Create a Linux Patch Policy

Created by Karen Pearl Enrique, Modified on Thu, 17 Aug, 2023 at 3:18 PM by Karen Pearl Enrique

JumpCloud’s automated patch management for Linux lets you configure a delay when performing updates for major and minor Linux versions. Each of these options has its own setting where you can specify the number of deferral days. This setting controls how long before future updates are made available to the device. In addition, you can set a grace period for minor Linux updates. When a minor update becomes available, this setting controls how long users can defer updates. As that grace period approaches its expiration, automatic reminders appear more frequently and eventually users can't dismiss them.



Create Default Patch Policies and Policy Groups

If your organization hasn't yet configured any macOS, Windows, or Linux patch management policies or policy groups, you can save time by loading a set of default patch policies and policy groups, enforcing security patches on a large number of managed devices.

A policy group helps you quickly and efficiently roll out preconfigured policies using deployment rings. Deployment rings are configured with sane defaults. The deployment ring names match these policy group names, as well as control how and when an update is applied:

  • Vanguard – Deploy automated upgrades inside your IT Department. 
  • Early Adoption – Deploy automated upgrades to early adopters outside of IT.
  • General Adoption – Deploy automated upgrades to general users in your company.
  • Late Adoption – Deploy automated upgrades to remaining users in your company.
A diagram showing the deployments as sections within an angle, with the sections becoming broader as you move out from the center. The image starts with Vanguard adoption, then moves through Early, General, and Late Adoption.

Adoption Ring

Deployment Ring PolicyUpdate Deferrals
Linux (Ubuntu)0 days
Linux (Ubuntu) Early Adoption3 days
Linux (Ubuntu) General Adoption7 days
Linux (Ubuntu) Late Adoption14 days

Alert Behavior of OS Updates

The alerts for updates using the JumpCloud Patch Management policies are delivered to users via the default system notifications on Linux. 

Image showing the software update alert an end user sees when a patch is pushed to their machine. This alert says that updated software is available, with the options Remind Me Later, Install Now, or Settings....

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons

Feedback sent

We appreciate your effort and will try to fix the article