Patch Management - Windows & RHEL/CentOS based on Date

Paul Graydon paul at paulgraydon.co.uk
Wed Jun 13 23:56:34 UTC 2012


On 06/13/2012 01:47 PM, Wade Peacock wrote:
> Hi All,
>
> Does anyone know of a patch management system that will allow us to control the roll out of patches, specifically for Windows but Linux would be nice too, that can use a date to limit whether a patch is rolled out.
>
> Ie.
>
> Patch to date set to    2012-06-10
>
> So all patches released up to 2012-06-10 will be offer to requesting client. Any patches released after 2012-06-10 will be hidden/not offered until the "Patch to Date" is moved forward.
>
> Wade Peacock
> Production IT | Vision Critical
> direct  604.629.9358
> mobile  604.363.8137
>
> www.visioncritical.com<http://www.visioncritical.com/>
>
> New York  |  London  |  Vancouver |  Paris  | Sydney  |  Chicago |  San Francisco | Toronto | Montreal | Calgary
>
There are a number of different solutions depending on your environment 
and how much you might be prepared to spend.

A few that spring to mind:

PatchLink, works with Windows and RedHat, not sure if they sorted out 
CentOS support.  I've used PatchLink in the past for managing patch 
deployment to several hundreds of servers, (split up into groups for a 
final bit of paranoia).
ManageEngine have tools, but I believe that's Windows only.
RedHat have Satellite that patches and a whole lot more but that comes 
at a premium.  There is also SpaceWalk from them: 
http://spacewalk.redhat.com/ that manages RedHat, CentOS and Scientific 
Linux patching.

Paul




More information about the NANOG mailing list