Updating wsus server




















To do this, at a command prompt, type nlb. Note In this step and in the following steps, press Enter every time that you type a command at a command prompt. Back up your database. For more information about how to back up a SQL Server database, go to the following Microsoft website:. Set up WSUS. To do this, at a command prompt, type one of the following commands, as applicable to your system:.

Review the setup log to verify that the upgrade was successful. To do this, at a command prompt, type the following commands:. To do this, at a command prompt, type iisreset, and then type net start wsusservice on each node in the NLB cluster. At a command prompt, type nlb. Download the update package now. You must have Windows Server Update Services 3. General information about Windows Server Update Services For more information about software update terminology, click the following article number to view the article in the Microsoft Knowledge Base:.

Windows Server Update Services 3. Need more help? Expand your skills. Get new features first. Was this information helpful? Yes No. All Computers: this group registers computer accounts when they contact to the WSUS server and this group you should not populate manually Unassigned computers: this group is not assigned to other groups by the WSUS Administrator.

You can create groups as per your requirements. You can type in whatever name you like and click Add. It will give me the abilities to use group policy to assign the correct machines into this group. I have moved one client machine with windows 10 in Windows10 OU. Click ok. Select New Rule to create a new approval rule. Select the classifications. You can also permit the update for computers groups. I am going to choose Windows 10 as that is my test PC group.

After you configure the rule, click OK. Select Run Rule If you wish to run this rule. I am selecting Updates for a specific product. For more examples of how to control automatic updates and other related policies, see Configure Automatic Updates by Using Group Policy.

Right-click the Specify intranet Microsoft update service location setting, and then select Edit. In the Specify intranet Microsoft update service location dialog box, select Enable. In your environment, be sure to use the server name and port number for your WSUS instance.

The other options are 80 and ; no other ports are supported. As Windows clients refresh their computer policies the default Group Policy refresh setting is 90 minutes and when a computer restarts , computers start to appear in WSUS. Now that clients are communicating with the WSUS server, create the computer groups that align with your deployment rings.

The following procedures use the groups from Table 1 in Build deployment rings for Windows client updates as examples. You can use computer groups to target a subset of devices that have specific quality and feature updates.

These groups represent your deployment rings, as controlled by WSUS. Now that the groups have been created, add the computers to the computer groups that align with the desired deployment rings. Adding computers to computer groups in the WSUS Administration Console is simple, but it could take much longer than managing membership through Group Policy, especially if you have many computers to add. In this example, you add computers to computer groups in two different ways: by manually assigning unassigned computers and by searching for multiple computers.

From there, you can use the following procedure to add computers to their correct groups. This example has only two computers; depending on how broadly you deployed your policy, you will likely have many computers here. Select both computers, right-click the selection, and then click Change Membership. Because they were assigned to a group, the computers are no longer in the Unassigned Computers group. If you select the Ring 2 Pilot Business Users computer group, you will see both computers there.

Another way to add multiple computers to a deployment ring in the WSUS Administration Console is to use the search feature. In the search results, select the computers, right-click the selection, and then click Change Membership.

For these cases, consider using Group Policy to target the correct computers, automatically adding them to the correct WSUS deployment ring based on an Active Directory security group. This process is called client-side targeting. This option is exclusively either-or. Now that WSUS is ready for client-side targeting, complete the following steps to use Group Policy to configure client-side targeting:. When using client-side targeting, consider giving security groups the same names as your deployment rings.

This is the name of the deployment ring in WSUS to which these computers will be added. WSUS respects the client device's servicing branch. If you approve a feature update while it is still in one branch, such as Insider Preview, WSUS will install the update only on devices that are in that servicing branch. When Microsoft releases the build for the General Availability Channel , the devices in that will install it. To configure an Automatic Approval rule for Windows client feature updates and approve them for the Ring 3 Broad IT deployment ring This example uses Windows 10, but the process is the same for Windows In the Add Rule dialog box, select the When an update is in a specific classification , When an update is in a specific product , and Set a deadline for the approval check boxes.



0コメント

  • 1000 / 1000