D&C Lug - Home Page
Devon & Cornwall Linux Users' Group

[ Date Index ][ Thread Index ]
[ <= Previous by date / thread ] [ Next by date / thread => ]

Re: [LUG] Which OS/Distro for secure production web server



hi theo,

hmmm...

cron-apt looks interesting - and i've just installed it on a test machine.

although it says that it only updates the package list and downloads package updates it also looks like it carries out 'upgrade' as well. does the default install upgrade as well? i say this cos the /etc/cron-apt/action.d directory has a file in it called 3-download which has the string 'upgrade in it.

i appreciate the comments RE server apps needing to be restarted - what answer do you have for this? it looks like cron-apt does its thing at 0400 - is this not the best time to run these updates?

and why is cron-apt a security risk - i tend to have manually kept servers up to date using apt-get update/upgrade myself - and i run this as regularly as i can - what's wrong with it being carried out automatically?

thanks for any pointers,

kev

PS - i was off this list for a couple of months - did i miss open source day? when was it last - or when is it due?


Theo Zourzouvillys wrote:


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Sunday 09 February 2003 10:53 am, kevin bailey wrote:




and of course - these two commands can be put into a script file and run
automatically every night using cron



or apt-get install cron-apt ;)


~ Theo

- -- Theo Zourzouvillys
<theo@xxxxxxxxxxxxxxxx>
<http://theo.me.uk/>





-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.1 (GNU/Linux)

iD4DBQE+RlLd448CrwpTn6YRAnwjAJ0XIj0NPfLexPqm/WTYwZSlscK1wgCXebMc
N5jeU9CQaBVIQOijN4f8tg==
=J53C
-----END PGP SIGNATURE-----


--
The Mailing List for the Devon & Cornwall LUG
Mail majordomo@xxxxxxxxxxxx with "unsubscribe list" in the
message body to unsubscribe.





-- The Mailing List for the Devon & Cornwall LUG Mail majordomo@xxxxxxxxxxxx with "unsubscribe list" in the message body to unsubscribe.


Lynx friendly