WSUS client side targeting RRS feed

  • Question

  • Dear all,

    there is little confusion over this client side targeting settings in GPO for WSUS server 2012.

    In WSUS, under options I have enabled "Use Group policy or registry settings on computers". now option to change membership is greyed out. which is expected.

    I created a group say WSUS_Clients in WSUS server.

    now I created GPO mygroup_policy on an OU named say mycompany_clients.  I enabled various settings which is ok.

    there is one setting "Enable client-side targeting"

    Under "target group name for this computer".    let me know this should be OU name(mycompany_clients) or group name (WSUS_Clients) in WSUS server??

    and then automatic rule(critical and security updates) approval should point to this group right i.e WSUS_Clients.

    I also believe OU name and target group name in WSUS can be different. It is not necessary to be same. right

    please clarify. thank you in advance.



    Monday, May 5, 2014 11:27 AM


  • Yes that's right, the target group name doesn't have to relate to anything in AD at all.

    Within the WSUS UI you have the option of creating groups for your machines, from where you can then target which updates have been installed. It's the name of these groups that you enter in the Target Group setting. Then when they check in to WSUS they'll automatically be put into the correct group, rather then you having to login to WSUS and manually move them later.

    • Marked as answer by Mr. Parkar Monday, May 5, 2014 7:17 PM
    Monday, May 5, 2014 1:35 PM