Quantcast
Channel: WSUS Forum
Viewing all 12331 articles
Browse latest View live

Unable to import an update from MU Catalog to WSUS

$
0
0

Hi,

We have a working WSUS installation that is synchronising and importing WSUS updates correctly. However there has been a recent hotfix rollup released for enterprises that is available on the MU Catalog, but not via WSUS. A number of the issues addressed in this rollup are affecting nodes in our organisation

The KB Article is 2775511, and it is available on the MU Catalog, however when we try to import it in to WSUS via the MU Catalog site we see the following results..

  • Status sits on WAITING for a number of minutes. Often the IE window becomes unresponsive
  • The status will eventually move to FAILED, which is a link to a page which lists the following reasons for the failure. 
  1. If you use a proxy, be sure that it is the same proxy being used by your Windows Server Update Services (WSUS) server. 
  2. Your WSUS server might not be configured correctly. Contact your WSUS administrator.

In the first instance the proxy server is a transparent proxy server that does nothing to the traffic and requires no authentication - the same proxy server is used by the server, the service, and IE.

In the second instance, the WSUS server is working otherwise correctly. I am the administrator, and am at a bit of a loss about what the problem could be

Any help would be greatly appreciated.

Many thanks, J R Brewin

 



SUS running on server 2012

$
0
0
I recently installed SUS on a 2012 server, while all appears to be running properly, I noticed that my Windows 8 clients, and Server 2012 machines are reporting their OS version as Windows XP SP3 64 bit, and Windows Sever 2002 64 bit.  If you run a report on the machine, it lists the correct updates for the OS, just doesn't appear correct in the console, so I am not sure the updates are there for approval. 

Randy Oster

WSUS 3 with SP2 sync schedule not working

$
0
0

Hello forum,

We have a WSUS server, running on windows 2008 server.

WSUS 3 with SP2 sync schedule stopped working.

it used to be working a few months ago.

if I schedule it, it will run as scheduled for the day. then next morning, it will revert to sync manaully.

I tried a few methods like renaming somce cat folders, no luck.

this wsus server is only used for appove updates, it is not caching any contents.

Please help !

Michael

Is our Server Cleanup Wizard working correctly? Might it cause a failed sync?

$
0
0

As a rule, our process for maintaining a clean and healthy WSUS is to only approve the updates we need for the products we use, and to regularly find and decline superseded updates, and run the server cleanup wizard.  

1. I think that's the best procedure from reading here, is that correct?

However, I'm not sure if the Server Cleanup Wizard is supposed to permanently delete declined updates, and remove them completely from WSUS, and if it is supposed to do that, I'm not sure if that's actually happening in our environment.

SUSDB.mbf is 3.4GB for approx 1,400 computers.  Total size of the WSUS folder is ~70GB.

I carried out a big clean of our parent WSUS server last week, and as well as declining superseded updates, I also declined updates for Itanium based systems and Embedded Windows, which we no longer use anywhere.  This resulted in ~1000 updates being declined.  I ran the server cleanup wizard afterwards and after it ran the console gave a 'server node error'.

2. Is the 'server node error' result post-cleanup normal or a problem?

Since doing that cleanup, some downstream servers have failed to sync. I'm wondering if it's related to the cleanup.

They are failing with the SQL timeout error. One explanation online is that declined (hidden) updates need to be permanently deleted using a method other than the server cleanup wizard, specifically to delete hidden updates using SQL Server Management Studio.  

That's way more complicated than anything I've read previously.

3. Is is necessary to delete hidden updates with SQL Server Manager? Is there another way? 


Event ID 10032 The server is failing to download some updates

$
0
0

We have a SCCM 2012 SP1 hierarchy with two Software Update Points. On both SUP's we get exactly every 6 hours an error in the Application Log in Event Viewer: Event ID 10032 The server is failing to download some updates.

There are a few threads on this forum with the same error message but we don't get any other error messages. It's also not clear which updates are failing. All SCCM logs and Status Messages seems fine, it looks like a WSUS issue.

When I run manually 'wsusutil checkhealth' the same error message immediately appears in the Application Log in Event Viewer.

Is it possible to enable debug logging on the WSUS Role to get more information?

In another thread someone mentions to completely remove the SUP and WSUS roles and start over but that's a little too drastic for our environment.

Any help would be appreciated, I also posted this thread in the SCCM 2012 forum.

http://social.technet.microsoft.com/Forums/en-us/configmanagersecurity/thread/4885be5c-e13b-4428-a75f-33be9ff54443


How to prevent High CPU/RAM/Network Usage in VDI Environment while using WSUS as a update Service?

$
0
0

Dears Hi,

We are using VDI Environment and WSUS server as an Update Service.(Near 1000 VDI clients)

The VDI team always claims that WSUS uses very resources like CPU/RAM/Network so they encounter slow performance and Sound outage in VDI clients of Call Center.

They have disabled the "Automatic Update" Service on VDI clients because they say that even when there is no update to be installed and Automatic Update service is enabled they encounter High resource usage. 

How can we monitor if the slow operation and high CPU usage is because of WSUS and prevent such issues ?

Firewall destinations needed for Windows update and Microsoft Security Essentials Update

$
0
0

For security reasons we cannot allow our servers to directly connect to the Internet so I had set up a Proxy server in a DMZ so that it makes the connection. Additionally the requirement is that the Proxy server cannot just connect to anywhere. It must be specific destinations using specific services.


I configured the following addresses:

*.download.windowsupdate.com
*.windowsupdate.com
*.windowsupdate.microsoft.com
definitionupdates.microsoft.com
download.microsoft.com
download.windowsupdate.com
ds.download.windowsupdate.com
go.microsoft.com
ntservicepack.microsoft.com
windowsupdate.com
windowsupdate.microsoft.com
wustat.windows.com
www.microsoft.com
www.update.microsoft.com

These destinations were obtained by running a packet sniffer while updating. Sadly these did not work. I then researched a bit and added the below addresses too in hope that these will fix the problem.

http://definitionupdates.microsoft.com/
http://www.microsoft.com/security/
http://go.microsoft.com/
http://ds.download.windowsupdate.com/
http://www.update.microsoft.com/
http://download.microsoft.com/
http://download.windowsupdate.com/

Still no updates. Services allowed are HTTP and HTTPS. If we configure the firewall rule to allow connections using HTTP/HTTPS to ALL destinations they work, but we cannot do that so I need specific destinations. The proxy is also serving Redhat servers and their updates are fine. It's just the Windows ones.

Any suggestions please?

How do I manually install WSUS updates that have been downloaded on Windows 2008 R2?

$
0
0

#1 - In Windows 2003 I could click on the WSUS shield and manually install WSUS updates that were downloaded and ready to install.  Other than "installing the updates and shutting down" (which is a very poor option), how do I get the same manual install functionalty in Win 2008 R2? 

#2 - Any way to get the option "install updates and restart" on the Start button?

Thanks.


Email notification to include computers from downstream server

$
0
0

Is there any way to include Replica computers status in email notification, even by modifing the code/script?

Thanks


SMF

WSUS - not updating automatically

$
0
0
HI, 

I need you help, I have a server WSUS but these are not automatically updated, are synchronized everday but not downloads updates.

reviewing events found the following error : "Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install updates according to the set schedule. Windows will continue to try to establish a connection" 

I hope I can help, thanks for your attention.

Regards


BEP

Bug: halt when deleting unneeded update files

$
0
0

If WSUS installed on a heavy IO loaded harddrive (LUN) of a VM, when deleting unneeded update files by Server Cleanup Wizard, MMC node may halt.

Server OS: Windows Server 2012 Standard

Errors can be located in Event Log:
An unhandled exception occurred and the process was terminated.
Application ID: /LM/W3SVC/1881423753/ROOT/ServerSyncWebService
Process ID: 3288
Exception: System.NullReferenceException
Message: Object reference not set to an instance of an object.
StackTrace:    at Microsoft.UpdateServices.Internal.DataAccess.GetRevisionIdListForCache(Int64 deploymentChangeNumber, Int64& highestChangeNumber, CategoryIdCacheEntry[]& newCategoryDeployments, CategoryIdCacheEntry[]& deletedCategoryDeployments, RevisionIdCacheEntry[]& newRevisionDeployments, RevisionIdCacheEntry[]& deletedRevisionDeployments)
at Microsoft.UpdateServices.Internal.RevisionIdCache.UpdateCategoryAndRevisionIdCache(Int64 deploymentChangeNumberAtRefresh)
at Microsoft.UpdateServices.Internal.ServerImplementation.UpdateCache()
at Microsoft.UpdateServices.Internal.ServerImplementation.DatabaseChangeHandler(Object byTimer)
at System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx)
at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx)
at System.Threading.TimerQueueTimer.CallCallback()
at System.Threading.TimerQueueTimer.Fire()
at System.Threading.TimerQueue.FireNextTimers()

Application: w3wp.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.NullReferenceException
Stack:
at Microsoft.UpdateServices.Internal.DataAccess.GetRevisionIdListForCache(Int64, Int64 ByRef, Microsoft.UpdateServices.Internal.CategoryIdCacheEntry[] ByRef, Microsoft.UpdateServices.Internal.CategoryIdCacheEntry[] ByRef, Microsoft.UpdateServices.Internal.RevisionIdCacheEntry[] ByRef, Microsoft.UpdateServices.Internal.RevisionIdCacheEntry[] ByRef)
at Microsoft.UpdateServices.Internal.RevisionIdCache.UpdateCategoryAndRevisionIdCache(Int64)
at Microsoft.UpdateServices.Internal.ServerImplementation.UpdateCache()
at Microsoft.UpdateServices.Internal.ServerImplementation.DatabaseChangeHandler(System.Object)
at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
at System.Threading.TimerQueueTimer.CallCallback()
at System.Threading.TimerQueueTimer.Fire()
at System.Threading.TimerQueue.FireNextTimers()

Faulting application name: w3wp.exe, version: 8.0.9200.16384, time stamp: 0x50108835
Faulting module name: KERNELBASE.dll, version: 6.2.9200.16384, time stamp: 0x5010ab2d
Exception code: 0xe0434352
Fault offset: 0x00000000000189cc
Faulting process id: 0xcd8
Faulting application start time: 0x01cdcff0fa98da3e
Faulting application path: c:\windows\system32\inetsrv\w3wp.exe
Faulting module path: C:\Windows\system32\KERNELBASE.dll
Report Id: 332ed25c-3c39-11e2-93f1-005056b26389
Faulting package full name: 
Faulting package-relative application ID:

Step to repo:

1 Open Update Services MMC.
2 Click Options from the left panel.
3 Select Server Cleanup Wizard from the right.
4 Press Next.
MMC node MAY(only when lots of files need to be deleted) be prompted to be reset when deleting unneeded files if it's running longer than usual. Re-open Update Services MMC will fix it. But it will be appeared again another day when many unneeded files exist.


Eternal Snow

Wsus error downloading and installing updates

$
0
0

hello all,

seems like i am still having issues with getting wsus to work properly. looks like from the windowsupdate.log file, updates are not downloading properly. I have wsus configured to push updates via GPO. here is my gpo config:

for security reasons, i didn't show the server or org name anywhere in the snipits. but they are pointing to my wsus server (domain controller) and reporting correctly. I am currently testing with one pc for now. below are the logs that i am seeing that make me believe its a download issue:

2013-04-16 10:17:49:034  956 fcc DnldMgr ** START **  DnldMgr: Downloading updates [CallerId = AutomaticUpdatesWuApp]
2013-04-16 10:17:49:034  956 d1c AU   # WARNING: Download failed, error = 0x80244019
2013-04-16 10:17:49:034  956 fcc DnldMgr *********
2013-04-16 10:17:49:034  956 fcc DnldMgr   * Call ID = {0C6FE090-57C0-457D-9216-E83D6E9580B7}
2013-04-16 10:17:49:034  956 fcc DnldMgr   * Priority = 3, Interactive = 1, Owner is system = 0, Explicit proxy = 0, Proxy session id = 4, ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}
2013-04-16 10:17:49:034  956 fcc DnldMgr   * Updates to download = 1
2013-04-16 10:17:49:034  956 fcc Agent   *   Title = Update for Root Certificates for Windows 7 for x64-based Systems [December 2012] (KB931125)
2013-04-16 10:17:49:034  956 fcc Agent   *   UpdateId = {71F68287-9DD8-498C-906F-BDC50F93822F}.202
2013-04-16 10:17:49:034  956 fcc Agent   *     Bundles 1 updates:
2013-04-16 10:17:49:034  956 fcc Agent   *       {E3A85891-5A11-4DA5-AA32-89F977245AC7}.202
2013-04-16 10:17:49:034  956 d1c AU Setting AU scheduled install time to 2013-04-23 14:00:00
2013-04-16 10:17:49:034  956 d1c AU Successfully wrote event for AU health state:0
2013-04-16 10:17:49:034  956 d1c AU Currently showing Progress UX client - so not launching any other client
2013-04-16 10:17:49:034  956 fcc DnldMgr ***********  DnldMgr: New download job [UpdateId = {E3A85891-5A11-4DA5-AA32-89F977245AC7}.202]  ***********
2013-04-16 10:17:49:112  956 fcc DnldMgr   * BITS job initialized, JobId = {DDB81C69-99A5-4A91-A5E8-01232D3B124A}
2013-04-16 10:17:49:159  956 fcc DnldMgr   * Downloading from http://myserver-dc01:8530/Content/F6/87C7568163E58B9ABFFED0157A63349962DDB9F6.exe to C:\Windows\SoftwareDistribution\Download\157e2b9c354da14119bea91f76680db4\87c7568163e58b9abffed0157a63349962ddb9f6 (full file).
2013-04-16 10:17:49:253  956 fcc Agent *********
2013-04-16 10:17:49:253  956 fcc Agent **  END  **  Agent: Downloading updates [CallerId = AutomaticUpdatesWuApp]
2013-04-16 10:17:49:253  956 fcc Agent *************
2013-04-16 10:17:49:253  956 d1c AU Successfully wrote event for AU health state:0
2013-04-16 10:17:49:253  956 fcc DnldMgr *************
2013-04-16 10:17:49:253  956 fcc DnldMgr ** START **  DnldMgr: Downloading updates [CallerId = AutomaticUpdatesWuApp]
2013-04-16 10:17:49:253  956 fcc DnldMgr *********
2013-04-16 10:17:49:253  956 fcc DnldMgr   * Call ID = {D02363A9-2F25-4BF2-B3B0-0706AE88EFDC}
2013-04-16 10:17:49:253  956 fcc DnldMgr   * Priority = 3, Interactive = 1, Owner is system = 0, Explicit proxy = 0, Proxy session id = 4, ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}
2013-04-16 10:17:49:253  956 fcc DnldMgr   * Updates to download = 1
2013-04-16 10:17:49:253  956 fcc Agent   *   Title = Update for Windows 7 for x64-based Systems (KB2484033)
2013-04-16 10:17:49:253  956 fcc Agent   *   UpdateId = {7F30088A-577C-466B-851D-4D64F3A6C19C}.101
2013-04-16 10:17:49:253  956 fcc Agent   *     Bundles 1 updates:
2013-04-16 10:17:49:253  956 fcc Agent   *       {AD527C49-0CFC-47A8-A3F1-050062E341AB}.101
2013-04-16 10:17:49:253  956 fcc PT +++++++++++  PT: Synchronizing file locations  +++++++++++
2013-04-16 10:17:49:253  956 fcc PT   + ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}, Server URL =http://myserver-dc01:8530/ClientWebService/client.asmx
2013-04-16 10:17:49:299  956 fcc DnldMgr ***********  DnldMgr: New download job [UpdateId = {AD527C49-0CFC-47A8-A3F1-050062E341AB}.101]  ***********
2013-04-16 10:17:49:299  956 fcc DnldMgr   * Queueing update for download handler request generation.
2013-04-16 10:17:49:299  956 fcc DnldMgr Generating download request for update {AD527C49-0CFC-47A8-A3F1-050062E341AB}.101
2013-04-16 10:17:49:377  956 7d8 DnldMgr WARNING: BITS job {DDB81C69-99A5-4A91-A5E8-01232D3B124A} failed, updateId = {E3A85891-5A11-4DA5-AA32-89F977245AC7}.202, hr = 0x80190194, BG_ERROR_CONTEXT = 5
2013-04-16 10:17:49:377  956 7d8 DnldMgr   Progress failure bytes total = 392840, bytes transferred = 0
2013-04-16 10:17:49:377  956 fcc Handler Generating request for CBS update AD527C49-0CFC-47A8-A3F1-050062E341AB in sandbox C:\Windows\SoftwareDistribution\Download\a3133ae4bb351533499222b2fdcab64d
2013-04-16 10:17:49:377  956 7d8 DnldMgr   Failed job file: URL = http://myserver-dc01:8530/Content/F6/87C7568163E58B9ABFFED0157A63349962DDB9F6.exe, local path = C:\Windows\SoftwareDistribution\Download\157e2b9c354da14119bea91f76680db4\87c7568163e58b9abffed0157a63349962ddb9f6
2013-04-16 10:17:49:377  956 fcc Handler Selecting self-contained because update has express payload but server doesn't support it.
2013-04-16 10:17:49:377  956 fcc Handler Selected payload type is ptSelfContained
2013-04-16 10:17:49:377  956 fcc Handler Detected download state is dsStart
2013-04-16 10:17:49:377  956 fcc Handler Adding windows6.1-kb2484033-x64.cab (entire file) to request list.
2013-04-16 10:17:49:393  956 7d8 DnldMgr Error 0x80244019 occurred while downloading update; notifying dependent calls.
2013-04-16 10:17:49:393  956 7d8 DnldMgr ***********  DnldMgr: New download job [UpdateId = {AD527C49-0CFC-47A8-A3F1-050062E341AB}.101]  ***********
2013-04-16 10:17:49:393  956 d1c AU >>##  RESUMED  ## AU: Download update [UpdateId = {71F68287-9DD8-498C-906F-BDC50F93822F}]
2013-04-16 10:17:49:393  956 d1c AU   # WARNING: Download failed, error = 0x80244019
2013-04-16 10:17:49:393  956 d1c AU Setting AU scheduled install time to 2013-04-23 14:00:00

as you see, im getting error 0x80244019 repeatedly. is this the cause of my issue? not sure if my missing something in the logs. When i go to the test workstation and try to download and install as administrator, i get the same results..it fails in about 3 seconds with the error 80244019. any help would be appreciated. thanks


Clients not reporting to WSUS

$
0
0

I too have many clients that have not reported to the Wsus Server.

  • The clients are listed in the All Computers group of WSUS
  • I have created target groups
  • The computers are listed in the correct target groups
  • I have approved update for the target group
  • Clients are not reporting at all

Thanks

Forefront Endpoint Protection Automatic Approval not working for all clients

$
0
0

We have an issue were we automatically approve definition updates to Forefront Endpoint Protection 2010 to our servers, this is working fine for all server except the domain controllers. Hopefully somebody here has had the same problem or can point me in the right direction for a solution.

Situation:
We have set up multiple servers with an SCCM client and Forefront Endpoint Protection 2010 but because software updates are working as we want it to we let the servers get their software updates through a dedicated WSUS 3 server which is not part of the SCCM 207 R3 environment.

The deployment of the Forefront Endpoint 2010 client through SCCM is working fine, all servers have installed the Forefront Endpoint client succesfully.
We have several policies and collections in SCCM defining the different server roles (Domain Controllers, Exchange Servers, SQL Servers, etc).
All Forefront Endpoint Protection policies are set the same, except for the exclusions which differ per server role.

We have GPO's in place for setting the WSUS server for the servers, in the GPO's we set the updates to download but notify for install, GPO's settings are exactly the same for Domain Controllers, Members Servers, etc. The only difference is the Target Group setting.

We have several groups in WSUS 3 defining the different server roles (Domain Controllers, Member Servers, etc).
We have one Auto Approve rule which auto approves definition updates to Forefront Endpoint Protection to all groups.

The auto approve rule is working for the Member Servers, definition updates are installing fine but the rule is NOT working for the domain controllers, on the domain controllers the definition update is waiting for a manual install in the windows update screen and will not auto install.

Setting up Replica WSUS servers at remote sites.

$
0
0

We've decided to set-up replica WSUS servers at all of our larger remote sites.    I have a central server here at the main office with replicas at each location all looking to our server for their downloads.  

However I'm seeing some odd behavior.    3 of the 4 sites think they need to download 9,000+ updates at 124GB total.   1 Site Thinks it only needs 388MB of downloads.  The main server only has about 69GB of updates.   Something is wrong here.


Windows 2008 SP2 Core - Windos Update Failures

$
0
0

Issue:  Application of updates fails

Cnnfiguration:

            Windows 2008 Server Core, SP2, x86 on Dell PE 1600SC

            4 GB RAM

            Dual Xeon 2.8 Gb

            2x36 GB, 4x73 GB as JBOD on LSI Ultra 320 SCSI controller

            Intel Pro 1000 Gigabit Etherrnet (servers are all on same gigabit switch)

System is considered non-critical so resolution of update failures has been low priority. However, given that the last three patch cycles have come and gone without the system taking any updates, the system is now considered a health and security risk. 

Server is domain joined (2008R2 domain functional level) as a member server. Primary use is test bed database server (MSSQL) and as a miscellaneous file server for devs.

Description of problem:

All updates fail to apply whether from in-house SUS Server or automatically downloaded from Windows Update, or if WU Standalone Installer is used. Event ID: 20 Error:0x80070070 is reported in the System Event Log by WindowsUpdateClient regardless of method of installation chosen.

Updates detected are as follows:

  1. Update for Windows Server 2008 (KB975929)
  2. Platform Update for Windows Server 2008 (KB971644)
  3. Windows PowerShell 2.0 and WinRM 2.0 for Windows Server 2008 (KB968930)
  4. Update for Windows Server 2008 (KB2563227)
  5. Update for Windows Driver Framework version 1.11 for Windows Server 2008 (KB2761494)
  6. Update for Windows Server 2008 (KB2748349)
  7. Security Update for Windows Server 2008 (KB2753842)
  8. Security Update for Windows Server 2008 (KB2807986)
  9. Security Update for Windows Server 2008 (KB2808735)

Attempts to resolve:

  1. Clean boot performed, overnight auto updates ran with same result (0x80070070), installation of all packages fails.
  2. Used WUA_SearchDownloadInstall.vbs – detection and download work, installation fails for all packages downloaded.
  3. Manually download packages, single package installation of KB2808735 is attempted using wusa.exe.  It fails, same error.  Ditto for all other packages attempted.
  4. Research of KB, forums, other Internet posts is generally uninformative.
  5. Check space on system drive and all other drives.  System drive (C) is 1/3 full. One drive (F) was maxed out (not the system drive), clean-up of F results in no drive being more than 1/2 full. Junction points existed on system drive to point to root of other drives. Junction points are removed.  Free space on each drive is confirmed with DIR and with MSINFO.  System is clean booted. Manual update of single package again fails, same error.
  6. CheckSUR is downloaded and installs OK, runs with no errors or corruption found.
  7. Steps 2, 5, and 6 are repeated without change in results or error.
  8. Virus scan – nothing detected, using FF-AV on the drives from the server and MSE from a client against the file shares.

Log file errors (selected entries):

WindowsUpdate.log –

2013-04-24      13:58:09:544  4032    d28     Handler           FATAL: CBS called Error with 0x80070070,

2013-04-24      13:58:09:678  4032    f68      Handler           FATAL: Completed install of CBS update with type=0, requiresReboot=0, installerError=1, hr=0x80070070

Cbs.log shows:

2013-04-24 13:57:47, Error                 CSI   0000000e@2013/4/24:20:57:47.395 (F) d:\longhorn\base\wcp\sil\merged\ntu\ntsystem.cpp(328): Error STATUS_DISK_FULL originated in function SetObjectSecurity expression: Status
[gle=0x80004005]
2013-04-24 13:58:03, Error                 CSI    0000000f (F) STATUS_DISK_FULL #3174# from Windows::Rtl::SystemImplementation::DirectFileSystemProvider::SysSetSecurityObject(...)[gle=0xd000007f]
2013-04-24 13:58:03, Error                 CSI    00000010 (F) STATUS_DISK_FULL #3173# from Windows::Rtl::SystemImplementation::CSystemObject::SetSecurityInfo(...)[gle=0xd000007f]
2013-04-24 13:58:03, Error                 CSI    00000011 (F) STATUS_DISK_FULL #3172# from Windows::Rtl::SystemImplementation::CFile_IRtlFileTearoff::SetSecurityInfo(...)[gle=0xd000007f]
2013-04-24 13:58:03, Error                 CSI    00000012 (F) HRESULT_FROM_WIN32(ERROR_DISK_FULL) #3068# from Windows::ServicingAPI::CCSITransaction::ICSITransaction_AddComponent(Flags = 4, a = Microsoft-Windows-Win32k, Version = 6.0.6002.23071, pA = PROCESSOR_ARCHITECTURE_INTEL (0), Culture neutral, VersionScope = 1 nonSxS, PublicKeyToken = {l:8 b:31bf3856ad364e35}, Type neutral, TypeName neutral, PublicKey neutral, mp = [174]"\\?\C:\Windows\SoftwareDistribution\Download\468e3d17d8a50fe52c3304681b5f1dfc\inst\x86_microsoft-windows-win32k_31bf3856ad364e35_6.0.6002.23071_none_bb18c647b102af8b.manifest", disp = 0)[gle=0x80070070]
2013-04-24 13:58:03, Error                 CSI    00000013 (F) HRESULT_FROM_WIN32(ERROR_DISK_FULL) #3067# from Windows::ServicingAPI::CCSITransaction_ICSITransaction::AddComponent(flags = 0x00000004, pdi = @0x3a4d48, pmp = [174]"\\?\C:\Windows\SoftwareDistribution\Download\468e3d17d8a50fe52c3304681b5f1dfc\inst\x86_microsoft-windows-win32k_31bf3856ad364e35_6.0.6002.23071_none_bb18c647b102af8b.manifest", disp= 0)
[gle=0x80070070]

Questions:

  1. Is this the right forum?
  2. Am I missing something here because the error appears to be a false positive and not reflective of the current state of the system?
  3. Any suggestions for remedy or further diagnostics?  I suppose I could rebuild it, if that is the shortest path to resolve but that would be bizarre.

WindowsUpdate.log and cbs.log for most recent failure are available for upload on request. Other logs (setupact.log and poqexec.log) are unremarkable but can be uploaded as well.

How to start over with WSUS?

$
0
0

Hi -

I've spent a good number of hours going over this forum (and other forums) to solve my problem, but can't seem to find a definite solution for this situtation. For a number of years,  I've had WSUS running in my small business environment here in my office and had little or no problems. Over the last year or so WSUS has stopped functioning completely. Honestly, I can't recall now what the original problem/error was or what exactly started it. I believe it was something to do with a service pack or an update of some kind, but I can't be sure. The WSUS console would just blink on the screen and crash.

Anyway, I apologize for my description of the error being so vague. While trying to keep up with service calls and everything else involved with being a small business owner, I ended up just ignoring the problem for a while. A few months ago I decided to tackle the problem, spent a good amount of time researching it and made a few changes to no avail. Things got busy again and I haven't gone back to it till now. The problem has become really annoying at this point, so one way or another I'd really like it solved. As it stands now, the console will open, but won't connect to the WSUS server database at all. All I get is: "Error: Connection Error" and gives me the option to "Reset Server Node" or "Copy to Clipboard". I cannot remember what I did to cause this or what the original errors were before it got to this point. Digging a little further, I find in the event log: Event 18456 - source MSSQL$MICROSOFT##SSEE cannot be found... and goes on to say: The specified resource type cannot be found in the image file. Basically, I made the problem worse.

At this point since I cannot remember what I did, I'd like to "start over" with WSUS if possible. This is running on a SBS2008 Server (the only one) in my office. Is there any way I can get this off the system and do a clean installation of ONLY WSUS? WSUS didn't "come with" SBS. I installed it separate a few months later after I setup the network so I could learn WSUS. We also use the company web site, calendar, fax, remote access, etc... on a daily basis. Can this be removed without permanently effecting the other services or the data in them? I'm a little fuzzy on SQL Server and how that interacts with the other services on SBS.

Any Suggestions? Please let me know what other information you might need to help.

Thank you very much for your time.

Andy


Andy Gonzalez

WSUS with manual trigger to check, download and install

$
0
0

Here is my scenario:

1) I have around 200 clients with windows XP and 7 in 6 different geographical locaitons.

2) the clients are running test software so they are not allowed to have anything running when the test software is running(will affect test time). So AU is turn off from GPO.

3) I want to check/download/install updates on start up of my test software's execution. This is the only time suitable to run the 

4) I have a batch file to call "WUInstall /install" when my Test software starts.

5) clients runs with non-admin account but executes the batch file with admin rights account.

This works in windows 7 but not windows XP. I encounter an error in windowsupdate.log:

2013-05-0714:02:18:591928d4cHandlerAttempting to create remote handler process as <non admin account> in session 0

I have executed the batch file with admin rights account but still fails. This error did not appear in windows 7, and it passes the installation successfully. Any idea why only happen in Windows XP?

Any Tips would be a great help to me. Thanks.


Server : windows 2008 R2 - WSUS 3.0 SP2

Client : Windows XP SP3, Windows 7

cannot install wsus role on 2012

$
0
0

Hi all,

just trying to install a wsus on my first server 2012

unfortunately the installation fails.
Error message i see in the Wizard: The operation cannot be completed, because the server that you specified reuires a restart.

If i restart the server i see and open the add roles wizard i see that the wsus is still not installed.

Here are my settings:

I run the installation on a Server 2013, whitch is within a domain, has a fix ip and nothing else installed.

I do aRole-based installation, select server from the server pool

and this options are selcted:

WID Database and WSUS Services

Store Updates path: E:\WSUS

server restart automatically

Firewall is disabled all updates are installed.

this two errors i see in the event log:

Log Name:      System
Source:        Service Control Manager
Date:          09.01.2013 15:58:40
Event ID:      7000
Task Category: None
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      wsus1.mydomain
Description:
The Windows Internal Database service failed to start due to the following error: 
The service did not start due to a logon failure.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Service Control Manager" Guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" EventSourceName="Service Control Manager" />
    <EventID Qualifiers="49152">7000</EventID>
    <Version>0</Version>
    <Level>2</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8080000000000000</Keywords>
    <TimeCreated SystemTime="2013-01-09T14:58:40.935101900Z" />
    <EventRecordID>1726</EventRecordID>
    <Correlation />
    <Execution ProcessID="508" ThreadID="2500" />
    <Channel>System</Channel>
    <Computer>wsus1.mydomain</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">Windows Internal Database</Data>
    <Data Name="param2">%%1069</Data>
    <Binary>4D005300530051004C0024004D004900430052004F0053004F0046005400230023005700490044000000</Binary>
  </EventData>
</Event>

and this one

         

Log Name:      System
Source:        Service Control Manager
Date:          09.01.2013 15:58:40
Event ID:      7041
Task Category: None
Level:         Error
Keywords:      Classic
User:          N/A
Computer:      wsus1.mydomain
Description:
The MSSQL$MICROSOFT##WID service was unable to log on as NT SERVICE\MSSQL$MICROSOFT##WID with the currently configured password due to the following error: 
Logon failure: the user has not been granted the requested logon type at this computer.

Service: MSSQL$MICROSOFT##WID 
Domain and account: NT SERVICE\MSSQL$MICROSOFT##WID

This service account does not have the required user right "Log on as a service."

User Action

Assign "Log on as a service" to the service account on this computer. You can use Local Security Settings (Secpol.msc) to do this. If this computer is a node in a cluster, check that this user right is assigned to the Cluster service account on all nodes in the cluster.

If you have already assigned this user right to the service account, and the user right appears to be removed, check with your domain administrator to find out if a Group Policy object associated with this node might be removing the right.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Service Control Manager" Guid="{555908d1-a6d7-4695-8e1e-26931d2012f4}" EventSourceName="Service Control Manager" />
    <EventID Qualifiers="49152">7041</EventID>
    <Version>0</Version>
    <Level>2</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x8080000000000000</Keywords>
    <TimeCreated SystemTime="2013-01-09T14:58:40.935101900Z" />
    <EventRecordID>1725</EventRecordID>
    <Correlation />
    <Execution ProcessID="508" ThreadID="2500" />
    <Channel>System</Channel>
    <Computer>wsus1.mydomain</Computer>
    <Security />
  </System>
  <EventData>
    <Data Name="param1">MSSQL$MICROSOFT##WID</Data>
    <Data Name="param2">NT SERVICE\MSSQL$MICROSOFT##WID</Data>
  </EventData>
</Event>

and the user a logon with is the domainadmin and is within the local admin group

anyone who can help me?

Thank you


WSUS update for unlicensed windows

$
0
0

Hi all,

      i have just deployed a WSUS server for a company and i'm doubt full that they have some unlicensed windows running in their setup.How can i restrict my WSUS updates to registered clients only (i have published registry settings to configure the WSUS at client side) or is it possible to get the information from WSUS console regarding the unlicensed windows clients.

Viewing all 12331 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>