Ask Your Question

patch management

asked 2013-10-04 07:38:27 -0600

refandate gravatar image

Hi All,

I'm setting up a patch management system with puppet (and maybe the foreman). Me and the company I work for have 0 experience with puppet or other CM systems, I’m learning puppet ATM.

Environment details:
- About 20 servers spread out over different customer networks, nearly all servers are unique, i'm not trying to keep package versions equal.
- Yum, apt and zypper/yast based have to be supported

Desired actions:
- Check for updates, automated installation of security updates, scheduled normal updates, blacklisting of certain updates.
- It is not necessary to make use of the PE dashboard ... (more)

edit retag flag offensive close merge delete

1 Answer

Sort by » oldest newest most voted

answered 2013-10-04 10:40:43 -0600

Ancillas gravatar image

Unfortunately, the best way to do this in Puppet is to have a long list of packages you want at a specific version, a long list of packages you want at the latest version, and a long list of packages you don't want installed.

Puppet excels at enforcing a defined state, but you have to define that state, which means you have to explicitly list the packages, and the state in which you want them to be.

You could have Puppet run an apt-get update and apt-get install once a month (or the package equivalent for your non-ubuntu machines ... (more)

edit flag offensive delete link more


So out of the 2 approaches I described, writhing my own scripts and run them as cronjobs distributed by puppet would serve the most control in your opinion?

refandate gravatar imagerefandate ( 2013-10-04 13:02:34 -0600 )edit

That would be an option, yes, but it feels like a problem better suited for a tool like Fabric or mCollective. Let Puppet manage specific packages like apache, and then ...(more)

Ancillas gravatar imageAncillas ( 2013-10-04 23:20:33 -0600 )edit

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools


Asked: 2013-10-04 07:38:27 -0600

Seen: 24,487 times

Last updated: Oct 04 '13