Server :: Patch Management Solution For Ubuntu And RHEL
Jun 13, 2011I am looking for a centralized patch management/package Repository solution for ubuntu and RH.
View 4 RepliesI am looking for a centralized patch management/package Repository solution for ubuntu and RH.
View 4 RepliesMany software available for patch managment like OCSinventry, cfengine,puppet,redhat satellite server for linux. I want to perform patch management for my Linux server (centOS, debian) My question is how to find out which patches available for Linux and which patches i need to apply. Is there any way to find out require patches?
View 6 Replies View RelatedI'm at ES5. Anyone have a method for roll out or backing a single RPM or set of RPMs. In other words, I install the security errata (several packages) and it breaks something. I need to back it out, and restore the original. Also, anyone have experience using Red Hat provisioning for patch management?
View 3 Replies View RelatedHow do we perform offline patch management with Debian? This isn't a question about which tools to use on Debian to load the patch once it is on a CD and transferred to said offline computer via sneaker net. More, how do I keep said offline (or strictly firewalled) computer in synch?
Pardon me while I make a comparison to Solaris. I am in no way stating Solaris is better. It just happens to be my baseline of experience.In Solaris, I can download Cluster Patch Updates (CPU). So if I build a Solaris box with a CD that is a year or more old, I can download the latest CPU and get the box patched up to date, and from that point on sneaker-net patches as they appear.
I've inherited the following Virtual Machine scenario and am new to Linux Administration and Patch Management. The Host Operating System is Windows 2003 Enterprise, which has VMware Server 2.0.2 installed. Under the VMware Server 2.0.2 I have a Ubuntu 32-bit OS web server running Apache2 Web Services. When I log onto the Ubuntu server (9.10 32-bit) I see the following two lines just above the new mail/last logon lines.
85 packages can be updated
55 updates are security updates
I would like to see at least a summary of each update and its urgency so I can notify the various developers/server owners to get their input regarding whether we should or should not apply that particular update to the server. We apply the patches in our test/dev environment first then once vetted there we roll them out to our production servers. What I am looking for is a way to automate the gathering of the information and once approval has been received automating the actual patching process so that I do not have to manually perform the apt-get process for each separate package needed/approved.
Ideally I would like a recommendation for a GUI based package to manage this process and that is capable of generating the appropriate reports for the 'powers that be' regarding the current security/patch management environment. For proof of concept I would like a free version that is not hamstrung in functionality but is not too costly to procure the production version with no limitations.
I have received a task to install Dell's KACE patch management agents (kboxagent) on a large number of 11.2 and 11.4 openSuSE systems in our organization A search of the forum did not find any references for KACE. Has anyone had any expierence with the KACE product on openSuSE?Google searches only find ver 5.1 of KACE for RH systems. Is this version compatible with all Linux's?
View 1 Replies View Relatedi want to create Central Opensuse repository for Patch management just like WSUS in windows,which automatically downloads Updates/Patches and distribute to the Clients locally.
View 1 Replies View RelatedDoes linux have any patch managment software/solution which can distribute the patches to linux and windows clients OR is it possible that we can deploy the patches from linux to windows machines
View 1 Replies View RelatedI am running 6 servers on RHEL4.4 with oracle databases and application on HP ML370 hardware. Since initial installation, I have not applied any patch updates. I would like to start practising Patch Management and would like to know how to start and how to do it. For security reasons, I am not allowed to connect the servers to RHN or RHS hence will appreciate other options of acquiring patch updates in bundled form say on a monthly basis.
View 5 Replies View RelatedI've a problem applying a patch in RHEL 3.3.
In RHEL there is a problema with ACL as can be read in: [URL]
I've downloaded the patch from "Attachments". I try to apply the patch, but I receive this error:
usr/src # patch -p0 < aclPatch.txt can't find file to patch at input line 4 Perhaps you used the wrong -p or --strip option?
The text leading up to this was:
--------------------------
|diff -uNr acl-2.2.3.org/libacl/acl_get_file.c acl-2.2.3/libacl/acl_get_file.c
|--- acl-2.2.3.org/libacl/acl_get_file.c 2002-09-05 08:19:54.000000000 +0900
|+++ acl-2.2.3/libacl/acl_get_file.c 2004-08-25 12:49:58.000000000 +0900
--------------------------
File to patch:
========================================================
It seem that can't find acl_get_file.c, no?
- Where can I download the src file?
- Or what's the problem?
If we install patach in RHEL5 then we use "yum update" command but it will install all the available patches in the list, but if i want to install any specific patch then how to install this? Is it via "yum update ??"
View 3 Replies View Relatedis possible to edited the default RHEL CD to have it automatically install RHEL based off of a kickstart file that I will store locally on the CD. My plan would be to put a cd in a server and have the OS automatically being installed.
View 3 Replies View RelatedWe are planning to migrate our LINUX server from RHEL 3to RHEL 5. What are the configuration difference between RHEL 3 to RHEL 5 for webserver installations?
View 1 Replies View RelatedI just want to upgrade my Slackware 13.1 kernel (2.6.33.4) to the latest stable kernel from kernel.org (2.6.38.2). I have never done anything like this and I am a Linux newbie, so I would appreciate a "Kernel Patching for Dummies" version if possible. I did do a search on this forum and most of what I read was over my head. I found an FAQ on kernelnewbies.org on "How To Apply A Patch" but when I attempted what they suggested, it said it couldn't find the file to patch at line 5 and asked me which file to patch. So I CTRL-Z'd out of there and came here. Here's what I tried:
[code]...
what are the major differences between rhel 5.2 and rhel 5.4
View 2 Replies View RelatedI have a database server running RHEL 5.1 32 bit that suffered some catastrophic failures about 6 months ago. We were able to patch it back together and keep it running, but now the manufacturing site it supports is going to shut down for two weeks and I would like to replace it permenantly. Does anyone have any guidance for that sort of thing? I'd like to have the new server up and running before hand, basically changing the hostname/ip and restoring the databases only on conversion day. I've done this in the past with HP UX - Red Hat conversions, but this is my first red hat to red hat move. Any advice or shortcuts?I forgot to add the other wrinkle. The new server will be running 64bit linux.
View 1 Replies View RelatedThere is server with 3 hdd mounted to /h1 /h3 /h4 and its a file server contain 3 TB of data (must of them are in zip or rar format), We need to move whole files to the new server.I need a command or bash file to show me the name of files in these partition and the patch of them in the txt log file. (So i can create the link and download all of them in new server with download manager).I tried rsync but its too slow...After we created the links of whole files we will deny all ip address exclude new server IP address in nginx then we can transfer them all fast. (The servers are in 1 datacenter.)
View 2 Replies View Relatedis there a way to remove a patch from a kernel?
I need to apply a squashfs-lzma patch (squashfs 4.1cvs) to the liquorix kernel source which is already patched with squashfs 4.0.
how would I do that?I tried googling got this. url
but I dont know the command used to apply the patch the patch is called
35.4-3.patch.gz
url
but that patch includes more than squashfs,etc
I'm trying to install a patch but when I copy it into terminal I get message " /home/john/patch-modules_v62-opensuse.sh 'vmware-7.1.3-2.6.37-rc5.patch' not found. copy it to the current '/home/john' directory. Exiting" But I have it in my home directory!
View 3 Replies View RelatedI have this project at work. We are a MS Windows shop, and I am "supposed" to be the linux expert, which means, linux support, it's me. I have worked with linux maintaining PCs at home with different versions of linux since 1995, jumping from Slackware to Ubuntu.
Now, I have two CentOS 5.6 boxes, and I need to control the patching process. the boxes are hosting an application which we don't manage. So. one box in production, one box in development. The idea is that the box in development wil use yum in a standard way and download whatever patches are needed, and the application is tested. When the testing is done (this can take minutes, hours, or days) then the production box gets patched.
The problem is that I need to garantee that exactly the same patches are applied in development and in production.
the development box downloads the patches from the internet, but the production box gets it's patches from the development box, not the internet. I have played around with making local repos on the development box and samba, or rsync the /var/yum/cache, and to change the yum.repo.d CentOS-base.repo to force the prod to go to the dev box, without success.
How to find out the last patch , which was patched in the server? The OS list includes FREEBSD, RHAS 3/4/5 and redhat 8.
Is there a way to find it out without YUM or up2date?
I am trying to unistall a custom patch at one of our prodction server.While uninstalling the patch I am getting following kind of error.
Quote:
xdelta: /opt/updates/02.1.016.4-18365/objects/libarb.so.1.0.1: Checksum validation failed, expected: ca89579ea9dee081b81e00c3fea19305, received: 84561e5bdabd1ddc8425505a22f9d841
xdelta: /opt/ecssw-02.1.016.4/libarb.so.1.0.1: Checksum validation failed, expected: a57db80367f50ab083c02c8c7aaacb1f, received: 0a2fcdcc68a168db468a971046ccde1a
xdelta failed for file /opt/updates/02.1.016.4-18365/libarb.so.1.0.1.update.
unpacking of 02.1.016.4-18365.tar.gz failed:65280
Just want to refresh and check to make sure I don't make a mistake, but I am spoiled now with my newer OS's, binary apps, etc. and helping out someone right now who has some old servers and some apps need upgrading like proftp, etc. ALL apps are compiled, I have the old src folder, even the config.h file which if I clean the cobwebs will give me the config settings that were used right? Basically I want to do an in place upgrade from an old to new version and don't want to kill what's there, so I am assuming I can do a make with the config.h from the old compile and it should just build with those options, right?
View 1 Replies View RelatedI'd like to set up my Linux box so that I can access its GUI applications from an older Mac laptop running OS X 10.5 on the local LAN and away from home (over the internet).I know the traditional way to do this is with an X session (& Mac OS X has an X window client included), but does this offer the best performance, especially over the internet? Would I be better to install some sort of RDP server? I've used VNC in the past, but performance has been pretty slow and ideally I'd like the remote apps to show up seamlessly (more efficient use of screen real estate).
View 2 Replies View RelatedI would like to make a server in my home that could be used to backup old job files at a print shop that I work at, creating a low cost offsite backup for our backup server. It would only backup 30-200mb a night, depending on what size the various jobs are.
There are 4 workstations that backup to a network share hosted on a fileserver(tower). It only has a single TB drive, and now people are offloading files to this server to free there computer of disk space. This is going to be a problem once the "server" disk fails. The managment there will not pay a monthly fee for 500+GB of files we prob will never need, but cant delete. I was hoping I could create some sort of "online" backup hosted at my house. ( like amazon, carbonite but without the fancy gui)
After researching a while I can't seem to come up with a great solution (partly due to my lack of networking knowledge i'm sure!). I have a pfSense router, with VPN capabilities, and the router at work (Cisco/Linksys RVS4000) also can VPN. I would like to use linux as the server, I am in the process of learning Ubuntu. Also freeNAS via FTP is another thought, might be easier?
I have a server in a corporate data center for a project. I have an SSH access to this machine at port 22.There are some virtual machines running on this server and then at the back of every thing many other Operating systems are working. Now Since I am behind the data centers firewall my supervisor asked me if I can do some thing by which I can give many people on Internet access to these virtual machines directly. I know if I were allowed to get traffic on port other than 22 then I can do a port forwarding. But since I am not allowed this so what can be a solution in this case.
The people who would like to connect might be complete idiots.Who may be happy just by opening putty at their machines or may be even filezilla.I have configured an Apache Reverse Proxy for redirecting the Internet traffic to the virtual machines on these hosts.But I am not clear as for SSH what can I do.So is there some thing equivalent to an Apache Reverse Proxy which can do similar work for SSH in this situation.I do not have firewall in my hands or any port other than 22 open and in fact even if I request they wont allow to open.2 times SSH is not some thing that my supervisor wants.
I bought a Ubuntu server with Parallels Plesk Panel 10 Domains. I'm looking for online website company which does server management. I have seen many
but many sites doesn't offer service as we are using Plesk as our control panel.
Please list down the sites which offer Ubuntu Server Maintainable Services.
Its very urgent. If you know any good company sites. Please let me know.
Please don't give me Indian Company sites as I'm looking for Companies
from Netherlands, USA, Germany, Brazil, Russia, Korea, China, etc.
Trusted companies and have started their company with atleast 3 year old company.
I'm experiencing some rather severe problems after updating my Centos 5.4 system (Virtual Xen guest). What happens is that when the system boots it complains about missing .so files which prevents about 50% of the services installed from running.
I'm suspecting that it has something to do with selinux for two reasons: 1. The first services to go down complains about the security context of some files, and 2. selinux was kinda the reason I decided to update in the first place as it was disabled when it shouldn't be (enabled in system-config-securitylevel, disabled when running sestatus).
The whole boot-sequence ends with alot of "INIT: Id 'X' respawning too fast: disabled for 5 minutes"-messages (including all runlevels) before it goes stale, and I can do nothing.
The server in question had undergone very little tinkering from my part, pretty much none at all, the only services installed after installation was apache, mysql and webmin.
Details:
CentOS 5.4 is installed on both the host and guest.
The guest runs on an lvm-partition.
I have two other vm's(also CentOS) running just fine, altough I'm a bit weary of updating them .
Attached are some screenshots of the boot-process.
I hope some one here can share some insight on this problem. It's making me pretty nervous seeing that our whole network is run by CentOS-installations (not that I'm certain that CentOS is the culprit).
I have installed my CentOS 5.4 in my system and i want create self repository for my clients. I trying to configure.
View 1 Replies View RelatedI recently moved (~65mi). I have all my files on my Linux Server at home. I want to find a way to have 2 Ubuntu Workstations (at my office/apartment) and Laptop to all be able to stream my media from my home server. (The server get about 600kbps upstream).
Accessing the files I found OpenVPN and NFS to work great - however streaming my videos hasn't been so good - its extremely choppy and unwatchable. I realize there is no perfect solution, but is there anything that could be setup to buffer/prefetch/compress videos making them tolerable to watch?