KACE Systems Management Appliance (SMA)
Please tell us how you’d like to see the KACE Systems Management Appliance product improved!
161 results found
-
Remotely clean up patch cache on endpoints
It would be nice to be able to be able to delete the cached patching files from C:\ProgramData\Quest\KACE\patches from the SMA console. Sometimes you need to clear that folder out to fix patching errors or detection issues with stubborn endpoints. Some sort of context command or action available from the inventory screen would be ideal.
18 votes -
Microsoft Defender Antivirus - add to patch catalog
"At this time patches for Microsoft Defender Antivirus antimalware platform are not offered in the catalog"
Please do.
18 votes -
"Lock" a patch label
Our current patching procedure involves running a test job of newly released patches from our smart labels on the Wed. following Patch Tues. We run this test job on approx. 10 IT lab PC’s + the PC’s of users who use critical applications. Once the test job and application testing is complete, we would like a way to lock the patch job to prevent additional patches from being added to the Smart Labels. Currently, patches that are downloaded to the K1000 subsequent to our testing and prior to the scheduled company-wide patch deployment can be dynamically added to the Smart…
16 votes -
Snapshot a Hyper-V Machine before Patching
Before Patching a Hyper-V Machine wouldn't it be awesome if the K1000 could have the perform a snapshot first, so if it fails you could just revert in a matter of a few minutes.
16 votes -
Update the vendors patch subscription list
Can the vendors patch list in subscriptions be reviewed and have new vendors added? I am looking to patch more applications. We are working on pushing the Zoom client to all users, and it would be beneficial to be able to subscribe to patches from Zoom.
The ability to request new vendors from the subscription's page would be beneficial as well. This would allow KACE managers to be able to submit vendors request without having to submit an improvement request.
15 votes -
Retry on Patching Error
When a client losses connection during the patching process which can be long in some cases it tells me "error (agent disconnected)".
Can you please provide a retry or that the client continues and updates the status once the connection is on again.15 votes -
Check all sessions before restarting the machine
When a patch management deploy schedule has a reboot option enabled with the property "Automatically Reboot When No One Is Logged In" set to true, the Dell KACE agent should check all sessions on the system, not just the console session. If someone logs-in to their desktop via RDP and then disconnects, the agent (as it works now) will automatically restart the PC because it is only checking the console session.
13 votes -
Security Patches should not be superseded by non security patches
In our environment, we use Kace to deliver Microsoft security patches to our Windows Servers. We also use the setting to inactivate superseded patches to reduce patch installation redundancy.
I found the July Windows Server 2016 cummulative update, KB4025339, was superseded a week later by KB4025334, which is a non-security update. This completely messes up my patching workflow.
My current options, as I see it, are to either included non-security updates in my patching catalog and figure out which ones I am going to allow, or to allow superseded patches to remain active.
Based on this, in my opinion, a…
12 votes -
Add Patching actions to API
The ability to start and get the status of patch jobs with the KACE API would be incredibly useful to help automate our patching process by being able to invoke and monitor patching with PowerShell rather than having to manage patching from the UI.
12 votes -
End-user ability to minimize the patching box that comes up.
Currently, the user can drag the box off the screen to get rid of it, but it is still there if there are giving a presentation, for example. It should be fairly easy to make it so the end-user can minimize the box.
12 votes -
Add Webex Teams to the Patching Catalog
Please add Webex Teams to the Cisco Systems patch subscription. Webex Meetings and Jabber are already supported so it'd be nice to have Teams too.
12 votes -
Reboot notification counter
We'd like to see a counter in the reboot reminders so users know how many more times they can snooze - in both Software/OS and Dell patching. In addition, if the last message can be set to be different from the other reminders.
12 votes -
Patch Management Compliance
Under Patch Management > Catalog you can see the compliance of a single patch. It shows you the number of computers that have a patch installed or missing but you can't click on the numbers and get a list of the computers. Being able to click on the numbers would be great. You could get an instant view of computers names that have a patch installed or missing.
11 votes -
Retry button for failed systems on a patch schedule list
Lets say you have 20 DC's as an example and you run the patching and then click on the screen that shows your patching process and after a period of time lets say a couple systems fail the handshake or upload files error, you cannot just click on the two machines or failed machines and hit "retry" for just those machines. What we need to have is a retry button that retries all the failed or systems that do not show "Completed" - so that you don't have to run the whole patching process again for all systems when you…
11 votes -
Allow additional scripting to be run as part of Windows Feature Updates
The Windows Feature Update installation capability in Kace SMA is a great feature. It would be made even more powerful if additional scripts could be included with the deployment and be run after successful application of the Feature update, such as a powershell script to remove the bloat apps and to reactivate Windows (especially for virtual desktops). This is achievable already by using a separate script job and utilizing smart labels, however if it could be programmed into the Feature update process it would be fantastic.
11 votes -
Allow for Maintenance Windows for patch deployments
With SCCM there is the option to allow a Maintenance window for a group of machines (collection). So i could have a single patch schedule which defines the group of patches to be deployed and assign it to all systems. The machines would ONLY be able to download and install the patches based on the defined maintenance window.
Example:
Server Group A - midnight to 2am
Server Group B - 2am to 4am
Server Group C - 4am to 6amPatch schedule includes all server groups. But based on the respective windows the times these servers will patch will be…
11 votes -
Ability to list all devices in inventory - device list that are missing patches and remediate with one click
What I'd like to see is ability to list all devices in inventory-device view that are missing patches and then select the device , under actions goto patch remediate and create a job to immediately push either all OS patches, or all critical patches, or all patches to the device or list of devices.
Add in a live view of the jobs would also be good.
Regards
Nigel11 votes -
Reboot Snooze Options in 10.0 (311316) There is no way for the administrator to remove any of these user snooze options
There is no way for the administrator to remove any of these user snooze options. Terrible Idea users will put off patching as long as they can. We System Admin need to have control of what users can do. Old method after the 5th prompt users new a reboot was coming and at the end of the day the pc's were patched, now anything goes. Kace seriously needs to fix this in the next release.
11 votes -
CVE Rating
Apologies if this has been asked before.
It would be great to be able to see the CVE and CVSS score for a given patch.
This could then be used in a dashboard so you could easily identify where to spend your time most appropriately.I know a lot are often "under analysis" but it's a standard and I think would be beneficial.
11 votes -
Notification if patch subscription is expired
It would be nice if you could set KACE to alert you with an email or otherwise if your patch subscription expires for one reason or another so you can take action immediately.
10 votes
- Don't see your idea?