Quantcast
Channel: WSUS Forum
Viewing all 12331 articles
Browse latest View live

Windows 10 - WindowsUpdate.log *FAILED* [8024000E] Parse failed: error

$
0
0

Hello,

We have just become aware all of our update clients are reporting a successful scan with errors. When delving into the logs we are finding this. Any ideas?

2018/10/09 19:12:20.8072005 5500  7908  EEHandler       *FAILED* [8024000E] Parse failed: error
2018/10/09 19:12:20.8073478 5500  7908  EEHandler       *FAILED* [8024000E] ExprSerializer failed to parse
2018/10/09 19:12:20.8073536 5500  7908  EEHandler       *FAILED* [8024000E] Parse
2018/10/09 19:12:20.8073620 5500  7908  EEHandler       ParseMetadata failed: error 0x8024000e
2018/10/09 19:12:20.8073644 5500  7908  EEHandler       ParseMetadataSection failed with 0x8024000e
2018/10/09 19:12:20.8073684 5500  7908  EEHandler       Parse failed with 0x8024000e
2018/10/09 19:12:20.8075117 5500  7908  ProtocolTalker  *FAILED* [8024000E] PopulateDataStore failed
2018/10/09 19:12:20.8075456 5500  7908  ProtocolTalker  SyncUpdates round trips: 4
2018/10/09 19:12:20.8075480 5500  7908  ProtocolTalker  *FAILED* [8024000E] Sync of Drivers failed (Software succeeded)

Thanks

Robbie


WSUS-Clients not seen by server

$
0
0

This is on Windows server essentials 2016.  

Server has Anywhere Access and WSUS installed and configured (along with DC...)

WSUS repository on second drive and Update Services installed on c:  

Using GP to push down update policy to computers.

I have verified that GP is making changes on clients using rsop.  I have made several changes in see changes show up in the rsop viewer.

WSUS synchronizes with MS and updates are available.  

I have tried to connect to WebServices/ClientWebServices/Client.asmx to test for connectivity via http://FQDN server:8530/WebServices/Client.asmx but it fails   (times out waiting for response).  

I can navigate from client in run using \\fqdn server\Update Services\WebServices and can navigate into ClientWebService and copy the client.asmx and paste it to the client's local directory.  This tells me I have permissions to get there.

The issue seems to be that the http path is not being handle by IIS.  I am assuming this since the intranet setting in GP for Windows updates uses the http:\\ for the server and status server.  I can't find where that is in the config.  

Is it a conflict with Anywhere Access?  I am really stuck on this.  Help....

Cannot install Windows updates: A certificate was explicitly revoked by its issuer

$
0
0

Hello everyone,

I was wondering if you have seen this error before and maybe suggest a fix. Every time we try to apply an update to a Win2008R2 web server; we get:

"Installer encountered an error: 0x800b010c". A certificate was explicitly revoked by its issuer.

"A certificate was explicitly revoked by its user.

We would like to delete the revoked certificate, but we have no idea what that certicate is.

We see this when we try to download\install updates from SCCM or manually apply standalone updates. Any ideas what could be happening?

Issues using WSUS to update Windows VM's in VMware.

$
0
0
We are having issues we using Microsoft WSUS for our Windows updates to our VMware servers.  The issue when the updates complete and start the reboot the server hangs it never complete the reboot. The VM has to be powered off and on again before we can get the server to fully boot up.

WSUS RSAT Features on Demand Windows 10 1809

$
0
0

So I discovered tonight that you can not install the RSAT On Demand features for Windows 10 1809 from your WSUS server. I am wondering when Microsoft will release them for us to approve in WSUS. Since I disable the clients access to Windows Update this makes it a challenge. Hopefully it will be very soon.

Thanks

Darren

<style><br _moz_dirty="" /></style>

Windows 10 Feature update, version 1809 - declined but has installed on PCs

$
0
0

As far as I can tell, we have declined the Windows 10 Feature update, version 1809, but it has downloaded and installed on a number of PCs, in one case wiping a user's Desktop folder. Not a good move. All of these endpoint PCs are AD-joined and managed by our WSUS server. Looking through my declined updates, I can confirm that the 1809 upgrades are amongst them:

What on earth has happened? Is it possible someone here has approved them, the installation has taken place and then they have been changed to be marked as declined by MS after the problems surfaced?

WSUS Downstream Server 2016 higher version is Unable to communicate with Upstream WSUS Server 2012R2

$
0
0

Hi Guys,

I have one query regarding with wsus server.

In My environment WSUS Upstream Server is 2012R2 and Downstream Server is 2016 when I am going to Sync Catalogue from Downstream Server 2016 then I am unable to sync from Upstream WSUS Server.

Is there any hotfix?

If yes,

Please assist how can i troubleshoot this?





Wsus last synchronization status

$
0
0

Hi,

I want to query from Windows Internal Database the last synchronization state of wsus.

i found the table SUSDB.dbo.DownstreamServerRollupConfiguration that seem to give what i search for, but i don't know which column and which number indicate success. 

I would like to have query indicates last synchronization date and synchronization status(success, fail ..)

thanks



WSUS on Azure

$
0
0

Hello,

We want to update windows server on premise from wsus server on azure. What is the best way to proceed and what are the prerequisites.

Thank you

Yves

Status Reports not working

$
0
0

Hello,

I have 10 WSUS Servers.

I have 9 downstream and 1 master.

The Master server is not properly processing status reports.

The server has 724 active clients that are all talking and downloading updates. They are properly showing up as Last Contact date in the WSUS console. But then they rarely ever get a Status Report processed for them. Yesterday only 14 clients were properly Status Updated which shows that some part of this is working. All my clients and servers have the same firewall setting though GPO as well.

All 9 of the downstream servers are properly processing these and I can see where a client will contact the server and about 10 minutes later it get updated for Last Status Report. I seeing 90% or more a day of the clients on the downstream servers updating status reports.

The master server has not been properly doing this since at least June but I am only now catching it. I can't think of any changes in June that would align with that. I have searched our change records and found nothing.

I have dug as far into the IIS settings as I Can for the server, as far as I can tell the security settings and auth settings look proper for the server. The WSUS pool is running.

I have compared GPO from a functional site with GPO from the master server site and there are no differences except pointing at their respective WSUS servers.

I have no superseded updates and I have run the clean up wizard.

I've run out things to look at, any help would be greatly appreciated!


Portland Public Schools / Systems Administrator II


Last Status Report not working

$
0
0

Hello,

I have 10 WSUS Servers.

I have 9 downstream and 1 master.

The Master server is not properly processing status reports.

The server has 724 active clients that are all talking and downloading updates. They are properly showing up as Last Contact date in the WSUS console. But then they rarely ever get a Status Report processed for them. Yesterday only 14 clients were properly Status Updated which shows that some part of this is working. All my clients and servers have the same firewall setting though GPO as well.

All 9 of the downstream servers are properly processing these and I can see where a client will contact the server and about 10 minutes later it get updated for Last Status Report. I seeing 90% or more a day of the clients on the downstream servers updating status reports.

The master server has not been properly doing this since at least June but I am only now catching it. I can't think of any changes in June that would align with that. I have searched our change records and found nothing.

I have dug as far into the IIS settings as I Can for the server, as far as I can tell the security settings and auth settings look proper for the server. The WSUS pool is running.

I have compared GPO from a functional site with GPO from the master server site and there are no differences except pointing at their respective WSUS servers.

I have no superseded updates and I have run the clean up wizard.

I've run out things to look at, any help would be greatly appreciated!


Portland Public Schools / Systems Administrator II



1607 Computer in Computer Group w/Multiple Approved Feature Upgrades (1703, 1709, 1803)

$
0
0

I got pulled into a WSUS issue late & I'm trying to make sense of it all.

I'm starting w/a Win 10 Enterprise 1607 (14393.576) & am testing why 1803 isn't installing.

What I've done is throw a computer into its own Computer Group that have all the 1607 (business editions) updates Approved, as per its' report in WSUS. I also have all 1607, 1703, 1709, & 1803 updates Approved. I was able to get it to upgrade to 1709 eventually & after multiple failures on 1803, I Not Approved 1803. Even after checking in when 1803 was Not Approved, it would try to install 1803 & fail.

I eventually was doing so many things to try to get it to install, I messed it up & had to do a Reset PC (keep my files) & after that it upgraded to 1803 w/o issue. That really doesn't help me in determining why it won't install on our image. Previously trying to install 1803, I was getting 0xc1900107 as the result when I'd go back & check the Update History (I saw somewhere that might be a driver issue, so I upgraded the BIOS). I ran the WU Troubleshooter multiple times & it couldn't fix the WU db so I renamed the steps to rename the SoftwareDistribution folder, too (net stop wuauserv, crptsvc, bits, msiserver & the net starts).I had ran DISM & SFC & both came back good.

I have another computer I'm doing the whole process on again, but my bigger question is: Is WSUS smart enough to see what a computer is @ & only install the appropriate update for that version before it tries to upgrade to the next feature upgrade? It appears to me that it's not & it's trying to do the 1709 updates & them the 1803 all in one shot. If that's the case, do I have to make separate groups for 1607, 1703, 1709, & 1803-level computers?

My WSUS is on Server2016.

If anyone has something meaningful to share re:this, I'd greatly appreesh it.

Thanks

 

manuall microsoft KB4457144 isnatllation keep saying it is not applicable ....

$
0
0
when I run windows update,  KB4457144  is completed with the status "failed".
but manual installation says: it is not applicable...
the description of "KB4457144" says:  

"This security update includes improvements and fixes that were a part of updateKB4343894(released August 30, 2018)..."
windows update did not list KB4343894 under list of available updates for my server. so this is really confusing. if my server does not really need this update, why it includes the next update KB4457144 which is related to KB4343894.
I wonder if I can ignore this update (KB4457144).

WSUS - Email server logon details disabled

$
0
0

Hello guys, i am unable to change the email-server logon information. Please see below.

Any ideas why it's grayed out?

Thanks for any help.


Every second counts..make use of it. Disclaimer: This posting is provided AS IS with no warranties or guarantees and confers no rights.

Cumulative Updates W10 (1709&1803) not downloading when using Express Installation Files

$
0
0

Hello,

I do have troubles downloading Express Installation files in WSUS.

it all started for me with the 1709 2018-03 CU (KB4088776). Downloads will only start a few MB and then will be stuck in Downloading state. This is happening since then for every 1709 CU forcing me to switch back to normal Files install. Now I also noticed that it is not working for 1803 CU 2008-07 (KB4338819). The same behavior.

However the 1703&1607 CUs are working. I did make a own Lab environment where I can exactly reproduce the issue. It’s just a simple setup of a 2016 WSUS Server no Domain. And 4 W10 Clients(1607/1702/1709/1803) with locally entered WSUS. Located on another separated Internet Line. There I do have the same issue.


WSUS Client windows Error

$
0
0

Hello,

can someone help...

we have a machine with win10 PRO 64bits version 1607, and cant install the pending updates from wsus server, give

the error 0x80244018.

WSUS Server Version 10.0.14393.2007

Thk

WSUS 2016 - server clean up

$
0
0

Hello,

Under products and classifications we had accidentally added 'updates' now all workstations  show they need updates.  I've unticked this and run the clean up tool, but they still remain.  Before we had this enabled all workstations showed there were up-to-date and had a zero next to them.

This is how they look now, this workstation needs 116 updates which it doesn't:

We now have it set like this:

However workstations still show the updates.

Do we have to wait a few days now for workstations to checkin?  or can we run 'wuauclt /reportnow' on each of them?

Thanks

WINDOWS SERVER 2016 CANNOT CONNECT TO WSUS SERVER

$
0
0

Hi,

I have a brand new installation of Windows Server 2016 WSUS server. My network consists of about 1000 client-side operating systems and 300 server-side. The clients are from Windows 7 to Windows 10 version 1607. The servers are from Windows Server 2008 to Windows Server 2016. Every computer can connect to WSUS and pull the updates except for Windows Server 2016.

Each time I check for updates on Windows Server 2016 I get this error: "We couldn't connect to the update service. We'll try again later, or you can check now. If it still doesn't work, make sure you're connected to the Internet."

Event Viewer: Windows Update failed to check for updates with error 0x80072EFD.

The strange thing is, WSUS server puts a green check mark for Windows Server 2016s, but I am sure there are some updates available for them.

I have installed all the Cumulative Updates (CU) on one of the Windows Server 2016 manually, but the problem is still there.

Any Idea?

Sorry for rambling.


WSUS Downstream Server 2016 higher version is Unable to communicate with Upstream WSUS Server 2012R2

$
0
0

Hi Guys,

I have one query regarding with wsus server.

In My environment WSUS Upstream Server is 2012R2 and Downstream Server is 2016 when I am going to Sync Catalogue from Downstream Server 2016 then I am unable to sync from Upstream WSUS Server.

Is there any hotfix?

If yes,

Please assist how can i troubleshoot this?





WSUS 10032 The server is failing to download some updates but no updates missing

$
0
0

Started getting events on WSUS Server saying that the server is failing to download some updates (Event ID 10032).  When I look, there are no other corresponding 364 events and when I look at the file status for all updates, no issues are seen meaning all approved updates have downloaded normally.  Updates have been downloaded to WSUS and deployed to client systems since the error started appearing.  

The most recent changes to the system were that the following WSUS updates were installed in order to resolve a 364 error for two patches:

WSUS 3.0 (SP2): Build 3.2.7600.226 (Server 2008)
WSUS 3.0 (SP2) + KB2720211: Build 3.2.7600.251
WSUS 3.0 (SP2) + KB2734608: Build 3.2.7600.256
WSUS 3.0 (SP2) + KB2828185: Build 3.2.7600.262
WSUS 3.0 (SP2) + KB2938066: Build 3.2.7600.274

After installing the above WSUS Updates, the two problem patches downloaded without error and subsequent patches have been downloaded normally and been deployed as well. 

Some more details: 

  • There is plenty of free space on all drives
  • The WSUSIndex.vbs maintenance script and a Server restart were performed but no difference.
  • BITS is currently set to Foreground mode
  • The systems gets its patches directly from Microsoft
  •  The server also has a known event ID 12032 "The Server Synchronization Web Service is not working" which is due to Anonymous authentication not being allowed on the ServerSyncWebService on this server.  


Viewing all 12331 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>