Home > Ask the Security Channel Experts > Security Management Questions & Answers > Implementing third-party patches on customer systems
Ask The Security Channel Expert: Questions & Answers
EMAIL THIS

Implementing third-party patches on customer systems

Felicia Wetter EXPERT RESPONSE FROM: Felicia Wetter

Pose a Question
Other Security Channel Categories
Meet all Security Channel Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 06 October 2006
Is it safe to implement a third-party patch on a customer's Windows system for a critical vulnerability that Microsoft is slow to patch?

>

Yes, it is feasible to implement a third-party patch on a Windows system. However, several important steps should be followed to ensure the patch does not have an ill effect on the system. These steps include, at a minimum:

  • Obtain the patch through a secure manner (for example, SHA-1).
  • Complete the appropriate testing before proceeding to implement the patch.
  • Have a well-defined and documented back-out plan in the event the patch does not install correctly or causes issues with the systems or applications.
  • Provide proper communication to all those involved with the systems being patched, both the end users and administrators.
  • Install the patch on less critical systems first, to ensure no issues, then install on more critical sytems.

If these steps are followed, at a minimum, then the risk of installing a third-party patch is mitigated.

For more information on testing patches before rolling them out to your customers, visit our Patch Management Project Guide.


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Security Management
Hardening Linux as part of your client's network security policy
Implementing wireless LAN security policies for mobile users
Should hotfix testing be performed by the QA department or by support?
Complying with the Federal Information Security Management Act (FISMA)
Automated patch management for SMB customers
Understanding ISO 27001 and ISO 17799
Maintaining HIPAA compliance
How do I create a repeatable patch testing methodology?
Creating security policies for an enterprise customer
Patch management system post-deployment considerations for VARs and consultants

Vulnerability and patch management
Mitigating zero-day vulnerabilities in customers' environments
Despite customer interest, channel struggles with threat management
Portcullis Systems adds HP security products to Microsoft customers
Agilex partners with HBGary to offer security forensic, assessment services
Snort vs. Microsoft Security Bulletin MS08-068
Top security tips for solutions providers
Top five security service provider tips of 2007
The true cost of offering patch management services
Microsoft WSUS deployment guide
Antivirus software patch management

Security Patch Testing
Should hotfix testing be performed by the QA department or by support?
How do I create a repeatable patch testing methodology?
Testing patches virtually saves money and space
Patch testing on the cheap

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice

HomeNewsTopicsITKnowledge ExchangeTipsMultimediaWhite PapersBlogsEvents
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2006 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts