--
Hi Martin
Following are the few situation to cite, where reboot of the Host is required:
1. If a new/upgraded kernel is being installed in the Host.
4. If we need to patch SSL package and as many processes are linked to its library and we need a reboot.
Following are the few situation to cite, where reboot of the Host is required:
1. If a new/upgraded kernel is being installed in the Host.
2. If security patch being installed which requires a reboot (e.g glibc Ghost Vulnerabilities , etc.).
3. If there is an VMDK issue which results “/” partition to Read-Only.
4. If we need to patch SSL package and as many processes are linked to its library and we need a reboot.
sudo find /proc -maxdepth 2 -name maps -exec grep -HE '/libssl\.so.* \(deleted\)' {} \; | cut -d/ -f3 | sort -u | xargs --no-run-if-empty ps uwwp
One of the comments on the Serverfault link I posted in my reply states
Hi Martin,
Maybe I overlooked it in the thread, but is the usecase to detect packages that require an update and a reboot afterwards, or to detect if an reboot is required?
Since Debian Wheezy and maybe even Squeeze some functionalities have been merged into apt itself.
Hans
Martin Simons writes:
> If you install the unattended-upgrade package, you will find the file:
> /var/run/reboot-required
>
> Good documentation:
> https://wiki.debian.org/UnattendedUpgrades
> http://wiki.dailystuff.nl/wiki/APT#Automatic_upgrades
Nice find
> - Application packages should have the reboot built in, if required.
You mean that the application packages should be signaling during
postinstall that they need a reboot?
Seems like a package should be executing notify-reboot-required
in
order to signal that /var/run/reboot-required
should be created.
–
Nick Anderson
Doer of things, CFEngine
Martin Simons writes:
> If you install the unattended-upgrade package, you will find the file:
> /var/run/reboot-required
>
> Good documentation:
> https://wiki.debian.org/UnattendedUpgrades
> http://wiki.dailystuff.nl/wiki/APT#Automatic_upgrades
Nice find
> - Application packages should have the reboot built in, if required.
You mean that the application packages should be signaling during
postinstall that they need a reboot?
Seems like a package should be executing
notify-reboot-required
in
order to signal that/var/run/reboot-required
should be created.
Nice find
> - Application packages should have the reboot built in, if required.
You mean that the application packages should be signaling during
postinstall that they need a reboot?
Seems like a package should be executing
notify-reboot-required
in
order to signal that/var/run/reboot-required
should be created.
/var/run/reboot-required
is managed by unattended-upgrade, so I feel other security upgrade processes for specific situations should leave it and devise their own mechanism.Martin Simons writes:
--
You received this message because you are subscribed to a topic in the Google Groups "help-cfengine" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/help-cfengine/NAEcvgPZlVw/unsubscribe.
To unsubscribe from this group and all its topics, send an email to help-cfengine+unsubscribe@googlegroups.com.
Visit this group at https://groups.google.com/group/help-cfengine.
--
You received this message because you are subscribed to the Google Groups "help-cfengine" group.
To unsubscribe from this group and stop receiving emails from it, send an email to help-cfengine+unsubscribe@googlegroups.com.