Automatic run action for microsof critical patches

(imported topic written by solunet91)

Hi,

is it anyway to run existing and coming critical patches from microsoft automatically to client pc without control by admin.

meaning when the new ms critical patch retrieve to bigfix server, bigfix server will automatic deploy it to client.

Thanks

(imported comment written by Lee Wei)

Hi,

No, the BigFix system by design, does not allow actions to be taken on the managed computers automatically.

An admin or console operator needs to explicitly approve and perform the actions.

There are use cases where users have used the BigFix Platform Server API to automate certain actions.

Also take a look at the following knowledge base article for another use case to automatically distribute virus definitions.

http://support.bigfix.com/bes/misc/actionregenerator.html

Lee Wei

(imported comment written by jamieorth91)

Let me expand on this question: What would happen if a baseline (that has an open action that doesn’t end) is created for patches. As an admin approves a patch and adds it to the baseline, with the open action will computers then get the patch or would the action need to be stopped and then a new action created with the updated baseline?

(imported comment written by BenKus)

Hey Jamie,

The baseline action will take a copy of the baseline and even if you change the original, it won’t affect the action. This is done by-design to prevent problems associated with “unintended consequences” of changing baselines (for instance, what if you changed the baseline and this action started running on some servers to patch/restart them and you didn’t realize that would happen if you changed the baseline… this is the kind of scenario we wanted to avoid) … here is a relevant recent feature request on this topic:

http://forum.bigfix.com/viewtopic.php?id=2738

Ben

(imported comment written by jamieorth91)

Thanks for the answer Ben. I don’t disagree with that concept at all - I wouldn’t want to be the one that somehow brought down mission critical servers… I just wanted to make sure I understood the process completely as we fine tune our procedures for our Admins.

Regards…