Overview
Emergency Plans (also referred to as Zero-Day Remediation) are important for rolling out fast, critical updates outside of your regular patching cycle.
JetPatch enables users to do this through Emergency Remediation Plans without having to change any of the existing settings in the environment.
The way this works is by creating a one-time maintenance schedule specifically for the emergency plan. After the plan is completed, endpoints automatically go back to their original patching settings - no changes required.
| Tip: It is highly recommended to pause and try out the feature yourself during the configuration steps below. |
When to Use an Emergency Remediation Plan
From time to time, you may want to patch your environment outside of your regular patching cycle due to:
- Fix a zero-day vulnerability.
- Deploy a critical patch for your environment.
- Deploy a patch that failed in the previous patching cycle.
- Meet an expected SLA.
Regular vs. Emergency Remediation Plan
| Regular Remediation Plan | Emergency Remediation Plan | |
| Execution Time | As configured for each Endpoint | As configured in the Remediation Plan creation |
| Maintenance Schedule Configuration | In Endpoint → Maintenance | In the Remediation Plan creation |
| Relevant Scope | Endpoint | Endpoint Group |
How to Configure an Emergency Remediation Plan
Follow the steps below to set up a successful emergency remediation plan.
Step 1: Create a Maintenance Schedule
JetPatch will execute the Remediation Plan on a predefined Maintenance Schedule. The first step is to create a one-time maintenance schedule specifically for this emergency plan.
Navigate to System → Maintenance Schedules and select Create Maintenance Schedule.
- Give the schedule a Name, Description, and Timezone, then click Save.
- Select Add Schedule Entry and fill in the following:
- Give the entry a Name.
- Repeat Type: Select Do Not Repeat for a non-recurring, one-time maintenance schedule.
- Set the start and end time for the maintenance window (e.g., start at 8:00 PM today, end at 4:00 AM tomorrow).
- Save the entry, then save the schedule.
| Tip: Pause here and create your one-time maintenance schedule before proceeding to the next step. |
Step 2: Find the Patch in the Patch Catalog
Navigate to Patches → Patch Catalog.
- Locate the zero-day patch or patches you want to remediate.
- Use the available filters to narrow down to the relevant patches (e.g., filter by Endpoint Group).
- Select the patch(es) and click Create Remediation Plan.
Step 3: Create the Emergency Remediation Plan
In the first section of the Remediation Plan creation:
- Provide a Name and Description for the plan.
- At the bottom of the form, check the “Emergency Remediation Plan” checkbox. This will add the Emergency icon to the title of the Remediation Plan and unlock the Emergency Maintenance Schedule selection.
- Click Save and Continue.
| Important: Marking the plan as an Emergency Remediation Plan is what allows you to assign the one-time maintenance schedule created in Step 1. Do not skip this step. |
Step 4: Approve Patches and Assign the Emergency Maintenance Schedule
- Select the patch or patches to include, then click Bulk Install to set the action to Install for all vulnerabilities.
- Click Save and Continue.
- Select the Endpoint Group that needs to be patched.
- In the Emergency Maintenance column, click on the relevant Endpoint Group and choose the one-time Maintenance Schedule created in Step 1.
- Click Save and Continue.
Step 5: Select Workflows and Activate
- Select the appropriate Workflows for the remediation plan (e.g., Linux Reboot to reboot machines after patching).
- Click Save and Activate. The plan will move to Pending status on the Remediation Plans dashboard.
The plan will sit in Pending until the one-time maintenance window arrives, at which point it will begin the patching process automatically.
Maintenance Window Behavior in Emergency Remediation Plans
When selecting a Maintenance Window for an Emergency Remediation Plan, it is important to understand its impact:
- In an Emergency Remediation Plan, the system ignores the Maintenance Window configured individually for each endpoint.
- Instead, remediation actions will be executed for all endpoints in the selected Endpoint Group according to the Maintenance Window defined in the Remediation Plan itself.
- This behavior ensures a consistent and controlled execution window for all endpoints participating in the emergency remediation process.
| Note: If you want to exclude certain endpoints from the emergency remediation plan, you can suspend those endpoints. |
Summary
Emergency Remediation Plans allow users to:
- Choose a one-time maintenance window for the plan.
- Patch endpoints immediately without changing any existing patching configurations.
Automatically return endpoints to their original settings once the plan is complete.
Comments
0 comments
Please sign in to leave a comment.