Patch management
A verification-led patch lifecycle is under active engineering: discover, approve, deploy, restart where required, rescan and verify.
What the administrator needs to solve.
Patch dashboards often report that an installation command ran, but operations teams need to know whether the endpoint actually reached the intended patch state.
How ZENQIX handles it.
ZENQIX is building patching around explicit phases and post-install evidence, with maintenance windows, canary rollout and reboot-aware verification.
Requested action and verified outcome stay separate.
What is currently in scope.
Patch policy model
Deployment phases
Maintenance windows
Canary/blast-radius controls
Verification state
Reboot-required state
Availability by operating system.
Framework and fixtures exist; physical Windows Update execution remains pending.
Framework exists; software-update physical execution remains pending.
Framework exists; package-manager physical execution remains pending.
Inspect the state the UI needs to expose.
This panel uses synthetic data. A genuine ZENQIX Endpoint screen can replace it only after sanitization and publication approval.
Security
- • Maintenance-window enforcement
- • Canary controls
- • Policy approval boundaries
- • No false success when verification is missing
Evidence
- • Patch identifier
- • Target state
- • Execution attempt
- • Observed installed state
- • Verification time
- • Reboot requirement
Technical detail
- • Preview means engineering architecture and isolated tests exist; it does not mean generally available physical patch execution
Technical questions for this capability.
Is ZENQIX patch management GA?
No. It remains Preview until provider-specific physical QA and release acceptance are complete.
Why separate execution from verification?
Because a successful installer invocation is not proof that the intended update is actually present afterward.
Evaluate patch management in your environment.
Use the capability matrix and the written acceptance checklist to confirm whether the current status matches your pilot needs.