Windows Servers Security Patches Activity[1033]

Windows Servers Security Patches Activity[1033]


SOP No: WIN-001

SOP Title: Window Servers Security Patches Activity


Review Date: Insert Date




SOP Number

WIN001


SOP Title

 Windows Servers Security Patches Activity


 


NAME

TITLE

SIGNATURE

DATE

Author

Ankit Jain

Cloud Engineer



First Reviewer 

Varun Kumar

Product Manager Trainee



Second Reviewer 





Authoriser

Henry/Aditya

CTO






Effective Date:



Effective Time:

.66



Other Essential SOPs


  • NONE


  1. Purpose

This SOP shows how to perform Windows Servers Security Patches Activity. Please read thoroughly before executing the steps.


  1. What Is Windows Update?

Windows Update is a free Microsoft service that's used to provide updates like service packs and patches for the Windows operating system and other Microsoft software.

Windows Update can also be used to update drivers for popular hardware devices.

Patches and other security updates are routinely released through Windows Update on the second Tuesday of every month—it's called Patch Tuesday. However, Microsoft releases updates on other days as well, like for urgent fixes.


  1. What Is Windows Update Used For?

Windows Update is used to keep Microsoft Windows and several other Microsoft programs updated.

Updates often include feature enhancements and security updates to protect Windows from malware and malicious attacks.

You can also use Windows Update to access the update history that shows all the updates that have been installed to the computer through the Windows Update service.


  1. Patch activity is performed for the below reasons.

 

  • Protect Your System from Malicious Software
  • Resolve General Windows Issues and Bugs
  • Access New Windows & Software Features



  1. Plan of Action for the activity

 

  1. Backup should be taken prior starting activity.
  2. After login to windows server, start the Windows update service from services.msc.
  3. Download/Install the latest windows security patches on the server.
  4. Reboot the server post installation completed.
  5. After that check the patches installation status.
  6. Now disable windows update services from services.msc



  1. Downtime Required for the activity

Downtime should be according to occurrence of windows security patches on the server. Below is the estimated downtime for the activity.

Monthly – 2 Hours Max

Quarterly – 3-4 Hours Max

Yearly – 6-7 Hours Max


  1. Steps to perform windows update on Server (2008, 2012, 2016,2019)

Windows updates are commonly scheduled in our environment on a staggered basis. However, should you need to apply a Windows update manually, follow the steps below.

  1. Log into your Windows server via Remote Desktop.
  2. In Windows 2012 and 2008 servers open the Windows Control Panel
  1. On a Windows 2012 and 2012 R2 server press the Windows key and type Control Panel. If necessary, switch the View by: settings to Small Icons. Click Windows Update.
  2. On a Windows 2008 server click Start > Control Panel > Windows Update. If necessary, switch the to View settings to Small Icons. Click Windows Update.
  1. In Windows 2016 open the start menu and search for update. Click Check for Updates.


Windows 2012 R2



         Windows 2016

  1. Click Check online for updates from Microsoft if prompted.
  2. Click on the Install now button.
  3. Windows will download and begin installing updates. It may be downloading updates and not appear to be making progress. It will eventually start installing the updates. To verify the updates are downloading go to C:\Windows\SoftwareDistribution\Download. There will be a new file folder for each patch or update being installed.
  4. Depending on the number of updates needed, your server may need to restart more than once.
  5. Once the updates are complete, you can verify which updates were installed by returning to Windows Update and choosing  View update history.



  1. Change History


SOP no.

Effective
Date

Significant Changes

Previous
SOP no.
























Thank You






    • Related Articles

    • Creating Windows VM in Azure

      SOP No: AZ-002 SOP Title: Create a Windows VM in Azure Account   Review Date: Insert Date SOP Number  AZ002    SOP Title  Create a Windows VM in Azure Account        NAME  TITLE  SIGNATURE  DATE  Author  Shivam Singh  Cloud Engineer        First ...
    • What is Azure Load Balancer?

      Load balancing refers to efficiently distributing load or incoming network traffic across a group of backend resources or servers. Azure offers a variety of load balancing options that you can choose from based on your need. This document covers the ...
    • SOP for Whitelist IP on Azure

      SOP No: AZ-003 SOP Title: Whitelisting IP on Azure Review Date: Insert Date SOP Number AZ003 SOP Title Whitelisting IP on Azure NAME TITLE SIGNATURE DATE Author Ankit Jain Cloud Engineer First Reviewer  Varun Kumar Product Manager Trainee Second ...
    • Schedule Start-Stop VMs SOP[1061]

      SOP No: AZ-004 SOP Title: Schedule VM start and Stop Review Date: Insert Date SOP Number AZ004 SOP Title  Schedule VM start and Stop   NAME TITLE SIGNATURE DATE Author Ankit Jain Cloud Engineer First Reviewer  Varun Kumar Product Manager Trainee ...
    • SOP Format

      Header SOP No: <value> SOP Title: <Value>  Review Date: Insert Date SOP Number SOP Title   NAME TITLE SIGNATURE DATE Author     First Reviewer     Second Reviewer         Authoriser           Effective Date:     Effective Time:     Other Essential ...