csmith@downtown:/tmp$ lxc exec test-27-f -- cloud-init status --wait --long
status: done
time: Wed, 28 Apr 2021 00:10:02 +0000
detail:
DataSourceNoCloud [seed=/var/lib/cloud/seed/nocloud-net][dsmode=net]
csmith@downtown:/tmp$ lxc exec test-27-f -- ua version
27.0~20.04.1 +allow_beta +extra_security_params
csmith@downtown:/tmp$ lxc exec test-27-f -- ua status
SERVICE AVAILABLE DESCRIPTION
cc-eal no Common Criteria EAL2 Provisioning Packages
cis no Center for Internet Security Audit Tools
esm-apps yes UA Apps: Extended Security Maintenance (ESM)
esm-infra yes UA Infra: Extended Security Maintenance (ESM)
fips no NIST-certified FIPS modules
fips-updates no Uncertified security updates to FIPS modules
livepatch yes Canonical Livepatch service
This machine is not attached to a UA subscription.
See https://ubuntu.com/advantage
csmith@downtown:/tmp$ lxc exec test-27-f -- ua attach <REDACTED_NO_APPS>
Enabling default service esm-infra
Updating package lists
UA Infra: ESM enabled
This machine is now attached to '<email address hidden>'
SERVICE ENTITLED STATUS DESCRIPTION
cc-eal yes n/a Common Criteria EAL2 Provisioning Packages
cis yes n/a Center for Internet Security Audit Tools
esm-apps no — UA Apps: Extended Security Maintenance (ESM)
esm-infra yes enabled UA Infra: Extended Security Maintenance (ESM)
fips yes n/a NIST-certified FIPS modules
fips-updates yes n/a Uncertified security updates to FIPS modules
livepatch yes n/a Canonical Livepatch service
NOTICES
Operation in progress: ua attach
Enable services with: ua enable <service>
Account: <email address hidden>
Subscription: <email address hidden>
csmith@downtown:/tmp$ lxc exec test-27-f -- grep Traceback /var/log/ubuntu-advantage.log
csmith@downtown:/tmp$ lxc exec test-27-f -- ua enable esm-apps
One moment, checking your subscription first
This subscription is not entitled to UA Apps: ESM
For more information see: https://ubuntu.com/advantage.
csmith@downtown:/tmp$ lxc exec test-27-f -- ua detach
Detach will disable the following service:
esm-infra
Are you sure? (y/N) y
Updating package lists
This machine is now detached.
csmith@downtown:/tmp$
csmith@downtown:/tmp$
csmith@downtown:/tmp$
csmith@downtown:/tmp$ lxc exec test-27-f -- ua attach <REDACTED_WITH_APPS_ACCESS>
Enabling default service esm-apps
Updating package lists
UA Apps: ESM enabled
Enabling default service esm-infra
Updating package lists
UA Infra: ESM enabled
This machine is now attached to 'UA Applications - Essential (Physical)'
SERVICE ENTITLED STATUS DESCRIPTION
cc-eal yes n/a Common Criteria EAL2 Provisioning Packages
cis yes n/a Center for Internet Security Audit Tools
esm-apps yes enabled UA Apps: Extended Security Maintenance (ESM)
esm-infra yes enabled UA Infra: Extended Security Maintenance (ESM)
fips yes n/a NIST-certified FIPS modules
fips-updates yes n/a Uncertified security updates to FIPS modules
livepatch yes n/a Canonical Livepatch service
NOTICES
Operation in progress: ua attach
Enable services with: ua enable <service>
Account: Subscription: UA Applications - Essential (Physical)
Valid until: 3999-12-31 00:00:00
Technical support level: essential
csmith@downtown:/tmp$ lxc exec test-27-f -- grep Traceback /var/log/ubuntu-advantage.log
csmith@downtown:/tmp$ lxc exec test-27-f -- apt install sympa=6.2.40~dfsg-4
Reading package lists... Done
Building dependency tree
Reading state information... Done
The following package was automatically installed and is no longer required:
libfreetype6
Use 'apt autoremove' to remove it.
The following additional packages will be installed:
apache2-bin apache2-suexec-pristine dbconfig-common default-mysql-server
....
Processing triggers for man-db (2.9.1-1) ...
csmith@downtown:/tmp$ lxc exec test-27-f -- ua fix USN-4829-1
USN-4829-1: sympa vulnerabilities
Found CVEs: https://ubuntu.com/security/CVE-2018-1000671 https://ubuntu.com/security/CVE-2020-10936 https://ubuntu.com/security/CVE-2018-1000550
1 affected package is installed: sympa
(1/1) sympa:
A fix is available in UA Apps.
{ apt update && apt install --only-upgrade -y sympa }
✔ USN-4829-1 is resolved.
csmith@ downtown: /tmp$ lxc exec test-27-f -- cloud-init status --wait --long
status: done var/lib/ cloud/seed/ nocloud- net][dsmode= net] downtown: /tmp$ lxc exec test-27-f -- ua version security_ params downtown: /tmp$ lxc exec test-27-f -- ua status
time: Wed, 28 Apr 2021 00:10:02 +0000
detail:
DataSourceNoCloud [seed=/
csmith@
27.0~20.04.1 +allow_beta +extra_
csmith@
SERVICE AVAILABLE DESCRIPTION
cc-eal no Common Criteria EAL2 Provisioning Packages
cis no Center for Internet Security Audit Tools
esm-apps yes UA Apps: Extended Security Maintenance (ESM)
esm-infra yes UA Infra: Extended Security Maintenance (ESM)
fips no NIST-certified FIPS modules
fips-updates no Uncertified security updates to FIPS modules
livepatch yes Canonical Livepatch service
This machine is not attached to a UA subscription. /ubuntu. com/advantage downtown: /tmp$ lxc exec test-27-f -- ua attach <REDACTED_NO_APPS>
See https:/
csmith@
Enabling default service esm-infra
Updating package lists
UA Infra: ESM enabled
This machine is now attached to '<email address hidden>'
SERVICE ENTITLED STATUS DESCRIPTION
cc-eal yes n/a Common Criteria EAL2 Provisioning Packages
cis yes n/a Center for Internet Security Audit Tools
esm-apps no — UA Apps: Extended Security Maintenance (ESM)
esm-infra yes enabled UA Infra: Extended Security Maintenance (ESM)
fips yes n/a NIST-certified FIPS modules
fips-updates yes n/a Uncertified security updates to FIPS modules
livepatch yes n/a Canonical Livepatch service
NOTICES
Operation in progress: ua attach
Enable services with: ua enable <service>
Account: <email address hidden> downtown: /tmp$ lxc exec test-27-f -- grep Traceback /var/log/ ubuntu- advantage. log downtown: /tmp$ lxc exec test-27-f -- ua enable esm-apps /ubuntu. com/advantage. downtown: /tmp$ lxc exec test-27-f -- ua detach downtown: /tmp$ downtown: /tmp$ downtown: /tmp$ downtown: /tmp$ lxc exec test-27-f -- ua attach <REDACTED_ WITH_APPS_ ACCESS>
Subscription: <email address hidden>
csmith@
csmith@
One moment, checking your subscription first
This subscription is not entitled to UA Apps: ESM
For more information see: https:/
csmith@
Detach will disable the following service:
esm-infra
Are you sure? (y/N) y
Updating package lists
This machine is now detached.
csmith@
csmith@
csmith@
csmith@
Enabling default service esm-apps
Updating package lists
UA Apps: ESM enabled
Enabling default service esm-infra
Updating package lists
UA Infra: ESM enabled
This machine is now attached to 'UA Applications - Essential (Physical)'
SERVICE ENTITLED STATUS DESCRIPTION
cc-eal yes n/a Common Criteria EAL2 Provisioning Packages
cis yes n/a Center for Internet Security Audit Tools
esm-apps yes enabled UA Apps: Extended Security Maintenance (ESM)
esm-infra yes enabled UA Infra: Extended Security Maintenance (ESM)
fips yes n/a NIST-certified FIPS modules
fips-updates yes n/a Uncertified security updates to FIPS modules
livepatch yes n/a Canonical Livepatch service
NOTICES
Operation in progress: ua attach
Enable services with: ua enable <service>
Valid until: 3999-12-31 00:00:00
Technical support level: essential
csmith@
csmith@
Reading package lists... Done
Building dependency tree
Reading state information... Done
The following package was automatically installed and is no longer required:
libfreetype6
Use 'apt autoremove' to remove it.
The following additional packages will be installed:
apache2-bin apache2-
....
Processing triggers for man-db (2.9.1-1) ...
csmith@
USN-4829-1: sympa vulnerabilities
Found CVEs:
https:/
https:/
https:/
1 affected package is installed: sympa
(1/1) sympa:
A fix is available in UA Apps.
{ apt update && apt install --only-upgrade -y sympa }
✔ USN-4829-1 is resolved.