Get the latest product updates, ask technical questions, and learn best practices
Recently active
We have checked the option 'Do not enable automatic restart after updates are installed' in the policy and configured the user notifications as well.The devices have been patched as per the schedule and are showing 'Need Reboot' in the Automox console. After that, the device was automatically rebooted but has not received the reboot notification.Please assist with this issue. Attached is the screenshot of the user notification setup for your reference
For Windows If the policies have been removed from the groups, will the devices still just update on their own for MS Updates?
Good afternoon!Has anyone else seen or had an issue with any of their endpoints reporting back a very vague “1” in the activity log when trying to push manual updates to it? I’ve put in a ticket on this previously, but the only answer I was able to get was that it could possibly be something stopping the script from running on the computer. I am not sure what it could be since we’ve had no issues before, but this started a few weeks ago. It also seems to be random. The logs only say “Error in Wait” and are also a bit vague. I’ve tried implementing solutions such as turning the powershell mode to unrestricted on a few computers, but have still gotten the error after. The interesting thing is that we have no issues with automatic updates each night going through. It seems to only be with updates we manually push through the console. Has anyone else had anything similar or have any suggestions?Thanks
helloToday in our environment our linux machines are managed only by automox. Linux machines do not query Active Directory and all linux users are adm of the machines.It turns out that a demand arose to remove users' privileges, making them standard users and without adm privileges.The problem is that to do this we would have to change the account type, have a local user with adm privileges and rotating password in the LAPS style and somehow block the machine from being formatted, all using automox.Would any good soul have a solution for this?
What is the reason some Windows KB updates cannot be rolled back, and why is the rollback option disabled in the bulk actions menu for specific KB updates?
I’d love to hear about your journeys, lessons learned or epic mistakes! Recently got a master class on patch policy and thought I’d document some of my journey here. One of my biggest mistakes going from an SCCM driven world into Automox was not carrying over some of those well tested enterprise habits. I’ve been trying to optimize to create the best outcome. Here are a few pain points I’m focused onMachines that are not always online, or offline for a few weeks and magically show up. Corrupt windows update agents. Reboot Expectations and User Experience. Patches failing to install Multiple reboots and the same patch being applied Security tools that were working stopped. So Now I need to re-install… I think ConfigMgmt tools that were working stopped. Okay. let’s fix that Any security controls I can use a script to gather intelligence on for custom monitoring with the API… First winwas converting a single patch everything policy into separate policies for OS, 3rd party, O365, Defen
What do you think? Check out this video of Otto too!
Hello, We have quiet a few devices that does not have monthly “Cumulative Update for Windows...” available.I don’t see a special pattern. All of them are OS supported and have agent version up-to-date. I could do an OOB patch to push install the missed CU that is not showing in the available software. But would like to know what others have been practising. What do you do guys do?
Our tenants have all started displaying “Trial Extended”. These are all paid for accounts and billing is up to date yet it is displaying “Payment required” Is anyone else experiencing this issue? We logged a P1 with Automox but it seems their support only operates 9am-5pm business days.
You’ll need to set the following before running the script: $apiKey = 'YOUR_API_KEY' - in your console, go to Settings->API and select the API key. Note that the API key is per admin user, so you and another admin in your console will have different API keys. $orgID = 'YOUR_ORG_ID' - put in your Org ID which can be found by looking at the URL on the dashboard and selecting the value after the “?o=”: [https://console.automox.com/dashboard?o=1234]. In this example the Org ID is 1234. $cve = 'DESIRED_CVE' - Set the CVE You can also modify $filepath if you want to change the file name or save it in a different location. Keep in mind the script will overwrite a previously generated file if it exists. # Set these ----------------- $apiKey = 'YOUR_API_KEY' $orgID = 'YOUR_ORG_ID' $cve = 'CVE-2020-0689' $filepath = 'C:\Temp\cve.csv' # --------------------------- $page = 0 $limit = 500 $servers = @() $apiInstance = 'https://console.automox.com/api/' $apiTable = 'servers' Set-Content $fil
Hi everyone. Currently I've been able to install SentinelOne via script on MacOS Monterey, the problem is that some permissions still depend on manual user actions.Is there a way to make this step via script as well?Thanks.Missing Permissions Permissions Required: The Agent is requires macOS Notification permissions. Authorize to allow full agent functionality.Missing Permissions Permissions Required: The Agent helper requires Full-Disk-Access permissions. Authorize to allow full Agent functionality.
I recently noticed that I had over 200 + devices in my default group and now there are duplicate devices in all my groups. Has anyone else experienced this behavior in the past hour?
Hello, I am facing error in policy scheduling. When we create the worklets, we leave the execution scheduled, but the execution does not occur. If we perform the execution manually, the policy applies normally, but the scheduling does not occur.In this case, we have two situations.Situation 1:We created 3 months ago 5 policies to remove specific browsers from linux machines. The policies work perfectly if executed manually, but if we schedule, only 1 of them is executing correctly. All are add in the same group and running at alternate times.Situation 2:We create a policy to add a mandatory software and if we run it manually, it works correctly, but we schedule the execution and the policy does not run. We have already changed it from one group to another, from one machine to another, from one to another Are we doing something wrong? Has anyone experienced this?
Hi,I am searching for a solution to access and export to PDF a list of recent updated software per device.I check in report section, but it does not corresponds to what I expect.The PDF I need will be sent to customers to report activities.How can I proceed ?Thanks.
I am trying to get a list of hostnames that I can put into Excel for systems that have any version of Google Chrome on them. I know I can go to “software” and type in Chrome and pull a list, but the problem is that it returns results in groups, based on the version of Chrome - and there are about 50 different groups/versions… so to get a list of hosts, I’d have to click into each group and copy the hostname. Is there a way to get a simple list of hosts from Automox that have ANY version of Chrome installed?
Automox is closely monitoring how this is impacting our internal devices. At this point, we are not seeing any unintended consequences with the rollout of Sequoia. We have heard that other security tools are unable to maintain a connection. Automox does not run kernel apis, and we are not seeing anything out of the ordinary.
Hi,Is there a way in Automox to change the affected “zone” to an existing devices ?The device is already created,I create a new zone,And I am searching for a solution to affect existing device to this new zone, but I don’t see how. Mayber there is another way to associate device to new zone ? Can anyone help me ?Thanks.
Have a question on the 1st step needed for PS script signing, the cert install. Is there a way to re-run that, or will it keep running to try and catch offline devices? Got about 90% installed but there are some that came back online that are still showing Not Installed, dont want to move on to the worklet step without all of them good to go!
Automox is excited to announce Day Zero support for macOS Sequoia, the 21st major release of Apple’s desktop operating system.Released on Monday, September 16, Sequoia promises exciting new features such as Apple Intelligence, a unified password application, and improved window tiling.With Automox, admins can manage and secure macOS Sequoia without any interruptions, retaining the configuration management confidence they’re used to across their enterprise.Read more about it here!
Having some errors pop up on a handful of pc’s when using the Patch Now Action on the Software page. Have a handful needing 23H2, and while some took the update with 0 issues some are throwing the following No override file found. Patch default values will be usedFailed to set patch values from Metadata. Default values will be used.InstallMSUpdates : Install failed with ResultCode 4 and HResult -2145124318At C:\Program Files (x86)\Automox\execDir149571395\execcmd013954502.ps1:1788 char:21+ InstallMSUpdates $lst+ ~~~~~~~~~~~~~~~~~~~~~ + CategoryInfo : NotSpecified: (:) [Write-Error], WriteErrorException + FullyQualifiedErrorId : Microsoft.PowerShell.Commands.WriteErrorException,InstallMSUpdatesAny ideas on way some will update while others have this error?
I'm switching from another patching solution and everything is scheduled off Patch Tuesday. I'm noticing that my schedule for November will start patching on the week BEFORE Patch Tuesday. I've also noticed that there are certain days that I cannot patch, for example, I couldn't patch on Sundays this month because the 2nd Sunday this month was a week before my patch window.This way of doing scheduling doesn't make any sense and it needs to be changed. When patching is entirely based off of Patch Tuesday, it would make sense that patching software works off of that schedule as well.
Hi, I'm trying to create a dataflow with power bi but I'm having trouble connecting to automox from the dataflow page. I was able to pull this data successfully VIA instructions in other post, but this only works for pulling in data to the desktop power bi. Can't create dataflow from that. Any assistance please?
Hello,I am seeking assistance to exclude Automox from Crowdstrike Network Containment Policies, allowing the Automox agent to communicate with the cloud even when containment/isolation measures are in lift.Crowdstrike Falcon presently accepts only IP ranges for Network Containment Policy input due to security concerns related to domain names, as detailed here: Crowdstrike Discussion.Automox provides a list of URLs used for agent-cloud communication, outlined in this guide: Automox Agent Firewall Allowlisting Rules. I am exploring methods to obtain Automox Cloud's IP range for exclusion. Would it enough to use the IP result from "nslookup api.automox.com"? Please give some advice, many thanks!Best regards.
Hello, I am trying to create two separate advanced policies and schedules based on a condition “Requires Reboot” Y/N.I want to have a policy that will apply patches that do not require a reboot. I want to have a second policy that applies Patches that require a reboot. Looking in the Advanced Policy options I cant figure out how to create this conditional policy. Is there any guidance or advice that someone could offer? BTW, the only alternative I have looked at is to setup a policy where i select “Do not enable automatic restart after updates are installed”. What i have found is that applies patches and ends up with a list of systems that are in a “Needs Reboot” status.
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.