Microsoft to streamline Windows 8's patch process
Tweaks to updating, rebooting of patched PCs will improve security, say experts
Computerworld - Microsoft will reduce the number of distracting restarts for updates to Windows 8, part of its plan to simplify how people interact with the upcoming operating system, a company manager said today.
Security experts, including ones who have criticized Microsoft's updating practices in the past, applauded the changes.
"Streamlining the update effort and the better messaging is smart," said Wolfgang Kandek, chief technology officer with Qualys. "I like the improvements."
Some, though not all, of Microsoft's security and feature updates demand a PC reboot to finish installation because the code slated for changing is currently in use, said Farzana Rahman, the group program manager for Windows Update, in a long blog post today.
"One of the most discussed topics [about updating Windows] is the disruptiveness of restarts in the course of automatic updating," said Rahman. "And for good reason -- restarts can interrupt you right in the middle of something important."
Windows 8 will be less unsettling, Rahman promised, and ticked off several changes that will debut with the new OS.
On-the-desktop notifications will disappear, she said, referring to the pop-ups displayed on the Windows 7 taskbar, even when users have explicitly asked that updates be automatically downloaded and installed.
More importantly, Windows 8 will hold all restarts until after Patch Tuesday, the security update release always slated for the second Tuesday of the month.
When one or more updates does require a PC restart, Windows 8 will alert users in a message on the log-in screen that persists for three days. Microsoft picked that timespan because its telemetry said about 60% of Windows 7 users had completed update download and installation in the first three days after an update's release.
If a user doesn't select a restart at the log-in screen after three days, Windows 8 will do it, either at the end of the grace period or if critical applications are still open, automatically the next time a user logs in.
"This way through the log-in screen is great," said Kandek, who added he thought it was the logical place to remind users to reboot, and would probably get more people to update faster than they do now.
IT administrators will still be able to set a group policy that sidesteps automatic rebooting -- just as they can now with Windows 7 -- Rahman said.
Andrew Storms, director of security operations at nCircle Security, supported the changes slated for Windows 8, but issued a caveat. "The risk is that if we get a bad patch, then bad things happen without our control," said Storms.
Microsoft has issued patches that have crippled PCs, most notably in early 2010 when it pushed a patch for Windows XP that sent machines into a "blue screen of death" spiral.
- Aged Windows XP costs 5x more to manage than Windows 7
- Microsoft clarifies Ballmer's claims of massive Windows 8 adoption
- Windows 8 puts end to endless reboots
- QuickPoll: Why is Microsoft ditching its "Aero" UI in Windows 8?
- No price cuts for Windows 8 upgrades, says analyst
- Microsoft dumps 'Aero' UI in Windows 8, 'Metro-izes' desktop
- Microsoft reprises free Xbox back-to-school PC promo
- Microsoft to charge $15 for Windows 8 upgrade deal
- Senate to look at Mozilla's browser competition allegations
- Microsoft preps Windows 8 upgrade deal for early June debut, says report


- Excel 2010 Cheat Sheet
- Register for this Computerworld Insider Cheat Sheet and gain access to hundreds of premium content articles, guides, product reviews and more.
- Practice Management: Double Billing Rate and Improve Patient Services
- Would you like to double your billing rate and achieve faster payment for services?
Download this customer success story to see how One Health... - Mission Critical Data Explosion and Customer Case Study
- Would you like to double your tier 1 storage capacity while simultaneously reducing your storage footprint?
Download this customer success story to see how... - Protecting Against Database Attacks and Insider Threats: Top 5 Scenarios
- Read this new eBook to learn the top five scenarios and essential best practices for preventing database attacks and insider threats.
- Database Activity Monitoring Is Evolving
- Read the analyst report and learn how you can leverage the core capabilities of a DAP solution for better database security.
- Establishing a Strategy for Database Security is No Longer Optional
- The options for securing increasingly valuable databases are very broad and deep, and can be confusing. This research provides an overview of three... All Windows White Papers
- Distributed Database Security with Real-time Monitoring
- View this demo and learn how IBM InfoSphere Guardium database activity monitoring can help protect your sensitive data in distributed DBMS environments with...
- InfoSphere Warehouse Packs Demo
- These flash modules make warehousing more tangible and relevant to business users through detailed explanations of the InfoSphere Warehouse Packs.
- Delivery Management -- Extending Lifecycle Management
- Date: Wednesday, June 20, 2012, 1:00 PM EDT
Siloed organizations continue doing the wrong things and doing things wrong, leading to increased costs,... - Leverage automation today to reduce IT complexity
- Date: Tuesday, June 5, 2012, 2:00 PM EDT
Whether your B2B complexity is caused by multiple technologies due to M&A, business or application specific... - Redefine Expectations in the Data Center
- Need to do more with less? Watch this video to learn how HP ProLiant Gen8 servers can help your business deploy servers three... All Windows Webcasts
