SlideShare una empresa de Scribd logo
1 de 28
Descargar para leer sin conexión
Novell ZENworks Patch
                   ®                           ®



Management
Best Practices




Allen McCurdy                     Scott Guscar
Technology Specialist             Technology Sales Specialist
Novell, Inc/amccurdy@novell.com   Novell, Inc/sguscar@novell.com
Agenda

    Configuring Patch Management Services

    Patch Deployment

    Patch Baseline

    Reporting

    Demo




2   © Novell, Inc. All rights reserved.
Configure Patch Management Services
Important Initial Configuration Issues:

    •   Patch Management OFF by default
         –   Select your ZENworks Configuration Manager server
                                          ®




         –   Start the service!
    •   Ensure the server has
         –   4GB RAM w/ 40GB Free Disk
         –   2Ghz Dual Core Processor, or better…
    •   Choose your Replication Time
         –   Midnight by default
    •   Select Language(s) for Patch Subscription
         –   US English by default
4   © Novell, Inc. All rights reserved.
Steps Needed to get Patch Services
    Operational
    1.Activate Product

    2.Configure Subscription Download

    3.Configure Http Proxy

    4.Configure Mandatory Baseline Settings

    5.Configure Subscription Service Information



5   © Novell, Inc. All rights reserved.
Activate Product




6   © Novell, Inc. All rights reserved.
Patch Serial Number

    •   NO SERIAL NUMBER REQUIRED
         –   For first 60 days of Novell ZENworks Configuration
                                                  ®       ®



             Management evaluation !!!
    •   When required …enter a valid Novell s/n               ®




         –   Only enforces expiration
         –   Requires SSL outbound (443)
         –   Node count displayed for information only!
    •   Does it work with ZENworks Patch Management serial
                                                      ®



        number? - Yes
             Tip: When you buy ZENworks Configuration Management,
                         the trial period ends!

7   © Novell, Inc. All rights reserved.
Configure Subscription Download




     Other languages supported: Italian, Simplified Chinese, Finnish, Russian,
     German,Hong Kong Chinese and Czech
8   © Novell, Inc. All rights reserved.
Configure Http Proxy

    **If your proxy cache's content, patch services may not
    work properly




9   © Novell, Inc. All rights reserved.
Configure Mandatory Baseline
     Settings




     New in version 10.3


10   © Novell, Inc. All rights reserved.
Configure Subscription Service
     Information




                      Tip:
            Please note that if the “Reset Patch Management Settings” button is
            selected all patch content will be lost.

11   © Novell, Inc. All rights reserved.
“ZENworks Patch Management”           ®


     Sub-folder

     •   Auto-created by Novell ZENworks Patch Management
                                               ®   ®




          –   Content is refreshed daily from http://novell.patchlink.com
     •   Three types of Bundle
          –   Remediation Bundle (Single Bundle, no reboot)
          –   Discover Applicable Updates (Single Bundle)
          –   ZENworks Patch Management Assignment
              (Directive Bundle = collection of bundles)
               >   Name includes date and time of assignment
               >   Reboot handling options
     •   Useful for Tech Support
          –   What was assigned where and when…

              Tip: Dont' mess with ZENworks Patch Management System folder!

12   © Novell, Inc. All rights reserved.
Subscription Replication

     •   Definitely NOT a spectator sport!
          –   Files download to /zenworks/zpm/dist
          –   Download takes 20 mins or more
          –   Bundling can take 30 - 40 mins (high CPU)
          –   DAU creation takes 5 mins
          –   Assignment Updates 1+mins

     •   Let it run overnight
          –   Or prepare ahead of time!



13   © Novell, Inc. All rights reserved.
Replication Status




14   © Novell, Inc. All rights reserved.
Patch Deployment
Discovering Vulnerabilities

     •   Single File Bundle
     •   One DAU task per:
          –   Platform
          –   Architecture
          –   Language
          –   Service Pack



                 Runs: ANALYZE.EXE

16   © Novell, Inc. All rights reserved.
Patch Status

                Patch is Cached


                Patch needs to be Cached (downloaded)


                Patch is in download process


                Patch is Disabled


                Patch is apart of a Baseline


                Patch could not be Cached (error)


17   © Novell, Inc. All rights reserved.
Deploying Patches

       1.Select Patch / Patches to be deployed
       2.Accept any license agreements
       3.Specify when the patch is to be deployed (Run Now,
        Scheduled or Event)
       4.Adjust or accept the deployment order (multiple
        patches)
       5.Select reboot options
       6.Deployment Summary (accept or adjust)




18   © Novell, Inc. All rights reserved.
ZENworks Patch Management             ®


     Assignment Bundle

     •   Directive Bundle = “Bundle of Bundles”
     •   Ordered list of Remediation Bundles
          –   Ordered as the administrator wanted to install them
     + Reboot Action
          –   User prompt message
          –   User can cancel
     + Re-Scan Action
          –   Runs a DAU at the end of patch install


                 Runs: REMEDIATE.EXE

19   © Novell, Inc. All rights reserved.
Mandatory Baselines
Mandatory Baselines

     Mandatory baseline is a user-defined compliance
     level for a group of devices.
     •   Can be applied to Groups or Dynamic Groups
     •   Every few hours, depending on the results of the DAU task, the
         ZENworks Server determines the devices that are applicable and
                                ®



         out of compliance (based upon the patches added to the
         baseline).
     •   Necessary bundles, as defined in the baseline, are then deployed
         as soon as possible for each device.
     •   After patches have been deployed, it might be necessary to reboot
         those devices for them to be detected as patched.



21   © Novell, Inc. All rights reserved.
Creating or Modifying Baselines

     •   From a group object, select the patches tab
     •   Select patches needed for the baseline
     •   Click on action / assign to baseline




22   © Novell, Inc. All rights reserved.
Reporting
Reporting

     •   Requires ZENworks Reporting Services
                                           ®




     •   Customizable

     •   Canned Reports




24   © Novell, Inc. All rights reserved.
Reporting Universe

     •   Novell ZENworks Patch Management tables integrated
                         ®                 ®



         into Universe
     •   Patch Management Service reports
          –   Vulnerability Summary
          –   Vulnerability Detail
          –   Baseline Compliance




25   © Novell, Inc. All rights reserved.
Demo Time
Unpublished Work of Novell, Inc. All Rights Reserved.
This work is an unpublished work and contains confidential, proprietary, and trade secret information of Novell, Inc.
Access to this work is restricted to Novell employees who have a need to know to perform tasks within the scope
of their assignments. No part of this work may be practiced, performed, copied, distributed, revised, modified,
translated, abridged, condensed, expanded, collected, or adapted without the prior written consent of Novell, Inc.
Any use or exploitation of this work without authorization could subject the perpetrator to criminal and civil liability.


General Disclaimer
This document is not to be construed as a promise by any participating company to develop, deliver, or market a
product. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in
making purchasing decisions. Novell, Inc. makes no representations or warranties with respect to the contents
of this document, and specifically disclaims any express or implied warranties of merchantability or fitness for any
particular purpose. The development, release, and timing of features or functionality described for Novell products
remains at the sole discretion of Novell. Further, Novell, Inc. reserves the right to revise this document and to
make changes to its content, at any time, without obligation to notify any person or entity of such revisions or
changes. All Novell marks referenced in this presentation are trademarks or registered trademarks of Novell, Inc.
in the United States and other countries. All third-party trademarks are the property of their respective owners.

Más contenido relacionado

La actualidad más candente

AWS Webcast - Migrating your Data Center to the Cloud
AWS Webcast - Migrating your Data Center to the CloudAWS Webcast - Migrating your Data Center to the Cloud
AWS Webcast - Migrating your Data Center to the CloudAmazon Web Services
 
Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...
Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...
Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...Amazon Web Services
 
Active Directory Domain Services.pptx
Active Directory Domain Services.pptxActive Directory Domain Services.pptx
Active Directory Domain Services.pptxsyedasadraza13
 
Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...
Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...
Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...Amazon Web Services
 
AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...
AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...
AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...Amazon Web Services
 
Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...
Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...
Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...Amazon Web Services
 
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Amazon Web Services
 
File System Resource Mangement
File System Resource MangementFile System Resource Mangement
File System Resource MangementRaphael Ejike
 
Active directory
Active directory Active directory
Active directory deshvikas
 
AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...
AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...
AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...Brian Andrzejewski
 
IBM Traveler Management, Security and Performance
IBM Traveler Management, Security and PerformanceIBM Traveler Management, Security and Performance
IBM Traveler Management, Security and PerformanceGabriella Davis
 
Using AWS Key Management Service for Secure Workloads
Using AWS Key Management Service for Secure WorkloadsUsing AWS Key Management Service for Secure Workloads
Using AWS Key Management Service for Secure WorkloadsAmazon Web Services
 
Working with MS Endpoint Manager
Working with MS Endpoint ManagerWorking with MS Endpoint Manager
Working with MS Endpoint ManagerGeorge Grammatikos
 

La actualidad más candente (20)

AWS Webcast - Migrating your Data Center to the Cloud
AWS Webcast - Migrating your Data Center to the CloudAWS Webcast - Migrating your Data Center to the Cloud
AWS Webcast - Migrating your Data Center to the Cloud
 
Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...
Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...
Using AWS for Backup and Restore (backup in the cloud, backup to the cloud, a...
 
Active Directory Domain Services.pptx
Active Directory Domain Services.pptxActive Directory Domain Services.pptx
Active Directory Domain Services.pptx
 
Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...
Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...
Migrating Your Databases to AWS - Deep Dive on Amazon RDS and AWS Database Mi...
 
AWS Tagging Strategy
AWS Tagging StrategyAWS Tagging Strategy
AWS Tagging Strategy
 
AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...
AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...
AWS re:Invent 2016: Workshop: Adhere to the Principle of Least Privilege by U...
 
Linux text editors
Linux text editorsLinux text editors
Linux text editors
 
Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...
Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...
Threat detection on AWS: An introduction to Amazon GuardDuty - FND216 - AWS r...
 
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
 
File System Resource Mangement
File System Resource MangementFile System Resource Mangement
File System Resource Mangement
 
Active directory
Active directory Active directory
Active directory
 
Containers - Amazon EKS
Containers - Amazon EKSContainers - Amazon EKS
Containers - Amazon EKS
 
Users and groups
Users and groupsUsers and groups
Users and groups
 
AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...
AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...
AWS reInforce 2021: TDR202 - Lessons learned from the front lines of Incident...
 
IBM Traveler Management, Security and Performance
IBM Traveler Management, Security and PerformanceIBM Traveler Management, Security and Performance
IBM Traveler Management, Security and Performance
 
Using AWS Key Management Service for Secure Workloads
Using AWS Key Management Service for Secure WorkloadsUsing AWS Key Management Service for Secure Workloads
Using AWS Key Management Service for Secure Workloads
 
Working with MS Endpoint Manager
Working with MS Endpoint ManagerWorking with MS Endpoint Manager
Working with MS Endpoint Manager
 
Linux basic commands
Linux basic commandsLinux basic commands
Linux basic commands
 
Windows server2016 presentation
Windows server2016 presentation Windows server2016 presentation
Windows server2016 presentation
 
AWS Security Best Practices
AWS Security Best PracticesAWS Security Best Practices
AWS Security Best Practices
 

Similar a Novell ZENworks Patch Management Best Practices

Tips, Tricks and Cool Solutions for Novell ZENworks Configuration Management
Tips, Tricks and Cool Solutions for Novell ZENworks Configuration ManagementTips, Tricks and Cool Solutions for Novell ZENworks Configuration Management
Tips, Tricks and Cool Solutions for Novell ZENworks Configuration ManagementNovell
 
Avoiding Common Novell ZENworks Configuration Management Implementation Pitfalls
Avoiding Common Novell ZENworks Configuration Management Implementation PitfallsAvoiding Common Novell ZENworks Configuration Management Implementation Pitfalls
Avoiding Common Novell ZENworks Configuration Management Implementation PitfallsNovell
 
Rapid Deployment of Novell ZENworks Configuration Management
Rapid Deployment of Novell ZENworks Configuration ManagementRapid Deployment of Novell ZENworks Configuration Management
Rapid Deployment of Novell ZENworks Configuration ManagementNovell
 
Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...
Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...
Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...Novell
 
Novell ZENworks Advanced Application Management
Novell ZENworks Advanced Application ManagementNovell ZENworks Advanced Application Management
Novell ZENworks Advanced Application ManagementNovell
 
Introduction to Novell ZENworks Configuration Management Troubleshooting
Introduction to Novell ZENworks Configuration Management TroubleshootingIntroduction to Novell ZENworks Configuration Management Troubleshooting
Introduction to Novell ZENworks Configuration Management TroubleshootingNovell
 
Migrate from Red Hat to SUSE Linux Enterprise Server
Migrate from Red Hat to SUSE Linux Enterprise ServerMigrate from Red Hat to SUSE Linux Enterprise Server
Migrate from Red Hat to SUSE Linux Enterprise ServerNovell
 
Configure, Pack and Distribute: An RPM Creation Workshop
Configure, Pack and Distribute: An RPM Creation WorkshopConfigure, Pack and Distribute: An RPM Creation Workshop
Configure, Pack and Distribute: An RPM Creation WorkshopNovell
 
Best Practices for IT Asset Management Using Novell ZENworks
Best Practices for IT Asset Management Using Novell ZENworksBest Practices for IT Asset Management Using Novell ZENworks
Best Practices for IT Asset Management Using Novell ZENworksNovell
 
Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...
Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...
Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...Novell
 
ZENworks Configuration Management and Windows 10
ZENworks Configuration Management and Windows 10ZENworks Configuration Management and Windows 10
ZENworks Configuration Management and Windows 10Roel van Bueren
 
Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...
Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...
Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...Novell
 
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...Novell
 
Update Management and Compliance Monitoring with the Subscription Management...
Update Management and Compliance Monitoring with the Subscription  Management...Update Management and Compliance Monitoring with the Subscription  Management...
Update Management and Compliance Monitoring with the Subscription Management...Novell
 
Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...
Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...
Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...Novell
 
Lessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made EasyLessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made EasyNovell
 
Best Practices for Novell GroupWise on Linux
Best Practices for Novell GroupWise on LinuxBest Practices for Novell GroupWise on Linux
Best Practices for Novell GroupWise on LinuxNovell
 
A Complete, Low-cost Virtual Infrastructure for Small and Medium Businesses
A Complete, Low-cost Virtual Infrastructure for Small and Medium BusinessesA Complete, Low-cost Virtual Infrastructure for Small and Medium Businesses
A Complete, Low-cost Virtual Infrastructure for Small and Medium BusinessesNovell
 
How to Architect a Novell Sentinel Implementation
How to Architect a Novell Sentinel ImplementationHow to Architect a Novell Sentinel Implementation
How to Architect a Novell Sentinel ImplementationNovell
 

Similar a Novell ZENworks Patch Management Best Practices (20)

Tips, Tricks and Cool Solutions for Novell ZENworks Configuration Management
Tips, Tricks and Cool Solutions for Novell ZENworks Configuration ManagementTips, Tricks and Cool Solutions for Novell ZENworks Configuration Management
Tips, Tricks and Cool Solutions for Novell ZENworks Configuration Management
 
Avoiding Common Novell ZENworks Configuration Management Implementation Pitfalls
Avoiding Common Novell ZENworks Configuration Management Implementation PitfallsAvoiding Common Novell ZENworks Configuration Management Implementation Pitfalls
Avoiding Common Novell ZENworks Configuration Management Implementation Pitfalls
 
Rapid Deployment of Novell ZENworks Configuration Management
Rapid Deployment of Novell ZENworks Configuration ManagementRapid Deployment of Novell ZENworks Configuration Management
Rapid Deployment of Novell ZENworks Configuration Management
 
Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...
Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...
Advanced Reporting with Novell ZENworks Reporting Server: More than Asset Man...
 
Novell ZENworks Advanced Application Management
Novell ZENworks Advanced Application ManagementNovell ZENworks Advanced Application Management
Novell ZENworks Advanced Application Management
 
Introduction to Novell ZENworks Configuration Management Troubleshooting
Introduction to Novell ZENworks Configuration Management TroubleshootingIntroduction to Novell ZENworks Configuration Management Troubleshooting
Introduction to Novell ZENworks Configuration Management Troubleshooting
 
Migrate from Red Hat to SUSE Linux Enterprise Server
Migrate from Red Hat to SUSE Linux Enterprise ServerMigrate from Red Hat to SUSE Linux Enterprise Server
Migrate from Red Hat to SUSE Linux Enterprise Server
 
Configure, Pack and Distribute: An RPM Creation Workshop
Configure, Pack and Distribute: An RPM Creation WorkshopConfigure, Pack and Distribute: An RPM Creation Workshop
Configure, Pack and Distribute: An RPM Creation Workshop
 
Best Practices for IT Asset Management Using Novell ZENworks
Best Practices for IT Asset Management Using Novell ZENworksBest Practices for IT Asset Management Using Novell ZENworks
Best Practices for IT Asset Management Using Novell ZENworks
 
Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...
Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...
Upgrading from NetWare to Novell Open Enterprise Server on Linux: The Novell ...
 
ZENworks Configuration Management and Windows 10
ZENworks Configuration Management and Windows 10ZENworks Configuration Management and Windows 10
ZENworks Configuration Management and Windows 10
 
Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...
Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...
Windows 7 Deployment with Novell ZENworks Configuration Management and ENGL I...
 
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
 
Update Management and Compliance Monitoring with the Subscription Management...
Update Management and Compliance Monitoring with the Subscription  Management...Update Management and Compliance Monitoring with the Subscription  Management...
Update Management and Compliance Monitoring with the Subscription Management...
 
Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...
Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...
Application Repackaging Best Practices for Novell ZENworks 10 Configuration M...
 
Lessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made EasyLessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made Easy
 
Best Practices for Novell GroupWise on Linux
Best Practices for Novell GroupWise on LinuxBest Practices for Novell GroupWise on Linux
Best Practices for Novell GroupWise on Linux
 
A Complete, Low-cost Virtual Infrastructure for Small and Medium Businesses
A Complete, Low-cost Virtual Infrastructure for Small and Medium BusinessesA Complete, Low-cost Virtual Infrastructure for Small and Medium Businesses
A Complete, Low-cost Virtual Infrastructure for Small and Medium Businesses
 
How to Architect a Novell Sentinel Implementation
How to Architect a Novell Sentinel ImplementationHow to Architect a Novell Sentinel Implementation
How to Architect a Novell Sentinel Implementation
 
Ansible.pdf
Ansible.pdfAnsible.pdf
Ansible.pdf
 

Más de Novell

Filr white paper
Filr white paperFilr white paper
Filr white paperNovell
 
Social media class 4 v2
Social media class 4 v2Social media class 4 v2
Social media class 4 v2Novell
 
Social media class 3
Social media class 3Social media class 3
Social media class 3Novell
 
Social media class 2
Social media class 2Social media class 2
Social media class 2Novell
 
Social media class 1
Social media class 1Social media class 1
Social media class 1Novell
 
Social media class 2 v2
Social media class 2 v2Social media class 2 v2
Social media class 2 v2Novell
 
LinkedIn training presentation
LinkedIn training presentationLinkedIn training presentation
LinkedIn training presentationNovell
 
Twitter training presentation
Twitter training presentationTwitter training presentation
Twitter training presentationNovell
 
Getting started with social media
Getting started with social mediaGetting started with social media
Getting started with social mediaNovell
 
Strategies for sharing and commenting in social media
Strategies for sharing and commenting in social mediaStrategies for sharing and commenting in social media
Strategies for sharing and commenting in social mediaNovell
 
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECHInformation Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECHNovell
 
Workload iq final
Workload iq   finalWorkload iq   final
Workload iq finalNovell
 
The Identity-infused Enterprise
The Identity-infused EnterpriseThe Identity-infused Enterprise
The Identity-infused EnterpriseNovell
 
Shining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of SocialShining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of SocialNovell
 
Accelerate to the Cloud
Accelerate to the CloudAccelerate to the Cloud
Accelerate to the CloudNovell
 
The New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration TrendsThe New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration TrendsNovell
 
Preventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log ManagementPreventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log ManagementNovell
 
Iaas for a demanding business
Iaas for a demanding businessIaas for a demanding business
Iaas for a demanding businessNovell
 
Workload IQ: A Differentiated Approach
Workload IQ: A Differentiated ApproachWorkload IQ: A Differentiated Approach
Workload IQ: A Differentiated ApproachNovell
 
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...Novell
 

Más de Novell (20)

Filr white paper
Filr white paperFilr white paper
Filr white paper
 
Social media class 4 v2
Social media class 4 v2Social media class 4 v2
Social media class 4 v2
 
Social media class 3
Social media class 3Social media class 3
Social media class 3
 
Social media class 2
Social media class 2Social media class 2
Social media class 2
 
Social media class 1
Social media class 1Social media class 1
Social media class 1
 
Social media class 2 v2
Social media class 2 v2Social media class 2 v2
Social media class 2 v2
 
LinkedIn training presentation
LinkedIn training presentationLinkedIn training presentation
LinkedIn training presentation
 
Twitter training presentation
Twitter training presentationTwitter training presentation
Twitter training presentation
 
Getting started with social media
Getting started with social mediaGetting started with social media
Getting started with social media
 
Strategies for sharing and commenting in social media
Strategies for sharing and commenting in social mediaStrategies for sharing and commenting in social media
Strategies for sharing and commenting in social media
 
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECHInformation Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECH
 
Workload iq final
Workload iq   finalWorkload iq   final
Workload iq final
 
The Identity-infused Enterprise
The Identity-infused EnterpriseThe Identity-infused Enterprise
The Identity-infused Enterprise
 
Shining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of SocialShining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of Social
 
Accelerate to the Cloud
Accelerate to the CloudAccelerate to the Cloud
Accelerate to the Cloud
 
The New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration TrendsThe New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration Trends
 
Preventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log ManagementPreventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log Management
 
Iaas for a demanding business
Iaas for a demanding businessIaas for a demanding business
Iaas for a demanding business
 
Workload IQ: A Differentiated Approach
Workload IQ: A Differentiated ApproachWorkload IQ: A Differentiated Approach
Workload IQ: A Differentiated Approach
 
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
 

Novell ZENworks Patch Management Best Practices

  • 1. Novell ZENworks Patch ® ® Management Best Practices Allen McCurdy Scott Guscar Technology Specialist Technology Sales Specialist Novell, Inc/amccurdy@novell.com Novell, Inc/sguscar@novell.com
  • 2. Agenda Configuring Patch Management Services Patch Deployment Patch Baseline Reporting Demo 2 © Novell, Inc. All rights reserved.
  • 4. Important Initial Configuration Issues: • Patch Management OFF by default – Select your ZENworks Configuration Manager server ® – Start the service! • Ensure the server has – 4GB RAM w/ 40GB Free Disk – 2Ghz Dual Core Processor, or better… • Choose your Replication Time – Midnight by default • Select Language(s) for Patch Subscription – US English by default 4 © Novell, Inc. All rights reserved.
  • 5. Steps Needed to get Patch Services Operational 1.Activate Product 2.Configure Subscription Download 3.Configure Http Proxy 4.Configure Mandatory Baseline Settings 5.Configure Subscription Service Information 5 © Novell, Inc. All rights reserved.
  • 6. Activate Product 6 © Novell, Inc. All rights reserved.
  • 7. Patch Serial Number • NO SERIAL NUMBER REQUIRED – For first 60 days of Novell ZENworks Configuration ® ® Management evaluation !!! • When required …enter a valid Novell s/n ® – Only enforces expiration – Requires SSL outbound (443) – Node count displayed for information only! • Does it work with ZENworks Patch Management serial ® number? - Yes Tip: When you buy ZENworks Configuration Management, the trial period ends! 7 © Novell, Inc. All rights reserved.
  • 8. Configure Subscription Download Other languages supported: Italian, Simplified Chinese, Finnish, Russian, German,Hong Kong Chinese and Czech 8 © Novell, Inc. All rights reserved.
  • 9. Configure Http Proxy **If your proxy cache's content, patch services may not work properly 9 © Novell, Inc. All rights reserved.
  • 10. Configure Mandatory Baseline Settings New in version 10.3 10 © Novell, Inc. All rights reserved.
  • 11. Configure Subscription Service Information Tip: Please note that if the “Reset Patch Management Settings” button is selected all patch content will be lost. 11 © Novell, Inc. All rights reserved.
  • 12. “ZENworks Patch Management” ® Sub-folder • Auto-created by Novell ZENworks Patch Management ® ® – Content is refreshed daily from http://novell.patchlink.com • Three types of Bundle – Remediation Bundle (Single Bundle, no reboot) – Discover Applicable Updates (Single Bundle) – ZENworks Patch Management Assignment (Directive Bundle = collection of bundles) > Name includes date and time of assignment > Reboot handling options • Useful for Tech Support – What was assigned where and when… Tip: Dont' mess with ZENworks Patch Management System folder! 12 © Novell, Inc. All rights reserved.
  • 13. Subscription Replication • Definitely NOT a spectator sport! – Files download to /zenworks/zpm/dist – Download takes 20 mins or more – Bundling can take 30 - 40 mins (high CPU) – DAU creation takes 5 mins – Assignment Updates 1+mins • Let it run overnight – Or prepare ahead of time! 13 © Novell, Inc. All rights reserved.
  • 14. Replication Status 14 © Novell, Inc. All rights reserved.
  • 16. Discovering Vulnerabilities • Single File Bundle • One DAU task per: – Platform – Architecture – Language – Service Pack Runs: ANALYZE.EXE 16 © Novell, Inc. All rights reserved.
  • 17. Patch Status Patch is Cached Patch needs to be Cached (downloaded) Patch is in download process Patch is Disabled Patch is apart of a Baseline Patch could not be Cached (error) 17 © Novell, Inc. All rights reserved.
  • 18. Deploying Patches 1.Select Patch / Patches to be deployed 2.Accept any license agreements 3.Specify when the patch is to be deployed (Run Now, Scheduled or Event) 4.Adjust or accept the deployment order (multiple patches) 5.Select reboot options 6.Deployment Summary (accept or adjust) 18 © Novell, Inc. All rights reserved.
  • 19. ZENworks Patch Management ® Assignment Bundle • Directive Bundle = “Bundle of Bundles” • Ordered list of Remediation Bundles – Ordered as the administrator wanted to install them + Reboot Action – User prompt message – User can cancel + Re-Scan Action – Runs a DAU at the end of patch install Runs: REMEDIATE.EXE 19 © Novell, Inc. All rights reserved.
  • 21. Mandatory Baselines Mandatory baseline is a user-defined compliance level for a group of devices. • Can be applied to Groups or Dynamic Groups • Every few hours, depending on the results of the DAU task, the ZENworks Server determines the devices that are applicable and ® out of compliance (based upon the patches added to the baseline). • Necessary bundles, as defined in the baseline, are then deployed as soon as possible for each device. • After patches have been deployed, it might be necessary to reboot those devices for them to be detected as patched. 21 © Novell, Inc. All rights reserved.
  • 22. Creating or Modifying Baselines • From a group object, select the patches tab • Select patches needed for the baseline • Click on action / assign to baseline 22 © Novell, Inc. All rights reserved.
  • 24. Reporting • Requires ZENworks Reporting Services ® • Customizable • Canned Reports 24 © Novell, Inc. All rights reserved.
  • 25. Reporting Universe • Novell ZENworks Patch Management tables integrated ® ® into Universe • Patch Management Service reports – Vulnerability Summary – Vulnerability Detail – Baseline Compliance 25 © Novell, Inc. All rights reserved.
  • 27.
  • 28. Unpublished Work of Novell, Inc. All Rights Reserved. This work is an unpublished work and contains confidential, proprietary, and trade secret information of Novell, Inc. Access to this work is restricted to Novell employees who have a need to know to perform tasks within the scope of their assignments. No part of this work may be practiced, performed, copied, distributed, revised, modified, translated, abridged, condensed, expanded, collected, or adapted without the prior written consent of Novell, Inc. Any use or exploitation of this work without authorization could subject the perpetrator to criminal and civil liability. General Disclaimer This document is not to be construed as a promise by any participating company to develop, deliver, or market a product. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. Novell, Inc. makes no representations or warranties with respect to the contents of this document, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. The development, release, and timing of features or functionality described for Novell products remains at the sole discretion of Novell. Further, Novell, Inc. reserves the right to revise this document and to make changes to its content, at any time, without obligation to notify any person or entity of such revisions or changes. All Novell marks referenced in this presentation are trademarks or registered trademarks of Novell, Inc. in the United States and other countries. All third-party trademarks are the property of their respective owners.