Azure Update Manager - Dynamic Scopes not working as expected

Mayoral, Michael 1 Reputation point
2023-11-17T21:21:26.5533333+00:00

Hi All,

I'm adding a few Arc Enabled servers to Azure Update Manager to test its functionality.

The plan is to Dynamically add servers to a Patch schedule based on pre-defined Tags. As one expects, I was able to create a Maintenance Configuration with the desired schedule by adding the Tag filter to the Dynamic Scope section, the preview section displayed the expected machines. However, on the Azure Update Manager > Machines pane, the Associated Schedules column for the expected servers was Empty. After, reading a bit more into the documentation I found out that the machines also need to be manually added to the Resouces setting of the Maintenance Configuration for the maintenance to be Associated with the server.

Why do we have to manually add machines to the Resources setting for a Dynamic Scope to work?

Is there a dynamic way to add machines to the Resources setting?

Thanks,

M&M

Azure Arc
Azure Arc
A Microsoft cloud service that enables deployment of Azure services across hybrid and multicloud environments.
234 questions
Azure Update Manager
Azure Update Manager
An Azure service to centrally manages updates and compliance at scale.
129 questions
{count} votes

2 answers

Sort by: Most helpful
  1. SwathiDhanwada-MSFT 14,571 Reputation points
    2023-11-20T10:55:29.8533333+00:00

    Mayoral, Michael Welcome to Microsoft Q & A Community Forum. Dynamic Scoping is an advanced capability of schedule patching that allows users to:

    • Group machines based on criteria such as subscription, resource group, location, resource type, OS Type, and Tags. This becomes the definition of the scope.
    • Associate the scope to a schedule/maintenance configuration to apply updates at scale as per a pre-defined scope.

    The criteria will be evaluated at the scheduled run time, which will be the final list of machines that will be patched by the schedule. The machines evaluated during create or edit phase may differ from the group at schedule run time.

    You don't need to add machines again using Add machines if they are already included within dynamic scope. Regarding your statement, "the machines also need to be manually added to the Resouces setting of the Maintenance Configuration for the maintenance to be Associated with the server", can you please share the azure document you were referring to ?

    0 comments No comments

  2. Olakunle Sanni 1 Reputation point
    2023-11-24T09:03:03.8566667+00:00

    I have the same issue, the list is still not updated even after the first schedule has passed, it show up in the preview if or you try to edit or create a new dynamic scope, but it never really updated in the associated resources section of the Maintenance Configuration, even after waiting for days.

    0 comments No comments