Solved

Point Windows 7 Regedit to WSUS Server

Posted on 2014-02-26
7
1,852 Views
Last Modified: 2016-02-21
Trying to figure out the registry keys to modify, in order to point Windows 7 client computers to a WSUS server on our LAN. Several online articles specify the two following registry keys:

    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU

However, I can't find "WindowsUpdate" in the above path, in regedit. How do I point my Windows 7 computers to our WSUS server?
0
Comment
Question by:bobox00
7 Comments
 
LVL 47

Accepted Solution

by:
dstewartjr earned 167 total points
Comment Utility
0
 
LVL 13

Assisted Solution

by:Santosh Gupta
Santosh Gupta earned 167 total points
Comment Utility
Hi,

The best way to configure the  WSUS client is Group policy.

http://technet.microsoft.com/en-us/library/hh852346.aspx

---------------------------------------------------

To enable WSUS through a domain GPO

    In the Group Policy Management Console (GPMC), browse to the GPO on which you want to configure WSUS, and then click Edit.

    In the GPMC, expand Computer Configuration, expand Policies, expand Administrative Templates, expand Windows Components, and then click Windows Update.

    In the details pane, double-click Configure Automatic Updates. The Configure Automatic Updates policy opens.

    Click Enabled, and then select one of the following options under the Configure automatic updating setting:
        Notify for download and notify for install. This option notifies a logged-on administrative user before you download and install the updates.

        Auto download and notify for install. This option automatically begins downloading updates and then notifies a logged-on administrative user before installing the updates. By default, this option is selected.

        Auto download and schedule the install. This option automatically begins downloading updates and then installs the updates on the day and time that you specify.

        Allow local admin to choose setting. This option lets local administrators to use Automatic Updates in Control Panel to select a configuration option. For example, they can choose a scheduled installation time. Local administrators cannot disable Automatic Updates.

    Select Enable client-side targeting, select Enabled, and then type the name of the WSUS computer group to which you want to add this computer in the Target group name for this computer box.
   
    Click OK to close the Enable client-side targeting policy and return to the Windows Update details pane.

    Click OK to close the Configure Automatic Updates policy and return to the Windows Update details pane.

    In the Windows Update details pane, double-click Specify intranet Microsoft update service location.

    Click Enabled, and then, server in the Set the intranet update service for detecting updates and Set the intranet statistics server text boxes, type the same URL of the WSUS server. For example, type http://servername in both boxes (where servername is the name of the WSUS server).
    WarningWarning
    When you type the intranet address of your WSUS server make sure to specify which port is going to be used. By default WSUS will use port 8530 for HTTP and 8531 for HTTPS. For example, if you are using HTTP, you should type http://servername:8530.

    Click OK.

After you set up a client computer, it will take several minutes before the computer appears on the Computers page in the WSUS Administration Console. For client computers that are configured with a domain-based Group Policy Object, it can take about 20 minutes for Group Policy to apply the new policy settings to the client computer. By default, Group Policy updates in the background every 90 minutes, with a random offset of 0–30 minutes. If you want to update Group Policy sooner, you can open a Command Prompt window on the client computer and type gpupdate /force.

For client computers that are configured by using the Local Group Policy Editor, the GPO is applied immediately, and the update takes about 20 minutes. If you begin detection manually, you do not have to wait 20 minutes for the client computer to contact WSUS.

Because waiting for detection to start can be a time-consuming process, you can use the following procedure to initiate detection immediately.
To initiate WSUS detection

    On the client computer, open a Command Prompt window with elevated privileges.

    Type wuauclt.exe /detectnow, and then press ENTER.

------------------------------------------------------


but if you still want to use the registry then make sure that Automatic update (wuauserv) service is running.
0
 
LVL 18

Expert Comment

by:TobiasHolm
Comment Utility
Hi!

Set WSUS server in the following registry folder:
HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WindowsUpdate

Here's a table of the keys and their meaning:
http://technet.microsoft.com/en-us/library/dd939844%28v=ws.10%29.aspx

Regards, Tobias
0
What Security Threats Are You Missing?

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

 
LVL 47

Expert Comment

by:dstewartjr
Comment Utility
@TobiasHolm

The OP has specifically stated that he doesnt see the folder "WindowsUpdate"
0
 
LVL 78

Assisted Solution

by:David Johnson, CD, MVP
David Johnson, CD, MVP earned 166 total points
Comment Utility
Then you have to create the folder if it doesn't exist.
0
 
LVL 47

Expert Comment

by:dstewartjr
Comment Utility
^^^Which Group Policy will do ^^^
0
 

Author Closing Comment

by:bobox00
Comment Utility
Someone else was assigned the work. Had too much on my plate. Thanks!
0

Featured Post

Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

Join & Write a Comment

INTRODUCTION The purpose of this document is to demonstrate the Installation and configuration of the Data Protection Manager product. Note that this demonstration was prepared on the basis of Windows OS is 2008 R2 and DPM 2010. DATA PROTECTI…
Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
This Micro Tutorial will give you a introduction in two parts how to utilize Windows Live Movie Maker to its maximum editing capability. This will be demonstrated using Windows Live Movie Maker on Windows 7 operating system.
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now