Albert Widjaja
asked on
Caveats and precautions when applying windows update to Domain Controller ?
People,
Can anyone here please suggest me what do I need to do as pre cautions and mitigation plan when applying Windows Update to the following servers:
1. Windows Server 2008 R2 VM - Primary DNS servers (Production Data Center) , Domain Controller / Global Catalog Server (Schema Master) - (220 Updates to be applied)
2. Windows Server 2008 R2 VM - Secondary DNS servers (Production Data Center) , Domain Controller / Global Catalog Server (Domain naming master) - (215 Updates to be applied)
3. Windows Server 2012 R2 Physical box - Primary DNS & DHCP servers (HQ Office) , Domain Controller / Global Catalog Server (RID & Infrastructure master, PDC Emulator) - (110 Updates to be applied)
For the VM in number #1 and #2 does updating the WIndows during the working hours can have some impact in the Name resolution and Exchange email flow ? Can I take snapshot on both VMs at the same time and roll it back when it failed or hangs when applying some updates ?
For the physical server in #3, how can I prevent any outage during the working hours patching ?
Sometimes when I apply the updates to the WIndows Servers, there are some things that caused the updates to be failed thus taking too long not responding back to remote desktop.
Any help would be greatly appreciated.
Thanks.,
Can anyone here please suggest me what do I need to do as pre cautions and mitigation plan when applying Windows Update to the following servers:
1. Windows Server 2008 R2 VM - Primary DNS servers (Production Data Center) , Domain Controller / Global Catalog Server (Schema Master) - (220 Updates to be applied)
2. Windows Server 2008 R2 VM - Secondary DNS servers (Production Data Center) , Domain Controller / Global Catalog Server (Domain naming master) - (215 Updates to be applied)
3. Windows Server 2012 R2 Physical box - Primary DNS & DHCP servers (HQ Office) , Domain Controller / Global Catalog Server (RID & Infrastructure master, PDC Emulator) - (110 Updates to be applied)
For the VM in number #1 and #2 does updating the WIndows during the working hours can have some impact in the Name resolution and Exchange email flow ? Can I take snapshot on both VMs at the same time and roll it back when it failed or hangs when applying some updates ?
For the physical server in #3, how can I prevent any outage during the working hours patching ?
Sometimes when I apply the updates to the WIndows Servers, there are some things that caused the updates to be failed thus taking too long not responding back to remote desktop.
Any help would be greatly appreciated.
Thanks.,
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Andrew you are the boss. ;)
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Hi All,
Unfortunately I do not have test environment here in my company, so there is noway of testing it safely.
So therefore in the event of Windows is stuck in "Applying Updates..." screen how and what can I do to resume to the desktop ? can I just hard reset the server ?
Unfortunately I do not have test environment here in my company, so there is noway of testing it safely.
So therefore in the event of Windows is stuck in "Applying Updates..." screen how and what can I do to resume to the desktop ? can I just hard reset the server ?
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
@Will, ok that does makesense. so I guess this rule also applies to the Exchange, SQL and SharePoint Servers as well.
Very dangerous game, you are playing, "Russian Roulette with Windows Updates!"
No excuse, if you have a virtual environment, it's so easy to create. As I posted we have test environments for all our Clients.
Good Working IT Practice, if you follow ITIL Service Framework.
No excuse, if you have a virtual environment, it's so easy to create. As I posted we have test environments for all our Clients.
Good Working IT Practice, if you follow ITIL Service Framework.
Exactly.
"ounce of prevention is a POUND of cure"
Will.
"ounce of prevention is a POUND of cure"
Will.
ASKER
@Will and @Andrew: Yeah I know and I wish that it is the case here.
It is a scary stuff when you have to apply 200+ updates for all of your Exchange Servers and Domain Controllers.
This new company where Iam working didn't know the importance of Windows Update hence I'll have to pick it up to make it up to date.
The only thing that I can see or utilize is Veeam 8.0 Surebackup but running very slow. (I'll create another thread for this).
It is a scary stuff when you have to apply 200+ updates for all of your Exchange Servers and Domain Controllers.
This new company where Iam working didn't know the importance of Windows Update hence I'll have to pick it up to make it up to date.
The only thing that I can see or utilize is Veeam 8.0 Surebackup but running very slow. (I'll create another thread for this).
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Many thanks guys !