Link to home
Start Free TrialLog in
Avatar of DenisCooper
DenisCooperFlag for United Kingdom of Great Britain and Northern Ireland

asked on

WSUS and Microsoft Update Website

I'm running Windows Updates Services (WSUS) on one of my servers and GPO defines the server to the client PC's to pull down their automatic updates.

i haven't blocked access to the windows updates website, but what i was wondering was if someone goes to the windows update website, does it scan for updates on my WSUS server, or does it scan the microsoft one...if it scans the MS one, then will it only install updates i have approved?

Thanks,
Denis
ASKER CERTIFIED SOLUTION
Avatar of rvthost
rvthost

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Avatar of Bastiaan
Bastiaan
Flag of Netherlands image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of willc88
willc88

The exact answer is that unless you use your Group Policy to block the workstations from going to Windows Update then having WSUS is just simplifying your patch installs.  The workstations can still install any updates from the Microsoft site.  The most simple way to fix it all is to just use the GPO to deny access to Windows Updates.  Assuming none of your users have admin privledges on their workstations then your problem won't exist as the machines will have no other choice than to get their updates from your WSUS server.