Linux patch management arrives in Hexnode UEM
Linux patch management is now available in Hexnode UEM, bringing native patch monitoring and deployment into your management console. IT administrators can track missing patches, automate security updates, and manually deploy critical patches when needed.
The release introduces three core capabilities: Patch Metrics, Auto & Manual Patch Deployments, and an Update Preferences Policy. Together, these capabilities let administrators review patch status, choose a deployment approach, and configure update schedules and deployment windows for their Linux environment. The announcement covers remote workstations, server environments, and developer setups.
Bring Linux patching into your existing console
If your team relies on manual scripts or separate command-line tools for Linux updates, this release brings those patching tasks into Hexnode UEM. You can monitor missing patches and deployment status from the console while controlling when updates reach devices.
Administrators can also choose how they select updates. Automated deployment uses predefined conditions to identify qualifying patches. Manual deployment lets administrators select specific updates for targeted Linux devices. Both approaches use Hexnode’s automation framework to determine deployment timing and device assignments. This gives teams a documented approach for recurring update cycles, targeted deployments, and patch testing.
More control over patch selection, timing, and visibility
- See where patching needs attention. Patch Metrics provides visibility into missing patches, deployment statuses, and overall system health across Linux devices. Administrators can use this information to review patching needs and follow deployment progress from Hexnode UEM.
- Automate updates using defined conditions. Configure update criteria such as severity, release date, product, classification, or update name. You can also exclude specific updates and require administrator approval before deployment. These controls let you define which updates qualify for your automated rollout.
- Choose specific patches when needed. Manual deployment lets you select security or non-security updates, arrange their installation order, and configure reboot behavior. Use this approach when you need to test selected patches or deploy a particular update to a defined group of Linux devices.
- Control installation timing. For automated deployments, configure a maintenance window through the Linux Update Preferences policy. Enable the corresponding automation rule to restrict installation and reboots to that window. You can also configure technician email notifications and retries for failed automation actions.
Set up your first Linux patch deployment
Before configuring Linux patch management, check your devices against the documented prerequisites. The guides list Ubuntu 18.04 LTS and later, Linux Mint 21 and later, and Fedora 36 and later. Target devices must be enrolled in Hexnode UEM and have the Hexnode Linux Agent installed.
To create an automated deployment, open Automate > New Automation, select Linux, and choose Quick. Configure when the automation runs, then select Auto Patch under Patches and Updates. Define update criteria, exclusions, deployment rules, and target groups before reviewing and saving the automation.
For selected updates, choose Manual Patch and configure the patches, installation behavior, and device assignments. Follow the automated deployment guide or manual deployment guide for the full workflow.
Ready to bring Linux updates into your console? Read the release announcement on Hexnode Connect and start configuring your deployment.
Simplify Linux Patch Management
Patch Ubuntu and Fedora devices, track update status, and centralize Linux management with Hexnode UEM.
Start Your Free Trial!