Reliable management of
Windows updates in industrial settings
without cloud dependency

With ondeso SR, you have access to a reliable WSUS alternative on premise that is specifically designed for industrial environments. You retain full control over your OT systems without relying on cloud services.

Use a WSUS alternative on premise designed for OT environments

A WSUS alternative on premise is becoming increasingly important for you if you operate industrial environments. WSUS has been used for Windows update management for many years. However, Microsoft has not actively developed the platform further since July 2024. Only security and compatibility updates are still provided.

At the same time, Microsoft is shifting its focus towards cloud based services such as Microsoft Intune or Azure Update Manager. This can work well in traditional IT environments. In your industrial network, however, cloud approaches often reach their limits.

 

Why cloud approaches are often not suitable for OT environments

Many production environments are intentionally isolated.
Typical requirements include:

  • Segmented production networks without internet access
  • Security policies without external connections
  • Systems without full domain integration
  • Highly segmented network architectures

 

ondeso SR als WSUS Alternative On-Premise

 

Greater control, security, and transparency with an independent on-premises solution for OT systems running from Windows XP SP3

Operate systems securely and independently

With ondeso SR, OT environments can be operated stably and independently entirely on-premises. They do not rely on cloud services or internet connections, thereby reducing external dependencies. At the same time, heterogeneous Windows environments can also be managed centrally.

Implement updates proactively, not reactively

Patch and software processes are controlled via clearly defined workflows. Updates can be tested according to a schedule and rolled out to production in a controlled manner. Manufacturer-specific update lists in accordance with IEC 62443-2-3 can also be taken into account.

Patching without additional production interruptions

Updates can be scheduled so that ongoing production processes are not interrupted. Even in highly critical OT environments, operations remain reliably secured, as ondeso SR was developed specifically for the requirements of industrial infrastructures.

ondeso is Siemens Product Partner für SIMATIC Automation Systems

ondeso SR is the only patch management system released by Siemens to date. With an ondeso SR connector for SIMATIC PCS 7, specially developed for Siemens, you can now automate Microsoft update management within your SIMATIC PCS 7 infrastructures. You can find our entry in the Siemens add-on catalogue.

07_AB190076_ondeso_SR_Thumbnail_1280x720px Kopie

Video: software & update deployment with ondeso SR

With ondeso SR, you can automate patch management in your OT environment and keep your industrial PCs secure and up to date. Updates can be deployed centrally with minimal manual effort, without unnecessarily disrupting production processes. Watch this video to learn more.

log4shell-patching-mit-ondeso-success-story

Success Story: CVE-2021-44228: Log4Shell-Patching

A cybersecurity engineer in the automotive industry faced the challenge of patching the critical Log4Shell vulnerability on 2,000 OT clients as quickly as possible. Thanks to ondeso SR, he found an automated solution to quickly identify and fix the vulnerability.

Functions beyond classic patch management

With ondeso SR, you go well beyond the capabilities of WSUS and gain a comprehensive solution for the centralized management of your OT clients.

  • Inventory OT assets
  • Create backups to implement disaster recovery plans
  • Implement security concepts, e.g. authorisation management, firewall configurations
  • Secure and control the shutdown of end-of-life clients
  • Creating reports and analyses

 

All tasks are logged in detail to increase traceability and analyze potential errors. This allows you to maintain control over your OT environment at all times, manage the entire lifecycle of your clients, and reduce manual effort simultaneously.

What our Customers say

Why ondeso SR Is the Right Choice

 

  • Specifically designed for industrial infrastructures
  • In use on more than 200,000 industrial PCs since 2010
  • 100 % made in Germany

 

Contact us so we can find out together whether our software is the right tool for your needs.

 


 

Your Next Steps if You’re Interested in ondeso SR

Book a Demo

We show you ondeso SR live and give you a comprehensive overview of the features, tailored to your use cases and specific requirements, so you can see it in action.
Request a demo.

Start a Proof of Concept

In the PoC, you test ondeso SR together with us in your real OT environment. You will directly experience how inventory, patch management, backup and automation can be implemented in your operations.

Full Control in a Short Time

After the PoC, training and rollout begin. If the prerequisites are in place, installation can be completed within a few hours, after which your OT systems can be managed reliably.

Experience the Benefits Yourself

I am here to assist you.

Christoph Ackermann
Head of Professional Services
Phone: +49 175 3334006

christoph-ackermann-ondeso