AWS Systems Manager Patch Manager launches security updates notification for Windows

AWS Systems Manager Patch Manager
AWS Systems Manager has launched a new feature for security updates notification for Windows patching compliance. This feature helps customers identify security updates that are available but not approved by their patch baseline configuration. A new patch state called "AvailableSecurityUpdate" reports security patches of all severity levels that are available to install on Windows instances but do not meet the approval rules in your patch baseline.
By default, instances with available security updates are marked as Non-Compliant, providing a clear signal that security patches require attention. Customers can configure this behavior through their patch baseline settings to maintain existing compliance reporting if preferred.
What to do
- Visit the AWS Systems Manager Patch Manager console to get started.
- Update your patch baseline with the details here.
Source: AWS release notes
If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.