Re: (Security) upgrades with shared /usr?
- To: firstname.lastname@example.org
- Subject: Re: (Security) upgrades with shared /usr?
- From: Marcin Owsiany <email@example.com>
- Date: Mon, 20 Feb 2006 21:40:21 +0100
- Message-id: <20060220204021.GA4793@kufelek>
- Mail-followup-to: firstname.lastname@example.org
- In-reply-to: <20060220185623.GM2756@rabbit>
- References: <20060220150251.GA13422@kufelek> <20060220185623.GM2756@rabbit>
On Mon, Feb 20, 2006 at 01:56:23PM -0500, Mark Bucciarelli wrote:
> On Mon, Feb 20, 2006 at 04:02:52PM +0100, Marcin Owsiany wrote:
> > But maybe someone has invented something more clever? Maybe even
> > something that takes care of propagating the changes to files outside
> > the shared FS, to keep them in sync with the rest of the system?
> can you leave /usr rw in vserver host and apply the security patches
A system which mounts an FS R/O makes certain assumptions about its
behavior. If you change it behind its back (by mountin it R/W), you are
likely to crash the system(s) which have it mounted R/O.
Marcin Owsiany <email@example.com> http://marcin.owsiany.pl/
GnuPG: 1024D/60F41216 FE67 DA2D 0ACA FC5E 3F75 D6F6 3A0D 8AA0 60F4 1216