locked
WSUS - 0x8024500c RRS feed

  • Question

  • Can someone help with my error in my WSUS Sver or the computer

    Here is the update log

    https://1drv.ms/u/s!AvYuvoz0wYrep2iISOWkOiEeAAX-

    Wednesday, February 20, 2019 7:50 PM

Answers

  • Hi,
      

    It is a pleasure to answer your question.
      

    The problem you mentioned, if it occurs on a Windows 10 client in a hosted environment, means that the Windows update is provided by WSUS or SCCM and there is no Internet connection available or does not allow direct connection to Microsoft's Windows Update.
      

    This is an article about 0x8024500c failure that can help you:
    WSUS – Windows 10 Clients – Error 0x8024500c
    It mentions some key elements:
      

    1. If the following group policies are enabled:
      [Computer Configuration\Administrative Templates\Windows Components\Windows Update]
      > "Do not connect to any Windows Update Internet location"
      This caused the Windows Update on the clients to break, instead they should disable the above and configured the following instead:
      [Computer Configuration\Administrative Templates\System\Internet Communication]
      > "Turn off access to all Windows Update features"
         
    2. Remove the following registry key to disable the dual scan feature.
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\current\device\Update]
        -  BranchReadinessLevel
        -  DeferFeatureUpdatesPeriodInDays
        -  DeferQualityUpdatesPeriodInDays
        -  DeferUpdatePeriod
        -  DeferUpgradePeriod
        -  ExcludeWUDriversInQualityUpdate
        -  PauseDeferrals
        -  PauseFeatureUpdates
        -  PauseQualityUpdates
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\UX\Settings]
        -  BranchReadinessLevel
        -  DeferFeatureUpdatesPeriodInDays
        -  DeferQualityUpdatesPeriodInDays
        -  ExcludeWUDriversInQualityUpdate
        -  DeferUpgrade
         
    3. For those clients that are running build 1607, we need to install kb4025334 which will add a local policy "Do not allow update deferral policies to cause scan against Windows Update" under [Computer Configuration\Administrative Templates\Windows Components\Windows Update].
         

    Hope the above can help you.
       

    Regards,
    Yic Lv

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Thursday, February 21, 2019 7:42 AM
  • I didnt find any of these in my registry.   

    1. Remove the following registry key to disable the dual scan feature.
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\current\device\Update]
        -  BranchReadinessLevel
        -  DeferFeatureUpdatesPeriodInDays
        -  DeferQualityUpdatesPeriodInDays
        -  DeferUpdatePeriod
        -  DeferUpgradePeriod
        -  ExcludeWUDriversInQualityUpdate
        -  PauseDeferrals
        -  PauseFeatureUpdates
        -  PauseQualityUpdates

    reg query HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Update
    ERROR: The system was unable to find the specified registry key or value.

    D:\>reg query HKLM\SOFTWARE\Microsoft\WindowsUpdate\UX\Settings

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\UX\Settings
        ActiveHoursEnd    REG_DWORD    0x11
        ActiveHoursStart    REG_DWORD    0x8
        AllowAutoWindowsUpdateDownloadOverMeteredNetwork    REG_DWORD    0x0
        BranchReadinessLevel    REG_DWORD    0x10
        DeferFeatureUpdatesPeriodInDays    REG_DWORD    0x0
        DeferQualityUpdatesPeriodInDays    REG_DWORD    0x0
        ExcludeWUDriversInQualityUpdate    REG_DWORD    0x0
        FlightCommitted    REG_DWORD    0x0
        LastToastAction    REG_DWORD    0x0
        UxOption    REG_DWORD    0x0
        InsiderProgramEnabled    REG_DWORD    0x0


    Friday, March 1, 2019 12:13 AM

All replies

  • Hi,
      

    It is a pleasure to answer your question.
      

    The problem you mentioned, if it occurs on a Windows 10 client in a hosted environment, means that the Windows update is provided by WSUS or SCCM and there is no Internet connection available or does not allow direct connection to Microsoft's Windows Update.
      

    This is an article about 0x8024500c failure that can help you:
    WSUS – Windows 10 Clients – Error 0x8024500c
    It mentions some key elements:
      

    1. If the following group policies are enabled:
      [Computer Configuration\Administrative Templates\Windows Components\Windows Update]
      > "Do not connect to any Windows Update Internet location"
      This caused the Windows Update on the clients to break, instead they should disable the above and configured the following instead:
      [Computer Configuration\Administrative Templates\System\Internet Communication]
      > "Turn off access to all Windows Update features"
         
    2. Remove the following registry key to disable the dual scan feature.
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\current\device\Update]
        -  BranchReadinessLevel
        -  DeferFeatureUpdatesPeriodInDays
        -  DeferQualityUpdatesPeriodInDays
        -  DeferUpdatePeriod
        -  DeferUpgradePeriod
        -  ExcludeWUDriversInQualityUpdate
        -  PauseDeferrals
        -  PauseFeatureUpdates
        -  PauseQualityUpdates
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\UX\Settings]
        -  BranchReadinessLevel
        -  DeferFeatureUpdatesPeriodInDays
        -  DeferQualityUpdatesPeriodInDays
        -  ExcludeWUDriversInQualityUpdate
        -  DeferUpgrade
         
    3. For those clients that are running build 1607, we need to install kb4025334 which will add a local policy "Do not allow update deferral policies to cause scan against Windows Update" under [Computer Configuration\Administrative Templates\Windows Components\Windows Update].
         

    Hope the above can help you.
       

    Regards,
    Yic Lv

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Thursday, February 21, 2019 7:42 AM
  • Yes. The hosted of windows 10 is not connected directly to the internet, but the PC should receive the updates via WSUS (Windows Server 2016) Server.
    Thursday, February 21, 2019 4:39 PM
  • Hi,
      

    Did the above method solve your issue?
    If you need further assistance, please feel free to feedback.
      

    Regards,
    Yic Lv

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Friday, February 22, 2019 6:37 AM
  • I didnt find any of these in my registry.   

    1. Remove the following registry key to disable the dual scan feature.
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\current\device\Update]
        -  BranchReadinessLevel
        -  DeferFeatureUpdatesPeriodInDays
        -  DeferQualityUpdatesPeriodInDays
        -  DeferUpdatePeriod
        -  DeferUpgradePeriod
        -  ExcludeWUDriversInQualityUpdate
        -  PauseDeferrals
        -  PauseFeatureUpdates
        -  PauseQualityUpdates

    reg query HKLM\SOFTWARE\Microsoft\PolicyManager\current\device\Update
    ERROR: The system was unable to find the specified registry key or value.

    D:\>reg query HKLM\SOFTWARE\Microsoft\WindowsUpdate\UX\Settings

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsUpdate\UX\Settings
        ActiveHoursEnd    REG_DWORD    0x11
        ActiveHoursStart    REG_DWORD    0x8
        AllowAutoWindowsUpdateDownloadOverMeteredNetwork    REG_DWORD    0x0
        BranchReadinessLevel    REG_DWORD    0x10
        DeferFeatureUpdatesPeriodInDays    REG_DWORD    0x0
        DeferQualityUpdatesPeriodInDays    REG_DWORD    0x0
        ExcludeWUDriversInQualityUpdate    REG_DWORD    0x0
        FlightCommitted    REG_DWORD    0x0
        LastToastAction    REG_DWORD    0x0
        UxOption    REG_DWORD    0x0
        InsiderProgramEnabled    REG_DWORD    0x0


    Friday, March 1, 2019 12:13 AM