Security Basics mailing list archives

Re: Third Party Patch Management


From: Noah.Lance () APCc com
Date: Tue, 24 Mar 2009 16:37:19 -0500

If its an active directory based network, then look at using GPO. You can 
push the software updates via the DC for the third party software you are 
concerned with, and maintain it via GPO. This is much more ideal than 
using logon scripts due to overhead. It will also significantly aide you 
as the company grows or you move on. And its really no cost, just skill 
and labor.




"Al Cooper" <cooper () hmcnetworks com> 
Sent by: listbounce () securityfocus com
03/24/2009 11:28 AM

To
<security-basics () securityfocus com>
cc

Subject
Third Party Patch Management






With all the security updates to programs like Acrobat & Java, I am
interested in how the community is handling patch management practically 
in
small to medium sized organizations (50 to 200 computers).  Microsoft 
Update
Server works for Windows patches but will not handle third party patches.
Microsoft System Center is nice but too expensive for this market.

What solutions are you using and how effective are they?

Thanks,

Coop




------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute

Learn all of the latest penetration testing techniques in InfoSec 
Institute's Ethical Hacking class. 
Totally hands-on course with evening Capture The Flag (CTF) exercises, 
Certified Ethical Hacker and Certified Penetration Tester exams, taught by 
an expert with years of real pen testing experience.

http://www.infosecinstitute.com/courses/ethical_hacking_training.html
------------------------------------------------------------------------




------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute

Learn all of the latest penetration testing techniques in InfoSec Institute's Ethical Hacking class. 
Totally hands-on course with evening Capture The Flag (CTF) exercises, Certified Ethical Hacker and Certified 
Penetration Tester exams, taught by an expert with years of real pen testing experience.

http://www.infosecinstitute.com/courses/ethical_hacking_training.html
------------------------------------------------------------------------


Current thread: