End-of-Life Announcement: NIOS 8.6.x will reach its end-of-life (EoL) in April 2025. Infoblox recommends that you upgrade to NIOS 9.x to ensure continued support and coverage.
NIOS 8.6.5 is intended for a small set of customers who require the special features (MGM, FIPS/CC) specific to this version. Infoblox recommends that most customers upgrade directly to NIOS 9.x instead of NIOS 8.6.5.
...
On a FIPS-enabled mode, during a fresh installation or after an upgrade, you are now prompted to change the password for the default ‘admin’ user (only for the first login) even if it was changed in the previous versions.
However, if FIPS mode is not enabled during the upgrade, consider the following if you wish to enable FIPS mode post upgrade:
If you change the password for the username - admin before enabling FIPS mode, no further password change is needed after enabling FIPS mode.
If you do not change the password for the username - admin before enabling FIPS mode, you will need to change the password after enabling FIPS mode.
On a FIPS-enabled mode, during a staged upgrade, after the Grid Master is upgraded, the changed password for the 'admin' user will not propagate to the members that are waiting to upgrade until those members are upgraded.
If FIPS is enabled on a Grid, upon an upgrade, Grid communication is not automatically in the FIPS-compliant mode. Run the
set distributed_grid_comm_mode
CLI command to get the Grid communication in the compliant mode. A banner is displayed in Grid Manager until NIOS transitions into the FIPS/CC compliant mode. For more information about the command, see set distributed_grid_comm_mode.
General Upgrade Guidelines
Infoblox does not recommend having different versions of the Network Insight consolidator and probe during a software Grid upgrade. This may lead to the “Discovery Consolidator service failure issue” error. Infoblox recommends that you always upgrade the consolidator and probe simultaneously during the software Grid upgrade process.
After a scheduled upgrade to NIOS 8.6.3 is complete, you must run the
update_rabbitmq_password
command on the Grid Master to get the Cloud DNS Sync service to be functional. Until that time, Route 53 synchronization does not start because the service has not been started.After an upgrade to NIOS 8.6.3, the Cloud DNS Sync service starts automatically on the Grid member that is assigned to the Route 53 synchronization groups.
After an upgrade to NIOS 8.6.3, the Disable Default Search Path and the Additional Search Paths fields will no longer be displayed in the Add Active Directory Authentication Service > Step 1 of 1 wizard.
If you upgrade to NIOS 8.6.3, all IB-FLEX appliances or Grids that have the FLEX Grid Activation license or the MSP license will have the ReportingSPLA external attribute assigned automatically for supported Grid members.
After an upgrade to NIOS 8.6.3, only 5% of allowed blocklist subscribers is supported for virtual DNS Cache Acceleration (vDCA).
The shared secret that you enter when adding a RADIUS authentication server in the Add RADIUS Authentication Service wizard > RADIUS Servers > Shared Secret field must be between 4 and 64
characters (inclusive) in length. Otherwise, the upgrade will fail.
If you are using threat analytics, you must have installed the minimum module set version (20210620) before upgrading to NIOS 8.6.1 or to NIOS 8.5.3 or later versions.
Uploading NIOS Software
After you download the NIOS software upgrade to your management station, upload it to the Grid Master, as follows:
...