Mandate zero patching. Drive automation in the cloud.
In-place patching is an anti-pattern for cloud-native applications that originates from the data center with low levels of automation for infrastructure and application management.
The shift-left movement pushes ownership to the development teams that are best served by applying all changes via their CI/CD pipelines. This goes for infrastructure, containers, serverless, code, et al.
Video
Slides used in video
The talk did not cover zero-day emergency patching. Sometimes a mass update must be applied to all like systems. In that case, patching may be supported with a full redeployment as soon as possible after that.
Created 2022 03
Comments
Post a Comment