×
×
×
×

Configure Patch Store Location

The patch store contains all the downloaded patches. Patch deployment can fail if the patch repository path on the Endpoint Central server is incorrect. Specify the exact patch store location using the steps below.

Locate the current patch-store path

  • On the Central Server, start with the server installation directory and locate <SERVER_INSTALL_DIR>\webapps\DesktopCentral\store.
  • On a Distribution Server, start with the Distribution Server installation directory and locate <DS_INSTALL_DIR>\replication\store.

Resolve <SERVER_INSTALL_DIR> or <DS_INSTALL_DIR> from the actual installation on that computer instead of assuming a drive or installation path.

Configure the patch store location

  1. Open the Endpoint Central console and navigate to Threats & Patches → Settings → Cleanup Settings.
  2. Under Patch download location, configure the patch repository location.
  3. Specify the new patch store path.
  4. Click Save.
Patch repository location on Cleanup Settings

Copy the existing patches from the old location to the new patch store directory, then restart the Central Server for the changes to take effect.

Migration of Patch Store

You can migrate the patch store to a different location on the same computer or to a remote computer. To migrate the patch store to a different location on the same computer, follow the steps above. You can also migrate the patch store to a Distribution Server.

Grant permission for Central Server

To migrate the patch store to a remote computer, grant permission for the Central Server to access the remote patch store, then configure the network path in the console.

Note
While Endpoint Central supports using network share paths as the patch store location, Network Attached Storage (NAS) devices are not supported. Configure the patch store on a local drive or Windows server share with proper permissions for reliable deployment.

On the remote computer that will host the patch store:

  1. Create a new directory to use as the patch repository.
  2. Right-click the directory and open the Sharing tab.
  3. Click Advanced Sharing.
  4. Enable Share this Folder.
  5. Specify the share name as store.
  6. Click Permissions.
  7. Click Add.
  8. Choose Object Types.
  9. Enable Computers and click OK.
  10. Under Enter Object Name, specify the computer name on which the Central Server is installed and click OK.
  11. Under share permissions, select that computer and enable Full Control.
  12. Click OK.

Configure Patch store network path in the console

After the share has Full Control for the Central Server computer, set that network path as the patch store under Threats & Patches → Settings → Cleanup Settings → Patch download location. Copy existing patches to the new path, then restart the Central Server.

Migration of Patch Store to a Distribution Server

Note
Configure the patch store on the same computer where the Distribution Server is installed. The Scripts folder and changepath.vbs steps apply only when you migrate the store on a Distribution Server, not when you change the Central Server path to a share on the same server.
  1. Open Command Prompt as Administrator on the computer where the Distribution Server is installed.
  2. Navigate to <DS_INSTALL_DIR>\Scripts\.
  3. Run wscript changepath.vbs patchstore <new path>.
  4. Copy all files from <DS_INSTALL_DIR>\replication\store\ to the new patch store location. The script does not move existing files.
  5. Restart the UEMS Distribution Server service.

After a successful move, you can delete the files from the old store path. New replication uses the new location.

Related