03-22-2004 02:42 AM - last edited on 03-25-2019 06:42 PM by ciscomoderator
Hi,
is there any (supported) way to distribute e.g. OS-software update to Cisco Callmanager automatically?
I am thinking of Microsoft SMS or something similar.
Kind regards,
Axel
03-22-2004 05:06 PM
Automatic Updates should be disabled in CallManager, and all updates should be applied manually with console access.
03-22-2004 11:09 PM
Your answer is what I unfortunately expected.
How many people do you have, to do those tons of updates for hundreds of CCMs?
Manually software distribution is not up to date! I expect a global player like Cisco Systems to know that and to find a solution for this problem!
Kind regards,
Axel
03-22-2004 11:37 PM
Please check this link for additional information. Automatic updates may impose security risks for the critical applications that you run on these servers. While you definitely can configure them, you are at your own risk if something goes wrong. Cisco does not particularly test any of these tools.
03-23-2004 05:59 AM
We use VNC, which is supported by Cisco, as a way to install patches on CCM. This way you can install a patch on many servers from a single location without being at the console.
For security reasons, we leave the VNC service disabled and only enable it when we need to apply a patch.
Tony.
03-23-2004 06:54 PM
IMHO, it's a generally a very poor idea to do mass updates on critical servers such as CallManager. Since this is considered a critical, core service any issues replicated in masse to all of your CallManagers could leave your whole phone system down for a very long time until you fixed them all manually.
Also, you would want to deploy your patches one at a time so you wouldnt cause service interruption to your clients that would be connected to your CallManager clusters.
Personally, I run a checklist of post upgrade tests on the servers after they come back up from an upgrade before inflicting them on clients. This also would suggest a hands on, step by step approach that doesnt lend itself to scripting or mass software push techniques.
Now I could see using SMS or other products to deploy client software such are IP software, Attendant Console or Desktop Agents. Screw one of those up, no big deal.
The security issues with mass updates on critical servers should be self evident.
--Scott
03-23-2004 10:04 PM
Hi Scott,
I asume, that if you are using a software deployment, you will have a lab to develop such an update-packet and test it. After you verified, that this software work - imagine all your server are mostly similar, because you even installed with software deployment - you put your packet on some CCM. If you have no trouble to distribute it to the rest of the CCM.
Our company use NetInstall to install all windowsbased servers for about 145 locations and it is NO security or anything else problem.
If you do updates manually, you will never have homogeneous softwareversions.
Kind regards,
Axel
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide