I don't have an exact date for you, but the support team with Isilon has been instructing people that the article you provided will be updated with more information as it is available. At this time, your best bet is to continue checking the article for further updates.
The key with meltdown is ability to execute local code on the hardware. If you only allow ssh access to trusted parties the only risk would be a remote exploit. I have no firsthand knowledge of EMC or OneFS development but given the fact that it borrows heavily from FreeBSD and, last I checked, they are still working on a patch I would expect a full mitigation to be a ways out. Unfortunately FreeBSD was left out of the embargo so they are still playing catch-up and it's likely that backports and/or testing will take some time.
sjones51
252 Posts
0
February 5th, 2018 08:00
Hi Nirvik,
I don't have an exact date for you, but the support team with Isilon has been instructing people that the article you provided will be updated with more information as it is available. At this time, your best bet is to continue checking the article for further updates.
http://support.emc.com/kb/516117
Eric_W1
33 Posts
0
February 6th, 2018 10:00
The key with meltdown is ability to execute local code on the hardware. If you only allow ssh access to trusted parties the only risk would be a remote exploit. I have no firsthand knowledge of EMC or OneFS development but given the fact that it borrows heavily from FreeBSD and, last I checked, they are still working on a patch I would expect a full mitigation to be a ways out. Unfortunately FreeBSD was left out of the embargo so they are still playing catch-up and it's likely that backports and/or testing will take some time.
speedstep
9 Legend
•
47K Posts
0
February 3rd, 2020 15:00
https://support.microsoft.com/en-us/help/4073119/protect-against-speculative-execution-side-channel-vulnerabilities-in
https://www.grc.com/inspectre.htm
Not all cpus will EVER get updates
https://support.microsoft.com/en-us/help/4090007/intel-microcode-updates