introduction
welcome to second article of software update series from SCCM course
this article we will discuss the relation between SCCM SUP and WSUS
WSUS
WSUS (Windows Server Update Service) is a role that provides a central management point for Microsoft Update.
Thanks to WSUS, all servers no longer need to connect to Microsoft Update to download patches and hotfix.
WSUS is in responsible of downloading updates and distribute them on different machines.
Because there are a lot of updates for several products, downloading updates is performed according to some rules such as classification, languages or products.
However WSUS can’t be used alone in a big IT infrastructure requiring automation. This product doesn’t have a granular scheduler to deploy update. This is why SCCM is used with WSUS.
SCCM and WSUS
SCCM has a system role called Software Update Point (SUP). This role has to be installed on WSUS server.
When it is set, SCCM can manage updates catalog and binaries to make updates packages.
packages can be created regarding to classification, products, languages of the update
Once these updates packages is created, it can be deployed with SCCM and use its powerful scheduler
software update process
- WSUS downloads updates catalog and update binaries when SCCM requests them.
- Primary site configures himself WSUS role. When it is done, Primary site synchronizes updates catalog and requests binaries when the update package is creating.
- Once an update package is created, it is deployed on Deployment Point
- Managed servers download this package and install it regarding to maintenance period and scheduling configured on Primary Site.
- Before installing updates, managed servers download update catalog from WSUS to validate them.
Conclusion
in first article of Software series we have got an overview of software update deployment
then we have discussed the relation between SUP and WSUS
next article we will see how how to configure SUP and WSUS to download and deploy update
thanks for joining us