Hacker News new | past | comments | ask | show | jobs | submit login

I love the idea of that, but it also means no security patches for that same period of time. I'd be weary of placing that host in any network with publicly-routable hosts.



No security patches to the kernel. You can certainly upgrade user-space items (daemons and the like...)


I heard you could hot patch the kernel as well somehow.


You can use stuff like https://github.com/dynup/kpatch or http://www.ksplice.com/ to apply security patches to a running Linux kernel, but that's still pretty new stuff.

Stratus has been doing that since the 90s, though :-)




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: