- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Re: Quarterly Patch dilemma...Again!
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-11-2002 11:53 AM
07-11-2002 11:53 AM
Quarterly Patch dilemma...Again!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-11-2002 11:55 AM
07-11-2002 11:55 AM
Re: Quarterly Patch dilemma...Again!
Attack the problem by using the custom patch manager.
live free or die
harry
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-11-2002 12:06 PM
07-11-2002 12:06 PM
Re: Quarterly Patch dilemma...Again!
http://www.software.hp.com/ISS_products_list.html
You may be able to modify this some way, emphasis on may because I haven't looked into it.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-11-2002 12:14 PM
07-11-2002 12:14 PM
Re: Quarterly Patch dilemma...Again!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-11-2002 12:31 PM
07-11-2002 12:31 PM
Re: Quarterly Patch dilemma...Again!
HTH
Marty

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-11-2002 11:09 PM
07-11-2002 11:09 PM
Re: Quarterly Patch dilemma...Again!
I'm just wondering if there can be a data file that contains more than "just" security patches- probably you may ask HP to offer this service as this seems to meet your needs (However, I'd not expect to get this for free;-)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-12-2002 03:17 AM
07-12-2002 03:17 AM
Re: Quarterly Patch dilemma...Again!
I have encountered bad patches more than once... I usualy install them when I need them.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-12-2002 06:09 AM
07-12-2002 06:09 AM
Re: Quarterly Patch dilemma...Again!
It's not that I want to apply patches the moment they come out, but we do have it documented with our customer that we will apply any appropriate critical patches that have been released earlier than three weeks prior to the date of our first systems patching. I am on the patch notification list and have some 30 or so patch notifications, but this means entering each patch into the patch database individually and downloading them one at a time. This is how we are currently doing it, as well as displaying the ENTIRE pacth list and going through each patch on at a time and determining if we need it. This is enormously slow. While playing around yesterday, however, I did discover that I could create a boolean string for a list of individual post dates and Critical: Yes which works well, once you get all of the dates enetered, separated by OR operators.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-12-2002 06:16 AM
07-12-2002 06:16 AM
Re: Quarterly Patch dilemma...Again!
Always use match-what-target-has. This would mean that only patches applicable to your OS and software residing on your system will be patched.
Security patches are usually the most critical ones and should be prioritized over other bug fixes.
Hope this helps. Regards.
Steven Sim Kok Leong
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-12-2002 07:54 AM
07-12-2002 07:54 AM
Re: Quarterly Patch dilemma...Again!
If so, can you do what I do? When I get the disk, I install it in development. Then I let it sit there until the next disk comes to my desk. At that time, I install the new patch bundle in development and migrate the patch bundle that is 3 months old into production. This way, there has never been a problem with a bad patch or anything. I monitor the security patch bulletin, and we react if necessary to our environment, but generally, things stay pretty quiet here in regards to patching...
Hope it helps
John
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-12-2002 07:56 AM
07-12-2002 07:56 AM
Re: Quarterly Patch dilemma...Again!
swcopy the QPK1100 from the CD to the new "Total Patch Depot".
swcopy the HWE1100 from the CD to the new "Total Patch Depot"
swcopy the "Staging Depot" to the new "Total Patch Depot".
run cleanup against the "Total Patch Depot".
This gives me one depot with most of it's patches from the CD bundle and only the latest patches from my "Staging Depot". I just keep adding to my "Staging Depot" and only remove superceeded patches with cleanup. Once the patch appears on the CD bundle, it is no longer copied by swcopy from the "Staging Depot". Hope this helps give you some ideas.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-15-2002 11:24 AM
07-15-2002 11:24 AM
Re: Quarterly Patch dilemma...Again!
But Ray's post resembles what I do. So my suggestion is:
1. Run cpm_collect.sh to see what it does. Mock up a file with a bogus system name, model, etc and no patches installed. This gets around the "transmitting your configuration" -- it's not yours or anyone's.
2. Copy that up to HP and run custom patch manager against it. Select all applicable patches according to your criteria (don't worry about dates). I'm sure it will pick a lot, but oh well.
3. Download the .sh file and run get_patches to download needed patches. Always do it on the same system and in the same directory; don't clean it out. This avoids unnecessary downloads. (Of course, there are lots of ways you could do this differently with the same effect of making it more efficient; this is just easy.)
4. Do whatever you like to do in order to patch and just pick all the downloaded patches; only the ones not yet installed will be installed. Me, I like to swcopy the PATCHES.depot into a blank depot, bundle it (make_bundles) with today's date and the system name (I use CPM for each individual system), copy to one of my "permanent" depots, and install.
Keep using the "blank" system configuration and keep letting it give you all the patches.
Alternatively, you could develop a tool to crawl their site and pick only what you need by looking at date, etc. :)
Just my $.02. Haven't done it quite this way. HTH.
--M????a