Hello, I have a client that has 3 sites. The main site will have a WSUS server and all workstations will get their updates from it.
There are two remote sites that are pretty small (2-6 users). i really don't want those workstations getting their updates from the WSUS server at the other site as that would hurt bandwidth at two of our locations (main site and remote site).
Is there a way i can specify in a GPO that the computers at the remote sites get their updates from windowsupdate.microsoft.com but must get them approved through a WSUS server (like specifying the wsus as a stats server etc). I don't just want to specify they get their updates from Windowsupdate then all updates would get installed without approval.