Getting started with Patch Management
The following steps set up Patch Management.
| Step | Area | Action |
|---|---|---|
| 1 | Install WSUS | Install the WSUS server role on your Windows Server, and select the products and classifications to synchronize. See Prerequisites for Patch Management. |
| 2 | Deploy the Patch Management Service | Deploy the service to the WSUS server from System Administration. See Deploy Patch Management Service. |
| 3 | Set up the options | See Patch Management options. |
| 4 | Create a root point | Create a Patch Management root point, for example with your company name. |
| 5 | Create child points | Create a Patch Management child point, for example Servers and Computers. |
| 6 | Create groups | Create a Patch Management Group below each child point, for example Dev, Test, and Production. Create them in the order updates should move through them. |
| 7 | Select categories and classifications | Select the categories and classifications for each child point. |
| 8 | Set up update approval | Define approval rules for each child point. |
| 9 | Assign computers | Add computers to the groups manually (Customize computers) or automatically (Use query based membership). |
| 10 | Approve updates | See Approve updates. |
| 11 | Daily operation | The required daily operations depend on the processes and procedures you have created. |