Tech Nerds
ph. 754.280.1424
  • Home
  • Why You Need Us
  • Contact Us
  • Services
  • Shop

Remote laptops get no patches when scheduling windows updates!

8/10/2009

7 Comments

 
Setup: Native Mode

2003 Server in the  DMZ 
Setup as : MP,DP,Site System

Intranet :

SCCM/WSUS Configured as the Central Site Server and all packages are being deployed sucessfully to remote laptops via internet access. WSUS was introduced and port 8530/8531 were included  into IIS (WSUS Administrator)and all ssl settings were configured. Updates were sychronized sucessfully in the wsyncmgr.log file (100% downloads with no errors).  I am able to utilize update pushes via update list deployment via  templates (collection) on the lan.

Problem: When scheduling, windows update pushes to remote laptops, then they don't get any patches at all. The scan log lets me know exactly how many updates are needed on those systems but, I can not get the updates unless they interact with the lan. All conventional packages are still working fine except wsus update packages.

Troubleshooting steps takes to resolve this headache:

I examined the registry on one laptop and noticed that it is looking for the Central Site Server were WSUS was intergrated (That is the plan), example : https://servername.fqdn:8531. The entry is in the windows update folder.  

                     a) I did a Netstat -and to examine the port and it reports that 8531 is established 

The MP in the DMZ port were examined and 8531 was not available. Is this my problem ?  

The WUAHandler is reporting = OnSearchComplete-Failed to end search job=0x8024402c.
                                                  Scan failed with error =0x80224402c

If I connect the laptop to the lan it will work fine and all updates will be deployed sucessfully.

I launched a few more test laptops out of an OU where GPO was enforced. Lauch verizon broadband on the laptop and forced the Update policies in the SCCM Client on the laptop. The problem continues.


Any Ideas?
I appologize for the long post, its just that i wanted to explain the entire scenerio.
   
7 Comments
Robert Collins link
8/9/2009 11:28:42 pm

Solution:

I had to make the MP that is located in the DMZ a SLP and load WSUS and configure SSL Settings. Also, a certificate had to be requested from the CA server to the MP in the DMZ. The final step was to open IIS on the DMZ and select the options to accept cetificate.This is what fixed my problem and laptops on the internet can now receive all windows update via SCCM/WSUS.

Reply
Coach Outlet link
6/24/2012 02:10:00 pm

Read your article, I learned a lot of knowledge. I solved many puzzling riddle. Everyone has his own opinion.But I totallty agreed with you on this.I will recommend you article to my friends.

Reply
Coach Factory Store link
6/24/2012 02:13:46 pm

Thank you for your sharing.I think this is the most beautiful in the world the article, there must be many people like it your works,i love this information.

Reply
serwis laptopow wroclaw link
7/10/2012 09:51:01 am

I truly admire everything you internet site in appropriate here, highly informative and sensible. One concern, I am running Opera on Linux and some of the content are just just a little wonky. I realize it�s not a popular, but it is nonetheless something to watch out for. Just giving you a manages.

Reply
Minecraft link
7/15/2012 02:04:13 am

I undoubtedly did not realize that. Learnt something new nowadays! Thanks for that.

Reply
Serwis laptopów wrocław link
7/17/2012 06:53:39 pm

Thank you, I�ve just been looking for data about this topic for a whilst and yours is the greatest I�ve discovered till now. But, what in regards towards the conclusion? Are you positive concerning the supply?

Reply
tiktok downloader link
7/16/2020 03:07:11 am

I wanted to leave a little comment to support you and wish you a good continuation. Wishing you the best of luck for all your blogging efforts.

Reply



Leave a Reply.

    SCCM, SCOM, SMS HUB


    Archives

    August 2009
    July 2009
    July 2008


    Categories

    All
    Ask The Guru About Sccm Or Scom Or Sms
    Investors
    It Staffing Needs
    New Website Tell Us What You Think
    Remote Laptops Get No Patches When Scheduling Windows Updates
    Sccm Or Scom Or Sms Consulting Needs
    Seeking Outsourcing Recruiting Companies
    Tech Nerds Update


    CEO's Profile

     Get the latest information on our CEO.

    View my profile on LinkedIn

    RSS Feed

    Privacy Policy      
    Terms and Conditions                
    Site Map                 
    Contact Us  
Powered by Create your own unique website with customizable templates.