Tanium Patch Troubleshooting Guide
Tanium Patch Troubleshooting Guide
https://help.tanium.com/bundle/ug_patch_cloud/page/patch/troubleshooting.htmlThis guide documents how to interpret Tanium Patch health using the following questions:
-
Patch – Coverage Status Details
-
Patch – Scan Age
-
Patch – Scan Errors
-
Patch – Is Process Running
-
Endpoint Configuration – Tools Status Details (Patch)
Full Troubleshooting Sequence
Use this exact order for accuracy:
1. Patch – Coverage Status Details
This question returns three columns:
Get Patch - Coverage Status Details from all machines
Example output (like in your screenshot):
1.1 Status Values & What They Mean
✅ Optimal
⚠️ Needs Attention (Detail: Stale Scan Results)
Typical remediation for “Needs Attention / Stale Scan Results”:
🚫 Unsupported
Typical remediation for “Unsupported / CX Unsupported”:
1.2 How to Use “Coverage Status Details” in Practice
2. Patch – Is Process Running
This question returns two values:
Get Patch –- Is Process Running from all machines
Example Output
What Each Result Means
✅ Yes
Meaning:
The Patch engine is running normally and can perform scans and deployments.
Next Steps:
None if combined with:with Low scan age and No scan errors
⚠️ [no results]
Meaning:
The endpoint did NOT return a Patch engine status.
Common reasons:
What to check next:
❗ [no results]:
Meaning:
The endpoint did not return scan age data.
Possible causes:
Next steps:
4. Patch – Scan Errors
This question returns:
Get Patch - Scan Errors from all machines
Example Output (your screenshot)
Get Patch - Scan Errors from all machinesWhat Each Result Means
🟢 No Scan ErrorsErrors:
Meaning:
Patch scan succeeded or is running normally.
⚠️ [no results]:
Meaning:
Endpoint did not return an error message because:
Possible causes:
Next Steps:
5. Endpoint Configuration – Tools Status Details (Patch)
This question returns detailed tool health, including:
Get Endpoint Configuration - Tools Status Details contains patch from all machines
Example Output (your screenshot)
How to Interpret
🟢 Installed / Versions Match
Match: Meaning:
Tools are installed correctly and functional.
⚠️ [no results]
: Meaning:
The endpoint is missing Patch tools completely.
RootPossible causes:
Remediation:
Full Troubleshooting Sequence (Based on Your Data)
Use this exact order for accuracy: