Azure Update Manager - Dynamic Scopes not working as expected

Mayoral, Michael 1 Reputation point
2023-11-17T21:21:26.5533333+00:00

Hi All,

I'm adding a few Arc Enabled servers to Azure Update Manager to test its functionality.

The plan is to Dynamically add servers to a Patch schedule based on pre-defined Tags. As one expects, I was able to create a Maintenance Configuration with the desired schedule by adding the Tag filter to the Dynamic Scope section, the preview section displayed the expected machines. However, on the Azure Update Manager > Machines pane, the Associated Schedules column for the expected servers was Empty. After, reading a bit more into the documentation I found out that the machines also need to be manually added to the Resouces setting of the Maintenance Configuration for the maintenance to be Associated with the server.

Why do we have to manually add machines to the Resources setting for a Dynamic Scope to work?

Is there a dynamic way to add machines to the Resources setting?

Thanks,

M&M

Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
412 questions
Azure Update Manager
Azure Update Manager
An Azure service to centrally manages updates and compliance at scale.
304 questions
{count} votes

2 answers

Sort by: Most helpful
  1. SwathiDhanwada-MSFT 18,756 Reputation points
    2023-11-20T10:55:29.8533333+00:00

    Mayoral, Michael Welcome to Microsoft Q & A Community Forum. Dynamic Scoping is an advanced capability of schedule patching that allows users to:

    • Group machines based on criteria such as subscription, resource group, location, resource type, OS Type, and Tags. This becomes the definition of the scope.
    • Associate the scope to a schedule/maintenance configuration to apply updates at scale as per a pre-defined scope.

    The criteria will be evaluated at the scheduled run time, which will be the final list of machines that will be patched by the schedule. The machines evaluated during create or edit phase may differ from the group at schedule run time.

    You don't need to add machines again using Add machines if they are already included within dynamic scope. Regarding your statement, "the machines also need to be manually added to the Resouces setting of the Maintenance Configuration for the maintenance to be Associated with the server", can you please share the azure document you were referring to ?

    0 comments No comments

  2. Abhimanyu Varma 85 Reputation points Microsoft Employee
    2024-03-23T04:52:31.0066667+00:00

    No, machines do not need to be added manually if you are using Dynamic scopes. Now, dynamic scopes also show in the associated schedules column in the Machines view.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.