Identifying Windows Devices Missing Critical OS Patches

In this activity, use the OS Updates dashboard to view details about OS versions deployed and patch status across all managed Windows 10 devices.

1. Access the OS Updates Dashboard

updating automatically
  1. Click Dashboards.
  2. Click OS Updates.

2. Select WinRT Card

updating automatically

The OS Updates dashboard shows how heterogeneous the environment is based on the number of OS versions available on your environment per platform.

The dashboard only shows the cards based on the current devices managed in your environment. For this exercise, if you only enroll a Windows 10 device, it only shows one card.

Click the WinRT card.

3. Explore Devices by OS Version

updating automatically
updating automatically

The OS Versions dashboard includes the Number of Devices by OS Version chart, which allows you to understand number of OS versions across the Windows 10 managed devices in your organization.

  1. Scroll down to see the Active Devices by OS Version chart. This represent the active devices reporting OS version changes on the last 30 days.
  2. Click Patches.

4. Review Patch Status Across the Environment

updating automatically

Under Patches, you can find the Number of Patches by Update Status chart. This chart helps you to focus and prioritize which available and failed patches must be installed as soon as possible.

Click the Available bar to see a list of OS updates available to install per device.

5. Review Available Patches

updating automatically

This list includes all the devices and related available OS updates. The column Windows Patch Update Classification can help you to prioritize which patches must be installed first to improve device security and minimize risk for the organization.

Click WinRT to return.

6. Filter for Specific Windows Patch (KB)

updating automatically
updating automatically

For the purpose of this exercise, you will use KB 4503308 to automate the deployment. In your environment you may don't have the KB 4503308, in this case, pick another KBs available and use that as the reference for this exercise.

  1. Click Edit.
  2. Enter Windows Patch KB Number.
  3. Enter 4503308.
  4. Click Apply.
updating automatically
updating automatically

As a result, you can see the number of devices requiring that specific patch and the last time those devices reported an update status related to the patches.

On the top chart, two devices report to be missing that patch. On the bottom chart, you can see when each device reports the status related to that specific patch.


Add your comment

E-Mail me when someone replies to this comment

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.