Submission + - Keeping up with security requirements in Linux.
I have called Novell to ask about it. When vulnerabilities are found in software, they backport the patches into whatever version of the software they are currently supporting. The problem here is that doesn't give me a guarantee that the backport fixes the problem for which this upgrade is required (My requirements say to install version x or higher). There is also the question of how quickly they are providing the backports.
I'm hoping that there are 100's of DoD Linux administrators reading this who can bombard me with solutions. How do you balance security with stability?