Delay updates deployed by WSUS

Hugo Legeard 56 Reputation points
2022-02-21T13:53:25.47+00:00

Hello,

Is it possible to delay the installation of updates when they are deployed with WSUS ?

It seems that this may not be natively and that the policies that allow the postponement of Windows Update for Business updates cannot be used with a WSUS Server.

Have some found solutions without using SCCM?

Thank you in advance for your answers,

Cordially

Hugo LEGEARD.

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,053 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Adam J. Marshall 9,381 Reputation points MVP
    2022-02-21T14:28:13.877+00:00

    Think differently.

    Set your GPO's to install DAILY, and setup active hours so that your systems restart outside of the active hours, and then only APPROVE updates in WSUS when you want them to install.

    Here's my guide:
    https://www.ajtek.ca/wsus/how-to-setup-manage-and-maintain-wsus-part-4-creating-your-gpos-for-an-inheritance-setup/

    This setup works very well. Takes 10-15 minutes a MONTH in order to manage - both approving to a test group and then again to the production group a week or 2 later (for testing-in-production).

    1 person found this answer helpful.
    0 comments No comments

  2. Rita Hu -MSFT 9,641 Reputation points
    2022-02-22T06:48:27.693+00:00

    @Hugo Legeard
    Thanks for your getting support on Q&A forum.

    To avoid misunderstanding and get the better support, please help to describe your demands in detail. What is the meaning of Is it possible to delay the installation of updates when they are deployed with WSUS ?

    As far as I know, we could configure the Configure Automatic Updates Group Policy and select the option 4 - Auto download and schedule the install and specify the schedule to install the updates.
    Here is a related link for your reference:
    https://learn.microsoft.com/de-de/security-updates/windowsupdateservices/18127451

    Reference screenshot:
    176580-1.png

    In my opinion, we could apply the Configure Automatic Updates for the clients and the clients will try to install the approved updates as schedule.

    Hope the above will be helpful.

    Regards,
    Rita


    If the answer is the right solution, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.