Scalefusion Agent Based OS Update Management - Configure Settings
Managing Windows OS updates is one of the critical pieces of managing Windows 10 devices. It is important for organizations to define a policy that either automates or controls the various updates that Windows offers.
Windows Agent based Update & Patch Management feature is an automated patch management (scanning, assessment, deployment, monitoring and reporting) solution to keep all Scalefusion managed windows devices up-to-date with Windows OS updates thus keeping them secure.
With this feature IT Admins can manage Updates at Device level and Group level on Scalefusion Dashboard.
In this two-document series, first part describes the configurations needed to be done for Update Management and the second one covers the view of it and actions that can be taken on the updates.
What kind of updates can be managed?
Scalefusion managed Windows devices can detect and patch below types of Updates:
- Software Updates
- Critical Updates
- Definition Updates
- Feature Packs
- Security Updates
- Service Packs
- Update Rollups
- Quality updates
- Driver Updates
Before You Begin
- Users should be subscribed to Legacy or Modern Enterprise Plan.
- Devices should be enrolled with Scalefusion.
- Scalefusion MDM Agent's (for Windows) latest version (v6.0.0) should be installed on devices.
- Device configurations - Windows 10, and Windows 11 supporting 32-bit and 64-bit OS Update.
How does it work
- Configure Settings for Agent Based OS Update Management from Scalefusion Dashboard
- Based on the configurations, the Windows MDM agent queries and syncs the updates with the managed devices.
- Get a summarized view of the status of updates, device as well as updates wise and perform certain actions on them like sync, install, hide and also download CSV reports.
These are described in detail below
Configuring Settings for Agent Based OS Update Management
- Login to Scalefusion dashboard and navigate to Update & Patch Management on left panel
- Click on Configure
- The OS Update Management Settings dialog box opens where you can configure global settings for syncing updates.
Enable Scalefusion MDM agent based Update Management
This is a toggle. Toggling this to ON only enables MDM agent based update management and allows to configure rest of the settings.
Configure Update Sync Interval
Configure the time interval how often the agent queries and syncs the available OS updates to our backend. Following are the options to choose from:
Sync Driver Updates
If this setting is toggled on, the agent queries and syncs Windows driver updates also, along with Windows software updates.
Force Reboot Devices after Updates
Configure what the device reboot behavior should be, once an update is installed, from the following options:
You can also configure a message that is displayed to the users before the devices are rebooted. It can be composed in the text area below this setting
Configure Update Schedule
Configure when the updates should be installed on device once they are initiated from the Dashboard. This includes:
- After configuring the settings, click Save
These settings can also be configured at device profile level which will apply to the devices with that profile.
To configure Update settings at profile level:
- Navigate to Device Profiles & Policies > Device Profiles
- Create or Edit Windows Device Profile on which updates have to be configured
- Go to Settings > Windows Updates
- The settings can be configured under Scalefusion Agent based Settings tab after toggling on Override Global MDM Agent Update Settings
Now that configuration is done, you can view the status of updates on Dashboard and perform other actions. The next document explains it.