Search
Generic filters
SERIES: A Peek Inside ConfigOS MPO Key Features – Shield Update with Commander
September 22, 2026

A Peek Inside ConfigOS MPO Key Features – Shield Update with Commander

Written by Jamie McCoard, Development Manager, SteelCloud

Keeping endpoint software up to date is a critical part of maintaining a secure and compliant environment. However, manually updating Shield software across dozens, hundreds, or even thousands of endpoints can be time-consuming, error-prone, and difficult to manage consistently.

Shield Update Through Commander simplifies this process by providing centralized, automated deployment of Shield software updates across managed endpoints. Instead of administrators manually updating individual systems or using their own application deployment process, Commander distributes approved Shield Update Packages (SUPs) to connected Shields or when outdated offline Shields reconnect.

Why Centralize Shield Updates in Commander?

As endpoint environments scale to hundreds or thousands of devices, centralized management pays off in ways that matter to both IT operations and compliance:

Key Benefits

  1. Centralized, Automated Management

Administrators manage updates from a single location instead of touching each endpoint individually. Once a SUP is staged on the Commander server, connected Shields automatically pull and install it, freeing staff for higher-value work.

  1. Reduced Version Drift

Approved versions propagate automatically as Shields connect or reconnect, simplifying troubleshooting and compliance reporting.

  1. Scales With the Environment

The same automated process works whether you’re managing a handful of endpoints or a large enterprise fleet.

How to Deploy Shield Updates with Commander

This procedure sets up Commander to update Shields on existing endpoints. On new endpoints, you must install Shield manually. This feature is available in version 2025.1.0 and later.

  1. Obtain the Shield Update Package

Download the latest .SUP file from the SteelCloud customer portal.

  1. Place the .SUP File on the Commander Server

Drop the .SUP file into the following location: C:\ProgramData\SteelCloud\MPO\Commander\Shield Updates

If desired, administrators can modify the default package location. See user reference guide for more information.

  1. Allow Commander to Process the Update

Allow 5-10 minutes for Commander to detect and process the package.

Commander automatically notifies connected Shields that the update is available. Shield then begins the work of validating there is a newer version, downloading and installing the latest Shield. Depending on the size of the environment, deployment to all connected endpoints may take up to 30 minutes.

  1. Verify Shield Update Activity

Shields will go offline during the upgrade process and will come back online once completed.

You can validate manually by logging on to an endpoint device and reviewing the Shield version information:

  • For Windows – Open Settings > Apps > Installed apps, find the ‘ConfigOS MPO Shield’ in the list, and the version will be shown next to it (or click the three-dot menu for more details).
  • For Linux – run command cat /etc/steelcloud/shield/shield/version

The Shield logs will also give more information about the upgrade process if interested in digging deeper or needing to troubleshoot. Log location can be found in our user reference guide.

Keep Every Connected Shield Current

Shield Update Through Commander gives administrators a straightforward way to keep Shield software current across the environment without updating endpoints one by one. Whether it’s a routine version update or a critical hotfix, the same automated process gets it to every connected endpoint fast — keeping organizations secure, compliant, and audit-ready with minimal manual effort.

To explore other key MPO features, click on the following links:

Automated Endpoint Grouping

GPO Conflict Identification 

AutoSelect

VeraLogix™

Schedule MX

Rapid Policy Debugger

Share This Resource: