LogMeIn support sites no longer support Microsoft's Internet Explorer (IE) browser. Please use a supported browser to ensure all features perform as they should (Chrome / FireFox / Edge).

The GoTo support site no longer supports Safari 15. Please upgrade your browser to Safari 16 (or newer) or switch to a supported browser such as Google Chrome, Mozilla Firefox, or Microsoft Edge.

Simply secure and manage all devices. Discover LogMeIn Resolve Mobile Device Management.

We are currently experiencing an unplanned outage for this product.
  • Support
  • Products

    Explore support by product

    GoTo Connect

    All-in-one phone, meeting and messaging software

    GoTo Meeting

    Video and audio meeting software

    GoTo Webinar

    All-in-one webinar and virtual events software

    GoTo Room

    Conference room hardware

    GoTo Training

    Online training software

    OpenVoice

    Audio conferencing software

    Grasshopper

    Lightweight virtual phone system

    join.me

    Video conferencing software

    LogMeIn Resolve

    IT management & support

    LogMeIn Resolve MDM

    Mobile device management

    LogMeIn Pro

    Remote device access

    LogMeIn Central

    Remote monitoring & management

    LogMeIn Rescue

    Remote IT support

    GoToMyPC

    Remote desktop access

    GoToAssist

    Remote support software

    Hamachi

    Hosted VPN service

    RemotelyAnywhere

    On-prem remote access solution
  • Community
  • Service Status
  • LogMeIn Returns as GoTo's IT Portfolio Brand

    LogMeIn is back as the name behind our IT products.

    Read the full announcement.
    Try the improved My Cases portal

    Easily manage your ticket, track its status, contact us from an existing case, and more.

    Sign in to try
  • Language selector icon Language selector icon
    • English
    • français
    • italiano
    • Deutsch
    • español
    • português
    • Nederlands
  • Contact Support
  • Service Status
  • User Avatar User Avatar
    • Support
    • Contact Support
    • Browse Products
    • Service Status
    • Community
    • Sign in
    • User Avatar
    • My Account
    • Personal Info
    • Sign In & Security
    • My Cases
    • Billing Center
    • https://link.goto.com/myaccount-billing
    • My GoTo Connect
    • My Meetings
    • My Webinars
    • My Trainings
    • My Conferences
    • My Resolutions
    • My Mobile Devices
    • My Sessions
    • My Sessions
    • My Incidents
    • Sign out
  • Overview
  • Explore Features
  • Patch Management
product logo
Back button image Back
Back button image
product logo

Automating patch deployment

The LogMeIn Resolve MDM Patch management feature helps administrators automate the patch installation on managed macOS and Windows devices.

This article explains the steps for configuring the automated patch management. For details on the individual steps, see the subtopics in this article.

  1. Configure the patch installation rules (rule type, include and exclude patches) for Mac and Windows devices.
  2. Enable the automated patching for Windows and Mac devices (enable patch deployment, specify the device scope with tags, and set the installation delay).

Configuring the patch installation rules

On the Management > Patches > Installation settings tab, configure the installation rules (rule type, include and exclude rules) for Mac and Windows devices.

  1. Set the Rule type to Install all patches, or to customize which patches you want to install, choose Install patches using custom rules.
  2. (Optional) If you selected Install patches using custom rules, create include rules, exclude rules, or both. Specify which vendors and applications you want to include or exclude from the patch deployment.

Include rules: To limit the deployment of patches only to certain vendors and products, create include rules. If you create an include rule, patch deployment will include only patches from the specified vendors and products.

Exclude rules: If you want to block vendors, or specific products of vendors from the patch deployment, create an exclude rule.

To remove a rule, select the trashcan icon at the end of the row.

Important:
  • If you don’t define a custom rule, LogMeIn Resolve MDM deploys all patches to the applicable devices.
  • If there is a conflict between include and exclude rules, the exclude rules override the include rules. This means that if you include and exclude, for example, the same vendor, the vendor is excluded from the patch deployment.

Enabling the automated patching for Windows and Mac devices

On the Management > Patches > Installation settings tab, configure the following:

  1. (Optional but recommended) In the Devices in pilot group window, configure a pilot group to test the available patches in a smaller device group before deploying patches to all other devices.
  2. In the Devices not in the pilot group window, configure the patching options for the Windows and Mac devices that are not included in the pilot group and which will be your main group for the automatic patch deployment.

The following configuration options are available in both the pilot and the main groups:

  • Install patches

    To enable patch installation to the group of devices that you specify in the Tags field, select this option. This setting is common for both Mac and Windows devices.

  • Tags

    Add tags to restrict the patch installations to a specific group of devices.

    The device is part of the group if either the device or the device user has the specified tag.

    If you don’t specify any tags in this field, the patching applies to all devices.

    If a device or its user has tags from the pilot and main group, the device is part of the pilot group.

    Learn more about device tagging.

  • Installation delay

    The number of days LogMeIn Resolve MDM waits before it installs the patch to the devices. The delay is counted from the time the patch appears in the LogMeIn Resolve MDM patch feed.

    Note: To have enough time to test the patches for correct functionality, set the installation delay for the pilot group to be smaller than the installation delay defined for the devices that are not in the pilot group.
Note: It can take some time for the managed devices to receive the configured patch management settings, as the devices receive the settings when they next sync with LogMeIn Resolve MDM. To sync the devices, navigate to Management > Devices and select Sync now. Learn more about synchronizing devices.

Checking the patch installation method

To check the patch installation method, navigate to Management > Patches > Patches tab and check the Installation method column.

The patch installation method, which the software vendors define, can be one of the following:

  • Automatic - The patch is installed automatically.
  • Manual - The Miradore client cannot download and install the patch, so the device user must do it manually.
  • Partly manual - Some language versions of the patch require manual installation.
Related Articles:
  • Patch management in LogMeIn Resolve MDM
Article last updated: 21 January, 2025

Need help?

Contact icon Contact support
Manage Cases icon Manage cases
Video icon Watch videos
  • Language selector icon Language selector icon
    • English
    • français
    • italiano
    • Deutsch
    • español
    • português
    • Nederlands
  • About Us
  • Terms of Service
  • Privacy Policy
  • Trademark
  • Do Not Sell or Share My Personal Info
  • Browse Products
  • Copyright © 2025 GoTo Group, Inc. All rights reserved

Collaboration Products

GoTo Connect

GoTo Meeting

GoTo Webinar

GoTo Training

join.me

Grasshopper

OpenVoice

Remote Solutions Products

GoTo Resolve

Rescue

GoToAssist

Access Products

Pro

Central

GoToMyPC