RadarURL
Skip to content
조회 수 1053 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄
YUM 명령어를 이용하여 나의 시스템에 발생된 보안 업데이트를 진행해 보자
방법은 아래의 내용을 참고~!

@ yum-security plugin 설치
=======================================================
RHEL5 , RHEL6
# yum install yum-security
======================================================= 


@ 설치 가능한 보안 패치를 확인하는 방법
=======================================================
# yum list-security --security
=======================================================
# yum list-security --security
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
local                                                                                                                                  | 3.9 kB     00:00     
local/primary_db                                                                                                                       | 3.1 MB     00:00     
rhel-x86_64-server-6                                                                                                                   | 1.8 kB     00:00     
rhel-x86_64-server-6/primary                                                                                                           |  16 MB     00:01     
rhel-x86_64-server-6                                                                                                                              12316/12316
rhel-x86_64-server-6/updateinfo                                                                                                        | 2.0 MB     00:00     
RHSA-2013:1537 Low/Sec.       augeas-libs-1.0.0-5.el6.x86_64
RHSA-2014:0044 Moderate/Sec.  augeas-libs-1.0.0-5.el6_5.1.x86_64
RHSA-2013:0550 Moderate/Sec.  bind-libs-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:1114 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.5.x86_64

.
.
.

RHSA-2013:1620 Low/Sec.       xorg-x11-server-Xorg-1.13.0-23.el6.x86_64
RHSA-2013:1868 Important/Sec. xorg-x11-server-Xorg-1.13.0-23.1.el6_5.x86_64
RHSA-2013:1426 Important/Sec. xorg-x11-server-common-1.13.0-11.1.el6_4.2.x86_64
RHSA-2013:1620 Low/Sec.       xorg-x11-server-common-1.13.0-23.el6.x86_64
RHSA-2013:1868 Important/Sec. xorg-x11-server-common-1.13.0-23.1.el6_5.x86_64
RHSA-2013:0271 Critical/Sec.  xulrunner-17.0.3-1.el6_3.x86_64
RHSA-2013:0614 Critical/Sec.  xulrunner-17.0.3-2.el6_4.x86_64
RHSA-2013:0696 Critical/Sec.  xulrunner-17.0.5-1.el6_4.x86_64
RHSA-2013:0820 Critical/Sec.  xulrunner-17.0.6-2.el6_4.x86_64
RHSA-2013:0981 Critical/Sec.  xulrunner-17.0.7-1.el6_4.x86_64
RHSA-2013:1140 Critical/Sec.  xulrunner-17.0.8-3.el6_4.x86_64
RHSA-2013:1268 Critical/Sec.  xulrunner-17.0.9-1.el6_4.x86_64
RHSA-2013:1476 Critical/Sec.  xulrunner-17.0.10-1.el6_4.x86_64
RHSA-2013:0271 Critical/Sec.  yelp-2.28.1-17.el6_3.x86_64
updateinfo list done

 @ 현재 서버에 설치된 보안 패치를 확인하는 방법 
=======================================================
# yum updateinfo list security all
=======================================================
# yum list-security --security
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
RHSA-2013:1537 Low/Sec.       augeas-libs-1.0.0-5.el6.x86_64
RHSA-2014:0044 Moderate/Sec.  augeas-libs-1.0.0-5.el6_5.1.x86_64
RHSA-2013:0550 Moderate/Sec.  bind-libs-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:1114 Important/Sec. bind-libs-32:9.8.2-0.17.rc1.el6_4.5.x86_64
RHSA-2014:0043 Moderate/Sec.  bind-libs-32:9.8.2-0.23.rc1.el6_5.1.x86_64
RHSA-2013:0550 Moderate/Sec.  bind-utils-32:9.8.2-0.17.rc1.el6.3.x86_64
RHSA-2013:0689 Important/Sec. bind-utils-32:9.8.2-0.17.rc1.el6_4.4.x86_64
RHSA-2013:1114 Important/Sec. bind-utils-32:9.8.2-0.17.rc1.el6_4.5.x86_64
RHSA-2014:0043 Moderate/Sec.  bind-utils-32:9.8.2-0.23.rc1.el6_5.1.x86_64
RHSA-2013:0668 Moderate/Sec.  boost-1.41.0-15.el6_4.x86_64
RHSA-2013:0668 Moderate/Sec.  boost-date-time-1.41.0-15.el6_4.x86_64

.
.
.
RHSA-2013:1866 Moderate/Sec.  ca-certificates-2013.1.95-65.1.el6_5.noarch
RHSA-2013:1540 Low/Sec.       cheese-2.28.1-8.el6.x86_64
RHSA-2013:1540 Low/Sec.       control-center-1:2.28.1-39.el6.x86_64
RHSA-2013:1540 Low/Sec.       control-center-extra-1:2.28.1-39.el6.x86_64
RHSA-2013:1540 Low/Sec.       control-center-filesystem-1:2.28.1-39.el6.x86_64
RHSA-2013:1652 Low/Sec.       coreutils-8.4-31.el6.x86_64
updateinfo list done


@ 설치 가능한 보안 패치를 업데이트하는 방법
=======================================================
# yum update --security
=======================================================
#yum update --security
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security,
              : subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
Setting up Update Process
Resolving Dependencies
Limiting packages to security relevant ones
238 package(s) needed (+0 related) for security, out of 520 available
--> Running transaction check
---> Package augeas-libs.x86_64 0:0.9.0-4.el6 will be updated
---> Package augeas-libs.x86_64 0:1.0.0-5.el6_5.1 will be an update
---> Package bind-libs.x86_64 32:9.8.2-0.17.rc1.el6 will be updated
--> Processing Dependency: libboost_math_c99l.so.5()(64bit) for package: boost-devel-1.41.0-18.el6.x86_64
.
.
.
---> Package gtk2-immodule-xim.x86_64 0:2.20.1-4.el6 will be an update
---> Package netpbm.x86_64 0:10.47.05-11.el6 will be installed
--> Processing Conflict: xorg-x11-server-Xorg-1.13.0-23.1.el6_5.x86_64 conflicts xorg-x11-drv-synaptics < 1.6.2-13
--> Restarting Dependency Resolution with new changes.
--> Running transaction check
---> Package xorg-x11-drv-synaptics.x86_64 0:1.6.2-11.el6 will be updated
---> Package xorg-x11-drv-synaptics.x86_64 0:1.6.2-13.el6 will be an update
--> Processing Conflict: kernel-2.6.32-431.5.1.el6.x86_64 conflicts bfa-firmware < 3.2.21.1-2
--> Restarting Dependency Resolution with new changes.
--> Running transaction check
---> Package bfa-firmware.noarch 0:3.0.3.1-1.el6 will be updated
---> Package bfa-firmware.noarch 0:3.2.21.1-2.el6 will be an update
--> Finished Dependency Resolution

Dependencies Resolved

==============================================================================================================================================================
 Package                                        Arch                   Version                                     Repository                            Size
==============================================================================================================================================================
Installing:
 firefox                                        x86_64                 24.3.0-2.el6_5                              rhel-x86_64-server-6                  46 M
     replacing  firefox.x86_64 10.0.12-1.el6_3
 kernel                                         x86_64                 2.6.32-431.5.1.el6                          rhel-x86_64-server-6                  28 M
 .
.
.
 wireshark-gnome                                x86_64                 1.8.10-4.el6                                rhel-x86_64-server-6                 855 k
 xorg-x11-drv-synaptics                         x86_64                 1.6.2-13.el6                                rhel-x86_64-server-6                  73 k
 xorg-x11-server-Xephyr                         x86_64                 1.13.0-23.1.el6_5                           rhel-x86_64-server-6                 859 k
 Installing for dependencies:
 p11-kit                                        x86_64                 0.18.5-2.el6_5.2                            rhel-x86_64-server-6                  94 k
 p11-kit-trust                                  x86_64                 0.18.5-2.el6_5.2                            rhel-x86_64-server-6                  71 k
Updating for dependencies:
 atk                                            x86_64                 1.30.0-1.el6                                rhel-x86_64-server-6                 196 k
 libtevent                                      x86_64                 0.9.18-3.el6                                rhel-x86_64-server-6                  26 k
 python-rhsm                                    x86_64                 1.9.6-1.el6                                 rhel-x86_64-server-6                 100 k

Transaction Summary
==============================================================================================================================================================
Install      13 Package(s)
Upgrade     248 Package(s)

Total download size: 512 M
Is this ok [y/N]: 

@ CVE 번호를 이용하여 특정 업데이트만 진행하는 방법
=======================================================
# yum update –cve <CVE>

e.g.

# yum update –cve CVE-2008-0947
=======================================================
# yum update –cve CVE-2013-2094
Loaded plugins: product-id, refresh-packagekit, rhnplugin, security, subscription-manager
This system is not registered to Red Hat Subscription Management. You can use subscription-manager to register.
This system is receiving updates from RHN Classic or RHN Satellite.
Setting up Update Process
Resolving Dependencies
Limiting packages to security relevant ones
3 package(s) needed (+0 related) for security, out of 520 available
–> Running transaction check
—> Package kernel-devel.x86_64 0:2.6.32-431.5.1.el6 will be installed
—> Package kernel-headers.x86_64 0:2.6.32-358.el6 will be updated
—> Package kernel-headers.x86_64 0:2.6.32-431.5.1.el6 will be an update
—> Package perf.x86_64 0:2.6.32-358.el6 will be updated
—> Package perf.x86_64 0:2.6.32-431.5.1.el6 will be an update
–> Finished Dependency Resolution

Dependencies Resolved

==============================================================================================================================================================
Package                              Arch                         Version                                   Repository                                  Size
==============================================================================================================================================================
Installing:
kernel-devel                         x86_64                       2.6.32-431.5.1.el6                        rhel-x86_64-server-6                       8.8 M
Updating:
kernel-headers                       x86_64                       2.6.32-431.5.1.el6                        rhel-x86_64-server-6                       2.8 M
perf                                 x86_64                       2.6.32-431.5.1.el6                        rhel-x86_64-server-6                       2.9 M

Transaction Summary
==============================================================================================================================================================
Install       1 Package(s)
Upgrade       2 Package(s)

Total download size: 14 M
Is this ok [y/N]:

관련 참고 : https://access.redhat.com/site/solutions/10021


출처 : http://blog.seabow.pe.kr/?p=5788

?

  1. 리눅스(Linux) 디렉토리 구조

    Date2016.10.20 ByJAESOO Views603
    Read More
  2. ssh서버가 비밀번호를 거부했습니다. 다시 시도하십시오.

    Date2016.08.26 ByJAESOO Views709
    Read More
  3. [리눅스] IP 설정 변경 하기

    Date2016.08.26 ByJAESOO Views717
    Read More
  4. 리눅스 설치후 초기설정해야 할 것들 [2]

    Date2016.07.13 ByJAESOO Views675
    Read More
  5. 리눅스 설치후 초기설정해야 할 것들 [1]

    Date2016.07.13 ByJAESOO Views702
    Read More
  6. 쉘 프로그래밍을 이용한 시스템 관리 기법

    Date2016.05.12 ByJAESOO Views540
    Read More
  7. AIX 자주 쓰이는 관리 명령 모음

    Date2016.05.12 ByJAESOO Views554
    Read More
  8. AIX 시스템상의 core, SMT(Simultaneous Multi Threading) 수 확인하기

    Date2016.05.12 ByJAESOO Views604
    Read More
  9. 리눅스 호스트명 변경

    Date2016.05.11 ByJAESOO Views439
    Read More
  10. AIX 서버 기초

    Date2016.05.11 ByJAESOO Views560
    Read More
  11. AIX Admin Study 교육 자료

    Date2016.05.11 ByJAESOO Views547
    Read More
  12. 성능 엔지니어링 대한 접근 방법 (Performance tuning)

    Date2016.05.05 ByJAESOO Views489
    Read More
  13. [AIX] 파일시스템 관리 (du, df)

    Date2016.05.04 ByJAESOO Views552
    Read More
  14. IBM AIX Admin (사용자 DISK 관리)

    Date2016.05.04 ByJAESOO Views504
    Read More
  15. [UNIX] 유닉스 기본명령어

    Date2016.05.04 ByJAESOO Views455
    Read More
  16. [AIX] 파일시스템 용량 늘리기

    Date2016.05.04 ByJAESOO Views558
    Read More
  17. 유닉스 상에서 ls 출력물을 MB 단위로 출력해주는 옵션

    Date2016.05.04 ByJAESOO Views446
    Read More
  18. ls 명령시 날짜 전체가 보이도록 하기

    Date2016.05.02 ByJAESOO Views438
    Read More
  19. 리눅스 logrotate 에서 로그파일 강제로 rotate 시키기

    Date2016.03.31 ByJAESOO Views663
    Read More
  20. 리눅스 시간 맞추기 : Time Server와 Sync (rdate, date)

    Date2016.03.19 ByJAESOO Views733
    Read More
Board Pagination Prev 1 2 3 4 5 6 7 8 9 Next
/ 9

PageViews   Today : 9789 Yesterday : 5037 Total : 21965841  /  Counter Status   Today : 9447 Yesterday : 4602 Total : 1192170

Edited by JAESOO

sketchbook5, 스케치북5

sketchbook5, 스케치북5

나눔글꼴 설치 안내


이 PC에는 나눔글꼴이 설치되어 있지 않습니다.

이 사이트를 나눔글꼴로 보기 위해서는
나눔글꼴을 설치해야 합니다.

설치 취소