Next Topic

Previous Topic

Book Contents

Patch Management Overview

Use the Patch Management overview to monitor, scan, install, and verify Microsoft patches on managed machines. Patch management automates the process of keeping all your machines up to date with the latest patches. You decide how and when updates are applied on a per machine basis. See Methods of Updating Patches, Configuring Patch Management, Patch Processing, Superseded Patches, Update Classification and Patch Failure for a general description of patch management.

Functions

Description

Scan Machine

Determine what patches are missing on managed machines.

Patch Status

Display a summary view of installed, missing and denied patches for each managed machine.

Initial Update

Perform one-time processing of all approved patches on managed machines.

Pre/Post Procedure

Run procedures before and/or after patch Initial Update and Automatic Update.

Automatic Update

Update missing approved patches on managed machines automatically on a recurring basis.

Machine History

Display a detailed view of patch scan results for each managed machine.

Machine Update

Schedule the installation of missing patches for an individual machine.

Patch Update

Apply individual patches to multiple machines.

Rollback

Uninstall patches from managed machines.

Cancel Updates

Cancel pending patch installations.

Create Delete

Create and delete machine patch policies.

Membership

Assign machine IDs as members of one or more patch policies.

Approval by Policy

Approve or deny patches by patch policy.

Approval by Patch

Approve or deny patches by patch.

KB Override

Override patch policy default approval status by Microsoft knowledge base article.

Windows Auto Update

Remotely set the Windows Automatic Updates settings on selected machines.

Reboot Action

Determine whether or not to reboot the machine automatically after installing new patches.

File Source

Specify where each machine gets new patch installation files from.

Patch Alert

Configure alerts for patch-related events, such as when a new patch becomes available for a managed machine.

Office Source

Specify an alternate source location for MS Office installation files.

Command Line

Set the command line parameters used to install patches.

Patch Location

Specify the URL to download a patch from, when the system can not automatically locate it.