Hi,
Maybe not the right forum but starting here - we have VPN solution that uses a home-grown end point security component. The EPS checks for running AV, anti-spyware, services, and hotfixes before allowing a VPN connection to occur.
The hotfixes component is becoming problematic do to the dynamic nature of Windows hotfixes. While older computers have all of the hotfixes installed, newer computers that are patched w/ WSUS or Windows Update when they are provisioned and are up-to-date (per the Windows Update check) end up missing some of the older hotfixes that were previously valid and are listed in the catalog that the EPS uses when checking the client.
I would like to either have a tool that could query for hotfixes that are current in the "here-and-now" or a reference site that lists all of the hotfixes that have not been replaced by newer hotfixes for a given build (XPSP2, W2K SP4, etc). I could then compare the information in this list with what is in the EPS catalog and make the necessary changes before pushing the update out to my clients.
I found the Microsoft version of a list ( and that will probably provide the info but I'm wondering does anyone has a more elegant solution?
Thanks...
Maybe not the right forum but starting here - we have VPN solution that uses a home-grown end point security component. The EPS checks for running AV, anti-spyware, services, and hotfixes before allowing a VPN connection to occur.
The hotfixes component is becoming problematic do to the dynamic nature of Windows hotfixes. While older computers have all of the hotfixes installed, newer computers that are patched w/ WSUS or Windows Update when they are provisioned and are up-to-date (per the Windows Update check) end up missing some of the older hotfixes that were previously valid and are listed in the catalog that the EPS uses when checking the client.
I would like to either have a tool that could query for hotfixes that are current in the "here-and-now" or a reference site that lists all of the hotfixes that have not been replaced by newer hotfixes for a given build (XPSP2, W2K SP4, etc). I could then compare the information in this list with what is in the EPS catalog and make the necessary changes before pushing the update out to my clients.
I found the Microsoft version of a list ( and that will probably provide the info but I'm wondering does anyone has a more elegant solution?
Thanks...