update/upgrade policy ?
-
@msbt said in update/upgrade policy ?:
don't run apt upgrade
yes I have the same impression, which is like the norm on a lot of project, but I tough since everything is mainly inside containers they might have another perspective.
Also maybe by enforcing dpkg to keep old configuration and old definition they might have a different opinion.
-
Right, we don't recommend upgrading since we trying to keep our testing simple. Security updates are enabled for the base packages that we use. We don't really use many base packages - nginx, collectd. Rest are all containerized (mysql/mongo/redis/email etc) and updated via our docker updates. Docker, nodejs itself are all installed from binaries and not via apt.