Patch Management System for Multi-platform Environment

  • Jung-Taek Seo
  • Dae-Sik Choi
  • Eung-Ki Park
  • Tae-Shik Shon
  • Jongsub Moon
Part of the Lecture Notes in Computer Science book series (LNCS, volume 3320)

Abstract

Patch management is one of the most important processes to fix vulnerabilities of softwares and to ensure a security of systems. Since an institute or a company has distributed hierarchical structure and the structure consists of many heterogeneous systems, it is not easy to update patches timely. In this paper, we propose a patch management framework with patch profiling mechanism and patch dependency solving mechanism. We implemented the proposed patch management framework with JAVA environments. We argue that the proposed framework can improve the patch management processes.

Keywords

Target System Dependency Problem Critical Security Client System Client Agent 
These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. 1.
    CERT/Coordination-Center: CERT/CC statistics, http://www.cert.org/stats/cert_stats
  2. 2.
    Bashar, M.A., Krishnan, G., Kuhn, M.G.: Low-threat Security Patches and Tools. In: Proceedings of the International Conference on Software Maintenance, pp. 306–313 (1997)Google Scholar
  3. 3.
    Shon, T.S., Moon, J.S., Seo, J.T., Im, E.K., Lee, C.W.: Safe Patch Distribution Architecture in Intranet Environments, SAM 2003 (2003)Google Scholar
  4. 4.
    Lee, C.W., Im, E.G., Seo, J.T., Moon, J.S., Kim, D.K.: Design of a secure and consolidated patch distribution architecture. In: Proceedings of the International Conference on Information Networking 2003 (2003)Google Scholar
  5. 5.
  6. 6.
    BigFix Patch Manager, http://www.bigfix.com
  7. 7.
    Shavlik HFNetChkPro Security Patch Management, http://www.shavlik.com
  8. 8.
    Service Pack Manager (2000), http://www.securitybastion.com
  9. 9.
    LLNL SafePatch, Lawrence Livemore National LaboratoryGoogle Scholar

Copyright information

© Springer-Verlag Berlin Heidelberg 2004

Authors and Affiliations

  • Jung-Taek Seo
    • 1
  • Dae-Sik Choi
    • 1
  • Eung-Ki Park
    • 1
  • Tae-Shik Shon
    • 2
  • Jongsub Moon
    • 2
  1. 1.National Security Research InstituteDaejeonRepublic of Korea
  2. 2.CISTKorea UniversitySeoulRepublic of Korea

Personalised recommendations