cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2016
Views
10
Helpful
3
Replies

Microsoft Update Posturing

zascherl86
Cisco Employee
Cisco Employee

Is there any way to have ISE tell what patch fails on posturing for windows patching?

1 Accepted Solution

Accepted Solutions

thomas
Cisco Employee
Cisco Employee

No, ISE only says if the endpoint is Compliant or Non-compliant with your defined policy.

 

View solution in original post

3 Replies 3

marce1000
VIP
VIP

 

 - Here's a bit of a related thread which may contain some hints :

             https://community.cisco.com/t5/network-access-control/ise-posture-failing-for-windows-update-patch/m-p/3989595

 M.



-- ' 'Good body every evening' ' this sentence was once spotted on a logo at the entrance of a Weight Watchers Club !

So this helps.  Now I've heard 2 different ways it works.

 

1. ISE checks patch release versions against Microsoft to see if up to date.

2. ISE only checks to see if patches are required on the system and not necessarily the patch version.

 

Which one of those would be accurate?

thomas
Cisco Employee
Cisco Employee

No, ISE only says if the endpoint is Compliant or Non-compliant with your defined policy.

 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: