Skip to main content

Patches

Patches is the catalogue of OS and application patches EndpointOps knows about- which endpoints are missing or have installed each one, with severity and source details. From here you approve, scan, except, and deploy patches. Sibling views cover the deployment workflows: Patch Test & Approve, On-Demand Deployment, Autonomous Deployment, and Progressive Deployment.

How to get here

You need View Patch permission.

  1. In the left sidebar, click Patch to expand it, then click Patches.

Navigate to: Patch → Patches

URL path: /patch/patches

The Patches screen

The Patches list with platform/state filters and the patch tableThe Patches list with platform/state filters and the patch table

A filter pane on the left narrows the list:

  • Platform- Windows, Linux, …
  • State- All, Missing, Installed, Ignored.
ColumnWhat it shows
IDThe patch ID- click to open its detail.
TitleThe patch title.
EndpointsHow many endpoints (for the current state filter)- a clickable count.
SeverityPatch severity, as a tag.
PlatformOS, with an icon.
Release DateWhen the patch was released.
CategoryPatch category (Security Update, …).
RollbackWhether it can be rolled back.
KBIDKnowledge-base ID (links to the vendor article).
CVE NumberThe CVE(s) it fixes (double-click to copy).

Patch Approval Status and Patch Test Status are available via the column picker (hidden by default).

Drill-down: affected endpoints

Click a row's Endpoints count to open a drawer with Missing / Installed / Exceptions sub-tabs of the machines for that patch- the same view as the patch detail Endpoints tab.

Actions

  • Scan Endpoints- re-check endpoints for missing/installed patches.

    The Scan Endpoints dialogThe Scan Endpoints dialog
  • Add Exceptions- select patches (when the state isn't Ignored) and exclude them, with a reason and scope.

Tips & troubleshooting

  • A patch shows Missing everywhere. Approve it and deploy via On-Demand or a deployment policy.
  • Counts look stale. Run Scan Endpoints.