unattended-upgrade showing patches are blacklisted #apt #unattendedupgrades
unattended-upgrade showing patches are blacklisted #apt #unattendedupgrades
In this post I would like to show how to set up automatic updates on a linux system with a simple bash script. For that I am using the package unattended-upgrades:
Ubuntu Server Automatic Security Updates
Fine-tuning Ubuntu’s unattended-upgrades let me keep my WordPress server secure without risking breakage from non-security updates. Here’s how I configured it for security patches only, plus the safeguards I put in place.
https://islandinthenet.com/ubuntu-server-automatic-security-updates/
(26/N)
3. Actively maintain your devices
1] Package managers are no longer the only source of software for systems. Look into a one-stop upgrading tool like Topgrade that takes care of this, and also handles, e.g., updates of #Flatpak applications.
2] Use unattended / automatic upgrades on #Linux distributions that have a non-rolling release model. Restrict them to security upgrades, only: You want your devices to stay secure, but reduce the risk of things breaking while you are not available for resolving any issues. @fedora has listed the pros and cons of unattended upgrades.
You can find helpful howtos on the web for many distros:
Debian, Fedora, Linux Mint, openSUSE, Ubuntu, …
If you can’t find one, as a last resort, look up the parent distribution of yours and continue your search there.
3] Finally, collect notes how you resolved maintenance issues. Include research results, like helpful links. Copy & paste the history of terminal commands used in the process. Integrate these into your regular note-taking system. Don’t lose the knowledge you have acquired.
Start of this thread:
https://mastodon.de/@tuxwise/113503228291818865
@FrankM Danke, #clusterssh scheint ähnlich zu sein wie das auch schon vorgeschlagene #tmux. :)
Aber ich glaube #aptDater (eher noch als) oder #unattendedUpgrades kommt besser an das hin, was ich eigentlich möchte.
Behalte es aber trotzdem im Auge, ist ein interessantes Tool.
Ich bin grad etwas über die #Ubuntu #Systemd #unattendedupgrades verwirrt 😵💫
Aktiv:
unattended-upgrades.service
apt-daily.timer
apt-daily-upgrade.timer
Manuell `unattended-upgrade` ausführen funktioniert wie's soll.
Aber ich wollte das ganze vom Dienst ausgelöst testen, passiert aber nix 🧐
Also mit `systemctl start apt-daily-upgrade.service`