Include as a collaborator on all tickets by default
Security Updates are implemented using a semi-automated queue. At this time, Acquia initiates automated updates as follows:
When a core security update is announced on drupal.org. The queue will be initiated within 24 hours of the release. Subscribers should receive tickets within 24 to 48 hours.
Production websites are periodically scanned for core and module security updates.
Subscribers can specifically request updates.
After the queue is initiated, update automation will detect security updates, start the update process, and create a new ticket notifying your team an updated branch is ready to test on the RA environment.
Acquia implements security updates depending on your subscription preferences:
Inform Only subscriptions: Acquia sends a security update notification for Drupal Core SA releases within 24 to 48 hours of the announcement. These tickets are only for notification purposes and do not require any action. They will be resolved. To update your subscription, set your preferences to Full Deploy, provide your response in the initial ticket, and resolve it. Acquia will create an update and a new ticket in the next weekly run for your subscription.
Full Deploy subscriptions: Acquia’s RA team will update all Full Deploy subscriptions by using an automated process. Your team will receive a new ticket detailing all the changes after updates have been deployed and are ready for testing on the RA
All security updates are implemented as follows:
After Acquia deploys an update and sends a ticket, the time to solve the ticket depends on testing and troubleshooting.
Moving through each update step requires your approval. Acquia will not deploy a secure branch to either your testing or production environment without explicit approval by a member of your team.
After you approve a tag, Acquia moves the website to production as soon as possible, or during a scheduled and approved deploy window. The scheduled and approved deploy window must be set in RA preferences.
To deploy an update to production at a specific time, set a deploy time in your RA preferences. If you do not set a specific time, the system deploys the update immediately post your approval. This service is available every day.
Be aware of the following items when requesting to schedule production deploys:
To allow time for scheduling, all requests must be made with a minimum of one full business day’s notice. Although we can’t guarantee a window with fewer than 24 hours’ notice, Acquia will try to accommodate these requests, when possible.
Be sure to provide a one-hour window in your preferred time zone for the deploy, and clearly state your time zone in the ticket. Acquia will confirm the window.
Production deployment requests are not monitored. If you experience issues in your production deployment, file a critical support ticket adhering to standard procedures for critical support, and reference the RA update ticket.
If your production deployment does not get completed as expected, the system notifies you. You must review, make the necessary changes, and let Acquia know by updating the existing ticket to reschedule the deployment.
If this content did not answer your questions, try searching or contacting our support team for further assistance.
To ensure specific team members receive notifications, on your Teams and Permissions page, add the following permission to the appropriate team members:
Include as a collaborator on all tickets by default
Security Updates are implemented using a semi-automated queue. At this time, Acquia initiates automated updates as follows:
When a core security update is announced on drupal.org. The queue will be initiated within 24 hours of the release. Subscribers should receive tickets within 24 to 48 hours.
Production websites are periodically scanned for core and module security updates.
Subscribers can specifically request updates.
After the queue is initiated, update automation will detect security updates, start the update process, and create a new ticket notifying your team an updated branch is ready to test on the RA environment.
Acquia implements security updates depending on your subscription preferences:
Inform Only subscriptions: Acquia sends a security update notification for Drupal Core SA releases within 24 to 48 hours of the announcement. These tickets are only for notification purposes and do not require any action. They will be resolved. To update your subscription, set your preferences to Full Deploy, provide your response in the initial ticket, and resolve it. Acquia will create an update and a new ticket in the next weekly run for your subscription.
Full Deploy subscriptions: Acquia’s RA team will update all Full Deploy subscriptions by using an automated process. Your team will receive a new ticket detailing all the changes after updates have been deployed and are ready for testing on the RA
All security updates are implemented as follows:
After Acquia deploys an update and sends a ticket, the time to solve the ticket depends on testing and troubleshooting.
Moving through each update step requires your approval. Acquia will not deploy a secure branch to either your testing or production environment without explicit approval by a member of your team.
After you approve a tag, Acquia moves the website to production as soon as possible, or during a scheduled and approved deploy window. The scheduled and approved deploy window must be set in RA preferences.
To deploy an update to production at a specific time, set a deploy time in your RA preferences. If you do not set a specific time, the system deploys the update immediately post your approval. This service is available every day.
Be aware of the following items when requesting to schedule production deploys:
To allow time for scheduling, all requests must be made with a minimum of one full business day’s notice. Although we can’t guarantee a window with fewer than 24 hours’ notice, Acquia will try to accommodate these requests, when possible.
Be sure to provide a one-hour window in your preferred time zone for the deploy, and clearly state your time zone in the ticket. Acquia will confirm the window.
Production deployment requests are not monitored. If you experience issues in your production deployment, file a critical support ticket adhering to standard procedures for critical support, and reference the RA update ticket.
If your production deployment does not get completed as expected, the system notifies you. You must review, make the necessary changes, and let Acquia know by updating the existing ticket to reschedule the deployment.
If this content did not answer your questions, try searching or contacting our support team for further assistance.