Critical patching for more than 1 Windows Server

Hello guys, quick question.
I’m new on Bigfix, so I’m still trying to understand all the tools and procedures.

What is the best option to update 6 servers with all Microsoft Critical/Important updates?
I’m not sure if I have to create 6 actions for each server, selecting all Critical/Import Microsoft patches… or there is a simple way using Computer Groups.
The point is, not all servers are missing the same KBs.

Put all the patches you want to deploy in a baseline then take action on the baseline. You can add relevance to the baseline if you wish, but the relevance of the patches will also be assessed. The baseline will be applicable to every system that meets the relevance of the patches in it.

Make sure to set an action for each patch in the baselines. Not all patches have a default action.

We use relevance at the baseline level as well as at the patch level.

1 Like

To add to that, you can put all the patches in same baseline. Each machine will skip the patches it doesn’t need (action status will reflect Not Relevant for those components.)

1 Like

You can also use Patch Policies if you want additional automation:

https://help.hcltechsw.com/bigfix/9.5/webui/WebUI/Users_Guide/c_get_started_with_patch_policy.html

1 Like