Solved

Automatic Updates are "Greyed Out"

Posted on 2010-11-15
5
716 Views
Last Modified: 2012-05-10
We have eight PC' s all connected to a domain on a server running Server 2008.

We cannot change the defaulted setting of auto updates every day at 03:00AM, the settings are "greyed out",  none of the PC's are getting updates ahtomatically.(the PC's are running XP Professional)

Even if we log into the local machine (and not ask it to join the domain) the settings still cannot be changed.

We have checked "group policy" on local machine and everything looks OK, the server installation of MS Windows server 2008 was using "default" as far as "auto updates" was concerned, no changes were specifically made to them.

Anybody have any ideas why this occurs.?

P.S. when logged in locally to each PC, we are able to go to Microsoft website and install updates from there, but we want this to happen automatically when on the domain.

All sugestions much appreciated, thanks.
0
Comment
Question by:ensite31
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 
LVL 3

Assisted Solution

by:poison5151
poison5151 earned 100 total points
ID: 34137056
Check here in Group Policy (gpedit.msc): Computer Configuration -> Administrative Templates -> Windows Components -> Windows Update -> Configure Automatic Updates.

You can set this policy to your option of choice and push it from the domain controller to all 8 members.
0
 
LVL 20

Accepted Solution

by:
Iain MacMillan earned 200 total points
ID: 34137633
the fact that it's greyed out, means someone has already set or partially set the policy (about 10 options to set give or take).  depending on server updates/patches you may find the Policy editor under Admin Tools\Group Policy Management app.  I would not use the Default Domain policy for anything other than company name and password policy settings.  create a new policy call Windows Update Policy or something and then you can assign/link that to your Workstation OU in Active Directory (if you have one), as you can't link a GPO to the Computers group, and if you link it to the root of domain like the Default one, it would apply to every system, and you really only want it affecting the desktop/laptops.

once you have made the changes and saved the GPO, you can use the GPUPDATE command from the command line on any system to speed up the policy sync (which in itself can be controlled from policy settings (mine is every 90mins).
0
 
LVL 5

Assisted Solution

by:HornAlum
HornAlum earned 100 total points
ID: 34137745
if you open up a CMD prompt and type in "GPRESULT", it will also tell you which domain GPO's are being applied to your computer. Check those GPO's, using the path Poison specified to see if one of those GPO's is controlling your options for you.

Your 2008 Server's Group Policy Management program will tell you exactly what settings have been applied if you move over to the "Settings" tab. gpedit won't reveal what the settings are unless you dig down into every option.
0
 
LVL 5

Assisted Solution

by:pinascode
pinascode earned 100 total points
ID: 34138193
you could run this registry file, which would take away any gpo settings, i have attached it. the problem is that it will be set again once the computer does another gpupdate. i would agree that the problem is a GPO setting somewhere.
wsus-reg-xp-delete-.reg
0
 

Author Comment

by:ensite31
ID: 34163101
thanks for all your suggestions guys, it certanly gave me a better insight into the issue.

I eventually did a "quick partial fix" by going to Windows SBS console, click on "Security" tab - then "Security Updates" tab, then from "Tasks" menu I chose "Change the Software Update settings" and then in the pop up box I chose "Schedule" , then from the "Client Update Settings" I changed the setting from default od 03:00AM to 12:00PM mid-day to allow updates to run at lunchtime on evryone's PC.
I'll check periodically to make sure this is completing.

Thanks again for all the help.
0

Featured Post

Back Up Your Microsoft Windows Server®

Back up all your Microsoft Windows Server – on-premises, in remote locations, in private and hybrid clouds. Your entire Windows Server will be backed up in one easy step with patented, block-level disk imaging. We achieve RTOs (recovery time objectives) as low as 15 seconds.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

We have adopted the strategy to use Computers in Student Labs as the bulletin boards. The same target can be achieved by using a Login Notice feature in Group policy but it’s not as attractive as graphical wallpapers with message which grabs the att…
I’m often asked about newer and larger USB drives connected to SBS2008 and 2011 failing Windows Server Backup vs the older USB drives not failing. As disk space continues to grow and drive technology change SBS2008 and some SBS2011 end up with the f…
Two types of users will appreciate AOMEI Backupper Pro: 1 - Those with PCIe drives (and haven't found cloning software that works on them). 2 - Those who want a fast clone of their boot drive (no re-boots needed) and it can clone your drive wh…
Come and listen to Percona CEO Peter Zaitsev discuss what’s new in Percona open source software, including Percona Server for MySQL (https://www.percona.com/software/mysql-database/percona-server) and MongoDB (https://www.percona.com/software/mongo-…

724 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question