WSUS and Windows Update

In a workgroup environment, no domain, no group policy, cannot configure registry key on the client.
From my management machine I want to run a powershell script to download patches from a specific patch group in wsus onto this new machine and install the patches.
How can I achieve this with Powershell?
How do I approve patches using powershell.

Hi VicVmware,
In my expression, you want to download patches from WSUS server to a workgroup hasn't configured WSUS client.
We can approve patches on WSUS server with Powershell script in this thread:
Approve patches in WSUS by powershell
$updatescope = New-Object Microsoft.UpdateServices.Administration.UpdateScope
$updatescope.FromCreationDate = [datetime]"3/13/2012 5:00:00 PM"
$Group = $wsus.GetComputerTargetGroups() | where {$_.Name -eq 'TestGroup'}
$wsus.GetUpdates($UpdateScope) | ForEach {
Write-Host ("Approving {0} for {1}" -f $_.Title,$Group.Name) -Fore Green -Back Black
$_.Approve('Install',$Group)
However, if you haven't configured the WSUS client, it's also difficult to download patches from WSUS server via script.
In addition, for a workgroup you can try to manually download patches from here:
http://catalog.update.microsoft.com/v7/site/Home.aspx
If there is anything else regarding this issue, please feel free to post back.
Best Regards,
Anna Wang
Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

Similar Messages

  • Windows Firewall and Windows Update (Win 8.1)

    Since Windows Vista I have always been using the Windows Firewall with "blocked outgoing traffic". As this is not the default setting, some basic windows services seem not to be included as firewall rules on the outgoing side.
    My Problem is with the Windows Update:
    On Windows Vista and 7 it was sufficient to create a rule for "wuauserv".
    On Windows 8.1 however this seems not to be enough. The UI gives me error code 80240438 and the WindowsUpdate.log shows the following lines:
    2014-06-14    20:11:08:150     952    538    IdleTmr    WU operation (CAgentProtocolTalker::SyncUpdates_WithRecover) started; operation # 2044; does use network; is at background
    priority
    2014-06-14    20:11:08:151     952    538    WS    WARNING: Nws Failure: errorCode=0x803d0010
    2014-06-14    20:11:08:151     952    538    WS    WARNING: Original error code: 0x80072efd
    2014-06-14    20:11:08:151     952    538    WS    WARNING: Fehler bei der Kommunikation mit dem Endpunkt bei "https://fe2.update.microsoft.com/v6/ClientWebService/client.asmx".
    2014-06-14    20:11:08:151     952    538    WS    WARNING: Fehler beim Senden der HTTP-Anforderung.
    2014-06-14    20:11:08:151     952    538    WS    WARNING: Der Remoteendpunkt konnte nicht erreicht werden.
    (.... and a lot of similar WARNING lines)
    2014-06-14    20:11:12:921     952    538    IdleTmr    WU operation (CAgentProtocolTalker::SyncUpdates_WithRecover, operation # 2044) stopped; does use network; is at background
    priority
    If I create a rule for the whole svchost.exe, the update works fine. Giving all services internet access is however not an option for me. Could you please tell me through which service(s) except wuauserv Windows Update performs its network activities?

    Windows 8 upgraded to 8.1 on a Gateway SX2370.  Purchased Sep. 2013. 
    As of Dec. 28, 2014 I have not gotten ANY windows defender updates and windows update has not been working at all. When I go to my start screen and type "update" Windows update still shows in the list, only now when I click on it, it brings
    up a blank window and can only be closed by right clicking the tab on the taskbar. I cannot max or minimize the window either.
    Up until Dec. 28th it was working perfectly, notifying me when updates were available, almost everyday for windows defender.
    I have tried everything I could find to fix this, even a complete restore, with recovery media made for Win 8.1 and Win 8. Still no windows updates, of anything. To top it off as of Jan. 22, 2015 the Diagnostic Policy Service has stopped and I am denied
    access when I try restarting it.
    Windows XP was great until MS stopped support. Vista sucked, near as bad as Millenium or 2000. I never tried windows 7 instead going for windows 8, being the most recent version when I could afford a new PC. Adapting to win 8-8.1 was no easy task.
    I'm not a tech guru, but I've owned & used windows from Dos 6.0, '95, '98, '98SE, Millenium, XP, XP home & Pro (sp1-2 & 3) and still have the installation/restore CDs for all of them. Even taught myself how to write the recovery
    console directly from the hard drive of XP, OEM or full MS versions without using the CDs & now I'm using Windows 8 - 8.1. Getting rid of the recovery console was a BIG mistake in my opinion.
    At one time I had a multi-boot system of win.95, 98, 98SE, Mill., XP home sp2 and XP Pro sp3 on a 1.5 TB self built system. Microsoft told me it was impossible, until I allowed two tech support reps remote access for 5 min.. Which also lead to me being
    blocked from most MS websites &?suggestions windows forums for 3 years.
    But so far, this failure of windows updates and the Diagnostic policy Service in Windows 8.1 has got me stumped. Can ANYONE give me a quick simple way to correct this? Please?
    Thanks for reading this and any help or suggestions anyone has to offer. GOD bless you all and my thanks to every military person, their families and veterans for my freedom. 

  • Downloaded latest Itunes and Windows Update and everything fell apart

    Okay, I dl'd the latest Itunes and Windows Update today and turned off my computer. When I came back and turned it on, it became really slow and the style for all the "windows headings" turned "gray classic theme." I tried running Itunes and a box comes up saying that I "Do not have access to change the Catalyst Control," my ATI driver I think (x1300). Then it says that I can't run Itunes because the audio is configured wrong. I go to my Audio settings in the "control panel" and everything is grayed out except the hardware choices. I clicked on their properties (SigmaTel Audio), but nothing would come up for 45 minutes. I am barely running in VGA mode and cannot access the internet connections in IE, thus barring me from Microsoft's updates. Sorry if it's hard to understand, but I'm ****** because I can't listen to all the new stuff I bought on Itunes yesterday Does anyone have any clues or ideas?

    Take a look at this link, http://support.apple.com/kb/TS1369

  • Scheduler and windows update unavailable / unresponsive,

    Issue:
    Windows Update & Task Scheduler stop working, RDP then fails and a day later the system eventually becomes completely unresponsive and require a reboots to resolve, servers are needing to be rebooted every week on average.
    Environment:
    Server 2012: all receive same windows updates and have the same running services and applications installed,
    all mirror images of DB01
    DB01*Displaying Symptoms mentioned below
    DB02*fine
    DB03*fine
    Non Microsoft Services running:
    EMC Backup Agent
    AVG Antivirus
    Enterprise Recon Node - Ground labs
    GFI LanGuard 11
    BMC Server Automation Agent
    WMware Tools Service
    Link to Warnings Link to Errors
    Symptoms:
    Windows Update is not working
    (stuck in stopping state, accessing via control panel is unresponsive)
    Task Scheduler not working
    it shows a stop sign / busy sign (Service is running, cannot see or create scheduled tasks)
    RDP eventually stops working.
    Above 3 services are started by the same instance (PID) of svchost.exe , killing the svchost.exe instance that started scheduler and windows update services also kills RDP and is not a solution.
    Event Logs:
    Warnings - https://drive.google.com/file/d/0B4FtPRuE-MzqdFExQi1EdFpQdEk/edit?usp=sharing
    Errors - https://drive.google.com/file/d/0B4FtPRuE-MzqMGZzckRwMnFNWGc/edit?usp=sharing

    Hi Fraser,
    Thank you for your update and patience.
    After going through the logs you provided, please check my findings below.
    ===============================================
    Log Name:      Microsoft-Windows-DeviceSetupManager/Admin
    Source:        Microsoft-Windows-DeviceSetupManager
    Date:          9/3/2014 6:55:47 AM
    Event ID:      201
    Level:         Warning
    User:          SYSTEM
    Description:
    A connection to the Windows Metadata and Internet Services (WMIS) could not be established.
    Log Name:      Microsoft-Windows-DeviceSetupManager/Admin
    Source:        Microsoft-Windows-DeviceSetupManager
    Date:          8/31/2014 11:37:33 PM
    Event ID:      200
    Level:         Warning
    User:          SYSTEM
    Description:
    A connection to the Windows Update service could not be established.
    Log Name:      Microsoft-Windows-DeviceSetupManager/Admin
    Source:        Microsoft-Windows-DeviceSetupManager
    Date:          15/08/2013 1:51:01 p.m.
    Event ID:      202
    Level:         Warning  
    User:          SYSTEM
    Description:
    The Network List Manager reports no connectivity to the internet.
    Log Name:      System
    Source:        DistributedCOM
    Date:          9/3/2014 3:10:41 AM
    Event ID:      10029
    Level:         Error  
    User:          SYSTEM
    Description:
    The activation of the CLSID {E60687F7-01A1-40AA-86AC-DB1CBF673334} timed out waiting for the service wuauserv to stop.
    Log Name:      Microsoft-Windows-DeviceSetupManager/Admin
    Source:        DeviceSetupManager
    Date:          9/1/2014 7:26:06 AM
    Event ID:      121
    Level:         Error  
    User:          SYSTEM
    Description:
    Driver install failed, result=0x80072EE2 for devnode 'TERMINPUT_BUS\UMB\2&2C22BCC9&0&SESSION1MOUSE0'
    ===========
    As per my research, those events which related to Device Setup Manager generated because Device Setup Manager just goes out and pings windows update
    every night to see if any devices that are installed and set up to use Windows Update to update the corresponding drivers.
    Currently, I suggest we make sure the drivers on your server are all up to date via Device Manager. Meanwhile, please try setting up the Windows Update settings from
    installing update automatically to manually installing updates. Then restart the server to monitor the issue.
    After all the above, if the issue persists, could you please help collect the following information?
    =====================================
    1. Run the following command and upload the system information.
    msinfo32 /nfo      C:\SYSSUM.NFO /categories +systemsummary
    2. Does the issue still occur in Clean Boot mode?
    If you have any questions or additional information, feel free to let me know.
    Thanks for your time.
    Best regards,
    Sophia Sun
    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

  • WSUS and Windows 8.1 pro

    Hi, I have WSUS on Windows Server 2008 r2 with sp1. My laptop runs Windows 8.1 Pro x64. I have noticed that for a long time I have not seen
    Install Updates and Shut Down option when I want to shut down my laptop. In control panel there is information that updates are downloaded with an option to install these updates by clicking on
    Install. I have checked this on test Windows 8.1 Pro x64 virtual machine and the situation is the same -
    Install Updates and Shut Down option is not there but in control panel there are many downloaded updates waiting to be installed by clicking on
    Install. What is wrong here? 

    Hi,
    Choose your desktop, press Alt+F4, is there an option “Update and shutdown/restart”?
    Notification message should be displayed on logon screen. If there is nothing displayed, I would suspect either no updates available or connectivity issue
    between clients and WSUS.
    Please review windowsupdate.log and share with us.

  • Domain Group Policy changes causes clients to be unable to connect to WSUS for Windows Updates

    Domain Controller is Windows Server 2008 R2 64-bit, Group Policy Management version 6.0.0.1. WSUS server is Windows Server 2008 Enterprise 32-bit, Update Services version 3.2.7600.226. Client machines are Windows 7, some are 64-bit and some are 32-bit.
    Every time we make any changes to any of our Group Policies most of our clients stop getting their Windows Updates from the WSUS server within 2-3 days. This occurs when we add a new policy for a group of users, temporarily disable a policy or edit a policy.
    Check of the WindowsUpdate.log on affected client machines shows:
    2014-06-25 13:40:44:976  760 1610 PT WARNING: GetAuthorizationCookie failure, error = 0x80072EE2, soap client error = 5, soap error code = 0, HTTP status code = 200
    2014-06-25 13:40:44:977  760 1610 PT WARNING: Failed to initialize Simple Targeting Cookie: 0x80072ee2
    2014-06-25 13:40:44:977  760 1610 PT WARNING: PopulateAuthCookies failed: 0x80072ee2
    2014-06-25 13:40:44:977  760 1610 PT WARNING: RefreshCookie failed: 0x80072ee2
    2014-06-25 13:40:44:977  760 1610 PT WARNING: RefreshPTState failed: 0x80072ee2
    2014-06-25 13:40:44:977  760 1610 PT WARNING: PTError: 0x80072ee2
    2014-06-25 13:40:44:977  760 1610 Report WARNING: Reporter failed to upload events with hr = 80072ee2.
    A further check of the log files shows:
    2014-06-21 19:36:06:995  156 1b0c Misc WARNING: SendRequest failed with hr = 80072ee2. Proxy List used: <proxy server name:8080> Bypass List used : <(null)> Auth Schemes used : <>
    We do not use a proxy except for Internet connections. We configure IE with a pac file. This is set through Group Policy since we restrict user accounts from being able to set it. 
    The clients that are connecting to the WSUS server have these entries instead:
    2014-06-24 09:12:16:779  992 270 Agent Setting download properties on call A20329BC-3467-4B7E-B9F4-6AC6ACBA23E1: priority=3, interactive=1, owner is system=0, proxy settings=1, proxy session id=2
    I have a routine that will fix the problem but it is time-consuming and pulls me away from other things I should be doing:
    Run registry files on client machine (WindowsUpdate and AU) This is not always necessary and is already set by Group Policy and the affected clients already have the registry settings. No idea why it is necessary to do but it the steps below don't always
    work unless it is.
    netstop bits and netstop wuauserv
    ipconfig /flushdns
    Delete qmgr*.* files from Downloader folder
    Delete Software Distribution folder
    Run from command prompt:
    sc.exe sdset bits D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPWPDTLOCRRC;;;PU)
    sc.exe sdset wuauserv D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPWPDTLOCRRC;;;PU)
    netstart bits and netstart wuauserv
    wuauclt /resetauthorization /detectnow
    Run Windows Updates again from Control Panel
    This routine always fixes the problem but I've found that I must do each step to guarantee success.
    How or where is the proxy setting being changed for WSUS that we see in the WindowsUpdate logs and how do I prevent this from happening? It is also curious that it happens to most but not all of the client machines. When it does happen it's not always the
    same client machines.

    You're right - the WSUS server is on the inside and does not need a proxy server. Tried running the netsh winhttp reset proxy command but was still not able to connect to the WSUS server. After running the netsh winhttp reset proxy command received response:
    Current WinHTTP proxy setting: Direct access <no proxy server>.
    Ran the command at 13:49 and then tried Windows Updates again. Here's snippet from the log file:
    2014-06-27 13:49:56:889  548 f6c AU Triggering AU detection through DetectNow API
    2014-06-27 13:49:56:890  548 f6c AU Triggering Online detection (interactive)
    2014-06-27 13:49:56:890  548 4b8 AU #############
    2014-06-27 13:49:56:890  548 4b8 AU ## START ##  AU: Search for updates
    2014-06-27 13:49:56:890  548 4b8 AU #########
    2014-06-27 13:49:56:893  548 4b8 AU <<## SUBMITTED ## AU: Search for updates [CallId = {9CE06AB2-E859-4B4D-8D1A-193AD89623C5}]
    2014-06-27 13:49:56:893  548 1260 Agent *************
    2014-06-27 13:49:56:893  548 1260 Agent ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
    2014-06-27 13:49:56:893  548 1260 Agent *********
    2014-06-27 13:49:56:893  548 1260 Agent   * Online = Yes; Ignore download priority = No
    2014-06-27 13:49:56:893  548 1260 Agent   * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1
    or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
    2014-06-27 13:49:56:893  548 1260 Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
    2014-06-27 13:49:56:893  548 1260 Agent   * Search Scope = {Machine}
    2014-06-27 13:49:56:893  548 1260 Setup Checking for agent SelfUpdate
    2014-06-27 13:49:56:893  548 1260 Setup Client version: Core: 7.6.7600.256  Aux: 7.6.7600.256
    2014-06-27 13:49:56:894  548 1260 Misc Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab:
    2014-06-27 13:49:56:901  548 1260 Misc  Microsoft signed: Yes
    2014-06-27 13:49:56:927  548 1260 Misc Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab:
    2014-06-27 13:49:56:934  548 1260 Misc  Microsoft signed: Yes
    2014-06-27 13:49:56:936  548 1260 Misc Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wsus3setup.cab:
    2014-06-27 13:49:56:943  548 1260 Misc  Microsoft signed: Yes
    2014-06-27 13:49:56:956  548 1260 Misc Validating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wsus3setup.cab:
    2014-06-27 13:49:56:962  548 1260 Misc  Microsoft signed: Yes
    2014-06-27 13:49:56:974  548 1260 Setup Determining whether a new setup handler needs to be downloaded
    2014-06-27 13:49:56:974  548 1260 Setup SelfUpdate handler is not found.  It will be downloaded
    2014-06-27 13:49:56:974  548 1260 Setup Evaluating applicability of setup package "WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~amd64~~7.6.7600.256"
    2014-06-27 13:49:56:976  548 1260 Setup Setup package "WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~amd64~~7.6.7600.256" is already installed.
    2014-06-27 13:49:56:976  548 1260 Setup Evaluating applicability of setup package "WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.256"
    2014-06-27 13:49:56:989  548 1260 Setup Setup package "WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.256" is already installed.
    2014-06-27 13:49:56:989  548 1260 Setup Evaluating applicability of setup package "WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.256"
    2014-06-27 13:49:57:007  548 1260 Setup Setup package "WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~amd64~~7.6.7600.256" is already installed.
    2014-06-27 13:49:57:007  548 1260 Setup SelfUpdate check completed.  SelfUpdate is NOT required.
    2014-06-27 13:49:57:165  548 1260 PT +++++++++++  PT: Synchronizing server updates  +++++++++++
    2014-06-27 13:49:57:165  548 1260 PT   + ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}, Server URL =
    http://(FQDN of WSUS server)/ClientWebService/client.asmx
    2014-06-27 13:49:57:175  548 1260 PT WARNING: Cached cookie has expired or new PID is available
    2014-06-27 13:49:57:175  548 1260 PT Initializing simple targeting cookie, clientId = 6be4a1ae-3313-4855-bdb1-57e3312f03ec, target group = AGENCIES, DNS name = dpk2.clear-rcic.rcc.org
    2014-06-27 13:49:57:175  548 1260 PT   Server URL =
    http://(FQDN of WSUS server)/SimpleAuthWebService/SimpleAuth.asmx
    2014-06-27 13:50:57:280  548 1260 Misc WARNING: SendRequest failed with hr = 80072ee2. Proxy List used: <(proxy server):8080> Bypass List used : <(null)> Auth Schemes used : <>
    2014-06-27 13:50:57:281  548 1260 PT   + Last proxy send request failed with hr = 0x80072EE2, HTTP status code = 0
    2014-06-27 13:50:57:281  548 1260 PT   + Caller provided proxy = No
    2014-06-27 13:50:57:281  548 1260 PT   + Proxy list used = webgate.rcc.org:8080
    2014-06-27 13:50:57:281  548 1260 PT   + Bypass list used = <NULL>
    2014-06-27 13:50:57:281  548 1260 PT   + Caller provided credentials = No
    2014-06-27 13:50:57:281  548 1260 PT   + Impersonate flags = 0
    2014-06-27 13:50:57:281  548 1260 PT   + Possible authorization schemes used =
    2014-06-27 13:50:57:281  548 1260 PT WARNING: GetAuthorizationCookie failure, error = 0x80072EE2, soap client error = 5, soap error code = 0, HTTP status code = 200
    2014-06-27 13:50:57:281  548 1260 PT WARNING: Failed to initialize Simple Targeting Cookie: 0x80072ee2
    2014-06-27 13:50:57:281  548 1260 PT WARNING: PopulateAuthCookies failed: 0x80072ee2
    2014-06-27 13:50:57:281  548 1260 PT WARNING: RefreshCookie failed: 0x80072ee2
    2014-06-27 13:50:57:281  548 1260 PT WARNING: RefreshPTState failed: 0x80072ee2
    2014-06-27 13:50:57:281  548 1260 PT WARNING: Sync of Updates: 0x80072ee2
    2014-06-27 13:50:57:281  548 1260 PT WARNING: SyncServerUpdatesInternal failed: 0x80072ee2
    2014-06-27 13:50:57:281  548 1260 Agent   * WARNING: Failed to synchronize, error = 0x80072EE2
    2014-06-27 13:50:57:282  548 1260 Agent   * WARNING: Exit code = 0x80072EE2
    2014-06-27 13:50:57:282  548 1260 Agent *********
    2014-06-27 13:50:57:282  548 1260 Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
    2014-06-27 13:50:57:282  548 1260 Agent *************
    2014-06-27 13:50:57:282  548 1260 Agent WARNING: WU client failed Searching for update with error 0x80072ee2
    2014-06-27 13:50:57:302  548 e04 AU >>##  RESUMED  ## AU: Search for updates [CallId = {9CE06AB2-E859-4B4D-8D1A-193AD89623C5}]
    2014-06-27 13:50:57:302  548 e04 AU   # WARNING: Search callback failed, result = 0x80072EE2
    2014-06-27 13:50:57:302  548 e04 AU   # WARNING: Failed to find updates with error code 80072EE2
    2014-06-27 13:50:57:302  548 e04 AU #########
    2014-06-27 13:50:57:302  548 e04 AU ##  END  ##  AU: Search for updates [CallId = {9CE06AB2-E859-4B4D-8D1A-193AD89623C5}]
    2014-06-27 13:50:57:302  548 e04 AU #############
    2014-06-27 13:50:57:303  548 e04 AU Successfully wrote event for AU health state:0
    2014-06-27 13:50:57:303  548 e04 AU AU setting next detection timeout to 2014-06-27 22:50:57
    2014-06-27 13:50:57:304  548 e04 AU Setting AU scheduled install time to 2014-06-28 05:00:00
    2014-06-27 13:50:57:304  548 e04 AU Successfully wrote event for AU health state:0
    2014-06-27 13:50:57:305  548 e04 AU Successfully wrote event for AU health state:0
    2014-06-27 13:51:02:285  548 1260 Report REPORT EVENT: {BD25B39C-6570-454C-A046-AF3AF2DEBDD4} 2014-06-27 13:50:57:282-0400 1 148 101 {00000000-0000-0000-0000-000000000000} 0 80072ee2 AutomaticUpdates Failure Software
    Synchronization Windows Update Client failed to detect with error 0x80072ee2.
    2014-06-27 13:51:02:295  548 1260 Report CWERReporter::HandleEvents - WER report upload completed with status 0x8
    2014-06-27 13:51:02:295  548 1260 Report WER Report sent: 7.6.7600.256 0x80072ee2 00000000-0000-0000-0000-000000000000 Scan 101 Managed
    2014-06-27 13:51:02:295  548 1260 Report CWERReporter finishing event handling. (00000000)
    2014-06-27 13:51:48:184  548 4b8 AU ###########  AU: Uninitializing Automatic Updates  ###########
    2014-06-27 13:51:48:187  548 4b8 DnldMgr FATAL: DM:CBitsJob::SetCallbackHandler: SetNotifyInterface failed with 0x80080008.
    2014-06-27 13:51:48:187  548 4b8 DnldMgr FATAL: DM:CBitsJob::SetCallbackHandler: SetNotifyInterface failed with 0x80080008.
    2014-06-27 13:51:48:187  548 4b8 DnldMgr FATAL: DM:CBitsJob::SetCallbackHandler: SetNotifyInterface failed with 0x80080008.
    2014-06-27 13:51:48:187  548 4b8 DnldMgr FATAL: DM:CBitsJob::SetCallbackHandler: SetNotifyInterface failed with 0x80080008.
    2014-06-27 13:51:48:187  548 4b8 Report CWERReporter finishing event handling. (00000000)
    2014-06-27 13:51:48:252  548 4b8 Service *********
    2014-06-27 13:51:48:252  548 4b8 Service **  END  **  Service: Service exit [Exit code = 0x240001]
    2014-06-27 13:51:48:252  548 4b8 Service *************
    2014-06-27 13:51:53:002  548 160c Misc ===========  Logging initialized (build: 7.6.7600.256, tz: -0400)  ===========
    2014-06-27 13:51:53:002  548 160c Misc   = Process: C:\Windows\system32\svchost.exe
    2014-06-27 13:51:53:002  548 160c Misc   = Module: c:\windows\system32\wuaueng.dll
    Ran a batch file which resets the AU and WindowsUpdate registry keys and then runs the steps listed above:
    regedit /s C:\WindowsUpdate.reg
    regedit /s C:\AU.reg
    net stop bits
    net stop wuauserv
    Ipconfig /flushdns
    del C:\ProgramData\Microsoft\Network\Downloader\qmgr*.*
    del  /F /Q C:\Windows\SoftwareDistribution\*.*
    sc.exe sdset bits D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPWPDTLOCRRC;;;PU)
    sc.exe sdset wuauserv D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWLOCRRC;;;AU)(A;;CCLCSWRPWPDTLOCRRC;;;PU)
    net start bits
    net start wuauserv
    wuauclt /resetauthorization /detectnow
    After this runs, am able to connect to WSUS server for updates. I mentioned Group Policy changes because this only breaks after the Group Policy changes. It doesn't affect every client machine but most of them. Was wondering how the proxy gets reset from
    none to the proxy server for Windows Updates?

  • Why is the SCUP and Windows Update updates different

    I have an issue I cannot find an answer for. I am using the installation of WSUS within SCCM 2012 R2. I have selected all of the products associated to what is in our environment. I have downloaded and advertised all of the updates, security patches, definitions
    etc... Once the updates are all installed on test machines, I run Windows Update from online. The list still shows updates and fixes in which I should have been downloading.
    Does anyone know why this is?

    That is often the case. Have you analysed the results? You might find that these updates are superseded or expired. The same thing happens if you use Microsoft Baseline Security Analyser. You can't read the results out of context.
    By the way, you're not actually talking about SCUP. That is something different (System Center Updates Publisher). It's for integrating 3rd party updates with ConfigMgr.
    Gerry Hampson | Blog:
    www.gerryhampsoncm.blogspot.ie | LinkedIn:
    Gerry Hampson | Twitter:
    @gerryhampson

  • SCCM and Windows Update Client Configuration

    Hello,
    I am in the process of migrating SCCM 2007 client over to a new SCCM 2012 R2 site.
    I deleted the AD site from 2007 and added it to 2012 and the client is pushed via Client Push. The client upgrades fine and things go well but
    I run into a little problem after the client is installed.
    Basically it seems to be an issue with how SCCM interacts with and controls Windows Update settings on the SCCM client.  I ran into a somewhat of a major issue that caused
    all (or many) of the newly upgraded clients to go the internet to download updates from Microsoft shortly after the move from the 2007 site and client upgrade to 2012. This was because the client (or at least the ones I checked) had their WU settings to “Always
    download and install” (or something similar). Obviously, expected  behavior with this setting, but the question is how did it get this way?
    Does SCCM control any of these settings?  I know it take over the WSUS settings, etc, but I didn’t think it does anything with the WU client itself.
    From my understanding the WU client settings are done via GPO (local or domain) or WU setting and SCCM does not control these settings.
    I’m not looking for you to solve the problem, because it’s quite tedious, I’m just hoping that someone can lead me in the right direction to find out what if any WU settings
    are controlled or changed by SCCM 2007 or 2012.
    Thanks
    Angelo
    Angelo

    Thanks for the extra info, Idan.  I should probably admit that I am an AD admin and SCCM is handled by someone else in my department.  My main issue with the LocalGPO is the Event 1096 corruption that causes all admin template settings to revert
    to defaults - currently happening on over 100 workstations in our environment.  100% of these problems are caused by LocalGPO corruption and nothing else.  And we will pursue resolution of this issue with Microsoft because we agree that resolving
    this problem is the primary goal.
    But for the sake of understanding:  We don't have any non-domain members that need to be managed by SCCM.  If we had a policy stating "no SCCM client configurations resulting in a LocalGPO file are to be implemented in production - all are
    to be done via Domain Group Policy," is it possible to eliminate the LocalGPO entirely?  Or will there always be a LocalGPO file regardless of whether or not there are settings visible from it in a gpresult report?  We would not need to match
    SCCM configurations in Domain Group Policy because we would not make any changes to the SCCM client resulting in a LocalGPO file at all.  The slow link detection is not of concern to us because none of these settings that would not apply in this case
    are SCCM-managed via LocalGPO (as far as I know): 
    http://blogs.technet.com/b/musings_of_a_technical_tam/archive/2012/02/27/gpos-and-slow-link-detection.aspx
    Another reason why I would prefer to do these settings in Domain Group Policy is that we have Advanced Group Policy Management installed in our environment, which is subject to our Change/Release process.  We can track the changes being made to clients
    much more easily when they are done via AGPM.  Any changes that we want to make via SCCM client could be tested first to see how LocalGPO is effected, and then those changes could be made via Domain Group Policy instead in production.
    Given this info, I'm still struggling to understand why it is recommended to implement anything via SCCM client configurations resulting in a LocalGPO file.  So far, the only compelling reason is that management of non-domain members is not possible
    via Domain Group Policy, but that doesn't apply to our environment.  Is it recommended mostly for ease of administration, so that an SCCM admin doesn't need to work with another tool (Domain Group Policy)?  Any extra reasoning for this recommendation
    that anyone can provide is much appreciated!

  • WSUS and Microsoft Updates

    Is it possible to configure WSUS to download/install Microsoft updates as well as Windows updates, and if so, how do I do this?
    For example, when you go to Windows Updates there is a link at the bottom that says "Download additonal updates from Microsoft." I want WSUS to automatically install these updates on my domain.
    Thanks

    Am 25.04.2014 schrieb CN Works:
    Is it possible to configure WSUS to download/install Microsoft updates as well as Windows updates, and if so, how do I do this?
    Yes, you can do so.
    For example, when you go to Windows Updates there is a link at the bottom that says "Download additonal updates from Microsoft." I want WSUS to automatically install these updates on my domain.
    Have a look in WSUS-Console (WSUS.MSC) > Options > Products. Here you
    can select your Products you want to get updates. Be carefull with
    selecting! Dont select Products you don't have in your environment.
    Servus
    Winfried
    Gruppenrichtlinien
    WSUS Package Publisher
    HowTos zum WSUS Package Publisher
    NNTP-Bridge für MS-Foren

  • Dns_probe_finished_no_iternet and windows update errors

    I have windows 8 and have been having problems lately. Whenever windows wants to do an update and I wait for too long the internet goes out and displays the error message dns_probe_finished_no_internet. there are very few times when it happens and windows
    does not need to update.
    Another problem is that when I do go to restart the computer for the windows update only to have it say that it failed and tries again in a few hours. I tried updating them individually but none of them worked.
    I have also tried to restart the dns client in services, but it won't work anymore.
    I tried looking this up but any solution I have found hasn't worked. Can someone please help me, I'm at the end of my wits with this.

    Hello Dieya105,
    To avoid misunderstanding, do you mean receive error  message‘dns_probe_finished_no_internet’ when you use Windows update or in browser?
    Please share us a screenshot for better analyzation.
    Have you run all the command ”netsh int ip reset, ipconfig /flushdns, netsh winsock reset” I mentioned in my last reply?
    If the error code is in browser, please run the command ping 8.8.8.8 and ping
    www.bing.com and check if you receive the normal respond.
    Please take a look at the following thread similar to this issue.
    http://en.kioskea.net/forum/affich-770260-dns-probe-finished-no-internet
    I suggest you to use antivirus software to scan for the malware.
    Please note: Since the website is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.
    Best regards,
    Fangzhou CHEN
    Fangzhou CHEN
    TechNet Community Support

  • Problem with Clean Access Agent and Windows Updater

    I have a problem with a laptop when using Cisco Clean Access Agent. The agent keeps directing the laptop to get updates from the Windows Update site, but when I have connected the laptop via cable, windows updates tells me there are no updates either essential or optional. The laptop is a Sony VIVO VGN-FJ270 running XP Home Edition SP2 and the Clean Access Agent is version 4.0.2.1
    Any help is appreciated!!

    Verify the allowed hosts in CCA agent.
    Try these link:
    http://www.cisco.com/en/US/products/ps6128/tsd_products_support_series_home.html
    http://www.cisco.com/en/US/products/ps6128/products_qanda_item09186a00803b7a81.shtml

  • HP recovery manager and windows update

    Hi,
    I am having two problems:
    1.  I have been having problem with my Recovery Manager, everytime I try to start it, it gives an error window "HP recovery manager has stopped working" and then it shuts the Recovery Manager down.  Please advise.
    2.  In the past I would run the Windows update through the Recovery Manager, but since the Recovery Manager was down, I would just go run the Windows update from the Control Panel.  But now even the Windows update cannot be started too.  It will just get stuck at the icon without further action when I double click on it.  Please help.
    This question was solved.
    View Solution.

    Hi @yawbus ,
    Thank you for visiting the HP Support Forums and Welcome. I have looked into your issue about your HP ENVY TouchSmart 15 Notebook and issues with the HP Recovery manager not working correctly.  Here is a link to the HP Support Assistant if you need it. Just download and run the application and it will help with the software and drivers on your system at the time of purchase that might need updating.
    If that does not fix the issue you might have to install the Recovery manager from here.
    You can do a system restore. System restore will help if something automatically updated and did not go well on the Notebook.
    When performing a System restore please note remove any and all USB devices. Disconnect all non-essential devices as they can cause issues.
    I would be happy to assist if needed. How Do I Find My Model Number or Product Number?
    Please let me know.
    Thanks.
    Please click “Accept as Solution ” if you feel my post solved your issue, it will help others find the solution.
    Click the “Kudos, Thumbs Up" on the bottom to say “Thanks” for helping!

  • Same issue Network Discovery not working and Windows Update not working

    I've read the threads. 
    This is a Vista Ultimate upgrade. My OOOOH My I have clocked 8 hours
    Everything was working before. I tried all of the recommended  services turning on restarting.
    Also, ran into the problem of my memory being eaten. Suspected cause hibernate mode, which I had to disable. Scott Hasselman blog recommended the fix which is a cheap work around that limits machines functionality!!
    I'm and IT Engineer specializing in MS product lines since Windows 1.0. MFC foundation classes etc.. What is the real problem ?
    I don't have the NetBIOS over tcp/ip in my services?
    I figure that the cost of my time and other individuals pays for the OS four times over. Give me a Microsoft developer subscription or something to make me happy. This is my development machine and I'm loosing time and money.
    FYI, Just upgraded my second machine to Windows 8.1 OMG !!2 Hours to upgrade after the download. I loose my configuration settings. I required to have a Windows Live whatever account!!! This is not the way to compete and keep customers.
    Windows XP has been by far the best deployment experience. I need a Knowledge base that gives solutions , not a troubleshooting scenario that does or does not work!!
    Please , don't tell me to go and by a OEM Surface I cannot recommend this to my clients. 
    Thank You

    Hi,
    If it worked previously, a quick solution is to run System Restore and get back to the previous status when the issue didn’t occur.
    What is System Restore?
    http://windows.microsoft.com/en-us/windows7/What-is-System-Restore
    When you turn on network discovery, do you get any error prompt?
    Please check if you have any error message about network discovery in event viewer.
    Open Event Viewer
    http://windows.microsoft.com/en-US/windows7/Open-Event-Viewer
    What information appears in event logs (Event Viewer)?
    http://windows.microsoft.com/en-US/windows7/What-information-appears-in-event-logs-Event-Viewer
    Please use Windows Live SkyDrive (http://www.skydrive.live.com/) to upload the Error logs to a public folder and share the URLs with us.
    Also, please temporarily turn off your firewall and all the security programs for a test.
    As far as I know, Network discovery requires that the DNS Client, DNS Client, Network Connections, Network Location Awareness,  Remote Procedure Call (RPC), Function Discovery
    Resource Publication, TCP/IP Netbios helper, SSDP Discovery, and UPnP Device Host services are started and set to automatic.
    You should check again if you have started all these services.
    Regarding the update issue, I suggest you try the following suggestions.
    1. Temporarily disable firewall and antivirus program to test the issue.
    2. Open the Windows Update troubleshooter
    http://windows.microsoft.com/en-US/windows7/Open-the-Windows-Update-troubleshooter
    3. Reset Windows Update components
    http://support.microsoft.com/kb/971058
    You may follow the steps from the link below to fix the issue.
    Windows Update Not Working.
    http://support.microsoft.com/kb/555989
    You may also see the common Windows Updates troubleshooting guide.
    Fix Microsoft Windows Update Issues
    http://support.microsoft.com/kb/906602
    Hope it helps.
    Regards,
    Blair Deng
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Text disappear after flash and windows update

    Hi,
    I'm living a strange exprerience from the last windows software update (after i update even flash, to ensure that there was not a compatibility problem) , i can't display some fonts if I choose the option "anti-alias for reliability" , for example for the joeHand 2 , but the text came out again if I choose "bitmap" or "use device fonts" as display option.
    This seams a problem with this particular font, but appears only after an automatic windows update, and is not valid for every font.
    Someone resolve/had a similar problem?
    Thank you
    Riccardo

    Hello everyone,
    Please read this TechNote for information on how this issue can be fixed.
    Regards,
    Suhas Yogin

  • BlueScreen Error 9f and Windows Updates won't install

    I just got my new T430 machine on Monday, but Windows 7 is already having issues - as of the first day!
    When it goes into sleep mode it ends up shutting down instead, and I get a BlueScreen 9f error after I restart.  When I try to install Windows Updates (I looked up this problem and I found information on the biometric fingerprint software causing problems - a problem that might be fixed with windows updates) it keeps failing.  While it is trying to update, my computer shuts down.
    It's brand new (it's actually a replacement for my last T430 that was having too many issues), and I'm worried.  Any ideas what the issue could be?  Is this something I just have to contact support for, or can I fix this myself?  I've tried searching online for solutions, but no luck yet. 
    Greatly appreciate any help, thanks!

    Hi, cberk
    I did some research on the issue and found this document from Microsoft. It seems that this issue can be caused by an outdated BIOS and drivers. Due to this, I would recommend checking that all the drivers and the BIOS has been updated. It sounds like a few parts of your computer aren't communicating properly, which is most likely due to outdated drivers. The latest drivers for your system can be found here. 
    Hope it helps,
    Adam
    Did someone help you today? Press the star on the left to thank them with a Kudo!
    If you find a post helpful and it answers your question, please mark it as an "Accepted Solution!" This will help the rest of the community with similar issues identify the verified solution and benefit from it.

Maybe you are looking for