HCL BigFix - Datasheet - Patch - v1.2
HCL BigFix - Datasheet - Patch - v1.2
HCL BigFix - Datasheet - Patch - v1.2
Continuous patch compliance,
visibility and enforcement
With software—and the threats against that software—constantly evolving, organizations need an effective way to assess, deploy
and manage a constant flow of patches for the myriad operating systems and applications in their heterogeneous environments. For
system administrators responsible for potentially tens or hundreds of thousands of endpoints running various operating systems and
software applications, patch management can easily overwhelm already strained budgets and staff. BigFix Patch balances the need
for fast deployment and high availability with an automated, simplified patching process that is administered from a single console.
BigFix Patch gives organizations access to comprehensive capabilities for delivering patches for Microsoft Windows, UNIX, Linux
and Apple Macintosh operating systems; third-party applications from vendors including Adobe, Mozilla, Apple and Java; and
customer-supplied patches to endpoints—regardless of their location, connection type or status.
Endpoints can include servers, laptops, desktops and specialized equipment such as point-of-sale (POS) devices, ATMs and
self-service kiosks. In addition, virtual machines can be patched so that virtual and cloud environments have the same level of
security as physical systems.
• Automatically manage patches for multiple operating systems and applications across hundreds of thousands of
endpoints—regardless of location, connection type or status
• Fixlet® messages, delivered regularly by the BigFix development team, wrap the update with policy information (such as patch
dependencies, applicable systems and severity level) which is read by an intelligent agent so only the relevant updates for that
specific endpoint are downloaded and installed
• Reduce security and compliance risk by slashing remediation cycles from weeks to days or hours
• Gain greater visibility into patch compliance with flexible, real-time monitoring and reporting
Addressing security needs Achieve continuous compliance
across the organization Many organizations need to establish, document and prove
compliance with patch management processes in order to
One approach to patch management is to create large patch files comply with governmental regulations, service level agreements
with a large update “payload” and distribute them to all of the (SLAs) with other organizations and internal constituents, and
endpoints, regardless of whether they already have all of the corporate policies. Regulations such as Sarbanes-Oxley, Payment
patches. BigFix Patch takes a different approach, automatically Card Industry (PCI) Data Security Standard (DSS) and Health
creating patch policies, called Fixlet® messages, which wrap the Insurance Portability and Accountability Act (HIPAA) require that
update with policy information such as patch dependencies, a regular, fully documented patch management process be in
applicable systems and severity level. An intelligent agent place, and proof of continuous compliance is necessary in order
recognizes which patches are required for the machine on which to pass audits. BigFix's ability to enforce policies and quickly
it is installed based on the endpoint’s unique hardware, operating report on compliance can help improve an organization’s audit
system, configuration settings, applications and installed readiness.
patches. The agent then automatically retrieves and applies only
the relevant updates for that specific endpoint.
With BigFix, the remediation cycles are short and fast, which
enables an industry-leading, rapid-response capability for
addressing malware and security exposures.
Why BigFix?
The BigFix Family includes:
• BigFix Lifecycle—This easy-to-manage, quick-to-deploy solution provides unified, real-time visibility and management of
endpoints including asset discovery, patch management, software distribution, operating system deployment, and remote
desktop control.
• BigFix Compliance— This easy-to-manage, quick-to-deploy solution provides unified, real-time visibility and enforcement to help
organizations both protect endpoint assets and assure regulators that systems are meeting security compliance standards.
• BigFix Inventory—This software enables users to discover and analyze applications installed on desktops, laptops and servers.
Drill-down information about software
HCL, the HCL logo, hcl.com,bigfix.com, BigFix, and Fixlets are trademarks of HCL Corporation., registered in many jurisdictions
AIX, and z Systems are a registered trademark of International Business Machines Corp.
Adobe is a registered trademark of Adobe Systems Incorporated in the United States and/or other countries.
Java and all Java-based trademarks and logos are trademarks or registered trademarks of Oracle and/or its affiliates.
Linux is a registered trademark of Linus Torvalds in the United States, other countries, or both.
Microsoft and Windows are trademarks of Microsoft Corporation in the United States, other countries, or both.
UNIX is a registered trademark of The Open Group in the United States and other countries.
This document is current as of the initial date of publication and may be changed by HCL at any time. Not all offerings are available
in every country in which HCL operates.
HCL products are warranted according to the terms and conditions of the agreements under which they are provided.
wx10549 v1.2
The client is responsible for ensuring compliance with laws and regulations applicable to it. HCL does not provide legal advice or
represent or warrant that its services or products will ensure that the client is in compliance with any law or regulation.
Statements regarding HCL’s future direction and intent are subject to change or withdrawal without notice and represent goals and
objectives only.