RadarURL

조회 수 1265 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄
YUM 명령어를 이용하여 나의 시스템에 발생된 보안 업데이트를 진행해 보자
방법은 아래의 내용을 참고~!

@ yum-security plugin 설치
=======================================================
RHEL5 , RHEL6
# yum install yum-security
======================================================= 


@ 설치 가능한 보안 패치를 확인하는 방법
=======================================================
# yum list-security --security
=======================================================
# yum list-security --security
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
local                                                                                                                                  | 3.9 kB     00:00     
local/primary_db                                                                                                                       | 3.1 MB     00:00     
rhel-x86_64-server-6                                                                                                                   | 1.8 kB     00:00     
rhel-x86_64-server-6/primary                                                                                                           |  16 MB     00:01     
rhel-x86_64-server-6                                                                                                                              12316/12316
rhel-x86_64-server-6/updateinfo                                                                                                        | 2.0 MB     00:00     
RHSA-2013:1537 Low/Sec.       augeas-libs-1.0.0-5.el6.x86_64
RHSA-2014:0044 Moderate/Sec.  augeas-libs-1.0.0-5.el6_5.1.x86_64
RHSA-2013:0550 Moderate/Sec.  bind-libs-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:1114 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.5.x86_64

.
.
.

RHSA-2013:1620 Low/Sec.       xorg-x11-server-Xorg-1.13.0-23.el6.x86_64
RHSA-2013:1868 Important/Sec. xorg-x11-server-Xorg-1.13.0-23.1.el6_5.x86_64
RHSA-2013:1426 Important/Sec. xorg-x11-server-common-1.13.0-11.1.el6_4.2.x86_64
RHSA-2013:1620 Low/Sec.       xorg-x11-server-common-1.13.0-23.el6.x86_64
RHSA-2013:1868 Important/Sec. xorg-x11-server-common-1.13.0-23.1.el6_5.x86_64
RHSA-2013:0271 Critical/Sec.  xulrunner-17.0.3-1.el6_3.x86_64
RHSA-2013:0614 Critical/Sec.  xulrunner-17.0.3-2.el6_4.x86_64
RHSA-2013:0696 Critical/Sec.  xulrunner-17.0.5-1.el6_4.x86_64
RHSA-2013:0820 Critical/Sec.  xulrunner-17.0.6-2.el6_4.x86_64
RHSA-2013:0981 Critical/Sec.  xulrunner-17.0.7-1.el6_4.x86_64
RHSA-2013:1140 Critical/Sec.  xulrunner-17.0.8-3.el6_4.x86_64
RHSA-2013:1268 Critical/Sec.  xulrunner-17.0.9-1.el6_4.x86_64
RHSA-2013:1476 Critical/Sec.  xulrunner-17.0.10-1.el6_4.x86_64
RHSA-2013:0271 Critical/Sec.  yelp-2.28.1-17.el6_3.x86_64
updateinfo list done

 @ 현재 서버에 설치된 보안 패치를 확인하는 방법 
=======================================================
# yum updateinfo list security all
=======================================================
# yum list-security --security
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
RHSA-2013:1537 Low/Sec.       augeas-libs-1.0.0-5.el6.x86_64
RHSA-2014:0044 Moderate/Sec.  augeas-libs-1.0.0-5.el6_5.1.x86_64
RHSA-2013:0550 Moderate/Sec.  bind-libs-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:1114 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.5.x86_64
RHSA-2014:0043 Moderate/Sec.  bind-libs-32:9.8.2-0.23.rc1.el6_5.1.x86_64
RHSA-2013:0550 Moderate/Sec.  bind-utils-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-utils-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:1114 Important/Sec. bind-utils-32:9.8.2-0.17.rc1.el6_4.5.x86_64
RHSA-2014:0043 Moderate/Sec.  bind-utils-32:9.8.2-0.23.rc1.el6_5.1.x86_64
RHSA-2013:0668 Moderate/Sec.  boost-1.41.0-15.el6_4.x86_64
RHSA-2013:0668 Moderate/Sec.  boost-date-time-1.41.0-15.el6_4.x86_64

.
.
.
RHSA-2013:1866 Moderate/Sec.  ca-certificates-2013.1.95-65.1.el6_5.noarch
RHSA-2013:1540 Low/Sec.       cheese-2.28.1-8.el6.x86_64
RHSA-2013:1540 Low/Sec.       control-center-1:2.28.1-39.el6.x86_64
RHSA-2013:1540 Low/Sec.       control-center-extra-1:2.28.1-39.el6.x86_64
RHSA-2013:1540 Low/Sec.       control-center-filesystem-1:2.28.1-39.el6.x86_64
RHSA-2013:1652 Low/Sec.       coreutils-8.4-31.el6.x86_64
updateinfo list done


@ 설치 가능한 보안 패치를 업데이트하는 방법
=======================================================
# yum update --security
=======================================================
#yum update --security
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security,
              : subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
Setting up Update Process
Resolving Dependencies
Limiting packages to security relevant ones
238 package(s) needed (+0 related) for security, out of 520 available
--> Running transaction check
---> Package augeas-libs.x86_64 0:0.9.0-4.el6 will be updated
---> Package augeas-libs.x86_64 0:1.0.0-5.el6_5.1 will be an update
---> Package bind-libs.x86_64 32:9.8.2-0.17.rc1.el6 will be updated
--> Processing Dependency: libboost_math_c99l.so.5()(64bit) for package: boost-devel-1.41.0-18.el6.x86_64
.
.
.
---> Package gtk2-immodule-xim.x86_64 0:2.20.1-4.el6 will be an update
---> Package netpbm.x86_64 0:10.47.05-11.el6 will be installed
--> Processing Conflict: xorg-x11-server-Xorg-1.13.0-23.1.el6_5.x86_64 conflicts xorg-x11-drv-synaptics < 1.6.2-13
--> Restarting Dependency Resolution with new changes.
--> Running transaction check
---> Package xorg-x11-drv-synaptics.x86_64 0:1.6.2-11.el6 will be updated
---> Package xorg-x11-drv-synaptics.x86_64 0:1.6.2-13.el6 will be an update
--> Processing Conflict: kernel-2.6.32-431.5.1.el6.x86_64 conflicts bfa-firmware < 3.2.21.1-2
--> Restarting Dependency Resolution with new changes.
--> Running transaction check
---> Package bfa-firmware.noarch 0:3.0.3.1-1.el6 will be updated
---> Package bfa-firmware.noarch 0:3.2.21.1-2.el6 will be an update
--> Finished Dependency Resolution

Dependencies Resolved

==============================================================================================================================================================
 Package                                        Arch                   Version                                     Repository                            Size
==============================================================================================================================================================
Installing:
 firefox                                        x86_64                 24.3.0-2.el6_5                              rhel-x86_64-server-6                  46 M
     replacing  firefox.x86_64 10.0.12-1.el6_3
 kernel                                         x86_64                 2.6.32-431.5.1.el6                          rhel-x86_64-server-6                  28 M
 .
.
.
 wireshark-gnome                                x86_64                 1.8.10-4.el6                                rhel-x86_64-server-6                 855 k
 xorg-x11-drv-synaptics                         x86_64                 1.6.2-13.el6                                rhel-x86_64-server-6                  73 k
 xorg-x11-server-Xephyr                         x86_64                 1.13.0-23.1.el6_5                           rhel-x86_64-server-6                 859 k
 Installing for dependencies:
 p11-kit                                        x86_64                 0.18.5-2.el6_5.2                            rhel-x86_64-server-6                  94 k
 p11-kit-trust                                  x86_64                 0.18.5-2.el6_5.2                            rhel-x86_64-server-6                  71 k
Updating for dependencies:
 atk                                            x86_64                 1.30.0-1.el6                                rhel-x86_64-server-6                 196 k
 libtevent                                      x86_64                 0.9.18-3.el6                                rhel-x86_64-server-6                  26 k
 python-rhsm                                    x86_64                 1.9.6-1.el6                                 rhel-x86_64-server-6                 100 k

Transaction Summary
==============================================================================================================================================================
Install      13 Package(s)
Upgrade     248 Package(s)

Total download size: 512 M
Is this ok [y/N]: 

@ CVE 번호를 이용하여 특정 업데이트만 진행하는 방법
=======================================================
# yum update –cve <CVE>

e.g.

# yum update –cve CVE-2008-0947
=======================================================
# yum update –cve CVE-2013-2094
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
Setting up Update Process
Resolving Dependencies
Limiting packages to security relevant ones
3 package(s) needed (+0 related) for security, out of 520 available
–> Running transaction check
—> Package kernel-devel.x86_64 0:2.6.32-431.5.1.el6 will be installed
—> Package kernel-headers.x86_64 0:2.6.32-358.el6 will be updated
—> Package kernel-headers.x86_64 0:2.6.32-431.5.1.el6 will be an update
—> Package perf.x86_64 0:2.6.32-358.el6 will be updated
—> Package perf.x86_64 0:2.6.32-431.5.1.el6 will be an update
–> Finished Dependency Resolution

Dependencies Resolved

==============================================================================================================================================================
Package                              Arch                         Version                                   Repository                                  Size
==============================================================================================================================================================
Installing:
kernel-devel                         x86_64                       2.6.32-431.5.1.el6                        rhel-x86_64-server-6                       8.8 M
Updating:
kernel-headers                       x86_64                       2.6.32-431.5.1.el6                        rhel-x86_64-server-6                       2.8 M
perf                                 x86_64                       2.6.32-431.5.1.el6                        rhel-x86_64-server-6                       2.9 M

Transaction Summary
==============================================================================================================================================================
Install       1 Package(s)
Upgrade       2 Package(s)

Total download size: 14 M
Is this ok [y/N]:

관련 참고 : https://access.redhat.com/site/solutions/10021


출처 : http://blog.seabow.pe.kr/?p=5788

?

공부 게시판

공부에 도움되는 글을 올려주세요.

List of Articles
번호 분류 제목 글쓴이 날짜 조회 수
공지 [공지] 공부 게시판 입니다. 처누 2003.08.18 928102
166 유닉스/리눅스 [U2L] Unix to Linux 기대효과 분석 JaeSoo 2023.05.16 1258
165 유닉스/리눅스 리눅스 inodes full 이슈 해결 방법 JaeSoo 2023.05.02 169
164 유닉스/리눅스 inode full JaeSoo 2023.05.01 115
163 유닉스/리눅스 마이크로서비스 아키텍처(MSA) 개념 소개 file JaeSoo 2023.01.26 170
162 유닉스/리눅스 리눅스(Linux) 디렉토리 구조 file JaeSoo 2016.10.20 693
161 유닉스/리눅스 ssh서버가 비밀번호를 거부했습니다. 다시 시도하십시오. JaeSoo 2016.08.23 302
160 유닉스/리눅스 [리눅스] IP 설정 변경 하기 file JaeSoo 2016.08.23 326
159 유닉스/리눅스 리눅스 설치후 초기설정해야 할 것들 [2] file JaeSoo 2016.07.13 400
158 유닉스/리눅스 리눅스 설치후 초기설정해야 할 것들 [1] file JaeSoo 2016.07.13 360
157 유닉스/리눅스 쉘 프로그래밍을 이용한 시스템 관리 기법 file JaeSoo 2016.05.12 679
156 유닉스/리눅스 AIX 자주 쓰이는 관리 명령 모음 JaeSoo 2016.05.12 615
155 유닉스/리눅스 AIX 시스템상의 core, SMT(Simultaneous Multi Threading) 수 확인하기 JaeSoo 2016.05.12 695
154 유닉스/리눅스 리눅스 호스트명 변경 JaeSoo 2016.05.11 728
153 유닉스/리눅스 AIX 서버 기초 JaeSoo 2016.05.11 630
152 유닉스/리눅스 AIX Admin Study 교육 자료 JaeSoo 2016.05.11 715
151 유닉스/리눅스 성능 엔지니어링 대한 접근 방법 (Performance tuning) file JaeSoo 2016.05.05 874
150 유닉스/리눅스 Linux/Unix용 nmon 설치 및 구성 file JaeSoo 2016.05.04 773
149 유닉스/리눅스 [AIX] 파일시스템 관리 (du, df) JaeSoo 2016.05.04 770
148 유닉스/리눅스 IBM AIX Admin (사용자 DISK 관리) JaeSoo 2016.05.04 686
147 유닉스/리눅스 [UNIX] 유닉스 기본명령어 JaeSoo 2016.05.04 562
Board Pagination Prev 1 2 3 4 5 6 7 8 9 Next
/ 9


즐겨찾기 (가족)

JAESOO's HOMEPAGE


YOUNGAE's HOMEPAGE


장여은 홈페이지


장여희 홈페이지


장여원 홈페이지


즐겨찾기 (업무)

알리카페 홀릭

숭실대 컴퓨터 통신연구실 (서창진)

말레이시아 KL Sentral 한국인 GuestHouse


즐겨찾기 (취미)

어드민아이디

유에코 사랑회

아스가르드 좋은사람/나쁜사람

JServer.kr

제이서버 메타블로그

재수 티스토리


즐겨찾기 (강의, 커뮤니티)

재수 강의 홈페이지


한소리


VTMODE.COM


숭실대 인공지능학과


숭실대 통신연구실


베너