• Aceticon@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    7 days ago

    I’m truly, totally, completely shocked … that Windows is still being used on the server side.

    • Hobo@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      7 days ago

      A bunch of enterprise services are Windows only. Also Active Directory is by far the best and easiest way to manage users and computers in an org filled with a bunch of end users on Windows desktops. Not to mention the metric shitload of legacy internal asp applications…

        • Hobo@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          17 hours ago

          No not really. It does the various services for the most part, but Active Directory is exclusively a Microsoft product. Group Policy in particular also does not have a drop in replacement that’s any sort of sane.

    • ikidd@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 days ago

      Basically AD and the workstation management that uses it. Could all be run on a VM and snapshotted because you know it’s going to fuck up an update eventually. Perhaps SQL Server but that’s getting harder to justify the expense of anymore.

    • uniquethrowagay@feddit.org
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 days ago

      We run a lot of Windows servers for specialized applications that don’t really have viable alternatives. It sucks, but it’s the same reason we use Windows clients.

    • superkret@feddit.orgOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 days ago

      We have an app running on CentOS 6. The vendor of the app informed us they expect to have a new version that can run on RHEL 8 by the end of the year - 2025.

  • CriticalMiss@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    arrow-down
    1
    ·
    6 days ago

    Hate to be that guy but if you automatically patch critical infrastructure or apply patches without reading their description first, you kinda did it to yourself. There’s a very good reason not a single Linux distribution patches itself (by default) and wants you to read and understand the packages you’re updating and their potential effects on your system

    • festus@lemmy.ca
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 days ago

      Many distros (at least Ubuntu) auto-installs security updates, and here a mislabeled “security update” was auto-installed. This is not the fault of the sysadmins.

    • rumba@lemmy.zip
      link
      fedilink
      English
      arrow-up
      0
      ·
      6 days ago

      There’s a lot of people out there running automation to keep their servers secure. Well I agree any automation out there should be able to flag and upgrade excluded, It would seem to me like Microsoft should own some of the blame for a full ass hard to uninstall OS update fed in with the same stream and without it interaction. I kind of expect my OS in stall pop up a window and say hey a****** this is going to upgrade your system, are you cool with that. I don’t know how it works these days but I know back in the day going between versions you would have to refresh your licensing on a large upgrade.

      • CriticalMiss@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        6 days ago

        Unlike with other OSes Microsoft releases all of their patches on Tuesday at around the same time in one big batch. I spend my Tuesday morning reading the patch descriptions and selectively applying them. A method that hasn’t failed me once.

  • GreeNRG@slrpnk.net
    link
    fedilink
    English
    arrow-up
    6
    ·
    edit-2
    7 days ago

    Since rolling back to the previous configuration will present a challenge, affected users will be faced with finding out just how effective their backup strategy is or paying for the required license and dealing with all the changes that come with Windows Server 2025.

    Accidentally force your customers to have to spend money to upgrade, how convenient.

    • Dremor@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      7 days ago

      Congratulation, you are being upgraded. Please do not resist. And pay while we are at it.

    • Maestro@fedia.io
      link
      fedilink
      arrow-up
      2
      ·
      7 days ago

      Since MS forced the upgrade, you should get 2025 for free. That would probably be really easy to argue in court

      • boonhet@lemm.ee
        link
        fedilink
        English
        arrow-up
        0
        ·
        7 days ago

        Ah, but did you read the article?

        MS didn’t force it, Heimdal auto-updated it for their customers based on the assumption that Microsoft would label the update properly instead of it being labeled as a regular security patch. Microsoft however made a mistake (on purpose or not? Who knows…) in labeling it.

        • MaggiWuerze@feddit.org
          link
          fedilink
          English
          arrow-up
          1
          ·
          7 days ago

          Then it’s still on Microsoft for pushing that update through what is essentially a patch pipeline

          • boonhet@lemm.ee
            link
            fedilink
            English
            arrow-up
            0
            ·
            7 days ago

            It is, but they never forced anyone to take the update, so that might save their asses, or it might not

            • WhatAmLemmy@lemmy.world
              link
              fedilink
              English
              arrow-up
              1
              ·
              7 days ago

              This would be no different to you ordering food in a restaurant, them bringing you the wrong meal, you refusing because you didn’t order it, then they tell you to go fuck yourself and charge you for it anyway.

              If this argument is valid in your judicial system then you live in a clown world capitalist dictatorship.

              • Maestro@fedia.io
                link
                fedilink
                arrow-up
                1
                ·
                7 days ago

                Have you seen the state of the US? A “clown world capitalist dictatorship” is a pretty apt description

  • MonkderVierte@lemmy.ml
    link
    fedilink
    English
    arrow-up
    1
    ·
    7 days ago

    Misleading title. It was installed by a third-party updater, Heimdall, but MS labeled a Windows 11 update wrong.

      • Appoxo@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        2
        ·
        edit-2
        5 days ago

        Do you know that’s not a mistake and done fully malicously knowing that? Please give me your source.

          • Appoxo@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            2
            ·
            edit-2
            5 days ago

            And you make absolutely no error?

            Besides that:
            Should MS have caught the errorenous ID (assuming it truly was errourneous and not knowingly falsely labeled)? Absolutely. Should the patch management team blindly release all updates that MS releases? No?

      • ditty@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        1
        ·
        7 days ago

        Yet another reason to not do auto-updates in an enterprise environment for mission-critical services.

        • superkret@feddit.orgOP
          link
          fedilink
          English
          arrow-up
          3
          ·
          7 days ago

          In an enterprise environment, you rely on a service that tracks CVEs, analyzes which ones apply to your environment, and prioritizes security critical updates.
          The issue here is that one of these services installed a release upgrade because Microsoft mislabelled it as security update.

            • SomeGuy69@lemmy.world
              link
              fedilink
              English
              arrow-up
              1
              ·
              7 days ago

              For security updates in critical infrastructure, no. You want that right away, in best case instant. You can’t risk a zero day being used to kill people.

              • Appoxo@lemmy.dbzer0.com
                link
                fedilink
                English
                arrow-up
                1
                ·
                edit-2
                5 days ago

                Even security updates can be uncritical or supercritical. Consult the patch notes or get burned lol

            • mosiacmango@lemm.ee
              link
              fedilink
              English
              arrow-up
              1
              ·
              edit-2
              7 days ago

              Pre-prod is ideal, but a pipe dream for many. Lots of folks barely get prod.

              We still stagger patching so things like this only wipe some of the critical infrastructure, but that still causes needless issues.

  • Kokesh@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    7 days ago

    It must have been the same fun as when back in 2012 (or 2013?) McAfee (at least I think it was them) identified /system32 as a threat and deleted it :)

  • Buttflapper@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    arrow-down
    1
    ·
    7 days ago

    Do system administrators still exist? Honest question. I was one of those years ago and layoffs, forced back to office bullshit drove me away

    • superkret@feddit.orgOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 days ago

      yes, but we spend most of our time in meetings with cloud service vendors now.
      I haven’t been inside the server room for a month.

      • Buttflapper@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        arrow-down
        1
        ·
        7 days ago

        I’m not necessarily talking about being in the server room, I’m talking about more like doing power shell stuff and the stuff you would think system administrators do. They are still teaching active directory in IT classes in college

      • Buttflapper@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        arrow-down
        1
        ·
        7 days ago

        No, just not many job postings for it. Go look on indeed with that exact title. Switch to remote, almost no jobs