We have the following in our environment:
- WSUS Server on 2012 R2, WSUS version 6.3.9600.16384 using port 8530
- Patch Manager Server on 2012 R2, running Version 2.0.2207.2
- Around 70 Servers all on either 2008 or 2008 R2 being patched
- GPO being applied to server OU
- Specifying wsusserver.domain.local:8530 as intranet update service & statistics server
- Automatic updates set to option 3 – Auto download and notify for install Every day at 22:00
My issue is that I have to run a gpupdate /force, then manually search for updates from each server for it to “check-in” to patch manager. Once this is complete, the server shows in PM that it has reported and everything seems happy. I have a list of about 30 of my servers that I would like to fully automate the update install. Currently I have to force a GP update, check for updates from the server, then force a ‘Report Now’ from the Patch Manager console to automate the patching process. This is required each time I want to install the correct patches.
Could this issue have anything to do with the fact that both my WSUS server & Patch manager server are in the same OU that my “WSUS GPO” is being applied?
Is it recommended to Disable intranet Microsoft update service location on my WSUS server?
Sorry for the elementary questions/write-up.
Thanks in advance!Lawrence Garvin