Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Tips for configuring updates that WSUS manages...

Posted on 2013-05-20
6
529 Views
Last Modified: 2013-06-06
I have installed my first WSUS server on Server 2012 (WSUS 6.2 I believe).

Everything seems to be OK.  I have a test GPO and machines will check in.  The part that is overwhelming me is the sheer amount of updates that have been imported for management.  

I selected just the products that I want patched (Windows (client and server), SQL, etc), but there are still over 6400 updates.

Should I just approve all 6400+ of them?  The hard drive on this server is not very big, so that's a bit of a concern for me.

Short of going through the updates one by one, it seems like there should be a better way than blanket approving 6400+ updates...

What do you folks say?
0
Comment
Question by:Jared Luker
  • 3
  • 2
6 Comments
 
LVL 42

Accepted Solution

by:
kevinhsieh earned 500 total points
ID: 39184683
You can look at the computers and approve the ones that are needed. I personally let WSUS approve all needed patches. I don't have time to go researching every patch, or to even look at WSUS on a monthly basis.
0
 
LVL 17

Author Comment

by:Jared Luker
ID: 39184885
Where do you set up those preferences?
0
 
LVL 42

Assisted Solution

by:kevinhsieh
kevinhsieh earned 500 total points
ID: 39185616
Under WSUS 3.0, go to your WSUS console, and in the left hand pane under your WSUS server go to Options, and then Automatic Approvals in the center pane. My default rule is to approve Critical Updates, Security Updates, Update Rollups, and Updates. You may or may not want to add any of the others such as hot fixes and Service Packs.

I image that the interface is similar in your version.
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 17

Author Comment

by:Jared Luker
ID: 39188715
I'm just curious.  If you blanket accept everything, then why use WSUS at all?  Why not just use Windows Update?
0
 
LVL 4

Expert Comment

by:vak73
ID: 39189988
0
 
LVL 17

Author Closing Comment

by:Jared Luker
ID: 39226812
Thanks
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I don't know if many of you have made the great mistake of using the Cisco Thin Client model with the management software VXC. If you have then you are probably more then familiar with the incredibly clunky interface, the numerous work arounds, and …
You might have come across a situation when you have Exchange 2013 server in two different sites (Production and DR). After adding the Database copy in ECP console it displays Database copy status unknown for the DR exchange server. Issue is strange…
This tutorial will walk an individual through the process of configuring basic necessities in order to use the 2010 version of Data Protection Manager. These include storage, agents, and protection jobs. Launch Data Protection Manager from the deskt…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

792 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question