Solved

Windows Updates throuh GPO

Posted on 2013-06-26
4
274 Views
Last Modified: 2013-08-07
We have a GPO configure which points to our WSUS Server for clients to receive updates on there computers ...

How do i configure my GPO so that if a Computer cannot contact the WSUS Server, then it should directly download the updates from Microsoft.

This is for our remote users who are out of office usually months a t a time
0
Comment
Question by:oasisuk
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 47

Accepted Solution

by:
Donald Stewart earned 500 total points
ID: 39278730
You would have to configure a second WSUS server that is configured to *NOT* store updates locally.  Then point these clients to that WSUS server. Then when they are connected to the network they will get their approvals and will always download from Microsoft.
0
 
LVL 18

Expert Comment

by:Mike T
ID: 39282952
Hi,

For WSUS 3 only you can configure the following GPO as described here.
The down-side is I think it would be an all or nothing affair with no control over approvals, i.e. what patches get installed.

A workaround as the expert mentions, is to configure another WSUS but it's then two servers to manage and could get messy.


Note, for WSUS 2 I will quote Lawrence Garvin a WSUS MVP
"There is no facility for either/or, or a 'fallback' scenario in WSUS v2.

 The best you can do is disable the policy "Specify intranet Microsoft update
 service location", which will force those clients to use "Automatic Updates"
 for the duration of their absence. In that scenario, they will obtain and
 install ALL critical and security updates. You will have no ability to choose
 which updates are installed."

Mike
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Extend AD Schema to 2008 R2 after domain upgrade. 5 70
Problem to Citrix 2 70
Restore scheduled tasks from a backup 5 45
Active Directory GPOs and OUs 2 12
Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question