Security

 View Only
  • 1.  ClearPass onguard agent and ManageEngine Patch Manager agent integration

    Posted Aug 12, 2025 06:43 AM

    hello everyone, 

    now i am using manual windows hotfix check in the posture policy to check the installed KB, 
    how could i integrate my clearpass onguard agent with Managengine patch manager agent to automate the check of the missing patchs on the client Pc.

    thanks, 



    -------------------------------------------


  • 2.  RE: ClearPass onguard agent and ManageEngine Patch Manager agent integration

    Posted Aug 12, 2025 08:31 AM

    You can check Managment Engine Patch Manager from OnGuard under the Patch Management category:

    You may need to scroll (two finger touchpad inside the list of checks) to get to Patch Management... that's not always obvious.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your HPE Aruba Networking partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact HPE Aruba Networking TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or HPE Aruba Networking.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------



  • 3.  RE: ClearPass onguard agent and ManageEngine Patch Manager agent integration

    Posted Aug 14, 2025 07:02 AM

    Hello herman, 
    i know that i could check for the ManageEngine Patch Manager Plus in the Patch management tab, but what i am seeking for is that could the onguard agent communicate dirictly with the manageengine agent to quarantine the user that has missing patchs.

    or if there any work arround to do that 

    -------------------------------------------



  • 4.  RE: ClearPass onguard agent and ManageEngine Patch Manager agent integration
    Best Answer

    Posted Aug 14, 2025 10:05 AM

    If you enable the 'auto-remediation', OnGuard is expected to trigger the product that detects the issue to remediate/update/restart/resolve. Support for that is in the documentation (https://your-clearpass/agent/supportcharts/oesis-v4/Windows_PATCH_MANAGEMENT_Support_Chart.xml ; or go via Administration -> Support -> Documentation -> Onguard Support Charts).

    Unfortunately for ManageEngine, it shows that Install missing patches is not implemented. This may be because ManageEngine has not opened up their product to be triggered externally. You may check with TAC about the support status, and they can verify with the (external) vendor of the detection library why remediation is not supported in this case.



    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your HPE Aruba Networking partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact HPE Aruba Networking TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or HPE Aruba Networking.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------



  • 5.  RE: ClearPass onguard agent and ManageEngine Patch Manager agent integration

    Posted Aug 14, 2025 05:47 PM

    thanks, i think this document is very useful for me 

    -------------------------------------------