cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
505
Views
0
Helpful
1
Replies

ISE windows Patch management Query /Alternative suggestion

Ajaykumar
Cisco Employee
Cisco Employee
Hello Team ,
 
For windows Patch management , enabling  the policy to check whether the Critical Patches are available on the desktops and are up to date or not . this   is not working as expected since it is relying on the SCCM agent information. This mechanism at times does not  work properly as many times SCCM agent doesn’t populate the information about patches availability on the desktops.
 
 need to know if we have some alternate way or mechanism to overcome this issue (relying on SCCM agent info).
Looking forward to your response/Suggestions .
 
Thanks ,
Ajay
 
1 Accepted Solution

Accepted Solutions

Nidhi
Cisco Employee
Cisco Employee

Posture check for patch management depends on what is shown in the SCCM client. 

the other flow could be to integrate SCCM as MDM and check for compliance. 

the details of which can be found here -  https://community.cisco.com/t5/security-documents/how-to-integrate-cisco-ise-with-microsoft-sccm-for-patch/ta-p/3725035 

 

Thanks,

Nidhi 

View solution in original post

1 Reply 1

Nidhi
Cisco Employee
Cisco Employee

Posture check for patch management depends on what is shown in the SCCM client. 

the other flow could be to integrate SCCM as MDM and check for compliance. 

the details of which can be found here -  https://community.cisco.com/t5/security-documents/how-to-integrate-cisco-ise-with-microsoft-sccm-for-patch/ta-p/3725035 

 

Thanks,

Nidhi 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: