I work for a small NPO where budget is tight. The ability to control updates is something I need. WSUS was an attractive option as I already run a Windows Server environment.
I watched the courses from the MCSA 2012 R2 about WSUS, and it looks straight forward enough. However, i have a few questions that I couldn't readily find through Google.
-
If my WSUS server is not downloading updates for a product, are my users still able to receive updates for those? IE: If I only wanted to control Windows and Office updates, but leave driver updates alone... Do my users simply download driver updates from MS update, and OS/Office updates from my on-site WSUS server? Or, do they not have access to driver updates at all since my on-site WSUS server does not have those products' update information?
-
Aside from the base OS products (IE: "Windows 7" as it appears in the product selection list), are there any others that I should include? (IE: "Windows 7 Dynamic Update," "Windows 8.1 or later drivers," etc.)
-
If I wanted to store my updates on a different server than the one WSUS is hosted on, what sort of share and file permissions need to be set on that share? Or, better question... is this even a good idea?
Thanks for the great work.