TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Ask HN: How do you/your company handle host security updates in production?

4 点作者 whitepoplar大约 6 年前
Unattended-upgrades? Manually in response to security mailing lists? Configuration management? Teardown and rebuild at fixed intervals?<p>If you&#x27;re uncomfortable with how it&#x27;s currently done, what would you change?

1 comment

LinuxBender大约 6 年前
Bare metal, yum update. VM&#x27;s, new image build from a pipeline.<p>Currently, yum is a problem because people tainted repos and didn&#x27;t understand rpm dependency conundrums they could get in to. I warned them several times. Now it takes a massive team of people to update the OS. It&#x27;s even more complicated than that, but I would need to write a blog about it.<p>Image builds at least force them to fix the conundrums prior to reaching the staging or test areas.<p>What would I change? None of what I stated is a technical problem. Bare metal, VM&#x27;s and containers can all be as easy to update and maintain.
评论 #19284445 未加载