Quantcast
Channel: WSUS forum
Viewing all 12874 articles
Browse latest View live

New WSUS Server not downloading some updates

$
0
0

I have just installed WSUS 3.0 SP 2 on a Windows 2008 R2 Data Center vm. Our old WSUS server was on a Windows 2003 vm platform and is now retired. I have been successful in synchronizing to Windows Update Services website but when it comes to downloading Windows Malicious Software tool (March, April, and May 2015) I have no luck. This is a clean install, meaning I didn't migrate the DB from the 2003 Server.

I have exhausted all the suggestion that have been posted in regard to this issue but none have worked. The error is a http 403 error saying  Client does not have access.

Tried to Import the rollup in WSUS and although it came back as successful the update still shows and not being download.

I should add that PC's have successfully received the latest updates that I approved; which includes the Windows Malicious Software tool. Except for this tool and the PC's are showing they still need this update.

Any suggestions?

 

Fresh WSUS 2012 setup does not create the Win7Sp1\wsus3setup.cab Folder/File => Clients cannot report to the WSUS Server

$
0
0

Hi,

maybe someone has an idea for this Problem:

A fresh Setup of a wsus 2012 (not R2) Server doesnt create the Win7Sp1\wsus3setup.cab Folder/File, so the Win7 and 2008 R2 Clients cannot Report to the wsus 2012 Server.

Here is the Log:

2014-08-08 09:38:16:953  840 64c Misc WARNING: DownloadFileInternal failed forhttps://servername:8531/selfupdate/WSUS3/x64/Win7SP1/wsus3setup.cab: error 0x80190194
2014-08-08 09:38:16:953  840 64c Setup WARNING: SelfUpdate check failed to download package information, error = 0x80244019
2014-08-08 09:38:16:953  840 64c Setup FATAL: SelfUpdate check failed, err = 0x80244019
2014-08-08 09:38:16:953  840 64c Agent   * WARNING: Skipping scan, self-update check returned 0x80244019
2014-08-08 09:38:16:968  840 64c Agent   * WARNING: Exit code = 0x80244019
2014-08-08 09:38:16:968  840 64c Agent *********
2014-08-08 09:38:16:968  840 64c Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2014-08-08 09:38:16:968  840 64c Agent *************
2014-08-08 09:38:16:968  840 64c Agent WARNING: WU client failed Searching for update with error 0x80244019
2014-08-08 09:38:16:968  840 1070 AU >>##  RESUMED  ## AU: Search for updates [CallId = {5B62F896-35E6-4A78-A627-77A9DC29B0BA}]
2014-08-08 09:38:16:968  840 1070 AU   # WARNING: Search callback failed, result = 0x80244019
2014-08-08 09:38:16:968  840 1070 AU   # WARNING: Failed to find updates with error code 80244019

The Folder Win7SP1 under the Standard path doesnt exist:

C:\Program Files\Update Services\SelfUpdate\WSUS3\x64 => There are only 2 Folders Vista and other...

Question:

Does anybody knows  the reason?

Can I rebuild it manually with the wsusutil.exe tool?

One addtitional info: After the Setup the postinstallation process fails, and I had to fix it with the following article:

http://blogs.technet.com/b/reshard_sharps_blog/archive/2013/08/18/wsus-post-deployment-configuration-fails.aspx

Has it something to do with this error, that the Folder Win7SP1 doesnt exist or do we hav 2 different issues here?

Regards,

IE 10 preparation, installation and questions

$
0
0

Hello, a few question before we go IE 10 in a big way.

We have created a small pilot platform of PC's and Servers consisting of Windows 7 SP1 and Windows 2008 R2 SP1. The group in WSUS is calledIE10 Upgrade Test. This mix will resemble a production platform as much as possible. The idea is to approve IE 10 if things go right in this group.

Question 1: For PC's and Servers in this group (IE10 Upgrade Test), I have found the below KB as prerequisites, is that all? I have also read somewhere in this forum that KB2639308 and KB2834140 is also required?

https://support.microsoft.com/en-us/kb/2818833

Question 2: IE 10 is available in WSUS server as Update Rollups, provided I meet the prerequisites from above, do I then just approve the following to the IE10 Upgrade Test systems?

Internet Explorer 10 for Windows 7

Internet Explorer 10 for Windows 7 for x64-based Systems

Internet Explorer 10 for Windows Server 2008 R2 for x64-based Systems

Users in the PC's and servers in the group IE10 Upgrade Test do not have any local admin rights. Their system will check for IE10 or any other required updates around 3 AM at night and start applying the update.

Question 3: Do users need to have any kind of admin related right on the PC's or servers for things like IE10 WSUS installation to go forward? It should be mentioned that in our normal environemnt, except for a handful, none of the users have Admin right on local PC's, but patches are being installed without issues.

Thanks for your assistance.


Shahidul

Upstream content store grew excessively since downstream server was added

$
0
0

Hi all

I recently noticed that the content store of our primary WSUS server increased from about 20 GB to 90 GB. A colleague of mine set up a secondary WSUS server as a downstream server, at first in autonomous mode, then in replica mode. The upstream server’s content store grew excessively ever since.

I used bitsadmin to look at the queue on the upstream server and to my surprise it was downloading updates for products which are not even selected there (e.g. Exchange 2007). I would like to understand why. Assuming the downstream server is in autonomous mode and requires updates which the upstream server does not have, does the upstream server download these updates on behalf of the downstream server?

I would like to clean up the content store on the upstream server. I deleted the downstream servers, ran the cleanup tool and declined all superseded updates which are no longer needed. Unfortunately this did not make much difference. The upstream content store is still 87 GB. I am aware of the wsusutil /reset command, however, I would like to avoid downloading all updates from scratch. Is there a way to clean up this mess?

I would appreciate if someone could shed some light on this.

Thanks, Stefan

WSUS Export Fatal Error - unable to export matadata

$
0
0

Scenario - Using WSUS on Disconnected network using Export & import Servers. previously using w2k3 on both the systems & wsus was running nicely. recetly we have upgraded the servers to 2k8 & I am unable to use WSUS.

As the server is the new one & I dont have any access to my previous servers. Ihave started from the begining. (I am using wsus for only updating Operating Systems Only )

I am getting Fatal Error on the export server while exporting the .log & .cab file error as follows

Export failed to export updates. Please look at the log file for error details.
Fatal Error: Error in the application.

its creating the .log file but not creating the .cab file.

I have surfed many forums & got various informations & apllied many of them as follows. What i understood its because of the heavy Data. 

  1. applied the following patch : Windows6.0-KB2813430-x86.msu (No Results)
  2. updated the .net frame work to the most recent one NDP452-KB2901907-x86-x64-AllOS-ENU
  3. Applied the following which found on one forum - (Created the config file)                                                                     Quick solution (thanks Yuvaraj Tamil Mani):
     
    ==> Install .Net 4 on the WSUS server from http://www.microsoft.com/en-us/download/details.aspx?id=17851
     ==> Create a file named wsusutil.exe.config under "C:\Program Files\Update Services\Tools" folder.
     ==> Copy the following code in to the file
     ********
     <configuration>
       <startup>
          <supportedRuntime version="v4.0.30319"/>
       </startup>
    </configuration>
     ********
     ==> Run the export and it will complete even if the size is bigger than 4GB.
     ==> Once the export is done, remove the wsusutil.exe.config file.

Still the result is the same....fatal error

Only thing remaining is upgrade to sever 2012... which is beyond the scope.

Please help me out get rid of this.


Sagarwalvekar

WSUS server Moved From Physical to VMWARE server

$
0
0

Hi

windows 2003 WSUS server has been moved from Physical to Virtual machine and then the update of MAY month is not happening but it is triggering old month updates and so many clients are showing "NOT YET REPORTED" please suggest.



Client computers pulling some updates from decommissioned WSUS server, not the new WSUS server - how to re-point old update packages? (Not GPO related)

$
0
0

Hello,

I've recently created a new WSUS server to which all my clients ARE properly reporting to.  Some, but not all, patches are not installing throwing the following error codes:

Code 80092004
Code 8024402C

I started digging into the WindowsUpdates.log file and found that the failed entries are a result of the clients trying to grab the updates from an older (decommissioned) WSUS server. My hunch is the clients were not fully patched but had downloaded "pointers" for update packages associated to my old WSUS server. I then re-pointed my clients via GPO and the update packages are still associated to that old server. New packages are just fine and download/install/report correctly. How does one correct this package pointer association?

--- SNIP from WindowsUpdates.log ---

Successfully wrote event for AU health state:0
2015-06-1112:48:22:780456dccDnldMgrBITS job {2E8CA723-BC92-454B-BBAE-4D7547F97D4A} hit a transient error, updateId = {642B981F-BF50-467E-B0F3-30EF96CA6CD9}.201, error = 0x80072EE7
2015-06-1112:48:22:780456dccMiscWARNING: Send failed with hr = 80072ee7.
2015-06-1112:48:22:780456dccMiscWARNING: SendRequest failed with hr = 80072ee7. Proxy List used: <(null)> Bypass List used : <(null)> Auth Schemes used : <>
2015-06-1112:48:22:780456dccMiscWARNING: WinHttp: SendRequestUsingProxy failed for <http://OLD_WSUS_Server_FQDN/Content/A8/33DD180FB1CA49FF4955C7C80033E216AADAA7A8.exe>. error 0x8024402c
2015-06-1112:48:22:780456dccMiscWARNING: MakeRequest failed at CDownloadSession::GetResponseHeaders(). error 0x8024402c
2015-06-1112:48:22:780456dccDnldMgrWARNING: CUpdateDownloadJob::GetCDN() failed to get response headers for BITS job, error = 8024402c
2015-06-1112:48:22:780456dccDnldMgrError 0x8024402c occurred while downloading update; notifying dependent calls.
2015-06-1112:48:25:0304561e04DnldMgrBITS job {80EB3A8C-7177-4D96-89E5-733E581E2D26} hit a transient error, updateId = {B21B5882-BD05-4ACC-B30F-28D5F556A5A4}.202, error = 0x80072EE7
2015-06-1112:48:25:0304561e04MiscWARNING: Send failed with hr = 80072ee7.
2015-06-1112:48:25:0304561e04MiscWARNING: SendRequest failed with hr = 80072ee7. Proxy List used: <(null)> Bypass List used : <(null)> Auth Schemes used : <>
2015-06-1112:48:25:0304561e04MiscWARNING: WinHttp: SendRequestUsingProxy failed for <http://OLD_WSUS_Server_FQDN/Content/B6/0F3585701CD216781AD7D2C0E5A5A451854B6FB6.exe>. error 0x8024402c
2015-06-1112:48:25:0304561e04MiscWARNING: MakeRequest failed at CDownloadSession::GetResponseHeaders(). error 0x8024402c
2015-06-1112:48:25:0304561e04DnldMgrWARNING: CUpdateDownloadJob::GetCDN() failed to get response headers for BITS job, error = 8024402c
2015-06-1112:48:25:0304561e04DnldMgrError 0x8024402c occurred while downloading update; notifying dependent calls.
2015-06-1112:48:25:030456190cAUGetting featured update notifications.  fIncludeDismissed = true
2015-06-1112:48:25:030456190cAUNo featured updates available.
2015-06-1112:48:25:108456190cAUUpdateDownloadProperties: 0 download(s) are still in progress.
2015-06-1112:48:25:108456190cAUTriggering Offline detection (non-interactive)
2015-06-1112:48:25:108456190cAUAU setting pending client directive to 'Reboot Pending'
2015-06-1112:48:25:108456190cAUChanging existing AU client directive from 'Progress Ux' to 'Reboot Pending', session id = 0x2
2015-06-1112:48:25:108456190cAUSuccessfully wrote event for AU health state:0

--- SNIP from WindowsUpdates.log ---

Thank you for any advice.

MJ


The server is failing to download some updates. Event ID 10032

$
0
0

Suddenly I get this error on WSUS server that updates manually. I've deleted wsus file in MMC and performed Server Cleanup Wizard but still. 

The server is not on the net. So I copy the folder 'wsuscontent' and export cab file on to the server and run wsusutil to import the data. It has been working for the past 10 months.

Any assistance will be appreciated.


One client cannot install any WSUS updates from WSUS server; others can, error "FATAL: CBS called Error with 0x80070308" in log

$
0
0
Sorry if have duplicated another question but have looked in forum for hours; decided to ask my own question. This client was doing WSUS updates from the server fine until about April then stopped. About 23 updates now waiting, even trying to run one of them (that wasn't even one of the .NET updates) fails. Client hasn't had any new software that I can remember installed since then, and runs same Kaspersky anti-virus that everyone else does. (Disabling it doesn't seem to help, and it doesn't block anyone else's updates.) Have already run the Microsoft automatic update Fix-It, still have the problem. Have already restarted services like wuaueng, wuauserv, bits. Looking for some guidance on what other steps to try first. Thanks! SC

Skype for Business via wsus

$
0
0

Hello Guys,

I am not able find the patches related to Skype for business in my wsus server.

The main patches are KB2817430 and KB2889923 for SFB.. Please help me, which are the options i need to enable to get these patches..

I already enabled office 2013, but still i cant see these patches..

But i can see few security and updates for skype for business, but not the above patches

Please help me.

Thanks


Problem synchronizing w2012 server with wsus server

$
0
0

Hi,

I have some server 2012 which cannot synchronize with a wsus server (version 6.2).

I have reviewed this page (https://technet.microsoft.com/en-us/library/dd939857(v=ws.10).aspx) and have checked that everything is fine from the client (server 2012) but, I don't know why the servers don't contact with the wsus.

The rest of pc are synchronizing without problem.

In the gpmc I have a policy which apply to these servers but looking in "Local compute policy > Computer Configuration > Administrative Templates > Windows" the settings are not filled, however in the regedit the settings are correct.

Can anybody help me?

Thanks in advanve.


Windows 10 ad in latest patch day?

$
0
0

Does someone know whether the latest patchday contained the Win 10 ad in updates offered to WSUS? I don't want to subject my domain users to the Win 10 screen registration screen.

In particular these are ambiguous in description and or have vague references to Windows 10 ("General improvements are made to support upgrades to a later version of Windows.").

  • 3050265/3050267
  • 3068708

Setup Offline WSUS Server 2012 R2

$
0
0

Dear All,

Encounter some problem during my deployment hope that anyone here can give me some pointers.

First let me explain the whole setup. There 3 WSUS servers. 2 DB servers 1 downstream server.

All these server don't have internet access at all. All the server is been harden due to security reason. Only Port 8530 is allow for updates.

1. Both WSUS_DB1 and WSUS_DB2 is a cluster server. Both installation Option choose was Using WIS Database and Services.

2. Downstream Sever (WSUS_Downstream)

Question (Setup Layout)

- Should the WSUS_DB1 Consider Upstream server to WSUS_DB2has Downstream server? Using Synchronize from another Windows Server Update Services Server?

- How to import an offline Update database into the new WSUS server database?

- Is it a must to use SQL for the Database?

-Where Can I download an offline Update database?

Problem Encounter (During Setup)

- When WSUS_Downstream is synchronize from another Windows Server Update Services server, I have selected the following "This is a replica of the upstream server" When I click next I don't seem to be able to connect. There is an error massage.

- Missing Product Classification only Windows XP and Server 2000 only. How can I update to the latest product classification List.

Hope that someone can give me some advise and pointer in this installation.

Thank & Regards

Melvin C






Pushing IE 11 through WSUS

$
0
0
All our end users are on IE 8. In the WSUS server I see IE 11 as a rollup update which I have setup to go to all computers.

The reporting of the WSUS server is showing the update to be installed on all systems but the systems are reporting not applicable.

When the systems do a search for updates to be installed from WSUS server it does not show the IE 11 rollup update. What is going on as I need to push IE 11 to all systems ASAP.

Newbie question about client updates

$
0
0

Hello I just installed WSUS (version 6.3.9600.16384) on Windows 2012 R2 server.  I have setup the group policy option to configure automatic updates by enabling and selecting "Auto download and schedule the install".  Here is my question:  I noticed there is another policy for configuring automatic updates behavior so I enabled also the "No auto-restart for scheduled Automatic Updates installations".   Can someone verify they can be used together?   My goal is to be able to install the updates but I need to control how my clients get rebooted manually (which are all servers).  Please advise.

Thanks!


WSUS Console opening error

$
0
0

Hi All,

We have tried all the possible ways.

1. Reinstalled WSUS

2. ASP.net

3.IIS

Require your assistance 

Regards,

Umar

Create a DVD containing all the updates of the OS and the Microsoft products

$
0
0

Hi

I havethe need tocreateaDVDcontainingall the updatesof anyoperating systemandMicrosoft product soI canalso upgradethe offline computers.So,how can IcreatethisDVD?

Thanks

Bye


Balubeto

WSUS 3.0 on Win 2k12- Office 2010 update

$
0
0

I have a simple question.

I have just installed WSUS and everything seems running smoothly. 

I was wondering if I want to update office 2010 for my 100 workstations, what exactly I should choose beside office 2010 on the products and classifications' list. There's dictionary updates for MS IMEs and New dictionary for MS IMEs. Are these two items are important and I should select them along with 2010? 

Thanks

Decline an Update for a specific Server

$
0
0

hi wsus-admins out there :-)

i would like to know, how you are handling the following Scenario:

in our Environment we do patching app. 200 Servers with wsus. we are using a handfull of computergroups to categorize them (Pilot, autoreboot, notify).

now, one Software on a specific Server has a Problem with an update. so, the server-admin just want to easy decline this update for this Server.... :-)

the following possibilities exists in my eyes:

- decline the patch on the WSUS-Server
(not cool, all other Servers don't receive the patch)

- creating a separate Computer-Group and do not approve this patch on the group
(really? creating a separate Computer-Group for only one Server????)

- hide the update for Installation on the Server directly
(looks pretty handy and cool. BUT: once you re-initialize / delete the WSUS-cache-Folder on the server, the update will reinstall!)

some suggestions / ideas? how do you handle this in your company?

WSUS No Longer Downloading Updates

$
0
0

I deployed WSUS on Windows Server 2012 R2 since April last year and everything has been working well since then until some weeks ago when I noticed that approved updates were no longer being downloaded. The update files had accumulated to several gigabytes but the download status remained at approximately 34 MB for days.

I checked everything and no event log errors, Windows update works fine; Synchronization works fine as well on the WSUS server. I  have uninstalled and installed again twice. Removed the Windows Internal Database folder and content, changed the download location, etc and yet its not working.

Now, based on my lean approvals, I have just 42 files to download which just a over 300 MB in total, yet download status remains 0.00 MB.

Any suggestions please.


BPK


Viewing all 12874 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>