Why Patching with OpsRamp?
With the aid of the OpsRamp patch management solution, you can automate the entire patch management process without no cost, from the identification of missing patches to the process of patch deployment to endpoints.
This helps in the reduction of system failures, allowing you to increase production while reducing the costs associated with improper patch management. Instead of manually maintaining patches and upgrades on your network’s numerous devices, you can focus on key business tasks that enhance revenue with automated patch management.
Advantages of Patching with OpsRamp
There are numerous benefits to OpsRamp Patch management, some of which are highlighted below:
- Out of box platform feature with no extra cost.
- There is no need for a separate agent to perform Patching activity including Patch Automation.
- Easy to setup the entire patch activity flow from scan to installation.
- Agent deployed devices also configured for monitoring on the same platform which helps in tracking the device status during pre and post patching.
- Visibility at the partner and customer levels, particularly for MSPs where managing patches is quite simple.
- Easy steps for patch approval, installation, monitoring, and notification configurations.
- Custom jobs can be scheduled to completely automate the execution of external patch automation scripts.
- Custom setup that reduces the need for manual intervention both during and after the patching activity
- Custom scripts for Windows and Linux that make use of the Run Book Automation (RBA) capability and make RBA scripts accessible to partners and customers for maximum control.
- Patch Dashboards that come pre-configured with easy customizable widgets, readily available reports, and analyses of device status are available.
- Controlled patch activity related alerts and easily customizable notifications.
- All Patch Management capabilities are supported at both client and partner levels.
Standard Patch Workflow
Key steps to the patch management process include:
- Patch Feed Setup: Patch feed is a source of published patch information including all the available patch attributes. You can setup patch feed through:
- Platform integration with vendor sites.
- WSUS (Windows Update Service)
- Missing Patch Scan:
- You can create jobs to automate the process for missing patches for one time or scheduled for the specified time and date.
- You can view scanned missing patches.
- Patch Configurations: You can schedule patch configurations on a periodic or on-demand basis. Once missing patches are identified:
- Approve the missing patches - Manually or Automatically
- Agent initiates the downloading of the approved missing patches
- Enable maintenance windows during the Patch installation to suppress the alerts
- Install the downloaded missing patches
- Patch Compliance: Compliance is a metric that provides the number of uninstalled patches in the baseline on a device. You can view the patch compliance status.
- Reports and Dashboards: Use the readily available Reports and Dashboard widgets to view the patch and device status against the user defined compliance criteria.
Supported Patch Categories
- Security and Critical: Security patch updates can fix vulnerabilities to new attacks that have cropped up and Critical Patch Updates are collections of security fixes for Oracle products.
- Definition Updates: Definition updates is regularly downloading updates to the definition files that are used to identify spyware and other potentially unwanted software.
- Feature Packs: Feature Pack is a pack of updates that contains fixes, enhancements, performance improvements, and so on.
- Service Packs: A service pack is a collection of updates and fixes, called patches, for an operating system or a software program.
- Updates: An update is new, improved, or fixed software, which replaces older versions of the same software. For example, updating your operating system brings it up-to-date with the latest drivers, system utilities, and security software.
- Update Rollups: Rollup updates is a cumulative setup of hotfixes that contains security updates, and critical updates that need to be deployed immediately.
Classic Patch Management Vs Patch Management
The following table summarizes the feature differences between OpsRamp Classic Patch Management Vs Patch Management.
Feature | Classic Patch Management | Patch Management |
---|---|---|
Overview | ||
✗ | ✓ | |
OpsQL for Patches & Resources | ||
✗ | ✓ | |
Schedule for Scan & Install | ||
✓ | ✓ | |
Notifications for out of Platform users | ||
✗ | ✓ | |
Single Page Navigation | ||
✗ | ✓ | |
Patch feed integration required | ||
✓ | ✗ | |
Auto Patch Scan | ||
✗ | ✓ | |
Parent Level Rating | ||
✓ | ✓ | |
Patch Progress | ||
✗ | ✓ | |
Audit logs for all the actions | ||
✗ | ✓ | |
Partner level Patch Configuration | ||
✗ | ✓ | |
Patch Compliance | ||
✗ | ✓ | |
Patch Configurations & Scan | ||
✓ | ✓ | |
Quick Actions on Patch | ||
✗ | ✓ | |
Bulk Operations | ||
✗ | ✓ | |
Snapshots and Metric Graph | ||
✗ | ✓ | |
Schedule for Scan & Install | ✓ | ✓ (Advanced) |