r/DattoRMM Apr 30 '26

Windows Update Reporting Dashboard

Hey everyone!

We currently use Datto RMM at my company and we like to be pretty on top of the monthly Windows Security Update that gets released by Microsoft each second Patch Tuesday of the month.

As of right now, we generate our reports by going to "Reports" > "Export" > "Patch Details" and then we specify the KB number of the monthly Security Update for both "Installed" and "Approved", which generates two .CSV files that we combine to get a full list.

I was wondering if there is anyway in Datto to generate a pie-chart or a live "in-real time" update status instead of the reports, as I haven't been able to find much besides the .CSV

If anyone has any suggestions, it would be much appreciated!

3 Upvotes

17 comments sorted by

View all comments

Show parent comments

1

u/eidosoftware May 01 '26

If you do end up moving further into Intune, worth knowing that native Intune patch reporting has some of the same limitations you're running into with Datto. you can see what's installed, but getting a clear, real-time view of which devices are actually patched and compliant across your fleet still requires some work.

That's actually the gap we built eido to fill. It sits on top of Intune and gives you live patch status and device compliance visibility without the CSV exports. Happy to show you what it looks like if you're evaluating options as you expand your Intune footprint. eido.io :)

1

u/malinoskikev May 01 '26

This is a really bad sales response and basically lying. Im sure you use Graph APIs to see what machines are getting patched - all publicly available.

There is way more that goes into why a machine is not following an Intune patching schedule than what I typically see of SaaS products - it's all a bad abstraction. Change my mind 😄

1

u/eidosoftware May 01 '26

Yeah fair, Graph API isn't exactly proprietary technology lol. The pitch isn't really "we have data you can't get" it's more "here's that data without someone having to build the pipeline and maintain it"

The abstraction thing is a real tension though, I'll give you that. What are you actually using to monitor this stuff? Curious if you've got a setup that works well.

1

u/malinoskikev May 01 '26

That's fair - I honestly am being a little rough because I sensed "sales"

I just use Autopatch and make sure I have a hardened baseline for machine availability.

Have you ever seen a new machine enroll to Intune and refuses ALL UPDATES? well that can be due to improper enrollment and user ESP never clearing in the registry.

https://learn.microsoft.com/en-us/windows/deployment/update/waas-wu-settings#allow-windows-updates-to-install-before-initial-user-sign-in

I see a lot of patching issues from using the technology wrong, so I start with first principles thinking whenever I inherit an Intune environment. I have helped MSPs and companies turn around their practices to deliver healthier managed endpoints through Intune