Can not get update (0x8007002)
Unable to install windows update using standalone packages from Microsoft Catalog.
Good day, the following error message appears after running Microsoft Catalog update packages:
" The following updates were not installed"
" Security Update for Windows (KB5028623)"
Hardware/System Information:
Dell PowerEdge R340
Windows Server 2016 Build 14393
Server is configured as a Domain Controller
Domain Controller is not connected to the internet, therefore updates were done through installing Microsoft standalone packages.
Troubleshooting steps taken:
- Tried install different stages/dates of cumulative update packages, each attempt resulting in the same error message.
- Install NET framework 4.8 (KB4486129)
- Reinitialize Software Distribution and catroot2 folders, after checking CBS log file (Error code: 0x8007002)
- Noticed successful installations of standalone SSU packages.
Successful installed updates:
KB5023788
KB5030504
KB5032391
KB4509091
KB4493470
KB4485447
KB3192137
KB4486129
Unsuccessful attempts to install:
KB4594441
KB5010790
KB5025228
KB5028623
KB5032197
KB5033373
KB5034119
Regards
Edmund
Windows for business | Windows Server | Devices and deployment | Install Windows updates, features, or roles
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
3 answers
Sort by: Most helpful
-
Anonymous
2024-02-09T11:55:47+00:00 -
Anonymous
2024-01-31T10:35:00+00:00 Good day Lei,
Please find my reply in green
- Check if the update is already installed: Go to Control Panel > Programs and Features > View installed updates. Look for the KB5028623 update and check if it is already installed.
Checked, KB5028623 is not installed.
- Check if the update is applicable to your system: Make sure that the update is applicable to your system. Check the system requirements and the version of Windows Server that you are using.
Trellix support advised to install the specified update, before deploying ENS package from ePO server. The update is downloaded from Microsoft catalog.
- Check if there are any pending updates: Go to Settings > Update & Security > Windows Update and check if there are any pending updates. If there are, install them first before installing the KB5028623 update.
The server is a standalone system and it's not allowed to access the internet so updates are done by running the standalone packages from Microsoft catalog. Are there offline ways to verify which updates are required?
- Check if there are any third-party antivirus or firewall programs: Disable any third-party antivirus or firewall programs temporarily and try installing the update again.
Ok, I'll try disabling the Trellix Agent temporarily during the update.
After the installation, only the error messages "" The following updates were not installed" " Security Update for Windows (KB5028623)" are appearing. There are no error codes. Do you need the CBS log for review?
Thanks and Regards
Edmund
-
Anonymous
2024-01-31T07:42:44+00:00 Hello Edmund LJJ,
I suggest that you try the following steps:
- Check if the update is already installed: Go to Control Panel > Programs and Features > View installed updates. Look for the KB5028623 update and check if it is already installed.
- Check if the update is applicable to your system: Make sure that the update is applicable to your system. Check the system requirements and the version of Windows Server that you are using.
- Check if there are any pending updates: Go to Settings > Update & Security > Windows Update and check if there are any pending updates. If there are, install them first before installing the KB5028623 update.
- Check if there are any third-party antivirus or firewall programs: Disable any third-party antivirus or firewall programs temporarily and try installing the update again.
If the issue persists, please provide me the error code and the error message.
Kind regards,
Lei