No judgment. I’m paid to make things, not apply patches. This is however why I don’t use self-hosted, pros and cons, etc.
No judgment. I’m paid to make things, not apply patches. This is however why I don’t use self-hosted, pros and cons, etc.
And I'm not sure about gitlab, but their are often mailing lists for security updates for major software packages.
https://www.linode.com/docs/guides/how-to-configure-automate...
I've never had any problems with it, although I just run a couple of servers :).
If everyone enabled this one thing I'm sure the Internet would be significantly safer.
Obs: You can select security updates only which I believe are unlikely to break anything!
The way to keep up-to-date on critical security updates for GitLab is to sign up for our Security Alerts mailing list: https://about.gitlab.com/company/preference-center/
I once had a CVE RSS feed, but it was mostly noise even after I filtered it to only tools/libraries we used.