MattMerry Posted June 9, 2021 Posted June 9, 2021 Hi one and all, I have recently built a Windows Update Server on a Windows 2016 server, however, I am facing a bit of trouble in terms of the PC's actually pulling the updates from the server not Microsoft themselves. I am able to see the updates on WSUS and approve them for my relevant PC's in Computer Groups, however, the PC's aren't picking them up. Do I need to disable PC's from looking for updates from the web? GPO has been enabled and pointing to the new WSUS server. Any help would be greatly appreciated. Cheers, Matt
tmoon-mint Posted June 9, 2021 Posted June 9, 2021 What happens on your PCs? Do they pick up what updates they need but they stick at "downloading 0%"?
MattMerry Posted June 9, 2021 Author Posted June 9, 2021 Hi tmoon-mint When checking for updates on the PC's we don't even get that far. They only pick up the updates if we select 'Check online for....etc'. Regards,
3s-gtech Posted June 9, 2021 Posted June 9, 2021 What happens when you deny the PCs the ability to check for updates online via GP?
MattMerry Posted June 9, 2021 Author Posted June 9, 2021 Thanks for your reply 3s-gtech. Well that was one of my questions as I wasn't sure (first time building a server, so learning as I go along), so how would I go about disabling the PC's ability to look online? Sorry for the novice questions. Thanks!
3s-gtech Posted June 9, 2021 Posted June 9, 2021 In a Group policy Object applied to the PC: Computer Configuration/Policies/Administrative Templates/Windows Components/Windows Update/Do not connect to any Windows Update Internet locations Set to Enabled.
MattMerry Posted June 9, 2021 Author Posted June 9, 2021 Thanks for that, I will give this a try and update the thread on my findings.
MattMerry Posted June 10, 2021 Author Posted June 10, 2021 Hi 3s-gtech, We have made that change as you mentioned and our PC's are now pointing to the WSUS. Which leads me to my next question, how do I choose which Critical and Security updates to approve and install as there's thousands of updates. Thanks for your help thus far!
mrstrong Posted June 11, 2021 Posted June 11, 2021 I find wsus a bit of a pain to manage and there are several different approaches. I've found these series of articles by ajtek useful : https://www.ajtek.ca/guides/how-to-setup-manage-and-maintain-wsus-part-1-choosing-your-server-os/ 1
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now