Hello, i need your thoughts about an actual way of updating the macOS and Apple apps in a production environemnt.
Let me discribe our past update workflow. I have used Apples SUS Service a few years. With that solution i could activate or deactivate updates after testing and then i have installed the available updates with a weekly policy. But since OS X 10.10 the SUS service was not working correctly. And Apple does not want to provide this service in future.
For now i do the security and app updates sporadic with packages and scripts. I do not want do give the process of updating to the staff. Because we produce magazines and have here many different departments with special software. We have deadlines for many magazines in a week, printing pdfs must be produced in time and the printing company is waiting for them on a fixed date. There were issues in some past updates from apple f.e last big issue was a ethernet problem in a Yosemite security update. I want to test a update and i look to the feedback in some websites before i do my updates in our environment.
I heard that the Mac updates in big companies like IBM are done by the staff whenever they want directly from Apple. I ask me what is the situation in a big company, if there was a buggy update installed? Are these „standard working places“ and it is not problematic if there is a problem for one or two days?
I think the idea from Apple is that a client take his DEP bound Mac in the original packed box from the IT department. Then he celebrates the unpacking of his mac. He switches on the mac and installs with selfservice different things and future updates are made by the client himself whenever he think that a update is neccesary. Cool - but not for me.
Is there a chance of survial of SUS services like Reposado, Margarita or Jamf Netsus in a future view? Please share your thoughts with me.
Thank you in advance!
Lars
