Solved

How to setup automatic definition and security updates for Forefront Client Security through SCCM 2007 R2 and WSUS integration?

Posted on 2010-08-19
1
1,806 Views
Last Modified: 2013-11-21
I've looked as far as I could on the web for information on how to setup automatic pushing and installation on definition and security updates for Forefront Client Security through the SCCM 2007 R2/WSUS integration model. I did find this link:

http://technet.microsoft.com/en-us/library/dd185652.aspx

The clients I have (two, one is an XP pro SP3 machine, the other Windos 7 enterprise) will receive definition updates if configured through the SCCM console as a package, but they don't seem to update as the article above explains.

I am wondering what exactly what the best method is to auto aprrove and auto-push updates through SCCM 2007 and FCS. Should I see the SCCM software update icon AND the classic Yellow shield on the same computer? I have tried to perform a wuauclt.exe /detectnow to no avail.

In the registry for the XP and the Windows 7 machine the Windows Update registry keys for the WUServer and the WUStatusServer are both https://serverFQDN:8531. Also the clients show up in the WSUS console as reporting.
0
Comment
Question by:codale
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 3

Accepted Solution

by:
mankster earned 500 total points
ID: 33482581
As per the article specified by you, you dont need to create a package in SCCM. The way you need to integrate this is by selecting the product "Forefront Client Security" in the products section in the 'Software Update Point Component' Properties. Then add an rule to auto approve all updates of type 'Definition'.

The article you have is the right one and should work. You dont need to run a wuauclt /detectnow.
You can setup a schedule in SCCM for the Software Update Scan Or Run the 'Software Update Scan Cycle' from the Configuration Manager client on the machine.

Let me know if you have any questions.
Thanks.
0

Featured Post

On Demand Webinar - Networking for the Cloud Era

This webinar discusses:
-Common barriers companies experience when moving to the cloud
-How SD-WAN changes the way we look at networks
-Best practices customers should employ moving forward with cloud migration
-What happens behind the scenes of SteelConnect’s one-click button

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Have you considered what group policies are backwards and forwards compatible? Windows Active Directory servers and clients use group policy templates to deploy sets of policies within your domain. But, there is a catch to deploying policies. The…
Know what services you can and cannot, should and should not combine on your server.
NetCrunch network monitor is a highly extensive platform for network monitoring and alert generation. In this video you'll see a live demo of NetCrunch with most notable features explained in a walk-through manner. You'll also get to know the philos…
Michael from AdRem Software explains how to view the most utilized and worst performing nodes in your network, by accessing the Top Charts view in NetCrunch network monitor (https://www.adremsoft.com/). Top Charts is a view in which you can set seve…

615 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question