Forums Search Login Register
Login
Username
Password
New Posts Todays Posts Find Users Posts Unanswered Threads Help Mark Forums as Read

Thread Options  Subscribe to this thread Subscribed Users  Add Reply 
Posts: 1,406
Trophies:
1
Hi

I have fiddled with linux since 1993, but have never had linux as my primary job. I have managed a few servers (10-15 servers) in a couple of my previous jobs. I have patched each of these servers manually. In november '20 I started a new job as a linux admin with responsibility for 300+ virtual linux servers. I have set up Ansible/AWX and written playbooks that works great for patching, deployment and other day to day tasks. I have scheduled monthly patching of all systems and it works quite well. On patch tuesdays I just lean back and wait for patching to finish. I have patched everything on all of the servers.

Recently I got responsibility for for an additional 100+ servers and the owners of those systems wants to apply security patches only. I have googled and asked a question on linuxquestions.org and it seems there's no reason to not grant their wish to only apply security updates.

However, in my earlier jobs, I have "inherited" (RedHat/CentOS) systems that have never been patched and they have broken badly when I have tried to patch them due to broken dependencies and bad (no) management from the previos sysadmins. Luckily they were virtual servers, so I was able to revert to snapshots. Today my servers are about 30% CentOS/RedHat and the rest on Ubuntu LTS and we are in the process on migrating everything to Ubuntu LTS.

So to my question: If I in the lifetime of servers, which might be up to 5 years (LTS), I need to apply all updates on servers that has only gotten security patches, is there a risk of getting into dependency hell? Or any risk of other breakage?

My gut says that we should full patch systems regularly to prevent broken dependencies and other potential problems. Is my gut wrong?
02-23-2021, 08:24 AM
Reply
Subscribe to this thread Subscribed Users  Add Reply 


Possibly Related Threads...
Thread: Author Replies: Views: Last Post
  [ubuntu] Strange error update message JerrieKasica 0 4 02-24-2021 09:35 PM
Last Post: JerrieKasica
  [kubuntu] /boot full but can't update due to broken package 20.04 AshelyP1955 0 10 01-26-2021 06:02 AM
Last Post: AshelyP1955
  apple keyboard stopped working after update; works in UEFI rstefaniacoxa 0 15 01-13-2021 12:07 AM
Last Post: rstefaniacoxa
  wwebsite security cificatte not acceptted on hosting compuutter AshelyP1955 0 14 01-03-2021 09:35 PM
Last Post: AshelyP1955
  [ubuntu] Update to GRUB version 2 error ureddgriffithx 0 16 10-29-2020 02:45 AM
Last Post: ureddgriffithx
  [all variants] Last update broke graphics oharrisonholmesh 0 29 10-13-2020 07:40 PM
Last Post: oharrisonholmesh
  Problems to log in after update ebrainpecks 0 26 10-08-2020 12:11 PM
Last Post: ebrainpecks
  [ubuntu] Thunderbird update? ggiselamcgrrhe 0 31 09-17-2020 12:42 PM
Last Post: ggiselamcgrrhe
  When I try to update clamav, it gives weird response larsenlamont 0 39 08-13-2020 03:01 AM
Last Post: larsenlamont
  [lubuntu] Strange black sign on screen after lubuntu update on old ThinkPad Mac Tramp 0 48 07-25-2020 03:08 PM
Last Post: Mac Tramp

Forum Jump:



User(s) browsing this thread: 1 Guest(s)



Contact Us Privacy Policy Top RSS
Forum Software By: MyBB, © 2002-2021