While automatic software updates appear more convenient on the surface, in many cases, they'll create an underlying current of incompatibilities introduced without the knowledge or control normally exercised in managing business IT resources. The lack of integration among automated delivery mechanisms from different vendors will exacerbate the problem.
Some of these updates may be confined to a particular system or platform and be manageable for the most part if given adequate resources. Other automatic updates will have far-reaching consequences, potentially affecting thousands or even tens of thousands of workers and their systems.
Automatic update software and utilities are capable of operating in a completely hands-off fashion to download and install updates from the Internet as they become available. For instance, Microsoft's automatic update works that way for Windows updates and patches.
Giga Information Group doesn't recommend using the completely hands-off settings for automatic updates. Companies should use either a manual update process where updates must be initiated or, at a minimum, a setting that notifies the user when an update is available but doesn't automatically apply it without the user's consent.
The hands-off approach isn't advisable for the following reasons:
If tighter integration existed, it might simply be a matter of reviewing the history of a particular PC to see when the PC began to experience problems and what caused the change in the state of the machine. If the automatic update installation history can only be reviewed on the Web or from the information accessed via the control panel on the machine in question, administrators' flexibility and ability to solve the problem are significantly constrained.
Once tighter integration becomes available, completely automatic updates may be a viable option for companies that use desktop-management software.
Some day, automatic update mechanisms might adhere to a common framework that will define how updates are performed, managed, and if necessary rolled back when conflicts or issues arise. This framework might even provide IT managers with a single source of control over the automation of IT upgrades, but unfortunately, this vision isn't likely to play out in the next three to five years.
Companies that allow hands-off automatic updates today do so at the risk of creating an additional support burden to track problems when update-related issues arise. Businesses must exercise more control in any automatic software-update process and clearly define guidelines for users to follow. Companies should establish a standard set of procedures for implementing any form of automated software updates, hands-off or otherwise, and apply these procedures across products from different vendors in order to minimize risks and maximize the potential of automated update mechanisms.
Robert K. Weiler is chairman, president, and CEO of Giga Information Group, a global technology advisory firm. Reach him at gigaquestions@gigaweb.com. Giga senior industry analyst Ken Smiley contributed to this column.
Stay connected and informed by visiting our Enterprise IT Community!

Become a member today for instant access to free InformationWeek research, expert advice, peer perspectives, and more on the following topics:
- Application Performance Management (APM)
- Security Management
- Mainframe 2.0
- IT Automation
- Service Assurance
Also, visit our Government, Retail and Financial Services groups to see how these technologies apply specifically to those industries.
NOTE: Offer valid for U.S., U.S. possessions, & Canada only.