Solved

WSUS GPO creation problem

Posted on 2009-04-03
3
462 Views
Last Modified: 2012-05-06
I just setup a wsus 3.0 server on a server 2003 machine. I then went to our domain controller (also running server 2003) and created the WSUS GPO with GPO management console. I made the necessary changes to "computer configuration", such as "configure automatic updates and specify service location. I placed the GPO in a an OU I created with just two users (for testing purposes). After saving the GPO I waited a few hours and ran gpedit on one of the two users computer and nothing has changed on this machine.  I ran GPOTOOL on the DC and it shows no errors. I was logged in as administrator when I created the GPO.

What am I doing wrong?
0
Comment
Question by:Randy_K
3 Comments
 
LVL 28

Expert Comment

by:asavener
Comment Utility
Automatic Updates is part of the computer configuation; when you say "two users" did you assign the GPO to an organizational unit with the users' computers, or with the users' user accounts?

You have to apply the GPO to computer objects.
0
 
LVL 5

Expert Comment

by:rgutwein
Comment Utility
Try this:

On the Domain Controller with the Group Policies, go to Start --> Run --> and type CMD  Now enter in:
gpupdate /force

Now restart your client computer and wait to see if it is downloading the updates from the WSUS server.  Sometimes it may take a few minutes.

You could always have the client computer check with the updates on the WSUS server by going to the Command Prompt on the client computer and type in:
wuauclt.exe /detectnow

0
 
LVL 25

Accepted Solution

by:
Ron M earned 250 total points
Comment Utility
WSUS policy settings is a COMPUTER configuration policy, therefore should be applied to an OU that contains the machines not users.

After the policy is linked, then you go to the MACHINE, NOT the DC server...and run GPUPDATE /FORCE, or simply logoff and back on.  Policy should be applied...

GPEDIT, will only show you the LOCAL policy on that machine....  if you want to see what policies are being applied, you type GPRESULT from command line on the client machine.
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

#Citrix #POC #XenDesktop #vCenter #VMware #ESX
Let’s list some of the technologies that enable smooth teleworking. 
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now