AWS Systems Manager
User Guide

Patch Manager Prerequisites

SSM Agent Version

Version 2.0.834.0 or later of SSM Agent be running on the instances you want to manage with Patch Manager.


SSM Agent is updated whenever changes are made to Systems Manager and when new capabilities are added. To ensure that your instances are always running the newest version of SSM Agent, we recommend that you create a State Manager association that automatically updates SSM Agent when a new version is available. You can also use Run Command to quickly update one or more instances with the latest version. For more information, see Automatically Update SSM Agent (CLI) (State Manager) and Update SSM Agent by using Run Command.

Supported Operating Systems

The Patch Manager capability does not support all the same operating systems versions that are supported by other AWS Systems Manager capabilities. (These operating systems are listed in Systems Manager Prerequisites.) Therefore, ensure that the instances you want to use with Patch Manager are running one of the operating systems listed in the following table.

Operating System Details


64-Bit Systems Only

  • Red Hat Enterprise Linux (RHEL) 7.0 - 7.4

  • SUSE Linux Enterprise Server (SLES) 12

  • Amazon Linux 2015.03 - 2018.03

  • Amazon Linux 2 2-2.0

  • CentOS 7.1 and later

64-Bit and 32-Bit Systems

  • Red Hat Enterprise Linux (RHEL) 6.5 - 6.9

  • Ubuntu Server 14.04 LTS and 16.04 LTS

  • Amazon Linux 2012.03 - 2017.03

  • CentOS 6.5 and later


Instances created from an Amazon Linux AMI that are using a proxy must be running a current version of the Python requests module in order to support Patch Manager operations. For more information, see Upgrade the Python Requests Module on Amazon Linux Instances That Use a Proxy Server.


Windows Server 2008 through Windows Server 2016, including R2 versions. Patch Manager provides all patches for supported operating systems within hours of their being made available by Microsoft.