After deploying baseline when take compliance report report shows pending restart computers as remediated computers. After restart some computers failed to apply patches then our compliance goes down.
We don’t want to count pending restart computers as remediated computers in compliance report.
How can we achieve this…??? Any suggestion or client settings need to be applied.
If you want to see systems that have not rebooted but have the patch pending final evaluation, change the setting _BESClient_WindowsOS_BypassPendingRestartRelevance to a value of one (1)
The said settings is not working in my environment properly. I deployed the settings in 2 of the systems to check, on both the systems the settings got successfully completed. Later i deployed patches which required restart, later when the patching got completed on both the systems i was able to see the action status as “Pending Restart”. I generated the patching compliance report targeting only the patches which i deployed. One system showed me compliance as 100% and another one showed as 0% and we did not restarted the system.