Is Microsoft WSUS free?

By Hanan Ashraf, On 8th January 2021, Under Electronics and Technology
Windows Server Update Services (WSUS) is a free add-on application offered by Microsoft that can download and manage updates and patches for Windows Server operating systems.

Similarly one may ask, what is WSUS and how it works?

Windows Server Update Services (WSUS) enables information technology administrators to deploy the latest Microsoft product updates. You can use WSUS to fully manage the distribution of updates that are released through Microsoft Update to computers on your network.

Also, what is the difference between WSUS and SCCM?

The main difference between WSUS and SCCM is that WSUS is a software update service that allows the administrators to manage updates released for Microsoft products while SCCM is a systems management software that allows managing a large number of computers running on various operating systems.

How do I use WSUS?

To use WSUS to deploy Windows Defender definition updates to client computers, follow these steps:
  1. Open the WSUS Administrator console, and then click Options at the bottom of the console tree.
  2. Click Products and Classifications and verify that the Windows Defender check box is selected under the Products tab.

How do I know if WSUS is working?

WSUS Server Checks
  1. Check WSUS Service. The first thing you'll want to do is check that WSUS is actually running and working as expected.
  2. Check IIS Service.
  3. Check Port Connectivity.
  4. Check Log Files.
  5. Check Windows Update Service.
  6. Check Port Connectivity.
  7. Check Group Policy.
  8. Check Log Files.
No need for Windows updates as I have my primary SCCM server doing that (with WSUS on that server). If you are just looking to expand an existing SCCM install to manage a larger number of clients/sites then this can be initiated from inside the SCCM console where you can push out new DP's or MP's to other servers.
Windows Server Update Services (WSUS) is installed as a server role on Windows Server 2016. To be able to install Windows 10 updates, including upgrades such as the Anniversary Update (Redstone 1, Windows 10 v1607), you also need to complete some settings in the WSUS management console.
WSUS database requirements
WSUS requires one of the following databases: Windows Internal Database (WID) Any supported Microsoft SQL Server version.
WSUS requires a database to store update metadata and configuration information. WSUS can use one of the following databases: Windows Internal Database (WID) or Microsoft SQL Server database. Remote Desktop Services role must not be installed on the computer where the WSUS Server role is installed.
WSUS is only needed for the SUP Site role, if you arent using this then you don't need WSUS. If you are doing two seperate SCCM instances in the same AD domain do watch out though as you might run into issues with them both trying to access and own the same AD Container that is used to hold a lot of the configuration.
Open WSUS console and click the server name. In the Overview section, you will see a section called Download Status in where it lists how many update files are downloading, how much has been downloaded and how much in total that needs to be downloaded.
Deploy Windows Server Update Services
  1. Plan your WSUS deployment.
  2. Step 1: Install the WSUS Server Role.
  3. Step 2: Configure WSUS.
  4. Step 3: Approve and Deploy Updates in WSUS.
  5. Step 4: Configure Group Policy Settings for Automatic Updates.
To verify the server version, follow these steps:
  1. Open the WSUS console.
  2. Click the server name.
  3. Locate the version number under "Overview, Connection, Server Version."
  4. Check whether the version is 3.2. 7600.283 or a later version.
No, you don't really "need" WSUS. If you really prefer to do things manually instead of using automation then by all means remove WSUS. Even with just that one machine you gain much greater control over the updates using WSUS, so is well justified.
Open the WSUS console. Click the server name. Locate the version number under "Overview, Connection, Server Version." Check whether the version is 3.2.
To approve and deploy WSUS updates
  1. On the WSUS Administration Console, click Updates.
  2. In the All Updates section, click Updates needed by computers.
  3. In the list of updates, select the updates that you want to approve for installation in your test computer group.
  4. Right-click the selection, and then click Approve.
WSUS Setup automatically configures IIS to distribute the latest version of Automatic Updates to each client computer that contacts the WSUS server. The best way to configure Automatic Updates depends on the network environment.
Windows Server Update Services (WSUS) enables information technology administrators to deploy the latest Microsoft product updates. You can use WSUS to fully manage the distribution of updates that are released through Microsoft Update to computers on your network.
To open the WSUS console
On your WSUS server, click Start, point to All Programs, point to Administrative Tools, and then click Microsoft Windows Server Update Services.
If you install multiple WSUS servers, you must maintain a separate database for each WSUS server, whether it is an autonomous or a replica server. You cannot store multiple WSUS databases on a single instance of SQL Server, except in Network Load Balancing (NLB) clusters that use SQL Server failover.
WSUS server can update from itself, or update from MU, or update from other WSUS server. If you don't want the WSUS server to update automatically, then you may delete registry keys "AU" in HKLMSOFTWAREPoliciesMicrosoftWindowsWindowsUpdate, then configure the WSUS server to update manually.
msc-> Right click and select Run as administrator. Computer Configuration -> Administrative Templates -> Windows Components -> Windows Update. Right click on Specify intranet Microsoft update service location. Look inside the two fields this will list the WSUS server and the port.
WSUS server is not domain based, so there's no requirement that we must join the WSUS server to the domain. You can join to the domain, not join is OK too.
To approve and deploy WSUS updates
  1. On the WSUS Administration Console, click Updates.
  2. In the All Updates section, click Updates needed by computers.
  3. In the list of updates, select the updates that you want to approve for installation in your test computer group.
  4. Right-click the selection, and then click Approve.
Microsoft is also planning to move from using System Center Configuration Manager (SCCM) to using Microsoft Intune for its device management. During the Q&A part of the presentation, the Microsoft officials denied that Windows Server Update Services (WSUS) was going to get replaced by Windows Update for Business.
Windows Server Update Services