Maintaining Windows Server
William Panek · 2018
This chapter discusses how to implement Windows Server Update Services (WSUS) solutions, configure WSUS groups, manage patch management in mixed environments, and implement an anti-malware solution with Windows Defender. Windows Server Update Services (WSUS), formerly known as Software Update Services (SUS), is used to leverage the features of Windows Update within a corporate environment. WSUS downloads Windows updates to a corporate server, which in turn provides the updates to the internal corporate clients. The administrator should test and approve updates before they are deployed to WSUS clients. Administrators can use a GPO to enable client-side targeting. Client machines can be automatically added into the proper computer group once the client computer connects to the WSUS server. Client-side targeting can be a very useful tool when an administrator has multiple client computers and the administrator needs to automate the process of assigning those computers to computer groups.