URGENT - Time to fix and provide a total Patching solution

URGENT - Time to fix and provide a total Patching solution

In the past I have reported that Desktop Central Patch Management is not doing the job that was presented on the website and by the sales team at Manage Engine. Several times we have reported that the system is NOT fully patching all of the missing patches on our systems. We work diligently to make sure  that our systems get fully patched to mitigate vulnerabilities that are present on the systems. Every month, we have to spend additional time validating that all of the patches get applied to our systems, which is now becoming a very pain staking process;

  1. Review the patch list presented in a report from Desktop Central.
  2. Notify users that patches will be applied on such & such date and time.
  3. After the patching window, work with the vulnerability tool, Macafee Vulnerability Manager, to verify that the patches are complete and close the vulnerability ticket.
  4. If the vulnerability has not been mitigated, manually work the ticket to closure. More than 90% of the time it is a patch that Desktop Central has failed to recognize, therefore fails to patch. 

I have been told in the past that Desktop Central Patch Management only applies the Security and High severity patches. We are having to go back to Microsoft and either  download the patches manually, or visit Microsoft Update through the OS to get the remaining patches. In my very disappointed and strong opinion, THIS IS UNACCEPTABLE! We have recently experienced that Windows 7 workstation had 700 vulnerabilities, the system was patched by Desktop Central down to 0 patches required. Out of the 700 vulnerabilities, all but 64 were closed. Microsoft Update reports that an additional 34 patches were needed, eventho Desktop Central is reporting 0 patches missing. This is just one example of 1 workstation. To work this issue to completion required a System Administrator to spend approximately 5 hours mitigating all of these vulnerabilities. There are close to 300 workstations with similar vulnerabilities. A total solution should pull all of the patches for the Operating System for Windows, Linux, Mac, etc. If you really want to help your customers, then I would think that you would be focusing on how you can help the system administrators do their jobs more efficiently by providing a fully enhanced product that gives worry free results.

I really don't think that the development staff of Patch Management get the point for patch management. The Manage Engine management staff, CIO, CEO, COO, Department Heads,
really needs to take this complaint serious enough to start listening to the people that actually are using this system and fix this issue. Patching systems in regards to the security of the environments which we are trying to maintain and with the shrinking budgets, multiple attempts by the "bad guys" trying to get to the systems we all are trying to protect, is becoming more difficult to achieve.

Don't get me wrong, we do like the tool that we pay each year to keep! But this is one area that we were convinced by your staff that we could totally rely on, which is turning out to be false. 

                New to ADSelfService Plus?