LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-27-2016, 06:31 AM   #1
doni
LQ Newbie
 
Registered: Mar 2006
Posts: 27

Rep: Reputation: 1
Patching Ubuntu servers


Does anyone know a way for roll-back a package if it breaks a service after apt-get upgrade?
For example:

pt-cache policy openssl
openssl:
Installed: 1.0.1f-1ubuntu2.21
Candidate: 1.0.1f-1ubuntu2.21
Version table:
*** 1.0.1f-1ubuntu2.21 0
500 http://eu-west-1.ec2.archive.ubuntu.com/ubuntu/ trusty-updates/main amd64 Packages
500 http://security.ubuntu.com/ubuntu/ trusty-security/main amd64 Packages
100 /var/lib/dpkg/status
1.0.1f-1ubuntu2 0
500 http://eu-west-1.ec2.archive.ubuntu.com/ubuntu/ trusty/main amd64 Packages


I see my current version is 1.0.1f-1ubuntu2.21 but I have upgraded from 1.0.1f-1ubuntu2.19
Looks like I can't get back to that version!

apt-get install openssl=1.0.1f-1ubuntu2.19
Reading package lists... Done
Building dependency tree
Reading state information... Done
E: Version '1.0.1f-1ubuntu2.19' for 'openssl' was not found
 
Old 11-28-2016, 03:06 AM   #2
descendant_command
Senior Member
 
Registered: Mar 2012
Posts: 1,876

Rep: Reputation: 643Reputation: 643Reputation: 643Reputation: 643Reputation: 643Reputation: 643
Yes, exactly the way you describe - you do, of course, need access to the previous version, either in your cache or from an available repo.
Debian has snapshots.debian.org for all archived previous versions - presumably ubuntu has something similar.

I would, however, question the wisdom of downgrading the SSL package. Updates are generally to patch security issues and remove support for insecure schemes that should no longer be used.
If you have things that have stopped working for this reason (details?) you should fix that, NOT make it 'work' again by just leaving the doors unlocked....
 
Old 11-28-2016, 05:42 AM   #3
doni
LQ Newbie
 
Registered: Mar 2006
Posts: 27

Original Poster
Rep: Reputation: 1
OpesSSL was an examnple
I am mostly conecrned about mesos package and zookeeper. I am preparing to upgrade machines in AWS and need to be prepared if something goes bad.

Thank you for the answer. I have found Launchpad as something similar on ubuntu - It may help
 
  


Reply

Tags
apt-get upgrades



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Patching servers NoRearView Linux - Server 6 11-25-2016 11:14 AM
Updating/patching master and slave dns servers running bind cxc718 Linux - Networking 1 06-30-2016 04:37 PM
Patching 50 or more Redhat servers using a repository jrobider Linux - Newbie 3 05-14-2014 04:50 AM
Updating and patching multiple Redhat/CentOS servers IMAN7 Linux - Server 7 11-19-2009 05:19 PM
patching servers w/up2date cambie Red Hat 2 12-23-2004 12:34 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:41 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration