Install and use the WSUS Server

Source: Internet
Author: User
Tags microsoft download center

WSUSWindows Server Update Services) is an Update Service for Windows operating systems. By configuring the WSUS Server in the internal network, all Windows updates can be centrally downloaded to this Server, clients in the internal network can be updated through the WSUS server. The OS patch upgrade time can be shortened to several minutes, and the effect is very obvious. As long as one WSUS server is used, the system can be automatically upgraded throughout the network. This not only saves resources, but also avoids resource waste and improves efficiency.
In recent years, the Shaoxing Tobacco Monopoly Bureau of Zhejiang Province has built a WSUS system on its internal network. Now all terminals have been deployed, and the terminal operating system has automatically installed and updated patches through the WSUS system, it effectively avoids computer viruses and ensures system and network security.
Currently, WSUS has been upgraded to version 2.0 and supports all updates from Microsoft, including ISA, OfficeXP, Office2003, SQL Server2000, MSDE 2000, and Exchange Server2003.
WSUS installation involves four steps: system preparation and auxiliary software installation; WSUS Server Installation; WSUS server configuration and management; and client configuration.
1. system preparation and installation of auxiliary software.
Before installing the WSUS server, make sure that the server meets SUS's minimum hardware requirements: Pentium III MHz or higher processor, MB memory, 8 GB hard disk space, NTFS file system format, if the number of clients to be upgraded is more than 500, the CPU requirement is higher, and the memory should be more than 1 GB.
The software requirements are as follows:
① Operating system installation: Only Windows2000 Advanced ServeWindows2000 Server with SP4 or higher and Windows Server 2003 can be used as WSUS servers. Windows2000 Advanced Server is recommended.
② Install Microsoft Internet Information Services IIS on the operating system) 5.0.
③ Install Background Intelligent Transfer Service BITS on the operating system) 2.0.
④ Install Microsoft SQL Server2000 and SP4 patches on the operating system.
⑤ Install Microsoft Internet Explorer 6.0 Service Pack 1 on the operating system.
6. Install Microsoft on the Operating System
. NET Framework Version 1.1 Redistributable Package.
7. Install Microsoft on the Operating System
. NET Framework 1.1 Service Pack 1.
Finally, complete all system patches.
Download the above software to Microsoft's website.
2. Install WSUS.
By default, the Windows Server operating system does not contain the WSUS component. You need to download the WSUS installation package from the Microsoft download center and then install it on the Server.
① Download the WSUS installer.
Open the downloaded wsussetup.exe file and start the installation program.
③ Click "Next", select "I accept the terms in the License Agreement" in the "End User License Agreement" step, and click "Next ".
④ Select a storage partition to store the updated files downloaded by WSUS. Note that the partition must be in NTFS format and have at least 6 GB free space.
⑤ Next, select the storage partition for WMSDE data installation. The partition must also be in the NTFS format and have at least 2 GB free space. If you want to mount it to the same partition as the storage local Update file, this partition requires at least 8 GB free space.
⑥ You can use the default port (80) or an independent port (8530) by selecting the WSUS site management tool and the WEB Service website port, which cannot be changed. If there are other websites on the server, we recommend that you use port 8530 to manage WSUS and update WEB services. The recommended port 80 is used here.
7. WSUS provides the image management service, which can copy approved update lists from another WSUS server on the network.
The next step is the automatic installation process of the installer, which takes about 15 minutes.
3. configure and manage WSUS servers.
After the installation is complete, you need to go to its management page for configuration. By default, WSUS does not perform any synchronization updates.
Go to the wsus web Management page from the management address prompted during installation.
Click the "options" menu in the upper-right corner to set the system.
1. Click "synchronization options ". You can choose to manually synchronize the server, view the synchronization status, specify the proxy server settings and manage updates. You can also set the time for synchronization updates, as well as the products, update categories, proxy servers, update sources, and update files and languages required to be downloaded from the Microsoft Site.
② Update source: You can choose to synchronize the WSUS server with Microsoft Update or a Web server on the network. If SSL is used, make sure that the upstream WSUS server is configured to support SSL. The port settings on this server must match the upstream WSUS server.
③ Automatic approval option: You can specify how to automatically approve the installation or inspection of updates for the selected group and how to approve the revision of existing updates, that is, whether WSUS executes the command to automatically approve the patch to be added to the Distribution Database of the system for Synchronous download, and sets the distribution object, that is, the computer group.
④ Update revision: For approved updates, there are sometimes updated versions released. You can choose whether to automatically approve the revision. If you do not select to automatically approve the revision, the old version will continue to be approved.
⑤ WSUS update: WSUS update is required to ensure that the computer can be correctly updated. If WSUS updates are not approved, the computer may not be able to correctly detect certain updates, which are approved by default.
4. Client settings.
If the client and WSUS server are in the same domain, you only need to distribute them through the domain function. If the client and WSUS server are not in the same domain, each client must make the following settings to take effect:
① Open the Start Menu, click Run, and enter Gpedit. msc to start the Windows Policy Group.
② In the Policy Group, click "manage template", select "Add/delete template", click "add", select "wuau. adm", and click "open .)
③ Double-click "automatic configuration Update". In the displayed window, select "enable ".
④ Double-click "specify Internet Microsoft Update service location". In the displayed window, select "enable" and fill in http: // 10.46.0.253SUS Server IP in the red box .)
⑤ To ensure immediate updates to the client, enter "secedit/refreshpolicy machine_policy/enforce" in "run" under the "Start" menu. The client will be connected to the WSUS server immediately, download and update the patch.

)

 

)

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.