University of Minnesota Duluth
People | Departments | Search UMD
ITSS
ITSS Home : Virus and Security Info : SUS: Technical Details

Virus and Security Information

Technical Details for Software Update Services (SUS)

 

The AutoUpdate client will check-in with the SUS Server every 17 to 22 hours to determine if any approved updates are required for installation on the client.

If there are pending tasks still underway such as a download, an update installation or a system reboot, the AutoUpdate client will not check-in with the SUS Server.

This Timeout Wait period ensure that the SUS Server and the network is not overloaded with unnecessary traffic.

If approved updates are available on the SUS Server and required for installation on the computer, the updates are downloaded to the computer via BITS beginning at the check-in time.

After downloading the updates are processed as per the configured Auto Update Option

Registry Entries

These settings are used to tell the AutoUpdate client to address of your SUS Server.

HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WindowsUpdate\

WUServer="http://msupdate.d.umn.edu"
WUStatusServer="http://msupdate.d.umn.edu"

These settings are used to control the behaviour of the AutoUpdate client.

HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WindowsUpdate\AU\

[AU Options]

[ScheduledInstallDay]
[ScheduledInstallTime] [UseWUServer]

[AUState]

  1. Waiting for user to run AU wizard
  2. Detect pending
  3. Download pending (waiting for user to accept pre-download prompt)
  4. Download in progress
  5. Install pending
  6. Install complete
  7. Disabled (Adoptions will also be set to a value of 0x1)
  8. Reboot pending (updates that require a reboot were installed but the reboot was declined - AU will not do anything until the reboot occurs and this value is cleared)

How to Force an Update Detection of the AutoUpdate Client

During normal operations, the Automatic Update client will check-in to the SUS Server every 17 to 22 hours to detect approved updates. It is possible to force the detection process.

The Automatic Update client will begin the update detection process in approximately 10 minutes. If an admin-priv user is logged on they will be presented with the option to install any updates that downloaded, otherwise the computer will wait for the next scheduled install time.

More Details can be found at Microsoft http://www.microsoft.com/windowsserversystem/sus/default.mspx

Didn't find what you were looking for?

Rev: 07.22 dee