DesktopCentral patch reports
Hi All, please point me in the right direction if i am missing anything but the reporting on patch management seems very limited. am i able to report on a select number of machines? if i wanted to show only servers that are missing updates. who do i run a report that shows which patches were successfully deployed to 1 machine in particular? will i have to request these reports everytime? thanks Russ
LAN vs. Roaming Agent Usage
I am not seeing significant differences in how the LAN vs. Roaming Agents operate. I have laptop users that leave the LAN, but still appear to be contacted, scanned and patched. Other than identifying a Remote Office that is associated with an IP range so the client will contact the correct distribution server, is there a difference? I just want to confirm IF I should be using the Roaming Agent and when... Thanks in advance!
Best Practice for WSUS and Desktop Central
We are using Desktop Central now to manage Windows updates for all of our workstations. We were using WSUS. Right now they are both running. We will continue to use WSUS for server updates. Is it okay to leave the workstations still setup with the GPO for WSUS? The boss wants to just leave everything as it is. Are there any issues with PCs using both WSUS and Desktop Central?
ManageEngine: When to Use Local vs. Remote Offices / Laptops?
We have a single domain, but have several travelers (e.g. road warriors that may be on the road for 30 days). While I currently have all systems setup within the Local Office, is that the proper use case for my road warriors? Should they be assigned to a Road Warrior remote office with Direct Communication instead of the Local Office or will they still scan and patch even if they are gone for 30 days? What is the recommended model and proper use case for these travelers or my other travelers
Problem while downloading the patch from server
Hi I'm having trouble deplying patches from our installation of Desktop Central 8. The patches have been successfully downloaded and are in the software repository, but whenever I try to install them to any client machine, it fails with the error "Problem while downloading the patch from server" Where can I look for logs with more details of what's actually causing this error? Thanks, David
Running a script after automated patching.
Is there a way to execute a script after automated patching? We have hard drive encryption software on our laptops and we need to run a script to skip the encryption software when it reboots.
Java Updates
I had seen a post a while back stating the Java download had been fixed Manual mode download of Java Update but I am having an issue. When I try to download the file through DC I get the error: 1 >> Downloading patch jre-7u25-windows-i586.exe . Please wait... 2 >> jre-7u25-windows-i586.exePatch status : Bug in authorization handling: server refused the given info 10 times I have manually downloaded the file giving it the name 300599-jre-7u25-windows-i586.exe. When I sync the database according
New false positive for patch 7753 (MS09-060) Outlook 2003 security update
This morning I'm seeing a whole bunch of hosts (supposedly) missing patch 7753 (MS09-060), a security update for MS Outlook 2003 (KB973705). Only problem is, the machines are running MS Office 2010. On one machine, I tried manually installing the patch, and I was informed the prerequisite software isn't installed -- which I kind of figured. Are you getting other reports of this issue? I'm on the latest available release of Desktop Central and I've just refreshed my patch database a half hour
ManageEngine Desktop Central : May 2013 - Patch Tuesday support status update
Hi Folks Just a quick update on the May patch Tuesday update. Updates Supported by Desktop Central for - May 2013 : Security Updates : Bulletin ID Bulletin Title Update ID Supported Status MS13-037 Cumulative Security Update for Internet Explorer (2829530) KB2829530 Supported MS13-038 Security Update for Internet Explorer (2847204) KB2847204 Supported MS13-039 Vulnerability in HTTP.sys Could Allow Denial of Service (2829254) KB2829254 Supported MS13-040 Vulnerabilities in .NET Framework Could Allow
URL link invalid.
I was checking my automated deployment status when I noticed that there was a warning indicating that not all patches were deployed due to it not being able to download some patches from the server. This has a link to read more detail on the error. When I click on the link it gets a page can not be displayed error because of the URL that the page is trying to go to. The URL that the link refers to is: http://www.http//www.manageengine.com.com/products/desktop-central/patch-management-not-all-missing-patches-could-be-deployed-due-to-patch-download-failure.html?dci
Deploying 600034-JavaForOSX2013-004
I am having problems delploying this patch to our Mac OS machines. The configurations get "Download failed" errors. I have tried to download the patches but i get a checksum error from Desktop central. I went to Oracle and tried to manually download the patch and rename it and put it in depository folder but it still fails. All my other patches are working fine and there's plenty of space on the server. Our webfilter/firewall are also not affecting this machine. Is there anything else I can try to
Mozilla Firefox 22 showing as an OS update
Apologies if this has already been asked: It appears that Mozilla Firefox version 22 is known to Desktop Central patch database, but it's showing up as an OS patch instead of third party. This is happening consistently across our 150 managed clients, and it hasn't ever happened with prior versions of Firefox. Is this a known bug, or is Firefox now considered part of Windows 7/Windows XP by Zoho Corp? Thanks.
Download selected patches
Hello. Yesterday, we tried downloading selected patches, but DC ended up downloading other patches we did not select. Here is what we did: Clicked Latest Patches Filtered by Windows and then individual severity (All but Unrated) Each time we chose a different severity to filter by, ew selected all patches listed and marked as Approved. We then selected all listed patches from the filter set and selected Download Patches. The process started; however, it appears all patches listed under as Latest
Patch scan failed on CentOS
Hi. First time for me. I installed agent on Centos7 and CentOS8, both agent is look well but I found issue when I try to scan patch. It's show "Failed due to incorrect meta files. Ensure that the vulnerability database is up to date. If still issue persist
Patch failed
I have a lot of computers with patch KB2820197 as Deployment failed I can find the reason for failure ???. The installation manual patch works perfectly 98742 MSWU-581 Cumulative Security Update for ActiveX Killbits for Windows XP (KB2820197) Microsoft Unrated Approved Error grave durante la instalación. may 14 2013 PatchID : 98743 PatchName : WindowsServer2003-KB2820197-x86-ENU.exe BulletinID : MSWU-581 MS KnowledgeBase : 2820197 Severity : Unrated Reboot : Required Download Status : Downloaded
Require Reboot
I installed some patches to some PC's through Desktop Central 8. When I went back to look at the PC's where the patches were installed, under Remarks it said Reboot Required. I had the user reboot and the message was still there. How long does it take for Desktop Central to update this message? Also is there a way for me to get a report of all the PC's that has been logged in within the last month?
Deploying patches even if some are not downloaded
Can you add an option when deploying patches like the one in "Automate patch deployment" where even if some files are failed to download the configuration continues with available patches already downloaded . Since we have to manually remove "failed to download" updates in order for the configuration to deploy and we don't want to use "automate patch deployment" for some domains. Thanks
Unable to deploy XP SP3
It looks like Desktop Central is downloading a different patch, even though SP3 is chosen as the service pack to deploy. We're getting a "problem downloading service pack from server" error. This is what shows up in the downloaded patch section instead of SP3. PatchID : 90130 PatchName : WindowsXP-KB925877-x86-ENU.exe BulletinID : MSWU-089 Download Status : Downloaded [ 3476.88 KB] Bulletin ID : MSWU-089 Posted On : 2007-04-24 Updated On: 2007-04-24 FAQ Page : NA
Patch schedule setup clarification
I've been reading related posts here, but I'm still a little unclear on the exact behavior of the APD configurations, based on what I'm seeing. Here's what I'm trying to accomplish. Patch computers overnight within a 6 hour window. Use WOL to get as many computers as possible. Shutdown the computer when finished. End. Next Day. Patch computers that still need patching in the middle of the day. No prompts at all while the user is logged in, and do NOT shutdown or restart. End. I've seen computers
All computers missing patch MS11-042 this morning?
For some reason all my computers are saying they are missing patch MS11-042, which is a patch released in 2011. The deploy will fail with "Unknown Error. Code : -2145124329". When I attempt to install the patch manually on a test system, it says that this patch is not applicable.
Stopped download in middle
Hi There, I have 2 questions about Desktop Central. - The Central Desktop allows you to configure the QOS agents and Distribution servers? - Downloads of patches interrupted in the middle, resume from scratch, or agent and can restart the download where it left off? Regards. Rodrigo Miranda. Mirandell Sistemas.
Some Patches not shown in Applicable Patches
Dear Manage Engine, I've been notice this problem since version 7 and version 8, the Applicable Patches not shown all patches but only show the new patches or some old patches. For example i would like to deploy patches KB958644, KB958687 and KB2121440 for Windows XP, i've success download them and deploy to agent. But from 3 patches i've deploy i'm only seen KB958644 in the Applicable Patches. I've include the attachment Is there anyway that i could put all All Supported Patches into Applicable
"Community updates"... does this feature work?
I have about 830 unidentified applications in my inventory, and only 16 of them were identified as "commercial". But the majority of the unidentified ones are applications that are just minor version revisions of commercial software. For example, "Adobe Acrobat" was listed as "commercial" automatically. However, "Adobe Acrobat X Standard - English, Français, Deutsch", version 10.1.6 and 10.1.7 both were listed as unidentified. Also, I have dozens of "Adobe Flash Player 11" that are listed as unidentified.
custom query
Is there a way to add to my custom query to see what configuration applied the patch. If i create custom query like: Select b.RESOURCE_ID, b.NAME, a.Patch_ID, LONG_TO_DATE(Installed_TIME) from InstallPatchStatus a, resource b where a.Installed_Time >= DATE_TO_LONG(04/04/2013 00:00:00) and a.Installed_Time < DATE_TO_LONG(04/05/2013 00:00:00) and a.resource_ID=b.resource_ID and b.name like '%MWR????33%' It will return: RESOURCE_ID NAME PATCH_ID INSTALLED_TIME 22811 MWR????33 10046 Apr 04,2013 02:47:09
Microsoft Office 2011
Now that Desktop Central supports patches on the Mac, does it support updates for Microsoft Office 2011 for Mac?
Vulnerability scan notification
We are running Desktop Central Build 80234. We have configured the Schedule Vulnerability Update to run every day at 0400 and to e-mail notification to my e-mail address. The e-mail notification works fine. What I would like is to configure the notification to also tell me which patch(s) have been added since the last scan. Currently all I get is the following: Task Name : UpdateDB Task Started at : Mon Apr 29 04:00:00 EDT 2013 Task Completed at : Mon Apr 29 04:00:01 EDT 2013 Next DB Update Time
failed scans and updates desktop central
I have scheduled my company to perform scan and deploy of patches across three days. I have separated my network into three groups and they scan and deploy on those three days. If the scan fails for a reason like they forgot and shut down their PC or they were out of town what is the best way to handle that? I would like to automate it so if they fail then it should try the next day and if it was updated fine the first time no scan is needed. Is there a way to handle this? Thanks.
Patch Management Targeting
I would like to be able to define a patch only for specific machines, while allowing it for others. In SUS this can be done based on group. Is there such a function in DC?
desktop central missed updates
if we set a schedule for updates by groups what happens when an enduser has their PC shut off or if it is laptop and they are out of town?
adobe air 3.7
hi when will adobe air 3.7 become available for patching on desktop central we have all our clients on release 3.6 but 3.7 has been out for a little while now best regards
Patch management target
Dears, Does Desktop Central only support the path management of MS OS and software ? How about oracle ,Adobe or other applications? Thank you.
settign up automatic patch deployment
When setting up a configuration to scan, download and deploy missing patches to a test PC first i built the task and it scanned the PC then it downloaded the updates and i have approved all of them but it just says yet to deploy. What have i done wrong?
Missing Update
Update ID 12693 Bullettin MS12-074 - (Security Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2 (KB2729449) is still showing up as missing even after many deployments and a few manual installations. Can you advise please? Chris
After patch 80226 the deploy button is without function
Hello, after installing the latest patch 80226 i have problems to install patches because the deploy-button at the end of the site is without function. Nothing happend, no message, no error message, nothing. Change the browser from firefox to IE do not change anything. Going back to Version 80214 everything works fine. BTW: With Version 80226 the Desktop Central is in german. Thanks for you help.
No Reboot
Hi, Would it be possible to have an extra option in the patch management, it would be "do not reboot and do not prompt". I sometimes have to manually apply patches to machines and many of our users get frustrated when the get the prompt to restart their machine, especially when in the middle of work which can not be postponed. Although the option to not reboot the machine is selected, the prompt to restart the machine is displayed, an option which stopped the prompt from being displayed would be
desktop central update notification
so i have setup a schedule for my endusers to receive and install the updates. I have split it up into custom groups of 15 or so over the course of the month so everyone doesn't get an update on the same night. I want to send out a calendar reminder for everyone when their update will occur so they can log off and close the various applications that might be updated. Is there a way inside of desktop central for that reminder to pop up so i don't have to send a reminder via outlook? Thanks.
any idea why i get this at every 90 minute check in?
Log Name: Application Source: DesktopCentral Date: 4/10/2013 1:14:33 PM Event ID: 103 Task Category: None Level: Information Keywords: Classic User: N/A Computer: travellap60.cic.scic.com Description: The description for Event ID 103 from source DesktopCentral cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local
Using Custom Groups defined by OU to deploy patches
It seems as though if I use a static Custom Group made of of OUs, when any member of an OU changes the changes are not reflected in the static group. That's why they are called "static." But when I try and use a Dynamic Group I cannot select its members based upon OU. does it not make sens that I would want to do this? i can see why some would want to deploy based on OS, Service Pack, etc. but I can make a good case for deploying patches based on a Business unit (OU in active directory-speak)
Scan Failing
Romanus I have a problem with a patch scan failing on a server (request ID :##13750366## opened 07/03/13) due to "disk drive serial number not being fetched" apparently. I'm being pushed for a resolution at my end but ManageEngine are saying they do not have a timeframe on the fix. Could you escalate this for me? Thanks JP/
Vulnerability DB Update Failed
Hi Team, I am currently having issues with the vulnerability database on my server (Desktop central MSP 8) not updating. It says that the last successful update was on Feb 13, and it has failed on every attempt since then. This happens both with the scheduled update and a manual update. If I click on the "Failure" link to get more detail, it just says "Failed to Update the Vulnerability DataBase on 2013-03-19 09:00:00". I have uploaded the "Patchdownloadlog" from server for your reference at below
Next Page