The patch management feature allows you to scan or install patches for Elastic Compute Service (ECS) instances based on default or custom patch baselines. You can also select security-related updates or updates of other types to automatically install patches for ECS instances.
Most enterprises often have specific compliance requirements for IT assets, including Alibaba Cloud ECS instances. The system vulnerabilities of the instances need to be fixed at the earliest opportunity to avoid security attacks, or some software packages need to be kept up to date. In such cases, the patch management feature can be used. The patch management feature allows you to use security-related updates and updates of other types to automatically install patches for managed instances. You can use the patch management feature to install patches for operating systems and applications. You can use the patch management feature to install a service pack on a Windows instance or perform a minor version update on a Linux instance. You can install patches for multiple ECS instances that run the same type of operating system at a time. The following types of operating systems are supported: Alibaba Cloud Linux, CentOS, Debian, Ubuntu, and Windows Server. You can scan instances only to view reports on missing patches, or scan instances and automatically install all missing patches. The following topics help you get started with the patch management feature:
1. Patch baseline: provides an overview of patch baselines and shows you how to manage patch baselines.
2. Scheduled fix: describes the background information, required permissions, and procedure for configuring a scheduled fix.
3. Immediate fix: describes the background information, required permissions, and procedure for configuring an immediate fix.
Supported operating systems
Alibaba Cloud Linux 2 and 3
CentOS 7 and 8
Debian 9 and 10
Ubuntu 16.04, 18.04, and 20.04
Windows Server 2012
Windows Server 2016
Windows Server 2019