Re: keeping the packages up to date



On Sun, 2008-06-29 at 12:19 -0400, Michael P. Varre wrote:


I recently started using Ubuntu server LTS for some production web
servers due to the fact that it is SO easy to run. However, usually I
guess you get what you pay for. I’ve noticed that many major packages
for things such as Apache2 and PHP5 don’t really stay up to date too
much. For instance the newest package available using aptitude is
2.0.55, yet the newest available on apache.org is 2.0.63.



Now, I understand the package maintainers mostly keep these up to date
out of the kindness of their heart and in their spare time, and really
we’d all be nowhere without them. However, do many have an issue
running these systems that are so out of date due to security
concerns?



Are many admins out there really running Ubuntu LTS in production
environments that face the internet?



Just wondering if anyone has any thoughts on this issue as two of my
boxes were recently compromised and frankly I don’t know if it was my
system or the application running on it, or a combination of the two
and I’m not sure what I should plan on doing in the future



Thanks!




possibility: Maybe they just dont have enough spare time to compile it
into ubuntu and create the *.deb package? it probably doesnt take that
long to do..but then i dont maintain any packages yet

--cj


--
ubuntu-users mailing list
ubuntu-users@xxxxxxxxxxxxxxxx
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-users


Relevant Pages

  • Re: New to Ubuntu
    ... Ubuntu has several software repositories, not all of which are enabled ... There is also a package search in the Firefox search box ... I don't mean after X has started but on the initial boot. ... If a kernel security hole is found, ...
    (Ubuntu)
  • Re: Automatix?
    ... I don't see a source package. ... Automatix looks to me as a severe security risk. ... the installation of java 1.5 is, well, questionable. ... to the Ubuntu 6.06, and we, the ubuntu developers, cannot support them. ...
    (Ubuntu)
  • Re: When stability is pointless
    ... debian includes the correct version of the documentation. ... installing a package should result in that package working ... of the reasons I switched to Ubuntu was to minimise the gap between a ... unstable/sid: frequently updated from upstream, ...
    (Debian-User)
  • Re: ubuntu-users Digest, Vol 56, Issue 343
    ... How to find out not frequently used package / package ... Re: Change Pitch ... just download ubuntu 9.04 desktop edition and it works fine according to ... howto install Ubuntu on a 64bit server architecture which ...
    (Ubuntu)
  • Re: HELP -- UBUNTU -- Do not have a proper compiling system
    ... It's a family distribution, so compilation of ... When I set up Ubuntu, ... choose GCC from Synaptic (see "Package Manager", ... to get a packaged installation of MPlayer rather than the source code. ...
    (comp.os.linux.misc)