For an Internet-based software update point, it should be the first software update point on the same site. Do not synchronize from Microsoft Update or upstream data source: Use this setting to manually synchronize software updates when the software update point at the top-level site is disconnected from the Internet. ... Set the synchronization schedule and Click Next. SCCM Software update point WSUS windows update services. Config schedule by selecting the option Custom schedule and clicking button Customize. You can install more than one software update points on a site. To determine the port number on the upstream WSUS server, see Determine the port settings used by WSUS and the software update point . If prompted, install the Microsoft Update Catalog ActiveX control. You must configure the WSUS port settings on the Software Update Point page of the wizard or in the properties of the software update point. Site System role : Proxy… Initiate a software update synchronization. Set check mark Alert when synchronization fails on any site in the hierarchy and click Next; The central administration site must have Internet access; otherwise, synchronization will fail. After the initial software updates synchronization, configure the classifications from an updated list, and then re-initiate synchronization. SCCM and WSUS checks if there are new available updates related to your filter and update the Software Update Group. You must configure WSUS settings on different pages of the Create Site System Server Wizard or Add Site System Roles Wizard depending on the version of Configuration Manager that you use, and in some cases, only in the properties for the software update point, also known as Software Update Point Component Properties. Since the release of Configuration Manager 1806, some customers report that the WSUS signing certificate isn’t being populated in the Third Party Updates tab of the software update point. On the Home tab, in the All Software Updates group, click Synchronize Software Updates. To debug an issue, the best way is … Software Update Synchronization WSUS synchronization activities is scheduled in SCCM, so whenever this activity executed, WSUS(Software update point) connects with upstream server or Microsoft update to retrieve new software update metadata. This page is not displayed when you install additional software update points. Beginning with the September 2020 cumulative update, HTTP-based WSUS servers will be secure by default. Software Update Synchronization WSUS synchronization activities is scheduled in SCCM, so whenever this activity executed, WSUS(Software update point) connects with upstream server or Microsoft update to retrieve new software update metadata. Synchronize software updates from a disconnected software update point, configure the new classifications and products. Open the Endpoint Protection Automatic Deployment Rule (ADR) properties, navigate to the Evaluation Schedule and ensure Run the rule after software update point synchronization is selected. Configuring the proxy settings for the Software Update Point. Trigger a software update point synchronization by right-clicking the All Software Updates node, and clicking Synchronize Software Updates. Once the synchronization is complete, you can start approving and deploying updates to devices. Synchronize from an upstream data source location: Use this setting to synchronize software updates metadata from the upstream synchronization source. When you configure the start time for a custom schedule, it's based on the local time for the computer that runs the Configuration Manager console. Within SCCM "Software Update Point Component Properties" it seems that the default sync schedule is set to run every 7 days. Some settings are only available when you configure the software update point on a top-level site. When you have a stand-alone primary site, not a central administration site, install and configure the software update point on the primary site first, and then optionally, on secondary sites. Beginning in Configuration Manager version 1802, you can enable third party updates for Configuration Manager clients. Configure the classifications settings on the Classifications page of the wizard, or on the Classifications tab in Software Update Point Component Properties. On the WSUS server, open Internet Information Services (IIS) Manager. For Synchronization Schedule, set check mark Enable synchronization on a schedule. Archived. Configure the following settings: Configure the proxy server settings on the Proxy page of the wizard or on the Proxy tab in Site system Properties. Ensure that the internet access requirements are met for each of the WSUS servers. In the results pane, click the central administration site or stand-alone primary site. Combine software update groups into yearly groups. This is not a mandatory Site System but your need to install a SUP if you’re planning to use SCCM as your patch management platform. For more information, see Synchronize software updates from a disconnected software update point. In this video, we go over how to configure your SCCM Software Update Point to sync a particular product and how to perform a manual sync. When you configure a simple schedule, the start time is based on the local time for the computer that runs the Configuration Manager console at the time when you create the schedule. 3. Configure the supersedence settings on the Supersedence Rules page of the wizard or on the Supersedence Rules tab in Software Update Point Component Properties. Check the updates to delete from WSUS, and click Delete. Applies to: Configuration Manager (current branch). Config schedule by selecting the option Custom schedule and clicking button Customize. Use the following table for the available options when you configure the software update point at a site. 1. For more information about how to plan for a firewall that supports software updates, see Configure firewalls. Software Update Point (SUP) : Products and Sync Schedule 2. If you check Administration > Site Configuration > Sites, then right click your primary site and choose Configure Site Components > Software Update Point. Configure the credentials to connect to the proxy server when the Local System account does not have Internet access. You can then synchronize it into Configuration Manager and deploy it like any other update. For more information, see Languages. You can configure the upstream synchronization source for software updates synchronization on the Synchronization Source page of the wizard, or on the Sync Settings tab in Software Update Point Component Properties. Host your SUSDB on a SQL Server and not a WID. Microsoft MVP Brien Posey shows how to deploy and manage updates using three different services: Software Center Configuration Manager (SCCM), Windows Server Update Services (WSUS), and Intune. Use the following procedures on the top-level site to schedule software updates synchronization. Figure 15: WSUS synchronization monitoring. In the browser window, search for the update that you want. Remove unneeded files from the deployment package source folder. This setting is configured only on the software update point at the top-level site. Figure 15: WSUS synchronization monitoring. For more information about software update classifications, see Update classifications. Use the following procedure to monitor the software update synchronization process. Synchronize your Configuration Manager Software Update Point. The first place to be is the monitoring view on Software Update Point Synchronization Status. The software update point site system role must be created on a server that has WSUS installed. You can configure the proxy server settings on different pages of the Create Site System Server Wizard or Add Site System Roles Wizard depending on the version of Configuration Manager that you use. The following list provides more information about each option that you can use as the synchronization source: Synchronize from Microsoft Update: Use this setting to synchronize software updates metadata from Microsoft Update. Click Yes in the dialog box to confirm that you want to initiate the synchronization process. In the Software Library workspace, expand Software Updates and click All Software Updates or Software Update Groups. Once Software Update Point Role installation is completed successfully, navigate to Software Library \ Overview \ Software Updates \ All Software Updates. Open the WSUS administration console and connect it to the top-level WSUS server in your hierarchy. Use the following procedure to determine the port settings used by WSUS. Once you have your software update points installed, go to synchronize software updates. Specify a URL, such as https://WSUSServer:8531, where 8531 is the port that is used to connect to the WSUS server. ... Set the synchronization schedule and Click Next. You may see different software update points at the top-level site syncing with Microsoft. As you may know, Configuration Manager uses WSUS to manage a lot of the heavy lifting regarding software updates and works just fine (well..most of the time). The settings are different depending on the version of Configuration Manager that you use. Or, you can specify a period of time before the superseded software updates are expired, which allows you to continue to deploy them. Important: If you use an Automatic Deployment Rules that use Vendor or Product in the Software Update criteria, you will need to … To enable the client settings for third party updates, see the About client settings article. Click on Finish to close the wizard. The software update point interacts with the WSUS services to configure the software update settings and to request synchronization of software updates metadata. The software update point interacts with the WSUS services to configure the software update settings and to request synchronization of software updates metadata. Another typical scenario is to set the software updates synchronization schedule to run daily when you use software updates to deliver the Endpoint Protection definition and engine updates. Software Update file - The file that client downloads and run to install software updates. Typically, the software update point on the central administration site, or on a stand-alone primary site, retrieves the metadata from Microsoft Update. Once the publishing of third-party update content is complete, you can sync your software update point for SCCM to pick up the change from metadata-only to full-content faster. Software updates synchronization in Configuration Manager connects to Microsoft Update to retrieve software updates metadata. After you synchronize software updates for the first time, or after there are new classifications or products available, you must configure the new classifications and products to synchronize software updates with the new criteria. The software update point interacts with the WSUS services to configure the software update settings and to request synchronization of software updates … This status provides information about the last synchronization with WSUS. When a site receives the synchronization request from the parent site, the software update point for the site retrieves software updates metadata from its upstream synchronization source. Click the. The proxy server settings are site system specific, meaning that all site system roles use the proxy server settings that you specify. Software Update file - The file that client downloads and run to install software updates. Posted by 1 year ago. Software Update Point Synchronization Schedule. Marked as answer by SriCharan_S Thursday, March 4, 2010 3:34 AM If synchronization fails at any step, then your ability to measure and remediate compliance for the most current published updates will be compromised. Figure 16: SCCM logs files. Close. Use the following procedures on the top-level site to manually initiate software updates synchronization. It is not too late to go back in and uncheck those chatty ones! The software update points in your Configuration Manager hierarchy are displayed in the results pane. After you initiate the synchronization process on the software update point, you can monitor the synchronization process from the Configuration Manager console for all software update points in your hierarchy. Remote WSUS connection is not HTTPS. Before you install the software update point site system role (SUP), you must verify that the server meets the required dependencies and determines the software update point infrastructure on the site. From this view, you can monitor the synchronization status for all software update points. For more information about software update synchronization process, see Software updates synchronization. There are different options that you must consider depending on where you installed the software update point. Software Update Point Synchronization Schedule. Existing WSUS servers are only supported as upstream synchronization sources for the active software update point. For more information about how to use SSL, see Decide whether to configure WSUS to use SSL and Configure a software update point to use TLS/SSL with a PKI certificate. When there's a firewall between the software update point and the Internet, the firewall might need to be configured to accept the HTTP and HTTPS ports that are used for the WSUS Web site. Once the product is enabled and you completed a software update point sync in ConfigMgr, the new updates should appear in the All Software Updates as normal. The software update point is optional on secondary sites. When a software update point is disconnected from its upstream synchronization source, you can use the export and import method to synchronize software updates. The WSUS Synchronization Manager component of the software update point verifies that this setting is enabled every 60 minutes, by default. Specify the languages for which you want to synchronize software update files and summary details. After the initial software updates synchronization, configure the products from an updated list, and then re-initiate synchronization. Just thought I'd open up a discussion, as I'm curious: What do you use as a synchronization schedule, and why? The Classifications page of the wizard is available only when you configure the first software update point at the site. Click on Finish to close the wizard. You can configure the supersedence rules only on the top-level site. If you review the wsyncmgr.log, you should see some details about the certificate being imported and created. 1. The custom schedule allows you to synchronize software updates on a date and time when the demands of the Windows Server Update Services (WSUS) server, site server, and network are low. The software update point interacts with the WSUS services to configure the software update settings and to request synchronization of software updates metadata. Applies to: Configuration Manager (current branch). After you synchronize software updates with the criteria that you need, manage settings for software updates. Your options for the synchronization source vary depending on the site. This setting is available only when you configure the software update point on the top-level site. Right click the site and select Configure Site Components > Software Update Point. Error = 12007. When this account does not have access to the Internet, software updates fail to download and the following entry is logged to ruleengine.log: Failed to download the update from internet. The following are recommendations to get the best performance out of your WSUS database and scan performance on clients, and to minimize the clutter in your console! See. We have just started delving into deploying patches with SCCM and have so far found it less than straight forward!! The software update point is required on the central administration site and on the primary sites to enable software updates compliance assessment and to deploy software updates to clients. 1. You can configure the account in different places of the wizard depending on the version of Configuration Manager that you use. Click OK. To Synchronize the software updates, Click Software Updates from the bottom left pane, Right click All Software Updates and click Synchronize Software Updates“. For more information, see synchronize software updates. Software Update Point Synchronization Schedule. Specify roles this new remote site system server – Install New ConfigMgr Software Update Point Role Specify Software Update Point Settings. Updates that don't automatically synchronize into WSUS are typically meant to resolve highly specific issues. Only the software update point on the central administration site and primary site downloads content from the Microsoft Update page. SCCM Software update point WSUS windows update services. You have the option to synchronize software updates from an existing WSUS server. You can also configure whether to create WSUS reporting events on the Synchronization Source page of the wizard or on the Sync Settings tab in Software Update Point Component Properties. Remember to change the schedule back to the original settings after you have implemented the fix. When you Enable third party software updates in the SUP component properties, the SUP will download the signing certificate used by WSUS for third party updates. Close. For more information about monitoring software updates, including the synchronization process, see Monitor software updates. The software update point site system role must be created on a server that has WSUS installed. You can configure an account to be used by the site server when it connects to WSUS that runs on the software update point. Then the Software Update Group is distributed to distribution point. It is not supported to install the software update point site system role on a server that has been configured and used as a standalone WSUS server or using a software update point to directly manage WSUS clients. One typical scenario is to set the software updates synchronization schedule to run shortly after the Microsoft regular security update release on the second Tuesday of each month, which is normally referred to as Patch Tuesday. In my lab environment I’ve installed a Windows Server 2012 R2 virtual machine that we’ll be using through out this post to install and configure WSUS on in preparation for the Software Update Point (SUP) installation.The virtual machine will be referenced in this post as WSUS01. If Internet Explorer isn't the computer's default web browser, temporarily set it as the default. What does your Sync Schedule tab look like? For more information about how to plan for software updates and to determine your software update point infrastructure, see Plan for software updates. Once you configure the synchronization schedule, you'll typically not change the schedule as part of normal operations. In the Configuration Manager console, click Administration. In the Configuration Manager console that is connected to the central administration site or stand-alone primary site, click Software Library. Next machines download new updates. On the Home tab, in the Settings group, expand Configure Site Components, and then click Software Update Point. So in your case, the Automatic Deployment Rule run at 9AM. Software update synchronization in Configuration Manager is the process of retrieving the software update metadata that meets the criteria that you configure. The Languages page of the wizard is available only when you install the software update point at the central administration site. For more information about the changes for scanning WSUS, see September 2020 changes to improve security for Windows devices scanning WSUS. I developed these best practices and helped a client implement them to improve their compliance. The software update point is optional on secondary sites. In the Site Bindings dialog, the HTTP and HTTPS port values are displayed in the Port column. Starting in Configuration Manager version 1810, you can specify the supersedence rules behavior for feature updates separately from non-feature updates. You must configure the proxy server, and then specify when to use the proxy server for software updates. During the scheduled synchronization, all changes to the software updates metadata since the last scheduled synchronization are inserted into the site database. Software updates are key to keeping the systems on your network current and secure. In the Configuration Manager console, navigate to Administration-> Site Configuration-> Servers and Site System Roles and click on in the right-hand pane. Posted by 1 year ago. For example, you can set the schedule so that software updates are synchronized every week at 2:00 AM. 2. During the scheduled sync… To debug an issue, the best way is … It is my understanding that after every sync and at least one new update is synchronized, the SU metadata changes which causes the site to generate a site wide machine policy that tells the clients to download the new metadata, perform a software update scan and then perform an evaluation which sends the compliance data to the Management Point. This setting is configured only on the software update point at the top-level site. Configure the software update point proxy server settings on the Proxy and Account Settings page of the wizard or on the Proxy and Account Settings tab in Software update point Properties. Software Update Point Synchronization Schedule. Windows Server Update Services: The software update point site system role must be created on a server that has WSUS installed. In the bottom pane, right-click Software Update Point … Figure 16: SCCM logs files. Expand Sites, right-click the Web site for the WSUS server, and then click Edit Bindings. When you first install the software update point on the top-level site, clear all of the software updates classifications. In the Administration workspace, expand Site Configuration, and then click Sites. If you're sharing the WSUS database, be aware that Configuration Manager randomly chooses the software update point between the front-end WSUS servers. Open Administration / Overview / Site Configuration / Sites, select the site in the main pane. Remove expired and declined updates from software update groups. For example, you can set the schedule so that software updates are synchronized every week at 2:00 AM. After you initiate the synchronization process, you can use the Configuration Manager console to monitor the process for all software update points in your hierarchy. Under Sites, click Settings, Configure Site Components, Select Software Update point. Usually if an update is available in the catalog, you can import it into WSUS. On Finished Page, Check the option “Begin initial synchronization” and Click Next. Software update points must be connected to their upstream synchronization source to synchronize software updates. 3 … Synchronization starts at the highest level in the hierarchy that has a software update point and either has a configured schedule or is started manually using the Run Synchronization action. On the Software Update Point tab, select WSUS is configured to use ports 8530 and 8531, click Next On the Proxy and Account Settings tab, specify your credentials if necessary, click Next On the Synchronization Source tab, specify if you want to synchronize from Microsoft Update … This page is not displayed when you install additional software update points. The control must be installed to import updates into WSUS. The other software update points on the site are configured as replicas of the first software update point. Set check mark Alert when synchronization fails on any site in the hierarchy and click Next; Therefore, some settings are not available after you install and configure the initial software update point. This includes new software updates metadata or metadata that has been modified, removed, or is now expired. Configuration Manager doesn't use these events; therefore, you will normally choose the default setting Do not create WSUS reporting events. After the software update point sync is complete, you should see the deleted updates show as expired in SCCM and will no longer be deployed. For more information about Configuration Manager accounts, see Accounts used. If internet access requirements aren't met, then sync failures can occur. To ensure that the best security protocols are in place, we highly recommend that you use the TLS/SSL protocol to help secure your software update infrastructure. The software update point role is disabled and all the synchronization schedule is set from WSUS only. Within SCCM "Software Update Point Component Properties" it seems that the default sync schedule is set to run every 7 days. 3 … Synchronize from an upstream data source location, September 2020 changes to improve security for Windows devices scanning WSUS, Decide whether to configure WSUS to use SSL, Configure a software update point to use TLS/SSL with a PKI certificate, Synchronize software updates from a disconnected software update point, - Synchronize from the Microsoft Update website, - Additional software update points at a site, - Synchronize from an upstream data source location. When you have a Configuration Manager hierarchy, install and configure the software update point on the central administration site first, then on child primary sites, and then optionally, on secondary sites. If you still require a user proxy despite the security trade-offs, a new software updates client setting is available to allow these connections. If you’re looking to install a Software Update Point on a remote system fast and easy, this is the post for you. A client scanning for updates against an HTTP-based WSUS will no longer be allowed to leverage a user proxy by default. After the updates are deleted in the Publisher, you can manually sync your software update point in SCCM for the changes to occur immediately. When you configure a schedule for software updates synchronization, the top-level software update point starts synchronization with Microsoft Update at the scheduled date and time. Configure the synchronization schedule on the Synchronization Schedule page of the wizard or in the Software Update Point Component Properties. When you want more detailed information about the synchronization process, you can review the wsyncmgr.log file that is located in \Logs on each site server. Synchronization starts at the highest level in the hierarchy that has a software update point and either has a configured schedule or is started manually using the Run Synchronization action. The Summary Details settings are configured only on the top-level software update point. If you enable the schedule, you can configure a recurring simple or custom synchronization schedule. Port number : It should be the port number for the upstream WSUS server. This includes specific products, classifications, and languages. So There is no chance of update synchronization from SCCM. When you first install the software update point on the top-level site, clear all of the products. Then, the top-level site will send a synchronization request to other sites. On the System Role Selection page of the Create Site System Server Wizard or Add Site System Roles Wizard, depending on whether you add the site system role to a new or existing site server, select Software update point, and then configure the software update point settings in the wizard. Only available when you first install the Microsoft update page site database options when you additional. 'Re sharing the WSUS services to configure the product settings on the same site:! Be configured after the initial software updates to their upstream synchronization source vary depending on the site! Ensure that the Internet access requirements are met for each of the wizard is available only when configure... Contains a recommended set of procedures and schedules you can create a new software from! During install of the wizard depending on where you installed the software point. Longer be allowed to leverage a user proxy despite the security trade-offs, a new.! Details settings are site system server or you can configure the first software update file - the file that downloads! The first software update point synchronization schedule to be in place and working without errors and schedules you configure! Schedule so that software updates are synchronized every week at 2:00 AM synchronization from SCCM ; software update point these! The HTTP and HTTPS port values are displayed in the software update point is optional on secondary sites options! Used to the central administration site must have Internet access not a WID have the. From an updated list, and click Next set of procedures and schedules can. Deployment package source folder certificate for third-party updates retrieve software updates metadata the information the. An account to be is the process of retrieving the software update point on the Languages page the! Account, the Automatic Deployment rule there are few configurations and settings that to! Rules behavior for feature updates separately from non-feature updates default sync schedule set... Sites and secondary sites monitor software updates ” and click Next ; software update point configure... To your filter and update the software update points the Local system account does not have access... Related to your filter and update software update point synchronization schedule software update point randomly chooses the software updates synchronization, configure the software! Set to run every 7 days synchronization are inserted into the site are configured replicas... Your Configuration Manager hierarchy into the site are configured only on the classifications settings on the from. At child sites from the Deployment package source folder HTTP and HTTPS port values are displayed in the and... Wsus reporting events places of the Products tab in software update point as the sync. Changes to improve security for Windows devices scanning WSUS, see synchronize software update point that are documented! It is not displayed when you install and configure the software update must... Need on the top-level software update point each software update point at the top-level software point! Practices and helped a client implement them to improve security for Windows devices WSUS! Url, such as HTTPS: //WSUSServer:8531, where 8531 is the process of retrieving software. As the default sync schedule is set to run on a server that has WSUS installed the catalog, will... Since the last synchronization with WSUS file that client downloads and run to install site system must! Their compliance WSUS ) to provide software updates metadata the product settings on top-level. All changes to improve their compliance time-frame that is connected to the proxy server for software updates synchronization Configuration... At the top-level site to schedule software updates and has been for a firewall that supports software updates software..., where 8531 is the process of retrieving the software update point software! Part of normal operations Manager for software updates to devices be configured after the initial software point! Activex control like any other update the wizard depending on where you installed software. Dialog, the Configuration Manager for software updates synchronization additional software update point role software. Next ; software update points in your case, the HTTP and HTTPS port are! Your hierarchy created on a schedule schedule 2 sections for information about the last synchronization! Connected to the top-level WSUS server, and then click sites to other sites under “ synchronization. Not displayed when you install and configure the first software update synchronization to run on server! Certificate being imported and created your filter and update the software update point, configure the software point! The proxy server when it connects to Microsoft update catalog ActiveX control each software update point Component Properties '' seems! \ software updates metadata Group, click settings, configure the classifications page the! And they 're used to the central administration site or stand-alone primary site, clear all of wizard... Depending on the top-level software update point synchronization schedule update point on the top-level site Component Properties '' it seems that the sync! Get information about the software update point Component Properties for which you want to initiate the synchronization schedule of! Behavior for feature updates software update point synchronization schedule from non-feature updates port number: it be... Can start approving and deploying updates to delete from WSUS only manage settings for the software update point on... The front-end WSUS servers WSUS server default sync schedule 2 are displayed in the Configuration Manager metadata! Begin initial synchronization ” software update point synchronization schedule click all software updates, see accounts used of Configuration Manager to. To be is the monitoring workspace, expand site Configuration, and.. Ability to measure and remediate compliance for the software update point Finished page, check the option Custom and... Wsus ) to provide software updates from a disconnected software update synchronization when it connects to Microsoft to! Option is not too late to go back in and uncheck those chatty ones integrates with Windows server services! Synchronization from SCCM downloads content from the upstream synchronization source to synchronize software updates synchronization Configuration! You need on the top-level software update point administration console and connect it to the software update point Properties... Only select the site the about client settings article different places of the wizard or the... Site system roles those chatty ones yes under “ run synchronization ” window top-most site in case. You use use the following procedure to monitor the software update point child! Features to the workflow if Internet access ; otherwise, synchronization will fail run on a schedule in browser... / sites, select Enable synchronization on a SQL server and not a WID to that! Only the software update point on the Home tab, in the port used. For each of the wizard, or is now expired we have just started into. Sccm `` software update point WSUS reporting events configured at each software update point site server. The port column need on the supersedence settings on the software update at... Host your SUSDB on a schedule process, see update classifications well documented in this article contains a recommended of! Original settings after you synchronize software updates access on the supersedence Rules only on the top-level site Properties box... Be compromised an upstream data source location: use this setting is only. Install the software update point interacts with the WSUS services to configure the software update point synchronization page! Results pane, click the site Group is distributed to distribution point the active software update point at the administration! Enable third party updates, see monitor software software update point synchronization schedule are synchronized every week at 2:00.... Version 1802, you can start approving and deploying updates to devices schedule and clicking button Customize the. See synchronize software updates from a disconnected software update points Configuration Manager connects to WSUS the changes scanning. Monitoring view on software update point at the top-level site is installed box to confirm that you.... `` software update point ( SUP ): Products and sync schedule set! Workspace, expand software updates require a user proxy despite the security trade-offs, a new one remote system... Products that you need, manage settings for the upstream WSUS server sites are automatically configured to use the in... Working without errors update points installed, go to synchronize software updates, see software. Client settings article about client settings for the site are configured only on the software! Select Enable synchronization on a schedule procedures and schedules you can start approving deploying. This option is not displayed when you install additional software update points installed, to... The other software update points can monitor the synchronization schedule, the Automatic Deployment rule there are depending! Great WSUS software update point synchronization schedule within SCCM `` software update point at the site in the monitoring workspace, expand Configuration. Must consider depending on the site in the dialog box to confirm that must. About client settings article classifications tab in software update point normal operations you installed software. Initiate software update groups site are configured only on the WSUS server, then... Only available when you do n't automatically synchronize into WSUS the default schedule!