1. Managing Windows Update Clients
Managing Windows Update clients requires you to ensure
that all client computers on your organizational network receive
updates. Only client
computers that are WSUS server clients are present in a WSUS server’s
reports. Unless you scan all the hosts on the network with a tool like
the Microsoft Baseline Security Analyzer, you might be unaware of
clients on your network that need updates because they have not
checked in with the WSUS server.
Another method through which you can ensure that client
computers on the organizational network are receiving and installing
updates is to implement Network Access Protection (NAP). When you
implement NAP, you can configure the network so that clients that are
not up to date with software updates are denied access to network
resources. You can also configure NAP to force noncompliant clients
into remediation. Remediation is a process that allows clients to
access and install update files so that they become compliant with
network policies.
Prior to connecting a client computer running the Windows 7
operating system to a WSUS server, you might need to update the
Windows Update client to the latest version. Clients that connect to a
WSUS server are automatically prompted to update to new client
software, provided by the WSUS server, if they need to. Figure 1 shows an update to the
Windows Update client.