First off, I just have to express how much I dislike WSUS, it is such a frustrating un-intuitive unreliable piece of software I find..
First problem, I find that in my WSUS console certain updates show up, but when I go to the Windows update site individually with each client machine, it shows a lot more needed updates than what is actually in the updates page on the console itself. I have all the products that I want it to download ticked and I'm selecting the view to show any needed/not applicable updates. I don't see half of the updates that are on the actual windows update page in the WSUS console. So I feel as if using WSUS alone is not giving the machines all the updates they need.
2nd problem. I find every so often, the computers for some reason just do not communicate properly with WSUS. Here's what I mean. I have modified group policy to add my WSUS server as the update server for the clients and they still never seem to report to the server until I go to the windows update page at least once and click "install" on that active X thingy or whatever it is that it is prompting you to install before you can see the list of updates. After I click install then it seems to magically start reporting to the WSUS server.. Why do I have to do this??? I should not have to go to the website to get the WSUS client/server communication to work the way that it is supposed to. I thought all you had to do was set the group policy make sure the registry key is set and it will just start pulling updates or pushing (however it works).
Am I doing something wrong? Or is this how half built this thing is?