ESX Virtualization

VMware ESXi, vSphere, VMware Backup, Hyper-V... how-to, videos....

Nakivo Backup and Replication - #1 Backup solution for Virtual, physical, cloud, NAS and SaaS

Menu
  • Certification
      • VCP-DCV vSphere 8
          • vcp2024-125.
        • Close
    • Close
  • VMware
    • Configuration Maximums
    • vSphere
      • vSphere 8.0
      • vSphere 7.0
      • vSphere 6.7
      • vSphere 6.5
      • vSphere 6.0
      • Close
    • VMworld
      • VMware EXPLORE 2024
      • VMware EXPLORE 2023
      • VMware EXPLORE 2022
      • VMworld 2019
      • VMworld 2018
      • VMworld 2017
      • VMworld 2016
      • VMworld 2015
      • VMworld 2014
      • VMworld 2013
      • VMworld 2012
      • VMworld 2011
      • Close
    • Close
  • Microsoft
    • Windows Server 2012
    • Windows Server 2016
    • Windows Server 2019
    • Close
  • Categories
    • Tips – VMware, Microsoft and General IT tips and definitions, What is this?, How this works?
    • Server Virtualization – VMware ESXi, ESXi Free Hypervizor, VMware vSphere Server Virtualization, VMware Cloud and Datacenter Virtualization
    • Backup – Virtualization Backup Solutions, VMware vSphere Backup and ESXi backup solutions.
    • Desktop Virtualization – Desktop Virtualization, VMware Workstation, VMware Fusion, VMware Horizon View, tips and tutorials
    • How To – ESXi Tutorials, IT and virtualization tutorials, VMware ESXi 4.x, ESXi 5.x and VMware vSphere. VMware Workstation and other IT tutorials.
    • Free – Free virtualization utilities, ESXi Free, Monitoring and free backup utilities for ESXi and Hyper-V. Free IT tools.
    • Videos – VMware Virtualization Videos, VMware ESXi Videos, ESXi 4.x, ESXi 5.x tips and videos.
    • Home Lab
    • Reviews – Virtualization Software and reviews, Disaster and backup recovery software reviews. Virtual infrastructure monitoring software review.
    • Close
  • Partners
    • NAKIVO
    • StarWind
    • Zerto
    • Xorux
    • Close
  • This Web
    • News
    • ESXi Lab
    • About
    • Advertise
    • Archives
    • Disclaimer
    • PDFs and Books
    • Close
  • Free
  • Privacy policy

Patching and Patching – Set it and forget for Routers Is The way To Go

By Vladan SEGET | Last Updated: March 17, 2015

Shares

Enterprise Administrators to keep their systems up to date are usually in situation when they have to deal with tons of patches. Depending on many factors like for example how many different OS and types of OS they run in their (virtualized) environments. Patching of VMs or physical servers is important, however patching of routers isn't less important either. Even very small environments, which sometimes do their business based on consumer hardware shall consider patching as critical and as a part of the global security strategy of the enterprise.

Recent shellshock bug hit mostly Linux systems, sure, but there are other exploits which are affecting daily – our routers. For example patches Linksys routers using SMART Wi-fi firmware were recently released. Those routers are fairly popular. I'm using the Linksys EA6900 model in my lab actually, and the patching is pretty simple, especially when you enable the checkbox for automatic updates. IMHO everyone should.

Router is usually the entry point where the attacker can put his nose to obtain password information, redirect traffic or read configuration informations about the LAN behind.

Linksys EA-6900

Let's stay with Linksys (now owned Netgear). Apparently the vulnerabilities has been known for at least 6 months and exploits available through some websites. But the patches released has been released only recently – the Oct. 23 in E4200v2, EA4500, EA6200, EA6300, EA6400, EA6500, EA6700, and EA6900 models.

This sucks. I mean, we always point at Microsoft that their patching is slow and there is many vulnerabilities that stays long days un-patched, but Microsoft (even if it takes some time) almost always finishes and patches their products at the end. We cannot say the same when we look at the network devices ecosystem, which is very different and complex.

We can see the problem with vulnerabilities slowly slipping from OS servers to web applications, and then to client side applications and network devices. However the patching cycles of network devices are way behind Server OS…

VMware did a good job and reacted very fast to the shellshock vulnerability. Plus in addition, they also released patches for older products which were affected. Like ESX 4.0 hypervisor using the Linux bash console. It usually takes much longer to release patches for vendors of network devices. And that's where the main danger lays now.

Back to the lab, finish patching and enabling that check box… -:)

Linksys EA6900

The Linksys Model is actually a dual-band Wi-fi rouer which I bought few months back to replace my old WRT-54G. It's an easy to setup router, with some assistants.

Some specs:

  • Up to N600 Mbps (2.4 GHz) + AC1300 Mbps (5.0 GHz) speeds with Simultaneous Dual Band
  • 3 adjustable external antennas provide maximum range
  • Includes Linksys Smart Wi-Fi providing easy CD free set-up, remote network management, parental control and app enabled networking
  • 1 USB 3.0 and 1 USB 2.0 port to print, share and store content
  • Beam forming technology follows your Tablet, Smartphone or Notebook to ensure a great connection as you move around your home
  • 4 gigabit ports to connect wired devices
  • DLNA certified for home media management
  • Dual Core 800Mhz CPU for lightning fast processing

 

Shares
Vote !

| Filed Under: Featured Tagged With: patching linksys

About Vladan SEGET

This website is maintained by Vladan SEGET. Vladan is as an Independent consultant, professional blogger, vExpert x16, Veeam Vanguard x9, VCAP-DCA/DCD, ESX Virtualization site has started as a simple bookmarking site, but quickly found a large following of readers and subscribers.

Connect on: Facebook. Feel free to network via Twitter @vladan.

Comments

  1. Gonzague says

    November 9, 2014 at 9:55 am

    But how do you define when it should perform the update? ^^
    Will it perform it randomly , maybe interrupting people in their work

    • Vladan SEGET says

      November 9, 2014 at 1:46 pm

      Every company does have different strategy on that. It depends on many factors.

Private Sponsors

Featured

  • Thinking about HCI? G2, an independent tech solutions peer review platform, has published its Winter 2023 Reports on Hyperconverged Infrastructure (HCI) Solutions.
  • Zerto: One Platform for Disaster Recovery, Backup & Cloud Mobility: Try FREE Hands-On Labs Today!
Click to Become a Sponsor

Most Recent

  • Veeam confirming vSphere 9.0 and ESXi 9 upcoming support
  • Veeam Backup & Replication v13 Beta: A Game-Changer with Linux
  • What is Veeam Data Cloud Vault and how it can help SMBs
  • Nakivo Backup and Replication – Malware Scan Feature
  • Zerto 10 U7 released with VMware NSX 4.2 Support
  • XorMon NG 1.9.0 Infrastructure Monitoring – now also with Veeam Backup Support
  • Heartbeat vs Node Majority StarWind VSAN Failover Strategy
  • Vulnerability in your VMs – VMware Tools Update
  • FREE version of StarWind VSAN vs Trial of Full version
  • Commvault’s Innovations at RSA Conference 2025 San Francisco

Get new posts by email:

 

 

 

 

Support us on Ko-Fi

 

 

Buy Me a Coffee at ko-fi.com

Sponsors

Free Trials

  • DC Scope for VMware vSphere – optimization, capacity planning, and cost management. Download FREE Trial Here.
  • Augmented Inline Deduplication, Altaro VM Backup v9 For #VMware and #Hyper-V – Grab your copy now download TRIAL.

VMware Engineer Jobs

VMware Engineer Jobs

YouTube

…

Find us on Facebook

ESX Virtualization

…

Copyright © 2025 ·Dynamik-Gen · Genesis Framework · Log in