Configuring
Prerequisite Installer fails to detect correct .NET Framework language
Purpose This document details the work around when the prerequisite installer detects the installed .NET Framework version does not match the language of the operating system. Symptom In the prerequisite installer, the .NET Framework version may not ...
Changing the Configuration Manager Security Scope for a User or Group
Purpose To change the applied Security Scope on a Configuration Manager user or group Description In the Configuration Manager console, navigate to 'Administration' > 'Overview' > 'Security' > 'Administrative Users'. Select and right click on the ...
Uninstall the Lenovo Patch Plugin
Purpose Detail the process for uninstalling the Lenovo Patch plugin from a device with the Configuration Manager console. Process The Lenovo Updates Catalog provides update data for the following product lines: Backup the Lenovo Patch Database. Refer ...
Configuration When Upgrading the Windows Server Operating System
Purpose To provide guidance when upgrading the underlying operating system or migrating to another server on the Configuration Manager server where the Lenovo Patch plugin is installed. Process Pre Upgrade Tasks: Lenovo Patch Settings with a Database ...
Setting Proxy Authentication
Description This document is intended to show how to set proxy information for the Lenovo Patch plugin. If your internet connection goes through a proxy, this may be required for Lenovo Patch to be able to successfully publish updates. Solution In ...
Configuring the Intune Connector
Purpose Guide customers through the process of configuring the Entra ID App Registration and the settings in the Lenovo Patch plugin. Process Configuring Entra ID Login to Entra ID. Navigate to the Applications > App Registrations node. Click on the ...
Configuring the Local Source Folder
Purpose This article provides instructions on how to configure the Local Source folder in Lenovo Patch. An administrator may configure the Local Source folder as a means to store update content, whether it be for an archive of previous update ...
Configuring Required Software Update Classifications
Purpose Define the appropriate software update classifications to enable in the site Process In the console, navigate to 'Administration' > 'Overview' > 'Site Configuration' > 'Sites' Select then right click the Site. From the context menu, expand ...
Installing Remote Server Administration Tools - WSUS Tools on a Client Operating System
Purpose The purpose is to provide guidance on the installation of the Remote Server Administration Tools - WSUS Tools - API and PowerShell Cmdlets on a server operating system. Description For Lenovo Patch to interact with WSUS to publish updates ...
Installing Remote Server Administration Tools - WSUS Tools - API and PowerShell Cmdlets on a Server Operating System
Purpose The purpose is to provide guidance on the installation of the Remote Server Administration Tools - WSUS Tools - API and PowerShell Cmdlets on a server operating system. Description For Lenovo Patch to interact with WSUS to publish updates ...
Changing a Configuration Manager Security Role for a User or Group
Purpose To change a user permissions to Configuration Manager through role based assignment using either direct membership or by group membership. Description In the Configuration Manager console, navigate to 'Administration' > 'Overview' > ...
Adding a User or Group to a Configuration Manager Security Role
Purpose To grant a user permissions to Configuration Manager through role based assignment using either direct membership or by group membership. Description In the Configuration Manager console, navigate to 'Administration' > 'Overview' > 'Security' ...
Verifying Your User is in the WSUS Administrators Group
Purpose You must use an account that is a member of the WSUS Administrators group. This document is meant to show how to verify the Configuration Manager user is added to the WSUS Administrators group on the WSUS server. Configuration The WSUS ...
Verifying the User is in the Administrators Group
Purpose You must use an account that is a member of the Administrators group. This document is meant to show how to verify the Configuration Manager user is added to the Administrators group on the server/computer. Configuration The Administrators ...
Granting 'Log on As A Batch Job' Privilege
Purpose This document provides information on how to assign the user privileges associated with the usage of the Automation Scheduler functionality in the Lenovo Patch for MEM plugin. The Automation Scheduler utilizes the Microsoft Task Scheduler to ...
URL Exception List and Certificate Verification Sites
Purpose This tip provides a list of web addresses that may be required to download catalogs, updates, or content when using Lenovo Patch. Description URLs for Lenovo Patch functionality and to access content from the Lenovo Updates Catalog. ...
Recent Articles
IT Assist Features & FAQ
About IT Assist Lenovo IT Assist is a cloud-based generative AI-powered assistant designed to help IT Admins efficiently find information, gain better visibility into their PC fleets and networks, and streamline device management. Lenovo IT Assist ...
ThinkShield Firmware Assurance Release Notes v.25.02 (02-28-2024)
Component Subcomponent Release Version Availability Date · TSFA Cloud · TSFA Client · Optimization for device lookup · Events new definitions & parsing methods Refer to the Knowledge Base for more information 25.02 March 7, 2025 Base Requirements for ...
About Events and Incidents
This document provides a structured overview of key security-related incidents logged by ThinkShield Firmware Assurance. Events are categorized based on their nature, severity, and potential impact. Each event includes a brief description, its ...
Download and Installation
This article outlines the process for downloading and installing the Endpoint Sensor (EES) packages across various operating systems, including Windows, Linux, and macOS. It provides step-by-step instructions for acquiring the necessary files, ...
About Device Statuses
Status The Status refers to the platform state of a device and indicates its onboarding stage. Devices can have one of three statuses: Active: The device is fully onboarded, provisioned, and actively reporting data. Pending: This status may occur for ...
Popular Articles
Error: 0x87D00324 - The application was not detected after installation completed
Symptom Software Center or the Deployment has an error code: 0x87D00324 Error message: The application was not detected after installation completed Cause Either the device requires a reboot to complete the installation or the IsInstalled Rules are ...
ThinkShield Firmware Assurance Reference Documents
Terms & Conditions including our Privacy Statement are available on the portal under Preferences. To access this information, click the arrow icon next to your name on the top right corner of the portal, then select Preferences.
Using the Dashboard
The Dashboard displays data from the entire fleet of devices through various graphs, bar charts, and visual elements, helping users quickly grasp trends and key metrics. As the landing page, it is the first interface users see when accessing the ...
About TSFA Agent UI and CLI
TSFA Agent UI ThinkShield Firmware Assurance (TSFA) is a tool based on UDC that, once installed on a device, retrieves security event logs from the device's embedded controller and uploads them to the cloud. These logs can then be viewed on a cloud ...
Creating and Managing User Groups
Grouping users is helpful for managing a large number of users - typically by geography, department, or role. Creating User Groups Navigate to User Management > User Groups. Click ✚ Create Group button. In the Add group screen, fill in the group ...