Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #237302 > unrolled thread

Re: APT Sources.list Line Format for Security Updates

Started by"Andrew M.A. Cater" <amacater@einval.com>
First post2021-07-13 12:30 +0200
Last post2021-07-13 15:20 +0200
Articles 3 — 2 participants

Back to article view | Back to linux.debian.user

This discussion starts older than the indexed window; earlier articles aren't shown. The article labeled Started by below is the oldest one visible, not the original post.


Contents

  Re: APT Sources.list Line Format for Security Updates "Andrew M.A. Cater" <amacater@einval.com> - 2021-07-13 12:30 +0200
    Re: APT Sources.list Line Format for Security Updates Michael Stone <mstone@debian.org> - 2021-07-13 15:00 +0200
      Re: APT Sources.list Line Format for Security Updates "Andrew M.A. Cater" <amacater@einval.com> - 2021-07-13 15:20 +0200

#237302 — Re: APT Sources.list Line Format for Security Updates

From"Andrew M.A. Cater" <amacater@einval.com>
Date2021-07-13 12:30 +0200
SubjectRe: APT Sources.list Line Format for Security Updates
Message-ID<CAnPR-ij-7@gated-at.bofh.it>
On Mon, Jul 12, 2021 at 06:55:30PM +0000, Gregory McPherran wrote:
> Hi,
> 
> This shows the new security line form as:
> DebianBullseye - Debian Wiki<https://wiki.debian.org/DebianBullseye?highlight=%28CategoryRelease%29#New_Features>
> deb      http://security.debian.org/debian-security       bullseye-security        main
> 
> This shows the new security line form as:
> sources.list(5) — apt — Debian unstable — Debian Manpages<https://manpages.debian.org/unstable/apt/sources.list.5.en.html#EXAMPLES>
> deb      http://security.debian.org                                     bullseye-security        main
> 
> Is one of    "http://security.debian.org/debian-security"    or   "http://security.debian.org"   the correct format ?
> 
> Or is the "debian-security" portion optional ?
> 
> Thank you,
> Greg McPherran
> 

If you're still running Jessie: _please_ take the machine off the Internet 
/ take it out of service to be upgraded. You're more than a year beyond all
major securiy support - unless you want to pay for ELTS.

Take the opportunity to at least upgrade to Debian 9 and, ideally, 10.
Debian 11 should be here inside a month - if you can get to 10, you'll 
have at least a further year of security support for 10.

If you want detailed instructions as to how to go about this, this list
will be more than happy to oblige, I'm sure.

[Second time in 24 hours: on IRC last night I was chatting with someone in
a similar position].

Upgrading between major releases of Debian is almost always feasible and
relatively problem free. In that, we score as against some other Linux
distributions where the only option is to wipe and reinstall.

"I can't upgrade at this time" is fine for maybe a year or even two at
the outside: saying this one time after formal security support has gone
is substantially less good for you and any other users of the machine.

Andy - who is overly tweaked about keeping systems up to date and patched.

All best, as ever,

Andy Cater

[toc] | [next] | [standalone]


#237310

FromMichael Stone <mstone@debian.org>
Date2021-07-13 15:00 +0200
Message-ID<CAqb0-1Es-7@gated-at.bofh.it>
In reply to#237302
On Tue, Jul 13, 2021 at 10:22:17AM +0000, Andrew M.A. Cater wrote:
>Take the opportunity to at least upgrade to Debian 9 and, ideally, 10.
>Debian 11 should be here inside a month - if you can get to 10, you'll
>have at least a further year of security support for 10.

Worth noting that skipping releases when upgrading isn't supported, so 
there's no advantage to waiting for the next one--you'll still have to 
upgrade in order.

[toc] | [prev] | [next] | [standalone]


#237312

From"Andrew M.A. Cater" <amacater@einval.com>
Date2021-07-13 15:20 +0200
Message-ID<CAqum-20A-3@gated-at.bofh.it>
In reply to#237310
On Tue, Jul 13, 2021 at 08:52:18AM -0400, Michael Stone wrote:
> On Tue, Jul 13, 2021 at 10:22:17AM +0000, Andrew M.A. Cater wrote:
> > Take the opportunity to at least upgrade to Debian 9 and, ideally, 10.
> > Debian 11 should be here inside a month - if you can get to 10, you'll
> > have at least a further year of security support for 10.
> 
> Worth noting that skipping releases when upgrading isn't supported, so
> there's no advantage to waiting for the next one--you'll still have to
> upgrade in order.

So: havng done this - 7 - 8 - 9 on an old machine at work was not too
difficult if you take it steadily.

You face at least two changes to get it oldoldstable soon :(

Andy C

> 

[toc] | [prev] | [standalone]


Back to top | Article view | linux.debian.user


csiph-web