Hi,
 
There are a few web servers in our setup which are of Solaris (SunOS 5.9
Generic_112233-12 sun4u sparc SUNW,Sun-Fire-V210) and running the
following apache versions (Apache/2.0.47   and   Apache/1.3.37). The
version of OpenSSL is 0.9.6i . (Archaic versions... I know  :(
 
This is a server which runs critical websites which are SSL based. Http
as well as Https sites. I ran a vulnerability assessment scan earlier on
these servers and upgraded the apache version. However multiple
vulnerabilities exist because of the very old version of OpenSSL and I
need to upgrade this to the latest version.
 
The team is pretty sceptical to upgrade this because of multiple
versions of OpenSSL and multiple critical sites which people are not
completely aware of. However I have to upgrade this so that system
clears an audit.
 
Guys, I would be greatly thankful if someone could provide me the steps
on how to proceed. 
 
Many Thanks.
Vijay Bala
 
 
  • Doubt Regarding Upgrade of... Balasubramanian, Vijay X (GE Money, consultant)

Reply via email to