PATCH MANAGEMENT

Bottom Line

Deploy Updates,
Identify Vulnerabilities,
and Create Custom Patch Policies
GET FREE NOW!

100% Free. No obligations.
No credit card details needed.
Patch Management

Patch Management allows you to:

  • Remotely deploy operating system updates for Windows based machines
  • View dashboard statistics for breakdowns of available updates for endpoint machines
  • Create policies to automatically apply updates to groups of tagged endpoints at scheduled times
  • Identify endpoints which contain vulnerabilities and need to be patched

What is Patch Management?

Patch management is the process that helps acquire, test and install multiple patches (code changes) on existing applications and software tools on a computer, enabling systems to stay updated on existing patches and determining which patches are the appropriate ones. Managing patches thus becomes easy and simple.

Patch Management is mostly done by software companies as part of their internal efforts to fix problems with the different versions of software programs and also to help analyze existing software programs and detect any potential lack of security features or other upgrades.

Software patches help fix those problems that exist and are noticed only after the software's initial release. Patches mostly concern security while there are some patches that concern the specific functionality of programs as well.

The way patches are delivered and applied has undergone a drastic change over the course of years. Earlier, during the days of the traditional fee-licensing software delivery, patches were delivered on external media as stand-alone code modules which would then be added to an already installed software program. But today, in the age of web-delivered systems and cloud-hosting models, it's all different. Patches today can be applied to software programs over the global IP network; they no longer have to be sent on external media. This is the age of automatic addition of software patches and upgrades.

A Patch Management software would scan systems and find out if further patches are needed, thereby helping companies ensure if the software programs they are using have all that's needed for full-fledged functioning.

Implement Patch Management with these 8 Easy Steps:

Comodo ONE performs automatic discovery of Windows systems (using Active Directory) to deliver intelligence that gives you a real-time view of your network:

  • Microsoft
  • Microsoft Security Bulletin
  • Application vendors
  • Common Vulnerabilities and Exposures (CVE) system
  • Automated crawler systems
  • And more
Automatic System Discovery

Comodo ONE performs automatic discovery of Windows systems (using Active Directory) to deliver intelligence that gives you a real-time view of your network:

  • Runs and collects the discovery over all managed endpoints
  • Scans networks for installed and missing security patches
  • Detects vulnerabilities
Prioritization and Scheduling

In-built categorization allows you to prioritize your patch deployments based on details like severity, vendor or type.

Critical patches and security patches can be automated and scheduled to run daily right out-of-the-box whereas, all other patches could be scheduled for the regular periodic maintenance window.

Change Management

Comodo ONE™ Platform enables you to track all changes done through your endpoint patch policies and the latest status of your network. Administrators can generate reports to track the applied patches as well as the missing patches and check the patch procedure details to see the successful operations as well as any failed deployment attempts.

Installation and Deployment

The patches are deployed based on the delta between endpoint and latest patch intelligence gathered. When configured on-demand or by policy, the agent applies the relevant updates and patches to create an efficient and fast process. The status of deployment is then updated in real-time in Comodo ONE.

The installation process can be scheduled or triggered on-demand based on existing procedure or selected patches and devices such as:

  • Automated patch deployment
  • Schedule by time, computer, group or user-defined collections of computers
  • Simultaneously deploy all required patches across machines
  • Combine your rollout strategy and policy enforcement in one tool
  • Maximize uptime by controlling schedules and reboot scenarios
Audit and Assessment

Every single application can be tracked and patched over your network in real-time and it provides:

  • Visibility into global patch inventory with each and every device that is applicable and their relevant status (eg: already deployed, in deployment or missing)
  • Research automation freeing you from the cumbersome process
  • Identification of which patches are installed and when
  • Sophisticated reports about status and the general assessment of your network
Consistency and Compliance

Comodo ONE Platform enables you to stay compliant on your entire network

  • Schedule the deployment of your patches on any configuration you prefer and Comodo ONE will deliver them precisely on schedule
  • Maintains consistency and compliance across all your devices and software
  • Monitors and maintains patch compliance for the entire enterprise
Testing

Patches can be deployed out-of-the-box or a workflow can be applied to validate them before auto installation. You can run tests on desired systems first in order to approve either single or bulk patches. Once satisfied you can mark them as approved or unapproved.

Your automation policies can deploy all patches matching the criteria you defined or only the approved patches matching the criteria you defined per policy.

Although Comodo does extensive and deep testing, we also empower our users to perform their own tests.

Our Customers' Success Stories
Patch Management FAQ

Answers to frequently-asked questions about Comodo ONE Patch Management

Technicians can run periodic Network Assessment scans at individual sites and take the time to review specific needs on a location by location (or client) basis.

Technicians can use the XP Migration Readiness Report to quickly identify XP machines with the information they need to determine whether the OS and machine should be upgraded or replaced.

Generate a professional IT SWOT analysis from assessments with these helpful tools:

  • IT Checklists ensure your techs follow your standard IT assessment procedures
  • Site Interview guidelines help techs follow best practices with a prescribed series of questions to ask during IT assessments
  • Network Surveys facilitate manual checks or inspections to supplement automated assessments

Comodo One Network Assessment Tool creates a list of findings and highlights issues and anomalies. It recommends possible solutions that could become new projects.

  • Simply run a report to identify a billable project with your existing clients and prospects

Comodo One Network Assessment Tool creates a list of findings and highlights issues and anomalies. It recommends possible solutions that could become new projects.

  • Simply run a report to identify a billable project with your existing clients and prospects

Did you find this article about Patch Management helpful?