@AndresFreundTec@mastodon.social
Post #3189076
2026-05-03 15:24 UTC
@gregkh@social.kernel.org @joshbressers@infosec.exchange Of course companies hate it.
Plenty for bad reasons.
But also for reasonable ones: Who can afford to reboot all machines every few days? 6.18 averaged a stable release every ~5.6 days, 6.12 averaged one every ~6.15 days.
If you continually ask for unrealistic things ("All users of the xyz kernel series must upgrade." > once a week), folks *have* to stop listening after a while.
What do you expect folks to actually do with prod systems?
Replies (1)
-
@rbo_ne@chaos.social 2026-05-03 16:27
@AndresFreundTec@mastodon.social @gregkh@social.kernel.org @joshbressers@infosec.exchange after meltdown/spectre we implemented Debian unattended upgrades in our infrastructure (1500+ servers) with a hook system around it so that servers can drain and undrain themselves. We made it to 75-80% system coverage over time. We always do a reboot, no matter what’s actually installed in the UU run. That took a lot of pressure from the whole story. Before that, evaluating CVEs and their impact was a daily job.