Skip to content

Getting started with Patch Management

The following steps set up Patch Management.

Step Area Action
1 Install WSUS Install the WSUS server role on your Windows Server, and select the products and classifications to synchronize. See Prerequisites for Patch Management.
2 Deploy the Patch Management Service Deploy the service to the WSUS server from System Administration. See Deploy Patch Management Service.
3 Set up the options See Patch Management options.
4 Create a root point Create a Patch Management root point, for example with your company name.
5 Create child points Create a Patch Management child point, for example Servers and Computers.
6 Create groups Create a Patch Management Group below each child point, for example Dev, Test, and Production. Create them in the order updates should move through them.
7 Select categories and classifications Select the categories and classifications for each child point.
8 Set up update approval Define approval rules for each child point.
9 Assign computers Add computers to the groups manually (Customize computers) or automatically (Use query based membership).
10 Approve updates See Approve updates.
11 Daily operation The required daily operations depend on the processes and procedures you have created.