Title
Page icon
Create new category
Edit page index title
Edit category
Edit link
Policy Deployment
Policy Deployment keeps endpoints patched automatically, on a repeating schedule, so you don't have to trigger every deployment yourself.
The process is the same for Windows patches and Application updates.
Start a Policy Deployment
In the left navigation, select Patch Management > Policies
Select Create New Policy
Configure Policy Deployment
Note Policy deployments run on Windows devices only.
Configuration | Details |
|---|---|
Name and describe the deployment | Enter a Name, a short Description, and any Tags you want to filter by later ![]() |
Enable Window and Application patch policy | Use the Enable OS Patches Policy and/or Enable Application Patches Policy checkbox ![]() |
Decide how often it runs | Set a Recurring Schedule. Daily, Weekly on one or more selected days, or Monthly on one or more selected days ![]() |
Control restart and user notifications | Configure Reboot Options (Windows) or Update Notification (Application) to reduce user disruption ![]() ![]() |
Choose what gets installed | Use condition-based selection to automatically include patches or updates that match criteria. If you set multiple criteria, a patch only needs to match one to be included ![]() Note Rejected and unsupported items are automatically excluded, even if they match your selection criteria. |
Get notified when it's done | Add one or more email addresses under Report to receive a summary ![]() |
Assign Patch Policy to Endpoint Groups
To apply the policy, assign it to one or more endpoint groups.
Navigate to Inventory > Groups and select a group.
Open the Settings tab.
In Patch Management Policy section, select your policy from the dropdown menu and save your changes.
The policy will be assigned to the group and will run automatically according to its schedule.

Next Steps
Track a specific deployment in Monitor Deployment
Configure point-in-time patch reports with Custom Patch Reports
Set real-time alerts for key patch events under Patch Notification
Define SLA timeframes to maintain compliance visibility via Patch SLA






