Hi,
What is the best practice when having ePolicy Orchestrator installed, and a user who has the agent installed and want to keep their windows patches up to date?
We have a user who wants to keep up to date with the latest Windows patches. So patch tuesday has come and of course the policy on Orchestrator doesn't allow him to install any updates, just errors. If we disable active protection it will work, however we don't want him to turn it off himself.
What is the best practive when it comes to Windows updates. Do you just tell people they can't or can the policy be updated in a way that it can work?
Just wanted to see if anyone else has dealt with a similar issue.
Many Thanks.