none
Wsus not reflecting pending updates from computers RRS feed

  • Question

  • We are running WSUS on a Server 2019 Standard server and haven't had any issues. But a couple weeks back we noticed several computers had a download now option for some Office updates. But these updates weren't reflected in any reports in WSUS when checking the computer. So we have no idea why this is happening and we are wanting the machines to install these but its only showing up as a download now option. All computers are set to call home to the WSUS server and not to go out to Microsoft itself for updates. This is the first time this has happened. Does anyone have any ideas?
    Tuesday, December 10, 2019 3:32 PM

All replies

  • Hi

    Are all all affected clients Windows 10?

    Take a look at the article below. This is apparently expected behavior as Microsoft Store will always reach out to Microsoft Online for updates to itself and to Store Apps. You will need to make the changes as described here to prevent this:

    https://cloudblogs.microsoft.com/windowsserver/2017/01/09/why-wsus-and-sccm-managed-clients-are-reaching-out-to-microsoft-online/

    Thanks

    Michael


    Tuesday, December 10, 2019 7:23 PM
  • But a couple weeks back we noticed several computers had a download now option for some Office updates. But these updates weren't reflected in any reports in WSUS when checking the computer. 

    I recommend checking from whether a dual scan is triggered:
      

    1. Whether any of the policies in Windows Update for Business are enabled:
      -  Select when Feature Updates are received
      -  Select when Quality Updates are received
      When Dual Scan is enabled, the WU client scans WSUS and WU, but it only downloads Windows patches from Microsoft’s update servers.
        
    2. To enable WSUS updates only, make sure that all Windows Update for Business options are set to Not Configured and that the Turn off access to all Windows Update features policy under System > Internet Communication Management > Internet Communication settings is Enabled.
         
    3. In WSUS, check if the selected product contains the corresponding Office product, and Classification.
      Taking "Office 2016" as an example, its updated classifications include: Critical Updates, Security Updates.
      After waiting for the client to complete the status report, approve the required update for it through WSUS.
         

    Hope the above can help you.
      

    Regards,
    Yic

    Please remember to mark as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Wednesday, December 11, 2019 1:52 AM
  • Hi,
     

    Any update is welcome here.
    If the issue is resolved, share your solution or find the helpful response "Mark as Answer" to help other community members find the answer.
     

    Thank you for your cooperation, as always.
     

    Regards,
    Yic

    Please remember to mark as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Friday, December 20, 2019 7:39 AM
  • Hi Everyone,
       

    Since this thread has not been updated for a long time, the following thread summary is provided for reference during subsequent follow-up.
      

    • Issue Symptom
      The client provides updates approved by WSUS.
         
    • Possible Cause
      Dual scan is triggered.
        
    • Troubleshooting Steps so far
      Provides trigger steps to disable dual scan.
        
    • Next Step
      Waiting for reply.
          

    Regards,
    Yic


    Please remember to mark as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Tuesday, December 31, 2019 5:25 AM