In this demo, we will configure our WSUS server.
1- Open Windows Server Update Services from the Server Manager
2- Click Next to continue
3- Skip the option to join the Microsoft Update Improvement Program and click next.
4- You can either choose to Synchronize from Microsoft Update where updates are downloaded from the Microsoft portal or choose to Synchronize from another Windows Server Update Services Server (upstream server) if there is an existing WSUS server in the environment
5- Click Next to continue
6- Click Start Connecting to verify connectivity to Microsoft.com. This will take time around 30 mins to complete
7- Choose to download only English from this list
7- From the list of products, we can select individual products or product families for which you want your server to synchronize updates. In this case, I am going to select Windows Server 2022,2019 and Windows 10.
Enable Windows Server 2022 Updates in WSUS
9- Choose the required update needed and for this demo, we are going to select Critical Updates, Security Updates, and Update Rollups. Critical updates deal with a worm/malware that could be spread through our network and security updates address security updates such as Microsoft KB and general bugs in OS.
10- This section lets us choose how often our WSUS server should sync with Microsoft to query for new updates. Microsoft releases two patches a month ( also known as patch Tuesday ) so probably once a week sync is just fine or you can set it to manual.
11- Choose to begin initial synchronization and then click next.
12- Select Finish to complete the WSUS configuration.
13- The progress of our synchronization appears in the Status tab. What’s now happening is updating the Windows Internal Database so that these updates are available for us to approve and download.
14- Once complete, the Updates pane will show us updates downloaded
15- Click the Refresh button to see all updates
15- We will now need to cherry-pick updates we think are essential to our environment. Choose the update from the list and select Approve
16- Go to Windows Firewall settings to Allow an app or feature through Windows Firewall and verify 8530/8531 ports are open