Quantcast
Channel: WSUS forum
Viewing all 12874 articles
Browse latest View live

Windows KB4457144 (2018-9 Security Rollup for server 2008 R2 fails)

$
0
0

Hello:

My server has updated completely excluding this update. I started trying to fix by stopping services and renaming the SoftwareDistribution file. The update service ran and found this one update again and it failed to install. I then went to the download center and downloaded the cab file and tried a manual install with the same result. Any ideas? Thank you in advance :)


Recent Patches pushed using wsus not detecting in endpoints

$
0
0

I've been in a process of installing MS Updates in an environment which has never Patched till date.I use WSUS . Almost every time I'm successful except scenarios like below.

Few of my Server 2008 R2 Sp1 Standard machines which has never Patched till Date. Few days back I pushed all available Patches from 2013 till May 2018. My problem is this, Machine is detecting all relevant Patches except the updates released after Jan 2018.

So I had installed all detected updates and re-booted. Once Server has came up, I've given 'Check for Update' once again.But Server says 'Windows is up to date'.  

I tried following so far.

1. Created new folder in WSUS and moved Server into that and approved Patches from Jan18-May18 into that folder

2. Given wuauclt /detectnow /reportnow  and re-booted multiple times

Please help me to fix this

NB: Only recent Patch detect is Malicious Tool'

WSUS clients dont report after WSUS reinstall

$
0
0

Hey guys, 

Can someone please help me fix WSUS issue? WSUS server (Windows 2008 R2) lost connectivity with the database (WID) and I ended up reinstalling WSUS. Now, all the clients (32 servers) show up but they dont report for some reasons.

I tried the steps mentioned in the artciel http://wuauclt.info/scripts.asp without any luck.

Repair Automatic Updates System

net stop bits 

net stop wuauserv 

%windir%\system32\regsvr32.exe %windir%\system32\vbscript.dll /s
%windir%\system32\regsvr32.exe %windir%\system32\mshtml.dll /s
%windir%\system32\regsvr32.exe %windir%\system32\msjava.dll /s
%windir%\system32\regsvr32.exe %windir%\system32\jscript.dll /s
%windir%\system32\regsvr32.exe %windir%\system32\msxml.dll /s
%windir%\system32\regsvr32.exe %windir%\system32\actxprxy.dll /s
%windir%\system32\regsvr32.exe %windir%\system32\shdocvw.dll /s
%windir%\system32\regsvr32.exe wuapi.dll /s
%windir%\system32\regsvr32.exe wuaueng1.dll /s
%windir%\system32\regsvr32.exe wuaueng.dll /s
%windir%\system32\regsvr32.exe wucltui.dll /s
%windir%\system32\regsvr32.exe wups2.dll /s
%windir%\system32\regsvr32.exe wups.dll /s
%windir%\system32\regsvr32.exe wuweb.dll /s
%windir%\system32\regsvr32.exe Softpub.dll /s
%windir%\system32\regsvr32.exe Mssip32.dll /s
%windir%\system32\regsvr32.exe Initpki.dll /s
%windir%\system32\regsvr32.exe softpub.dll /s
%windir%\system32\regsvr32.exe wintrust.dll /s
%windir%\system32\regsvr32.exe initpki.dll /s
%windir%\system32\regsvr32.exe dssenh.dll /s
%windir%\system32\regsvr32.exe rsaenh.dll /s
%windir%\system32\regsvr32.exe gpkcsp.dll /s
%windir%\system32\regsvr32.exe sccbase.dll /s
%windir%\system32\regsvr32.exe slbcsp.dll /s
%windir%\system32\regsvr32.exe cryptdlg.dll /s
%windir%\system32\regsvr32.exe Urlmon.dll /s
%windir%\system32\regsvr32.exe Shdocvw.dll /s
%windir%\system32\regsvr32.exe Msjava.dll /s
%windir%\system32\regsvr32.exe Actxprxy.dll /s
%windir%\system32\regsvr32.exe Oleaut32.dll /s
%windir%\system32\regsvr32.exe Mshtml.dll /s
%windir%\system32\regsvr32.exe msxml.dll /s
%windir%\system32\regsvr32.exe msxml2.dll /s
%windir%\system32\regsvr32.exe msxml3.dll /s
%windir%\system32\regsvr32.exe Browseui.dll /s
%windir%\system32\regsvr32.exe shell32.dll /s
%windir%\system32\regsvr32.exe wuapi.dll /s
%windir%\system32\regsvr32.exe wuaueng.dll /s
%windir%\system32\regsvr32.exe wuaueng1.dll /s
%windir%\system32\regsvr32.exe wucltui.dll /s
%windir%\system32\regsvr32.exe wups.dll /s
%windir%\system32\regsvr32.exe wuweb.dll /s
%windir%\system32\regsvr32.exe jscript.dll /s
%windir%\system32\regsvr32.exe atl.dll /s
%windir%\system32\regsvr32.exe Mssip32.dll /s 
net start bits 
net start wuauserv 
wuauclt /resetauthorization /detectnow

Reset the Automatic Updates System

net stop wuauserv
net stop bits
rd /s /q %windir%\softwaredistribution
net start bits
net start wuauserv
wuauclt.exe /detectnow


Remote Connection to WSUS server failed for domain user, but not for in-built Admin account

$
0
0

Hi Guys, 

I am new to WSUS services and I need help on the below issue. This forum is the only hope for me now as I can't find a solution to this nowhere else.

Scenario:

I have a primary WSUS server X set up in Domain A and secondary WSUS server Y set up in Domain B. I have developed a tool which will synchronize the updates between these server. The tool is to be run on Server Y, it will connect to local server Y and remote server X, gets all the updates from server X and publishes them in server Y.

The connection between the servers must be a secure connection and I have enabled SSL connection in Server X and installed the SSL cert on server Y.  Also the domains are not set up to trust each other. It's just the SSL cert I am using.

When I log into server Y as in-built local Admin account(computer-name\administrator) and l run the tool (double-click) then the tool is working just fine. it connects to the remote server X and does all the actions.

Issue:

When I log into server Y as a domain Y user who is a part of local Administrators group, and run the tool(double-click), it won't do anything and throws the below exception:

"Unhandled Exception: System.Security.SecurityException: Request for principal permission failed"

If i run the tool as "Run as Administrator", it connects to the local WSUS server Y but won't connect to the remote server X and throws the following exception.

"Unhandled Exception: System.Net.WebException: The request failed with HTTP status 401: Unauthorized." 

But if I run the tool as "Run as different user" and provide the inbuilt Admin credentials , it works just fine again.

one last thing, I'd like to add here is that while I am trying to access the below URL through browser from server Y

https://<Server_X_FQDN>:8531/Selfupdate/wuident.cab

I can access the file without any issue.

So, i would like to remove the above exceptions. Any help is appreciated.

Thanks.


WSUS Not synching with MS Update

$
0
0

I have a new WSUS 2016 server.  It is not synching with MS.  It last synched on 9/11, but the last three days it has failed, both auto and manual syncs.  Here's the error

InvalidOperationException: There is an error in XML document (1, 423176). ---> System.Net.WebException: The operation has timed out.
at System.Xml.Serialization.XmlSerializer.Deserialize(XmlReader xmlReader, String encodingStyle, XmlDeserializationEvents events)
   at System.Web.Services.Protocols.SoapHttpClientProtocol.ReadResponse(SoapClientMessage message, WebResponse response, Stream responseStream, Boolean asyncCall)
   at System.Web.Services.Protocols.SoapHttpClientProtocol.Invoke(String methodName, Object[] parameters)
   at Microsoft.UpdateServices.ServerSyncWebServices.ServerSync.ServerSyncProxy.GetUpdateData(Cookie cookie, UpdateIdentity[] updateIds)
   at Microsoft.UpdateServices.ServerSync.CatalogSyncAgentCore.WebserviceGetUpdateData(UpdateIdentity[] updateIds, List`1 allMetadata, List`1 allFileUrls, List`1& updatesWithSecureFileData, Boolean isForConfig)
   at Microsoft.UpdateServices.ServerSync.CatalogSyncAgentCore.GetUpdateDataInChunksAndImport(List`1 neededUpdates, List`1 allMetadata, List`1 allFileUrls, Boolean isConfigData)
   at Microsoft.UpdateServices.ServerSync.CatalogSyncAgentCore.GetAnd

I am in Togo, West Africa, and do have a slow internet, but that's why I want to eun WSUS for my 40 hospital Win10 PCs.

Any way to make WSUS synch regularly?

Thanks

Getting past WSUS Cleanup Wizard time out, removing unnecessary updates.

$
0
0

Standard problem with WSUS Cleanup Wizard timing out without removing any unnecessary updates. SBS2K8. WSUS 3. 6000+ unnecessary updates awaiting approval. Huge database. Unresponsive SQL server. Lot of people have this problem:
http://social.technet.microsoft.com/Forums/en-US/9724778f-c1a0-4d24-82e4-8b2d054257d6/wsus-hangs-on-cleanup-wizard-for-unused-updates-then-disconnects-from-console?forum=winserverwsus

Drives are regularly defragged in the background. Not gonna shut down the server and have down time just to fix this.

Tried the reindexing script from
http://technet.microsoft.com/en-us/library/dd939795(WS.10).aspx
, (don't copy the command line, it has weird characters in it, just type it in manually.) and it completes but it didn't improve anything.

Found this:
http://wsus.codeplex.com/releases/view/17612
and it also times out.

Found this comment:
For anyone who is getting Timeout Expired with obsolete updates. I have a solution! Use server name : "
\\.\pipe\MSSQL$MICROSOFT##SSEE\sql\query
" to connect with SQL managment studio. Once connected manually run "
exec spGetObsoleteUpdatesToCleanup
". This will return a list of obsolete ID's. For each one run "
exec spDeleteUpdate @localUpdateID=000000
", where 000000 is the ID. For myself I found the first ID in the list took a full 37 minutes to delete and then after that I could run the cleanup through the GUI as per usual.

by jjdacl on Apr 23 at 12:55 PM 

Found that you actually need to do:
USE SUSDB
GO
exec spGetObsoleteUpdatesToCleanup

And to connect in the first place, I had to hit Options, and select named pipe from the middle pull down. 

First delete took 6 minutes and memory has spiked up to almost 15GB in use out of 16GB physical. But the WSUS console (Update Services) still shows the same number of old updates. Failure? I don't think so: I'm running the cleanup wizard again and so far it isn't timing out... It has run over night, and has made some progress; the bar has moved perhaps 5%. 

So... My take is that the SQL server causes this problem when there is to much data, because the indexes are poorly designed (not because the indexes need to be re-indexed) causing the first query to time out, which causes the cleanup to fail. Once you get past that first deletion, and have everything loaded into memory, the cleanup tool can stay connected long enough to delete each unneeded update.

Next step will be to find a command line method, such as:
http://wsus.codeplex.com/releases/view/17612
and put it into the task scheduler like Microsoft should have done at the beginning to keep this from getting out of hand.

P.S. Lawrence Garvin, please do NOT reply to this; I have no need of your arrogance.

Trying to find security update that contains Microsoft Code Signing PCA 2011

$
0
0

Looking for the Windows Update KB that contains the Microsoft Code Signing PCA 2011 so I can target it in WSUS. See image.

Thank you for any assistance.

WSUS/IIS mysterious 404

$
0
0

WSUS update "Feature update to Windows 10 (consumer editions), version 1803, en-us" (KB: 3012973) is associated with the file E698E1F0C2E6022982A48E299E06936F84D83A74.esd.  This is a 3 GB file.

IIS claims the file does not exist (404), but it does (see screenshots below).  Because of the 404, my clients cannot receive this update.

If I rename the file from E698E1F0C2E6022982A48E299E06936F84D83A74.esd to E698E1F0C2E6022982A48E299E06936F84D83A74.bin, then IIS serves the file without error (see below).

I also included a screenshot of the failed download of the "bin" file when it was not yet renamed to prove that I am working in the correct directory.

Why does IIS 404 this file with an esd extension?  Why does IIS serve the same file without error when the exension is changed?

Chris



HTTP status code '413 (0x19D)' with text 'Request Entity Too Large' - During Windows Update Scan

$
0
0

I have been observing these warnings on couple of 2012 R2 & few 2016 servers when we scan for windows update against MS. 

When you scan from wuapp.exe

2018-08-2508:19:52:547164097d8WSWARNING: Nws Failure: errorCode=0x803d0000
2018-08-2508:19:52:547164097d8WSWARNING: There was an error communicating with the endpoint at 'https://fe2.update.microsoft.com/v6/ClientWebService/client.asmx'.
2018-08-2508:19:52:547164097d8WSWARNING: The server returned HTTP status code '413 (0x19D)' with text 'Request Entity Too Large'.
2018-08-2508:19:52:547164097d8WSWARNING: The response from the HTTP server was not recognized.
2018-08-2508:19:52:547164097d8WSWARNING: MapToSusHResult mapped Nws error 0x803d0000 to 0x80240439
2018-08-2508:19:52:547164097d8WSWARNING: Web service call failed with hr = 80240439.
2018-08-2508:19:52:547164097d8WSWARNING: Current service auth scheme='None'.
2018-08-2508:19:52:547164097d8WSWARNING: Proxy List used: '(null)', Bypass List used: '(null)', Last Proxy used: '(null)', Last auth Schemes used: 'None'.
2018-08-2508:19:52:547164097d8WSFATAL: OnCallFailure failed with hr=0X80240439
2018-08-2508:19:52:547164097d8SLSRetrieving SLS response from server using ETAG "Ww/uzEDtiHGuCQKdqqiVoucsE3BysNngQpDk+NfngSU=_1440"...
2018-08-2508:19:52:547164097d8SLSMaking request with URL HTTPS://sls.update.microsoft.com/SLS/{7971F918-A847-4430-9279-4A52D1EFE18D}/x64/6.3.9600.0/0?CH=604&L=en-US&P=&PT=0x7&WUA=7.9.9600.18970
2018-08-2508:19:52:563164097d8EPGot 7971F918-A847-4430-9279-4A52D1EFE18D redir Client/Server URL: "https://fe2.update.microsoft.com/v6/ClientWebService/client.asmx"
2018-08-2508:19:52:563164097d8PTWARNING: PTError: 0x80240439
2018-08-2508:19:52:563164097d8PTWARNING: SyncUpdates_WithRecovery failed.: 0x80240439
2018-08-2508:19:52:563164097d8IdleTmrWU operation (CAgentProtocolTalker::SyncUpdates_WithRecover, operation # 40) stopped; does use network; is at background priority
2018-08-2508:19:52:563164097d8PT  + SyncUpdates round trips: 2
2018-08-2508:19:52:563164097d8PTWARNING: Sync of Drivers failed (Software succeeded): 0x80240439

When you scan using PS

MS wuapp API reference says that result code 3 means that it succeeded with error. 

$updatesearcher.Search("IsInstalled=0 AND Type='Software'")| flResultCode:3RootCategories:System.__ComObjectUpdates:System.__ComObjectWarnings:System.__ComObject



 * Can anyone suggest on how to fix these warning ? 

 * Does this mean these servers will miss some updates by any chance ? 

 * Look at the last warning message, it says "Sync of Drivers failed (Software succeeded): 0x80240439" But I am not looking for drivers update, I am looking for software updates. 

KB4340558 abd KB4054566 fail to install

$
0
0

Having issues with KB4340558 and KB4054566 failing to install on Windows 2012 R2?  I have tried from the Windows update and manually downloading from the catalog with same results.

I have tried the workaround below, but it does not work.

         -Navigate to Control Panel > Programs > Programs and Features > Installed Updates.
         -Locate the line item for either KB4229726 or KB4229727, as appropriate.
         -Right-click the row item, and then click Uninstall.
         -Restart the computer as requested.
         -At an administrative command prompt, run the following command:
                 DISM.exe /online /Cleanup-Image /StartComponentCleanup
         -Rescan on Windows Update for updates, and then install the July 2018 .NET Framework Security and Quality Rollup                 update KB4340557 or KB4340558.                                                                                                               


Terry

Status Report with Windows Server 2016 to WSUS

$
0
0

Hi everybody

Since Windows Server 2016, the WUAUCLT tool has been replaced by Usoclient.
How can a report be sent to WSUS with the usoclient? (WUAUCLT/reportnow no longer works)
We have a growing problem with the fact that a server is updating and installing updates, but does not send a report back to WSUS.

regards...

Internal database error update sp4 win2003 r2 64bits

$
0
0
I installed wsus on a 2003 r2 64 bit server and installed sp2.Then I installed wsus and continued with windows update updating everything on the server, but I always get the error windows internal database sp4 (KB2463332) 0x80070643.

In the viewer I see:

Event Type: Error
Event Source: MsiInstaller
Event Category: None
Event ID: 11260
Date: 06/29/2018
Time: 7:59:44
User: FSERVER-MORA \ Administrator
Computer: FSERVER-MORA
Description:
The description for Event ID (11260) in Source (MsiInstaller) can not be found.The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the / AUXSOURCE = flag to retrieve this description;see Help and Support for details.The following information is part of the event: Product: Windows Internal Database - Error 1260. Windows can not open this program because it has been prevented by a software restriction policy.For more information, open Event Viewer or contact your system administrator.
; (NULL); (NULL);(NULL); (NULL); ; .
Data:
0000: 7b 42 44 44 37 39 39 35 {BDD7995
0008: 37 2d 35 38 30 31 2d 34 7-5801-4
0010: 41 32 44 2d 42 30 39 45 A2D-B09E
0018: 2d 38 35 32 45 37 46 41 -852E7FA
0020: 36 34 44 30 31 7d 64D01}

And this other in the viewer system part:
Event Type: Error
Event Source: Windows Update Agent
Event Category: Installation
Event ID: 20
Date: 06/29/2018
Time: 7:59:54
User: N / A
Computer: FSERVER-MORA
Description:
Installation Failure: Windows failed to install the following update with error 0x80070643: Windows Internal Database Service Pack 4 for x64 Edition (KB2463332).

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 57 69 6e 33 32 48 52 65 Win32HRe
0008: 73 75 6c 74 3d 30 78 38 sult = 0x8

Client Win7 Not report to WSUS after reinstallation WSUS

$
0
0

Ciao,

I  have reinstalled WSUS on the same server (2012R2) because i've changed DBWSUS disks and something gone wrong.

I have installed WSUS without problems, the version is 6.3.9600.18838.

Meanwhile (1 month because the WSUS is in production)  I have updated every machine using MicrosoftUpdate.

Now the scenario is:

The clients WIN2012R2 got WUAUCLT 7.9.9600.18970 and seem updated (the state-reporting is running).

The clients WINDOWS10 got WUAUCLT 10.0.1.14393.2189 and seem updated (the state-reporting is running).

The clients WINDOWS8 are still off-line for holidays.

The clients WINDOWS7 got WUAUCLT 7.6.7601.24085 have not the state-report (0).

The clients WINXP got WUAUCLT 7.6.7600.256 and seem updated (the state-report is running).

On Client SEVEN I tried This with Administrative Privileges

REM ======================================

cls
net stop bits
net stop wuauserv
net stop cryptsvc
REG DELETE "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate" /v SusClientId /f
REG DELETE "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate" /v SusClientIdValidation /f
RD /S /Q C:\windows\SoftwareDistribution
del c:\Windows\windowsupdate.log 
REM -> NO: Another process running (Explorer)
regsvr32 /s atl.dll
regsvr32 /s wucltui.dll
regsvr32 /s wucltux.dll
regsvr32 /s wudriver.dll
regsvr32 /s wuwebv.dll
regsvr32 /s wups.dll
regsvr32 /s wups2.dll
regsvr32 /s wuaueng.dll
regsvr32 /s wuapi.dll
regsvr32 /s msxml3.dll
regsvr32 /s mssip32.dll
regsvr32 /s initpki.dll
regsvr32 /s softpub.dll
net start cryptsvc
net start wuauserv
net start bits
gpupdate /force
wuauclt /resetauthorization
wuauclt /detectnow
wuauclt /reportnow
rem

REM =====================================

But nothing is changed

And this is the WINDOWSUPDATE.LOG of the same machine

2018-08-3017:59:27:23471630f0AU###########  AU: Uninitializing Automatic Updates  ###########
2018-08-3017:59:27:26171630f0Service*********
2018-08-3017:59:27:26171630f0Service**  END  **  Service: Service exit [Exit code = 0x240001]
2018-08-3017:59:27:26171630f0Service*************
2018-08-3017:59:35:2137165610Misc===========  Logging initialized (build: 7.6.7601.24085, tz: +0200)  ===========
2018-08-3017:59:35:2137165610Misc  = Process: C:\Windows\system32\svchost.exe
2018-08-3017:59:35:2137165610Misc  = Module: c:\windows\system32\wuaueng.dll
2018-08-3017:59:35:2137165610Service*************
2018-08-3017:59:35:2137165610Service** START **  Service: Service startup
2018-08-3017:59:35:2137165610Service*********
2018-08-3017:59:35:2197165610Agent  * WU client version 7.6.7601.24085
2018-08-3017:59:35:2197165610Agent  * Base directory: C:\Windows\SoftwareDistribution
2018-08-3017:59:35:2197165610Agent  * Access type: No proxy
2018-08-3017:59:35:2197165610Agent  * Network state: Connected
2018-08-3017:59:35:5407165610DtaStorDefault service for AU is {00000000-0000-0000-0000-000000000000}
2018-08-3017:59:35:5457165610DtaStorDefault service for AU is {9482F4B4-E343-43B6-B170-9A65BC822C77}
2018-08-3017:59:35:5497165610AgentWARNING: Failed to read the service id for re-registration 0x80070002
2018-08-3017:59:35:5497165610AgentWARNING: Missing service entry in the backup data store; cleaning up
2018-08-3017:59:54:9337164cbcReportCWERReporter::Init succeeded
2018-08-3017:59:54:9337164cbcAgent***********  Agent: Initializing Windows Update Agent  ***********
2018-08-3017:59:54:9337165770Agent***********  Agent: Initializing Windows Update Agent  ***********
2018-08-3017:59:54:93371653f4Agent***********  Agent: Initializing Windows Update Agent  ***********
2018-08-3017:59:54:9367164cbcAgent  * Prerequisite roots succeeded.
2018-08-3017:59:54:9367164cbcAgent***********  Agent: Initializing global settings cache  ***********
2018-08-3017:59:54:9367164cbcAgent  * WSUS server: http://server01:8530
2018-08-3017:59:54:9367164cbcAgent  * WSUS status server: http://server01:8530
2018-08-3017:59:54:9367164cbcAgent  * Target group: (Unassigned Computers)
2018-08-3017:59:54:9367164cbcAgent  * Windows Update access disabled: No
2018-08-3017:59:54:9377165610AgentCreated new random SusClientId 0523da8b-f209-4cd2-aca8-2db0cd02999c. Old Id: none.
2018-08-3017:59:54:9377165610Report***********  Report: Initializing static reporting data  ***********
2018-08-3017:59:54:9377165610Report  * OS Version = 6.1.7601.1.0.65792
2018-08-3017:59:54:9377165610Report  * OS Product Type = 0x00000030
2018-08-3017:59:54:9387164cbcDnldMgrDownload manager restoring 0 downloads
2018-08-3017:59:54:9387165770AU###########  AU: Initializing Automatic Updates  ###########
2018-08-3017:59:54:9387165770AU  # WSUS server: http://server01:8530
2018-08-3017:59:54:9387165770AU  # Detection frequency: 18
2018-08-3017:59:54:9387165770AU  # Approval type: Scheduled (Policy)
2018-08-3017:59:54:9387165770AU  # Scheduled install day/time: Every day at 13:00
2018-08-3017:59:54:9387165770AU  # Auto-install minor updates: Yes (Policy)
2018-08-3017:59:54:9387165770AU  # Will interact with non-admins (Non-admins are elevated (Policy))
2018-08-3017:59:54:9397165770AUSetting AU scheduled install time to 2018-08-31 11:00:00
2018-08-3017:59:54:9997165610Report  * Computer Brand = Hewlett-Packard
2018-08-3017:59:54:9997165610Report  * Computer Model = HP Pro 3400 Series MT
2018-08-3017:59:55:0007165610Report  * Bios Revision = 7.16
2018-08-3017:59:55:0007165610Report  * Bios Name = BIOS Date: 03/23/2012 CUP_716.rom Ver: 7.16 
2018-08-3017:59:55:0007165610Report  * Bios Release Date = 2012-03-23T00:00:00
2018-08-3017:59:55:0007165610Report  * Locale ID = 1040
2018-08-3017:59:55:4647165770AUSuccessfully wrote event for AU health state:0
2018-08-3017:59:55:4647165770AUInitializing featured updates
2018-08-3017:59:55:4647165770AUFound 0 cached featured updates
2018-08-3017:59:55:4657165770AUSuccessfully wrote event for AU health state:0
2018-08-3017:59:55:4657165770AUSuccessfully wrote event for AU health state:0
2018-08-3017:59:55:4657165770AUAU finished delayed initialization
2018-08-3017:59:55:4657165770AUTriggering AU detection through DetectNow API
2018-08-3017:59:55:4657165770AUTriggering Online detection (non-interactive)
2018-08-3017:59:55:4657165610AU#############
2018-08-3017:59:55:4667165610AU## START ##  AU: Search for updates
2018-08-3017:59:55:4667165610AU#########
2018-08-3017:59:55:4667165610AU<<## SUBMITTED ## AU: Search for updates [CallId = {56DBCC6C-01EE-487D-98A6-EFC8629C513D}]
2018-08-3017:59:55:467716210cAgent*************
2018-08-3017:59:55:467716210cAgent** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2018-08-3017:59:55:467716210cAgent*********
2018-08-3017:59:55:467716210cAgent  * Online = Yes; Ignore download priority = No
2018-08-3017:59:55:467716210cAgent  * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2018-08-3017:59:55:467716210cAgent  * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2018-08-3017:59:55:468716210cAgent  * Search Scope = {Machine}
2018-08-3017:59:55:468716210cSetupChecking for agent SelfUpdate
2018-08-3017:59:55:468716210cSetupClient version: Core: 7.6.7601.24085  Aux: 7.6.7601.24085
2018-08-3017:59:55:478716210cMiscValidating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab with dwProvFlags 0x00000080:
2018-08-3017:59:55:484716210cMiscMicrosoft signed: NA
2018-08-3017:59:55:486716210cMiscValidating signature for C:\Windows\SoftwareDistribution\SelfUpdate\TMPE514.tmp with dwProvFlags 0x00000080:
2018-08-3017:59:55:491716210cMiscMicrosoft signed: NA
2018-08-3017:59:55:494716210cMiscWARNING: WinHttp: SendRequestToServerForFileInformation failed with 0x80190194
2018-08-3017:59:55:494716210cMiscWARNING: WinHttp: ShouldFileBeDownloaded failed with 0x80190194
2018-08-3017:59:55:494716210cMiscWARNING: DownloadFileInternal failed for http://server01:8530/selfupdate/WSUS3/x64/Win7SP1/wsus3setup.cab: error 0x80190194
2018-08-3017:59:55:494716210cSetupWARNING: SelfUpdate check failed to download package information, error = 0x80244019
2018-08-3017:59:55:494716210cSetupFATAL: SelfUpdate check failed, err = 0x80244019
2018-08-3017:59:55:495716210cAgent  * WARNING: Skipping scan, self-update check returned 0x80244019
2018-08-3017:59:55:495716210cAgent  * WARNING: Exit code = 0x80244019
2018-08-3017:59:55:495716210cAgent*********
2018-08-3017:59:55:495716210cAgent**  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2018-08-3017:59:55:495716210cAgent*************
2018-08-3017:59:55:495716210cAgentWARNING: WU client failed Searching for update with error 0x80244019
2018-08-3017:59:55:495716547cAU>>##  RESUMED  ## AU: Search for updates [CallId = {56DBCC6C-01EE-487D-98A6-EFC8629C513D}]
2018-08-3017:59:55:495716547cAU  # WARNING: Search callback failed, result = 0x80244019
2018-08-3017:59:55:495716547cAU  # WARNING: Failed to find updates with error code 80244019
2018-08-3017:59:55:495716547cAU#########
2018-08-3017:59:55:495716547cAU##  END  ##  AU: Search for updates [CallId = {56DBCC6C-01EE-487D-98A6-EFC8629C513D}]
2018-08-3017:59:55:495716547cAU#############
2018-08-3017:59:55:497716547cAUSuccessfully wrote event for AU health state:0
2018-08-3017:59:55:497716547cAUAU setting next detection timeout to 2018-08-30 20:59:55
2018-08-3017:59:55:497716547cAUSetting AU scheduled install time to 2018-08-31 11:00:00
2018-08-3017:59:55:497716547cAUSuccessfully wrote event for AU health state:0
2018-08-3017:59:55:497716547cAUSuccessfully wrote event for AU health state:0
2018-08-3018:00:00:465716210cReportREPORT EVENT: {98F273C6-9578-4B03-BAEA-227C94CB3B37}2018-08-30 17:59:55:465+02001202102{00000000-0000-0000-0000-000000000000} 00AutomaticUpdatesSuccessContent InstallReboot completed.
2018-08-3018:00:00:465716210cReportREPORT EVENT: {D4F2571C-84E7-4D0C-9DAE-ED98C794CE68}2018-08-30 17:59:55:495+02001148101{D67661EB-2423-451D-BF5D-13199E37DF28} 180244019 SelfUpdateFailureSoftware SynchronizationWindows Update Client failed to detect with error 0x80244019.
2018-08-3018:00:00:474716210cReportCWERReporter::HandleEvents - WER report upload completed with status 0x8
2018-08-3018:00:00:474716210cReportWER Report sent: 7.6.7601.24085 0x80244019(0) 67661EB-2423-451D-BF5D-13199E37DF28 Scan 1 0 SelfUpdate {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} 0

===========================

What can I do to connect correctly WIN7 client?

Thanks in advance

Stefano

(N.B. Everything is in italian version)


Windows server 2016 update issue's

$
0
0

Hi 

At a customer we have a windows server 2016 RDS connected to a WSUS.

We want to disable automatic updates for that server. We want to install it manually.

So i diabled the automatic updates policy. And i've run SCONFIG en set it to Manual.

Appearently this does not work. Server did an reboot yesterday caused by installed updates.

image.png

HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WindowsUpdate\AU

NoAutoUpdate = 1 (reg_dword)

 

Does anyone have a validated procedure on how to disbale this? did this happen because of WSUS?

Because of the unexpecter reboot i changed the setting to download only:

Currently we have following settings enabled:

image.png

image.png

Can Someone approve that the system wil not reboot caused by updates anymore?

Setting up import / export server for WSUS Win 2008 r2

$
0
0

We currently have a "disconnected" WSUS server,  which hasn't been used for a couple of years. Many machines and servers are connected to this server, server also has McAfee EPO installed on it, which is frequently updated and used on a daily basis. 

I have several noobish questions, please bear with me. :) :( 

So, for getting the WSUS in action again, I plan to setup an additional server, which would be my export WSUS server, because the disconnected server has to stay disconnected for security reasons.

So, when I looked into it, I found that I wouldn't be able to configure the export WSUS server, to any of my existing servers with any type of SQL database installed in them for any other application, so, I went ahead and procured a new server for this. 

Setting up the new server seems pretty straight forward, but I wanted some help with the existing old "disconnected" server. 

Is  there any process of UNINSTALLING or anything of that sort I need to follow? Just uninstalling the WSUS server, and reinstalling it as the import server would work? Without any complications? 

After the setup, how do I download and  export the updates from EXPORT server to IMPORT? How do I apply the updates to the network machines? Please direct me to the right path.

This is for Windows 2008 r2 server, please also  suggest what version of WSUS would be best for my requirement. Upgrading the OS is not possible. Please help. Thanks! 


The WSUS administration console was unable to connect to the WSUS Server

$
0
0

Dear All,

Greetings!

What could be <g class="gr_ gr_101 gr-alert gr_gramm gr_inline_cards gr_disable_anim_appear Grammar only-ins doubleReplace replaceWithoutSep gr-progress" data-gr-id="101" id="101">reason</g> why the WSUS administration console was unable to connect to the WSUS Server and below is the <g class="gr_ gr_552 gr-alert gr_spell gr_inline_cards gr_disable_anim_appear ContextualSpelling ins-del" data-gr-id="552" id="552">screen shot</g> for the same.

The WSUS administration console was unable to connect to the WSUS Server via the remote API.

Verify that the Update Services service, IIS and SQL are running on the server. If the problem persists, try restarting IIS, SQL, and the Update Services Service.

The WSUS administration console has encountered an unexpected error. This may be a transient error; try restarting the administration console. If this error persists,

Try removing the persisted preferences for the console by deleting the <g class="gr_ gr_598 gr-alert gr_spell gr_inline_cards gr_run_anim ContextualSpelling" data-gr-id="598" id="598">wsus</g> file under %appdata%\Microsoft\MMC\.


System.IO.IOException -- The handshake failed due to an unexpected packet format.

Source
System

Stack Trace:
   at System.Net.Security.SslState.StartReadFrame(Byte[] buffer, Int32 readBytes, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.StartReceiveBlob(Byte[] buffer, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.StartSendBlob(Byte[] incoming, Int32 count, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.ForceAuthentication(Boolean receiveFirst, Byte[] buffer, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.ProcessAuthentication(LazyAsyncResult lazyResult)
   at System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx)
   at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx)
   at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state)
   at System.Net.TlsStream.ProcessAuthentication(LazyAsyncResult result)
   at System.Net.TlsStream.Write(Byte[] buffer, Int32 offset, Int32 size)
   at System.Net.ConnectStream.WriteHeaders(Boolean async)
** this exception was nested inside of the following exception **


System.Net.WebException -- The underlying connection was closed: An unexpected error occurred on a send.

Source
Microsoft.UpdateServices.Administration

Stack Trace:
   at Microsoft.UpdateServices.Administration.AdminProxy.CreateUpdateServer(Object[] args)
   at Microsoft.UpdateServices.UI.AdminApiAccess.AdminApiTools.GetUpdateServer(String serverName, Boolean useSecureConnection, Int32 portNumber)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.ConnectToServer()
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.get_ServerTools()

Does anyone have <g class="gr_ gr_675 gr-alert gr_gramm gr_inline_cards gr_run_anim Grammar only-ins doubleReplace replaceWithoutSep" data-gr-id="675" id="675">idea</g> on this issue?

I would appreciate your support

Saroop


WSUS was not getting all updates from Windows Update Site

$
0
0

Recently, I discovered that WSUS from my customers is not getting all updates available in Windows Update Site, like the last ones KB4088889, KB4089848, KB4099950, for example. WSUS is able to find all others updates and I can approve its without problems. I think that maybe be a problem inside of site of Microsoft or Microsoft will release this updates later, I don´t know. My customers have WSUS installed in Windows 2012 R2 and 2016 servers, so is not a problem related with the version of O.S. Are there more people with this problem??? Please let me know.

Thanks

WSUS dash board is not coming propery

$
0
0
I have WSUS servers in replica mode. There is 1 upstream server and 17 downstream server in replica mode. I push the patches on monthly basis, have approved many patches. But when I check WSUS server's dashboard, it does not show the "Installed/NotApplicable" count. Below is screenshot.

Arif

Recent Patches pushed using wsus not detecting in endpoints

$
0
0

I've been in a process of installing MS Updates in an environment which has never Patched till date.I use WSUS . Almost every time I'm successful except scenarios like below.

Few of my Server 2008 R2 Sp1 Standard machines which has never Patched till Date. Few days back I pushed all available Patches from 2013 till May 2018. My problem is this, Machine is detecting all relevant Patches except the updates released after Jan 2018.

So I had installed all detected updates and re-booted. Once Server has came up, I've given 'Check for Update' once again.But Server says 'Windows is up to date'.  

I tried following so far.

1. Created new folder in WSUS and moved Server into that and approved Patches from Jan18-May18 into that folder

2. Given wuauclt /detectnow /reportnow  and re-booted multiple times

Please help me to fix this

NB: Only recent Patch detect is Malicious Tool'

base domain controller issue

$
0
0
I am fairly new to the Windows Server OS (2012 R2)and I do not know how to solve this issue. I'm currently trying to set up WSUS on a new machine for an existing network but I can not get the existing computer to show on WSUS. I get an error on my Group Policy saying "a processing error occurred collecting data using this base domain controller" but I can see the computers on Active Directory.

How should I continue? Thank you.
Viewing all 12874 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>