nanog mailing list archives

Re: Patch Management - Windows & RHEL/CentOS based on Date


From: Paul Graydon <paul () paulgraydon co uk>
Date: Wed, 13 Jun 2012 13:56:34 -1000

On 06/13/2012 01:47 PM, Wade Peacock wrote:
Hi All,

Does anyone know of a patch management system that will allow us to control the roll out of patches, specifically for 
Windows but Linux would be nice too, that can use a date to limit whether a patch is rolled out.

Ie.

Patch to date set to    2012-06-10

So all patches released up to 2012-06-10 will be offer to requesting client. Any patches released after 2012-06-10 will be 
hidden/not offered until the "Patch to Date" is moved forward.

Wade Peacock
Production IT | Vision Critical
direct  604.629.9358
mobile  604.363.8137

www.visioncritical.com<http://www.visioncritical.com/>

New York  |  London  |  Vancouver |  Paris  | Sydney  |  Chicago |  San Francisco | Toronto | Montreal | Calgary

There are a number of different solutions depending on your environment and how much you might be prepared to spend.

A few that spring to mind:

PatchLink, works with Windows and RedHat, not sure if they sorted out CentOS support. I've used PatchLink in the past for managing patch deployment to several hundreds of servers, (split up into groups for a final bit of paranoia).
ManageEngine have tools, but I believe that's Windows only.
RedHat have Satellite that patches and a whole lot more but that comes at a premium. There is also SpaceWalk from them: http://spacewalk.redhat.com/ that manages RedHat, CentOS and Scientific Linux patching.

Paul


Current thread: