In our SCCM environment some machines are not getting patched. WUAHANDLER log showing the error : Scan failed with error = 0x80240438. Pls help to resolve this issue.

SAURABH LALSARE 0 Reputation points
2024-01-05T11:41:16.1166667+00:00

In our SCCM environment some machines are not getting patched. WUAHANDLER log showing the error : Scan failed with error = 0x80240438. Pls help to resolve this issue.

Microsoft System Center
Microsoft System Center
A suite of Microsoft systems management products that offer solutions for managing datacenter resources, private clouds, and client devices.
844 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,737 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. AllenLiu-MSFT 40,961 Reputation points Microsoft Vendor
    2024-01-08T02:47:22.6+00:00

    Hi, @SAURABH LALSARE

    Thank you for posting in Microsoft Q&A forum.

    The error code 0x80240438 in the WUAHANDLER log indicates that the update source is not found. This could be caused by several reasons, including a misconfiguration of the WSUS server or a firewall issue. To troubleshoot this issue, you can try the following steps:

    1. Verify that the WSUS server is configured correctly and that the client can communicate with it. Check the registry key HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate to find the URL of the WSUS server and try to access it from the client machine.
    2. Check the firewall settings on the client machine and the WSUS server to ensure that they are not blocking communication between the two.
    3. Check the WindowsUpdate.log for any additional error messages that may provide more information about the issue.
    4. If the issue persists, try resetting the Windows Update Agent data store on the client machine by stopping the Windows Update service, renaming the C:\Windows\SoftwareDistribution folder to C:\Windows\SoftwareDistribution.old, and then starting the Windows Update service again.

    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Add comment".