Hi
All kindly can anyone help me if there is vulnerability alert in my daily IDS/IPS report and i want to patch a machine.Will i patch to attacker address or target address Assume that attacker and target address are on same network?
Solved! Go to Solution.
You must patch the 'target IP' system like a Web Server or a Database Server. It is always recommended to have the required patches applied on both the target & attacker IP.
Regards,
Faizan
Hi User27622125
What is the Vulnerability Alert you are seeing?
Are both of the machines on your internal network, belonging to you?
I would assume you need to patch the target, but if they are both your machines you should patch them both for any vulnerabilities.
Regards
Peter
Dear Peter,
vulnerability name is : Open SSL after use
openssl version is currently 1.1.0a and i want to upgrade it to version 1.1.0b Now both machines belong to my network and there are two scenarios in this case:
1.Both machines are server
2.One is client and one is server
Should i need to patch both machines in case 1 and in case 2 i will patch only one machine?
You must patch the 'target IP' system like a Web Server or a Database Server. It is always recommended to have the required patches applied on both the target & attacker IP.
Regards,
Faizan
Corporate Headquarters
6220 America Center Drive
San Jose, CA 95002 USA