Windows Server 2016 WSUS Group Policy Configuration Part 2

In part two of my WSUS Deploy and Configure articles, I’ll show you how to configure Group Policy and WSUS to work together and apply updates on Windows Server 2016 Infrastructure.

For part 1 of this article visit the following article How To Deploy WSUS On Windows Server 2016 Part 1

To get started with the configuration, I’ll open the WSUS console – > Computers and I’ll create a Computer Group that will hold all my Servers, the group name will appear In the Group Policy that will move the computers to the Server Group.

Below, you can see my Servers Group

Next, In options click on Computers

Select, Use Group Policy or registry settings on Computers

Next, Click on automatic approvals

Click edit to modify settings with the new Servers Group and click run rule

Next, I’ll create a new GPO for my WSUS Server

Go to

Computer Configuration -> Administrative Templates -> Windows Components – >Windows Update ….

In the specify… WSUS Server add the WSUS Server name with the Port number

Configure updates

Very Important, 99% of failed WSUS deployments are happening In this settings.

Click enabled and type the name of the WSUS Group Name from the beginning of the article.

Apply the policy to the OU you will have all your servers and wait, It might take a few hours until you see servers.

Tip: It’s good to have a test Server VM for testing and not waiting to much time

If you’ve followed this article, you should see your servers under the Servers group

On the Servers I’ll the settings below that WSUS Is managing the updates

Leave a Reply