Issue
- You want to enable auto-patch management in ESET PROTECT
- Enable Vulnerability & Patch Management
- Enable auto-patch management
- Enable OS auto-updates
Solution
Video: How to automate Vulnerability Scanning and Patch Management with ESET PROTECT Platform
Prerequisites
To view and enable ESET Vulnerability & Patch Management, ensure you have one of the following tiers:
- ESET PROTECT MDR Ultimate
- ESET PROTECT MDR
- ESET PROTECT Elite
- ESET PROTECT Complete
See how to add a license in ESET PROTECT Hub, ESET Business Account or ESET MSP Administrator.
You can enable ESET Vulnerability & Patch Management only on Windows computers running:
- ESET Management Agent version 10.1 and later
- ESET Endpoint Security for Windows version 10.1and later
- ESET Endpoint Security for Windows version 11 and later (OS auto-updates)
- ESET Server Security for Microsoft Windows Server version 11.0 and later
- ESET Endpoint Security for macOS 8.0 and later
- ESET Endpoint Antivirus for Linux 11.0 and later
- ESET Server Security for Linux 11.0 and later
Enable Vulnerability & Patch Management
-
Open ESET PROTECT in your web browser and log in.
-
Click Policies → New policy.
-
Type a name for a new policy and click Settings.
-
Select Common features from the drop-down menu, click Vulnerability & Patch Management and click the toggle next to Enable Vulnerability & Patch Management to enable it.
-
Click Edit next to Computer restart options.
-
Select Restart from the Automatic action drop-down menu, select the appropriate option from the Postpone drop-down menu and click Save.
-
Click Edit next to Vulnerability & Patch Management scheduler.
-
Select the desired check boxes next to Weekdays, set start and end times in the respective fields, and click Save.
-
Click Assign and assign a policy to a computer or group of computers.
Enable auto-patch management
-
Open ESET PROTECT in your web browser and log in.
-
Follow the steps 1-4 in the previous section. Enable Vulnerability & Patch Management options must be enabled to enable Auto-patch management.
-
Click the toggle next to Enable auto-patch management to enable it.
-
The Auto-patch strategy consists of two options: Patch all except excluded applications and Patch only allowed applications.
-
Patch all except excluded applications
The Patch all except excluded applications option updates all applications except those on the Excluded applications list.
Select Patch all except excluded applications from the Auto-patch strategy drop-down menu, click Edit next to Excluded applications. Continue to step 5.
-
Patch only allowed applications
The Patch only allowed applications option only updates applications on the Allowed applications list.
Select Patch only allowed applications from the Auto-patch strategy drop-down menu, click Edit next to Allowed applications. Continue to step 5.
-
-
Select the check boxes next to the chosen app name and click Save.
-
Click Assign and assign a policy to a computer or group of computers.
Read more about ESET Vulnerability & Patch Management.
Enable OS auto-updates
-
Open ESET PROTECT in your web browser and log in.
-
Follow the steps 1-4 in the previous section. Enable Vulnerability & Patch Management options must be enabled to enable OS auto-updates.
-
Click the toggle next to Enable OS auto-updates to enable it.
-
Click Edit next to Allowed OS auto-updates to select the severity levels for applying OS updates via a policy and then click Save.
- Click Finish to save the new policy.
Read more about ESET Vulnerability & Patch Management.