how to configure client side targeting in wsus...in this post we will see how to configure client...

8
prajwaldesai.com http://prajwaldesai.com/how-to-configure-client-side-targeting-in-wsus/ How to Configure Client Side Targeting in WSUS Prajwal Desai In the previous posts we have seen Installation, Configuration, Managing and troubleshooting the WSUS server. In this post we will see how to conf igure client side targeting in WSUS. When you conf igure the Group Policy settings f or WSUS, use a Group Policy object (GPO) linked to an Active Directory container. The container contains the computers f or which the updates are to be deployed. In Client side targeting You use Group Policy objects (GPOs) to add computers to computer groups. Client side targeting is required when you might have multiple GPOs linked to several organizational units (OUs), which enables you to have dif f erent WSUS policy settings applied to dif f erent types of computers. On the Domain Controller we will create a OU called Workstations. We will move a client computer called CLIENT into the OU. Login to the WSUS server. Launch the WSUS Console .

Upload: others

Post on 25-Apr-2020

17 views

Category:

Documents


0 download

TRANSCRIPT

prajwaldesai.co m http://prajwaldesai.com/how-to-configure-client-side-targeting-in-wsus/

How to Configure Client Side Targeting in WSUSPrajwal Desai

In the previous posts we have seen Installation, Conf iguration, Managing and troubleshootingthe WSUS server. In this post we will see how to conf igure client side targeting in WSUS. Whenyou conf igure the Group Policy settings f or WSUS, use a Group Policy object (GPO) linked to anActive Directory container. The container contains the computers f or which the updates are to bedeployed. In Client side targeting You use Group Policy objects (GPOs) to add computers to computergroups. Client side targeting is required when you might have multiple GPOs linked to several organizationalunits (OUs), which enables you to have dif f erent WSUS policy settings applied to dif f erent types ofcomputers.

On the Domain Controller we will create a OU called Workstations. We will move a client computer calledCLIENT into the OU.

Login to the WSUS server. Launch the WSUS Console .

Click on Computers. A new windows pops up, under General Tab choose “Use Group Policy or registrysett ings on computers“. Click Apply and OK.

Now we will enable the client side targeting through the group policy. Right click the domain and create apolicy called WSUS Update Policy. Right click the WSUS Update Policy, click Edit . (Note : You can createmultiple GPO’s if required. In case you have several OU’s and you want to apply dif f erent WSUS settings,you will need to create separate GPO’s f or each, def ine the windows update settings and apply the policieson desired OU’s ).

On the Group policy management editor, click on Computer Configuration, Policies, Administrativetemplates, Windows Component , Windows Update .

Double Click Configure Automatic Updates . Click Enabled to enable the policy. Under Options, f orConfigure automatic updating – select option 4 – Auto download and schedule the install. SetSchedule install day as Everyday and Schedule install t ime as 10:00. Click Apply and OK.

Double the policy Specify intranet Microsoft Update service location and specif y the name of WSUSserver (http://wsus.prajwal.local) f or both intranet update service for detecting updates andintranet statistics server. click Apply and OK.

Right click Enable Client-side targeting and click Edit.

On the Enable Client-side targeting page , Click Enabled to enable the policy. For the Target groupname for this computer, type the name of the OU that you have created in Active Directory. click Apply andOU.

By def ault, Group Policy ref reshes in the background every 90 minutes, with a random of f set of 0 to 30minutes. If you want to ref resh Group Policy sooner, you can go to a command prompt on the clientcomputer and type: gpupdate /force .