Patch Management & Server Provisioning

Centrally Manage the Server Lifecycle

We support your servers throughout their entire lifecycle: installation, configuration, patch management, and decommissioning. Using Foreman, we’re setting up a central hub for this, and Ansible handles the detailed configuration. This way, you can see the status of the servers at a glance at any time.

One interface for everything

Provisioning, configuration, patches, and status are all managed centrally in Foreman. You no longer need separate tools for this.

Servers in Minutes

Foreman automatically provisions bare-metal servers and VMs based on a template. You no longer have to install a machine manually.

Patch Management

You can view all patch statuses in one place and roll out updates in controlled waves. No more flying blind when it comes to keeping your systems up to date.

Entire Life Cycle

Initial installation, ongoing operation, and controlled decommissioning all take place in one location.

Foreman + Ansible

Foreman handles provisioning, patch management, and the lifecycle, while Ansible takes care of the fine-tuning. This creates a seamless process.

All in one place

We offer you one-stop solutions for your patch management and server provisioning, including consulting, setup, operation via MyEngineer, and training.

Common Problems

Without centralized control, every server installation becomes a manual process. The status of the patch remains unclear. The life cycle is broken down into separate tools.

Server installation takes days

Setting up each machine by hand is slow and inconsistent. With each new system, the game starts over.

No one knows the condition

Which server has which patch status and which version? Without centralized patch management, it’s just a guess. That’s a security risk.

A Lifecycle Without a Common Thread

Provisioning, patch management, and decommissioning are handled by separate tools and scripts. That way, you don’t have a comprehensive overview.

How we work with you

Four steps lead to a centrally managed server lifecycle during ongoing operations.

Step 1

Analysis & Concept

We assess the inventory, provisioning needs, and patch and compliance requirements, and define the lifecycle model.

→ A life cycle that fits your environment.

"
Step 2

Setup & Integration

We are setting up Foreman as the central hub. This includes provisioning templates, the Ansible integration, and workflows for your patch management.

→ A single interface covering everything from installation to patch management.

"
Step 3

Commissioning & Provisioning

Go-live: New servers are automatically created based on a template, and patches are rolled out centrally and in a controlled manner.

→ Provisioning at the push of a button instead of days of manual work.

"
Step 4

Support & Operations

We maintain and expand the playbooks. Upon request, we can take over operations via MyEngineer or train your team.

→ Patch management and the server lifecycle remain under centralized control at all times.

The Life Cycle Under Control

From deployment to configuration to decommissioning, these four stages are interlinked.

Bare-Metal Provisioning

Deploy

Foreman automatically installs bare-metal servers and VMs based on a template. This is done using PXE, images, and provisioning templates.

Result: New systems in minutes instead of hours.

Configuration

Configure

Immediately after provisioning, Ansible handles the fine-tuning. This includes packages, services, and settings.

Result: Servers ready for use without any manual follow-up work.

Patch Management

Patching & Updating

In Patch Management, you can view all patch statuses in one place. Roll out updates in a controlled manner and in waves.

Result: up-to-date, secure systems that operate without flying blind.

Server Lifecycle Management

Manage & Dismantle

Inventory, ongoing operations, and controlled decommissioning can be fully traced.

Result: Every server remains in a known state until the very end.

Your Results in Everyday Life

Faster Deployment · Complete Overview · Controlled Updates

Deploy Faster

New servers are automatically provisioned in minutes instead of hours. They are configured for immediate use based on the template.

A Complete Overview

An interface shows you the status of each server, including the version and patch status.

Knowledge in Code

Your setups are documented and shared with the team. They are not attached to specific individuals.

What is your solution built with?

Tried-and-true open-source components for your patch management and server lifecycle, operated in-house or via NETWAYS Web Services. You decide what you’ll do yourself and what we’ll take care of.

Foreman

Foreman is the central hub for provisioning, lifecycle, and patch management: initial installation, inventory, and content views all come together here.

Ansible

Ansible handles the fine-tuning immediately after provisioning. This runs agentlessly via SSH and can be reproduced using a playbook.

GitLab

GitLab version controls templates and playbooks and executes them as part of CI. Provisioning and configuration are thus implemented as code.

Icinga

Icinga monitors the deployed systems from the very beginning. This way, you can keep an eye on every server right from day one.

We’ll integrate what you’re already using with

Foreman manages the lifecycle across many platforms and operating systems. A selection of what we typically connect.

Provisioning

  • PXE / Boot
  • Images
  • Bare Metal
  • Virtual Machines

Operating Systems

  • RHEL / CentOS
  • Debian / Ubuntu
  • SUSE
  • Windows

Operations & Quality

  • Icinga
  • Reporting
  • Compliance
  • MyEngineer

Platforms & Hypervisors

  • VMware
  • Proxmox
  • libvirt / KVM
  • Cloud

Configuration & Lifecycle

  • Ansible
  • Foreman
  • Content Views
  • Patch Workflows

Questions & Answers

Frequently Asked Questions About This Solution

What is provisioning?

2
3
Provisioning refers to the automated deployment of servers. The foreman installs the operating system, performs the basic configuration, and gets the system up and running. Instead of setting up each machine manually, new systems are created in a reproducible manner based on a template, for example, via PXE boot or images.

What is patch management?

2
3

Patch management refers to the entire process of identifying, testing, and deploying security updates and patches for your systems. The goal is to keep servers up to date and secure without disrupting ongoing operations. With Foreman, you can make this process centrally visible and manageable.

What is Foreman?

2
3
Foreman is an open-source tool for managing the lifecycle of physical and virtual servers. It handles provisioning, inventory management, integration with Ansible, and patch management. A central interface shows you the status of each system at any time, whether during installation or while the system is running.

How do I automate provisioning?

2
3
By defining templates for installation and basic configuration and rolling them out using a tool like Foreman. This works via PXE boot or through images, for bare-metal servers as well as for VMs. Ansible then handles the fine-tuning. NETWAYS sets up this pipeline for you so that new servers can be created with the click of a button and in a reproducible manner.

Foreman vs. Ansible – What's the Difference?

2
3
Foreman covers provisioning and lifecycle management—that is, deployment, inventory, and patch management—throughout the entire lifecycle of a server. Ansible specializes in configuration management and handles the setup and maintenance of software on the systems. The two complement each other: Foreman provides the infrastructure, and Ansible configures it.

What is patch management with Foreman?

2
3
Patch management with Foreman provides a centralized view of the patch statuses of all systems. You roll out updates in a controlled manner—for example, first on test systems and then on production systems. This way, your servers stay up to date and secure without you having to keep track of each host individually.

Is this also available as a managed service?

2
3
Yes, it's also available as a managed service. Upon request, NETWAYS will manage the operation of your provisioning and lifecycle platform through MyEngineer, including maintenance and patch management workflows. You use the central interface; we keep the underlying infrastructure up to date and available.

We look forward to your message






    captcha