Identifying Windows Devices Missing Critical OS Patches
In this activity, use the OS Updates dashboard to view details about OS versions deployed and patch status across all managed Windows 10 devices.
1. Access the OS Updates Dashboard
- Click Dashboards.
- Click OS Updates.
2. Select WinRT Card
The OS Updates dashboard shows how heterogeneous the environment is based on the number of OS versions available on your environment per platform.
The dashboard only shows the cards based on the current devices managed in your environment. For this exercise, if you only enroll a Windows 10 device, it only shows one card.
Click the WinRT card.
3. Explore Devices by OS Version
The OS Versions dashboard includes the Number of Devices by OS Version chart, which allows you to understand number of OS versions across the Windows 10 managed devices in your organization.
- Scroll down to see the Active Devices by OS Version chart. This represent the active devices reporting OS version changes on the last 30 days.
- Click Patches.
4. Review Patch Status Across the Environment
Under Patches, you can find the Number of Patches by Update Status chart. This chart helps you to focus and prioritize which available and failed patches must be installed as soon as possible.
Click the Available bar to see a list of OS updates available to install per device.
5. Review Available Patches
This list includes all the devices and related available OS updates. The column Windows Patch Update Classification can help you to prioritize which patches must be installed first to improve device security and minimize risk for the organization.
Click WinRT to return.
6. Filter for Specific Windows Patch (KB)
For the purpose of this exercise, you will use KB 4503308 to automate the deployment. In your environment you may don't have the KB 4503308, in this case, pick another KBs available and use that as the reference for this exercise.
- Click Edit.
Windows Patch KB Number.
- Click Apply.
7. Review Devices Requiring Patch and Related Status
As a result, you can see the number of devices requiring that specific patch and the last time those devices reported an update status related to the patches.
On the top chart, two devices report to be missing that patch. On the bottom chart, you can see when each device reports the status related to that specific patch.