Version: v12.05.23
  • Update to the description of check script checkesaawareness.ksh to explain how to remove the crontab file for user esaadmin.
  • Update to check script checkftpusers.ksh to make sure it exists if ftpd is enabled, and also to alert if root is not listed in /etc/ftpusers.
  • New check script checkdotpathroot.ksh to check for a dot in the PATH for user root.
  • New check script checkguest.ksh to make sure user guest and its home directory is removed.
  • New check script checknmaplevel.ksh to check the level of nmap installed.
  • New check script checknmapportscan.ksh to run nmap port scan on localhost, if nmap is installed, to discover any open ports.
  • Update to check script checkumask.ksh to allow for more secure umask settings.
Version: v12.05.18
  • Update to check script checksystemfirmwarelevel.ksh for new system firmware levels released by IBM for Power6 and Power7.
  • New check script checksystemid.ksh to check if a one-line system ID can be determined for use by invscout.
Version: v12.05.17
  • New check script checknpivdiskattr.ksh to check disk attributes for any disks provided through NPIV / Virtual Fibre Channel adapters.
  • Update to check script checkvscsdiskattr.ksh to check seperately for any issues with queue depth settings on vscsi disks.
Version: v12.05.14
  • New check script checkrootloginretries.ksh to check if the loginretries attribute for user root is set to 0 (disabled).
Version: v12.05.12
  • New check script checkmaxpgahead.ksh to check the value of ioo tunable maxpgahead, which specifies the maximum number of pages of 4K to be read ahead when processing a sequentially accessed file.
  • Update to check script checkpgahdscalethresh.ksh to suggest command how to set ioo tunable pgahd_scale_thresh back to the default value of zero.
Version: v12.05.11
  • New check script checkenscript.ksh to check the version of Enscript, if installed.
  • New check script checkghostscript.ksh to check the version of Ghostscript, if installed.
  • Update to check script checklvmstat.ksh to properly clean up temp file in /tmp.
  • Update to check script checklqueryvg.ksh to properly clean up temp file in /tmp.
Version: v12.05.10
  • New check script checkoraclerloginfalse to check if the remote login for user oracle is set to false.
Version: v12.05.09
  • Update to check script checksshx11forward.ksh for checking on the UseLogin option in sshd_config.
  • Update to check checkrootrloginfalse.ksh to not only alert if telnet or login entry has been enabled in /etc/inetd.conf. If UseLogin is enabled and rlogin for user root is set to true, it still allows remote logins for user root.
  • Update to the description of check script checkcpuguard.ksh to show how to check thue current setting of Dynamic Processor De-allocation.
  • New check script checkjfslogsize.ksh to check the journaled file system log size.
  • Update to check script checklvmbufcnt.ksh to recommend to leave ioo tunable lvm_bufcnt at the default value.
Version: v12.05.08
  • New check script checkenhancedaffinity.ksh to check if restricted tunable enhanced_affinity_private has been tuned.
  • New check script checkrcshutdown.ksh to display any content of the /etc/rc.shutdown script.
  • Update to check script checkvscsidiskattr.ksh to account for queue depths greater than 20.
  • Update to check script checkdefaultusersettings.ksh to recommend to set the default maxexpired within a range of 1 to 8 weeks, which allows a user up to 8 weeks to change the password after the account has expired. Before this update, it allowed it to set to -1, meaning it would allow a user to change the password indefinitely after the account was expired, which is not secure.
  • New check script checkhacmprawlvperms.ksh to check the permissions of raw logical volumes with a 2-node PowerHA/HACMP cluster.
  • Update to check script checknooptions.ksh to include checks for AIX 7.1, and to check for new recommended values for tcp_sendspace, tcp_recvspace and rfc1323.
Version: v12.05.07
  • New check script checkvaradmsni.ksh to make sure that there's at least 256 MB free in /var/adm/sni.
  • New check script checkdscrctl.ksh to check if an entry for hardware prefetch control is present in /etc/inittab.
  • New check script checknoatime.ksh to show if any file systems use the noatime mount option.
Version: v12.05.03
  • New check script checkcdromdefined.ksh to check for any cdrom or dvd-ram devices in a defined state.
  • Update to check script checklssrc.ksh to handle any startsrc entries in /etc/inittab listed with quotes.
  • New check script checklqueryvg.ksh to check the VGDA on each disk that belongs to a volume group.
Version: v12.05.02
  • New check script checkpio.ksh to discover any stuck printer queues.
Version: v12.05.01
  • Update to the description of check script checkcpuload.ksh.
  • Update to check script checkdig.ksh to add a third round of checking.
  • Update to check script checkhomdirs.ksh to account for home directories with different names than their user accounts.
  • Update to check script checkpvremoved.ksh so lspv is not run on disks that belong to a volume group that is not varied on.
Version: v12.04.27
  • New check script checkcronfifo.ksh to check if file /var/adm/cron/FIFO exists.
  • New check script checkvnc.ksh to check the version of VNC, if installed.
  • New check script checksuperms.ksh to check the permissions of /usr/bin/su.
  • New check script checkoraclecapabilities.ksh to check the capabilities of the oracle user account.
  • Update to check script checkephemeralports.ksh to display correct output on systems tuned for Oracle usage.
Version: v12.04.26
  • Update to check script checkauthorizedkeys.ksh to only issue a warning when more than one key is present in the authorized_keys file(s).
  • Update to the description of check script checkdefaultusersettings.ksh to include the command to change the default to the recommended settings.
  • Update to check script checkftpd.ksh to not alert when ftpd is enabled, but only to report it.
  • Update to check script checkjfs2.ksh to not alert when no INLINE log is used, but only to report it.
  • New check script checkcrondir.ksh to check the permissions of the /var/spool/cron/crontabs folder.
  • New check script checkcrontabperms.ksh to check the permissions of /usr/bin/crontab.
  • New check script checkpvremoved.ksh to check for any physical volumes with a state of removed.
  • Update to the description of check script checkrootage.ksh to include the command to disable password aging for user root.
  • Update to check script checkuseraccounts.ksh to only alert when a user account is not locked.
Version: v12.04.25
  • New check script checkadmin.ksh to check the permissions of the /admin folder.
  • New check script checkauditfolder.ksh to check the permissions of the /audit folder.
  • Update to check script checketc.ksh to correctly suggest commands to correct any issues with ownership or permissions to folder /etc.
  • Update to check script checkhomefs.ksh to also check permissions on the /home folder, and suggest commands to correct issues discovered.
  • New check script checklostfound.ksh to check the permissions of the /lost+found folder.
  • New check script checkopt.ksh to check the permissions of the /opt folder.
  • New check script checksbin.ksh to check the permissions of the /sbin folder.
  • New check script checktftpboot.ksh to check the permissions of the /tftpboot folder.
  • Update to check script checktmpauthorization.ksh to suggest commands to run to correct permission issues on /tmp folder.
  • New check script checktmp.ksh to check the owner and group of the /tmp folder.
  • Update to check script checkusrperms.ksh to suggest commands to run to correct permission issues on /usr folder.
  • Update to check script checkusrbin.ksh to suggest commands to run to correct permission issues on /usr/bin folder.
  • New check script checkvar.ksh to check the permissions of the /var folder.
  • New check script checkusrlib.ksh to check the permissions of the /usr/lib folder.
  • Update to check script checkdev.ksh to suggest commands to run to correct permission issues on /usr/bin folder.
  • Update to check script checkephemeralports.ksh to suggest commands to run if issues were discovered.
  • New check script checknfssoft.ksh to alert if NFS mounted file systems are mounted hard instead of soft.
  • Update to check script checksuid.ksh to correctly handle 64 bit Oracle installations.
  • Update to check script checkpgspusage.ksh to issue a warning when the paging space utilization is above 25%.
  • Update to check script checkaso.ksh to only report an error if the system has enough CPU entitlement to run ASO.
Version: v12.04.23
  • New check script checkgzip.ksh to check if gzip is installed, and if so, if the correct version is installed.
  • Update to check script checkaso.ksh to only report an error if system hardware model is permitted to run ASO.
  • Update to check script checketcprofile.ksh to handle different permitted permissions and owners.
  • Update to check script checkinetdconf.ksh to handle different permitted permissions for file /etc/inetd.conf.
  • Update to check checklsoflevel.ksh to not alert if lsof is not installed, because check checklsof.ksh already does that.
  • Update to check checkrootrloginfalse.ksh to only alert if either the telnet or login entry has been enabled in /etc/inetd.conf.
  • Update to check checkspooler.ksh to not alert if the qdaemon and writesrv entries are set to off.
  • Update to check checkuprintfd.ksh to not alert if the uprintfd entry is set to off.
  • Update to check checknmon.ksh to handle the inittab entry for xmdaily correctly if it has been changed to off.
  • Update to check checksddsrv.ksh to handle the inittab entry for sddsrv correctly if it has been changed to off.
  • Update to check checksddsrvvsvpath.ksh to handle the inittab entry for sddsrv correctly if it has been changed to off.
  • Update to check checksimpanagalaxy.ksh to handle the inittab entry for cv_galaxy correctly if it has been changed to off.
  • Update to check checkepochbackupinittab.ksh to handle the inittab entry for ebcl correctly if it has been changed to off.
  • Update to check checkemcnetworkerinittab.ksh to handle the inittab entry for rcnsr correctly if it has been changed to off.
  • Update to check checktmout.ksh to handle situations correctly when the TMOUT value has been exported or set to readonly.
Version: v12.04.18
  • Update to check script checkoslevel.ksh to warn for any systems still on AIX 5.3, as IBM support is ending on 4/30/2012 for AIX 5.3.
  • Minor update to check script checksddlevel.ksh to correct some variables.
Version: v12.04.18
  • Update to check script checksudoversion.ksh to check for latest version of SUDO, 1.6.9p23.
Version: v12.04.11
  • Update to check script checkvmo.ksh to correclty handle setting maxperm% and maxclient% on AIX 6.1 and up systems, now that these tunables are restricted.
  • Update to check script checkdiglibbind.ksh to correctly report missing libbind_isc9.a link on AIX 5.3 TL12 SP5.
  • Update to check script checktsmbackup.ksh to correct issue with the script not being able to determine the end time of the TSM backup.
  • Update to the description of check script checkcpufolding.ksh to show the correct way to enable CPU folding.
  • Update to check script checkmanpages.ksh to suggest the command to run to create the whatis database.
  • Update to check script checkncargs.ksh to suggest the command to run to set the correct ncargs value.
Version: v12.04.10
  • Update to check script checktopcpuusers.ksh to return a proper returncode when CPU usage is high.
  • Update to check script checkhacmpmajor.ksh to not report any errors when no volume groups are defined on a PowerHA cluster.
  • Update to check script checkhacmpsharedvgs.ksh to not report any errors when no volume groups are defined on a PowerHA cluster.
  • Update to check script checkhacmposlevel.ksh to avoid reporting errors if openssh is not installed.
  • Update to check script checkcrontabcommands.ksh to report if a script of a user is located in /tmp of in someone else's home directory.
  • Update to check script checkusrperms.ksh to suggest command to correct permissions of the /usr folder.
  • Update to check script checkvartmp.ksh to not suggest that any Korn Shell scripts should be deleted from /var/tmp.
  • Update to check script checkpgsp.ksh to not report errors on the mirroring of paging spaces when located on MPIO managed disks.
  • Update to check script checkrootvgdisks.ksh to not report incorrect mirroring of the root volume group when MPIO disks are used for rootvg.
  • Update to check script checkrootvgevendisks.ksh to not report an uneven amount of disks in rootvg, when rootvg volume group uses MPIO disks.
  • Update to check script checkrootvglv.ksh to not report about the requirement for 2 system dump devices if the rootvg uses MPIO disks.
  • Update to check script checksyslogfiles.ksh to suggest how to create the necessary syslog output files.
  • Update to checkemcodmlevel.ksh for updated recommende level of the ODM Definitions of EMC to install for AIX 5.x/6.1 systems.
Version: v12.04.09
  • New check script checkdiglibbind.ksh to make sure the required libbind links are present in /usr/lib for the dig command to function properly.
  • Update to check script checketchosts.ksh to provide the correct command to change the mode of /etc/hosts.
  • Update to check script checkmanualfs.ksh to avoid incorrectly reporting file systems.
  • Update to check script checkrootvgdisks.ksh to avoid report incorrect mirroring if the rootvg disks are not of the same size.
Version: v12.04.08
  • Minor correction to checklsvg.ksh to avoid errors produced by the script.
  • New check script checkconserver.ksh to check if conserver is installed.
Version: v12.03.30
  • Minor update to checkbusydisks.ksh to correct empty line.
  • Minor correction to checkmailq.ksh to correctly display the number of email is the mail queue.
  • Update to checkmultiplelv.ksh to resolve logical volumes listed within quotes, and updated to resolve issues with logical volumes appearing in the output incorrectly.
Version: v12.03.25
  • New check script checkemcavamarrmanlevel.ksh to display teh version of the EMC Avamar RMAN client, if installed.
Version: v12.03.23
  • Minor correction to checkdiskqfull.ksh to avoid empty lines.
  • Minor correction to checkvscsidiskattr.ksh to avoid duplicate messages regarding having to reboot the system.
  • Minor correction to checkvscsifastfail.ksh to avoid duplicate messages regarding having to reboot the system.
  • Minor correction to checkvscsipathto.ksh to avoid duplicate messages regarding having to reboot the system.
  • New check script checkquovadx.ksh to search for a known root backdoor program of vendor Quovadx on the system.
  • New check script checksysdumpdisks.ksh to make sure that system dump devices are located on different disks.
  • New check script checkemcavamarlevel.ksh to display the version of the EMC Avamar backup client software installed.
  • New check script checkemcavamarrunning.ksh to make sure the avagent of EMC Avamar client is running, if installed.
  • New check script checkemcavamarstatus.ksh to display the EMC Avamar client status, if installed.
  • New check script checkemcavamarstartstop.ksh to make sure the start and stop scripts exist, if installed.
Version: v12.03.22
  • Update to checksystemfirmwarelevel.ksh to include new Power7 system firmware level.
Version: v12.03.20
  • Update to checksystemfirmwarelevel.ksh to include new Power5 system firmware level.
Version: v12.03.08
  • Update to checktelnet.ksh to properly check if telnet is enabled.
  • New check script checkblankpassword.ksh to check for any users without a password.
  • Update to checkuserpassword.ksh, to not only check for passwords in /etc/security/passwd, but also in /etc/passwd.
  • New check script checkpasswordsinpasswd.ksh to check for any users with passwords in /etc/passwd.
Version: v12.03.06
  • New check checktsmtdpoerrorlog.ksh to check the size of the tdpoerror.log file of Tivoli Data Protection for Oracle.
Version: v12.03.02
  • Update to checkbusydisks.ksh to allow for monitoring of busy disks both since system start and the current usage.
  • New check script checkdiskqfull.ksh to check for the service queue of any disk running full more than 100 times per second.
  • New check script checkqueuedepth.ksh to check the queue_depth setting of all disks.
  • New check script checklvmstat.ksh to generate an overview of the logical volumes and their usage.
  • Update to checkvmstat.ksh to check both the virtual memory statistics since system boot and the current usage.
  • Update to checkentitlement.ksh to list both the current and average physical processor entitlement percentages.
Version: v12.02.28
  • Update to checkaso.ksh to make sure Active System Optimizer is enabled on Power7 systems that run either AIX 6.1 TL7 or AIX 7.1 TL1.
  • Minor update to checkemcpowermttrespass.ksh to correct variable usage.
Version: v12.02.22
  • Update to check checkipldevice.ksh to handle the situation when bootinfo -b does not provide any output.
  • New check checkrunprivmain.ksh, to identify a known root access backdoor called run_priv_main of vendor Siemens.
Version: v12.02.21
  • New check script checkpagesize.ksh determines the page sizes supported by AIX.
Version: v12.02.20
  • New check script checkemcpowermttrespass.ksh, that will check for any EMC PowerPath devices that have been trespassed.
  • Update to check script checknetsvcorder.ksh, to better explain when to use bind (IPv6 and IPv4) and bind4 (IPv4 only).
  • New check script checkinterfacethreading.ksh, to make sure network interface threading is only enabled when there are at least 4 CPUs configured in the system, along with a ratio of at least 2:1 for the configured number of processors to the number of configured network interfaces.
Version: v12.02.17
  • Update to check script checkhacmplevel.ksh due to new PowerHA fix pack levels.
  • Update to check script checkuprintfd.ksh, to resolve issue with monitoring the uprintfd process.
Version: v12.02.16
  • New check script checkvscsifastfail.ksh, to check if the vscsi adapters have the vscsi_err_recov attribute to fast_fail.
  • New check script checkvscsipathto.ksh, to check if the vscsi adapters have the vscsi_path_to attribute set to 30.
  • New check script checkvscsidiskattr.ksh, to check if the disk attributes of virtual SCSI disks have been set correctly.
Version: v12.02.15
  • Updates to descriptions of several checks, mostly due to the upcoming end-of-service date of AIX 5.3 on April 30, 2012.
  • Renamed check checknetworkerlevel.ksh to checkemcnetworkerlevel.ksh.
  • New check script checkemcnetworkerrunning.ksh, which will make sure that the EMC Networker client is running, if installed.
  • New check script checkemcnetworkerinittab.ksh, which will make sure that the rcnsr entry for the EMC Networker client is present in /etc/inittab, so the EMC Networker client will start at system boot time.
  • New check script checkemcnetworkeripv6.ksh, which makes sure that the IPv6 localhost entry is present in /etc/hosts, which is required for the EMC Networker client to start.
  • New check script checkemcnetworkerlocal4.ksh, which makes sure the DNS configuration in /etc/netsvc.conf is set correctly, for the EMC Networker client software to recognize the IPv6 entry in /etc/hosts.
  • Updated check script checketchosts.ksh, to check for any additional entries present for the IPv6 or IPv4 localhost entries in /etc/hosts.
  • Update to check script checkusrgroup.ksh, to make sure no warning message is generated if user guest has been deleted from the system.
Version: v12.02.10
  • Resolved typo in check script checketherchannelnetaddr.ksh.
  • Resolved issue in check script checkdnslookup.ksh for systems that act as DNS forwarders.
  • Resolved minor issue with check script checkemcodmlevel.ksh not properly reporting all installed EMC ODM levels.
  • Added another possible entry for check script checketherchannellink.ksh for active link status.
  • Added another test to check script checkgecos.ksh to make sure a GECOS field is present that is not exactly the same as the user-ID.
Version: v12.02.09
  • New check script checkgidbelow100.ksh, to make sure GID's used in /etc/group below 100 remain reserved for the operating system.
Version: v12.02.07
  • Update to check checkexcluderootvg.ksh, which had a minor error in checking the permissions of file /etc/exclude.rootvg.
  • Update to checkhacmpmajor.ksh, to handle the cllsvg command properly for HACMP 5.3.
  • Update to checkhacmpsharedvgs.ksh, to handle the cllsvg command properly for HACMP 5.3.
  • Update to checkinetdconf.ksh, to provide command output on how to resolve discovered issues.
  • Update to checkrootforward.ksh, to provide command output on how to resolve discovered issues.
  • Update to checkrootprofile.ksh, to provide command output on how to resolve discovered issues.
  • Update to checkuprintfd.ksh, to correct the output showing the uprintfd running process.
  • New check script checkarptkillc.ksh, to check if the ARP cache interval is set correctly to 20 minutes.
  • New check script checkdirectedbroadcast.ksh, to check if directed broadcasts are disabled.
  • New check script checkipignoreredirects.ksh, to check if ignoring ICMP routing redirects is enabled.
  • New check script checkicmpaddressmask.ksh, to check if ICMP broadcast probes are disabled.
Version: v12.01.27
  • New check script checksshallowusers.ksh, to check if user root is a member of entry AllowUsers in /etc/ssh/sshd_config, if this entry is specified. If not, it otherwise will not allow a root login to a server through ssh.
Version: v12.01.25
  • Updates to checkpasswd.ksh and checkgroup.ksh, now also checking for any empty lines, or lines with (a combination of) tabs or spaces in /etc/group and /etc/passwd.
Version: v12.01.24
  • New check script checknamed.ksh, to check if named is active and enabled at system boot.
  • New check script checknamedconf.ksh, to display the contents of /etc/named.conf, if it exists.
Version: v12.01.23
  • New check script checkfcmaxxfersize.ksh, to recommend tuning max_xfer_size attribute for fibre channel adapters.
  • Updated COPYRIGHT file.
  • Addition of CHANGES file, showing the most recent changes to UNIX Health Check for AIX. Also includes update to website unixhealthcheck.com to display the changes as well - available through the support page.
  • Text update to checksddpcmlevel.ksh.
  • New check script checksddpcm.ksh, to recommend using sddpcm instead of sdd.
  • New check script checkemcpowermtafm.ksh, to check for consistency in the array failover mode for hdiskpower devices under EMC's PowerPath control.
Version: v12.01.20
  • Update to DESCRIPTIONS file; resolved a number of typos and improved a large number of descriptions for checks.
Version: v12.01.18
  • Update to check script checkifconfig.ksh - script failed due to issue with quotes.