WSUS files not downloading, using Config Manager

Thomas Simon 61 Reputation points
2021-02-08T21:26:08.837+00:00

After waiting for days and having exactly no files downloaded, I need to get WSUS working correctly. I have it attached to Configuration Manager as a SUP as well. The WSUS is downstream from an internet connected WSUS (still trying to get access to that).

I have 182 folders, so the population started, but that's as far as it went.

I have restarted BITS and WSUS. I have also done wsusutil reset at different stages of troubleshooting. I even did a movecontent at one point.

The relevant logs and errors (cannot include actual logs since cut/paste is disabled and company policy):
SoftwareDistribution.log:
ErrorWsusService. ContentSyncAgent.JobErrorDownload error http://computername/content/xxxxxxxx failed in download (-2145844844) HTTP status 404: The requested URL does not exist on the server. at Microsoft.UpdateServices.ServerSync.ContentSyncAgent.JobError(IBitsJob job, BitsJobError joberror, String fileRemoteName)
WarningWsusService ContentSyncAgent ProcessBITSNotificationQueueContentSyncAgent recieved (sic) Failure for Item: xxxxxxxxxxx, Item fails
InfoWsusService.EventLogEventReporter.ReportEventEventId=364, Type=Error, Category-Synchronization, Message=Content file download failed.

wsyncmgr.log
EULA sync failures summary:
Update xxxxxxxxxxxxxx not synced due to pending EULA download (lots of these)

WCM.log
No errors in last 6 days

65572-file-download-failed.png

65417-pending-eula-acceptance.png

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,342 questions
Microsoft Configuration Manager
{count} votes

5 answers

Sort by: Most helpful
  1. AllenLiu-MSFT 46,291 Reputation points Microsoft Vendor
    2021-02-09T07:39:52.477+00:00

    @Thomas Simon
    Thank you for posting in Microsoft Q&A forum.
    ConfigMgr's usage of a WSUS instance is different than what a normal WSUS instance is used for, and thus using a pre-existing WSUS instance will cause issues.
    It's recommend to just install a new unconfigured WSUS instance on your SCCM server and install the SUP on the SCCM server.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  2. Thomas Simon 61 Reputation points
    2021-02-09T16:47:59.99+00:00

    I think the EULA errors are gone now (license agreement text files are showing), but I still don't have any patches downloaded.

    I also see this error:
    ERROR: Service is not healthy. Error status: TrustFailure, Error message: The underlying connection was closed: Could not establish trust relationship for the SSL/TLS secure channel.

    I am not currently using HTTPS/PKI.

    0 comments No comments

  3. Thomas Simon 61 Reputation points
    2021-02-09T19:43:27.737+00:00
    0 comments No comments

  4. AllenLiu-MSFT 46,291 Reputation points Microsoft Vendor
    2021-02-10T09:47:53.217+00:00

    @Thomas Simon
    A common reason you may receive the error Could not establish trust relationship for the SSL/TLS secure channel is because the SSL certificate isn’t trusted.
    If the SSL certificate is not trusted, you will need to install the SSL certificate’s root certificate.

    For more details about this process for many common published certificate authorities, please review this article:
    https://www.sslshopper.com/ssl-certificate-not-trusted-error.html


  5. Thomas Simon 61 Reputation points
    2021-02-10T12:56:50.86+00:00

    There has to be a core reason that the server does not download any updates. At least, there are no updates in WsusContent.

    What are the components to check? If the same products (or more) are configured on the upstream server, what other reason could there be that no files show up, and there are no errors? Everything looks fine in the logs, as far as I can tell.

    Here are some non-errors that might be helpful (obviously irrelevant messages deleted, I am hand-typing this):

    SoftwareDistribution.log (these statements show every cycle):
    Found 0 telemetry queries to run
    Found 0 telemetry counts to run
    Successfully run 0 Telemetry queries
    TaskManager: 0 task(s) running, 0 task(s) waiting to start

    wsyncmgr.log:
    Read SUPs from SCF for SERVERNAME
    Found 1 SUPs
    Found active SUP SERVERNAME from SCF File
    Synchronizing WSUS, default server is SERVERNAME
    sync: WSUS synchronizing categories, processed 11 out of 11 items (100%)
    sync: WSUS synchronizing updates, processed 13 out of 5580 items (0%) ...
    sync: WSUS synchronizing updates, processed 5580 out of 5580 items (100%) ... [2 hours later]
    Set content version of update source XXXXXXXXXXXXXXXXXXXXX for site XXX to 3
    Resetting MaxInstall RunTime for Cumulative updates
    Synchronizing SMS database with WSUS, default server is SERVERNAME
    :
    Syncing all updates
    Requested categories Product=Office2016, Product=Windows Server 2016, Product=Microsoft Edge, Product=Windows 10, UpdateClassification=Security Updates, UpdateClassification=Update Rollups, ... UpdateClassification=Critical Updates
    sync: SMS synchronizing categories, processed 375 out of 375 items (100%)
    sync: WSUS synchronizing updates
    syncBatchCount not set, using default 1
    Collecting existing updates ...
    sync: SMS synchronizing updates, processed 0 out of 524 items (0%)
    Skipped update xxxxxxxxxxxxxxxxx - Security Update for Microsoft Office 2016 (KB3085538) 64-Bit Edition because it is up to date
    :
    Skipped update xxxxxxxxxxxxxxxxx - XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX because it is was superseded
    :
    Synchronizing update f00da434-23d9-429f-ad31-1bbc6e7b076d - Security Update for Windows 10 Version 1809 for x64-based Systems (KB4535680)
    [Also lists the versions for Windows 10 Version 1803 and 1607]
    [Also lists more updates that were synchronized]

    sync: SMS synchronizing updates, processed 524 out of 524 items (100%)
    sync: SMS performing cleanup
    Removed 21623 unreferenced updates
    Done synchronizing SMS with WSUS Server SERVERNAME
    Set content version of update source XXXXXXXXXXXXXXXX for site XXX to 4
    :
    sync: Starting SMS database synchronization
    Syncing updates arrived after 02/10/2021 05:47:07
    :
    Done indexing SUSDB. Custom indexes were created if they didn't exist previously. SERVERNAME
    Cleanup processed 531 total updates and declined 83
    Starting Deletion of ObsoleteUpdates
    0 update(s) were deleted from SUSDB in Server xxxxxxxx
    Deletion Completed
    :
    Sync succeeded. Setting sync alert to canceled state on site XXX
    Updated 21737 items in SMS database, new update source content version is 4

    WSUSCtrl.log
    Successfully connected to local WSUS server
    There are no unhealthy WSUS Server components on WSUS Server SERVERNAME
    Successfully checked database connection on WSUS server SERVERNAME

    WCM.log
    No changes - WSUS Server settings are correctly configured and Upstream Server is set to IPADDRESS
    Refreshing categories from WSUS server
    Successfully connected to local WSUS server


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.