PostGresql versions on Privilege secure

Hi - our PAm server now has 3 versions of of Postgresql - i believe all installed as part of PAM versions over time.

  • Stealthbits v12
  • Postgresql 16
  • Netwirx Postgresql v16

Is it safe to remove all but the Netwrix version since my vuln scanner very noisy about the older versions ?

Thanks

Hey Craig,

Welcome to the Community! You can uninstall and delete the Postgres12 folders once you’ve migrated to 16 and are comfortable all is going well. The installers for “PostgreSQL 16” and “Netwrix PostgreSQL v16” are both required (it’s only PostgreSQL 16 with our customizations) so do not uninstall either. Once you remove v12 your vuln scanner shouldn’t be so angry!

Here’s one of my lab servers Apps & Features page for reference.

Let us know if you have any other questions and welcome to the community again!

Regards,

Adam

3 Likes

Thanks for the reply.

I have removed v12 - can i presume that the remaining entries in APPs get the relevant updates when we upgrade PAM ?

  • Netwrix postgresql v16.3.92.0
  • Postgresql v16.3-1

thanks in advance

Hi Craig,

Yes - the NPS installer will handle any relevant PostgreSQL updates.

- Dan

Hi Dan and thanks for clarifying.

Unfortunately our Vuln Scanner still has an issue with the remaining Postgesql 16.3 - please see below

We recently updated to Version 25.9.3002.0

CAn you please advise ?

Hi Craig,

Can you please open a support ticket regarding this? That way it can get escalated to R&D.

- Dan

2 Likes

Thanks to all the team(s) for looking into this. Incase anyone is searching this forum ill put in the resolution :

You can perform an in-place PostgreSQL upgrade to version 16.10 as it is tagged as not vulnerable by the scanner.

Please do note that you can only do this for Minor version upgrades (ex. 16.3 to 16.10), but Major version upgrades are not recommended.

Thanks All !!

2 Likes

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.