-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Just to be clear, NSA is a utility used to help you isolate potential
problems based on key indicators in your system. Like your SLES server it
also has its own patch updates (which update its application version as
well as its pattern versions including adding new patterns) but this is
completely separate from your SLES patches. For example when you check
for NSA updates those updates have nothing to do with SLES, and vice
versa. The only possible correlation between the two is that NSA updates
MAY include new patterns which can tell you if your SLES machines could
potentially receive new updates, though writing or updating a pattern for
every single SLES update would be recreating a lot of work and likely just
duplicate the data you see already via 'rug' or 'zypper' or whatever is
used for patch management on the SLES side.
With all of that said, if you feel a pattern should be created for
something specifically there should be a feedback link within NSA to
request that pattern for the issue you are seeing (in this case, a lack of
notification about the latest patches available in SLES). NSA's features
will let it do this kind of warning for you but only if patterns are
released every single time that SLES has any kind of detectable update.
NSA's real strength is in that it can alert you to current or potential
issues that are not yet patched and, therefore, effectively obsolete by
checking your system for key indicators. Personally (and I'm not the
developer or anything) the two would seem to go hand in hand, neither
feature ('rug' or NSA) replacing the other but the two working together to
alert you to new issues and patching them when possible.
Good luck.
slardeur wrote:
> Hello,
> I'me using last NSA (1.1.0) to check my servers.
> this day : Number of pattern found by NSA 184
> => check update : No update found.
>
> When i use Online Update from my server SLES10SP2
> Online update display a lot of patchs that NSA dont propose to install
> ???
>
> Like : last java from ibm ...
>
> or slesp2-libpng
> my version is : 1.2.8-19.15 x86_86
> => a lot of security update that NSA dont check:
> 19.18, 19.20, 19.22, 19.25 ???
>
> NSA have a delay for include patchs ? incomplete checks list ?
>
>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.9 (GNU/Linux)
Comment: Using GnuPG with Mozilla -
http://enigmail.mozdev.org/
iQIcBAEBAgAGBQJKoRbNAAoJEF+XTK08PnB5jd4P/3CaCyfpIds/1tbabRMImbo2
z8neOgvlOQqSA8h2RN93wynsg3OmV26II3tmdCveEO7CUQCGBm GbqqeK556LONip
YgAAWnfdKAmZSt4Jy85Qp1NtHVaJNq5kseMlbL692t8KLH0D+2 ePvrxsKm+TNfv2
DPyOmlJgJgu6EiGKEcD9+J19pzfTuYVH/gqTF3rAJv0SKOMdG0g+xHzQFFuKTwRF
eJA8BFxltfCr3Cqfb9mm4isfMILiG3TtO2mInOyypnmkanqkuV M3xS5CpjH3U5S0
g6ld6uat4KhlxxOKERHGglPdgT3TlBnOakgO3na+4LrEvxrk0g 9ffelSQL0eP2dK
zwkSbBJuzYTUKy1+41lIrOxc4ajlrENZD4FW5nipPhvYrn5UZx CXURQdzUvDOtxQ
56iMR+uqf1qG4++ULYrzwKwFB3C3h5QdjHuSvcdfW5Xu5GyXP1 Gl9WapuRJLDQsk
NCkrhd6Z/mqWpOsyU5xMAnAPd9dT+KXUgdar8vC8pr/8GtwPRcWWtHsOZjbHKPf2
od0Mm8pbtQHe3MUQM81cS8VnPcDn12WfNaE+lsnxF8eueCmUgz kg4cKXm/NywzXy
JgDEu7rZsaVdDqfPzIYhRwMk0PcGJgiUSaDQHHo5VKpqjrIzkq pWNtS/cHrCDJkx
wa8Uzdtg+eca/DGEfcUz
=8nI/
-----END PGP SIGNATURE-----