[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [cobalt-users] Warning!! RaQ3-en-Update-OS-4.0.pkg will overwrite RaQ3-All-Security-4.0.2-9353.pkg & RaQ3-All-Security-4.0.1-9531.pkg!!!
- Subject: RE: [cobalt-users] Warning!! RaQ3-en-Update-OS-4.0.pkg will overwrite RaQ3-All-Security-4.0.2-9353.pkg & RaQ3-All-Security-4.0.1-9531.pkg!!!
- From: "Stephanie Sullivan" <ses@xxxxxxxxxxx>
- Date: Tue Mar 6 22:05:56 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
Dan,
1) If these updates require the (reboot forcing) RaQ3-en-Update-OS-4.0.pkg
then why don't they (like other packages that require it) fail to install?
2) Other packages that require RaQ3-en-Update-OS-4.0.pkg DO fail to install
indicating that RaQ3-en-Update-OS-4.0.pkg must be installed first.
3) At that time I had not taken a .pkg apart and was not aware that
RaQ3-en-Update-OS-4.0.pkg did an rpm install of all packages, even if newer
versions were in place, using the "rpm --force"
I posted this because other people may have put updates on out-of-order of
release too. They may also place a high priority on updates that address an
active security problem like the bind update and proftp update did.
So, with fairly obscure versioning (which has only recently been somewhat
clarified) and an inconsistent requirement of RaQ3-en-Update-OS-4.0.pkg
across post RaQ3-en-Update-OS-4.0.pkg updates, and a lack of warning
messages (shouldn't a update provide a warning if it is overwriting a
*newer* rpm?) from the install of RaQ3-en-Update-OS-4.0.pkg isn't it is easy
to understand how a number of people here who have reported their bind
version not being updated ended up in that situation without a reasonable
clue how they got there?
Isn't it a reasonable thing to provide a reasonably plausable explanation
and warning on a *security* issue?
I appreciate your sentiment about order of package installation and I hope
you appreciate how I have decided to install packages based on priorities
and other may have done the same trusting Cobalt package installation to
assure that the "right thing" gets done during an installation.
Regards,
-Stephanie Sullivan
From: "Dan Kriwitsky" <webhosting@xxxxxxxxx>
To: <cobalt-users@xxxxxxxxxxxxxxx>
Subject: RE: [cobalt-users] Warning!! RaQ3-en-Update-OS-4.0.pkg will
overwrite RaQ3-All-Security-4.0.2-9353.pkg &
RaQ3-All-Security-4.0.1-9531.pkg!!!
Date: Fri, 2 Mar 2001 08:45:41 -0500
Reply-To: cobalt-users@xxxxxxxxxxxxxxx
> Warning!! I now know why 2 of my servers had old versions of bind/proftp
> after I had already installed the updates!
>
> RaQ3-en-Update-OS-4.0.pkg will overwrite RaQ3-All-Security-4.0.2-9353.pkg
> and RaQ3-All-Security-4.0.1-9531.pkg if applied after them.
>
Why would you install Update-OS-4.0.pkg Posted: January 16, 2001after any of
the security updates, with newer dates, that are meant to be updates to the
Update-OS-4.0.pkg?
IIRC, any file named Security-4.x.x.x..pkg or system-4.x.x.x.pkg should be
installed only after the 4.0 OS update is installed.
--
Dan Kriwitsky