cancel
Showing results for 
Search instead for 
Did you mean: 

BIOS Trickboot vulnerability upgrade in an HA cluster

SOLVED
bylie
Occasional Contributor

BIOS Trickboot vulnerability upgrade in an HA cluster

Has anyone performed the BIOS upgrade for the PSA 5000 or 7000 platforms to mitigate the Trickboot vulnerability? Any gotcha's or things we should be aware of before planning this?

 

The SA states:

 

Question 9: We are using A/A or A/P Cluster, do we need to patch the nodes individually?
Answer: Yes, we need to patch the appliances individually in the cluster scenario (No need to break the cluster)

 

Does this mean that the BIOS upgrade does not follow the usual software upgrade procedure where you only have to initiate and complete the upgrade on one node after which the other node(s) will automatically receive the new software and also upgrade?

 

 

1 ACCEPTED SOLUTION

Accepted Solutions
zanyterp
Moderator

Re: BIOS Trickboot vulnerability upgrade in an HA cluster

yes, that is correct. it is not something that is pushed between the nodes

View solution in original post

3 REPLIES 3
zanyterp
Moderator

Re: BIOS Trickboot vulnerability upgrade in an HA cluster

yes, that is correct. it is not something that is pushed between the nodes
bylie
Occasional Contributor

Re: BIOS Trickboot vulnerability upgrade in an HA cluster

Just performed the BIOS upgrade and it was indeed per cluster node.

zanyterp
Moderator

Re: BIOS Trickboot vulnerability upgrade in an HA cluster

glad to hear it worked successfully