Improve company productivity with a Business Account.Sign Up

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 407
  • Last Modified:

Exempt server from WSUS update

Windows update on a server is currently being managed by WSUS. How to make sure that Windows update on the server is no longer managed by WSUS?
0
bobox00
Asked:
bobox00
3 Solutions
 
Emmanuel AdebayoGlobal Windows Infrastructure Engineer - ConsultantCommented:
Is this one server or all the servers in your organisation?

How many servers are you looking to exempt?

Regards
0
 
Cliff GaliherCommented:
If you are enforcing WSUS settings by group policy then you need to limit which machines that group policy applies to. The most common setup is to put client machines into one OU and servers into another (and even use sub-level OUs to break them down further if necessary) and then apply the WSUS policies only to the OU(s) you need.

You aren't technically "exempting" a server with this setup. You are instead limiting which machines participate with WSUS in the first place.

But this also gives you a very granular setup. For example, I may want clients to download and install setting automatically. And if I have two servers, I may still want to use WSUS to save bandwidth, but I simply want to approve updates and manually install them. The above setup, with different policies applied to different OUs, allows such a setup with ease.
0
 
bobox00Author Commented:
Step by step guide, link... any?

Thanks for your posts
0
Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

 
Emmanuel AdebayoGlobal Windows Infrastructure Engineer - ConsultantCommented:
0
 
David AtkinTechnical DirectorCommented:
If its Small Business Sever then you would open the SBS Console, browse to Security Tab >  Updates (Sub Tab)>

On the right hand side click on 'Change the software update settings'

Click on included computer.

Remove the server from the included column to the excluded column.


Note:
This will exclude the Server from being applied the updates but the WSUS GPO will still be pushed to the Server.  If you want to check for updates you will have to do it manually via Windows Update in control panel and select 'check online for updates from Microsoft Update'
0
 
bobox00Author Commented:
Thanks
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now