Whilst I understand that WSUS is still technically "supported", our CIO does not want to implement deprecated legacy software if avoidable.
We tried to get approval for SCCM but at $170K that was too bitter of a pill to swallow.
This has meant that for server management we had to look at alternatives to PMPC for patch management. The alternative frankly is kinda shit... But it meant no more manual patching process for my team.
We now have 2 vendors, 2 processes, 2 different ways of doing things and I'd really like to just go all in on PMPC for both user endpoints as well as servers.
So, my idea is that PMPC consider implementing some on-prem substitute for WSUS. Something that we could point publisher to and target our on-premise non-Intune managed devices. But retain the similar functionality of APPS/UPDATES, requirements/detection etc. that PMPC uses when publishing to Intune.
Publish to the local repository and either have something basic like a scheduled task script, login script, or PMPC agent on the endpoints check for applicable packages. Followed by pulling them down locally, executing, cleanup, drop a report on the deployment share or event logs or local logging.
Overall I want to continue to use PMPC but am currently relegated to using another competitor... And with the new functionality in Intune recently released... My CIO has started to eye off using that instead for the laptops and cutting PMPC completely.
I suspect the Intune functionality won't be as good as PMPC so need ammunition to keep PMPC on board.