Hello PeterG,
Greetings.
By default, APD task will deploy the Patches during the next deployment Window i.e if machines not patches by Monday early morning then it will be patched by Friday morning. If you wish to patch the machine even it's not connected to your Network then you can use the Remote Office option to manage the clients available over the WAN. All you will need to do is make the Desktop Central server reachable over the WAN by configuring the NAT in your Internet facing Router/Firewall so that the Desktop Central Remote Office Agent installed on the client machine can communicate to the Desktop Central server when they connected internet.
Further, if you know the clients that at most time available in WAN then you can use the public IP Address to create the Remote Office otherwise you may use the FQDN name to create Remote Office. In this way Agent installed on the client machine can communicate when they in the WAN as well as from LAN (DNS alias needs to be created in LAN).
Refer to web site below to understand the protocol and ports used by the Desktop Central to manage the clients connected to the internet.
Trust the above information helps. Let me know if you have additional questions in this case.
Regards,
-----
Dinesh Babu J
Sr. Technical Consultant
Desktop and Mobile Device Management Solution
Direct Support : +1 408 916 9886
Toll Free: +1 888 720 9500 (US) | 0800 028 6590 (UK) | +1 800 631 268 (AUS)
[ Desktop Management | Desktop Management for MSP | OS Deployment | Mobile Device Management ]
**'New ticket' for 'new request' would help us to serve you better.