<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Log4j in Qlik Replicate</title>
    <link>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873066#M1433</link>
    <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;P&gt;I have added&amp;nbsp;‐Dlog4j2.formatMsgNoLookups=true to REPENDCTL.BAT on all my QLIK Replicate Servers without problems.&lt;/P&gt;
&lt;P&gt;But our security department send me this&lt;/P&gt;
&lt;P&gt;Opgrade to Log4j 2.15 is not enough.&lt;/P&gt;
&lt;P&gt;The published vulnerrability is CVE-2021-4101 and 45046&lt;/P&gt;
&lt;P&gt;Please check&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.lunasec.io/docs/blog/log4j-zero-day-severity-of-cve-2021-45046-increased/" target="_blank" rel="noopener"&gt;Log4Shell Update: Severity Upgraded 3.7 -&amp;gt; 9.0 for Second log4j Vulnerability (CVE-2021-45046) | LunaSec&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Regards&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Per Jansdal&lt;/P&gt;
&lt;P&gt;Semler IT&lt;/P&gt;
&lt;P&gt;Denmark&lt;/P&gt;</description>
    <pubDate>Mon, 20 Dec 2021 06:13:56 GMT</pubDate>
    <dc:creator>PerJansdal</dc:creator>
    <dc:date>2021-12-20T06:13:56Z</dc:date>
    <item>
      <title>Log4j</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873066#M1433</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;P&gt;I have added&amp;nbsp;‐Dlog4j2.formatMsgNoLookups=true to REPENDCTL.BAT on all my QLIK Replicate Servers without problems.&lt;/P&gt;
&lt;P&gt;But our security department send me this&lt;/P&gt;
&lt;P&gt;Opgrade to Log4j 2.15 is not enough.&lt;/P&gt;
&lt;P&gt;The published vulnerrability is CVE-2021-4101 and 45046&lt;/P&gt;
&lt;P&gt;Please check&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.lunasec.io/docs/blog/log4j-zero-day-severity-of-cve-2021-45046-increased/" target="_blank" rel="noopener"&gt;Log4Shell Update: Severity Upgraded 3.7 -&amp;gt; 9.0 for Second log4j Vulnerability (CVE-2021-45046) | LunaSec&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Regards&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Per Jansdal&lt;/P&gt;
&lt;P&gt;Semler IT&lt;/P&gt;
&lt;P&gt;Denmark&lt;/P&gt;</description>
      <pubDate>Mon, 20 Dec 2021 06:13:56 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873066#M1433</guid>
      <dc:creator>PerJansdal</dc:creator>
      <dc:date>2021-12-20T06:13:56Z</dc:date>
    </item>
    <item>
      <title>Re: Log4j</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873186#M1434</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/159810"&gt;@PerJansdal&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I will move this to the Qlik Replicate board, so it reaches the right audience&lt;/P&gt;</description>
      <pubDate>Mon, 20 Dec 2021 09:08:20 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873186#M1434</guid>
      <dc:creator>Maria_Halley</dc:creator>
      <dc:date>2021-12-20T09:08:20Z</dc:date>
    </item>
    <item>
      <title>Re: Log4j</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873190#M1436</link>
      <description>&lt;P&gt;Thank You very much&lt;/P&gt;</description>
      <pubDate>Mon, 20 Dec 2021 09:10:59 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873190#M1436</guid>
      <dc:creator>PerJansdal</dc:creator>
      <dc:date>2021-12-20T09:10:59Z</dc:date>
    </item>
    <item>
      <title>Re: Log4j</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873393#M1438</link>
      <description>&lt;P&gt;The LOG4J module comes into play with the Replicate Endpoint Service only (today).&lt;/P&gt;
&lt;P&gt;Best I know this Service is only required when using &lt;STRONG&gt;&lt;SPAN&gt;MongoDB, Salesforce or SAP&amp;nbsp; (and NULL?)&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;endpoints (today).&lt;/P&gt;
&lt;P&gt;If you do not need those endpoints then you might consider restarting the Attunity Replicate service after completely disabling&amp;nbsp; that service by making sure that the file replicate\bin\repctl.cfg has a line with &amp;lt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN&gt;"disable_endpoint_server":true,&amp;nbsp; &lt;/SPAN&gt;&lt;/STRONG&gt;&amp;nbsp;&amp;gt;&lt;/P&gt;
&lt;P&gt;hth,&lt;/P&gt;
&lt;P&gt;Hein.&lt;/P&gt;</description>
      <pubDate>Mon, 20 Dec 2021 16:32:03 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873393#M1438</guid>
      <dc:creator>Heinvandenheuvel</dc:creator>
      <dc:date>2021-12-20T16:32:03Z</dc:date>
    </item>
    <item>
      <title>Re: Log4j</title>
      <link>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873599#M1442</link>
      <description>&lt;P&gt;After adding&amp;nbsp;&lt;STRONG&gt;&lt;SPAN&gt;disable_endpoint_server":true&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt;to the repctl.cfg file I did restart the Attunity Replicate servive&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards Per Jansdal&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Dec 2021 06:02:41 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Qlik-Replicate/Log4j/m-p/1873599#M1442</guid>
      <dc:creator>PerJansdal</dc:creator>
      <dc:date>2021-12-21T06:02:41Z</dc:date>
    </item>
  </channel>
</rss>

