locked
Clients are not listed/updated in WSUS Server RRS feed

  • Question

  • WSUS Server Version: 6.3 is installed and configured correctly on Windows Server 2012 R2. There are more than 200 servers (productions) need to be part of the WSUS for future automatic updates. Clients servers are Windows Server 2008 R2 and Windows Server 2012 R2. Most of the client Server get populated in WSUS server, few of them not. 

    I tried to run these Script on each non-registered servers and few of them get listed in WSUS Server, but still I don't see few of them listed yet.  Script I run on each non -registered clients is below 

    net stop wuauserv
    reg delete HKLM\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate /f /va
    net start wuauserv
    wuauclt /detectnow /reportnow
    gpupdate /force
    exit

    And run these registry Key value change file

    Windows Registry Editor Version 5.00
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate]
    "AcceptTrustedPublisherCerts"=dword:00000001 
    "ElevateNonAdmins"=dword:00000001
    "TargetGroup"="DPU UCC"
    "TargetGroupEnabled"=dword:00000001
    "WUServer"="http://DPUUCCVIEVU:8530"
    "WUStatusServer"="http://DPUUCCVIEVU:8530"
    
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU]
    "AUOptions"=dword:00000003 
    "AUPowerManagement"=dword:00000001 
    "AutoInstallMinorUpdates"=dword:00000001 
    "DetectionFrequency"=dword:0000000a 
    "DetectionFrequencyEnabled"=dword:00000001 
    "IncludeRecommendedUpdates"=dword:00000001 
    "NoAUAsDefaultShutdownOption"=dword:00000001 
    "NoAUShutdownOption"=dword:00000001
    "NoAutoRebootWithLoggedOnUsers"=dword:00000001 
    "NoAutoUpdate"=dword:00000000 
    "RebootRelaunchTimeout"=dword:0000000a 
    "RebootRelaunchTimeoutEnabled"=dword:00000001 
    "RescheduleWaitTime"=dword:0000000a 
    "RescheduleWaitTimeEnabled"=dword:00000001 
    "ScheduledInstallDay"=dword:00000000 
    "ScheduledInstallTime"=dword:00000001 
    "UseWUServer"=dword:00000001
    
    

    Can you advice me detailed troubleshooting steps so that remaining server should be listed in WSUS servers. All Servers are in same VLAN, Same Subnet, Under Same OU, Thanks

    Monday, August 8, 2016 3:09 PM

Answers

  • I have also used WSUS Client Diagnostic Tool to figure out the issue, but it is 32-bit version and Windows Server 2012 is 64bit. Any tools to resolve this issue.

    Do anyone has resolved any such issue in the past. 

    examine the windowsupdate.log on the client machine, is it successfully contacting the WSUS?

    the Solarwinds client diagnostic tool, has been useful for these scenarios (it works for 64bit)
    http://www.solarwinds.com/free-tools/diagnostic-tool-for-the-wsus-agent


    Don [doesn't work for MSFT, and they're probably glad about that ;]


    Friday, August 12, 2016 8:32 AM

All replies

  • WSUS Server Version: 6.3 is installed and configured correctly on Windows Server 2012 R2. There are more than 200 servers (productions) need to be part of the WSUS for future automatic updates. Clients servers are Windows Server 2008 R2 and Windows Server 2012 R2. Most of the client Server get populated in WSUS server, few of them not. 

    I tried to run these Script on each non-registered servers and few of them get listed in WSUS Server, but still I don't see few of them listed yet.  Script I run on each non -registered clients is below 

    net stop wuauserv
    reg delete HKLM\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate /f /va
    net start wuauserv
    wuauclt /detectnow /reportnow
    gpupdate /force
    exit

    And run these registry Key value change file

    Windows Registry Editor Version 5.00
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate]
    "AcceptTrustedPublisherCerts"=dword:00000001 
    "ElevateNonAdmins"=dword:00000001
    "TargetGroup"="DPU UCC"
    "TargetGroupEnabled"=dword:00000001
    "WUServer"="http://DPUUCCVIEVU:8530"
    "WUStatusServer"="http://DPUUCCVIEVU:8530"
    
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU]
    "AUOptions"=dword:00000003 
    "AUPowerManagement"=dword:00000001 
    "AutoInstallMinorUpdates"=dword:00000001 
    "DetectionFrequency"=dword:0000000a 
    "DetectionFrequencyEnabled"=dword:00000001 
    "IncludeRecommendedUpdates"=dword:00000001 
    "NoAUAsDefaultShutdownOption"=dword:00000001 
    "NoAUShutdownOption"=dword:00000001
    "NoAutoRebootWithLoggedOnUsers"=dword:00000001 
    "NoAutoUpdate"=dword:00000000 
    "RebootRelaunchTimeout"=dword:0000000a 
    "RebootRelaunchTimeoutEnabled"=dword:00000001 
    "RescheduleWaitTime"=dword:0000000a 
    "RescheduleWaitTimeEnabled"=dword:00000001 
    "ScheduledInstallDay"=dword:00000000 
    "ScheduledInstallTime"=dword:00000001 
    "UseWUServer"=dword:00000001
    

    Can you advice me detailed troubleshooting steps so that remaining server should be listed in WSUS servers. All Servers are in same VLAN, Same Subnet, Under Same OU, Thanks

    Sure, in the WSUS console, make sure the group DPU UCC has been created. The computers should show up in that WSUS group.
    Monday, August 8, 2016 3:29 PM
  • Thanks antwesor, yes group DPU UCC has been created and some of the computer server (WSUS Clients) for WSUS appears in this group but not all, and I want to resolve for client which are not listing by default. Any idea
    Monday, August 8, 2016 8:36 PM
  • net stop wuauserv
    reg delete HKLM\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate /f /va
    <apply your reg file settings here, **before starting wuauserv**>
    net start wuauserv wuauclt /detectnow /reportnow gpupdate /force exit

    And run these registry Key value change file

    Windows Registry Editor Version 5.00
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate]
    "AcceptTrustedPublisherCerts"=dword:00000001 
    "ElevateNonAdmins"=dword:00000001
    "TargetGroup"="DPU UCC"
    "TargetGroupEnabled"=dword:00000001
    "WUServer"="http://DPUUCCVIEVU:8530"
    "WUStatusServer"="http://DPUUCCVIEVU:8530"
    
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU]
    "AUOptions"=dword:00000003 
    "AUPowerManagement"=dword:00000001 
    "AutoInstallMinorUpdates"=dword:00000001 
    "DetectionFrequency"=dword:0000000a 
    "DetectionFrequencyEnabled"=dword:00000001 
    "IncludeRecommendedUpdates"=dword:00000001 
    "NoAUAsDefaultShutdownOption"=dword:00000001 
    "NoAUShutdownOption"=dword:00000001
    "NoAutoRebootWithLoggedOnUsers"=dword:00000001 
    "NoAutoUpdate"=dword:00000000 
    "RebootRelaunchTimeout"=dword:0000000a 
    "RebootRelaunchTimeoutEnabled"=dword:00000001 
    "RescheduleWaitTime"=dword:0000000a 
    "RescheduleWaitTimeEnabled"=dword:00000001 
    "ScheduledInstallDay"=dword:00000000 
    "ScheduledInstallTime"=dword:00000001 
    "UseWUServer"=dword:00000001
    

    Can you advice me detailed troubleshooting steps so that remaining server should be listed in WSUS servers. All Servers are in same VLAN, Same Subnet, Under Same OU, Thanks



    Don [doesn't work for MSFT, and they're probably glad about that ;]

    Monday, August 8, 2016 9:24 PM
  • group DPU UCC has been created and some of the computer server (WSUS Clients) for WSUS appears in this group but not all, and I want to resolve for client which are not listing by default. Any idea
    examine the windowsupdate.log on the client machine, is it successfully contacting the WSUS?

    Don [doesn't work for MSFT, and they're probably glad about that ;]

    Monday, August 8, 2016 9:25 PM
  • Hi MSvLearn,

    Please try resetting SusClientID on these clients do not show up in the WSUS console:

    reset SusClientId:
    1). In cmd, net stop wuauserv

    2). Delete the value in registry key " SusClientId " and "SusClientIDValidation" locates in:

    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate

    3). In cmd, net start wuauserv
         wuauclt.exe /resetauthorization /detectnow

    Best Regards,

    Anne


    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.

    Tuesday, August 9, 2016 3:10 AM
  • group DPU UCC has been created and some of the computer server (WSUS Clients) for WSUS appears in this group but not all
    If the device is visible in the Unassigned Computers group, but not in the target group, then there is a problem with the group name (it doesn't match). I would advice against using spaces in group names.

    Rolf Lidvall, Swedish Radio (Ltd)



    Tuesday, August 9, 2016 8:38 AM
  • Hi MsMSvLearn,

    Just to confirm if you have got any progress with the issue, if the above replies is useful, you may mark it as answer, if you need further help, feel free to feed back.

    Best Regards,

    Anne


    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.

    Wednesday, August 10, 2016 1:28 AM
  • Hi Anne,

    I still no progress. I tried all the methods

    -  resetting SusClientID 

    -reg delete HKLM\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate /f /va

    - rd /s %windir%\softwaredistribution\

    and other script found online. I have also used WSUS Client Diagnostic Tool to figure out the issue, but it is 32-bit version and Windows Server 2012 is 64bit. Any tools to resolve this issue.

    Do anyone has resolved any such issue in the past. 

    Wednesday, August 10, 2016 9:07 PM
  • Hi MSvLearn,

    1.Then could these clients show up in the WSUS console if we not configure TargetGroup?

    2. Is there any clients succeed to show up in "DPU UCC" group?

    3. Please try using IP address of the WSUS server in the WSUS URL,"WUServer"="http://x.x.x.x:8530"
    "WUStatusServer"="http://x.x.x.x:8530"

    Best Regards,

    Anne


    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.

    Friday, August 12, 2016 5:55 AM
  • I have also used WSUS Client Diagnostic Tool to figure out the issue, but it is 32-bit version and Windows Server 2012 is 64bit. Any tools to resolve this issue.

    Do anyone has resolved any such issue in the past. 

    examine the windowsupdate.log on the client machine, is it successfully contacting the WSUS?

    the Solarwinds client diagnostic tool, has been useful for these scenarios (it works for 64bit)
    http://www.solarwinds.com/free-tools/diagnostic-tool-for-the-wsus-agent


    Don [doesn't work for MSFT, and they're probably glad about that ;]


    Friday, August 12, 2016 8:32 AM
  • Hi MSvLearn,

    Just to confirm if you have solved the issue, if you need further help, feel free to feed back.

    Best Regards,

    Anne


    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact tnmff@microsoft.com.

    Wednesday, August 24, 2016 8:57 AM