SCCM -- some clients do not receive Windows & Office Updates via Softwarecenter

Saxe 326 Reputation points
2021-10-29T09:26:20.91+00:00

we use SCCM 2010 with all available updates

we saw that some devices (detection of how many devices is still in progress) do not get updates via softwarecenter while applications do work as expected

we have an almost complete collection for all windows client devices for which we deploy default software and also windows and office updates
most of devices in this collection are getting windows & office updates, install them and everything fine but not all and now we want to know why

now we picked 3 devices and try to figure out whats going on

  1. windows update service on clients is working. After uninstallation of the SCCM client, WSUS will install SCCM client again (we deploy it also via WSUS to have a second update mechanism for SCCM client installations)
  2. if i check the required update view on SCCM i see that those clients require those updates, if i check the client with Client Center for CM its also know that updates are missing
  3. SCCM client on the windows clients looks good, did a uninstall and reinstall, runned the actions, everything working again (can install applications e.g.) but get no windows updates
  4. LocationServices.Log on clients looks good, Wuahandler.log also (Defender updates are working, no error in this log)

On one device we did a complete reinstall of Windows and then it worked as expected but i want to find the cause so new installation is not needed.

Any advice how to check further?

Microsoft Security | Intune | Configuration Manager | Other
0 comments No comments
{count} votes

Accepted answer
  1. Saxe 326 Reputation points
    2021-11-24T15:35:12.257+00:00

    Problem solved .

    Updated clients via WSUS to 17763.2237 and updated CM to 2103 with all KB updates, fixes and hotfixes

    All problematic clients are doing updates via Softwarecenter again, all of them were updated to 17763.2300 without any problem

    0 comments No comments

11 additional answers

Sort by: Most helpful
  1. Rahul Jindal [MVP] 10,911 Reputation points MVP
    2021-10-30T16:51:19.603+00:00

    Then I'll suggest you start by looking at the client health and scan status. "one of two devices had no uptodate report on wsus (but that is fixed now)", please check in ConfigMgr reports and not WSUS. Infact there should be absolutely no need for you to touch WSUS if you are using Configmgr to patch your devices.

    1 person found this answer helpful.
    0 comments No comments

  2. Rahul Jindal [MVP] 10,911 Reputation points MVP
    2021-10-29T20:53:23.077+00:00

    Are the devices targeted for software update client settings? Do the machines receive the SUP policy? Are machines sending back update scan status? Are you targeting the devices with SUGs?

    0 comments No comments

  3. Saxe 326 Reputation points
    2021-10-30T08:34:58.107+00:00

    yes yes yes yes

    all devices are in one collection, all get the same policy, one of two devices had no uptodate report on wsus (but that is fixed now), the other one was always uptodate and yes i have one SUG for the complete collection

    its hard to figure out because not all devices are always on, some of our devices are long offline or in some lab so i have no complete overview of which devices isnt really updating or just offline or in standby and has not reported back at all

    0 comments No comments

  4. Saxe 326 Reputation points
    2021-10-30T10:13:18.363+00:00

    added a new client group in WSUS for one device and updated GPO to redirect one device to this client group, approved security updates only for this client group, after running windows updates on this client its downloading and installing the updates, so client windows updates looks good, must be something related SCCM on client

    i dont know, very strange

    will test second device same way as first and check if windows updates/wsus will work

    this is not the way i want go but its an alternative to get clients updated

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.