Compute Engine explained: Scheduling the OS patch management service

Stubhub’s path to retire the data center with Bare Metal Solution
January 11, 2021
What’s new with Google Cloud
January 12, 2021
Stubhub’s path to retire the data center with Bare Metal Solution
January 11, 2021
What’s new with Google Cloud
January 12, 2021

Last year, we introduced the OS patch management service to protect your running Compute Engine VMs against defects and vulnerabilities. The service makes patching Linux and Windows VMs with the latest OS upgrades simple, scalable and effective. In this blog, we share a step-by-step guide on how to set up a project with a schedule to automatically patch filtered VM instances, resolve issues if an agent is not detected, and view an overview of patch compliance across your VM fleet.

Getting started

Imagine an example project with several VM instances hosting a mythical web service. You want to automatically keep the instances updated with the latest critical fixes and security updates against malicious software. You have a production fleet and a development fleet of machines for which you want to apply updates using different schedules.

First, enable the service by navigating to GCE > OS Patch Management in the Google Cloud Console. Alternatively, you can also enable Cloud OS Config API and Container Analysis API through the Google Cloud Marketplace, or gcloud:

Leave a Reply

Your email address will not be published. Required fields are marked *